|
Plagegeister aller Art und deren Bekämpfung: Neuer bundestrojanerWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
28.11.2013, 15:32 | #1 |
| Neuer bundestrojaner Hey,also ich habe einen bundestrojaner eingefangen der sich nur auf den brwser beschränkt,und er scheint neu zu sein,er hat keine deutschlandflagge it aber immernoch von der bundeskriminalpolizei,er hat irgendwas von wegen ip und sektor und so,und es heisst,wenn man innherlab von 24 stunden auf eine website der polizei geht,komm er wieder und man wird strafrechtlich verfolgt,ohne die möglichkeit zu zahlen,meine schritte waren 1.das video von sempervideo befoglt,und via taskmanager geschlossen,und dann noch die exe geschlossen,dann war mein bildschimr leer,und dann habe ich restartet,seitdem ist alles wieder okay,nur mein google plus konto ist gesperrt,(habe ihn mir eingefangen als ich in google plus war,),bin aber mit einigen tricks wieder reingekommen.(link einfach abgeändert) .ich habe auch 3 virenscans schon gemacht auch mit einem vom BKA oderso empfohlenen programm,es findet nix,jezt wollte ich wissen wie ich sichergehen kann dass dieser auf den browser beschränkte virus total weg ist? ,danke. |
28.11.2013, 18:47 | #2 |
/// the machine /// TB-Ausbilder | Neuer bundestrojaner hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
28.11.2013, 19:08 | #3 |
| Neuer bundestrojaner Hey,there you go,danke .
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-11-2013 Ran by Levi Grosse (administrator) on LEVIGROSSE-PC on 28-11-2013 18:52:38 Running from C:\Users\Levi Grosse\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe () C:\Windows\SysWOW64\LckFldService.exe (Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe () C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Atheros) C:\Program Files (x86)\Atheros\Ath_WlanAgent.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Ask) C:\Program Files (x86)\Ask.com\Updater\Updater.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.EXE (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(1).exe () C:\Program Files (x86)\Ask.com\UpdateTask.exe (Adobe Systems Incorporated) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12452456 2012-02-22] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-08] (Realtek Semiconductor) HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [1021056 2012-03-08] (Atheros Communications) HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [800896 2012-03-08] (Atheros Commnucations) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2886416 2012-03-02] (Synaptics Incorporated) HKLM\...\Run: [Power Management] - C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1829768 2012-02-07] (Acer Incorporated) HKLM\...\Run: [InstantUpdate] - C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuDaemon.exe [124520 2012-04-06] () HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [Akamai NetSession Interface] - "C:\Users\Levi Grosse\AppData\Local\Akamai\netsession_win.exe" HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1823656 2013-11-28] (Valve Corporation) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20472992 2013-10-02] (Skype Technologies S.A.) HKCU\...\Run: [mapdisk] - C:\Users\Levi Grosse\Documents\ArmAWork\mapdisk.bat [54 2013-09-14] () HKCU\...\Run: [Skitch] - C:\Program Files (x86)\Evernote\Skitch\Skitch.exe [4304704 2013-08-09] (Evernote) HKLM-x32\...\Run: [BackupManagerTray] - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [296984 2012-01-05] (NTI Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Dolby Advanced Audio v2] - C:\Dolby PCEE4\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-27] (Intel Corporation) HKLM-x32\...\Run: [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe [1105488 2012-03-24] (Dritek System Inc.) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [4767304 2013-03-07] (AVAST Software) HKLM-x32\...\Run: [UnlockerAssistant] - "C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe" HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [ApnUpdater] - C:\Program Files (x86)\Ask.com\Updater\Updater.exe [1646216 2013-03-31] (Ask) HKLM-x32\...\Run: [20131121] - C:\Program Files\AVAST Software\Avast\Setup\emupdate\b079aac6-7a48-4db8-ab22-6291d3c7afef.exe [180184 2013-11-23] (AVAST Software) HKU\Default\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [162408 2011-09-13] () HKU\Default User\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [162408 2011-09-13] () AppInit_DLLs: C:\Windows\System32\nvinitx.dll [168616 2013-11-23] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll [141336 2013-11-23] (NVIDIA Corporation) Startup: C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Web search HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login. URLSearchHook: HKCU - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) SearchScopes: HKCU - DefaultScope {C15DCA49-3B9D-46C1-BD7A-C957F2B4703F} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=28b65b62000000000000e006e6aa8765&r=938 SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {5861E997-CB08-496D-BA30-BFA64B579B7F} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYAT&apn_uid=341B7162-7AFF-4F0D-BDC2-DBD2758D91D3&apn_sauid=1046E39E-4A60-4653-BEED-8DB99F07205C SearchScopes: HKCU - {C15DCA49-3B9D-46C1-BD7A-C957F2B4703F} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=28b65b62000000000000e006e6aa8765&r=938 BHO: avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.) BHO-x32: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM-x32 - No Name - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No File Toolbar: HKLM-x32 - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 FireFox: ======== FF ProfilePath: C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432 FF user.js: detected! => C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\user.js FF DefaultSearchEngine: NationSearch FF SelectedSearchEngine: NationSearch FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\searchplugins\askcom.xml FF SearchPlugin: C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\searchplugins\Nation.xml FF SearchPlugin: C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\searchplugins\softonic.xml FF SearchPlugin: C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\searchplugins\xfire-new-customized-web-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Ask Toolbar - C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\Extensions\toolbar@ask.com FF Extension: exif_viewer - C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\Extensions\exif_viewer@mozilla.doslash.org.xpi FF Extension: stylish - C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi FF Extension: QuickStores-Toolbar - C:\Program Files (x86)\Mozilla Firefox\extensions\quickstores@quickstores.de FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! WebRep - C:\Program Files\AVAST Software\Avast\WebRep\FF Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR Extension: (Softonic Chrome Toolbar) - C:\Users\LEVIGR~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0 CHR HKLM-x32\...\Chrome\Extension: [aaaaojmikegpiepcfdkkjaplodkpfmlo] - C:\Users\Levi Grosse\AppData\Local\APN\GoogleCRXs\apnorjtoolbar.crx CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx CHR HKLM-x32\...\Chrome\Extension: [gaiilaahiahdejapggenmdmafpmbipje] - C:\Program Files (x86)\DealPly\DealPly.crx CHR HKLM-x32\...\Chrome\Extension: [icmlaeflemplmjndnaapfdbbnpncnbda] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx ==================== Services (Whitelisted) ================= S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-11-28] (Adobe Systems) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-07] (AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-08-21] () R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [109352 2013-10-15] (SurfRight B.V.) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [127320 2012-03-16] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [162648 2012-03-16] (Intel Corporation) R2 LckFldService; C:\Windows\SysWow64\LckFldService.exe [36864 2005-06-22] () R2 mi-raysat_3dsmax2012_64; C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe [86016 2011-02-22] () R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256536 2012-01-05] (NTI Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15125280 2013-11-08] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-11-17] () R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Atheros\Ath_WlanAgent.exe [76960 2012-02-27] (Atheros) ==================== Drivers (Whitelisted) ==================== R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-03-07] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-03-07] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [70992 2013-03-07] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-03-07] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1025808 2013-03-07] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [377920 2013-03-07] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [68920 2013-03-07] (AVAST Software) S3 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [178624 2013-03-07] () R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 xhunter1; \??\C:\Windows\xhunter1.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-28 18:52 - 2013-11-28 18:54 - 00021549 _____ C:\Users\Levi Grosse\Downloads\FRST.txt 2013-11-28 18:52 - 2013-11-28 18:52 - 00000000 ____D C:\FRST 2013-11-28 18:50 - 2013-11-28 18:52 - 01959024 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(1).exe 2013-11-28 14:35 - 2013-11-28 14:36 - 01958850 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64.exe 2013-11-28 13:36 - 2013-11-28 13:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\NVIDIA 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\SysWOW64\NV 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\system32\NV 2013-11-28 11:59 - 2013-11-23 18:42 - 06674208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 01065248 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-11-28 11:59 - 2013-11-23 18:42 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-11-28 11:59 - 2013-11-22 17:28 - 03498475 _____ C:\Windows\system32\nvcoproc.bin 2013-11-28 11:30 - 2013-11-23 20:26 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 18293096 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 15218504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 12613920 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-28 11:30 - 2013-11-23 20:26 - 11566648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 11441664 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 09663656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 03069608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 02697248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433193.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433193.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00032544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2013-11-28 11:30 - 2013-11-23 20:26 - 00023754 _____ C:\Windows\system32\nvinfo.pb 2013-11-28 11:21 - 2013-11-28 11:21 - 00003240 _____ C:\Windows\System32\Tasks\{F948D6A6-E943-4D72-B154-17C8CA7B3B4D} 2013-11-28 11:14 - 2013-11-28 11:14 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(2).exe 2013-11-28 11:09 - 2013-11-28 11:09 - 00002009 _____ C:\Users\Levi Grosse\Desktop\Adobe Photoshop CS2.lnk 2013-11-28 11:07 - 2013-11-28 11:07 - 00000000 ____D C:\PS_CS2_Gr_NonRet 2013-11-28 10:57 - 2013-11-28 10:58 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(1).exe 2013-11-28 10:43 - 2013-11-08 21:47 - 01064224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-28 10:43 - 2013-11-08 21:47 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-28 10:40 - 2013-09-28 00:01 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-11-28 10:40 - 2013-09-28 00:01 - 00028960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-11-28 10:31 - 2013-11-28 10:42 - 375232764 _____ (Adobe Systems Inc. ) C:\Users\Levi Grosse\Desktop\PS_CS2_Gr_NonRet.exe 2013-11-27 13:18 - 2013-11-28 11:16 - 00151552 _____ C:\Windows\SysWOW64\nvRegDev.dll 2013-11-27 13:17 - 2013-11-28 11:21 - 00061440 _____ C:\Windows\SysWOW64\nvPhotoshopUtil.dll 2013-11-27 13:17 - 2013-11-28 11:21 - 00040960 _____ C:\Windows\SysWOW64\nvISWOW64.dll 2013-11-27 13:16 - 2013-11-27 13:17 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800.exe 2013-11-27 08:48 - 2013-11-27 10:01 - 01195004 _____ C:\Users\Levi Grosse\Desktop\untitled.blend 2013-11-26 21:01 - 2013-11-26 21:04 - 112496772 _____ C:\Users\Levi Grosse\Downloads\@HAFM_A3_Stable_v1.rar.part 2013-11-24 10:36 - 2013-11-24 10:36 - 00000000 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_36_50.272604.dmp 2013-11-24 10:34 - 2013-11-24 10:34 - 00188754 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_34_05.199162.dmp 2013-11-24 09:26 - 2013-11-24 09:53 - 00000000 ____D C:\Users\Levi Grosse\Desktop\lol fun 2013-11-24 04:09 - 2013-11-24 04:09 - 00188526 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_09_33.084763.dmp 2013-11-24 04:08 - 2013-11-24 04:08 - 00181447 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_08_43.455113.dmp 2013-11-24 04:07 - 2013-11-24 04:07 - 00219694 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_07_16.031364.dmp 2013-11-23 02:39 - 2013-11-23 02:39 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Unity 2013-11-23 02:18 - 2013-11-23 02:18 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\.mono 2013-11-23 02:14 - 2013-11-23 02:14 - 06137144 _____ (Unity Technologies ApS) C:\Users\Levi Grosse\Downloads\UnityWebPlayerFull.exe 2013-11-22 09:31 - 2013-11-22 09:31 - 20730241 _____ C:\Users\Levi Grosse\Downloads\@IanSky_Scope_Mod_R6.1.rar 2013-11-22 07:47 - 2013-11-28 13:39 - 00000000 ____D C:\ProgramData\boost_interprocess 2013-11-22 07:45 - 2013-11-22 07:47 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Autodesk 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Users\Levi Grosse\Documents\Inventor Server x64 Autodesk 3ds Max 2012 64-bit - English 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared 2013-11-22 07:40 - 2013-11-22 07:40 - 00002002 _____ C:\Users\Levi Grosse\Desktop\Autodesk 3ds Max 2012 64-bit - English.lnk 2013-11-22 07:37 - 2013-11-28 13:43 - 00000000 ____D C:\Users\Levi Grosse\Documents\3dsMax 2013-11-22 07:36 - 2013-11-22 07:42 - 00000000 ____D C:\Program Files\Autodesk 2013-11-22 07:36 - 2013-11-22 07:40 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared 2013-11-22 07:35 - 2013-11-22 07:35 - 00000000 ____D C:\Program Files (x86)\Autodesk 2013-11-22 07:15 - 2013-11-22 07:46 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Autodesk 2013-11-22 07:15 - 2013-11-22 07:46 - 00000000 ____D C:\ProgramData\Autodesk 2013-11-22 07:06 - 2013-11-22 07:06 - 00000000 ____D C:\Autodesk 2013-11-20 02:58 - 2013-11-20 02:58 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX_Projects 2013-11-20 02:57 - 2013-11-20 03:07 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\six-updater 2013-11-20 02:56 - 2013-11-20 02:56 - 00002573 _____ C:\Users\Public\Desktop\Six Updater.lnk 2013-11-20 02:56 - 2013-11-20 02:56 - 00000000 ____D C:\Program Files (x86)\SIX Projects 2013-11-20 02:54 - 2013-11-20 02:54 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup(1).exe 2013-11-20 02:49 - 2013-11-20 02:50 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup.exe 2013-11-20 02:26 - 2013-11-20 02:26 - 11311984 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play(1).exe 2013-11-19 23:01 - 2013-11-19 