|
Plagegeister aller Art und deren Bekämpfung: Internet Laggt stark normal ping 30 jetzt zum teil 8000Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
02.11.2013, 18:34 | #1 |
| Internet Laggt stark normal ping 30 jetzt zum teil 8000 Hallo, Ich habe seit 2 wochen unregelmässig das problem das mein Internet sehr stark laggt. Es ist zum verzweiflen den es ist unberechenbar. Windows-Edition Windows 7 Ultimate Service Pack 1 System: Klassifikation: 5.9 Prozessor: Intel(R) Core(TM) i5-2500 CPU @ 3.30GHz 3.60GHz Installierter Arbeitsspeicher: 16.0 GB Systemtyp: 64 Bit-Betriebssystem Grafikkarte: Nvdia GeForce gtx 550 ti |
02.11.2013, 23:06 | #2 |
/// the machine /// TB-Ausbilder | Internet Laggt stark normal ping 30 jetzt zum teil 8000 hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
14.11.2013, 18:52 | #3 |
| Internet Laggt stark normal ping 30 jetzt zum teil 8000FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-11-2013 Ran by Pascal (administrator) on PASCAL-PC on 14-11-2013 18:50:47 Running from D:\Users\Pascal\Downloads Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Agnitum Ltd.) C:\PROGRA~1\Agnitum\OUTPOS~1\acs.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Microsoft Corporation) C:\Windows\vVX3000.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe (Agnitum Ltd.) C:\Program Files\Agnitum\Outpost Security Suite Free\op_mon.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\PSIA.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe (Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunes.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-10-18] (NVIDIA Corporation) HKLM\...\Run: [VX3000] - C:\Windows\vVX3000.exe [762224 2009-06-30] (Microsoft Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [ProfilerU] - C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454144 2013-04-16] (Saitek) HKLM\...\Run: [SaiMfd] - C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2013-04-16] (Saitek) HKLM\...\Run: [OutpostMonitor] - C:\Program Files\Agnitum\Outpost Security Suite Free\op_mon.exe [4510072 2011-04-04] (Agnitum Ltd.) HKLM\...\Run: [OutpostFeedBack] - C:\Program Files\Agnitum\Outpost Security Suite Free\feedback.exe [808064 2011-03-30] (Agnitum Ltd.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673184 2013-07-03] (Disc Soft Ltd) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [4858968 2013-08-30] (AVAST Software) HKLM-x32\...\Run: [TrojanScanner] - C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1655568 2013-10-24] (Simply Super Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208 2011-10-28] (Hewlett-Packard) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2349392 2013-11-11] (LogMeIn Inc.) AppInit_DLLs: c:\progra~1\agnitum\outpos~1\wl_hoo~1.dll c:\windows\system32\nvinitx.dll [983664 2011-03-30] (Agnitum Ltd.) AppInit_DLLs-x32: c:\progra~1\agnitum\outpos~1\wl_hook.dll c:\windows\syswow64\nvinit.dll [141336 2013-10-16] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: D:\Users\Pascal\AppData\Roaming\Mozilla\Firefox\Profiles\vzcsjy6m.default FF Homepage: hxxp://www.google.com FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll () FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: No Name - D:\Users\Pascal\AppData\Roaming\Mozilla\Firefox\Profiles\vzcsjy6m.default\Extensions\{99B98C2C-7274-45a3-A640-D9DF1A1C8460}.xpi FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 ==================== Services (Whitelisted) ================= R2 acssrv; C:\PROGRA~1\Agnitum\OUTPOS~1\acs.exe [3501696 2011-04-04] (Agnitum Ltd.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15122208 2013-10-18] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-11-04] () R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-10-14] (Secunia) S2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [660184 2013-10-14] (Secunia) ==================== Drivers (Whitelisted) ==================== R1 afw; C:\Windows\System32\DRIVERS\afw.sys [39528 2010-04-20] (Agnitum Ltd.) R3 afwcore; C:\Windows\System32\drivers\afwcore.sys [424040 2010-09-27] (Agnitum Ltd.) S3 ASWFilt; C:\Windows\system32\Filt\ASWFilt64.dll [49168 2011-03-21] (Agnitum Ltd.) R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-08-30] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-08-30] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-08-30] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-08-30] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-30] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-30] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-08-30] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [204880 2013-08-30] () S3 cpuz135; C:\Program Files (x86)\CPUID\PC Wizard 2012\pcwiz_x64.sys [24368 2012-08-11] (CPUID) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-10-05] (Disc Soft Ltd) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation) S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-10-14] (Secunia) S3 SaiK0CD5; C:\Windows\System32\DRIVERS\SaiK0CD5.sys [180584 2012-09-20] (Saitek) R3 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [25120 2013-04-30] (Saitek) R3 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [52640 2013-04-30] (Saitek) S3 SaiU0CD5; C:\Windows\System32\DRIVERS\SaiU0CD5.sys [47208 2012-09-20] (Saitek) R1 SandBox; C:\Windows\system32\drivers\SandBox64.sys [1097672 2011-03-21] (Agnitum Ltd.) S3 VBEngNT; C:\Windows\system32\drivers\VBEngNT.sys [293048 2011-02-02] (VirusBuster Kft.) S3 VBFilt; C:\Windows\system32\Filt\VBFilt64.dll [42976 2011-03-21] (Agnitum Ltd.) S3 VGPU; System32\drivers\rdvgkmd.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-14 18:50 - 2013-11-14 18:50 - 01957794 _____ (Farbar) D:\Users\Pascal\Downloads\FRST64.exe 2013-11-14 18:50 - 2013-11-14 18:50 - 00000000 _____ D:\Users\Pascal\Downloads\FRST.txt 2013-11-14 18:30 - 2013-11-14 18:30 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-11-14 16:53 - 2013-10-12 09:45 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-14 16:53 - 2013-10-12 09:45 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-14 16:53 - 2013-10-12 09:45 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-14 16:53 - 2013-10-12 09:43 - 19269632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-14 16:53 - 2013-10-12 08:03 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-14 16:53 - 2013-10-12 08:03 - 01138176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 14355968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-14 16:53 - 2013-10-12 07:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-14 16:53 - 2013-10-12 07:08 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-14 15:14 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-14 15:14 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-14 15:14 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-14 15:14 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-11-14 15:14 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-11-14 15:14 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-14 15:14 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-11-14 15:14 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-11-14 15:14 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-11-14 15:14 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-11-14 15:14 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-11-14 15:14 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-11-14 15:14 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-11-14 15:14 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-14 15:14 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-11-14 15:14 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-11-14 15:14 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-11-14 15:14 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-11-14 15:14 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-11-14 15:14 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-11-14 15:14 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-11-14 15:14 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-11-14 15:14 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-11-14 15:14 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-11-14 15:14 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-11-14 15:14 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-11-14 15:14 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-11-14 15:14 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-11-14 15:14 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-11-14 15:14 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-11-13 20:34 - 2013-11-13 20:34 - 00002195 _____ D:\Users\UpdatusUser.Pascal-PC\Desktop\Age of Chivalry Hegemony.lnk 2013-11-13 20:34 - 2013-11-13 20:34 - 00002195 _____ D:\Users\Pascal\Desktop\Age of Chivalry Hegemony.lnk 2013-11-13 20:34 - 2013-11-13 20:34 - 00002195 _____ D:\Users\Martini\Desktop\Age of Chivalry Hegemony.lnk 2013-11-13 20:34 - 2013-11-13 20:34 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Age of Chivalry Hegemony 2013-11-13 17:45 - 2013-11-13 17:45 - 00000000 ____D C:\Program Files (x86)\Workshell 2013-11-10 00:51 - 2013-11-14 18:30 - 00001546 _____ C:\Windows\setupact.log 2013-11-10 00:51 - 2013-11-10 00:51 - 00000000 _____ C:\Windows\setuperr.log 2013-11-09 12:56 - 2013-11-09 12:56 - 00001697 _____ D:\Users\Public\Desktop\iTunes.lnk 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files\iTunes 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files\iPod 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-11-07 17:23 - 2013-11-07 17:23 - 00501248 _____ (Facebook Inc.) D:\Users\Pascal\Downloads\FacebookVideoCallSetup_v1.2.205.0.exe 2013-11-05 13:52 - 2013-11-14 18:30 - 00000810 _____ D:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2013-11-04 15:38 - 2013-11-04 15:40 - 00000000 ____D D:\Users\Pascal\Documents\Battlefield 4 2013-11-04 15:33 - 2013-11-04 15:35 - 00001066 _____ D:\Users\Public\Desktop\Battlefield 4.lnk 2013-11-04 15:33 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-11-04 15:33 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-11-04 15:33 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-11-04 15:33 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-11-04 15:33 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-11-04 15:33 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-11-04 15:33 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-11-04 15:33 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-11-04 15:33 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-11-04 15:33 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-11-04 15:33 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-11-04 15:33 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-11-04 15:33 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-11-04 15:33 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-11-04 15:33 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-11-04 15:33 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-11-04 15:33 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-11-04 15:33 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-11-04 15:33 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-11-04 15:33 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-11-04 15:33 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-11-04 15:33 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-11-04 15:33 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-11-04 15:33 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-11-04 15:33 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-11-04 15:33 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-11-04 15:33 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-11-04 15:33 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-11-04 15:33 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-11-04 15:33 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-11-04 15:33 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-11-04 15:33 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-11-04 15:33 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-11-04 15:33 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-11-04 15:33 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-11-04 15:33 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-11-04 15:33 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-11-04 15:33 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-11-04 15:33 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-11-04 15:33 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-11-04 15:33 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-11-04 15:33 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-11-04 15:33 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-11-04 15:33 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-11-04 15:32 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-11-04 15:32 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-11-04 15:32 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-11-04 15:32 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-11-04 15:32 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-11-04 15:32 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-11-04 15:32 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-11-04 15:32 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-11-04 15:32 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-11-04 15:32 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-11-04 15:32 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-11-04 15:32 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-11-04 15:32 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-11-04 15:32 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-11-04 15:32 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-11-04 15:32 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-11-04 15:32 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-11-04 15:32 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-11-04 15:32 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-11-04 15:32 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-11-04 15:32 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-11-04 15:32 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-11-04 15:32 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-11-04 15:32 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2013-11-04 15:32 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2013-11-04 15:32 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-11-04 15:32 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-11-04 15:32 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-11-04 15:32 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-11-04 15:32 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-11-04 15:32 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-11-04 15:32 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-11-04 15:32 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-11-04 15:32 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-11-04 15:32 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-11-04 15:32 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-11-04 15:32 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-11-04 15:32 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-11-04 15:32 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-11-04 15:32 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-11-04 15:32 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-11-04 15:32 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-11-04 15:32 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-11-04 15:32 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-11-04 15:32 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-11-04 15:32 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-11-04 15:32 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-11-04 15:32 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-11-04 15:32 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-11-04 15:32 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-11-04 15:32 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-11-04 15:32 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-11-04 15:32 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-11-04 15:32 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-11-04 15:32 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-11-04 15:32 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-11-04 15:32 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-11-04 15:32 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-11-04 15:32 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-11-03 14:20 - 2013-11-03 14:20 - 100422480 _____ (Apple Inc.) D:\Users\Pascal\Downloads\iTunes64Setup.exe 2013-11-03 01:04 - 2013-11-14 17:08 - 00323524 _____ C:\Windows\system32\config\afw_db.conf 2013-11-03 01:04 - 2013-11-14 17:08 - 00002688 _____ C:\Windows\system32\config\afw_hm.conf 2013-11-03 00:14 - 2013-11-03 00:15 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Mumble 2013-11-03 00:14 - 2013-11-03 00:14 - 00002388 _____ D:\Users\Pascal\Documents\MumbleAutomaticCertificateBackup.p12 2013-11-02 18:51 - 2013-11-03 03:37 - 02298368 _____ C:\Windows\system32\config\fsdb.sdb 2013-11-02 18:46 - 2013-11-02 18:49 - 00000000 ____D D:\Users\Pascal\Desktop\Programme 2013-11-02 18:46 - 2013-11-02 18:46 - 00000000 ____D D:\Users\Pascal\Desktop\Zombie 2013-11-02 18:46 - 2013-11-02 18:46 - 00000000 ____D D:\Users\Pascal\Desktop\Shooter 2013-11-02 18:45 - 2013-11-03 15:06 - 00000000 ____D D:\Users\Pascal\Desktop\Strategy 2013-11-02 18:43 - 2013-11-02 18:43 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0 2013-11-02 18:42 - 2013-11-02 18:42 - 02434048 _____ D:\Users\Pascal\Downloads\msxml.msi 2013-11-02 18:42 - 2013-11-02 18:42 - 00000000 ____D C:\Python27 2013-11-02 18:41 - 2013-11-14 18:50 - 00078290 _____ C:\Windows\system32\config\rules.rdb 2013-11-02 18:41 - 2013-11-02 18:42 - 16228352 _____ D:\Users\Pascal\Downloads\python-2.7.5.msi 2013-11-02 18:41 - 2011-03-21 16:29 - 01097672 _____ (Agnitum Ltd.) C:\Windows\system32\Drivers\SandBox64.sys 2013-11-02 18:41 - 2011-02-02 17:04 - 00293048 _____ (VirusBuster Kft.) C:\Windows\system32\Drivers\VBEngNT.sys 2013-11-02 18:41 - 2010-09-27 15:38 - 00424040 _____ (Agnitum Ltd.) C:\Windows\system32\Drivers\afwcore.sys 2013-11-02 18:41 - 2010-04-20 16:02 - 00039528 _____ (Agnitum Ltd.) C:\Windows\system32\Drivers\afw.sys 2013-11-02 18:40 - 2013-11-14 15:14 - 00000000 ____D C:\Windows\system32\Filt 2013-11-02 18:40 - 2013-11-02 18:40 - 00000969 _____ D:\Users\Pascal\Desktop\Mozilla Firefox.lnk 2013-11-02 18:40 - 2013-11-02 18:40 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Agnitum 2013-11-02 18:40 - 2013-11-02 18:40 - 00000000 ____D C:\Program Files\Agnitum 2013-11-02 18:39 - 2013-11-02 18:39 - 109314472 _____ (Agnitum, Ltd. ) D:\Users\Pascal\Downloads\OutpostSecuritySuite711Install64.exe 2013-11-02 18:39 - 2013-11-02 18:39 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2013-11-02 18:37 - 2013-11-07 17:19 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\HpUpdate 2013-11-02 18:37 - 2013-11-02 18:38 - 03607616 _____ (Igor Pavlov) D:\Users\Pascal\Downloads\GmdClientSetup.exe 2013-11-02 18:37 - 2013-11-02 18:37 - 03111104 _____ (Hewlett-Packard ) D:\Users\Pascal\Downloads\hpusetup.exe 2013-11-02 18:37 - 2013-11-02 18:37 - 00000000 ____D C:\Windows\Hewlett-Packard 2013-11-02 18:33 - 2013-11-02 18:33 - 00000000 ____D D:\Users\Pascal\AppData\Local\Secunia PSI 2013-11-02 18:28 - 2013-11-02 18:28 - 00000000 ____D C:\Program Files (x86)\Secunia 2013-11-02 18:28 - 2013-11-02 18:27 - 03864904 _____ (Secunia) D:\Users\Pascal\Downloads\PSISetup_30b8013.exe 2013-11-02 18:25 - 2013-11-02 18:25 - 00000000 ____D C:\Program Files (x86)\Mumble 2013-11-02 18:19 - 2013-11-02 18:19 - 00377856 _____ D:\Users\Pascal\Downloads\gmer_2.1.19163.exe 2013-11-02 18:15 - 2013-11-02 18:15 - 15657984 _____ D:\Users\Pascal\Downloads\mumble-1.2.4.msi 2013-11-02 14:52 - 2013-11-02 14:52 - 00000000 ____D D:\Users\Pascal\AppData\Local\SmartTechnology 2013-11-02 14:50 - 2013-11-02 14:50 - 00000000 ____D C:\Program Files\SmartTechnology 2013-11-02 14:48 - 2013-11-02 14:49 - 129201056 _____ (Mad catz ) D:\Users\Pascal\Downloads\Smart Technology 7_0_27_13 64Bit.exe 2013-11-02 14:48 - 2013-11-02 14:48 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SaiK0CD5_01009.Wdf 2013-11-02 14:47 - 2013-11-02 14:47 - 07838456 _____ (Mad catz ) D:\Users\Pascal\Downloads\Range_RAT5_SD7_0_20_0_64Bit_Drivers_NonWHQL.exe 2013-11-02 13:55 - 2013-10-08 07:50 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-11-02 13:55 - 2013-10-08 07:46 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-11-02 13:55 - 2013-10-08 07:46 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-11-02 13:55 - 2013-10-08 07:46 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-11-02 13:54 - 2013-11-02 13:55 - 00004249 _____ C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log 2013-11-02 13:54 - 2013-11-02 13:54 - 00915368 _____ (Oracle Corporation) D:\Users\Pascal\Downloads\jxpiinstall.exe 2013-11-02 13:53 - 2013-11-02 13:52 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 24278649 _____ D:\Users\Pascal\Downloads\vlc-2.1.0-win32.