23:01 - 00000000 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe 2013-11-19 23:00 - 2013-11-19 23:01 - 13189037 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe.part 2013-11-19 13:36 - 2013-11-19 13:41 - 177171911 _____ C:\Users\Levi Grosse\Downloads\German_Weapons_Pack_v1.7.rar 2013-11-19 13:27 - 2013-11-19 13:28 - 41023637 _____ C:\Users\Levi Grosse\Downloads\FA18_v1.51_ARMA_3.rar 2013-11-19 13:26 - 2013-11-19 13:26 - 00802768 _____ C:\Users\Levi Grosse\Downloads\ado_boussole.rar 2013-11-19 13:20 - 2013-11-19 13:26 - 205994424 _____ C:\Users\Levi Grosse\Downloads\@idzgladius.rar 2013-11-19 10:33 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-11-19 10:27 - 2013-11-19 10:27 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-19 10:25 - 2013-11-19 10:33 - 00009916 _____ C:\Windows\IE11_main.log 2013-11-17 16:10 - 2013-11-17 16:10 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Arktos Entertainment 2013-11-17 16:08 - 2013-11-17 16:08 - 00000000 ____D C:\Users\Levi Grosse\Documents\Arktos 2013-11-16 21:52 - 2013-11-16 21:52 - 02810471 _____ C:\Users\Levi Grosse\Downloads\@Bike.rar 2013-11-15 22:58 - 2013-11-27 01:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-15 21:45 - 2013-11-15 21:45 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\DCS 2013-11-13 20:03 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-13 20:03 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-13 20:03 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-13 20:03 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-11-13 20:03 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-11-13 20:03 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-13 20:03 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-11-13 20:03 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-11-13 20:03 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-11-13 20:03 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-11-13 20:03 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-11-13 20:03 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-11-13 20:03 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-11-13 20:03 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-13 20:03 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-11-13 20:03 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-11-13 20:03 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-11-13 20:03 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-11-13 20:03 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-11-13 20:03 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-11-13 20:03 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-11-13 20:03 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-11-13 20:03 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-11-13 20:03 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-11-13 20:03 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-11-13 20:03 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-11-13 20:03 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-11-13 20:03 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-11-13 20:03 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-11-13 20:03 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-11-12 14:50 - 2013-11-12 16:49 - 441583242 _____ C:\Users\Levi Grosse\Downloads\@jsrs2.0.rar 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\TuneUp Software 2013-11-10 11:21 - 2013-11-10 11:30 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\DVDVideoSoft 2013-11-10 11:21 - 2013-11-10 11:21 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\OpenCandy 2013-11-10 11:18 - 2013-11-10 11:19 - 32206488 _____ (DVDVideoSoft Ltd. ) C:\Users\Levi Grosse\Downloads\FreeYouTubeToMP3Converter_3.12.16.1030.exe 2013-11-10 10:41 - 2013-11-10 10:41 - 00000000 ____D C:\Users\Levi Grosse\Documents\Movie Studio Platinum 12.0 Projekte 2013-11-10 10:28 - 2013-11-10 10:32 - 185831992 _____ (Sony Creative Software Inc.) C:\Users\Levi Grosse\Downloads\moviestudiope12.0.334_64bit.exe 2013-11-09 23:14 - 2013-11-09 23:14 - 00394148 _____ C:\Users\Levi Grosse\Downloads\dbo_animationfiles.rar 2013-11-07 23:40 - 2013-11-07 23:50 - 00000173 _____ C:\Windows\user_bmvg5.ini 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\Documents\arma 2 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\ProgramData\SIX Networks 2013-11-07 12:22 - 2013-11-07 12:22 - 01005568 _____ (Microsoft Corporation) C:\Users\Levi Grosse\Downloads\dotNetFx45_Full_setup.exe 2013-11-07 12:17 - 2013-11-07 12:19 - 11300072 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play.exe 2013-11-03 09:12 - 2013-11-03 09:12 - 00000000 ____D C:\ProgramData\GFACE 2013-11-02 23:51 - 2013-11-02 23:51 - 00002072 _____ C:\Users\Public\Desktop\Blender.lnk 2013-11-02 23:49 - 2013-11-02 23:51 - 43398086 _____ C:\Users\Levi Grosse\Downloads\blender-2.69-windows32.exe 2013-10-29 19:48 - 2013-10-31 00:43 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\.minecraft 2013-10-29 03:13 - 2013-10-29 03:20 - 180802496 _____ C:\Users\Levi Grosse\Downloads\MD3_Personal_1_2_1_1_Installer_x64.exe 2013-10-29 02:26 - 2013-10-29 02:27 - 08166182 _____ C:\Users\Levi Grosse\Downloads\WM235_Basic(1).exe ==================== One Month Modified Files and Folders ======= 2013-11-28 18:54 - 2013-11-28 18:52 - 00021549 _____ C:\Users\Levi Grosse\Downloads\FRST.txt 2013-11-28 18:54 - 2012-09-11 18:15 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Skype 2013-11-28 18:53 - 2013-03-23 18:56 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-28 18:52 - 2013-11-28 18:52 - 00000000 ____D C:\FRST 2013-11-28 18:52 - 2013-11-28 18:50 - 01959024 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(1).exe 2013-11-28 18:47 - 2012-06-21 04:23 - 01071457 _____ C:\Windows\WindowsUpdate.log 2013-11-28 17:15 - 2013-02-23 20:50 - 00000000 ____D C:\Program Files (x86)\Steam 2013-11-28 16:16 - 2012-06-21 04:34 - 00000830 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job 2013-11-28 15:05 - 2009-07-14 05:45 - 00024416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-28 15:05 - 2009-07-14 05:45 - 00024416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-28 14:59 - 2013-10-02 18:24 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Skitch 2013-11-28 14:57 - 2013-06-06 00:51 - 00033408 _____ C:\Windows\setupact.log 2013-11-28 14:57 - 2012-06-21 04:34 - 00000828 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job 2013-11-28 14:56 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-11-28 14:36 - 2013-11-28 14:35 - 01958850 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64.exe 2013-11-28 13:43 - 2013-11-22 07:37 - 00000000 ____D C:\Users\Levi Grosse\Documents\3dsMax 2013-11-28 13:39 - 2013-11-22 07:47 - 00000000 ____D C:\ProgramData\boost_interprocess 2013-11-28 13:36 - 2013-11-28 13:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\NVIDIA 2013-11-28 13:06 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\SysWOW64\NV 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\system32\NV 2013-11-28 12:10 - 2013-05-26 13:41 - 00000000 ____D C:\ProgramData\NVIDIA 2013-11-28 11:59 - 2012-06-21 04:30 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-11-28 11:59 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Help 2013-11-28 11:58 - 2013-05-26 13:39 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-11-28 11:58 - 2012-06-21 04:30 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-11-28 11:37 - 2012-09-11 23:49 - 00068064 _____ C:\Users\Levi Grosse\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-28 11:34 - 2009-07-14 05:45 - 00314928 _____ C:\Windows\system32\FNTCACHE.DAT 2013-11-28 11:21 - 2013-11-28 11:21 - 00003240 _____ C:\Windows\System32\Tasks\{F948D6A6-E943-4D72-B154-17C8CA7B3B4D} 2013-11-28 11:21 - 2013-11-27 13:17 - 00061440 _____ C:\Windows\SysWOW64\nvPhotoshopUtil.dll 2013-11-28 11:21 - 2013-11-27 13:17 - 00040960 _____ C:\Windows\SysWOW64\nvISWOW64.dll 2013-11-28 11:20 - 2013-09-14 11:16 - 00000000 ____D C:\Users\Levi Grosse\Documents\ArmAWork 2013-11-28 11:16 - 2013-11-27 13:18 - 00151552 _____ C:\Windows\SysWOW64\nvRegDev.dll 2013-11-28 11:14 - 2013-11-28 11:14 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(2).exe 2013-11-28 11:12 - 2012-09-11 17:54 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Adobe 2013-11-28 11:11 - 2012-03-28 19:57 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-11-28 11:10 - 2012-09-11 23:50 - 00000000 ___RD C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-28 11:09 - 2013-11-28 11:09 - 00002009 _____ C:\Users\Levi Grosse\Desktop\Adobe Photoshop CS2.lnk 2013-11-28 11:07 - 2013-11-28 11:07 - 00000000 ____D C:\PS_CS2_Gr_NonRet 2013-11-28 10:58 - 2013-11-28 10:57 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(1).exe 2013-11-28 10:42 - 2013-11-28 10:31 - 375232764 _____ (Adobe Systems Inc. ) C:\Users\Levi Grosse\Desktop\PS_CS2_Gr_NonRet.exe 2013-11-28 06:06 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-11-27 17:36 - 2013-06-22 01:37 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Arma 3 2013-11-27 13:20 - 2012-03-28 19:43 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-11-27 13:17 - 2013-11-27 13:16 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800.exe 2013-11-27 10:24 - 2012-10-11 20:19 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\TS3Client 2013-11-27 10:01 - 2013-11-27 08:48 - 01195004 _____ C:\Users\Levi Grosse\Desktop\untitled.blend 2013-11-27 08:47 - 2013-08-23 02:56 - 00000000 ____D C:\Users\Levi Grosse\Desktop\Asphalt 2013-11-27 04:46 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-11-27 01:13 - 2013-11-15 22:58 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-27 00:47 - 2012-11-29 19:53 - 00000000 ____D C:\Users\Levi Grosse\Desktop\Blender_Projekte 2013-11-26 21:04 - 2013-11-26 21:01 - 112496772 _____ C:\Users\Levi Grosse\Downloads\@HAFM_A3_Stable_v1.rar.part 2013-11-26 07:23 - 2013-06-06 00:51 - 00215770 _____ C:\Windows\PFRO.log 2013-11-24 10:36 - 2013-11-24 10:36 - 00000000 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_36_50.272604.dmp 2013-11-24 10:34 - 2013-11-24 10:34 - 00188754 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_34_05.199162.dmp 2013-11-24 09:53 - 2013-11-24 09:26 - 00000000 ____D C:\Users\Levi Grosse\Desktop\lol fun 2013-11-24 04:09 - 2013-11-24 04:09 - 00188526 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_09_33.084763.dmp 2013-11-24 04:08 - 2013-11-24 04:08 - 00181447 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_08_43.455113.dmp 2013-11-24 04:07 - 2013-11-24 04:07 - 00219694 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_07_16.031364.dmp 2013-11-23 21:12 - 2012-09-14 18:13 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Unity 2013-11-23 20:26 - 2013-11-28 11:30 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 18293096 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 15218504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 12613920 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-23 20:26 - 2013-11-28 11:30 - 11566648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 11441664 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 09663656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 03069608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 02697248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433193.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433193.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00032544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2013-11-23 20:26 - 2013-11-28 11:30 - 00023754 _____ C:\Windows\system32\nvinfo.pb 2013-11-23 18:42 - 2013-11-28 11:59 - 06674208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 01065248 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-11-23 18:42 - 2013-11-28 11:59 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-11-23 02:39 - 2013-11-23 02:39 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Unity 2013-11-23 02:18 - 2013-11-23 02:18 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\.mono 2013-11-23 02:14 - 2013-11-23 02:14 - 06137144 _____ (Unity Technologies ApS) C:\Users\Levi Grosse\Downloads\UnityWebPlayerFull.exe 2013-11-22 17:28 - 2013-11-28 11:59 - 03498475 _____ C:\Windows\system32\nvcoproc.bin 2013-11-22 09:31 - 2013-11-22 09:31 - 20730241 _____ C:\Users\Levi Grosse\Downloads\@IanSky_Scope_Mod_R6.1.rar 2013-11-22 07:47 - 2013-11-22 07:45 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Autodesk 2013-11-22 07:46 - 2013-11-22 07:15 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Autodesk 2013-11-22 07:46 - 2013-11-22 07:15 - 00000000 ____D C:\ProgramData\Autodesk 2013-11-22 07:45 - 2012-03-28 19:42 - 00000000 ____D C:\ProgramData\FLEXnet 2013-11-22 07:42 - 2013-11-22 07:36 - 00000000 ____D C:\Program Files\Autodesk 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Users\Levi Grosse\Documents\Inventor Server x64 Autodesk 3ds Max 2012 64-bit - English 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared 2013-11-22 07:40 - 2013-11-22 07:40 - 00002002 _____ C:\Users\Levi Grosse\Desktop\Autodesk 3ds Max 2012 64-bit - English.lnk 2013-11-22 07:40 - 2013-11-22 07:36 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared 2013-11-22 07:36 - 2009-07-14 03:34 - 00017598 _____ C:\Windows\system32\Drivers\etc\services 2013-11-22 07:35 - 2013-11-22 07:35 - 00000000 ____D C:\Program Files (x86)\Autodesk 2013-11-22 07:30 - 2013-06-17 04:16 - 00355926 _____ C:\Windows\DirectX.log 2013-11-22 07:06 - 2013-11-22 07:06 - 00000000 ____D C:\Autodesk 2013-11-20 03:07 - 2013-11-20 02:57 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\six-updater 2013-11-20 02:58 - 2013-11-20 02:58 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX_Projects 2013-11-20 02:56 - 2013-11-20 02:56 - 00002573 _____ C:\Users\Public\Desktop\Six Updater.lnk 2013-11-20 02:56 - 2013-11-20 02:56 - 00000000 ____D C:\Program Files (x86)\SIX Projects 2013-11-20 02:54 - 2013-11-20 02:54 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup(1).exe 2013-11-20 02:50 - 2013-11-20 02:49 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup.exe 2013-11-20 02:26 - 2013-11-20 02:26 - 11311984 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play(1).exe 2013-11-19 23:01 - 2013-11-19 23:01 - 00000000 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe 2013-11-19 23:01 - 2013-11-19 23:00 - 13189037 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe.part 2013-11-19 13:41 - 2013-11-19 13:36 - 177171911 _____ C:\Users\Levi Grosse\Downloads\German_Weapons_Pack_v1.7.rar 2013-11-19 13:28 - 2013-11-19 13:27 - 41023637 _____ C:\Users\Levi Grosse\Downloads\FA18_v1.51_ARMA_3.rar 2013-11-19 13:26 - 2013-11-19 13:26 - 00802768 _____ C:\Users\Levi Grosse\Downloads\ado_boussole.rar 2013-11-19 13:26 - 2013-11-19 13:20 - 205994424 _____ C:\Users\Levi Grosse\Downloads\@idzgladius.rar 2013-11-19 10:53 - 2012-09-11 23:50 - 00001429 _____ C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-19 10:33 - 2013-11-19 10:25 - 00009916 _____ C:\Windows\IE11_main.log 2013-11-19 10:27 - 2013-11-19 10:27 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-19 09:39 - 2013-03-05 14:30 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2013-11-18 02:17 - 2012-09-18 22:51 - 00291128 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-11-18 02:17 - 2012-09-18 21:58 - 00291128 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-11-18 02:16 - 2012-11-21 20:19 - 00000000 ___HD C:\Windows\msdownld.tmp 2013-11-18 02:00 - 2012-09-18 21:58 - 00291128 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-11-17 16:10 - 2013-11-17 16:10 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Arktos Entertainment 2013-11-17 16:08 - 2013-11-17 16:08 - 00000000 ____D C:\Users\Levi Grosse\Documents\Arktos 2013-11-17 16:07 - 2012-09-18 21:58 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-11-16 21:52 - 2013-11-16 21:52 - 02810471 _____ C:\Users\Levi Grosse\Downloads\@Bike.rar 2013-11-16 12:53 - 2012-09-11 18:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-11-15 21:46 - 2012-09-14 23:03 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\CrashDumps 2013-11-15 21:45 - 2013-11-15 21:45 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\DCS 2013-11-14 01:55 - 2013-07-12 23:58 - 00000000 ____D C:\Windows\system32\MRT 2013-11-14 01:52 - 2012-10-12 20:26 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-11-12 16:49 - 2013-11-12 14:50 - 441583242 _____ C:\Users\Levi Grosse\Downloads\@jsrs2.0.rar 2013-11-11 05:50 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-11-10 11:30 - 2013-11-10 11:21 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\DVDVideoSoft 2013-11-10 11:24 - 2012-09-13 17:06 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Google 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\TuneUp Software 2013-11-10 11:23 - 2012-11-06 14:15 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-11-10 11:21 - 2013-11-10 11:21 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\OpenCandy 2013-11-10 11:19 - 2013-11-10 11:18 - 32206488 _____ (DVDVideoSoft Ltd. ) C:\Users\Levi Grosse\Downloads\FreeYouTubeToMP3Converter_3.12.16.1030.exe 2013-11-10 10:43 - 2013-07-06 22:50 - 00000000 ____D C:\ProgramData\Sony 2013-11-10 10:43 - 2013-04-03 21:34 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Sony 2013-11-10 10:41 - 2013-11-10 10:41 - 00000000 ____D C:\Users\Levi Grosse\Documents\Movie Studio Platinum 12.0 Projekte 2013-11-10 10:39 - 2013-07-06 22:49 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Sony 2013-11-10 10:32 - 2013-11-10 10:28 - 185831992 _____ (Sony Creative Software Inc.) C:\Users\Levi Grosse\Downloads\moviestudiope12.0.334_64bit.exe 2013-11-09 23:14 - 2013-11-09 23:14 - 00394148 _____ C:\Users\Levi Grosse\Downloads\dbo_animationfiles.rar 2013-11-08 21:47 - 2013-11-28 10:43 - 01064224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-08 21:47 - 2013-11-28 10:43 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-07 23:50 - 2013-11-07 23:40 - 00000173 _____ C:\Windows\user_bmvg5.ini 2013-11-07 12:42 - 2013-06-22 01:37 - 00000000 ____D C:\Users\Levi Grosse\Documents\Arma 3 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\Documents\arma 2 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\ProgramData\SIX Networks 2013-11-07 12:22 - 2013-11-07 12:22 - 01005568 _____ (Microsoft Corporation) C:\Users\Levi Grosse\Downloads\dotNetFx45_Full_setup.exe 2013-11-07 12:19 - 2013-11-07 12:17 - 11300072 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play.exe 2013-11-06 21:10 - 2012-06-21 14:11 - 01884308 _____ C:\Windows\system32\perfh007.dat 2013-11-06 21:10 - 2012-06-21 14:11 - 00534232 _____ C:\Windows\system32\perfc007.dat 2013-11-06 21:10 - 2009-07-14 06:13 - 00006540 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-03 09:12 - 2013-11-03 09:12 - 00000000 ____D C:\ProgramData\GFACE 2013-11-02 23:51 - 2013-11-02 23:51 - 00002072 _____ C:\Users\Public\Desktop\Blender.lnk 2013-11-02 23:51 - 2013-11-02 23:49 - 43398086 _____ C:\Users\Levi Grosse\Downloads\blender-2.69-windows32.exe 2013-11-02 10:32 - 2012-03-28 20:18 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-11-02 10:32 - 2012-03-28 20:18 - 00000000 ____D C:\ProgramData\Skype 2013-10-31 00:43 - 2013-10-29 19:48 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\.minecraft 2013-10-29 03:20 - 2013-10-29 03:13 - 180802496 _____ C:\Users\Levi Grosse\Downloads\MD3_Personal_1_2_1_1_Installer_x64.exe 2013-10-29 02:27 - 2013-10-29 02:26 - 08166182 _____ C:\Users\Levi Grosse\Downloads\WM235_Basic(1).exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-20 07:11 ==================== End Of Log ============================ und hier die additionFRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-11-2013 Ran by Levi Grosse at 2013-11-28 18:55:37 Running from C:\Users\Levi Grosse\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C} AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== Acer Backup Manager (x32 Version: 3.0.0.100) Acer Crystal Eye Webcam (x32 Version: 1.5.2728.00) Acer ePower Management (x32 Version: 6.00.3010) Acer eRecovery Management (x32 Version: 5.00.3507) Acer Instant Update Service (Version: 1.00.3004) Acer Registration (x32 Version: 1.04.3506) Acer ScreenSaver (x32 Version: 20.11.1107.1418) Acer Updater (x32 Version: 1.02.3501) Adobe AIR (x32 Version: 3.7.0.1860) Adobe Bridge 1.0 (x32 Version: 001.000.001) Adobe Common File Installer (x32 Version: 1.00.001) Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.117) Adobe Help Center 1.0 (x32 Version: 1.0.1) Adobe Photoshop CS2 (x32 Version: 9.0) Adobe Reader X (10.1.7) MUI (x32 Version: 10.1.7) Adobe Stock Photos 1.0 (x32 Version: 1.0.1) Arma 3 Alpha (x32) Ask Toolbar (x32 Version: 1.15.23.0) Ask Toolbar Updater (HKCU Version: 1.2.5.36191) Atheros Bluetooth Suite (64) (Version: 7.4.0.126) Atheros Driver Installation Program (x32 Version: 10.0) Autodesk 3ds Max 2012 64-bit - English (Version: 14.0) Autodesk Backburner 2012.0.0 (x32 Version: 2012.0.0) Autodesk FBX Plug-in 2012.0 - 3ds Max 2012 64-bit Autodesk Material Library 2012 (x32 Version: 2.5.0.8) Autodesk Material Library Base Resolution Image Library 2012 (x32 Version: 2.5.0.8) Autodesk Material Library Medium Resolution Image Library 2012 (x32 Version: 2.5.0.8) avast! Free Antivirus (x32 Version: 8.0.1483.0) Backup Manager V3 (x32 Version: 3.0.0.100) BattlEye Uninstall (x32) Bing Bar (x32 Version: 7.2.241.0) BinMake Uninstall (x32) BinPBO Personal Edition Uninstall (x32) BI's Tools drive Uninstall (x32) Blender (Version: 2.69) Composite 2012 64-bit (Version: 7.0.0) Crazybump (remove only) (x32) Dolby Advanced Audio v2 (x32 Version: 7.2.7000.7) FontToTga Uninstall (x32) Fraps (remove only) (x32) FSM Editor Personal Edition Uninstall (x32) GeForce Experience NvStream Client Components (Version: 1.6.28) HitmanPro 3.7 (Version: 3.7.8.208) Identity Card (x32 Version: 1.00.3501) Intel(R) Manageability Engine Firmware Recovery Agent (x32 Version: 1.0.0.35342) Intel(R) Management Engine Components (x32 Version: 8.0.4.1441) Intel(R) OpenCL CPU Runtime (x32) Intel(R) Processor Graphics (x32 Version: 8.15.10.2712) Intel(R) Rapid Storage Technology (x32 Version: 11.0.0.1032) Intel(R) USB 3.0 eXtensible Host Controller Driver (x32 Version: 1.0.4.220) Intel® Trusted Connect Service Client (Version: 1.23.605.1) Java 7 Update 25 (x32 Version: 7.0.250) Java Auto Updater (x32 Version: 2.1.9.5) Launch Manager (x32 Version: 5.1.15) Marvelous Designer 3 Personal (x32) Microsoft .NET Framework 4.5 (Version: 4.5.50709) Microsoft .NET Framework 4.5 DEU Language Pack (Version: 4.5.50709) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (x32 Version: 3.5.30730.0) Microsoft Office 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000) Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.5139.5005) Microsoft Silverlight (Version: 5.1.20913.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0) Mozilla Firefox 25.0.1 (x86 de) (x32 Version: 25.0.1) Mozilla Maintenance Service (x32 Version: 25.0.1) MSVCRT Redists (Version: 1.0) Nexon Game Manager (x32) NVIDIA GeForce Experience 1.7.1 (Version: 1.7.1) NVIDIA Grafiktreiber 331.93 (Version: 331.93) NVIDIA Install Application (Version: 2.1002.140.952) NVIDIA LED Visualizer 1.0 (Version: 1.0) NVIDIA Optimus 9.3.21 (Version: 9.3.21) NVIDIA PhysX (x32 Version: 9.13.0725) NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725) NVIDIA ShadowPlay 9.3.21 (Version: 9.3.21) NVIDIA Systemsteuerung 331.93 (Version: 331.93) NVIDIA Update 9.3.21 (Version: 9.3.21) NVIDIA Update Components (Version: 9.3.21) NVIDIA Virtual Audio 1.2.9 (Version: 1.2.9) OpenOffice 4.0.1 (x32 Version: 4.01.9714) Oxygen 2 Personal Edition Uninstall (x32) Pando Media Booster (x32 Version: 2.6.0.8) PunkBuster Services (x32 Version: 0.993) Realtek Ethernet Controller Driver (x32 Version: 7.54.309.2012) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6577) Realtek PCIE Card Reader (x32 Version: 6.1.7601.27015) SHIELD Streaming (Version: 1.6.53) Six Updater (x32 Version: 2.09.7038) Skitch (x32 Version: 2.3.0.10) Skype™ 6.9 (x32 Version: 6.9.106) Sound Tools Uninstall (x32) Steam (x32 Version: 1.0.0.0) Synaptics Pointing Device Driver (Version: 16.0.2.0) TeamSpeak 3 Client (Version: 3.0.13) TexView 2 Uninstall (x32) Unreal Development Kit: 2013-02 Update for Microsoft .NET Framework 4.5 (KB2750147) (x32 Version: 1) Update for Microsoft .NET Framework 4.5 (KB2805221) (x32 Version: 1) Update for Microsoft .NET Framework 4.5 (KB2805226) (x32 Version: 1) Visitor 3 Uninstall (x32) Welcome Center (x32 Version: 1.02.3507) WinRAR 4.20 (64-Bit) (Version: 4.20.0) ==================== Restore Points ========================= 26-11-2013 12:29:44 Windows Update 27-11-2013 12:19:51 Installed NVIDIA Photoshop Plug-ins 64 bit 28-11-2013 09:47:22 Adobe Photoshop CS2 wird installiert 28-11-2013 09:58:53 Removed NVIDIA Photoshop Plug-ins 64 bit 28-11-2013 10:00:19 Removed NVIDIA Photoshop Plug-ins 64 bit 28-11-2013 10:08:27 Adobe Photoshop CS2 wird installiert 28-11-2013 10:16:20 Removed NVIDIA Photoshop Plug-ins 64 bit 28-11-2013 10:19:50 Removed NVIDIA Photoshop Plug-ins 64 bit 28-11-2013 10:21:50 Removed NVIDIA Photoshop Plug-ins 64 bit 28-11-2013 10:57:29 Gerätetreiber-Paketinstallation: NVIDIA Grafikkarte ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {03B79AF7-F118-4FAD-8184-634F8D7B3B11} - System32\Tasks\{E4CD87B5-3F55-4F28-AE5A-374B432493E7} => Firefox.exe Skype auf Ihren Computer herunterladen ? Mac, Windows, Linux*?*Skype Task: {17DE29D0-71BE-481C-8CD2-570B123150F8} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25] (Intel Corporation) Task: {181F734F-7046-4097-85A5-4D11144018CD} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-03-07] (AVAST Software) Task: {19D8B41C-A6C5-4487-97E4-5FD80A565279} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {827BF430-AA87-4D62-9BD6-44A83617F1A4} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25] (Intel Corporation) Task: {B2752E58-4CCA-46EC-A61F-BC1FFD9D21AD} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe [2013-03-31] () Task: {C8C2B3CB-133B-4CFA-ACED-D60FD4AF00EC} - System32\Tasks\DealPly => C:\Users\LEVIGR~1\AppData\Roaming\DealPly\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {ED9A424B-149A-429F-83B0-9F9C2542DE4D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09] (Adobe Systems Incorporated) Task: {EE84C46C-5553-4826-B11B-3D8B61969667} - System32\Tasks\DealPlyUpdate => C:\Program Files (x86)\DealPly\DealPlyUpdate.exe <==== ATTENTION Task: {FD7717AB-F64C-4B53-B7ED-CDCCAF708E26} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation) Task: {FEDC90DC-CFEC-42F5-A6CB-B5E79F6FB7D6} - System32\Tasks\UALU notificatin => C:\Program Files\Acer\Acer Updater\UALU.exe [2012-02-07] (Acer Incorporated) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe ==================== Loaded Modules (whitelisted) ============= 2012-06-21 13:48 - 2012-03-27 02:33 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-11-28 11:18 - 2013-11-28 09:30 - 02241536 _____ () C:\Program Files\AVAST Software\Avast\defs\13112800\algo.dll 2012-09-13 17:05 - 2013-03-20 16:08 - 00240448 ____N () C:\Program Files\AVAST Software\Avast\Setup\SetIFace.dll 2012-01-05 22:22 - 2012-01-05 22:22 - 00465344 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll 2012-01-05 22:22 - 2012-01-05 22:22 - 01081368 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll 2012-01-05 22:22 - 2012-01-05 22:22 - 00125464 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll 2013-03-12 17:10 - 2013-11-06 22:48 - 00691200 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2013-02-15 13:08 - 2013-11-28 00:58 - 01135016 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2013-01-22 04:22 - 2013-11-06 22:48 - 20625832 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2012-12-11 09:51 - 2013-06-15 00:49 - 01100800 _____ () C:\Program Files (x86)\Steam\bin\avcodec-53.dll 2012-12-11 09:51 - 2013-06-15 00:49 - 00124416 _____ () C:\Program Files (x86)\Steam\bin\avutil-51.dll 2012-12-11 09:51 - 2013-06-15 00:49 - 00192000 _____ () C:\Program Files (x86)\Steam\bin\avformat-53.dll 2013-10-09 10:53 - 2013-10-09 10:53 - 16233864 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll 2013-02-15 13:08 - 2013-11-28 00:58 - 00121256 _____ () C:\Program Files (x86)\Steam\bin\audio.dll 2012-09-07 15:37 - 2013-06-15 00:49 - 00071680 _____ () C:\Program Files (x86)\Steam\bin\mssmp3.asi 2013-06-20 09:48 - 2013-06-15 00:49 - 00153088 _____ () C:\Program Files (x86)\Steam\bin\mssvoice.asi 2012-06-21 04:34 - 2012-03-07 15:27 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2013-11-15 22:58 - 2013-11-15 22:59 - 03363952 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (11/26/2013 09:23:37 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Die abhängige Assemblierung "Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (11/26/2013 06:43:06 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Die abhängige Assemblierung "Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (11/25/2013 04:04:04 PM) (Source: Application Hang) (User: ) Description: Programm blender.exe, Version 2.6.9.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1a38 Startzeit: 01cee9ef796645ba Endzeit: 33 Anwendungspfad: C:\Program Files (x86)\Blender Foundation\Blender\blender.exe Berichts-ID: c90679cf-55e2-11e3-972d-206a8a8ad556 Error: (11/24/2013 02:42:41 PM) (Source: Application Hang) (User: ) Description: Programm 3dsmax.exe, Version 14.0.0.121 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 924 Startzeit: 01cee91a93fe0f69 Endzeit: 33 Anwendungspfad: C:\Program Files\Autodesk\3ds Max 2012\3dsmax.exe Berichts-ID: 40da59c3-550e-11e3-972d-206a8a8ad556 Error: (11/24/2013 11:58:02 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Die abhängige Assemblierung "Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (11/24/2013 10:37:08 AM) (Source: Application Hang) (User: ) Description: Programm ts3client_win64.exe, Version 3.0.13.