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-11-02 13:52 - 2013-11-02 13:52 - 00000000 ____D C:\Program Files\Java 2013-11-02 13:51 - 2013-11-02 13:52 - 30694824 _____ (Oracle Corporation) D:\Users\Pascal\Downloads\jre-7u45-windows-x64.exe 2013-11-02 12:15 - 2013-11-02 12:15 - 00240392 _____ D:\Users\Pascal\Downloads\DUCSetup_v4_0_1.exe 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP DUC 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D D:\Users\Pascal\AppData\Local\Vitalwerks 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D C:\Program Files (x86)\No-IP 2013-11-01 01:01 - 2013-11-01 01:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Games 2013-10-28 18:55 - 2013-10-18 02:36 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-10-28 18:55 - 2013-10-18 02:36 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-10-28 18:55 - 2013-09-28 00:01 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-10-28 18:55 - 2013-09-28 00:01 - 00028960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-10-24 19:41 - 2006-06-19 12:01 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ztvcabinet.dll 2013-10-24 19:41 - 2006-05-25 14:52 - 00162304 _____ C:\Windows\SysWOW64\ztvunrar36.dll 2013-10-24 19:41 - 2005-08-26 00:50 - 00077312 _____ C:\Windows\SysWOW64\ztvunace26.dll 2013-10-24 19:41 - 2003-02-02 19:06 - 00153088 _____ C:\Windows\SysWOW64\UNRAR3.dll 2013-10-24 19:41 - 2002-03-06 00:00 - 00075264 _____ C:\Windows\SysWOW64\unacev2.dll 2013-10-24 19:40 - 2013-10-24 19:40 - 00400736 _____ (Softonic ) D:\Users\Pascal\Downloads\SoftonicDownloader_fuer_trojan-remover.exe 2013-10-23 17:56 - 2013-10-23 17:56 - 01143808 _____ D:\Users\Pascal\Desktop\TerrariViewer.exe 2013-10-23 15:13 - 2013-10-23 15:13 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\NVIDIA 2013-10-23 14:27 - 2013-10-16 01:48 - 30344992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 22933280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 18243632 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 15858664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 12537632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-10-23 14:27 - 2013-10-16 01:48 - 11415232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 11362672 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 09516872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 09472600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-10-23 14:08 - 2013-10-23 14:08 - 61758958 _____ (InstallShield Software Corporation) D:\Users\Pascal\Downloads\aox_patch_1_4.exe 2013-10-22 21:53 - 2013-10-22 21:53 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\TeamViewer 2013-10-21 17:37 - 2013-10-16 01:48 - 18290536 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-10-21 17:37 - 2013-10-16 01:48 - 15244272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-10-20 11:29 - 2013-09-12 09:58 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432723.dll 2013-10-20 11:29 - 2013-09-12 09:58 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432723.dll 2013-10-20 11:29 - 2013-06-16 13:38 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2013-10-20 11:29 - 2013-06-16 13:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2013-10-19 21:02 - 2013-10-19 21:02 - 00001063 _____ D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameRanger.lnk 2013-10-19 21:02 - 2013-10-19 21:02 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\GameRanger 2013-10-19 21:01 - 2013-10-19 21:01 - 00114352 _____ (GameRanger Technologies) D:\Users\Pascal\Downloads\GameRangerSetup.exe 2013-10-18 17:54 - 2013-10-18 17:54 - 00000000 ____D D:\Users\Pascal\Documents\Empire Earth II 2013-10-18 17:54 - 2013-10-18 17:54 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Sierra 2013-10-18 17:53 - 2013-10-22 19:18 - 00043520 _____ C:\Windows\SysWOW64\CmdLineExt03.dll 2013-10-18 17:47 - 2013-10-18 17:47 - 00000000 ____D C:\Program Files (x86)\Sierra 2013-10-17 20:37 - 2013-10-17 20:37 - 05840896 _____ D:\Users\Pascal\Downloads\Hamachi220.msi 2013-10-17 18:42 - 2013-10-16 01:48 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-10-17 18:42 - 2013-10-16 01:48 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-10-17 18:42 - 2013-10-15 22:47 - 06665504 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-10-17 18:42 - 2013-10-15 22:47 - 03489568 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-10-17 18:42 - 2013-10-15 22:47 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-10-17 18:42 - 2013-10-15 22:47 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-10-17 18:42 - 2013-10-15 22:47 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-10-17 18:42 - 2013-10-15 22:47 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-10-17 18:42 - 2013-10-08 20:14 - 03398914 _____ C:\Windows\system32\nvcoproc.bin 2013-10-17 18:41 - 2013-10-16 01:48 - 03067560 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-10-17 18:41 - 2013-10-16 01:48 - 02694664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-10-17 18:41 - 2013-10-16 01:48 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-10-17 18:41 - 2013-10-16 01:48 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-10-17 18:41 - 2013-10-16 01:48 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-10-17 18:41 - 2013-10-16 01:48 - 00023287 _____ C:\Windows\system32\nvinfo.pb 2013-10-17 18:41 - 2013-06-21 13:06 - 01832224 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432049.dll 2013-10-17 18:41 - 2013-06-21 13:06 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432049.dll 2013-10-17 18:41 - 2013-01-29 09:35 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2013-10-17 18:38 - 2013-10-17 18:40 - 229594432 _____ (NVIDIA Corporation) D:\Users\Pascal\Downloads\320.49-desktop-win8-win7-winvista-64bit-international-whql.exe 2013-10-17 18:34 - 2013-10-17 18:35 - 72084464 _____ (NVIDIA Corporation) D:\Users\Pascal\Downloads\310.70-desktop-win8-win7-winvista-64bit-international-whql.exe 2013-10-17 18:26 - 2013-10-17 18:26 - 242200864 _____ (NVIDIA Corporation) D:\Users\Pascal\Downloads\327.23-desktop-win8-win7-winvista-64bit-international-whql.exe 2013-10-16 20:23 - 2013-09-04 13:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2013-10-16 20:23 - 2013-09-04 13:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2013-10-16 20:23 - 2013-09-04 13:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2013-10-16 20:23 - 2013-09-04 13:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2013-10-16 20:23 - 2013-09-04 13:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2013-10-16 20:23 - 2013-09-04 13:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2013-10-16 20:23 - 2013-09-04 13:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2013-10-16 19:15 - 2013-10-16 19:15 - 00400736 _____ (Softonic ) D:\Users\Pascal\Downloads\SoftonicDownloader_fuer_gamespy-arcade.exe 2013-10-16 18:58 - 2013-10-16 18:58 - 05849088 _____ D:\Users\Pascal\Downloads\hamachi.msi 2013-10-16 18:15 - 2013-10-16 18:15 - 00002986 _____ C:\Windows\System32\Tasks\{978D56AE-F8BA-443F-A714-BC94B858AC7D} 2013-10-15 15:58 - 2013-10-15 15:58 - 00001862 _____ D:\Users\UpdatusUser.Pascal-PC\Desktop\American Conquest.lnk 2013-10-15 15:58 - 2013-10-15 15:58 - 00001862 _____ D:\Users\Martini\Desktop\American Conquest.lnk 2013-10-15 15:58 - 2013-10-15 15:58 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\American Conquest 2013-10-15 15:56 - 2013-10-17 19:00 - 00000000 ____D C:\Program Files (x86)\American Conquest 2013-10-15 15:55 - 2013-10-15 15:55 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cossacks - Back To War 2013-10-15 15:54 - 2013-10-15 15:54 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-10-15 15:53 - 2013-10-29 21:39 - 00000000 ____D C:\Program Files (x86)\Cossacks - Back To War 2013-10-15 15:53 - 2013-10-15 15:53 - 00053248 _____ C:\Windows\SysWOW64\unrar.dll 2013-10-15 15:18 - 2013-10-15 15:18 - 00001943 _____ D:\Users\UpdatusUser.Pascal-PC\Desktop\No Man's Land.lnk 2013-10-15 15:18 - 2013-10-15 15:18 - 00001943 _____ D:\Users\Martini\Desktop\No Man's Land.lnk 2013-10-15 15:18 - 2013-10-15 15:18 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No Man's Land 2013-10-15 15:15 - 2013-10-15 15:18 - 00000000 ____D C:\Program Files (x86)\No Man's Land ==================== One Month Modified Files and Folders ======= 2013-11-14 18:50 - 2013-11-14 18:50 - 01957794 _____ (Farbar) D:\Users\Pascal\Downloads\FRST64.exe 2013-11-14 18:50 - 2013-11-14 18:50 - 00000000 _____ D:\Users\Pascal\Downloads\FRST.txt 2013-11-14 18:50 - 2013-11-02 18:41 - 00078290 _____ C:\Windows\system32\config\rules.rdb 2013-11-14 18:44 - 2013-08-10 18:59 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Skype 2013-11-14 18:42 - 2013-08-10 16:40 - 00000000 ____D C:\Program Files (x86)\Steam 2013-11-14 18:41 - 2013-08-10 23:32 - 00000000 ____D D:\Users\Pascal\AppData\Local\LogMeIn Hamachi 2013-11-14 18:41 - 2013-08-10 13:32 - 01663536 _____ C:\Windows\WindowsUpdate.log 2013-11-14 18:39 - 2009-07-14 05:45 - 00026768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-14 18:39 - 2009-07-14 05:45 - 00026768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-14 18:36 - 2013-08-10 20:03 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-14 18:30 - 2013-11-14 18:30 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-11-14 18:30 - 2013-11-10 00:51 - 00001546 _____ C:\Windows\setupact.log 2013-11-14 18:30 - 2013-11-05 13:52 - 00000810 _____ D:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2013-11-14 18:30 - 2013-09-26 15:39 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2013-11-14 18:29 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-11-14 17:08 - 2013-11-03 01:04 - 00323524 _____ C:\Windows\system32\config\afw_db.conf 2013-11-14 17:08 - 2013-11-03 01:04 - 00002688 _____ C:\Windows\system32\config\afw_hm.conf 2013-11-14 17:06 - 2013-08-10 14:27 - 00000000 ____D C:\Windows\Panther 2013-11-14 17:04 - 2013-08-10 20:03 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-11-14 17:04 - 2013-08-10 20:03 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-11-14 17:04 - 2013-08-10 20:03 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-11-14 16:52 - 2013-08-10 15:39 - 00000000 ____D C:\Windows\system32\MRT 2013-11-14 16:51 - 2013-08-10 14:15 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-11-14 15:14 - 2013-11-02 18:40 - 00000000 ____D C:\Windows\system32\Filt 2013-11-13 20:34 - 2013-11-13 20:34 - 00002195 _____ D:\Users\UpdatusUser.Pascal-PC\Desktop\Age of Chivalry Hegemony.lnk 2013-11-13 20:34 - 2013-11-13 20:34 - 00002195 _____ D:\Users\Pascal\Desktop\Age of Chivalry Hegemony.lnk 2013-11-13 20:34 - 2013-11-13 20:34 - 00002195 _____ D:\Users\Martini\Desktop\Age of Chivalry Hegemony.lnk 2013-11-13 20:34 - 2013-11-13 20:34 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Age of Chivalry Hegemony 2013-11-13 17:45 - 2013-11-13 17:45 - 00000000 ____D C:\Program Files (x86)\Workshell 2013-11-10 21:14 - 2013-08-10 23:16 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\TS3Client 2013-11-10 20:34 - 2013-08-11 15:18 - 00214392 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-11-10 20:11 - 2013-08-11 15:18 - 00214392 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-11-10 20:02 - 2013-08-10 16:38 - 00000000 ____D C:\Program Files (x86)\Origin 2013-11-10 00:51 - 2013-11-10 00:51 - 00000000 _____ C:\Windows\setuperr.log 2013-11-09 12:56 - 2013-11-09 12:56 - 00001697 _____ D:\Users\Public\Desktop\iTunes.lnk 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files\iTunes 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files\iPod 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-11-09 10:58 - 2013-08-10 20:51 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Origin 2013-11-08 18:13 - 2010-11-21 07:50 - 00702964 _____ C:\Windows\system32\perfh007.dat 2013-11-08 18:13 - 2010-11-21 07:50 - 00150604 _____ C:\Windows\system32\perfc007.dat 2013-11-08 18:13 - 2009-07-14 06:13 - 01629436 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-07 17:23 - 2013-11-07 17:23 - 00501248 _____ (Facebook Inc.) D:\Users\Pascal\Downloads\FacebookVideoCallSetup_v1.2.205.0.exe 2013-11-07 17:19 - 2013-11-02 18:37 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\HpUpdate 2013-11-04 20:36 - 2013-08-11 12:28 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\.minecraft 2013-11-04 15:46 - 2013-08-11 15:18 - 00000000 ____D D:\Users\Pascal\AppData\Local\PunkBuster 2013-11-04 15:40 - 2013-11-04 15:38 - 00000000 ____D D:\Users\Pascal\Documents\Battlefield 4 2013-11-04 15:35 - 2013-11-04 15:33 - 00001066 _____ D:\Users\Public\Desktop\Battlefield 4.lnk 2013-11-04 15:33 - 2013-09-07 16:44 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2013-11-04 15:33 - 2013-08-11 15:18 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-11-04 13:09 - 2013-08-10 20:52 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-11-04 13:02 - 2009-07-14 06:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-11-03 15:06 - 2013-11-02 18:45 - 00000000 ____D D:\Users\Pascal\Desktop\Strategy 2013-11-03 15:02 - 2013-08-11 12:33 - 00000000 ____D D:\Users\Pascal\Desktop\Server 2013-11-03 14:20 - 2013-11-03 14:20 - 100422480 _____ (Apple Inc.) D:\Users\Pascal\Downloads\iTunes64Setup.exe 2013-11-03 03:37 - 2013-11-02 18:51 - 02298368 _____ C:\Windows\system32\config\fsdb.sdb 2013-11-03 02:12 - 2013-10-02 19:15 - 00000000 ____D D:\Users\Pascal\Desktop\Terraria server 2013-11-03 00:15 - 2013-11-03 00:14 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Mumble 2013-11-03 00:14 - 2013-11-03 00:14 - 00002388 _____ D:\Users\Pascal\Documents\MumbleAutomaticCertificateBackup.p12 2013-11-02 23:14 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-11-02 18:51 - 2013-08-10 15:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-11-02 18:49 - 2013-11-02 18:46 - 00000000 ____D D:\Users\Pascal\Desktop\Programme 2013-11-02 18:46 - 2013-11-02 18:46 - 00000000 ____D D:\Users\Pascal\Desktop\Zombie 2013-11-02 18:46 - 2013-11-02 18:46 - 00000000 ____D D:\Users\Pascal\Desktop\Shooter 2013-11-02 18:43 - 2013-11-02 18:43 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0 2013-11-02 18:42 - 2013-11-02 18:42 - 02434048 _____ D:\Users\Pascal\Downloads\msxml.msi 2013-11-02 18:42 - 2013-11-02 18:42 - 00000000 ____D C:\Python27 2013-11-02 18:42 - 2013-11-02 18:41 - 16228352 _____ D:\Users\Pascal\Downloads\python-2.7.5.msi 2013-11-02 18:40 - 2013-11-02 18:40 - 00000969 _____ D:\Users\Pascal\Desktop\Mozilla Firefox.lnk 2013-11-02 18:40 - 2013-11-02 18:40 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Agnitum 2013-11-02 18:40 - 2013-11-02 18:40 - 00000000 ____D C:\Program Files\Agnitum 2013-11-02 18:40 - 2013-10-02 18:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-02 18:39 - 2013-11-02 18:39 - 109314472 _____ (Agnitum, Ltd. ) D:\Users\Pascal\Downloads\OutpostSecuritySuite711Install64.exe 2013-11-02 18:39 - 2013-11-02 18:39 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2013-11-02 18:38 - 2013-11-02 18:37 - 03607616 _____ (Igor Pavlov) D:\Users\Pascal\Downloads\GmdClientSetup.exe 2013-11-02 18:38 - 2013-09-25 15:15 - 00000000 ____D C:\Program Files (x86)\HP 2013-11-02 18:37 - 2013-11-02 18:37 - 03111104 _____ (Hewlett-Packard ) D:\Users\Pascal\Downloads\hpusetup.exe 2013-11-02 18:37 - 2013-11-02 18:37 - 00000000 ____D C:\Windows\Hewlett-Packard 2013-11-02 18:33 - 2013-11-02 18:33 - 00000000 ____D D:\Users\Pascal\AppData\Local\Secunia PSI 2013-11-02 18:28 - 2013-11-02 18:28 - 00000000 ____D C:\Program Files (x86)\Secunia 2013-11-02 18:27 - 2013-11-02 18:28 - 03864904 _____ (Secunia) D:\Users\Pascal\Downloads\PSISetup_30b8013.exe 2013-11-02 18:25 - 2013-11-02 18:25 - 00000000 ____D C:\Program Files (x86)\Mumble 2013-11-02 18:19 - 2013-11-02 18:19 - 00377856 _____ D:\Users\Pascal\Downloads\gmer_2.1.19163.exe 2013-11-02 18:15 - 2013-11-02 18:15 - 15657984 _____ D:\Users\Pascal\Downloads\mumble-1.2.4.msi 2013-11-02 14:52 - 2013-11-02 14:52 - 00000000 ____D D:\Users\Pascal\AppData\Local\SmartTechnology 2013-11-02 14:50 - 2013-11-02 14:50 - 00000000 ____D C:\Program Files\SmartTechnology 2013-11-02 14:49 - 2013-11-02 14:48 - 129201056 _____ (Mad catz ) D:\Users\Pascal\Downloads\Smart Technology 7_0_27_13 64Bit.exe 2013-11-02 14:48 - 2013-11-02 14:48 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SaiK0CD5_01009.Wdf 2013-11-02 14:47 - 2013-11-02 14:47 - 07838456 _____ (Mad catz ) D:\Users\Pascal\Downloads\Range_RAT5_SD7_0_20_0_64Bit_Drivers_NonWHQL.exe 2013-11-02 13:55 - 2013-11-02 13:54 - 00004249 _____ C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log 2013-11-02 13:55 - 2013-09-20 18:41 - 00000000 ____D C:\Program Files (x86)\Java 2013-11-02 13:54 - 2013-11-02 13:54 - 00915368 _____ (Oracle Corporation) D:\Users\Pascal\Downloads\jxpiinstall.exe 2013-11-02 13:52 - 2013-11-02 13:53 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 24278649 _____ D:\Users\Pascal\Downloads\vlc-2.1.0-win32.