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 15a0 Startzeit: 01cee8f85e0cf500 Endzeit: 12 Anwendungspfad: C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe Berichts-ID: f8115efe-54eb-11e3-972d-206a8a8ad556 Error: (11/23/2013 07:26:45 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Die abhängige Assemblierung "Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (11/22/2013 00:45:11 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Die abhängige Assemblierung "Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (11/22/2013 07:40:16 AM) (Source: Application Hang) (User: ) Description: Programm firefox.exe, Version 25.0.1.5064 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: cc8 Startzeit: 01cee74927bceeeb Endzeit: 53 Anwendungspfad: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Berichts-ID: e29d1809-5340-11e3-b6fe-206a8a8ad556 Error: (11/21/2013 02:53:32 PM) (Source: Application Hang) (User: ) Description: Programm arma3.exe, Version 1.7.112.641 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: f50 Startzeit: 01cee6c104034f1f Endzeit: 4 Anwendungspfad: C:\Program Files (x86)\Steam\SteamApps\common\Arma 3\arma3.exe Berichts-ID: 492f1ed3-52b4-11e3-b6fe-206a8a8ad556 System errors: ============= Error: (11/28/2013 03:00:23 PM) (Source: iaStor) (User: ) Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet. Error: (11/28/2013 00:18:48 PM) (Source: iaStor) (User: ) Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet. Error: (11/28/2013 00:15:57 PM) (Source: iaStor) (User: ) Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet. Error: (11/26/2013 07:24:42 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Client Virtualization Handler" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (11/26/2013 07:24:42 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Client Virtualization Handler erreicht. Error: (11/23/2013 09:08:35 AM) (Source: iaStor) (User: ) Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet. Error: (11/22/2013 05:49:54 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avast! Antivirus erreicht. Error: (11/16/2013 00:58:19 PM) (Source: iaStor) (User: ) Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet. Error: (11/15/2013 10:32:10 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Client Virtualization Handler" ist vom Dienst "Application Virtualization Client" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1053 Error: (11/15/2013 10:32:06 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Application Virtualization Client" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Microsoft Office Sessions: ========================= Error: (11/26/2013 09:23:37 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Autodesk\Composite 2012\python\lib\distutils\command\wininst-8_d.exe Error: (11/26/2013 06:43:06 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Autodesk\Composite 2012\python\lib\distutils\command\wininst-8_d.exe Error: (11/25/2013 04:04:04 PM) (Source: Application Hang)(User: ) Description: blender.exe2.6.9.01a3801cee9ef796645ba33C:\Program Files (x86)\Blender Foundation\Blender\blender.exec90679cf-55e2-11e3-972d-206a8a8ad556 Error: (11/24/2013 02:42:41 PM) (Source: Application Hang)(User: ) Description: 3dsmax.exe14.0.0.12192401cee91a93fe0f6933C:\Program Files\Autodesk\3ds Max 2012\3dsmax.exe40da59c3-550e-11e3-972d-206a8a8ad556 Error: (11/24/2013 11:58:02 AM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Autodesk\Composite 2012\python\lib\distutils\command\wininst-8_d.exe Error: (11/24/2013 10:37:08 AM) (Source: Application Hang)(User: ) Description: ts3client_win64.exe3.0.13.015a001cee8f85e0cf50012C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exef8115efe-54eb-11e3-972d-206a8a8ad556 Error: (11/23/2013 07:26:45 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Autodesk\Composite 2012\python\lib\distutils\command\wininst-8_d.exe Error: (11/22/2013 00:45:11 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Autodesk\Composite 2012\python\lib\distutils\command\wininst-8_d.exe Error: (11/22/2013 07:40:16 AM) (Source: Application Hang)(User: ) Description: firefox.exe25.0.1.5064cc801cee74927bceeeb53C:\Program Files (x86)\Mozilla Firefox\firefox.exee29d1809-5340-11e3-b6fe-206a8a8ad556 Error: (11/21/2013 02:53:32 PM) (Source: Application Hang)(User: ) Description: arma3.exe1.7.112.641f5001cee6c104034f1f4C:\Program Files (x86)\Steam\SteamApps\common\Arma 3\arma3.exe492f1ed3-52b4-11e3-b6fe-206a8a8ad556 CodeIntegrity Errors: =================================== Date: 2013-04-02 23:28:13.809 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-04-02 23:28:13.700 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-04-02 23:28:13.606 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-04-02 23:28:13.497 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-04-02 23:28:07.912 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-04-02 23:28:07.787 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-04-02 23:28:07.694 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-04-02 23:28:07.585 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2012-12-24 03:01:55.159 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2012-12-24 03:01:55.096 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 61% Total physical RAM: 3889.6 MB Available physical RAM: 1502.59 MB Total Pagefile: 7777.38 MB Available Pagefile: 5137.15 MB Total Virtual: 8192 MB Available Virtual: 8191.8 MB ==================== Drives ================================ Drive c: (ACER) (Fixed) (Total:281.88 GB) (Free:185.24 GB) NTFS Drive p: (ACER) (Fixed) (Total:281.88 GB) (Free:185.24 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 5C33F5C0) Partition 1: (Not Active) - (Size=16 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=282 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
29.11.2013, 15:25 | #4 | |
/// the machine /// TB-Ausbilder | Neuer bundestrojanerCombofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
29.11.2013, 16:03 | #5 |
| Neuer bundestrojaner Combofix Logfile: Code:
ATTFilter ComboFix 13-11-27.01 - Levi Grosse 29.11.2013 15:45:49.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.43.1031.18.3890.1911 [GMT 1:00] ausgeführt von:: c:\users\Levi Grosse\Downloads\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\Levi Grosse\4.0 c:\users\Levi Grosse\WINDOWS c:\windows\SysWow64\fldlckun.exe c:\windows\SysWow64\frapsvid.dll P:\UnInstall.exe . . ((((((((((((((((((((((( Dateien erstellt von 2013-10-28 bis 2013-11-29 )))))))))))))))))))))))))))))) . . 2013-11-29 14:57 . 2013-11-29 14:57 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2013-11-29 14:57 . 2013-11-29 14:57 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-11-28 17:52 . 2013-11-28 17:52 -------- d-----w- C:\FRST 2013-11-28 12:36 . 2013-11-28 12:36 -------- d-----w- c:\users\Levi Grosse\AppData\Roaming\NVIDIA 2013-11-28 11:10 . 2013-11-28 11:10 -------- d-----w- c:\windows\SysWow64\NV 2013-11-28 11:10 . 2013-11-28 11:10 -------- d-----w- c:\windows\system32\NV 2013-11-28 10:59 . 2013-11-23 17:42 6674208 ----a-w- c:\windows\system32\nvcpl.dll 2013-11-28 10:59 . 2013-11-23 17:42 3490080 ----a-w- c:\windows\system32\nvsvc64.dll 2013-11-28 10:59 . 2013-11-23 17:42 922912 ----a-w- c:\windows\system32\nvvsvc.exe 2013-11-28 10:59 . 2013-11-23 17:42 67072 ----a-w- c:\windows\system32\nv3dappshextr.dll 2013-11-28 10:59 . 2013-11-23 17:42 63776 ----a-w- c:\windows\system32\nvshext.dll 2013-11-28 10:59 . 2013-11-23 17:42 2559776 ----a-w- c:\windows\system32\nvsvcr.dll 2013-11-28 10:59 . 2013-11-23 17:42 219424 ----a-w- c:\windows\system32\nvmctray.dll 2013-11-28 10:59 . 2013-11-23 17:42 1065248 ----a-w- c:\windows\system32\nv3dappshext.dll 2013-11-28 10:59 . 2013-11-22 16:28 3498475 ----a-w- c:\windows\system32\nvcoproc.bin 2013-11-28 10:10 . 2013-11-28 10:10 -------- d-----w- c:\program files (x86)\Common Files\Adobe Systems Shared 2013-11-28 10:07 . 2013-11-28 10:07 -------- d-----w- C:\PS_CS2_Gr_NonRet 2013-11-28 10:05 . 2013-11-29 14:52 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{B0F3E96E-62CB-4669-BD65-E174DB9D3F74}\offreg.dll 2013-11-28 09:43 . 2013-11-08 20:47 1064224 ----a-w- c:\windows\system32\nvspcap64.dll 2013-11-28 09:43 . 2013-11-08 20:47 955168 ----a-w- c:\windows\SysWow64\nvspcap.dll 2013-11-28 09:40 . 2013-09-27 23:01 39200 ----a-w- c:\windows\system32\drivers\nvvad64v.sys 2013-11-28 09:40 . 2013-09-27 23:01 28960 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll 2013-11-27 12:18 . 2013-11-28 10:16 151552 ----a-w- c:\windows\SysWow64\nvRegDev.dll 2013-11-27 12:17 . 2013-11-28 10:21 61440 ----a-w- c:\windows\SysWow64\nvPhotoshopUtil.dll 2013-11-27 12:17 . 2013-11-28 10:21 40960 ----a-w- c:\windows\SysWow64\nvISWOW64.dll 2013-11-26 12:31 . 2013-11-08 03:12 10285968 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{B0F3E96E-62CB-4669-BD65-E174DB9D3F74}\mpengine.dll 2013-11-23 01:39 . 2013-11-23 01:39 -------- d-----w- c:\users\Levi Grosse\AppData\Roaming\Unity 2013-11-23 01:18 . 2013-11-23 01:18 -------- d-----w- c:\users\Levi Grosse\AppData\Roaming\.mono 2013-11-22 06:47 . 2013-11-28 12:39 -------- d-----w- c:\programdata\boost_interprocess 2013-11-22 06:45 . 2013-11-22 06:47 -------- d-----w- c:\users\Levi Grosse\AppData\Local\Autodesk 2013-11-22 06:41 . 2013-11-22 06:41 -------- d-----w- c:\program files\Common Files\Macrovision Shared 2013-11-22 06:36 . 2013-11-22 06:42 -------- d-----w- c:\program files\Autodesk 2013-11-22 06:36 . 2013-11-22 06:40 -------- d-----w- c:\program files\Common Files\Autodesk Shared 2013-11-22 06:35 . 2013-11-22 06:35 -------- d-----w- c:\program files (x86)\Autodesk 2013-11-22 06:31 . 2013-11-22 06:39 -------- d-----w- c:\program files (x86)\Common Files\Autodesk Shared 2013-11-22 06:15 . 2013-11-22 06:46 -------- d-----w- c:\users\Levi Grosse\AppData\Roaming\Autodesk 2013-11-22 06:15 . 2013-11-22 06:46 -------- d-----w- c:\programdata\Autodesk 2013-11-22 06:06 . 2013-11-22 06:06 -------- d-----w- C:\Autodesk 2013-11-20 01:58 . 2013-11-20 01:58 -------- d-----w- c:\users\Levi Grosse\AppData\Local\SIX_Projects 2013-11-20 01:57 . 2013-11-20 02:07 -------- d-----w- c:\users\Levi Grosse\AppData\Roaming\six-updater 2013-11-20 01:56 . 2013-11-20 01:56 -------- d-----w- c:\program files (x86)\SIX Projects 2013-11-19 09:33 . 2013-10-14 17:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE 2013-11-17 15:10 . 2013-11-17 15:10 -------- d-----w- c:\users\Levi Grosse\AppData\Local\Arktos Entertainment 2013-11-15 20:45 . 2013-11-15 20:45 -------- d-----w- c:\users\Levi Grosse\AppData\Local\DCS 2013-11-10 10:23 . 2013-11-10 10:23 -------- d-----w- c:\users\Levi Grosse\AppData\Roaming\TuneUp Software 2013-11-10 10:23 . 2013-11-10 10:23 -------- d-sh--w- c:\programdata\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2013-11-10 10:21 . 2013-11-10 10:30 -------- d-----w- c:\users\Levi Grosse\AppData\Roaming\DVDVideoSoft 2013-11-10 10:21 . 2013-11-10 10:21 -------- d-----w- c:\users\Levi Grosse\AppData\Roaming\OpenCandy 2013-11-07 11:36 . 2013-11-07 11:36 -------- d-----w- c:\programdata\SIX Networks 2013-11-07 11:36 . 2013-11-07 11:36 -------- d-----w- c:\users\Levi Grosse\AppData\Roaming\SIX Networks 2013-11-07 11:36 . 2013-11-07 11:36 -------- d-----w- c:\users\Levi Grosse\AppData\Local\SIX Networks 2013-11-03 08:12 . 2013-11-03 08:12 -------- d-----w- c:\programdata\GFACE . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-11-18 01:17 . 2012-09-18 21:51 291128 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2013-11-18 01:17 . 2012-09-18 20:58 291128 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2013-11-18 01:00 . 2012-09-18 20:58 291128 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2013-11-17 15:07 . 2012-09-18 20:58 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2013-11-14 00:52 . 2012-10-12 19:26 82896128 ----a-w- c:\windows\system32\MRT.exe 2013-11-11 04:50 . 2010-11-21 03:27 267936 ------w- c:\windows\system32\MpSigStub.exe 2013-10-09 09:53 . 2012-03-28 18:36 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-10-09 09:53 . 2012-03-28 18:36 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-09-27 23:01 . 2013-08-30 04:21 29984 ----a-w- c:\windows\system32\nvaudcap64v.dll 2013-09-08 02:30 . 2013-10-09 09:49 1903552 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-09-08 02:27 . 2013-10-09 09:49 327168 ----a-w- c:\windows\system32\mswsock.dll 2013-09-08 02:03 . 2013-10-09 09:49 231424 ----a-w- c:\windows\SysWow64\mswsock.dll 2013-09-07 13:01 . 2013-01-20 09:57 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll 2013-09-05 07:29 . 2013-01-04 12:15 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll 2013-09-04 12:12 . 2013-10-09 09:48 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys 2013-09-04 12:11 . 2013-10-09 09:48 325120 ----a-w- c:\windows\system32\drivers\usbport.sys 2013-09-04 12:11 . 2013-10-09 09:48 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys 2013-09-04 12:11 . 2013-10-09 09:48 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys 2013-09-04 12:11 . 2013-10-09 09:48 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys 2013-09-04 12:11 . 2013-10-09 09:48 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys 2013-09-04 12:11 . 2013-10-09 09:48 7808 ----a-w- c:\windows\system32\drivers\usbd.sys . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks] "{00000000-6E41-4FD3-8538-502F5495E5FC}"= "c:\program files (x86)\Ask.com\GenericAskToolbar.dll" [2013-03-31 1520776] . [HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] 2013-03-31 12:57 1520776 ----a-w- c:\program files (x86)\Ask.com\GenericAskToolbar.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files (x86)\Ask.com\GenericAskToolbar.dll" [2013-03-31 1520776] . [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1] [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Steam"="c:\program files (x86)\Steam\steam.exe" [2013-11-27 1823656] "Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-10-02 20472992] "mapdisk"="c:\users\Levi Grosse\Documents\ArmAWork\mapdisk.bat" [2013-09-14 54] "Skitch"="c:\program files (x86)\Evernote\Skitch\Skitch.exe" [2013-08-09 4304704] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "BackupManagerTray"="c:\program files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" [2012-01-05 296984] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576] "Dolby Advanced Audio v2"="c:\dolby pcee4\pcee4.exe" [2011-06-01 506712] "USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-02-27 291608] "LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2012-03-24 1105488] "avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-03-06 4767304] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816] "ApnUpdater"="c:\program files (x86)\Ask.com\Updater\Updater.exe" [2013-03-31 1646216] "20131121"="c:\program files\AVAST Software\Avast\setup\emupdate\b079aac6-7a48-4db8-ab22-6291d3c7afef.exe" [2013-11-23 180184] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Del37831740"="del" [X] "Del31936431"="del" [X] "Del34962460"="del" [X] "Del35724540"="del" [X] "Del35752667"="del" [X] "IsMyWinLockerReboot"="msiexec.exe" [2010-11-21 73216] . c:\users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Adobe Gamma.lnk - c:\program files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37] @="" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys] @="" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . R2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.exe;c:\program files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 mi-raysat_3dsmax2012_64;mental ray 3.9 Satellite for Autodesk 3ds Max 2012 64-bit - English 64-bit;c:\program files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe;c:\program files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 aswVmm;aswVmm; [x] R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x] R3 BEService;BattlEye Service;c:\program files (x86)\Common Files\BattlEye\BEService.exe;c:\program files (x86)\Common Files\BattlEye\BEService.exe [x] R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x] R3 btath_avdt;Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x] R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x] R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x] R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x] R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x] R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x] R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\DRIVERS\ss_bbus.sys;c:\windows\SYSNATIVE\DRIVERS\ss_bbus.sys [x] R3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\DRIVERS\ss_bmdfl.sys;c:\windows\SYSNATIVE\DRIVERS\ss_bmdfl.sys [x] R3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\DRIVERS\ss_bmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ss_bmdm.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] R3 xhunter1;xhunter1;c:\windows\xhunter1.sys;c:\windows\xhunter1.sys [x] S0 aswRvrt;aswRvrt; [x] S0 iusb3hcs;Intel(R) USB 3.0 Hostcontroller-Switchtreiber;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x] S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x] S1 aswSnx;aswSnx; [x] S1 aswSP;aswSP; [x] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x] S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x] S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe;c:\program files (x86)\Launch Manager\dsiwmis.exe [x] S2 ePowerSvc;ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [x] S2 GREGService;GREGService;c:\program files (x86)\Acer\Registration\GREGsvc.exe;c:\program files (x86)\Acer\Registration\GREGsvc.exe [x] S2 HitmanProScheduler;HitmanPro Scheduler;c:\program files\HitmanPro\hmpsched.exe;c:\program files\HitmanPro\hmpsched.exe [x] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x] S2 Intel(R) ME Service;Intel(R) ME Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [x] S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x] S2 Live Updater Service;Live Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe;c:\program files\Acer\Acer Updater\UpdaterService.exe [x] S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x] S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S2 ZAtheros Wlan Agent;ZAtheros Wlan Agent;c:\program files (x86)\Atheros\Ath_WlanAgent.exe;c:\program files (x86)\Atheros\Ath_WlanAgent.exe [x] S3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe;c:\program files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe [x] S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x] S3 IntcDAud;Intel(R) Display-Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x] S3 iusb3hub;Intel(R) USB 3.0-Hubtreiber;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x] S3 iusb3xhc;Intel(R) USB 3.0 eXtensible-Hostcontrollertreiber;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 RSBASTOR;Realtek PCIE CardReader Driver - BA;c:\windows\system32\DRIVERS\RtsBaStor.sys;c:\windows\SYSNATIVE\DRIVERS\RtsBaStor.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfslh.sys [x] S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaylh.sys [x] S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirlh.sys [x] S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvollh.sys [x] S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x] . . Inhalt des "geplante Tasks" Ordners . 2013-11-29 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-28 09:53] . 2013-11-29 c:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job - c:\program files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25 11:41] . 2013-11-28 c:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job - c:\program files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25 11:41] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2013-03-06 23:32 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-04-23 170264] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-04-23 398616] "Persistence"="c:\windows\system32\igfxpers.exe" [2012-04-23 439064] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-02-22 12452456] "RtHDVBg_Dolby"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2012-02-08 1158248] "AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2012-03-08 1021056] "AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2012-03-08 800896] "Power Management"="c:\program files\Acer\Acer ePower Management\ePowerTray.exe" [2012-02-07 1829768] "InstantUpdate"="c:\program files\Acer\Acer Instant Service\InstantUpdate\iuDaemon.exe" [2012-04-06 124520] "Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-11-08 1028384] "ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2013-11-08 1064224] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=c:\windows\System32\nvinitx.dll . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=10&cc=&mi=28b65b62000000000000e006e6aa8765 uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = <local> Trusted Zone: clonewarsadventures.com Trusted Zone: freerealms.com Trusted Zone: soe.com Trusted Zone: sony.com TCP: DhcpNameServer = 10.0.0.138 FF - ProfilePath - c:\users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\ FF - prefs.js: browser.search.selectedEngine - NationSearch FF - prefs.js: browser.startup.homepage - about:home FF - ExtSQL: 2013-11-19 18:25; exif_viewer@mozilla.doslash.org; c:\users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\extensions\exif_viewer@mozilla.doslash.org.xpi FF - user.js: extensions.Softonic.tlbrSrchUrl - hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=1&cc=&mi=28b65b62000000000000e006e6aa8765&q= FF - user.js: extensions.Softonic.id - 28b65b62000000000000e006e6aa8765 FF - user.js: extensions.Softonic.appId - {7ABBFE1C-E485-44AA-8F36-353751B4124D} FF - user.js: extensions.Softonic.instlDay - 16019 FF - user.js: extensions.Softonic.vrsn - 1.8.21.14 FF - user.js: extensions.Softonic.vrsni - 1.8.21.14 FF - user.js: extensions.Softonic.vrsnTs - 1.8.21.1411:24 FF - user.js: extensions.Softonic.prtnrId - softonic FF - user.js: extensions.Softonic.prdct - Softonic FF - user.js: extensions.Softonic.aflt - OC FF - user.js: extensions.Softonic.smplGrp - none FF - user.js: extensions.Softonic.tlbrId - opencandy2013 FF - user.js: extensions.Softonic.instlRef - MOY00621 FF - user.js: extensions.Softonic.dfltLng - de FF - user.js: extensions.Softonic.excTlbr - false FF - user.js: extensions.Softonic.ffxUnstlRst - false FF - user.js: extensions.Softonic.admin - false FF - user.js: extensions.Softonic.autoRvrt - false FF - user.js: extensions.Softonic.rvrt - false FF - user.js: extensions.Softonic.hmpg - true FF - user.js: extensions.Softonic.hmpgUrl - hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=13&cc=&mi=28b65b62000000000000e006e6aa8765 FF - user.js: extensions.Softonic.dfltSrch - true FF - user.js: extensions.Softonic.srchPrvdr - Search the web (Softonic) FF - user.js: extensions.Softonic.dnsErr - true FF - user.js: extensions.Softonic.newTab - true FF - user.js: extensions.Softonic.newTabUrl - hxxp://search.softonic.com/MOY00621/tb_v1/?SearchSource=15&cc=&mi=28b65b62000000000000e006e6aa8765 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Toolbar-Locked - (no file) Wow6432Node-HKCU-Run-Akamai NetSession Interface - c:\users\Levi Grosse\AppData\Local\Akamai\netsession_win.exe Wow6432Node-HKLM-Run-UnlockerAssistant - c:\program files (x86)\Unlocker\UnlockerAssistant.exe Wow6432Node-HKLM-Run-<NO NAME> - (no file) HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start Toolbar-Locked - (no file) HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe AddRemove-BattlEye - c:\program files\Bohemia Interactive\ArmA 2Expansion\BattlEye\UnInstallBE.exe AddRemove-BI's Tools drive - c:\users\Levi Grosse\Documents\ArmAWork\UnInstall.exe AddRemove-Folder Access 2.0.0 Full Version - c:\progra~2\FOLDER~1\FOLDER~1.EXE AddRemove-Marvelous Designer 3 Personal - c:\program files\Marvelous Designer 3 Personal\Uninstall.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_117_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_117_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2013-11-29 16:02:23 ComboFix-quarantined-files.txt 2013-11-29 15:02 . Vor Suchlauf: 18 Verzeichnis(se), 204.032.495.616 Bytes frei Nach Suchlauf: 27 Verzeichnis(se), 203.970.105.344 Bytes frei . - - End Of File - - D7C024FA3B059949D0A17BC6330ABB13 |
30.11.2013, 16:47 | #6 |
/// the machine /// TB-Ausbilder | Neuer bundestrojaner Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ --> Neuer bundestrojaner |
30.11.2013, 18:22 | #7 |
| Neuer bundestrojaner okay,dankeschön für die zeit die sie sich nehmen .hier der erste logfile. Malwarebytes Anti-Malware (Test) 1.75.0.1300 Malwarebytes : Free Anti-Malware download Datenbank Version: v2013.11.30.04 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16428 Levi Grosse :: LEVIGROSSE-PC [Administrator] Schutz: Aktiviert 30.11.2013 17:11:09 mbam-log-2013-11-30 (17-11-09).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 234552 Laufzeit: 7 Minute(n), 9 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 4 HKCU\Software\Conduit\FF (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\DEALPLY (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Registrierungswerte: 3 HKCU\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Daten: {A32E08FA-FCED-11E1-872B-206A8A8AD556} -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\DealPly|ChromeCrxPath (PUP.Optional.DealPly.A) -> Daten: C:\Program Files (x86)\DealPly\DealPly.crx -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Daten: {A32E08FA-FCED-11E1-872B-206A8A8AD556} -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 5 C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly\UpdateProc (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Levi Grosse\AppData\Roaming\OpenCandy (PUP.Optional.OpenCandy) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Levi Grosse\AppData\Roaming\OpenCandy\15F43D30F99747F597774413FB639902 (PUP.Optional.OpenCandy) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Levi Grosse\AppData\Roaming\OpenCandy\908751062EF44B72B16CA6E3405F6B86 (PUP.Optional.OpenCandy) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateien: 4 C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly\UpdateProc\config.dat (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows\System32\config\systemprofile\AppData\Roaming\DealPly\UpdateProc\UpdateTask.exe (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Levi Grosse\AppData\Roaming\OpenCandy\15F43D30F99747F597774413FB639902\Trial-14.0.1000.89_de-DE_1004733_DE-2.exe (PUP.Optional.OpenCandy) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Levi Grosse\AppData\Roaming\OpenCandy\908751062EF44B72B16CA6E3405F6B86\Setupsft_chr_p1v7.exe (PUP.Optional.OpenCandy) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende)AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v3.013 - Bericht erstellt am 30/11/2013 um 17:39:05 # Updated 24/11/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Levi Grosse - LEVIGROSSE-PC # Gestartet von : C:\Users\Levi Grosse\Downloads\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\Ask Ordner Gelöscht : C:\ProgramData\boost_interprocess Ordner Gelöscht : C:\Program Files (x86)\Ask.com Ordner Gelöscht : C:\Program Files (x86)\Nation Toolbar Ordner Gelöscht : C:\Windows\assembly\GAC_MSIL\QuickStoresToolbar Ordner Gelöscht : C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe} Ordner Gelöscht : C:\Users\Levi Grosse\AppData\Local\PackageAware Ordner Gelöscht : C:\Users\Levi Grosse\AppData\LocalLow\AskToolbar Ordner Gelöscht : C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\Smartbar Ordner Gelöscht : C:\Program Files (x86)\Mozilla Firefox\Extensions\quickstores@quickstores.de Ordner Gelöscht : C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\Extensions\toolbar@ask.com Ordner Gelöscht : C:\Users\Levi Grosse\AppData\Local\Google\Chrome\User Data\Default\Extensions\elchiiiejkobdbblfejjkbphbddgmljf Datei Gelöscht : C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\QuickStores.url Datei Gelöscht : C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\QuickStores.url Datei Gelöscht : C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\searchplugins\Askcom.xml Datei Gelöscht : C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\searchplugins\softonic.xml Datei Gelöscht : C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\user.js Datei Gelöscht : C:\Windows\System32\Tasks\Dealply Datei Gelöscht : C:\Windows\System32\Tasks\DealPlyUpdate Datei Gelöscht : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetpacksupdatemanager_rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\toolbar_vit_sweetim_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\toolbar_vit_sweetim_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_cinema-4d_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_cinema-4d_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{10EDB994-47F8-43F7-AE96-F2EA63E9F90F}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKCU\Software\APN Schlüssel Gelöscht : HKCU\Software\Ask.com Schlüssel Gelöscht : HKCU\Software\Conduit Schlüssel Gelöscht : HKCU\Software\DealPly Schlüssel Gelöscht : HKCU\Software\Nation Toolbar Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\AskToolbar Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\SmartBar Schlüssel Gelöscht : HKLM\Software\APN Schlüssel Gelöscht : HKLM\Software\AskToolbar Schlüssel Gelöscht : HKLM\Software\Conduit Schlüssel Gelöscht : HKLM\Software\Nation Toolbar Schlüssel Gelöscht : HKLM\Software\Vittalia Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE} Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16428 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] -\\ Mozilla Firefox v25.0.1 (de) [ Datei : C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\prefs.js ] Zeile gelöscht : user_pref("CT3248869.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT3248869.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT3248869.FirstTime", "true"); Zeile gelöscht : user_pref("CT3248869.FirstTimeFF3", "true"); Zeile gelöscht : user_pref("CT3248869.LoginRevertSettingsEnabled", true); Zeile gelöscht : user_pref("CT3248869.RevertSettingsEnabled", true); Zeile gelöscht : user_pref("CT3248869.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3248869&SearchSource=2&q="); Zeile gelöscht : user_pref("CT3248869.UserID", "UN88179268107349783"); Zeile gelöscht : user_pref("CT3248869.addressBarTakeOverEnabledInHidden", "true"); Zeile gelöscht : user_pref("CT3248869.autoDisableScopes", -1); Zeile gelöscht : user_pref("CT3248869.browser.search.defaultthis.engineName", true); Zeile gelöscht : user_pref("CT3248869.cbcountry_001", "QVQ="); Zeile gelöscht : user_pref("CT3248869.cbfirsttime", "VHVlIE5vdiAwNiAyMDEyIDE0OjEzOjM2IEdNVCswMTAw"); Zeile gelöscht : user_pref("CT3248869.defaultSearch", "true"); Zeile gelöscht : user_pref("CT3248869.embeddedsData", "[{\"appId\":\"10000002\",\"apiPermissions\":{\"crossDomainAjax\":true,\"getMainFrameTitle\":true,\"getMainFrameUrl\":true,\"getSearchTerm\":true,\"instantAlert\":[...] Zeile gelöscht : user_pref("CT3248869.enableAlerts", "always"); Zeile gelöscht : user_pref("CT3248869.enableFix404ByUser", "FALSE"); Zeile gelöscht : user_pref("CT3248869.enableSearchFromAddressBar", "true"); Zeile gelöscht : user_pref("CT3248869.firstTimeDialogOpened", "true"); Zeile gelöscht : user_pref("CT3248869.fixPageNotFoundError", "true"); Zeile gelöscht : user_pref("CT3248869.fixPageNotFoundErrorByUser", "true"); Zeile gelöscht : user_pref("CT3248869.fixPageNotFoundErrorInHidden", "true"); Zeile gelöscht : user_pref("CT3248869.fixUrls", true); Zeile gelöscht : user_pref("CT3248869.gadgetClicked", "dmlkZW9z"); Zeile gelöscht : user_pref("CT3248869.gadgetClosed", "Y2xvc2U="); Zeile gelöscht : user_pref("CT3248869.hxxp___www_socialgrowthtechnologies_com_couponbuddy_v001.APP_WIN_FEATURES", "b3BlbnBvc2l0aW9uPW9mZnNldDo1MDs1MCxzYXZlbG9jYXRpb249MCxyZXNpemFibGU9bm8sc2Nyb2xsYmFycz1ubyx0aXRsZWJhcj[...] Zeile gelöscht : user_pref("CT3248869.installId", "conduitinstaller.exe"); Zeile gelöscht : user_pref("CT3248869.installType", "conduitnsisintegration"); Zeile gelöscht : user_pref("CT3248869.isCheckedStartAsHidden", true); Zeile gelöscht : user_pref("CT3248869.