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-11-02 13:52 - 2013-11-02 13:52 - 00000000 ____D C:\Program Files\Java 2013-11-02 13:52 - 2013-11-02 13:51 - 30694824 _____ (Oracle Corporation) D:\Users\Pascal\Downloads\jre-7u45-windows-x64.exe 2013-11-02 12:15 - 2013-11-02 12:15 - 00240392 _____ D:\Users\Pascal\Downloads\DUCSetup_v4_0_1.exe 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP DUC 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D D:\Users\Pascal\AppData\Local\Vitalwerks 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D C:\Program Files (x86)\No-IP 2013-11-01 06:49 - 2009-07-14 05:45 - 00419568 _____ C:\Windows\system32\FNTCACHE.DAT 2013-11-01 06:34 - 2013-08-10 20:45 - 00110048 _____ D:\Users\Pascal\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-01 01:04 - 2013-08-10 23:20 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-11-01 01:01 - 2013-11-01 01:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Games 2013-10-29 21:39 - 2013-10-15 15:53 - 00000000 ____D C:\Program Files (x86)\Cossacks - Back To War 2013-10-29 18:42 - 2013-08-10 20:54 - 00000000 ____D D:\Users\Pascal\AppData\Local\TeamSpeak 3 Client 2013-10-29 15:58 - 2013-08-10 16:44 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-10-28 18:55 - 2013-09-29 21:35 - 00000000 ____D D:\Users\UpdatusUser.Pascal-PC 2013-10-28 18:55 - 2013-08-10 14:02 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-10-28 18:55 - 2013-08-10 14:02 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-10-24 20:49 - 2013-10-01 17:39 - 00000000 ____D C:\Windows\Minidump 2013-10-24 20:00 - 2013-09-30 19:54 - 00000000 ____D C:\Program Files (x86)\Trojan Remover 2013-10-24 19:40 - 2013-10-24 19:40 - 00400736 _____ (Softonic ) D:\Users\Pascal\Downloads\SoftonicDownloader_fuer_trojan-remover.exe 2013-10-23 17:56 - 2013-10-23 17:56 - 01143808 _____ D:\Users\Pascal\Desktop\TerrariViewer.exe 2013-10-23 15:13 - 2013-10-23 15:13 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\NVIDIA 2013-10-23 14:08 - 2013-10-23 14:08 - 61758958 _____ (InstallShield Software Corporation) D:\Users\Pascal\Downloads\aox_patch_1_4.exe 2013-10-22 21:53 - 2013-10-22 21:53 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\TeamViewer 2013-10-22 19:18 - 2013-10-18 17:53 - 00043520 _____ C:\Windows\SysWOW64\CmdLineExt03.dll 2013-10-19 21:52 - 2013-09-19 16:12 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-10-19 21:02 - 2013-10-19 21:02 - 00001063 _____ D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameRanger.lnk 2013-10-19 21:02 - 2013-10-19 21:02 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\GameRanger 2013-10-19 21:01 - 2013-10-19 21:01 - 00114352 _____ (GameRanger Technologies) D:\Users\Pascal\Downloads\GameRangerSetup.exe 2013-10-18 17:54 - 2013-10-18 17:54 - 00000000 ____D D:\Users\Pascal\Documents\Empire Earth II 2013-10-18 17:54 - 2013-10-18 17:54 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Sierra 2013-10-18 17:47 - 2013-10-18 17:47 - 00000000 ____D C:\Program Files (x86)\Sierra 2013-10-18 17:47 - 2013-08-10 15:29 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-10-18 02:36 - 2013-10-28 18:55 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-10-18 02:36 - 2013-10-28 18:55 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-10-17 20:37 - 2013-10-17 20:37 - 05840896 _____ D:\Users\Pascal\Downloads\Hamachi220.msi 2013-10-17 20:17 - 2013-08-10 18:58 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\vlc 2013-10-17 19:00 - 2013-10-15 15:56 - 00000000 ____D C:\Program Files (x86)\American Conquest 2013-10-17 18:42 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Help 2013-10-17 18:40 - 2013-10-17 18:38 - 229594432 _____ (NVIDIA Corporation) D:\Users\Pascal\Downloads\320.49-desktop-win8-win7-winvista-64bit-international-whql.exe 2013-10-17 18:35 - 2013-10-17 18:34 - 72084464 _____ (NVIDIA Corporation) D:\Users\Pascal\Downloads\310.70-desktop-win8-win7-winvista-64bit-international-whql.exe 2013-10-17 18:26 - 2013-10-17 18:26 - 242200864 _____ (NVIDIA Corporation) D:\Users\Pascal\Downloads\327.23-desktop-win8-win7-winvista-64bit-international-whql.exe 2013-10-16 19:15 - 2013-10-16 19:15 - 00400736 _____ (Softonic ) D:\Users\Pascal\Downloads\SoftonicDownloader_fuer_gamespy-arcade.exe 2013-10-16 18:58 - 2013-10-16 18:58 - 05849088 _____ D:\Users\Pascal\Downloads\hamachi.msi 2013-10-16 18:15 - 2013-10-16 18:15 - 00002986 _____ C:\Windows\System32\Tasks\{978D56AE-F8BA-443F-A714-BC94B858AC7D} 2013-10-16 01:48 - 2013-10-23 14:27 - 30344992 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 22933280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 18243632 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 15858664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 12537632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-10-16 01:48 - 2013-10-23 14:27 - 11415232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 11362672 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 09516872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 09472600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-10-16 01:48 - 2013-10-23 14:27 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-10-16 01:48 - 2013-10-21 17:37 - 18290536 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-10-16 01:48 - 2013-10-21 17:37 - 15244272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-10-16 01:48 - 2013-10-17 18:42 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-10-16 01:48 - 2013-10-17 18:42 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-10-16 01:48 - 2013-10-17 18:41 - 03067560 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-10-16 01:48 - 2013-10-17 18:41 - 02694664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-10-16 01:48 - 2013-10-17 18:41 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-10-16 01:48 - 2013-10-17 18:41 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-10-16 01:48 - 2013-10-17 18:41 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-10-16 01:48 - 2013-10-17 18:41 - 00023287 _____ C:\Windows\system32\nvinfo.pb 2013-10-15 22:47 - 2013-10-17 18:42 - 06665504 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-10-15 22:47 - 2013-10-17 18:42 - 03489568 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-10-15 22:47 - 2013-10-17 18:42 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-10-15 22:47 - 2013-10-17 18:42 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-10-15 22:47 - 2013-10-17 18:42 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-10-15 22:47 - 2013-10-17 18:42 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-10-15 15:58 - 2013-10-15 15:58 - 00001862 _____ D:\Users\UpdatusUser.Pascal-PC\Desktop\American Conquest.lnk 2013-10-15 15:58 - 2013-10-15 15:58 - 00001862 _____ D:\Users\Martini\Desktop\American Conquest.lnk 2013-10-15 15:58 - 2013-10-15 15:58 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\American Conquest 2013-10-15 15:55 - 2013-10-15 15:55 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cossacks - Back To War 2013-10-15 15:54 - 2013-10-15 15:54 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-10-15 15:53 - 2013-10-15 15:53 - 00053248 _____ C:\Windows\SysWOW64\unrar.dll 2013-10-15 15:18 - 2013-10-15 15:18 - 00001943 _____ D:\Users\UpdatusUser.Pascal-PC\Desktop\No Man's Land.lnk 2013-10-15 15:18 - 2013-10-15 15:18 - 00001943 _____ D:\Users\Martini\Desktop\No Man's Land.lnk 2013-10-15 15:18 - 2013-10-15 15:18 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No Man's Land 2013-10-15 15:18 - 2013-10-15 15:15 - 00000000 ____D C:\Program Files (x86)\No Man's Land Some content of TEMP: ==================== D:\Users\Martini\AppData\Local\Temp\nv3DVStreaming.dll D:\Users\Martini\AppData\Local\Temp\nvSCPAPI.dll D:\Users\Martini\AppData\Local\Temp\nvStereoApiI.dll D:\Users\Martini\AppData\Local\Temp\nvStInst.exe D:\Users\Martini\AppData\Local\Temp\sonarinst.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-10 00:11 ==================== End Of Log ============================ Danke schon mal an dieser stelle Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-11-2013 Ran by Pascal at 2013-11-14 18:51:43 Running from D:\Users\Pascal\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Disabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C} AV: Outpost Security Suite (Disabled - Up to date) {ECEA6BCD-A007-0BC7-D5A5-0254DCBD816E} AS: avast! Antivirus (Disabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681} AS: Outpost Security Suite (Disabled - Up to date) {578B8A29-863D-0449-EF15-3926A73ACBD3} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Outpost Security Suite (Enabled) {D4D1EAE8-EA68-0A9F-FEFA-AB61226EC615} ==================== Installed Programs ====================== 4500_G510af_Help (x32 Version: 000.0.439.000) 4500G510af (x32 Version: 000.0.423.000) 4500G510af_Software_Min (x32 Version: 000.0.423.000) 64 Bit HP CIO Components Installer (Version: 6.2.1) Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.152) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.152) AFA - Mod 1.2 (x32 Version: 1.2) Age of Chivalry: Hegemony 1.83 (x32 Version: 1.83) Age of Empires II: HD Edition (x32) American Conquest (x32) America's Army 3 (x32) ANNO 2070 (x32 Version: 1.0.0.0) Apple Application Support (x32 Version: 2.3.6) Apple Mobile Device Support (Version: 7.0.0.117) Apple Software Update (x32 Version: 2.1.3.127) Armies of Exigo (x32 Version: 1.00.0000) ArtMoney SE v7.41 (x32 Version: 7.41) Aufstieg des Hexenkönigs™ (x32) avast! Free Antivirus (x32 Version: 8.0.1497.0) Battlefield 1942™ (x32 Version: 1.6.20.0) Battlefield 3™ (x32 Version: 1.6.0.0) Battlefield 4™ (x32 Version: 1.0.0.0) Battlelog Web Plugins (x32 Version: 2.3.0) BitTorrent (HKCU Version: 7.8.1.30016) Bonjour (Version: 3.0.0.10) BufferChm (x32 Version: 130.0.331.000) Burnout(TM) Paradise The Ultimate Box (x32 Version: 1.1.0.0) Call of Duty: Black Ops II - Multiplayer (x32) Call of Duty: Black Ops II - Zombies (x32) Call of Duty: Modern Warfare 2 - Multiplayer (x32) Call of Duty: Modern Warfare 2 (x32) Call of Duty: World at War (x32) CCleaner (Version: 4.05) Cossacks - Back To War (x32) DAEMON Tools Lite (x32 Version: 4.47.1.0335) Dead Space™ (x32 Version: 1.0.222.0) Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition Destinations (x32 Version: 130.0.0.0) DeviceDiscovery (x32 Version: 130.0.372.000) Die Schlacht um Beleriand II - 3.ZA Edition (x32) Die Schlacht um Mittelerde™ II (x32) DocMgr (x32 Version: 130.0.000.000) DocProc (x32 Version: 13.0.0.0) Empire Earth II (x32 Version: 1.02) ESET Online Scanner v3 (x32) ESN Sonar (x32 Version: 0.70.4) Fax (x32 Version: 130.0.418.000) ffdshow v1.2.4422 [2012-04-09] (x32 Version: 1.2.4422.0) Forged Alliance Forever (x32 Version: 240.8.73) Free YouTube to MP3 Converter version 3.12.9.725 (x32 Version: 3.12.9.725) GameRanger (HKCU) GeForce Experience NvStream Client Components (Version: 1.6.28) GPBaseService2 (x32 Version: 130.0.371.000) Hewlett-Packard ACLM.NET v1.1.0.0 (x32 Version: 1.00.0000) HP Customer Participation Program 13.0 (Version: 13.0) HP Document Manager 2.0 (Version: 2.0) HP Imaging Device Functions 13.0 (Version: 13.0) HP Officejet 4500 G510a-f (Version: 13.0) HP Product Detection (x32 Version: 11.14.0001) HP Smart Web Printing 4.5 (Version: 4.5) HP Solution Center 13.0 (Version: 13.0) HP Update (x32 Version: 5.005.000.001) HPProductAssistant (x32 Version: 130.0.371.000) HPSSupply (x32 Version: 130.0.371.000) Infestation: Survivor Stories (x32) Intel(R) Management Engine Components (x32 Version: 8.1.0.1252) Intel(R) Processor Graphics (x32 Version: 9.17.10.2932) Intel® Trusted Connect Service Client (Version: 1.24.388.1) iTunes (Version: 11.1.3.8) Java 7 Update 45 (64-bit) (Version: 7.0.450) Java 7 Update 45 (x32 Version: 7.0.450) Java Auto Updater (x32 Version: 2.1.9.8) Killing Floor (x32) Left 4 Dead 2 (x32) LogMeIn Hamachi (x32 Version: 2.2.0.105) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300) MarketResearch (x32 Version: 130.0.374.000) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4.5 (Version: 4.5.50709) Microsoft Age of Empires II (x32) Microsoft Age of Empires II: The Conquerors Expansion (x32) Microsoft Office Access MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Excel MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Groove MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office InfoPath MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Office 32-bit Components 2010 (Version: 14.0.7015.1000) Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000) Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000) Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000) Microsoft Office Proof (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Proof (Italian) 2010 (Version: 14.0.7015.1000) Microsoft Office Proofing (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Shared 32-bit MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Shared MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Word MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Silverlight (Version: 5.1.20913.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610) Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0) Mirror's Edge™ (x32 Version: 1.0.1.0) Mozilla Firefox 25.0 (x86 de) (x32 Version: 25.0) Mozilla Maintenance Service (x32 Version: 25.0) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0) Mumble 1.2.4 (x32 Version: 1.2.4) No Man's Land (x32) No-IP DUC (x32 Version: 4.0.1) Notepad++ (x32 Version: 6.4.5) NVIDIA 3D Vision Controller-Treiber 331.58 (Version: 331.58) NVIDIA 3D Vision Treiber 331.58 (Version: 331.58) NVIDIA GeForce Experience 1.7 (Version: 1.7) NVIDIA Grafiktreiber 331.58 (Version: 331.58) NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4) NVIDIA Install Application (Version: 2.1002.140.952) NVIDIA LED Visualizer 1.0 (Version: 1.0) NVIDIA PhysX (x32 Version: 9.13.0725) NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725) NVIDIA ShadowPlay 9.3.16 (Version: 9.3.16) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3158) NVIDIA Systemsteuerung 331.58 (Version: 331.58) NVIDIA Update 9.3.16 (Version: 9.3.16) NVIDIA Update Components (Version: 9.3.16) NVIDIA Virtual Audio 1.2.9 (Version: 1.2.9) OCR Software by I.R.I.S. 13.0 (Version: 13.0) Origin (x32 Version: 9.3.1.4482) Outpost Security Suite 7.1.1 (Version: 7.1.1) PC Wizard 2012.2.11 (x32) PunkBuster Services (x32 Version: 0.993) Python 2.7.5 (x32 Version: 2.7.5150) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6662) Recuva (Version: 1.48) Revo Uninstaller 1.95 (x32 Version: 1.95) Scan (x32 Version: 13.0.0.0) Secunia PSI (3.0.0.8013) (x32 Version: 3.0.0.8013) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition SHIELD Streaming (Version: 1.6.34) Shop for HP Supplies (Version: 13.0) Sins of a Solar Empire: Rebellion (x32) Skype™ 6.9 (x32 Version: 6.9.106) Smart Technology Programming Software 7.0.27.13 (Version: 7.0.27.13) SmartWebPrinting (x32 Version: 130.0.373.000) SolutionCenter (x32 Version: 130.0.373.000) Space Colony HD (x32 Version: 2.0.0.5) SpeedFan (remove only) (x32) SPORE™ (x32 Version: 1.04.0000) SPORE™ Galaktische Abenteuer (x32 Version: 1.00.0000) SPORE™ Süß & Schrecklich Ergänzungs-Pack (x32 Version: 1.00.0000) Status (x32 Version: 130.0.373.000) Steam (x32 Version: 1.0.0.0) Stronghold 2 (x32 Version: 1.40.1000) Stronghold Legends (x32 Version: 1.20.0000) Supreme Commander (x32) Supreme Commander 2 (x32) Supreme Commander: Forged Alliance (x32) TeamSpeak 3 Client (HKCU Version: 3.0.13.1) TeamViewer 8 (x32 Version: 8.0.20935) Terraria (x32) Toolbox (x32 Version: 130.0.648.000) TrayApp (x32 Version: 130.0.376.000) Trojan Remover 6.8.8 (x32 Version: 6.8.8) Ubisoft Game Launcher (x32 Version: 1.0.0.0) Update for Microsoft .NET Framework 4.5 (KB2750147) (x32 Version: 1) Update for Microsoft .NET Framework 4.5 (KB2805221) (x32 Version: 1) Update for Microsoft .NET Framework 4.5 (KB2805226) (x32 Version: 1) Update for Microsoft Access 2010 (KB2553446) 64-Bit Edition Update for Microsoft Filter Pack 2.0 (KB2810071) 64-Bit Edition Update for Microsoft Office 2010 (KB2553092) Update for Microsoft Office 2010 (KB2589298) 64-Bit Edition Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition Update for Microsoft Office 2010 (KB2589375) 64-Bit Edition Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition Update for Microsoft Office 2010 (KB2760631) 64-Bit Edition Update for Microsoft Office 2010 (KB2794737) 64-Bit Edition Update for Microsoft Office 2010 (KB2825640) 64-Bit Edition Update for Microsoft Office 2010 (KB2826026) 64-Bit Edition Update for Microsoft OneNote 2010 (KB2810072) 64-Bit Edition Update for Microsoft PowerPoint 2010 (KB2553145) 64-Bit Edition Update for Microsoft Visio Viewer 2010 (KB2810066) 64-Bit Edition Update for Microsoft Word 2010 (KB2827323) 64-Bit Edition Version 3.1 (x32) VLC media player 2.1.0 (x32 Version: 2.1.0) WebReg (x32 Version: 130.0.132.017) WinRAR 5.00 (64-bit) (Version: 5.00.0) ==================== Restore Points ========================= 10-11-2013 18:00:18 Windows-Sicherung 12-11-2013 17:11:57 Windows Update 14-11-2013 15:50:32 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {2002CB15-5758-455F-835F-304DFC1D7D9D} - System32\Tasks\{978D56AE-F8BA-443F-A714-BC94B858AC7D} => C:\Program Files (x86)\No Man's Land\Run\No Man's Land.exe [2006-01-19] () Task: {3B538082-58E3-4809-9868-4DD69CF0C5D4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-14] (Adobe Systems Incorporated) Task: {496DA08F-F1CA-4CE6-9E4B-B4FA9E0C4380} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-08-21] (Piriform Ltd) Task: {6943A4C3-604E-478C-8890-1B89D8ED1A8E} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-23] (Microsoft Corporation) Task: {9DC28829-AF32-44DE-9487-1DF911F3B89A} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {C591C0FA-8921-4055-B164-AFD9EC47130A} - System32\Tasks\{D185040C-C4E9-43F3-B7BE-09025674E83C} => Firefox.exe Task: {D2D26D8D-F3B2-4410-B9D4-7B3D72CEF633} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {EDA15214-26DC-4E6C-AF2A-43289C197139} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-08-30] (AVAST Software) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2013-10-17 18:42 - 2013-10-15 22:47 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-11-02 18:41 - 2009-12-03 08:28 - 00270336 _____ () C:\Program Files\Agnitum\Outpost Security Suite Free\unrar.dll 2013-11-02 18:41 - 2009-12-03 08:28 - 00243200 _____ () C:\Program Files\Agnitum\Outpost Security Suite Free\zlib.dll 2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2012-12-14 01:42 - 2012-12-14 01:42 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-11-02 18:41 - 2011-03-30 19:02 - 00264200 _____ () C:\Program Files\Agnitum\Outpost Security Suite Free\w7_gui.dll 2013-11-14 15:08 - 2013-11-14 11:25 - 02233344 _____ () C:\Program Files\AVAST Software\Avast\defs\13111400\algo.dll 2013-04-21 20:44 - 2013-04-21 20:44 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-04-21 20:44 - 2013-04-21 20:44 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2013-07-01 07:20 - 2013-10-24 18:45 - 00691200 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2013-07-26 13:46 - 2013-10-30 20:25 - 01123240 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2013-07-15 13:32 - 2013-10-23 21:07 - 20625832 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2013-06-14 14:49 - 2013-06-15 00:49 - 01100800 _____ () C:\Program Files (x86)\Steam\bin\avcodec-53.dll 2013-06-14 14:49 - 2013-06-15 00:49 - 00124416 _____ () C:\Program Files (x86)\Steam\bin\avutil-51.dll 2013-06-14 14:49 - 2013-06-15 00:49 - 00192000 _____ () C:\Program Files (x86)\Steam\bin\avformat-53.dll 2013-10-02 18:19 - 2013-10-26 02:53 - 03368048 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2013-11-14 17:04 - 2013-11-14 17:04 - 16237448 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Faulty Device Manager Devices ============= Name: avast! Firewall NDIS Filter Miniport Description: avast! Firewall NDIS Filter Miniport Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: ALWIL Software Service: aswNdis Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (11/14/2013 06:31:00 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (11/14/2013 05:07:32 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (11/14/2013 04:50:33 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-3527207512-1547861424-694024003-1003.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. . Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {108faeaf-ee95-4af7-9c1b-5e4e906a13d7} Error: (11/14/2013 03:30:43 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (11/14/2013 03:09:38 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (11/13/2013 06:25:21 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: AoK HD.exe, Version: 3.0.1570.0, Zeitstempel: 0x5282a1e6 Name des fehlerhaften Moduls: AoK HD.exe, Version: 3.0.1570.0, Zeitstempel: 0x5282a1e6 Ausnahmecode: 0xc0000409 Fehleroffset: 0x0004f6c2 ID des fehlerhaften Prozesses: 0x1774 Startzeit der fehlerhaften Anwendung: 0xAoK HD.exe0 Pfad der fehlerhaften Anwendung: AoK HD.exe1 Pfad des fehlerhaften Moduls: AoK HD.exe2 Berichtskennung: AoK HD.exe3 Error: (11/13/2013 01:42:00 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (11/13/2013 11:46:17 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (11/12/2013 07:23:17 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (11/12/2013 06:11:58 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-3527207512-1547861424-694024003-1003.