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT3248869.isFirstTimeToolbarLoading", "false"); Zeile gelöscht : user_pref("CT3248869.isNewTabEnabled", true); Zeile gelöscht : user_pref("CT3248869.isPerformedSmartBarTransition", "true"); Zeile gelöscht : user_pref("CT3248869.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}"); Zeile gelöscht : user_pref("CT3248869.keyword", true); Zeile gelöscht : user_pref("CT3248869.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"hxxp://search.conduit.com/?ctid=CT3248869&octid=CT3248869&SearchSource=15&CUI=UN88179268107349783&SSPV=EB_SSPV&Lay=1&UM=[...] Zeile gelöscht : user_pref("CT3248869.lastVersion", "10.15.0.562"); Zeile gelöscht : user_pref("CT3248869.migrateAppsAndComponents", true); Zeile gelöscht : user_pref("CT3248869.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"about%3Aaddons\",\"EB_MAIN_FRAME_TITLE\":\"\",\"EB_TOOLBAR_SUB_DOMAIN\":\"hxxp://XfireNew.OurToolbar.com/[...] Zeile gelöscht : user_pref("CT3248869.openThankYouPage", "false"); Zeile gelöscht : user_pref("CT3248869.openUninstallPage", "true"); Zeile gelöscht : user_pref("CT3248869.search.searchAppId", "10000002"); Zeile gelöscht : user_pref("CT3248869.search.searchCount", "0"); Zeile gelöscht : user_pref("CT3248869.searchFromAddressBarEnabledByUser", "false"); Zeile gelöscht : user_pref("CT3248869.searchInNewTabEnabledByUser", "true"); Zeile gelöscht : user_pref("CT3248869.searchInNewTabEnabledInHidden", "true"); Zeile gelöscht : user_pref("CT3248869.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT3248869.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT3248869\"}"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://XfireNew.OurToolbar.com//xpi\"}"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"Xfire New\"}"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1364587419077"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_appsMetadata_lastUpdate", "1364964952726"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1364587418460"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_location_lastUpdate", "1364930406398"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_login_10.13.1.89_lastUpdate", "1354898156101"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_login_10.14.42.7_lastUpdate", "1360824086879"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_login_10.14.65.43_lastUpdate", "1364583771509"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_login_10.15.0.562_lastUpdate", "1364965157640"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_optimizer_lastUpdate", "1353848391469"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1364587418091"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_searchAPI_lastUpdate", "1364930406439"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_serviceMap_lastUpdate", "1364930406089"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_toolbarContextMenu_lastUpdate", "1364587418036"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_toolbarSettings_lastUpdate", "1364964952730"); Zeile gelöscht : user_pref("CT3248869.serviceLayer_services_translation_lastUpdate", "1364930406387"); Zeile gelöscht : user_pref("CT3248869.settingsINI", true); Zeile gelöscht : user_pref("CT3248869.shouldFirstTimeDialog", "false"); Zeile gelöscht : user_pref("CT3248869.showToolbarPermission", "false"); Zeile gelöscht : user_pref("CT3248869.smartbar.CTID", "CT3248869"); Zeile gelöscht : user_pref("CT3248869.smartbar.Uninstall", "0"); Zeile gelöscht : user_pref("CT3248869.smartbar.homepage", true); Zeile gelöscht : user_pref("CT3248869.smartbar.toolbarName", "Xfire New "); Zeile gelöscht : user_pref("CT3248869.startPage", "userChanged"); Zeile gelöscht : user_pref("CT3248869.toolbarBornServerTime", "6-11-2012"); Zeile gelöscht : user_pref("CT3248869.toolbarCurrentServerTime", "3-4-2013"); Zeile gelöscht : user_pref("CT3248869.toolbarDisabled", "true"); Zeile gelöscht : user_pref("CT3248869.toolbarLoginClientTime", "Fri Mar 29 2013 21:01:35 GMT+0100"); Zeile gelöscht : user_pref("CT3248869.url_history0001", "aHR0cDovL2JldGEueGZpcmUuY29tL3Byb2ZpbGUvcGx1ZXN0eWxlIzo6OmNsaWNraGFuZGxlcjo6OjEzNTIyMTE1MzM2MDEsLCxodHRwOi8vYmV0YS54ZmlyZS5jb20vcHJvZmlsZS9wbHVlc3R5bGUjOjo6Y2xp[...] Zeile gelöscht : user_pref("CT3248869.xFireLogin", "bG9naW4="); Zeile gelöscht : user_pref("CT3248869.xFireToken", "TWpJME5EQXdPRGc2Y0d4MVpYTjBlV3hsT2pFek5USXlNVEEzT0RnNk1XWmlPVFJoTW1JeE1HSTNOVEpsWXpsalpEazRZalJqTW1GallqVmhNakF5WVdNMU9HWmlaZz09"); Zeile gelöscht : user_pref("CT3248869.xFireUN", "cGx1ZXN0eWxl"); Zeile gelöscht : user_pref("CT3248869.xFireUserID", "MjI0NDAwODg="); Zeile gelöscht : user_pref("CT3248869_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1364975388444,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]"); Zeile gelöscht : user_pref("Smartbar.ConduitHomepagesList", ""); Zeile gelöscht : user_pref("Smartbar.ConduitSearchEngineList", "Xfire New Customized Web Search"); Zeile gelöscht : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3248869&SearchSource=2&q="); Zeile gelöscht : user_pref("Smartbar.keywordURLSelectedCTID", ""); Zeile gelöscht : user_pref("browser.search.defaultengine", "Ask.com"); Zeile gelöscht : user_pref("extensions.Softonic.admin", false); Zeile gelöscht : user_pref("extensions.Softonic.aflt", "OC"); Zeile gelöscht : user_pref("extensions.Softonic.appId", "{7ABBFE1C-E485-44AA-8F36-353751B4124D}"); Zeile gelöscht : user_pref("extensions.Softonic.autoRvrt", "false"); Zeile gelöscht : user_pref("extensions.Softonic.dfltLng", "de"); Zeile gelöscht : user_pref("extensions.Softonic.dfltSrch", true); Zeile gelöscht : user_pref("extensions.Softonic.dnsErr", true); Zeile gelöscht : user_pref("extensions.Softonic.excTlbr", false); Zeile gelöscht : user_pref("extensions.Softonic.ffxUnstlRst", false); Zeile gelöscht : user_pref("extensions.Softonic.hmpg", true); Zeile gelöscht : user_pref("extensions.Softonic.hmpgUrl", "hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=13&cc=&mi=28b65b62000000000000e006e6aa8765"); Zeile gelöscht : user_pref("extensions.Softonic.id", "28b65b62000000000000e006e6aa8765"); Zeile gelöscht : user_pref("extensions.Softonic.instlDay", "16019"); Zeile gelöscht : user_pref("extensions.Softonic.instlRef", "MOY00621"); Zeile gelöscht : user_pref("extensions.Softonic.newTab", true); Zeile gelöscht : user_pref("extensions.Softonic.newTabUrl", "hxxp://search.softonic.com/MOY00621/tb_v1/?SearchSource=15&cc=&mi=28b65b62000000000000e006e6aa8765"); Zeile gelöscht : user_pref("extensions.Softonic.prdct", "Softonic"); Zeile gelöscht : user_pref("extensions.Softonic.prtnrId", "softonic"); Zeile gelöscht : user_pref("extensions.Softonic.rvrt", "false"); Zeile gelöscht : user_pref("extensions.Softonic.smplGrp", "none"); Zeile gelöscht : user_pref("extensions.Softonic.srchPrvdr", "Search the web (Softonic)"); Zeile gelöscht : user_pref("extensions.Softonic.tlbrId", "opencandy2013"); Zeile gelöscht : user_pref("extensions.Softonic.tlbrSrchUrl", "hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=1&cc=&mi=28b65b62000000000000e006e6aa8765&q="); Zeile gelöscht : user_pref("extensions.Softonic.vrsn", "1.8.21.14"); Zeile gelöscht : user_pref("extensions.Softonic.vrsnTs", "1.8.21.1411:24:38"); Zeile gelöscht : user_pref("extensions.Softonic.vrsni", "1.8.21.14"); Zeile gelöscht : user_pref("extensions.asktb.ff-original-keyword-url", ""); Zeile gelöscht : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3248869&SearchSource=2&CUI=UN88179268107349783&q=,hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3[...] Zeile gelöscht : user_pref("smartbar.machineId", "+P3+YYUGQIQ4WHKGII506FSSWAI4R3BOFD6CUBPCUN06LTN80E4EKN8Z7U9WZW59Q51WCVNN1GYT6CUQTLYHAG"); Zeile gelöscht : user_pref("smartbar.originalSearchAddressUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3248869&SearchSource=2&q="); ************************* AdwCleaner[R0].txt - [21011 octets] - [30/11/2013 17:37:01] AdwCleaner[S0].txt - [20479 octets] - [30/11/2013 17:39:05] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [20540 octets] ########## im~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.0.8 (11.05.2013:1) OS: Windows 7 Home Premium x64 Ran by Levi Grosse on 30.11.2013 at 17:54:12,36 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1147604465-3722986022-2268924545-1001\Software\sweetim Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9 Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{5861E997-CB08-496D-BA30-BFA64B579B7F} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{C15DCA49-3B9D-46C1-BD7A-C957F2B4703F} Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}" ~~~ Files Successfully deleted: [File] C:\Windows\syswow64\sho6C6B.tmp ~~~ Folders Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin" Successfully deleted: [Empty Folder] C:\Users\Levi Grosse\appdata\local\{8C9CBD34-19E6-4B96-980D-6CAFDD638486} Successfully deleted: [Empty Folder] C:\Users\Levi Grosse\appdata\local\{A5428FA0-EC62-459C-BCC8-258836EFFFBD} ~~~ FireFox Emptied folder: C:\Users\Levi Grosse\AppData\Roaming\mozilla\firefox\profiles\ue577egx.default-1351350689432\minidumps [900 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 30.11.2013 at 18:14:40,18 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-11-2013 Ran by Levi Grosse (administrator) on LEVIGROSSE-PC on 30-11-2013 18:20:29 Running from C:\Users\Levi Grosse\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe () C:\Windows\SysWOW64\LckFldService.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe () C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Atheros) C:\Program Files (x86)\Atheros\Ath_WlanAgent.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.EXE (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(2).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12452456 2012-02-22] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-08] (Realtek Semiconductor) HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [1021056 2012-03-08] (Atheros Communications) HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [800896 2012-03-08] (Atheros Commnucations) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2886416 2012-03-02] (Synaptics Incorporated) HKLM\...\Run: [Power Management] - C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1829768 2012-02-07] (Acer Incorporated) HKLM\...\Run: [InstantUpdate] - C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuDaemon.exe [124520 2012-04-06] () HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Winlogon: [Userinit] C:\Windows\sysWOW64\userinit.exe [26624 2010-11-21] (Microsoft Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1823656 2013-11-28] (Valve Corporation) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20472992 2013-10-02] (Skype Technologies S.A.) HKCU\...\Run: [mapdisk] - C:\Users\Levi Grosse\Documents\ArmAWork\mapdisk.bat [54 2013-09-14] () HKCU\...\Run: [Skitch] - C:\Program Files (x86)\Evernote\Skitch\Skitch.exe [4304704 2013-08-09] (Evernote) HKLM-x32\...\Run: [BackupManagerTray] - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [296984 2012-01-05] (NTI Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Dolby Advanced Audio v2] - C:\Dolby PCEE4\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-27] (Intel Corporation) HKLM-x32\...\Run: [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe [1105488 2012-03-24] (Dritek System Inc.) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [4767304 2013-03-07] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [20131121] - C:\Program Files\AVAST Software\Avast\Setup\emupdate\b079aac6-7a48-4db8-ab22-6291d3c7afef.exe [180184 2013-11-23] (AVAST Software) HKU\Default\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [162408 2011-09-13] () HKU\Default User\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [162408 2011-09-13] () AppInit_DLLs: C:\Windows\System32\nvinitx.dll [168616 2013-11-23] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll [141336 2013-11-23] (NVIDIA Corporation) Startup: C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 FireFox: ======== FF ProfilePath: C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432 FF DefaultSearchEngine: NationSearch FF SelectedSearchEngine: NationSearch FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\searchplugins\Nation.xml FF SearchPlugin: C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\searchplugins\xfire-new-customized-web-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: exif_viewer - C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\Extensions\exif_viewer@mozilla.doslash.org.xpi FF Extension: stylish - C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! WebRep - C:\Program Files\AVAST Software\Avast\WebRep\FF Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx CHR HKLM-x32\...\Chrome\Extension: [icmlaeflemplmjndnaapfdbbnpncnbda] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx ==================== Services (Whitelisted) ================= S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-11-28] (Adobe Systems) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-07] (AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-08-21] () R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [109352 2013-10-15] (SurfRight B.V.) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [127320 2012-03-16] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [162648 2012-03-16] (Intel Corporation) R2 LckFldService; C:\Windows\SysWow64\LckFldService.exe [36864 2005-06-22] () R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 mi-raysat_3dsmax2012_64; C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe [86016 2011-02-22] () R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256536 2012-01-05] (NTI Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15125280 2013-11-08] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-11-17] () R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Atheros\Ath_WlanAgent.exe [76960 2012-02-27] (Atheros) ==================== Drivers (Whitelisted) ==================== R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-03-07] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-03-07] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [70992 2013-03-07] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-03-07] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1025808 2013-03-07] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [377920 2013-03-07] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [68920 2013-03-07] (AVAST Software) S3 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [178624 2013-03-07] () R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 xhunter1; \??\C:\Windows\xhunter1.