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. . Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {5dcdfe04-3b09-4df3-96bc-558dda3e8a63} System errors: ============= Error: (11/14/2013 06:30:58 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "LogMeIn Hamachi Tunneling Engine" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (11/12/2013 07:27:03 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (11/12/2013 07:27:01 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (11/08/2013 08:17:15 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (11/08/2013 08:17:12 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (11/08/2013 06:13:47 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Definition Update for Windows Defender - KB915597 (Definition 1.161.1652.0) Error: (11/06/2013 05:09:20 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "LogMeIn Hamachi Tunneling Engine" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (11/06/2013 05:09:20 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst LogMeIn Hamachi Tunneling Engine erreicht. Error: (11/06/2013 05:07:42 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 06.11.2013 um 13:42:47 unerwartet heruntergefahren. Error: (11/05/2013 01:52:40 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "LogMeIn Hamachi Tunneling Engine" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Microsoft Office Sessions: ========================= Error: (11/14/2013 06:31:00 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (11/14/2013 05:07:32 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (11/14/2013 04:50:33 PM) (Source: VSS)(User: ) Description: ConvertStringSidToSid(S-1-5-21-3527207512-1547861424-694024003-1003.bak)0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {108faeaf-ee95-4af7-9c1b-5e4e906a13d7} Error: (11/14/2013 03:30:43 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe Error: (11/14/2013 03:09:38 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (11/13/2013 06:25:21 PM) (Source: Application Error)(User: ) Description: AoK HD.exe3.0.1570.05282a1e6AoK HD.exe3.0.1570.05282a1e6c00004090004f6c2177401cee09072572755C:\Program Files (x86)\Steam\steamapps\common\Age2HD\AoK HD.exeC:\Program Files (x86)\Steam\steamapps\common\Age2HD\AoK HD.exe922949d9-4c88-11e3-97bd-50e549520e7b Error: (11/13/2013 01:42:00 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe Error: (11/13/2013 11:46:17 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (11/12/2013 07:23:17 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe Error: (11/12/2013 06:11:58 PM) (Source: VSS)(User: ) Description: ConvertStringSidToSid(S-1-5-21-3527207512-1547861424-694024003-1003.bak)0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {5dcdfe04-3b09-4df3-96bc-558dda3e8a63} ==================== Memory info =========================== Percentage of memory in use: 18% Total physical RAM: 16301.12 MB Available physical RAM: 13259.4 MB Total Pagefile: 32600.41 MB Available Pagefile: 29480.07 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: (Speicher) (Fixed) (Total:596.07 GB) (Free:295.55 GB) NTFS Drive d: (DATA) (Fixed) (Total:146.06 GB) (Free:70.66 GB) NTFS Drive u: (BACKUP) (Fixed) (Total:152.02 GB) (Free:22.51 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596 GB) (Disk ID: 6D1152A6) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=596 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 298 GB) (Disk ID: 23452345) Partition 1: (Not Active) - (Size=152 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=146 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
15.11.2013, 12:06 | #4 |
/// the machine /// TB-Ausbilder | Internet Laggt stark normal ping 30 jetzt zum teil 8000 hi, Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
16.11.2013, 20:56 | #5 |
| Internet Laggt stark normal ping 30 jetzt zum teil 8000Code:
ATTFilter ComboFix 13-11-16.01 - Pascal 16.11.2013 19:26:21.1.4 - x64 Microsoft Windows 7 Ultimate 6.1.7601.1.1252.41.1031.18.16301.12851 [GMT 1:00] ausgeführt von:: d:\users\Pascal\Downloads\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} AV: Outpost Security Suite *Disabled/Updated* {ECEA6BCD-A007-0BC7-D5A5-0254DCBD816E} FW: Outpost Security Suite *Disabled* {D4D1EAE8-EA68-0A9F-FEFA-AB61226EC615} SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Outpost Security Suite *Disabled/Updated* {578B8A29-863D-0449-EF15-3926A73ACBD3} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Neuer Wiederherstellungspunkt wurde erstellt . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\windows\SysWow64\FlashPlayerApp.exe d:\users\Martini\AppData\Roaming\Mozilla\Firefox\Profiles\vztfwutp.default\extensions\50aa864a6bc58@50aa864a6bc91.com d:\users\Martini\AppData\Roaming\Mozilla\Firefox\Profiles\vztfwutp.default\extensions\50aa864a6bc58@50aa864a6bc91.com\bootstrap.js d:\users\Martini\AppData\Roaming\Mozilla\Firefox\Profiles\vztfwutp.default\extensions\50aa864a6bc58@50aa864a6bc91.com\chrome.manifest d:\users\Martini\AppData\Roaming\Mozilla\Firefox\Profiles\vztfwutp.default\extensions\50aa864a6bc58@50aa864a6bc91.com\content\bg.js d:\users\Martini\AppData\Roaming\Mozilla\Firefox\Profiles\vztfwutp.default\extensions\50aa864a6bc58@50aa864a6bc91.com\content\zy.xul d:\users\Martini\AppData\Roaming\Mozilla\Firefox\Profiles\vztfwutp.default\extensions\50aa864a6bc58@50aa864a6bc91.com\install.rdf d:\users\Martini\AppData\Roaming\technic-launcher.jar . . ((((((((((((((((((((((( Dateien erstellt von 2013-10-16 bis 2013-11-16 )))))))))))))))))))))))))))))) . . 2013-11-16 18:33 . 2013-11-16 18:33 -------- d-----w- d:\users\UpdatusUser\AppData\Local\temp 2013-11-16 18:33 . 2013-11-16 18:33 -------- d-----w- d:\users\UpdatusUser.Pascal-PC\AppData\Local\temp 2013-11-16 18:33 . 2013-11-16 18:33 -------- d-----w- d:\users\TEMP\AppData\Local\temp 2013-11-16 16:05 . 2013-11-16 16:05 92272 ----a-w- c:\program files (x86)\Mozilla Firefox\updated\nssdbm3.dll 2013-11-15 16:20 . 2013-10-14 07:12 10280728 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{83A3094F-B47B-426C-8974-0E255EB4B57E}\mpengine.dll 2013-11-14 17:56 . 2013-11-14 17:56 -------- d-----w- c:\program files (x86)\Cheat Engine 6.3 2013-11-14 17:30 . 2013-11-14 17:30 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi 2013-11-14 14:14 . 2013-10-05 20:25 1474048 ----a-w- c:\windows\system32\crypt32.dll 2013-11-13 16:45 . 2013-11-13 16:45 -------- d-----w- c:\program files (x86)\Workshell 2013-11-09 11:55 . 2013-11-09 11:55 -------- d-----w- c:\programdata\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-11-09 11:55 . 2013-11-09 11:55 -------- d-----w- c:\program files\iTunes 2013-11-09 11:55 . 2013-11-09 11:55 -------- d-----w- c:\program files (x86)\iTunes 2013-11-09 11:55 . 2013-11-09 11:55 -------- d-----w- c:\program files\iPod 2013-11-04 14:32 . 2007-10-12 14:14 5081608 ----a-w- c:\windows\system32\d3dx9_36.dll 2013-11-02 23:14 . 2013-11-02 23:15 -------- d-----w- d:\users\Pascal\AppData\Roaming\Mumble 2013-11-02 17:43 . 2013-11-02 17:43 -------- d-----w- c:\program files (x86)\MSXML 4.0 2013-11-02 17:42 . 2013-11-02 17:42 -------- d-----w- C:\Python27 2013-11-02 17:41 . 2011-03-21 15:29 1097672 ----a-w- c:\windows\system32\drivers\SandBox64.sys 2013-11-02 17:41 . 2011-02-02 16:04 293048 ----a-w- c:\windows\system32\drivers\VBEngNT.sys 2013-11-02 17:41 . 2010-09-27 14:38 424040 ----a-w- c:\windows\system32\drivers\afwcore.sys 2013-11-02 17:41 . 2010-04-20 15:02 39528 ----a-w- c:\windows\system32\drivers\afw.sys 2013-11-02 17:40 . 2013-11-16 15:49 -------- d-----w- c:\windows\system32\Filt 2013-11-02 17:40 . 2013-11-02 17:40 -------- d-----w- d:\users\Pascal\AppData\Roaming\Agnitum 2013-11-02 17:40 . 2013-11-02 17:40 -------- d-----w- c:\program files\Agnitum 2013-11-02 17:40 . 2013-10-26 01:54 272496 ----a-w- c:\program files (x86)\Mozilla Firefox\browser\components\browsercomps.dll 2013-11-02 17:40 . 2013-11-02 17:40 -------- d-----w- c:\programdata\Agnitum 2013-11-02 17:39 . 2013-11-02 17:39 -------- d-----w- c:\program files (x86)\Hewlett-Packard 2013-11-02 17:37 . 2013-11-07 16:19 -------- d-----w- d:\users\Pascal\AppData\Roaming\HpUpdate 2013-11-02 17:37 . 2013-11-02 17:37 -------- d-----w- c:\windows\Hewlett-Packard 2013-11-02 17:33 . 2013-11-02 17:33 -------- d-----w- d:\users\Pascal\AppData\Local\Secunia PSI 2013-11-02 17:28 . 2013-11-02 17:28 -------- d-----w- c:\program files (x86)\Secunia 2013-11-02 17:25 . 2013-11-02 17:25 -------- d-----w- c:\program files (x86)\Mumble 2013-11-02 13:52 . 2013-11-02 13:52 -------- d-----w- d:\users\Pascal\AppData\Local\SmartTechnology 2013-11-02 13:50 . 2013-11-02 13:50 -------- d-----w- c:\programdata\SmartTechnology 2013-11-02 13:50 . 2013-11-02 13:50 -------- d-----w- c:\program files\SmartTechnology 2013-11-02 12:55 . 2013-10-08 06:50 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2013-11-02 12:53 . 2013-11-02 12:52 312744 ----a-w- c:\windows\system32\javaws.exe 2013-11-02 12:52 . 2013-11-02 12:52 189352 ----a-w- c:\windows\system32\javaw.exe 2013-11-02 12:52 . 2013-11-02 12:52 189352 ----a-w- c:\windows\system32\java.exe 2013-11-02 12:52 . 2013-11-02 12:52 108968 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll 2013-11-02 12:52 . 2013-11-02 12:52 -------- d-----w- c:\program files\Java 2013-11-02 11:15 . 2013-11-02 11:15 -------- d-----w- d:\users\Pascal\AppData\Local\Vitalwerks 2013-11-02 11:15 . 2013-11-02 11:15 -------- d-----w- c:\program files (x86)\No-IP 2013-11-01 00:01 . 2013-11-01 00:01 -------- d-----w- c:\program files (x86)\Microsoft Games 2013-10-28 17:55 . 2013-10-18 01:36 1063200 ----a-w- c:\windows\system32\nvspcap64.dll 2013-10-28 17:55 . 2013-10-18 01:36 955168 ----a-w- c:\windows\SysWow64\nvspcap.dll 2013-10-28 17:55 . 2013-09-27 23:01 39200 ----a-w- c:\windows\system32\drivers\nvvad64v.sys 2013-10-28 17:55 . 2013-09-27 23:01 28960 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll 2013-10-24 18:41 . 2006-06-19 11:01 69632 ----a-w- c:\windows\SysWow64\ztvcabinet.dll 2013-10-24 18:41 . 2006-05-25 13:52 162304 ----a-w- c:\windows\SysWow64\ztvunrar36.dll 2013-10-24 18:41 . 2005-08-25 23:50 77312 ----a-w- c:\windows\SysWow64\ztvunace26.dll 2013-10-24 18:41 . 2003-02-02 18:06 153088 ----a-w- c:\windows\SysWow64\UNRAR3.dll 2013-10-24 18:41 . 2002-03-05 23:00 75264 ----a-w- c:\windows\SysWow64\unacev2.dll 2013-10-23 14:13 . 2013-10-23 14:13 -------- d-----w- d:\users\Pascal\AppData\Roaming\NVIDIA 2013-10-22 20:53 . 2013-10-22 20:53 -------- d-----w- d:\users\Pascal\AppData\Roaming\TeamViewer 2013-10-21 16:37 . 2013-10-16 00:48 18290536 ----a-w- c:\windows\system32\nvwgf2umx.dll 2013-10-21 16:37 . 2013-10-16 00:48 15244272 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2013-10-20 10:29 . 2013-09-12 08:58 1884448 ----a-w- c:\windows\system32\nvdispco6432723.dll 2013-10-20 10:29 . 2013-09-12 08:58 1511712 ----a-w- c:\windows\system32\nvdispgenco6432723.dll 2013-10-20 10:29 . 2013-06-16 12:38 31520 ----a-w- c:\windows\system32\nvhdap64.dll 2013-10-20 10:29 . 2013-06-16 12:38 196384 ----a-w- c:\windows\system32\drivers\nvhda64v.sys 2013-10-19 20:51 . 2004-07-15 22:20 733184 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iKernel.dll 2013-10-19 20:51 . 2004-07-15 22:20 69715 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\ctor.dll 2013-10-19 20:51 . 2004-07-15 22:19 266240 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iscript.dll 2013-10-19 20:51 . 2004-07-15 22:18 172032 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iuser.dll 2013-10-19 20:51 . 2004-07-15 22:18 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\DotNetInstaller.exe 2013-10-19 20:51 . 2013-10-19 20:51 180356 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iGdi.dll 2013-10-19 20:51 . 2013-10-19 20:51 303236 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\setup.dll 2013-10-19 20:02 . 2013-10-19 20:02 -------- d-----w- d:\users\Pascal\AppData\Roaming\GameRanger 2013-10-18 16:54 . 2013-10-18 16:54 -------- d-----w- d:\users\Pascal\AppData\Roaming\Sierra 2013-10-18 16:53 . 2013-10-22 18:18 43520 ----a-w- c:\windows\SysWow64\CmdLineExt03.dll 2013-10-18 16:47 . 2013-10-18 16:47 -------- d-----w- c:\program files (x86)\Sierra 2013-10-18 16:46 . 2004-04-18 21:40 69715 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\ctor.dll 2013-10-18 16:46 . 2004-04-18 21:39 266240 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\iscript.dll 2013-10-18 16:46 . 2004-04-18 21:39 172032 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\iuser.dll 2013-10-18 16:46 . 2004-04-18 21:39 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\DotNetInstaller.exe 2013-10-18 16:46 . 2013-10-18 16:46 180356 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\iGdi.dll 2013-10-18 16:46 . 2004-04-18 21:42 733184 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\iKernel.dll 2013-10-18 16:46 . 2013-10-18 16:46 303236 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\setup.dll . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-11-14 16:04 . 2013-08-10 19:03 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-11-14 15:51 . 2013-08-10 13:15 82896128 ----a-w- c:\windows\system32\MRT.exe 2013-11-10 19:34 . 2013-08-11 14:18 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2013-11-10 19:11 . 2013-08-11 14:18 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2013-11-04 14:33 . 2013-08-11 14:18 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2013-10-16 00:48 . 2013-10-17 17:42 61216 ----a-w- c:\windows\system32\OpenCL.dll 2013-10-16 00:48 . 2013-10-17 17:42 53024 ----a-w- c:\windows\SysWow64\OpenCL.dll 2013-10-16 00:48 . 2013-10-17 17:41 3067560 ----a-w- c:\windows\system32\nvapi64.dll 2013-10-16 00:48 . 2013-10-17 17:41 2694664 ----a-w- c:\windows\SysWow64\nvapi.dll 2013-10-16 00:48 . 2013-10-17 17:41 168616 ----a-w- c:\windows\system32\nvinitx.dll 2013-10-16 00:48 . 2013-10-17 17:41 1435504 ----a-w- c:\windows\system32\nvumdshimx.dll 2013-10-16 00:48 . 2013-10-17 17:41 141336 ----a-w- c:\windows\SysWow64\nvinit.dll 2013-10-15 21:47 . 2013-10-17 17:42 6665504 ----a-w- c:\windows\system32\nvcpl.dll 2013-10-15 21:47 . 2013-10-17 17:42 3489568 ----a-w- c:\windows\system32\nvsvc64.dll 2013-10-15 21:47 . 2013-10-17 17:42 922912 ----a-w- c:\windows\system32\nvvsvc.exe 2013-10-15 21:47 . 2013-10-17 17:42 63776 ----a-w- c:\windows\system32\nvshext.dll 2013-10-15 21:47 . 2013-10-17 17:42 2559776 ----a-w- c:\windows\system32\nvsvcr.dll 2013-10-15 21:47 . 2013-10-17 17:42 219424 ----a-w- c:\windows\system32\nvmctray.dll 2013-10-15 14:54 . 2013-10-15 14:54 589600 ----a-w- c:\windows\SysWow64\nvStreaming.exe 2013-10-15 14:53 . 2013-10-15 14:53 53248 ----a-w- c:\windows\SysWow64\unrar.dll 2013-10-14 10:04 . 2013-10-14 10:04 18456 ----a-w- c:\windows\system32\drivers\psi_mf_amd64.sys 2013-10-13 23:50 . 2013-08-11 14:18 298280 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2013-10-10 23:31 . 2013-08-17 14:29 3360624 ----a-w- c:\windows\SysWow64\pbsvc.exe 2013-10-08 19:14 . 2013-10-17 17:42 3398914 ----a-w- c:\windows\system32\nvcoproc.bin 2013-10-05 19:50 . 2013-10-05 19:50 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys 2013-09-27 23:01 . 2013-08-10 15:45 29984 ----a-w- c:\windows\system32\nvaudcap64v.dll 2013-09-08 02:30 . 2013-10-09 22:41 1903552 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-09-08 02:27 . 2013-10-09 22:41 327168 ----a-w- c:\windows\system32\mswsock.dll 2013-09-08 02:03 . 2013-10-09 22:41 231424 ----a-w- c:\windows\SysWow64\mswsock.dll 2013-09-04 12:12 . 2013-10-16 19:23 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys 2013-09-04 12:11 . 2013-10-16 19:23 325120 ----a-w- c:\windows\system32\drivers\usbport.sys 2013-09-04 12:11 . 2013-10-16 19:23 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys 2013-09-04 12:11 . 2013-10-16 19:23 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys 2013-09-04 12:11 . 2013-10-16 19:23 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys 2013-09-04 12:11 . 2013-10-16 19:23 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys 2013-09-04 12:11 . 2013-10-16 19:23 7808 ----a-w- c:\windows\system32\drivers\usbd.sys 2013-09-03 12:35 . 2010-11-21 03:27 278800 ------w- c:\windows\system32\MpSigStub.exe 2013-08-30 07:48 . 2013-09-26 14:39 378944 ----a-w- c:\windows\system32\drivers\aswSP.sys 2013-08-30 07:48 . 2013-09-26 14:39 72016 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2013-08-30 07:48 . 2013-09-26 14:39 64288 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2013-08-30 07:48 . 2013-09-26 14:39 1030952 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2013-08-30 07:48 . 2013-09-26 14:39 204880 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2013-08-30 07:48 . 2013-09-26 14:39 65336 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2013-08-30 07:48 . 2013-09-26 14:39 33400 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys 2013-08-30 07:48 . 2013-09-26 14:39 80816 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2013-08-30 07:47 . 2013-09-26 14:39 41664 ----a-w- c:\windows\avastSS.scr 2013-08-30 07:47 . 2013-08-10 14:48 287840 ----a-w- c:\windows\system32\aswBoot.exe 2013-08-29 02:17 . 2013-10-09 22:41 5549504 ----a-w- c:\windows\system32\ntoskrnl.exe 2013-08-29 02:16 . 2013-10-09 22:41 1732032 ----a-w- c:\windows\system32\ntdll.dll 2013-08-29 02:16 . 2013-10-09 22:41 243712 ----a-w- c:\windows\system32\wow64.dll 2013-08-29 02:16 . 2013-10-09 22:41 859648 ----a-w- c:\windows\system32\tdh.dll 2013-08-29 02:13 . 2013-10-09 22:41 878080 ----a-w- c:\windows\system32\advapi32.dll 2013-08-29 01:51 . 2013-10-09 22:41 3969472 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2013-08-29 01:51 . 2013-10-09 22:41 3914176 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2013-08-29 01:50 . 2013-10-09 22:41 5120 ----a-w- c:\windows\SysWow64\wow32.dll 2013-08-29 01:50 . 2013-10-09 22:41 1292192 ----a-w- c:\windows\SysWow64\ntdll.dll 2013-08-29 01:50 . 2013-10-09 22:41 619520 ----a-w- c:\windows\SysWow64\tdh.dll 2013-08-29 01:48 . 2013-10-09 22:41 640512 ----a-w- c:\windows\SysWow64\advapi32.dll 2013-08-29 01:48 . 2013-10-09 22:41 44032 ----a-w- c:\windows\apppatch\acwow64.dll 2013-08-29 00:49 . 2013-10-09 22:41 25600 ----a-w- c:\windows\SysWow64\setup16.exe 2013-08-29 00:49 . 2013-10-09 22:41 7680 ----a-w- c:\windows\SysWow64\instnm.exe 2013-08-29 00:49 . 2013-10-09 22:41 14336 ----a-w- c:\windows\SysWow64\ntvdm64.dll 2013-08-29 00:49 . 2013-10-09 22:41 2048 ----a-w- c:\windows\SysWow64\user.exe 2013-08-28 01:21 . 2013-10-09 22:41 3155968 ----a-w- c:\windows\system32\win32k.sys 2013-08-28 01:12 . 2013-10-09 22:41 461312 ----a-w- c:\windows\system32\scavengeui.dll 2013-08-27 20:40 . 2013-08-27 20:40 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2013-07-03 3673184] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720] "avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-08-30 4858968] "TrojanScanner"="c:\program files (x86)\Trojan Remover\Trjscan.exe" [2013-10-24 1655568] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336] "HP Software Update"="c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe" [2011-10-28 49208] "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2013-11-01 152392] "LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2013-11-11 2349392] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ HP Digital Imaging Monitor.lnk - c:\program files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-5-21 275768] Secunia PSI Tray.lnk - c:\program files (x86)\Secunia\PSI\psi_tray.exe [2013-10-14 565464] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) "AppInit_DLLs"=c:\progra~1\Agnitum\OUTPOS~1\wl_hook.dll c:\windows\SysWOW64\nvinit.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "mixer6"=wdmaud.drv . R2 acssrv;Agnitum Client Security Service;c:\progra~1\Agnitum\OUTPOS~1\acs.exe;c:\progra~1\Agnitum\OUTPOS~1\acs.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 Secunia Update Agent;Secunia Update Agent;c:\program files (x86)\Secunia\PSI\sua.exe;c:\program files (x86)\Secunia\PSI\sua.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 ASWFilt;ASWFilt;c:\windows\system32\Filt\ASWFilt64.dll;c:\windows\SYSNATIVE\Filt\ASWFilt64.dll [x] R3 cpuz135;cpuz135;c:\program files (x86)\CPUID\PC Wizard 2012\pcwiz_x64.sys;c:\program files (x86)\CPUID\PC Wizard 2012\pcwiz_x64.sys [x] R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x] R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x] R3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf_amd64.sys;c:\windows\SYSNATIVE\DRIVERS\psi_mf_amd64.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 SaiK0CD5;SaiK0CD5;c:\windows\system32\DRIVERS\SaiK0CD5.sys;c:\windows\SYSNATIVE\DRIVERS\SaiK0CD5.sys [x] R3 SaiU0CD5;SaiU0CD5;c:\windows\system32\DRIVERS\SaiU0CD5.sys;c:\windows\SYSNATIVE\DRIVERS\SaiU0CD5.sys [x] R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x] R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys;c:\windows\SYSNATIVE\drivers\terminpt.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x] R3 VBEngNT;VBEngNT;c:\windows\system32\drivers\VBEngNT.sys;c:\windows\SYSNATIVE\drivers\VBEngNT.sys [x] R3 VBFilt;VBFilt;c:\windows\system32\Filt\VBFilt64.dll;c:\windows\SYSNATIVE\Filt\VBFilt64.dll [x] R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] S0 aswRvrt;aswRvrt; [x] S0 aswVmm;aswVmm; [x] S1 afw;Agnitum Firewall Driver;c:\windows\system32\DRIVERS\afw.sys;c:\windows\SYSNATIVE\DRIVERS\afw.sys [x] S1 aswSnx;aswSnx; [x] S1 aswSP;aswSP; [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x] S1 SandBox;SandBox;c:\windows\system32\drivers\SandBox64.sys;c:\windows\SYSNATIVE\drivers\SandBox64.sys [x] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [x] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x] S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x] S2 Secunia PSI Agent;Secunia PSI Agent;c:\program files (x86)\Secunia\PSI\PSIA.exe;c:\program files (x86)\Secunia\PSI\PSIA.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 TeamViewer8;TeamViewer 8;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [x] S3 afwcore;afwcore;c:\windows\system32\drivers\afwcore.sys;c:\windows\SYSNATIVE\drivers\afwcore.sys [x] S3 EtronHub3;Etron USB 3.0 Extensible Hub Driver;c:\windows\system32\Drivers\EtronHub3.sys;c:\windows\SYSNATIVE\Drivers\EtronHub3.sys [x] S3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver;c:\windows\system32\Drivers\EtronXHCI.sys;c:\windows\SYSNATIVE\Drivers\EtronXHCI.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost] hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc . Inhalt des "geplante Tasks" Ordners . 2013-11-16 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-10 16:04] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2013-08-30 07:47 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\Outpost] @="{33C9E362-3EDA-4930-8AFE-5DA39A8BB77A}" [HKEY_CLASSES_ROOT\CLSID\{33C9E362-3EDA-4930-8AFE-5DA39A8BB77A}] 2011-03-30 18:02 601528 ----a-w- c:\program files\Agnitum\Outpost Security Suite Free\op_shell.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Persistence"="c:\windows\system32\igfxpers.exe" [2012-12-14 441968] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-12-14 399984] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-12-14 172144] "Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-10-18 1028384] "VX3000"="c:\windows\vVX3000.exe" [2009-06-30 762224] "ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2013-10-18 1063200] "ProfilerU"="c:\program files\SmartTechnology\Software\ProfilerU.exe" [2013-04-16 454144] "SaiMfd"="c:\program files\SmartTechnology\Software\SaiMfd.exe" [2013-04-16 158208] "OutpostMonitor"="c:\progra~1\Agnitum\OUTPOS~1\op_mon.exe" [2011-04-04 4510072] "OutpostFeedBack"="c:\program files\Agnitum\Outpost Security Suite Free\feedback.exe" [2011-03-30 808064] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=c:\progra~1\Agnitum\OUTPOS~1\wl_hook64.dll c:\windows\System32\nvinitx.dll . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://www.google.com uInternet Settings,ProxyOverride = *.local IE: An OneNote s&enden - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105 IE: Nach Microsoft E&xcel exportieren - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000 TCP: DhcpNameServer = 192.168.1.1 TCP: Interfaces\{271FB102-E8E4-4880-9621-574BE15360B6}: DhcpNameServer = 192.168.1.1 FF - ProfilePath - d:\users\Pascal\AppData\Roaming\Mozilla\Firefox\Profiles\vzcsjy6m.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.com FF - ExtSQL: 2013-09-25 16:17; smartwebprinting@hp.com; c:\program files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF - ExtSQL: 2013-09-26 16:39; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF FF - ExtSQL: 2013-10-10 20:42; {99B98C2C-7274-45a3-A640-D9DF1A1C8460}; d:\users\Pascal\AppData\Roaming\Mozilla\Firefox\Profiles\vzcsjy6m.default\extensions\{99B98C2C-7274-45a3-A640-D9DF1A1C8460}.xpi FF - ExtSQL: !HIDDEN! 2013-09-25 16:17; smartwebprinting@hp.com; c:\program files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Wow6432Node-HKLM-Run-<NO NAME> - (no file) HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start AddRemove-Age of Chivalry: Hegemony - c:\program files (x86)\Microsoft Games\Age of Empires II\Uninstall Age of Chivalry.exe AddRemove-GOGPACKSPACECOLONYHD_is1 - c:\gog games\Space Colony HD\unins000.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-3527207512-1547861424-694024003-1010\Software\SecuROM\License information*] "datasecu"=hex:2d,31,87,48,7a,2f,a0,45,0c,fa,7a,35,6a,74,3e,7e,55,a8,fc,20,d7, 60,17,7e,60,a4,65,5c,d1,b8,36,8a,3d,0a,1a,ce,6b,b3,4e,be,2e,b1,bc,09,47,fe,\ "rkeysecu"=hex:64,b6,bd,e1,3e,80,9e,c4,40,b4,90,83,87,8e,33,49 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_152_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_152_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_152_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_152_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_152.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_152.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_152.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_152.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files\AVAST Software\Avast\AvastSvc.exe c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe c:\windows\SysWOW64\PnkBstrA.exe c:\program files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe c:\program files (x86)\HP\Digital Imaging\bin\hpqbam08.exe c:\program files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe . ************************************************************************** . Zeit der Fertigstellung: 2013-11-16 20:05:57 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2013-11-16 19:05 . Vor Suchlauf: 10 Verzeichnis(se), 316'644'397'056 Bytes frei Nach Suchlauf: 16 Verzeichnis(se), 316'285'505'536 Bytes frei . - - End Of File - - FAEBC95B5DB7B43AEE3BFE933549B985 A36C5E4F47E84449FF07ED3517B43A31 |
17.11.2013, 07:34 | #6 |
/// the machine /// TB-Ausbilder | Internet Laggt stark normal ping 30 jetzt zum teil 8000 Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ --> Internet Laggt stark normal ping 30 jetzt zum teil 8000 |
20.11.2013, 19:24 | #7 |
| Internet Laggt stark normal ping 30 jetzt zum teil 8000Code:
ATTFilter Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.11.20.10 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16736 Pascal :: PASCAL-PC [Administrator] 20.11.2013 18:47:54 MBAM-log-2013-11-20 (18-51-51).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 341200 Laufzeit: 3 Minute(n), 22 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 2 D:\Users\Pascal\Downloads\SoftonicDownloader_fuer_gamespy-arcade.exe (PUP.Optional.Softonic.A) -> Keine Aktion durchgeführt. D:\Users\Pascal\Downloads\SoftonicDownloader_fuer_trojan-remover.exe (PUP.Optional.Softonic.A) -> Keine Aktion durchgeführt. (Ende) Code:
ATTFilter # AdwCleaner v3.012 - Bericht erstellt am 20/11/2013 um 18:54:06 # Updated 11/11/2013 von Xplode # Betriebssystem : Windows 7 Ultimate Service Pack 1 (64 bits) # Benutzername : Pascal - PASCAL-PC # Gestartet von : D:\Users\Pascal\Desktop\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKCU\Software\Softonic ***** [ Browser ] ***** -\\ Internet Explorer v0.0.0.0 -\\ Mozilla Firefox v25.0.1 (de) [ Datei : D:\Users\Pascal\AppData\Roaming\Mozilla\Firefox\Profiles\vzcsjy6m.default\prefs.js ] [ Datei : D:\Users\Martini\AppData\Roaming\Mozilla\Firefox\Profiles\kutln7f6.default-1364595953560\prefs.js ] [ Datei : D:\Users\Martini\AppData\Roaming\Mozilla\Firefox\Profiles\vztfwutp.default\prefs.js ] ************************* AdwCleaner[R0].txt - [83416 octets] - [26/09/2013 15:04:31] AdwCleaner[R1].txt - [4796 octets] - [10/10/2013 14:27:25] AdwCleaner[R2].txt - [1578 octets] - [20/11/2013 18:53:13] AdwCleaner[S0].txt - [83332 octets] - [26/09/2013 15:04:51] AdwCleaner[S1].txt - [4652 octets] - [10/10/2013 14:28:37] AdwCleaner[S2].txt - [1402 octets] - [20/11/2013 18:54:06] ########## EOF - D:\AdwCleaner\AdwCleaner[S2].txt - [1462 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.0.8 (11.05.2013:1) OS: Windows 7 Ultimate x64 Ran by Pascal on 20.11.2013 at 18:58:46.48 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ FireFox Emptied folder: D:\Users\Pascal\AppData\Roaming\mozilla\firefox\profiles\vzcsjy6m.default\minidumps [18 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 20.11.2013 at 19:07:15.98 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter ComboFix 13-11-19.01 - Pascal 20.11.2013 19:09:47.2.4 - x64 Microsoft Windows 7 Ultimate 6.1.7601.1.1252.41.1031.18.16301.13583 [GMT 1:00] ausgeführt von:: d:\users\Pascal\Desktop\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} AV: Outpost Security Suite *Disabled/Updated* {ECEA6BCD-A007-0BC7-D5A5-0254DCBD816E} FW: Outpost Security Suite *Disabled* {D4D1EAE8-EA68-0A9F-FEFA-AB61226EC615} SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Outpost Security Suite *Disabled/Updated* {578B8A29-863D-0449-EF15-3926A73ACBD3} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((( Dateien erstellt von 2013-10-20 bis 2013-11-20 )))))))))))))))))))))))))))))) . . 2013-11-20 18:16 . 2013-11-20 18:16 -------- d-----w- d:\users\UpdatusUser\AppData\Local\temp 2013-11-20 18:16 . 2013-11-20 18:16 -------- d-----w- d:\users\UpdatusUser.Pascal-PC\AppData\Local\temp 2013-11-20 18:16 . 2013-11-20 18:16 -------- d-----w- d:\users\TEMP\AppData\Local\temp 2013-11-20 18:16 . 2013-11-20 18:16 -------- d-----w- d:\users\Martini\AppData\Local\temp 2013-11-20 18:16 . 2013-11-20 18:16 -------- d-----w- d:\users\Default\AppData\Local\temp 2013-11-20 18:16 . 2013-11-20 18:16 -------- d-----w- d:\users\Administrator\AppData\Local\temp 2013-11-20 18:08 . 2013-11-20 18:08 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{74FE1043-3FA9-4A54-9FFE-F791D8C140CB}\offreg.dll 2013-11-20 16:05 . 2013-11-20 16:05 -------- d-----w- d:\users\Pascal\AppData\Local\Criterion Games 2013-11-19 14:53 . 2013-11-08 03:12 10285968 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{74FE1043-3FA9-4A54-9FFE-F791D8C140CB}\mpengine.dll 2013-11-17 17:51 . 2013-11-17 17:51 -------- d-----w- C:\NVIDIA 2013-11-17 17:51 . 2013-11-17 17:51 -------- d-----w- d:\users\Pascal\AppData\Local\NVIDIA Corporation 2013-11-14 17:56 . 2013-11-14 17:56 -------- d-----w- c:\program files (x86)\Cheat Engine 6.3 2013-11-14 17:30 . 2013-11-14 17:30 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi 2013-11-14 14:14 . 2013-10-05 20:25 1474048 ----a-w- c:\windows\system32\crypt32.dll 2013-11-13 16:45 . 2013-11-13 16:45 -------- d-----w- c:\program files (x86)\Workshell 2013-11-09 11:55 . 2013-11-09 11:55 -------- d-----w- c:\programdata\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-11-09 11:55 . 2013-11-09 11:55 -------- d-----w- c:\program files\iTunes 2013-11-09 11:55 . 2013-11-09 11:55 -------- d-----w- c:\program files (x86)\iTunes 2013-11-09 11:55 . 2013-11-09 11:55 -------- d-----w- c:\program files\iPod 2013-11-04 14:32 . 2007-10-12 14:14 5081608 ----a-w- c:\windows\system32\d3dx9_36.dll 2013-11-02 23:14 . 2013-11-02 23:15 -------- d-----w- d:\users\Pascal\AppData\Roaming\Mumble 2013-11-02 17:43 . 2013-11-02 17:43 -------- d-----w- c:\program files (x86)\MSXML 4.0 2013-11-02 17:42 . 2013-11-02 17:42 -------- d-----w- C:\Python27 2013-11-02 17:41 . 2011-03-21 15:29 1097672 ----a-w- c:\windows\system32\drivers\SandBox64.sys 2013-11-02 17:41 . 2011-02-02 16:04 293048 ----a-w- c:\windows\system32\drivers\VBEngNT.sys 2013-11-02 17:41 . 2010-09-27 14:38 424040 ----a-w- c:\windows\system32\drivers\afwcore.sys 2013-11-02 17:41 . 2010-04-20 15:02 39528 ----a-w- c:\windows\system32\drivers\afw.sys 2013-11-02 17:40 . 2013-11-20 14:09 -------- d-----w- c:\windows\system32\Filt 2013-11-02 17:40 . 2013-11-02 17:40 -------- d-----w- d:\users\Pascal\AppData\Roaming\Agnitum 2013-11-02 17:40 . 2013-11-02 17:40 -------- d-----w- c:\program files\Agnitum 2013-11-02 17:40 . 2013-11-02 17:40 -------- d-----w- c:\programdata\Agnitum 2013-11-02 17:39 . 2013-11-02 17:39 -------- d-----w- c:\program files (x86)\Hewlett-Packard 2013-11-02 17:37 . 2013-11-07 16:19 -------- d-----w- d:\users\Pascal\AppData\Roaming\HpUpdate 2013-11-02 17:37 . 2013-11-02 17:37 -------- d-----w- c:\windows\Hewlett-Packard 2013-11-02 17:33 . 2013-11-02 17:33 -------- d-----w- d:\users\Pascal\AppData\Local\Secunia PSI 2013-11-02 17:28 . 2013-11-02 17:28 -------- d-----w- c:\program files (x86)\Secunia 2013-11-02 17:25 . 2013-11-02 17:25 -------- d-----w- c:\program files (x86)\Mumble 2013-11-02 13:52 . 2013-11-02 13:52 -------- d-----w- d:\users\Pascal\AppData\Local\SmartTechnology 2013-11-02 13:50 . 2013-11-02 13:50 -------- d-----w- c:\programdata\SmartTechnology 2013-11-02 13:50 . 2013-11-02 13:50 -------- d-----w- c:\program files\SmartTechnology 2013-11-02 12:55 . 2013-10-08 06:50 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2013-11-02 12:53 . 2013-11-02 12:52 312744 ----a-w- c:\windows\system32\javaws.exe 2013-11-02 12:52 . 2013-11-02 12:52 189352 ----a-w- c:\windows\system32\javaw.exe 2013-11-02 12:52 . 2013-11-02 12:52 189352 ----a-w- c:\windows\system32\java.exe 2013-11-02 12:52 . 2013-11-02 12:52 108968 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll 2013-11-02 12:52 . 2013-11-02 12:52 -------- d-----w- c:\program files\Java 2013-11-02 11:15 . 2013-11-02 11:15 -------- d-----w- d:\users\Pascal\AppData\Local\Vitalwerks 2013-11-02 11:15 . 2013-11-02 11:15 -------- d-----w- c:\program files (x86)\No-IP 2013-11-01 00:01 . 2013-11-01 00:01 -------- d-----w- c:\program files (x86)\Microsoft Games 2013-10-28 17:55 . 2013-11-08 20:47 1064224 ----a-w- c:\windows\system32\nvspcap64.dll 2013-10-28 17:55 . 2013-11-08 20:47 955168 ----a-w- c:\windows\SysWow64\nvspcap.dll 2013-10-28 17:55 . 2013-09-27 23:01 39200 ----a-w- c:\windows\system32\drivers\nvvad64v.sys 2013-10-28 17:55 . 2013-09-27 23:01 28960 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll 2013-10-24 18:41 . 2006-06-19 11:01 69632 ----a-w- c:\windows\SysWow64\ztvcabinet.dll 2013-10-24 18:41 . 2006-05-25 13:52 162304 ----a-w- c:\windows\SysWow64\ztvunrar36.dll 2013-10-24 18:41 . 2005-08-25 23:50 77312 ----a-w- c:\windows\SysWow64\ztvunace26.dll 2013-10-24 18:41 . 2003-02-02 18:06 153088 ----a-w- c:\windows\SysWow64\UNRAR3.dll 2013-10-24 18:41 . 2002-03-05 23:00 75264 ----a-w- c:\windows\SysWow64\unacev2.dll 2013-10-23 14:13 . 2013-10-23 14:13 -------- d-----w- d:\users\Pascal\AppData\Roaming\NVIDIA 2013-10-23 13:27 . 2013-10-23 10:30 15855568 ----a-w- c:\windows\SysWow64\nvwgf2um.dll 2013-10-23 13:27 . 2013-10-16 00:48 1884448 ----a-w- c:\windows\system32\nvdispco6433158.dll 2013-10-23 13:27 . 2013-10-16 00:48 1511712 ----a-w- c:\windows\system32\nvdispgenco6433158.dll 2013-10-23 02:02 . 2013-10-23 02:02 589600 ----a-w- c:\windows\SysWow64\nvStreaming.exe 2013-10-22 20:53 . 2013-10-22 20:53 -------- d-----w- d:\users\Pascal\AppData\Roaming\TeamViewer . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-11-20 16:02 . 2013-10-18 16:53 43520 ----a-w- c:\windows\SysWow64\CmdLineExt03.dll 2013-11-17 19:14 . 2013-08-11 14:18 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2013-11-17 19:05 . 2013-08-11 14:18 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2013-11-14 16:04 . 2013-08-10 19:03 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-11-14 15:51 . 2013-08-10 13:15 82896128 ----a-w- c:\windows\system32\MRT.exe 2013-11-04 14:33 . 2013-08-11 14:18 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2013-10-23 10:30 . 2013-10-21 16:37 18286416 ----a-w- c:\windows\system32\nvwgf2umx.dll 2013-10-23 10:30 . 2013-10-21 16:37 15212336 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2013-10-23 10:30 . 2013-10-17 17:42 61216 ----a-w- c:\windows\system32\OpenCL.dll 2013-10-23 10:30 . 2013-10-17 17:42 53024 ----a-w- c:\windows\SysWow64\OpenCL.dll 2013-10-23 10:30 . 2013-10-17 17:41 3067560 ----a-w- c:\windows\system32\nvapi64.dll 2013-10-23 10:30 . 2013-10-17 17:41 2695200 ----a-w- c:\windows\SysWow64\nvapi.dll 2013-10-23 10:30 . 2013-10-17 17:41 1435504 ----a-w- c:\windows\system32\nvumdshimx.dll 2013-10-23 10:30 . 2013-10-17 17:41 141336 ----a-w- c:\windows\SysWow64\nvinit.dll 2013-10-23 08:20 . 2013-10-17 17:42 6669600 ----a-w- c:\windows\system32\nvcpl.dll 2013-10-23 08:20 . 2013-10-17 17:42 3489568 ----a-w- c:\windows\system32\nvsvc64.dll 2013-10-23 08:20 . 2013-10-17 17:42 922912 ----a-w- c:\windows\system32\nvvsvc.exe 2013-10-23 08:20 . 2013-10-17 17:42 63776 ----a-w- c:\windows\system32\nvshext.dll 2013-10-23 08:20 . 2013-10-17 17:42 2559776 ----a-w- c:\windows\system32\nvsvcr.dll 2013-10-23 08:20 . 2013-10-17 17:42 219424 ----a-w- c:\windows\system32\nvmctray.dll 2013-10-23 08:20 . 2013-10-17 17:42 3426956 ----a-w- c:\windows\system32\nvcoproc.bin 2013-10-15 14:53 . 2013-10-15 14:53 53248 ----a-w- c:\windows\SysWow64\unrar.dll 2013-10-14 10:04 . 2013-10-14 10:04 18456 ----a-w- c:\windows\system32\drivers\psi_mf_amd64.sys 2013-10-13 23:50 . 2013-08-11 14:18 298280 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2013-10-10 23:31 . 2013-08-17 14:29 3360624 ----a-w- c:\windows\SysWow64\pbsvc.exe 2013-10-05 19:50 . 2013-10-05 19:50 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys 2013-09-27 23:01 . 2013-08-10 15:45 29984 ----a-w- c:\windows\system32\nvaudcap64v.dll 2013-09-12 08:58 . 2013-10-20 10:29 1884448 ----a-w- c:\windows\system32\nvdispco6432723.dll 2013-09-12 08:58 . 2013-10-20 10:29 1511712 ----a-w- c:\windows\system32\nvdispgenco6432723.dll 2013-09-08 02:30 . 2013-10-09 22:41 1903552 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-09-08 02:27 . 2013-10-09 22:41 327168 ----a-w- c:\windows\system32\mswsock.dll 2013-09-08 02:03 . 2013-10-09 22:41 231424 ----a-w- c:\windows\SysWow64\mswsock.dll 2013-09-04 12:12 . 2013-10-16 19:23 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys 2013-09-04 12:11 . 2013-10-16 19:23 325120 ----a-w- c:\windows\system32\drivers\usbport.sys 2013-09-04 12:11 . 2013-10-16 19:23 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys 2013-09-04 12:11 . 2013-10-16 19:23 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys 2013-09-04 12:11 . 2013-10-16 19:23 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys 2013-09-04 12:11 . 2013-10-16 19:23 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys 2013-09-04 12:11 . 2013-10-16 19:23 7808 ----a-w- c:\windows\system32\drivers\usbd.sys 2013-09-03 12:35 . 2010-11-21 03:27 278800 ------w- c:\windows\system32\MpSigStub.exe 2013-08-30 07:48 . 2013-09-26 14:39 378944 ----a-w- c:\windows\system32\drivers\aswSP.sys 2013-08-30 07:48 . 2013-09-26 14:39 72016 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2013-08-30 07:48 . 2013-09-26 14:39 64288 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2013-08-30 07:48 . 2013-09-26 14:39 1030952 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2013-08-30 07:48 . 2013-09-26 14:39 204880 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2013-08-30 07:48 . 2013-09-26 14:39 65336 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2013-08-30 07:48 . 2013-09-26 14:39 33400 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys 2013-08-30 07:48 . 2013-09-26 14:39 80816 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2013-08-30 07:47 . 2013-09-26 14:39 41664 ----a-w- c:\windows\avastSS.scr 2013-08-30 07:47 . 2013-08-10 14:48 287840 ----a-w- c:\windows\system32\aswBoot.exe 2013-08-29 02:17 . 2013-10-09 22:41 5549504 ----a-w- c:\windows\system32\ntoskrnl.exe 2013-08-29 02:16 . 2013-10-09 22:41 1732032 ----a-w- c:\windows\system32\ntdll.dll 2013-08-29 02:16 . 2013-10-09 22:41 243712 ----a-w- c:\windows\system32\wow64.dll 2013-08-29 02:16 . 2013-10-09 22:41 859648 ----a-w- c:\windows\system32\tdh.dll 2013-08-29 02:13 . 2013-10-09 22:41 878080 ----a-w- c:\windows\system32\advapi32.dll 2013-08-29 01:51 . 2013-10-09 22:41 3969472 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2013-08-29 01:51 . 2013-10-09 22:41 3914176 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2013-08-29 01:50 . 2013-10-09 22:41 5120 ----a-w- c:\windows\SysWow64\wow32.dll 2013-08-29 01:50 . 2013-10-09 22:41 1292192 ----a-w- c:\windows\SysWow64\ntdll.dll 2013-08-29 01:50 . 2013-10-09 22:41 619520 ----a-w- c:\windows\SysWow64\tdh.dll 2013-08-29 01:48 . 2013-10-09 22:41 640512 ----a-w- c:\windows\SysWow64\advapi32.dll 2013-08-29 01:48 . 2013-10-09 22:41 44032 ----a-w- c:\windows\apppatch\acwow64.dll 2013-08-29 00:49 . 2013-10-09 22:41 25600 ----a-w- c:\windows\SysWow64\setup16.exe 2013-08-29 00:49 . 2013-10-09 22:41 7680 ----a-w- c:\windows\SysWow64\instnm.exe 2013-08-29 00:49 . 2013-10-09 22:41 14336 ----a-w- c:\windows\SysWow64\ntvdm64.dll 2013-08-29 00:49 . 2013-10-09 22:41 2048 ----a-w- c:\windows\SysWow64\user.exe 2013-08-28 01:21 . 2013-10-09 22:41 3155968 ----a-w- c:\windows\system32\win32k.sys 2013-08-28 01:12 . 2013-10-09 22:41 461312 ----a-w- c:\windows\system32\scavengeui.dll 2013-08-27 20:40 . 2013-08-27 20:40 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2013-07-03 3673184] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720] "avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-08-30 4858968] "TrojanScanner"="c:\program files (x86)\Trojan Remover\Trjscan.exe" [2013-10-24 1655568] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336] "HP Software Update"="c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe" [2011-10-28 49208] "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2013-11-01 152392] "LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2013-11-11 2349392] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ HP Digital Imaging Monitor.lnk - c:\program files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-5-21 275768] Secunia PSI Tray.lnk - c:\program files (x86)\Secunia\PSI\psi_tray.exe [2013-10-14 565464] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) "AppInit_DLLs"=c:\progra~1\Agnitum\OUTPOS~1\wl_hook.dll c:\windows\SysWOW64\nvinit.dll . R2 acssrv;Agnitum Client Security Service;c:\progra~1\Agnitum\OUTPOS~1\acs.exe;c:\progra~1\Agnitum\OUTPOS~1\acs.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 Secunia Update Agent;Secunia Update Agent;c:\program files (x86)\Secunia\PSI\sua.exe;c:\program files (x86)\Secunia\PSI\sua.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 ASWFilt;ASWFilt;c:\windows\system32\Filt\ASWFilt64.dll;c:\windows\SYSNATIVE\Filt\ASWFilt64.dll [x] R3 cpuz135;cpuz135;c:\program files (x86)\CPUID\PC Wizard 2012\pcwiz_x64.sys;c:\program files (x86)\CPUID\PC Wizard 2012\pcwiz_x64.sys [x] R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x] R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x] R3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf_amd64.sys;c:\windows\SYSNATIVE\DRIVERS\psi_mf_amd64.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 SaiK0CD5;SaiK0CD5;c:\windows\system32\DRIVERS\SaiK0CD5.sys;c:\windows\SYSNATIVE\DRIVERS\SaiK0CD5.sys [x] R3 SaiU0CD5;SaiU0CD5;c:\windows\system32\DRIVERS\SaiU0CD5.sys;c:\windows\SYSNATIVE\DRIVERS\SaiU0CD5.sys [x] R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x] R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys;c:\windows\SYSNATIVE\drivers\terminpt.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x] R3 VBEngNT;VBEngNT;c:\windows\system32\drivers\VBEngNT.sys;c:\windows\SYSNATIVE\drivers\VBEngNT.sys [x] R3 VBFilt;VBFilt;c:\windows\system32\Filt\VBFilt64.dll;c:\windows\SYSNATIVE\Filt\VBFilt64.dll [x] R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] S0 aswRvrt;aswRvrt; [x] S0 aswVmm;aswVmm; [x] S1 afw;Agnitum Firewall Driver;c:\windows\system32\DRIVERS\afw.sys;c:\windows\SYSNATIVE\DRIVERS\afw.sys [x] S1 aswSnx;aswSnx; [x] S1 aswSP;aswSP; [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x] S1 SandBox;SandBox;c:\windows\system32\drivers\SandBox64.sys;c:\windows\SYSNATIVE\drivers\SandBox64.sys [x] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [x] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x] S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [x] S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x] S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x] S2 Secunia PSI Agent;Secunia PSI Agent;c:\program files (x86)\Secunia\PSI\PSIA.exe;c:\program files (x86)\Secunia\PSI\PSIA.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 TeamViewer8;TeamViewer 8;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [x] S3 afwcore;afwcore;c:\windows\system32\drivers\afwcore.sys;c:\windows\SYSNATIVE\drivers\afwcore.sys [x] S3 EtronHub3;Etron USB 3.0 Extensible Hub Driver;c:\windows\system32\Drivers\EtronHub3.sys;c:\windows\SYSNATIVE\Drivers\EtronHub3.sys [x] S3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver;c:\windows\system32\Drivers\EtronXHCI.sys;c:\windows\SYSNATIVE\Drivers\EtronXHCI.sys [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - MBAMPROTECTOR . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost] hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc . Inhalt des "geplante Tasks" Ordners . 2013-11-20 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-10 16:04] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2013-08-30 07:47 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\Outpost] @="{33C9E362-3EDA-4930-8AFE-5DA39A8BB77A}" [HKEY_CLASSES_ROOT\CLSID\{33C9E362-3EDA-4930-8AFE-5DA39A8BB77A}] 2011-03-30 18:02 601528 ----a-w- c:\program files\Agnitum\Outpost Security Suite Free\op_shell.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Persistence"="c:\windows\system32\igfxpers.exe" [2012-12-14 441968] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-12-14 399984] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-12-14 172144] "Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-11-08 1028384] "VX3000"="c:\windows\vVX3000.exe" [2009-06-30 762224] "ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2013-11-08 1064224] "ProfilerU"="c:\program files\SmartTechnology\Software\ProfilerU.exe" [2013-04-16 454144] "SaiMfd"="c:\program files\SmartTechnology\Software\SaiMfd.exe" [2013-04-16 158208] "OutpostMonitor"="c:\progra~1\Agnitum\OUTPOS~1\op_mon.exe" [2011-04-04 4510072] "OutpostFeedBack"="c:\program files\Agnitum\Outpost Security Suite Free\feedback.exe" [2011-03-30 808064] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=c:\progra~1\Agnitum\OUTPOS~1\wl_hook64.dll c:\windows\System32\nvinitx.dll . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://www.google.com mDefault_Page_URL = hxxp://www.google.com uInternet Settings,ProxyOverride = *.local IE: An OneNote s&enden - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105 IE: Nach Microsoft E&xcel exportieren - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000 TCP: Interfaces\{271FB102-E8E4-4880-9621-574BE15360B6}: DhcpNameServer = 192.168.1.1 FF - ProfilePath - d:\users\Pascal\AppData\Roaming\Mozilla\Firefox\Profiles\vzcsjy6m.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.com FF - ExtSQL: 2013-09-25 16:17; smartwebprinting@hp.com; c:\program files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF - ExtSQL: 2013-09-26 16:39; wrc@avast.com; c:\program files\AVAST Software\Avast\WebRep\FF FF - ExtSQL: 2013-10-10 20:42; {99B98C2C-7274-45a3-A640-D9DF1A1C8460}; d:\users\Pascal\AppData\Roaming\Mozilla\Firefox\Profiles\vzcsjy6m.default\extensions\{99B98C2C-7274-45a3-A640-D9DF1A1C8460}.xpi FF - ExtSQL: !HIDDEN! 2013-09-25 16:17; smartwebprinting@hp.com; c:\program files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Wow6432Node-HKLM-Run-<NO NAME> - (no file) AddRemove-Age of Chivalry: Hegemony - c:\program files (x86)\Microsoft Games\Age of Empires II\Uninstall Age of Chivalry.exe AddRemove-Battlelog Web Plugins - c:\program files (x86)\Battlelog Web Plugins\uninstall.exe AddRemove-ESN Sonar-0.70.4 - c:\program files (x86)\Battlelog Web Plugins\Sonar\esnsonar_uninstall.exe AddRemove-GOGPACKSPACECOLONYHD_is1 - c:\gog games\Space Colony HD\unins000.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-3527207512-1547861424-694024003-1010\Software\SecuROM\License information*] "datasecu"=hex:09,63,f1,03,79,b4,74,96,03,fb,6a,c9,be,f4,b3,ca,4d,25,ef,82,dc, ca,23,26,6a,43,ce,6f,0e,22,7c,82,9e,68,01,ce,ec,b5,ec,3b,67,28,cb,9c,a5,91,\ "rkeysecu"=hex:3b,33,f6,1b,13,e3,7f,f5,63,9c,9a,14,f7,48,97,55 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_152_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_152_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_152_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_152_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_152.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_152.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_152.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_152.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2013-11-20 19:19:21 ComboFix-quarantined-files.txt 2013-11-20 18:19 ComboFix2.txt 2013-11-16 19:05 . Vor Suchlauf: 15 Verzeichnis(se), 314'327'846'912 Bytes frei Nach Suchlauf: 16 Verzeichnis(se), 314'000'027'648 Bytes frei . - - End Of File - - 53B3D7E471FEE6D238C0638251A25D01 A36C5E4F47E84449FF07ED3517B43A31 |
21.11.2013, 12:39 | #8 |
/// the machine /// TB-Ausbilder | Internet Laggt stark normal ping 30 jetzt zum teil 8000 Frisches FRST log, nicht Combofix ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.11.2013, 20:22 | #9 |
| Internet Laggt stark normal ping 30 jetzt zum teil 8000 Das mit Eset hat nicht geklappt den ich finde den Log nicht den er ist nicht vorhanden aber es hat etwas gefunden gehabt und ich habe den scan fertig durchführen lassen. Code:
ATTFilter Results of screen317's Security Check version 0.99.76 Windows 7 Service Pack 1 x64 (UAC is disabled!) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` avast! Antivirus Outpost Security Suite Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Secunia PSI (3.0.0.8013) Trojan Remover 6.8.8 Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 45 Adobe Flash Player 11.9.900.152 Mozilla Firefox (25.0.1) ````````Process Check: objlist.exe by Laurent```````` Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Malwarebytes' Anti-Malware mbamscheduler.exe AVAST Software Avast AvastSvc.exe AVAST Software Avast AvastUI.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-11-2013 01 Ran by Pascal (administrator) on PASCAL-PC on 22-11-2013 20:20:59 Running from D:\Users\Pascal\Desktop Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\PSIA.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Microsoft Corporation) C:\Windows\vVX3000.exe (Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe (Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe (Farbar) D:\Users\Pascal\Desktop\FRST64(1).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [VX3000] - C:\Windows\vVX3000.exe [762224 2009-06-30] (Microsoft Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [ProfilerU] - C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454144 2013-04-16] (Saitek) HKLM\...\Run: [SaiMfd] - C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2013-04-16] (Saitek) HKLM\...\Run: [OutpostMonitor] - C:\Program Files\Agnitum\Outpost Security Suite Free\op_mon.exe [4510072 2011-04-04] (Agnitum Ltd.) HKLM\...\Run: [OutpostFeedBack] - C:\Program Files\Agnitum\Outpost Security Suite Free\feedback.exe [808064 2011-03-30] (Agnitum Ltd.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673184 2013-07-03] (Disc Soft Ltd) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [4858968 2013-08-30] (AVAST Software) HKLM-x32\...\Run: [TrojanScanner] - C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1655568 2013-10-24] (Simply Super Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208 2011-10-28] (Hewlett-Packard) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2349392 2013-11-11] (LogMeIn Inc.) AppInit_DLLs: C:\Program Files\Agnitum\Outpost Security Suite Free\wl_hook64.dll [983664 2011-03-30] (Agnitum Ltd.) AppInit_DLLs-x32: c:\PROGRA~1\Agnitum\OUTPOS~1\wl_hook.dll c:\Windows\SysWOW64\nvinit.dll [141336 2013-10-23] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: D:\Users\Pascal\AppData\Roaming\Mozilla\Firefox\Profiles\vzcsjy6m.default FF Homepage: hxxp://www.google.com FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll () FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.3.1 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.1\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: No Name - D:\Users\Pascal\AppData\Roaming\Mozilla\Firefox\Profiles\vzcsjy6m.default\Extensions\{99B98C2C-7274-45a3-A640-D9DF1A1C8460}.xpi FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 ==================== Services (Whitelisted) ================= S2 acssrv; C:\Program Files\Agnitum\Outpost Security Suite Free\acs.exe [3501696 2011-04-04] (Agnitum Ltd.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15125280 2013-11-08] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-11-04] () R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-10-14] (Secunia) S2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [660184 2013-10-14] (Secunia) ==================== Drivers (Whitelisted) ==================== R1 afw; C:\Windows\System32\DRIVERS\afw.sys [39528 2010-04-20] (Agnitum Ltd.) R3 afwcore; C:\Windows\System32\drivers\afwcore.sys [424040 2010-09-27] (Agnitum Ltd.) S3 ASWFilt; C:\Windows\system32\Filt\ASWFilt64.dll [49168 2011-03-21] (Agnitum Ltd.) R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-08-30] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-08-30] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-08-30] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-08-30] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-30] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-30] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-08-30] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [204880 2013-08-30] () S3 cpuz135; C:\Program Files (x86)\CPUID\PC Wizard 2012\pcwiz_x64.sys [24368 2012-08-11] (CPUID) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-10-05] (Disc Soft Ltd) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation) S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-10-14] (Secunia) S3 SaiK0CD5; C:\Windows\System32\DRIVERS\SaiK0CD5.sys [180584 2012-09-20] (Saitek) R3 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [25120 2013-04-30] (Saitek) R3 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [52640 2013-04-30] (Saitek) S3 SaiU0CD5; C:\Windows\System32\DRIVERS\SaiU0CD5.sys [47208 2012-09-20] (Saitek) R1 SandBox; C:\Windows\system32\drivers\SandBox64.sys [1097672 2011-03-21] (Agnitum Ltd.) R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 VBEngNT; C:\Windows\system32\drivers\VBEngNT.sys [293048 2011-02-02] (VirusBuster Kft.) S3 VBFilt; C:\Windows\system32\Filt\VBFilt64.dll [42976 2011-03-21] (Agnitum Ltd.) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 VGPU; System32\drivers\rdvgkmd.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-22 20:20 - 2013-11-22 20:20 - 01958070 _____ (Farbar) D:\Users\Pascal\Desktop\FRST64(1).exe 2013-11-22 20:20 - 2013-11-22 20:20 - 00003427 _____ D:\Users\Pascal\Desktop\FRST.txt 2013-11-22 20:19 - 2013-11-22 20:19 - 00891184 _____ D:\Users\Pascal\Downloads\SecurityCheck.exe 2013-11-22 18:03 - 2013-11-22 18:03 - 02347384 _____ (ESET) D:\Users\Pascal\Downloads\esetsmartinstaller_enu.exe 2013-11-20 19:19 - 2013-11-20 19:19 - 00029726 _____ C:\ComboFix.txt 2013-11-20 17:05 - 2013-11-20 17:05 - 00000000 ____D D:\Users\Pascal\AppData\Local\Criterion Games 2013-11-19 16:03 - 2013-11-19 16:03 - 00000000 ____D D:\Users\Pascal\Documents\SimCity 2013-11-19 15:58 - 2013-11-19 15:58 - 00001140 _____ D:\Users\Public\Desktop\SimCity™.lnk 2013-11-17 18:52 - 2013-10-23 11:30 - 30344480 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 22933792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 18199872 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 12572960 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-17 18:52 - 2013-10-23 11:30 - 11426568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 11374520 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 09524088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 09480328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433165.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433165.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-17 18:52 - 2013-10-23 11:30 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-17 18:52 - 2013-01-29 09:35 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll 2013-11-17 18:51 - 2013-11-17 18:51 - 00000000 ____D D:\Users\Pascal\AppData\Local\NVIDIA Corporation 2013-11-17 18:51 - 2013-11-17 18:51 - 00000000 ____D C:\NVIDIA 2013-11-17 18:45 - 2013-11-17 18:45 - 03820824 _____ D:\Users\Pascal\Downloads\battlelog-web-plugins_2.3.1_125.exe 2013-11-16 19:24 - 2013-11-20 19:19 - 00000000 ____D C:\Qoobox 2013-11-16 19:24 - 2013-11-16 20:03 - 00000000 ____D C:\Windows\erdnt 2013-11-16 19:24 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe 2013-11-16 19:24 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe 2013-11-16 19:24 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-11-16 19:24 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-11-16 19:24 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-11-16 19:24 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe 2013-11-16 19:24 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe 2013-11-16 19:24 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe 2013-11-16 19:23 - 2013-11-16 19:24 - 05146587 ____R (Swearware) D:\Users\Pascal\Downloads\ComboFix.exe 2013-11-16 17:05 - 2013-11-16 20:55 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-15 17:13 - 2013-11-21 15:14 - 00006126 _____ C:\Windows\PFRO.log 2013-11-14 18:59 - 2013-11-14 18:59 - 00000957 _____ D:\Users\UpdatusUser.Pascal-PC\Desktop\Notepad++.lnk 2013-11-14 18:59 - 2013-11-14 18:59 - 00000957 _____ D:\Users\Martini\Desktop\Notepad++.lnk 2013-11-14 18:59 - 2013-11-14 18:59 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2013-11-14 18:58 - 2013-11-14 18:58 - 00618912 _____ D:\Users\Pascal\Downloads\Notepad - CHIP-Downloader.exe 2013-11-14 18:56 - 2013-11-14 18:56 - 00000000 ____D D:\Users\Pascal\Documents\My Cheat Tables 2013-11-14 18:56 - 2013-11-14 18:56 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.3 2013-11-14 18:54 - 2013-11-14 18:54 - 08065840 _____ (Cheat Engine ) D:\Users\Pascal\Downloads\CheatEngine63.exe 2013-11-14 18:51 - 2013-11-14 18:52 - 00028844 _____ D:\Users\Pascal\Downloads\Addition.txt 2013-11-14 18:50 - 2013-11-14 18:52 - 00081206 _____ D:\Users\Pascal\Downloads\FRST.txt 2013-11-14 18:50 - 2013-11-14 18:50 - 01957794 _____ (Farbar) D:\Users\Pascal\Downloads\FRST64.exe 2013-11-14 18:30 - 2013-11-14 18:30 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-11-14 16:53 - 2013-10-12 09:45 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-14 16:53 - 2013-10-12 09:45 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-14 16:53 - 2013-10-12 09:45 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-14 16:53 - 2013-10-12 09:43 - 19269632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-14 16:53 - 2013-10-12 09:43 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-14 16:53 - 2013-10-12 08:03 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-14 16:53 - 2013-10-12 08:03 - 01138176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 14355968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-14 16:53 - 2013-10-12 08:02 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-14 16:53 - 2013-10-12 07:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-14 16:53 - 2013-10-12 07:08 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-14 15:14 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-14 15:14 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-14 15:14 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-14 15:14 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-11-14 15:14 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-11-14 15:14 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-14 15:14 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-11-14 15:14 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-11-14 15:14 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-11-14 15:14 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-11-14 15:14 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-11-14 15:14 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-11-14 15:14 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-11-14 15:14 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-14 15:14 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-11-14 15:14 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-11-14 15:14 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-11-14 15:14 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-11-14 15:14 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-11-14 15:14 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-11-14 15:14 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-11-14 15:14 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-11-14 15:14 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-11-14 15:14 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-11-14 15:14 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-11-14 15:14 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-11-14 15:14 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-11-14 15:14 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-11-14 15:14 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-11-14 15:14 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-11-13 20:34 - 2013-11-13 20:34 - 00002195 _____ D:\Users\UpdatusUser.Pascal-PC\Desktop\Age of Chivalry Hegemony.lnk 2013-11-13 20:34 - 2013-11-13 20:34 - 00002195 _____ D:\Users\Martini\Desktop\Age of Chivalry Hegemony.lnk 2013-11-13 20:34 - 2013-11-13 20:34 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Age of Chivalry Hegemony 2013-11-13 17:45 - 2013-11-13 17:45 - 00000000 ____D C:\Program Files (x86)\Workshell 2013-11-10 00:51 - 2013-11-22 17:18 - 00004357 _____ C:\Windows\setupact.log 2013-11-10 00:51 - 2013-11-10 00:51 - 00000000 _____ C:\Windows\setuperr.log 2013-11-09 12:56 - 2013-11-09 12:56 - 00001697 _____ D:\Users\Public\Desktop\iTunes.lnk 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files\iTunes 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files\iPod 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-11-07 17:23 - 2013-11-07 17:23 - 00501248 _____ (Facebook Inc.) D:\Users\Pascal\Downloads\FacebookVideoCallSetup_v1.2.205.0.exe 2013-11-04 15:38 - 2013-11-04 15:40 - 00000000 ____D D:\Users\Pascal\Documents\Battlefield 4 2013-11-04 15:33 - 2013-11-04 15:35 - 00001066 _____ D:\Users\Public\Desktop\Battlefield 4.lnk 2013-11-04 15:33 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-11-04 15:33 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-11-04 15:33 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-11-04 15:33 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-11-04 15:33 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-11-04 15:33 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-11-04 15:33 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-11-04 15:33 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-11-04 15:33 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-11-04 15:33 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-11-04 15:33 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-11-04 15:33 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-11-04 15:33 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-11-04 15:33 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-11-04 15:33 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-11-04 15:33 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-11-04 15:33 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-11-04 15:33 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-11-04 15:33 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-11-04 15:33 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-11-04 15:33 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-11-04 15:33 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-11-04 15:33 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-11-04 15:33 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-11-04 15:33 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-11-04 15:33 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-11-04 15:33 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-11-04 15:33 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-11-04 15:33 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-11-04 15:33 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-11-04 15:33 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-11-04 15:33 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-11-04 15:33 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-11-04 15:33 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-11-04 15:33 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-11-04 15:33 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-11-04 15:33 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-11-04 15:33 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-11-04 15:33 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-11-04 15:33 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-11-04 15:33 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-11-04 15:33 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-11-04 15:33 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-11-04 15:33 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-11-04 15:33 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-11-04 15:33 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-11-04 15:33 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-11-04 15:33 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-11-04 15:33 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-11-04 15:33 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-11-04 15:33 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-11-04 15:33 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-11-04 15:33 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-11-04 15:32 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-11-04 15:32 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-11-04 15:32 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-11-04 15:32 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-11-04 15:32 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-11-04 15:32 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-11-04 15:32 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-11-04 15:32 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-11-04 15:32 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-11-04 15:32 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-11-04 15:32 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-11-04 15:32 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-11-04 15:32 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-11-04 15:32 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-11-04 15:32 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-11-04 15:32 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-11-04 15:32 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-11-04 15:32 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-11-04 15:32 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-11-04 15:32 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-11-04 15:32 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-11-04 15:32 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-11-04 15:32 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-11-04 15:32 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-11-04 15:32 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-11-04 15:32 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2013-11-04 15:32 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2013-11-04 15:32 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-11-04 15:32 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-11-04 15:32 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-11-04 15:32 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-11-04 15:32 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-11-04 15:32 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-11-04 15:32 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-11-04 15:32 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-11-04 15:32 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-11-04 15:32 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-11-04 15:32 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-11-04 15:32 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-11-04 15:32 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-11-04 15:32 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-11-04 15:32 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-11-04 15:32 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-11-04 15:32 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-11-04 15:32 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-11-04 15:32 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-11-04 15:32 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-11-04 15:32 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-11-04 15:32 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-11-04 15:32 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-11-04 15:32 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-11-04 15:32 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-11-04 15:32 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-11-04 15:32 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-11-04 15:32 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-11-04 15:32 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-11-04 15:32 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-11-04 15:32 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-11-04 15:32 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-11-04 15:32 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-11-04 15:32 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-11-03 14:20 - 2013-11-03 14:20 - 100422480 _____ (Apple Inc.) D:\Users\Pascal\Downloads\iTunes64Setup.exe 2013-11-03 01:04 - 2013-11-22 18:04 - 00003744 _____ C:\Windows\system32\config\afw_hm.conf 2013-11-03 01:04 - 2013-11-22 18:04 - 00000004 _____ C:\Windows\system32\config\afw_db.conf 2013-11-03 00:14 - 2013-11-03 00:15 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Mumble 2013-11-03 00:14 - 2013-11-03 00:14 - 00002388 _____ D:\Users\Pascal\Documents\MumbleAutomaticCertificateBackup.p12 2013-11-02 18:51 - 2013-11-03 03:37 - 02298368 _____ C:\Windows\system32\config\fsdb.sdb 2013-11-02 18:46 - 2013-11-21 15:16 - 00000000 ____D D:\Users\Pascal\Desktop\Programme 2013-11-02 18:46 - 2013-11-20 17:04 - 00000000 ____D D:\Users\Pascal\Desktop\Shooter 2013-11-02 18:46 - 2013-11-02 18:46 - 00000000 ____D D:\Users\Pascal\Desktop\Zombie 2013-11-02 18:45 - 2013-11-15 17:15 - 00000000 ____D D:\Users\Pascal\Desktop\Strategy 2013-11-02 18:43 - 2013-11-02 18:43 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0 2013-11-02 18:42 - 2013-11-02 18:42 - 02434048 _____ D:\Users\Pascal\Downloads\msxml.msi 2013-11-02 18:42 - 2013-11-02 18:42 - 00000000 ____D C:\Python27 2013-11-02 18:41 - 2013-11-22 18:04 - 00015106 _____ C:\Windows\system32\config\rules.rdb 2013-11-02 18:41 - 2013-11-02 18:42 - 16228352 _____ D:\Users\Pascal\Downloads\python-2.7.5.msi 2013-11-02 18:41 - 2011-03-21 16:29 - 01097672 _____ (Agnitum Ltd.) C:\Windows\system32\Drivers\SandBox64.sys 2013-11-02 18:41 - 2011-02-02 17:04 - 00293048 _____ (VirusBuster Kft.) C:\Windows\system32\Drivers\VBEngNT.sys 2013-11-02 18:41 - 2010-09-27 15:38 - 00424040 _____ (Agnitum Ltd.) C:\Windows\system32\Drivers\afwcore.sys 2013-11-02 18:41 - 2010-04-20 16:02 - 00039528 _____ (Agnitum Ltd.) C:\Windows\system32\Drivers\afw.sys 2013-11-02 18:40 - 2013-11-22 11:05 - 00000000 ____D C:\Windows\system32\Filt 2013-11-02 18:40 - 2013-11-02 18:40 - 00000969 _____ D:\Users\Pascal\Desktop\Mozilla Firefox.lnk 2013-11-02 18:40 - 2013-11-02 18:40 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Agnitum 2013-11-02 18:40 - 2013-11-02 18:40 - 00000000 ____D C:\Program Files\Agnitum 2013-11-02 18:39 - 2013-11-02 18:39 - 109314472 _____ (Agnitum, Ltd. ) D:\Users\Pascal\Downloads\OutpostSecuritySuite711Install64.exe 2013-11-02 18:39 - 2013-11-02 18:39 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2013-11-02 18:37 - 2013-11-07 17:19 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\HpUpdate 2013-11-02 18:37 - 2013-11-02 18:38 - 03607616 _____ (Igor Pavlov) D:\Users\Pascal\Downloads\GmdClientSetup.exe 2013-11-02 18:37 - 2013-11-02 18:37 - 03111104 _____ (Hewlett-Packard ) D:\Users\Pascal\Downloads\hpusetup.exe 2013-11-02 18:37 - 2013-11-02 18:37 - 00000000 ____D C:\Windows\Hewlett-Packard 2013-11-02 18:33 - 2013-11-02 18:33 - 00000000 ____D D:\Users\Pascal\AppData\Local\Secunia PSI 2013-11-02 18:28 - 2013-11-02 18:28 - 00000000 ____D C:\Program Files (x86)\Secunia 2013-11-02 18:28 - 2013-11-02 18:27 - 03864904 _____ (Secunia) D:\Users\Pascal\Downloads\PSISetup_30b8013.exe 2013-11-02 18:25 - 2013-11-02 18:25 - 00000000 ____D C:\Program Files (x86)\Mumble 2013-11-02 18:19 - 2013-11-02 18:19 - 00377856 _____ D:\Users\Pascal\Downloads\gmer_2.1.19163.exe 2013-11-02 18:15 - 2013-11-02 18:15 - 15657984 _____ D:\Users\Pascal\Downloads\mumble-1.2.4.msi 2013-11-02 14:52 - 2013-11-02 14:52 - 00000000 ____D D:\Users\Pascal\AppData\Local\SmartTechnology 2013-11-02 14:50 - 2013-11-02 14:50 - 00000000 ____D C:\Program Files\SmartTechnology 2013-11-02 14:48 - 2013-11-02 14:49 - 129201056 _____ (Mad catz ) D:\Users\Pascal\Downloads\Smart Technology 7_0_27_13 64Bit.exe 2013-11-02 14:48 - 2013-11-02 14:48 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SaiK0CD5_01009.Wdf 2013-11-02 14:47 - 2013-11-02 14:47 - 07838456 _____ (Mad catz ) D:\Users\Pascal\Downloads\Range_RAT5_SD7_0_20_0_64Bit_Drivers_NonWHQL.exe 2013-11-02 13:55 - 2013-10-08 07:50 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-11-02 13:55 - 2013-10-08 07:46 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-11-02 13:55 - 2013-10-08 07:46 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-11-02 13:55 - 2013-10-08 07:46 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-11-02 13:54 - 2013-11-02 13:55 - 00004249 _____ C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log 2013-11-02 13:54 - 2013-11-02 13:54 - 00915368 _____ (Oracle Corporation) D:\Users\Pascal\Downloads\jxpiinstall.exe 2013-11-02 13:53 - 2013-11-02 13:52 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 24278649 _____ D:\Users\Pascal\Downloads\vlc-2.1.0-win32.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-11-02 13:52 - 2013-11-02 13:52 - 00000000 ____D C:\Program Files\Java 2013-11-02 13:51 - 2013-11-02 13:52 - 30694824 _____ (Oracle Corporation) D:\Users\Pascal\Downloads\jre-7u45-windows-x64.exe 2013-11-02 12:15 - 2013-11-02 12:15 - 00240392 _____ D:\Users\Pascal\Downloads\DUCSetup_v4_0_1.exe 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP DUC 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D D:\Users\Pascal\AppData\Local\Vitalwerks 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D C:\Program Files (x86)\No-IP 2013-11-01 01:01 - 2013-11-01 01:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Games 2013-10-28 18:55 - 2013-11-08 21:47 - 01064224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-10-28 18:55 - 2013-11-08 21:47 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-10-28 18:55 - 2013-09-28 00:01 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-10-28 18:55 - 2013-09-28 00:01 - 00028960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-10-24 19:41 - 2006-06-19 12:01 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ztvcabinet.dll 2013-10-24 19:41 - 2006-05-25 14:52 - 00162304 _____ C:\Windows\SysWOW64\ztvunrar36.dll 2013-10-24 19:41 - 2005-08-26 00:50 - 00077312 _____ C:\Windows\SysWOW64\ztvunace26.dll 2013-10-24 19:41 - 2003-02-02 19:06 - 00153088 _____ C:\Windows\SysWOW64\UNRAR3.dll 2013-10-24 19:41 - 2002-03-06 00:00 - 00075264 _____ C:\Windows\SysWOW64\unacev2.dll 2013-10-23 17:56 - 2013-10-23 17:56 - 01143808 _____ D:\Users\Pascal\Desktop\TerrariViewer.exe 2013-10-23 15:13 - 2013-10-23 15:13 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\NVIDIA 2013-10-23 14:27 - 2013-10-23 11:30 - 15855568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll 2013-10-23 14:27 - 2013-10-16 01:48 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll 2013-10-23 14:08 - 2013-10-23 14:08 - 61758958 _____ (InstallShield Software Corporation) D:\Users\Pascal\Downloads\aox_patch_1_4.exe 2013-10-23 03:02 - 2013-10-23 03:02 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe ==================== One Month Modified Files and Folders ======= 2013-11-22 20:20 - 2013-11-22 20:20 - 01958070 _____ (Farbar) D:\Users\Pascal\Desktop\FRST64(1).exe 2013-11-22 20:20 - 2013-11-22 20:20 - 00003427 _____ D:\Users\Pascal\Desktop\FRST.txt 2013-11-22 20:19 - 2013-11-22 20:19 - 00891184 _____ D:\Users\Pascal\Downloads\SecurityCheck.exe 2013-11-22 19:36 - 2013-08-10 20:03 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-22 19:12 - 2013-08-10 18:59 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Skype 2013-11-22 19:12 - 2013-08-10 16:40 - 00000000 ____D C:\Program Files (x86)\Steam 2013-11-22 18:04 - 2013-11-03 01:04 - 00003744 _____ C:\Windows\system32\config\afw_hm.conf 2013-11-22 18:04 - 2013-11-03 01:04 - 00000004 _____ C:\Windows\system32\config\afw_db.conf 2013-11-22 18:04 - 2013-11-02 18:41 - 00015106 _____ C:\Windows\system32\config\rules.rdb 2013-11-22 18:03 - 2013-11-22 18:03 - 02347384 _____ (ESET) D:\Users\Pascal\Downloads\esetsmartinstaller_enu.exe 2013-11-22 17:58 - 2013-08-10 16:38 - 00000000 ____D C:\Program Files (x86)\Origin 2013-11-22 17:27 - 2009-07-14 05:45 - 00026768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-22 17:27 - 2009-07-14 05:45 - 00026768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-22 17:21 - 2013-08-10 23:32 - 00000000 ____D D:\Users\Pascal\AppData\Local\LogMeIn Hamachi 2013-11-22 17:20 - 2013-08-10 13:32 - 01985528 _____ C:\Windows\WindowsUpdate.log 2013-11-22 17:18 - 2013-11-10 00:51 - 00004357 _____ C:\Windows\setupact.log 2013-11-22 17:17 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-11-22 11:05 - 2013-11-02 18:40 - 00000000 ____D C:\Windows\system32\Filt 2013-11-21 15:16 - 2013-11-02 18:46 - 00000000 ____D D:\Users\Pascal\Desktop\Programme 2013-11-21 15:15 - 2013-09-26 15:39 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2013-11-21 15:14 - 2013-11-15 17:13 - 00006126 _____ C:\Windows\PFRO.log 2013-11-20 19:19 - 2013-11-20 19:19 - 00029726 _____ C:\ComboFix.txt 2013-11-20 19:19 - 2013-11-16 19:24 - 00000000 ____D C:\Qoobox 2013-11-20 19:17 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini 2013-11-20 18:46 - 2013-09-27 17:07 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-11-20 17:05 - 2013-11-20 17:05 - 00000000 ____D D:\Users\Pascal\AppData\Local\Criterion Games 2013-11-20 17:04 - 2013-11-02 18:46 - 00000000 ____D D:\Users\Pascal\Desktop\Shooter 2013-11-20 17:02 - 2013-10-18 17:53 - 00043520 _____ C:\Windows\SysWOW64\CmdLineExt03.dll 2013-11-19 16:03 - 2013-11-19 16:03 - 00000000 ____D D:\Users\Pascal\Documents\SimCity 2013-11-19 15:58 - 2013-11-19 15:58 - 00001140 _____ D:\Users\Public\Desktop\SimCity™.lnk 2013-11-19 15:57 - 2013-08-10 20:52 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-11-18 17:53 - 2013-09-07 16:44 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2013-11-17 20:14 - 2013-08-11 15:18 - 00214392 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-11-17 20:05 - 2013-08-11 15:18 - 00214392 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-11-17 19:57 - 2013-08-10 23:16 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\TS3Client 2013-11-17 18:54 - 2013-08-10 14:02 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-11-17 18:51 - 2013-11-17 18:51 - 00000000 ____D D:\Users\Pascal\AppData\Local\NVIDIA Corporation 2013-11-17 18:51 - 2013-11-17 18:51 - 00000000 ____D C:\NVIDIA 2013-11-17 18:45 - 2013-11-17 18:45 - 03820824 _____ D:\Users\Pascal\Downloads\battlelog-web-plugins_2.3.1_125.exe 2013-11-17 14:28 - 2013-08-10 15:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-11-16 20:55 - 2013-11-16 17:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-16 20:30 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-11-16 20:03 - 2013-11-16 19:24 - 00000000 ____D C:\Windows\erdnt 2013-11-16 19:24 - 2013-11-16 19:23 - 05146587 ____R (Swearware) D:\Users\Pascal\Downloads\ComboFix.exe 2013-11-15 17:15 - 2013-11-02 18:45 - 00000000 ____D D:\Users\Pascal\Desktop\Strategy 2013-11-14 18:59 - 2013-11-14 18:59 - 00000957 _____ D:\Users\UpdatusUser.Pascal-PC\Desktop\Notepad++.lnk 2013-11-14 18:59 - 2013-11-14 18:59 - 00000957 _____ D:\Users\Martini\Desktop\Notepad++.lnk 2013-11-14 18:59 - 2013-11-14 18:59 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2013-11-14 18:59 - 2013-08-11 12:37 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Notepad++ 2013-11-14 18:58 - 2013-11-14 18:58 - 00618912 _____ D:\Users\Pascal\Downloads\Notepad - CHIP-Downloader.exe 2013-11-14 18:56 - 2013-11-14 18:56 - 00000000 ____D D:\Users\Pascal\Documents\My Cheat Tables 2013-11-14 18:56 - 2013-11-14 18:56 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.3 2013-11-14 18:54 - 2013-11-14 18:54 - 08065840 _____ (Cheat Engine ) D:\Users\Pascal\Downloads\CheatEngine63.exe 2013-11-14 18:52 - 2013-11-14 18:51 - 00028844 _____ D:\Users\Pascal\Downloads\Addition.txt 2013-11-14 18:52 - 2013-11-14 18:50 - 00081206 _____ D:\Users\Pascal\Downloads\FRST.txt 2013-11-14 18:50 - 2013-11-14 18:50 - 01957794 _____ (Farbar) D:\Users\Pascal\Downloads\FRST64.exe 2013-11-14 18:30 - 2013-11-14 18:30 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-11-14 17:06 - 2013-08-10 14:27 - 00000000 ____D C:\Windows\Panther 2013-11-14 17:04 - 2013-08-10 20:03 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-11-14 17:04 - 2013-08-10 20:03 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-11-14 16:52 - 2013-08-10 15:39 - 00000000 ____D C:\Windows\system32\MRT 2013-11-14 16:51 - 2013-08-10 14:15 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-11-13 20:34 - 2013-11-13 20:34 - 00002195 _____ D:\Users\UpdatusUser.Pascal-PC\Desktop\Age of Chivalry Hegemony.lnk 2013-11-13 20:34 - 2013-11-13 20:34 - 00002195 _____ D:\Users\Martini\Desktop\Age of Chivalry Hegemony.lnk 2013-11-13 20:34 - 2013-11-13 20:34 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Age of Chivalry Hegemony 2013-11-13 17:45 - 2013-11-13 17:45 - 00000000 ____D C:\Program Files (x86)\Workshell 2013-11-11 05:50 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-11-10 00:51 - 2013-11-10 00:51 - 00000000 _____ C:\Windows\setuperr.log 2013-11-09 12:56 - 2013-11-09 12:56 - 00001697 _____ D:\Users\Public\Desktop\iTunes.lnk 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files\iTunes 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files\iPod 2013-11-09 12:55 - 2013-11-09 12:55 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-11-09 10:58 - 2013-08-10 20:51 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Origin 2013-11-08 21:47 - 2013-10-28 18:55 - 01064224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-08 21:47 - 2013-10-28 18:55 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-08 18:13 - 2010-11-21 07:50 - 00702964 _____ C:\Windows\system32\perfh007.dat 2013-11-08 18:13 - 2010-11-21 07:50 - 00150604 _____ C:\Windows\system32\perfc007.dat 2013-11-08 18:13 - 2009-07-14 06:13 - 01629436 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-07 17:23 - 2013-11-07 17:23 - 00501248 _____ (Facebook Inc.) D:\Users\Pascal\Downloads\FacebookVideoCallSetup_v1.2.205.0.exe 2013-11-07 17:19 - 2013-11-02 18:37 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\HpUpdate 2013-11-04 20:36 - 2013-08-11 12:28 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\.minecraft 2013-11-04 15:46 - 2013-08-11 15:18 - 00000000 ____D D:\Users\Pascal\AppData\Local\PunkBuster 2013-11-04 15:40 - 2013-11-04 15:38 - 00000000 ____D D:\Users\Pascal\Documents\Battlefield 4 2013-11-04 15:35 - 2013-11-04 15:33 - 00001066 _____ D:\Users\Public\Desktop\Battlefield 4.lnk 2013-11-04 15:33 - 2013-08-11 15:18 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-11-04 13:02 - 2009-07-14 06:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-11-03 15:02 - 2013-08-11 12:33 - 00000000 ____D D:\Users\Pascal\Desktop\Server 2013-11-03 14:20 - 2013-11-03 14:20 - 100422480 _____ (Apple Inc.) D:\Users\Pascal\Downloads\iTunes64Setup.exe 2013-11-03 03:37 - 2013-11-02 18:51 - 02298368 _____ C:\Windows\system32\config\fsdb.sdb 2013-11-03 02:12 - 2013-10-02 19:15 - 00000000 ____D D:\Users\Pascal\Desktop\Terraria server 2013-11-03 00:15 - 2013-11-03 00:14 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Mumble 2013-11-03 00:14 - 2013-11-03 00:14 - 00002388 _____ D:\Users\Pascal\Documents\MumbleAutomaticCertificateBackup.p12 2013-11-02 23:14 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-11-02 18:46 - 2013-11-02 18:46 - 00000000 ____D D:\Users\Pascal\Desktop\Zombie 2013-11-02 18:43 - 2013-11-02 18:43 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0 2013-11-02 18:42 - 2013-11-02 18:42 - 02434048 _____ D:\Users\Pascal\Downloads\msxml.msi 2013-11-02 18:42 - 2013-11-02 18:42 - 00000000 ____D C:\Python27 2013-11-02 18:42 - 2013-11-02 18:41 - 16228352 _____ D:\Users\Pascal\Downloads\python-2.7.5.msi 2013-11-02 18:40 - 2013-11-02 18:40 - 00000969 _____ D:\Users\Pascal\Desktop\Mozilla Firefox.lnk 2013-11-02 18:40 - 2013-11-02 18:40 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Agnitum 2013-11-02 18:40 - 2013-11-02 18:40 - 00000000 ____D C:\Program Files\Agnitum 2013-11-02 18:39 - 2013-11-02 18:39 - 109314472 _____ (Agnitum, Ltd. ) D:\Users\Pascal\Downloads\OutpostSecuritySuite711Install64.exe 2013-11-02 18:39 - 2013-11-02 18:39 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2013-11-02 18:38 - 2013-11-02 18:37 - 03607616 _____ (Igor Pavlov) D:\Users\Pascal\Downloads\GmdClientSetup.exe 2013-11-02 18:38 - 2013-09-25 15:15 - 00000000 ____D C:\Program Files (x86)\HP 2013-11-02 18:37 - 2013-11-02 18:37 - 03111104 _____ (Hewlett-Packard ) D:\Users\Pascal\Downloads\hpusetup.exe 2013-11-02 18:37 - 2013-11-02 18:37 - 00000000 ____D C:\Windows\Hewlett-Packard 2013-11-02 18:33 - 2013-11-02 18:33 - 00000000 ____D D:\Users\Pascal\AppData\Local\Secunia PSI 2013-11-02 18:28 - 2013-11-02 18:28 - 00000000 ____D C:\Program Files (x86)\Secunia 2013-11-02 18:27 - 2013-11-02 18:28 - 03864904 _____ (Secunia) D:\Users\Pascal\Downloads\PSISetup_30b8013.exe 2013-11-02 18:25 - 2013-11-02 18:25 - 00000000 ____D C:\Program Files (x86)\Mumble 2013-11-02 18:19 - 2013-11-02 18:19 - 00377856 _____ D:\Users\Pascal\Downloads\gmer_2.1.19163.exe 2013-11-02 18:15 - 2013-11-02 18:15 - 15657984 _____ D:\Users\Pascal\Downloads\mumble-1.2.4.msi 2013-11-02 14:52 - 2013-11-02 14:52 - 00000000 ____D D:\Users\Pascal\AppData\Local\SmartTechnology 2013-11-02 14:50 - 2013-11-02 14:50 - 00000000 ____D C:\Program Files\SmartTechnology 2013-11-02 14:49 - 2013-11-02 14:48 - 129201056 _____ (Mad catz ) D:\Users\Pascal\Downloads\Smart Technology 7_0_27_13 64Bit.exe 2013-11-02 14:48 - 2013-11-02 14:48 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SaiK0CD5_01009.Wdf 2013-11-02 14:47 - 2013-11-02 14:47 - 07838456 _____ (Mad catz ) D:\Users\Pascal\Downloads\Range_RAT5_SD7_0_20_0_64Bit_Drivers_NonWHQL.exe 2013-11-02 13:55 - 2013-11-02 13:54 - 00004249 _____ C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log 2013-11-02 13:55 - 2013-09-20 18:41 - 00000000 ____D C:\Program Files (x86)\Java 2013-11-02 13:54 - 2013-11-02 13:54 - 00915368 _____ (Oracle Corporation) D:\Users\Pascal\Downloads\jxpiinstall.exe 2013-11-02 13:52 - 2013-11-02 13:53 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 24278649 _____ D:\Users\Pascal\Downloads\vlc-2.1.0-win32.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2013-11-02 13:52 - 2013-11-02 13:52 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2013-11-02 13:52 - 2013-11-02 13:52 - 00000000 ____D C:\Program Files\Java 2013-11-02 13:52 - 2013-11-02 13:51 - 30694824 _____ (Oracle Corporation) D:\Users\Pascal\Downloads\jre-7u45-windows-x64.exe 2013-11-02 12:15 - 2013-11-02 12:15 - 00240392 _____ D:\Users\Pascal\Downloads\DUCSetup_v4_0_1.exe 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP DUC 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D D:\Users\Pascal\AppData\Local\Vitalwerks 2013-11-02 12:15 - 2013-11-02 12:15 - 00000000 ____D C:\Program Files (x86)\No-IP 2013-11-01 06:49 - 2009-07-14 05:45 - 00419568 _____ C:\Windows\system32\FNTCACHE.DAT 2013-11-01 06:34 - 2013-08-10 20:45 - 00110048 _____ D:\Users\Pascal\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-01 01:04 - 2013-08-10 23:20 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-11-01 01:01 - 2013-11-01 01:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Games 2013-10-29 21:39 - 2013-10-15 15:53 - 00000000 ____D C:\Program Files (x86)\Cossacks - Back To War 2013-10-29 18:42 - 2013-08-10 20:54 - 00000000 ____D D:\Users\Pascal\AppData\Local\TeamSpeak 3 Client 2013-10-29 15:58 - 2013-08-10 16:44 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-10-28 18:55 - 2013-09-29 21:35 - 00000000 ____D D:\Users\UpdatusUser.Pascal-PC 2013-10-28 18:55 - 2013-08-10 14:02 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-10-24 20:49 - 2013-10-01 17:39 - 00000000 ____D C:\Windows\Minidump 2013-10-24 20:00 - 2013-09-30 19:54 - 00000000 ____D C:\Program Files (x86)\Trojan Remover 2013-10-23 17:56 - 2013-10-23 17:56 - 01143808 _____ D:\Users\Pascal\Desktop\TerrariViewer.exe 2013-10-23 15:13 - 2013-10-23 15:13 - 00000000 ____D D:\Users\Pascal\AppData\Roaming\NVIDIA 2013-10-23 14:08 - 2013-10-23 14:08 - 61758958 _____ (InstallShield Software Corporation) D:\Users\Pascal\Downloads\aox_patch_1_4.exe 2013-10-23 11:30 - 2013-11-17 18:52 - 30344480 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 22933792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 18199872 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 12572960 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-10-23 11:30 - 2013-11-17 18:52 - 11426568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 11374520 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 09524088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 09480328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433165.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433165.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-10-23 11:30 - 2013-11-17 18:52 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-10-23 11:30 - 2013-10-23 14:27 - 15855568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-10-23 11:30 - 2013-10-21 17:37 - 18286416 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-10-23 11:30 - 2013-10-21 17:37 - 15212336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-10-23 11:30 - 2013-10-17 18:42 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-10-23 11:30 - 2013-10-17 18:42 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-10-23 11:30 - 2013-10-17 18:41 - 03067560 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-10-23 11:30 - 2013-10-17 18:41 - 02695200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-10-23 11:30 - 2013-10-17 18:41 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-10-23 11:30 - 2013-10-17 18:41 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-10-23 11:30 - 2013-10-17 18:41 - 00023287 _____ C:\Windows\system32\nvinfo.pb 2013-10-23 09:20 - 2013-10-17 18:42 - 06669600 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-10-23 09:20 - 2013-10-17 18:42 - 03489568 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-10-23 09:20 - 2013-10-17 18:42 - 03426956 _____ C:\Windows\system32\nvcoproc.bin 2013-10-23 09:20 - 2013-10-17 18:42 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-10-23 09:20 - 2013-10-17 18:42 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-10-23 09:20 - 2013-10-17 18:42 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-10-23 09:20 - 2013-10-17 18:42 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-10-23 03:02 - 2013-10-23 03:02 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe Files to move or delete: ==================== D:\Users\Martini\AppData\Roaming\Origin D:\Users\Pascal\AppData\Roaming\Origin Some content of TEMP: ==================== D:\Users\Pascal\AppData\Local\Temp\drm_dyndata_7390006.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-20 15:17 ==================== End Of Log ============================ |
23.11.2013, 08:08 | #10 |
/// the machine /// TB-Ausbilder | Internet Laggt stark normal ping 30 jetzt zum teil 8000 Downloade Dir bitte TFC ( von Oldtimer ) und speichere die Datei auf dem Desktop. Schließe nun alle offenen Programme und trenne Dich von dem Internet. Doppelklick auf die TFC.exe und drücke auf Start. Sollte TFC nicht alle Dateien löschen können wird es einen Neustart verlangen. Dies bitte zulassen. Fertig Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.12.2013, 17:03 | #11 |
| Internet Laggt stark normal ping 30 jetzt zum teil 8000 So hab alles gemacht sorry das es lange gedauert hat ach ja noch eine frage: ich habe probleme einen minecraft server zu starten also ich mache das schin lange und war eig. recht gut darin aber jetzt kann ich ihn nicht mehr starten es kommt ein fehler aber kann man so etwas auch hier posten? |
19.12.2013, 11:56 | #12 |
/// the machine /// TB-Ausbilder | Internet Laggt stark normal ping 30 jetzt zum teil 8000 Poste mal die Fehlermeldung, dann sag ich dir ob ich helfen kann oder nicht
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.12.2013, 15:23 | #13 |
| Internet Laggt stark normal ping 30 jetzt zum teil 8000 Das passiert wenn ich die start.bat starte. Ich habe java schon mehrmals neu installiert und habe die dateien einem kumpel geschickt und bei ihm gings also liegt es an meinem pc er kennt sich mit java aus aber das kennt er auch net. Code:
ATTFilter D:\Users\Pascal\Desktop\Server\Server 1.7.4>java -Xmx1024M -Xms1024M -jar craftb ukkit.jar nogui Loading libraries, please wait... java.lang.ExceptionInInitializerError at net.minecraft.server.v1_7_R1.MinecraftServer.<init>(MinecraftServer.j ava:109) at net.minecraft.server.v1_7_R1.DedicatedServer.<init>(DedicatedServer.j ava:37) at net.minecraft.server.v1_7_R1.MinecraftServer.main(MinecraftServer.jav a:752) at org.bukkit.craftbukkit.Main.main(Main.java:153) Caused by: java.lang.IllegalStateException: failed to create a child event loop at net.minecraft.util.io.netty.util.concurrent.MultithreadEventExecutorG roup.<init>(MultithreadEventExecutorGroup.java:61) at net.minecraft.util.io.netty.channel.MultithreadEventLoopGroup.<init>( MultithreadEventLoopGroup.java:49) at net.minecraft.util.io.netty.channel.nio.NioEventLoopGroup.<init>(NioE ventLoopGroup.java:61) at net.minecraft.util.io.netty.channel.nio.NioEventLoopGroup.<init>(NioE ventLoopGroup.java:52) at net.minecraft.server.v1_7_R1.ServerConnection.<clinit>(SourceFile:31) ... 4 more Caused by: net.minecraft.util.io.netty.channel.ChannelException: failed to open a new selector at net.minecraft.util.io.netty.channel.nio.NioEventLoop.openSelector(Nio EventLoop.java:128) at net.minecraft.util.io.netty.channel.nio.NioEventLoop.<init>(NioEventL oop.java:120) at net.minecraft.util.io.netty.channel.nio.NioEventLoopGroup.newChild(Ni oEventLoopGroup.java:87) at net.minecraft.util.io.netty.util.concurrent.MultithreadEventExecutorG roup.<init>(MultithreadEventExecutorGroup.java:57) ... 8 more Caused by: java.io.IOException: Unable to establish loopback connection at sun.nio.ch.PipeImpl$Initializer.run(Unknown Source) at sun.nio.ch.PipeImpl$Initializer.run(Unknown Source) at java.security.AccessController.doPrivileged(Native Method) at sun.nio.ch.PipeImpl.<init>(Unknown Source) at sun.nio.ch.SelectorProviderImpl.openPipe(Unknown Source) at java.nio.channels.Pipe.open(Unknown Source) at sun.nio.ch.WindowsSelectorImpl.<init>(Unknown Source) at sun.nio.ch.WindowsSelectorProvider.openSelector(Unknown Source) at net.minecraft.util.io.netty.channel.nio.NioEventLoop.openSelector(Nio EventLoop.java:126) ... 11 more Caused by: java.net.SocketException: Permission denied: listen at sun.nio.ch.Net.listen(Native Method) at sun.nio.ch.ServerSocketChannelImpl.bind(Unknown Source) at sun.nio.ch.ServerSocketAdaptor.bind(Unknown Source) at sun.nio.ch.ServerSocketAdaptor.bind(Unknown Source) ... 20 more D:\Users\Pascal\Desktop\Server\Server 1.7.4>pause Drücken Sie eine beliebige Taste . . . Geändert von Portres (19.12.2013 um 15:25 Uhr) Grund: Das passiert wenn ich die start.bat starte |
20.12.2013, 09:52 | #14 |
/// the machine /// TB-Ausbilder | Internet Laggt stark normal ping 30 jetzt zum teil 8000 Sorry, absolut keine Ahnung
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
20.12.2013, 14:21 | #15 |
| Internet Laggt stark normal ping 30 jetzt zum teil 8000 Kein Problem thx für alles! |
Themen zu Internet Laggt stark normal ping 30 jetzt zum teil 8000 |
arbeitsspeicher, cpu, geforce, geforce gtx, intel, inter, interne, internet, laggt, problem, stark, ultima, unregelmässig, verzweifle, woche, wochen |