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-30 18:19 - 2013-11-30 18:20 - 01959070 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(2).exe 2013-11-30 18:19 - 2013-11-30 18:19 - 01092069 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST(1).exe 2013-11-30 18:18 - 2013-11-30 18:18 - 01092069 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST.exe 2013-11-30 18:14 - 2013-11-30 18:14 - 00001913 _____ C:\Users\Levi Grosse\Desktop\JRT.txt 2013-11-30 17:54 - 2013-11-30 17:54 - 00000000 ____D C:\Windows\ERUNT 2013-11-30 17:52 - 2013-11-30 17:52 - 01034531 _____ (Thisisu) C:\Users\Levi Grosse\Downloads\JRT.exe 2013-11-30 17:34 - 2013-11-30 17:39 - 00000000 ____D C:\AdwCleaner 2013-11-30 17:33 - 2013-11-30 17:33 - 01091882 _____ C:\Users\Levi Grosse\Downloads\adwcleaner.exe 2013-11-30 17:09 - 2013-11-30 17:09 - 00001077 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Malwarebytes 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-11-30 17:09 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-11-30 17:08 - 2013-11-30 17:08 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Levi Grosse\Downloads\mbam-setup-1.75.0.1300.exe 2013-11-30 15:47 - 2013-11-30 15:52 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-11-30 15:40 - 2013-11-30 15:47 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Origin 2013-11-30 15:40 - 2013-11-30 15:47 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Origin 2013-11-30 15:37 - 2013-11-30 15:40 - 00000000 ____D C:\Program Files (x86)\Origin 2013-11-30 15:35 - 2013-11-30 15:36 - 16952720 _____ (Electronic Arts, Inc.) C:\Users\Levi Grosse\Downloads\OriginThinSetup.exe 2013-11-29 16:02 - 2013-11-29 16:02 - 00030979 _____ C:\ComboFix.txt 2013-11-29 15:43 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe 2013-11-29 15:43 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe 2013-11-29 15:43 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-11-29 15:43 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-11-29 15:43 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-11-29 15:43 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe 2013-11-29 15:43 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe 2013-11-29 15:43 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe 2013-11-29 15:42 - 2013-11-29 16:02 - 00000000 ____D C:\Qoobox 2013-11-29 15:42 - 2013-11-29 16:00 - 00000000 ____D C:\Windows\erdnt 2013-11-29 15:42 - 2013-11-29 15:41 - 05150163 ____R (Swearware) C:\Users\Levi Grosse\Desktop\ComboFix.exe 2013-11-29 15:40 - 2013-11-29 15:41 - 05150163 ____R (Swearware) C:\Users\Levi Grosse\Downloads\ComboFix.exe 2013-11-29 13:40 - 2013-11-29 13:40 - 06139504 _____ (Unity Technologies ApS) C:\Users\Levi Grosse\Downloads\UnityWebPlayerFull(1).exe 2013-11-28 18:55 - 2013-11-28 18:58 - 00027959 _____ C:\Users\Levi Grosse\Downloads\Addition.txt 2013-11-28 18:52 - 2013-11-30 18:20 - 00019216 _____ C:\Users\Levi Grosse\Downloads\FRST.txt 2013-11-28 18:52 - 2013-11-28 18:52 - 00000000 ____D C:\FRST 2013-11-28 18:50 - 2013-11-28 18:52 - 01959024 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(1).exe 2013-11-28 14:35 - 2013-11-28 14:36 - 01958850 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64.exe 2013-11-28 13:36 - 2013-11-28 13:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\NVIDIA 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\SysWOW64\NV 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\system32\NV 2013-11-28 11:59 - 2013-11-23 18:42 - 06674208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 01065248 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-11-28 11:59 - 2013-11-23 18:42 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-11-28 11:59 - 2013-11-22 17:28 - 03498475 _____ C:\Windows\system32\nvcoproc.bin 2013-11-28 11:30 - 2013-11-23 20:26 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 18293096 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 15218504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 12613920 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-28 11:30 - 2013-11-23 20:26 - 11566648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 11441664 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 09663656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 03069608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 02697248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433193.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433193.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00032544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2013-11-28 11:30 - 2013-11-23 20:26 - 00023754 _____ C:\Windows\system32\nvinfo.pb 2013-11-28 11:21 - 2013-11-28 11:21 - 00003240 _____ C:\Windows\System32\Tasks\{F948D6A6-E943-4D72-B154-17C8CA7B3B4D} 2013-11-28 11:14 - 2013-11-28 11:14 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(2).exe 2013-11-28 11:07 - 2013-11-28 11:07 - 00000000 ____D C:\PS_CS2_Gr_NonRet 2013-11-28 10:57 - 2013-11-28 10:58 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(1).exe 2013-11-28 10:43 - 2013-11-08 21:47 - 01064224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-28 10:43 - 2013-11-08 21:47 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-28 10:40 - 2013-09-28 00:01 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-11-28 10:40 - 2013-09-28 00:01 - 00028960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-11-27 13:18 - 2013-11-28 11:16 - 00151552 _____ C:\Windows\SysWOW64\nvRegDev.dll 2013-11-27 13:17 - 2013-11-28 11:21 - 00061440 _____ C:\Windows\SysWOW64\nvPhotoshopUtil.dll 2013-11-27 13:17 - 2013-11-28 11:21 - 00040960 _____ C:\Windows\SysWOW64\nvISWOW64.dll 2013-11-27 13:16 - 2013-11-27 13:17 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800.exe 2013-11-27 08:48 - 2013-11-27 10:01 - 01195004 _____ C:\Users\Levi Grosse\Desktop\untitled.blend 2013-11-26 21:01 - 2013-11-26 21:04 - 112496772 _____ C:\Users\Levi Grosse\Downloads\@HAFM_A3_Stable_v1.rar.part 2013-11-24 10:36 - 2013-11-24 10:36 - 00000000 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_36_50.272604.dmp 2013-11-24 10:34 - 2013-11-24 10:34 - 00188754 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_34_05.199162.dmp 2013-11-24 09:26 - 2013-11-29 11:57 - 00000000 ____D C:\Users\Levi Grosse\Desktop\lol fun 2013-11-24 04:09 - 2013-11-24 04:09 - 00188526 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_09_33.084763.dmp 2013-11-24 04:08 - 2013-11-24 04:08 - 00181447 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_08_43.455113.dmp 2013-11-24 04:07 - 2013-11-24 04:07 - 00219694 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_07_16.031364.dmp 2013-11-23 02:39 - 2013-11-23 02:39 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Unity 2013-11-23 02:18 - 2013-11-23 02:18 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\.mono 2013-11-23 02:14 - 2013-11-23 02:14 - 06137144 _____ (Unity Technologies ApS) C:\Users\Levi Grosse\Downloads\UnityWebPlayerFull.exe 2013-11-22 09:31 - 2013-11-22 09:31 - 20730241 _____ C:\Users\Levi Grosse\Downloads\@IanSky_Scope_Mod_R6.1.rar 2013-11-22 07:45 - 2013-11-22 07:47 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Autodesk 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Users\Levi Grosse\Documents\Inventor Server x64 Autodesk 3ds Max 2012 64-bit - English 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared 2013-11-22 07:37 - 2013-11-28 13:43 - 00000000 ____D C:\Users\Levi Grosse\Documents\3dsMax 2013-11-22 07:36 - 2013-11-22 07:42 - 00000000 ____D C:\Program Files\Autodesk 2013-11-22 07:36 - 2013-11-22 07:40 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared 2013-11-22 07:35 - 2013-11-22 07:35 - 00000000 ____D C:\Program Files (x86)\Autodesk 2013-11-22 07:15 - 2013-11-22 07:46 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Autodesk 2013-11-22 07:15 - 2013-11-22 07:46 - 00000000 ____D C:\ProgramData\Autodesk 2013-11-22 07:06 - 2013-11-22 07:06 - 00000000 ____D C:\Autodesk 2013-11-20 02:58 - 2013-11-20 02:58 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX_Projects 2013-11-20 02:57 - 2013-11-20 03:07 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\six-updater 2013-11-20 02:56 - 2013-11-20 02:56 - 00000000 ____D C:\Program Files (x86)\SIX Projects 2013-11-20 02:54 - 2013-11-20 02:54 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup(1).exe 2013-11-20 02:49 - 2013-11-20 02:50 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup.exe 2013-11-20 02:26 - 2013-11-20 02:26 - 11311984 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play(1).exe 2013-11-19 23:01 - 2013-11-19 23:01 - 00000000 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe 2013-11-19 23:00 - 2013-11-19 23:01 - 13189037 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe.part 2013-11-19 13:36 - 2013-11-19 13:41 - 177171911 _____ C:\Users\Levi Grosse\Downloads\German_Weapons_Pack_v1.7.rar 2013-11-19 13:27 - 2013-11-19 13:28 - 41023637 _____ C:\Users\Levi Grosse\Downloads\FA18_v1.51_ARMA_3.rar 2013-11-19 13:26 - 2013-11-19 13:26 - 00802768 _____ C:\Users\Levi Grosse\Downloads\ado_boussole.rar 2013-11-19 13:20 - 2013-11-19 13:26 - 205994424 _____ C:\Users\Levi Grosse\Downloads\@idzgladius.rar 2013-11-19 10:33 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-11-19 10:27 - 2013-11-19 10:27 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-19 10:25 - 2013-11-19 10:33 - 00009916 _____ C:\Windows\IE11_main.log 2013-11-17 16:10 - 2013-11-17 16:10 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Arktos Entertainment 2013-11-17 16:08 - 2013-11-17 16:08 - 00000000 ____D C:\Users\Levi Grosse\Documents\Arktos 2013-11-16 21:52 - 2013-11-16 21:52 - 02810471 _____ C:\Users\Levi Grosse\Downloads\@Bike.rar 2013-11-15 22:58 - 2013-11-27 01:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-15 21:45 - 2013-11-15 21:45 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\DCS 2013-11-13 20:03 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-13 20:03 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-13 20:03 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-13 20:03 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-11-13 20:03 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-11-13 20:03 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-13 20:03 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-11-13 20:03 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-11-13 20:03 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-11-13 20:03 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-11-13 20:03 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-11-13 20:03 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-11-13 20:03 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-11-13 20:03 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-13 20:03 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-11-13 20:03 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-11-13 20:03 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-11-13 20:03 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-11-13 20:03 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-11-13 20:03 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-11-13 20:03 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-11-13 20:03 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-11-13 20:03 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-11-13 20:03 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-11-13 20:03 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-11-13 20:03 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-11-13 20:03 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-11-13 20:03 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-11-13 20:03 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-11-13 20:03 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-11-12 14:50 - 2013-11-12 16:49 - 441583242 _____ C:\Users\Levi Grosse\Downloads\@jsrs2.0.rar 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\TuneUp Software 2013-11-10 11:21 - 2013-11-10 11:30 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\DVDVideoSoft 2013-11-10 11:18 - 2013-11-10 11:19 - 32206488 _____ (DVDVideoSoft Ltd. ) C:\Users\Levi Grosse\Downloads\FreeYouTubeToMP3Converter_3.12.16.1030.exe 2013-11-10 10:41 - 2013-11-10 10:41 - 00000000 ____D C:\Users\Levi Grosse\Documents\Movie Studio Platinum 12.0 Projekte 2013-11-10 10:28 - 2013-11-10 10:32 - 185831992 _____ (Sony Creative Software Inc.) C:\Users\Levi Grosse\Downloads\moviestudiope12.0.334_64bit.exe 2013-11-09 23:14 - 2013-11-09 23:14 - 00394148 _____ C:\Users\Levi Grosse\Downloads\dbo_animationfiles.rar 2013-11-07 23:40 - 2013-11-07 23:50 - 00000173 _____ C:\Windows\user_bmvg5.ini 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\Documents\arma 2 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\ProgramData\SIX Networks 2013-11-07 12:22 - 2013-11-07 12:22 - 01005568 _____ (Microsoft Corporation) C:\Users\Levi Grosse\Downloads\dotNetFx45_Full_setup.exe 2013-11-07 12:17 - 2013-11-07 12:19 - 11300072 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play.exe 2013-11-03 09:12 - 2013-11-03 09:12 - 00000000 ____D C:\ProgramData\GFACE 2013-11-02 23:51 - 2013-11-02 23:51 - 00002072 _____ C:\Users\Public\Desktop\Blender.lnk 2013-11-02 23:49 - 2013-11-02 23:51 - 43398086 _____ C:\Users\Levi Grosse\Downloads\blender-2.69-windows32.exe ==================== One Month Modified Files and Folders ======= 2013-11-30 18:20 - 2013-11-30 18:19 - 01959070 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(2).exe 2013-11-30 18:20 - 2013-11-28 18:52 - 00019216 _____ C:\Users\Levi Grosse\Downloads\FRST.txt 2013-11-30 18:20 - 2012-09-11 18:15 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Skype 2013-11-30 18:19 - 2013-11-30 18:19 - 01092069 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST(1).exe 2013-11-30 18:18 - 2013-11-30 18:18 - 01092069 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST.exe 2013-11-30 18:14 - 2013-11-30 18:14 - 00001913 _____ C:\Users\Levi Grosse\Desktop\JRT.txt 2013-11-30 18:08 - 2013-02-23 20:50 - 00000000 ____D C:\Program Files (x86)\Steam 2013-11-30 17:54 - 2013-11-30 17:54 - 00000000 ____D C:\Windows\ERUNT 2013-11-30 17:52 - 2013-11-30 17:52 - 01034531 _____ (Thisisu) C:\Users\Levi Grosse\Downloads\JRT.exe 2013-11-30 17:52 - 2013-03-23 18:56 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-30 17:48 - 2009-07-14 05:45 - 00024416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-30 17:48 - 2009-07-14 05:45 - 00024416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-30 17:42 - 2013-10-02 18:24 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Skitch 2013-11-30 17:41 - 2012-06-21 04:34 - 00000828 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job 2013-11-30 17:40 - 2013-06-06 00:51 - 00221914 _____ C:\Windows\PFRO.log 2013-11-30 17:40 - 2013-06-06 00:51 - 00034248 _____ C:\Windows\setupact.log 2013-11-30 17:40 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-11-30 17:39 - 2013-11-30 17:34 - 00000000 ____D C:\AdwCleaner 2013-11-30 17:39 - 2012-06-21 04:23 - 01188395 _____ C:\Windows\WindowsUpdate.log 2013-11-30 17:33 - 2013-11-30 17:33 - 01091882 _____ C:\Users\Levi Grosse\Downloads\adwcleaner.exe 2013-11-30 17:09 - 2013-11-30 17:09 - 00001077 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Malwarebytes 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-11-30 17:08 - 2013-11-30 17:08 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Levi Grosse\Downloads\mbam-setup-1.75.0.1300.exe 2013-11-30 16:48 - 2013-08-23 02:56 - 00000000 ____D C:\Users\Levi Grosse\Desktop\Asphalt 2013-11-30 16:48 - 2012-11-29 19:53 - 00000000 ____D C:\Users\Levi Grosse\Desktop\Blender_Projekte 2013-11-30 16:16 - 2012-06-21 04:34 - 00000830 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job 2013-11-30 15:52 - 2013-11-30 15:47 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-11-30 15:47 - 2013-11-30 15:40 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Origin 2013-11-30 15:47 - 2013-11-30 15:40 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Origin 2013-11-30 15:47 - 2012-12-19 19:26 - 00000000 ____D C:\ProgramData\Origin 2013-11-30 15:40 - 2013-11-30 15:37 - 00000000 ____D C:\Program Files (x86)\Origin 2013-11-30 15:36 - 2013-11-30 15:35 - 16952720 _____ (Electronic Arts, Inc.) C:\Users\Levi Grosse\Downloads\OriginThinSetup.exe 2013-11-30 15:28 - 2012-09-14 18:13 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Unity 2013-11-29 20:31 - 2012-09-11 17:54 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Adobe 2013-11-29 16:02 - 2013-11-29 16:02 - 00030979 _____ C:\ComboFix.txt 2013-11-29 16:02 - 2013-11-29 15:42 - 00000000 ____D C:\Qoobox 2013-11-29 16:02 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default 2013-11-29 16:00 - 2013-11-29 15:42 - 00000000 ____D C:\Windows\erdnt 2013-11-29 15:58 - 2013-09-14 11:16 - 00000000 ____D C:\Users\Levi Grosse\Documents\ArmAWork 2013-11-29 15:58 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini 2013-11-29 15:56 - 2012-09-11 23:48 - 00000000 ____D C:\Users\Levi Grosse 2013-11-29 15:41 - 2013-11-29 15:42 - 05150163 ____R (Swearware) C:\Users\Levi Grosse\Desktop\ComboFix.exe 2013-11-29 15:41 - 2013-11-29 15:40 - 05150163 ____R (Swearware) C:\Users\Levi Grosse\Downloads\ComboFix.exe 2013-11-29 14:54 - 2013-06-22 01:37 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Arma 3 2013-11-29 13:40 - 2013-11-29 13:40 - 06139504 _____ (Unity Technologies ApS) C:\Users\Levi Grosse\Downloads\UnityWebPlayerFull(1).exe 2013-11-29 11:57 - 2013-11-24 09:26 - 00000000 ____D C:\Users\Levi Grosse\Desktop\lol fun 2013-11-28 18:58 - 2013-11-28 18:55 - 00027959 _____ C:\Users\Levi Grosse\Downloads\Addition.txt 2013-11-28 18:52 - 2013-11-28 18:52 - 00000000 ____D C:\FRST 2013-11-28 18:52 - 2013-11-28 18:50 - 01959024 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(1).exe 2013-11-28 14:36 - 2013-11-28 14:35 - 01958850 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64.exe 2013-11-28 13:43 - 2013-11-22 07:37 - 00000000 ____D C:\Users\Levi Grosse\Documents\3dsMax 2013-11-28 13:36 - 2013-11-28 13:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\NVIDIA 2013-11-28 13:06 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\SysWOW64\NV 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\system32\NV 2013-11-28 12:10 - 2013-05-26 13:41 - 00000000 ____D C:\ProgramData\NVIDIA 2013-11-28 11:59 - 2012-06-21 04:30 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-11-28 11:59 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Help 2013-11-28 11:58 - 2013-05-26 13:39 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-11-28 11:58 - 2012-06-21 04:30 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-11-28 11:37 - 2012-09-11 23:49 - 00068064 _____ C:\Users\Levi Grosse\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-28 11:34 - 2009-07-14 05:45 - 00314928 _____ C:\Windows\system32\FNTCACHE.DAT 2013-11-28 11:21 - 2013-11-28 11:21 - 00003240 _____ C:\Windows\System32\Tasks\{F948D6A6-E943-4D72-B154-17C8CA7B3B4D} 2013-11-28 11:21 - 2013-11-27 13:17 - 00061440 _____ C:\Windows\SysWOW64\nvPhotoshopUtil.dll 2013-11-28 11:21 - 2013-11-27 13:17 - 00040960 _____ C:\Windows\SysWOW64\nvISWOW64.dll 2013-11-28 11:16 - 2013-11-27 13:18 - 00151552 _____ C:\Windows\SysWOW64\nvRegDev.dll 2013-11-28 11:14 - 2013-11-28 11:14 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(2).exe 2013-11-28 11:11 - 2012-03-28 19:57 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-11-28 11:10 - 2012-09-11 23:50 - 00000000 ___RD C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-28 11:07 - 2013-11-28 11:07 - 00000000 ____D C:\PS_CS2_Gr_NonRet 2013-11-28 10:58 - 2013-11-28 10:57 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(1).exe 2013-11-28 06:06 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-11-27 13:20 - 2012-03-28 19:43 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-11-27 13:17 - 2013-11-27 13:16 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800.exe 2013-11-27 10:24 - 2012-10-11 20:19 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\TS3Client 2013-11-27 10:01 - 2013-11-27 08:48 - 01195004 _____ C:\Users\Levi Grosse\Desktop\untitled.blend 2013-11-27 04:46 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-11-27 01:13 - 2013-11-15 22:58 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-26 21:04 - 2013-11-26 21:01 - 112496772 _____ C:\Users\Levi Grosse\Downloads\@HAFM_A3_Stable_v1.rar.part 2013-11-24 10:36 - 2013-11-24 10:36 - 00000000 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_36_50.272604.dmp 2013-11-24 10:34 - 2013-11-24 10:34 - 00188754 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_34_05.199162.dmp 2013-11-24 04:09 - 2013-11-24 04:09 - 00188526 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_09_33.084763.dmp 2013-11-24 04:08 - 2013-11-24 04:08 - 00181447 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_08_43.455113.dmp 2013-11-24 04:07 - 2013-11-24 04:07 - 00219694 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_07_16.031364.dmp 2013-11-23 20:26 - 2013-11-28 11:30 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 18293096 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 15218504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 12613920 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-23 20:26 - 2013-11-28 11:30 - 11566648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 11441664 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 09663656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 03069608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 02697248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433193.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433193.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00032544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2013-11-23 20:26 - 2013-11-28 11:30 - 00023754 _____ C:\Windows\system32\nvinfo.pb 2013-11-23 18:42 - 2013-11-28 11:59 - 06674208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 01065248 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-11-23 18:42 - 2013-11-28 11:59 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-11-23 02:39 - 2013-11-23 02:39 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Unity 2013-11-23 02:18 - 2013-11-23 02:18 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\.mono 2013-11-23 02:14 - 2013-11-23 02:14 - 06137144 _____ (Unity Technologies ApS) C:\Users\Levi Grosse\Downloads\UnityWebPlayerFull.exe 2013-11-22 17:28 - 2013-11-28 11:59 - 03498475 _____ C:\Windows\system32\nvcoproc.bin 2013-11-22 09:31 - 2013-11-22 09:31 - 20730241 _____ C:\Users\Levi Grosse\Downloads\@IanSky_Scope_Mod_R6.1.rar 2013-11-22 07:47 - 2013-11-22 07:45 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Autodesk 2013-11-22 07:46 - 2013-11-22 07:15 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Autodesk 2013-11-22 07:46 - 2013-11-22 07:15 - 00000000 ____D C:\ProgramData\Autodesk 2013-11-22 07:45 - 2012-03-28 19:42 - 00000000 ____D C:\ProgramData\FLEXnet 2013-11-22 07:42 - 2013-11-22 07:36 - 00000000 ____D C:\Program Files\Autodesk 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Users\Levi Grosse\Documents\Inventor Server x64 Autodesk 3ds Max 2012 64-bit - English 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared 2013-11-22 07:40 - 2013-11-22 07:36 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared 2013-11-22 07:36 - 2009-07-14 03:34 - 00017598 _____ C:\Windows\system32\Drivers\etc\services 2013-11-22 07:35 - 2013-11-22 07:35 - 00000000 ____D C:\Program Files (x86)\Autodesk 2013-11-22 07:30 - 2013-06-17 04:16 - 00355926 _____ C:\Windows\DirectX.log 2013-11-22 07:06 - 2013-11-22 07:06 - 00000000 ____D C:\Autodesk 2013-11-20 03:07 - 2013-11-20 02:57 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\six-updater 2013-11-20 02:58 - 2013-11-20 02:58 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX_Projects 2013-11-20 02:56 - 2013-11-20 02:56 - 00000000 ____D C:\Program Files (x86)\SIX Projects 2013-11-20 02:54 - 2013-11-20 02:54 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup(1).exe 2013-11-20 02:50 - 2013-11-20 02:49 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup.exe 2013-11-20 02:26 - 2013-11-20 02:26 - 11311984 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play(1).exe 2013-11-19 23:01 - 2013-11-19 23:01 - 00000000 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe 2013-11-19 23:01 - 2013-11-19 23:00 - 13189037 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe.part 2013-11-19 13:41 - 2013-11-19 13:36 - 177171911 _____ C:\Users\Levi Grosse\Downloads\German_Weapons_Pack_v1.7.rar 2013-11-19 13:28 - 2013-11-19 13:27 - 41023637 _____ C:\Users\Levi Grosse\Downloads\FA18_v1.51_ARMA_3.rar 2013-11-19 13:26 - 2013-11-19 13:26 - 00802768 _____ C:\Users\Levi Grosse\Downloads\ado_boussole.rar 2013-11-19 13:26 - 2013-11-19 13:20 - 205994424 _____ C:\Users\Levi Grosse\Downloads\@idzgladius.rar 2013-11-19 10:53 - 2012-09-11 23:50 - 00001429 _____ C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-19 10:33 - 2013-11-19 10:25 - 00009916 _____ C:\Windows\IE11_main.log 2013-11-19 10:27 - 2013-11-19 10:27 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-19 09:39 - 2013-03-05 14:30 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2013-11-18 02:17 - 2012-09-18 22:51 - 00291128 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-11-18 02:17 - 2012-09-18 21:58 - 00291128 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-11-18 02:16 - 2012-11-21 20:19 - 00000000 ___HD C:\Windows\msdownld.tmp 2013-11-18 02:00 - 2012-09-18 21:58 - 00291128 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-11-17 16:10 - 2013-11-17 16:10 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Arktos Entertainment 2013-11-17 16:08 - 2013-11-17 16:08 - 00000000 ____D C:\Users\Levi Grosse\Documents\Arktos 2013-11-17 16:07 - 2012-09-18 21:58 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-11-16 21:52 - 2013-11-16 21:52 - 02810471 _____ C:\Users\Levi Grosse\Downloads\@Bike.rar 2013-11-16 12:53 - 2012-09-11 18:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-11-15 21:46 - 2012-09-14 23:03 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\CrashDumps 2013-11-15 21:45 - 2013-11-15 21:45 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\DCS 2013-11-14 01:55 - 2013-07-12 23:58 - 00000000 ____D C:\Windows\system32\MRT 2013-11-14 01:52 - 2012-10-12 20:26 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-11-12 16:49 - 2013-11-12 14:50 - 441583242 _____ C:\Users\Levi Grosse\Downloads\@jsrs2.0.rar 2013-11-11 05:50 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-11-10 11:30 - 2013-11-10 11:21 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\DVDVideoSoft 2013-11-10 11:24 - 2012-09-13 17:06 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Google 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\TuneUp Software 2013-11-10 11:23 - 2012-11-06 14:15 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-11-10 11:19 - 2013-11-10 11:18 - 32206488 _____ (DVDVideoSoft Ltd. ) C:\Users\Levi Grosse\Downloads\FreeYouTubeToMP3Converter_3.12.16.1030.exe 2013-11-10 10:43 - 2013-07-06 22:50 - 00000000 ____D C:\ProgramData\Sony 2013-11-10 10:43 - 2013-04-03 21:34 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Sony 2013-11-10 10:41 - 2013-11-10 10:41 - 00000000 ____D C:\Users\Levi Grosse\Documents\Movie Studio Platinum 12.0 Projekte 2013-11-10 10:39 - 2013-07-06 22:49 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Sony 2013-11-10 10:32 - 2013-11-10 10:28 - 185831992 _____ (Sony Creative Software Inc.) C:\Users\Levi Grosse\Downloads\moviestudiope12.0.334_64bit.exe 2013-11-09 23:14 - 2013-11-09 23:14 - 00394148 _____ C:\Users\Levi Grosse\Downloads\dbo_animationfiles.rar 2013-11-08 21:47 - 2013-11-28 10:43 - 01064224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-08 21:47 - 2013-11-28 10:43 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-07 23:50 - 2013-11-07 23:40 - 00000173 _____ C:\Windows\user_bmvg5.ini 2013-11-07 12:42 - 2013-06-22 01:37 - 00000000 ____D C:\Users\Levi Grosse\Documents\Arma 3 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\Documents\arma 2 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\ProgramData\SIX Networks 2013-11-07 12:22 - 2013-11-07 12:22 - 01005568 _____ (Microsoft Corporation) C:\Users\Levi Grosse\Downloads\dotNetFx45_Full_setup.exe 2013-11-07 12:19 - 2013-11-07 12:17 - 11300072 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play.exe 2013-11-06 21:10 - 2012-06-21 14:11 - 01884308 _____ C:\Windows\system32\perfh007.dat 2013-11-06 21:10 - 2012-06-21 14:11 - 00534232 _____ C:\Windows\system32\perfc007.dat 2013-11-06 21:10 - 2009-07-14 06:13 - 00006540 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-03 09:12 - 2013-11-03 09:12 - 00000000 ____D C:\ProgramData\GFACE 2013-11-02 23:51 - 2013-11-02 23:51 - 00002072 _____ C:\Users\Public\Desktop\Blender.lnk 2013-11-02 23:51 - 2013-11-02 23:49 - 43398086 _____ C:\Users\Levi Grosse\Downloads\blender-2.69-windows32.exe 2013-11-02 10:32 - 2012-03-28 20:18 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-11-02 10:32 - 2012-03-28 20:18 - 00000000 ____D C:\ProgramData\Skype Some content of TEMP: ==================== C:\Users\Levi Grosse\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-20 07:11 ==================== End Of Log ============================ |
01.12.2013, 15:54 | #8 |
/// the machine /// TB-Ausbilder | Neuer bundestrojanerESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
02.12.2013, 14:54 | #9 |
| Neuer bundestrojaner Hey,tut mir leid wegen der späten antwort,es hat extrem lange gescannt,hier der erste logfile von ESET . ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=609185fe7d19694aae702197809d761f # engine=16093 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-12-01 04:18:40 # local_time=2013-12-01 05:18:40 (+0100, Mitteleuropäische Zeit) # country="Austria" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=774 16777213 85 91 22068636 162624592 0 0 # compatibility_mode=5893 16776573 100 94 41405 137544570 0 0 # scanned=22458 # found=0 # cleaned=0 # scan_time=3767 ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=609185fe7d19694aae702197809d761f # engine=16093 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-12-01 06:10:21 # local_time=2013-12-01 07:10:21 (+0100, Mitteleuropäische Zeit) # country="Austria" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=774 16777213 85 91 22078937 162631293 0 0 # compatibility_mode=5893 16776573 100 94 51706 137551271 0 0 # scanned=6709 # found=0 # cleaned=0 # scan_time=2437 ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=609185fe7d19694aae702197809d761f # engine=16099 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-12-02 01:00:12 # local_time=2013-12-02 02:00:12 (+0100, Mitteleuropäische Zeit) # country="Austria" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=774 16777213 85 91 22146728 162699084 0 0 # compatibility_mode=5893 16776573 100 94 119497 137619062 0 0 # scanned=177098 # found=0 # cleaned=0 # scan_time=12567 Und hier der Lgofile vonsecurity check . Results of screen317's Security Check version 0.99.76 Windows 7 Service Pack 1 x64 (UAC is disabled!) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` avast! Antivirus Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 25 Java version out of Date! Adobe Flash Player 11.9.900.117 Adobe Reader 10.1.8 Adobe Reader out of Date! Mozilla Firefox (25.0.1) Google Chrome 27.0.1453.110 ````````Process Check: objlist.exe by Laurent```````` AVAST Software Avast AvastSvc.exe AVAST Software Avast AvastUI.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` Und hier das neue FIRST log,. FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-12-2013 Ran by Levi Grosse (administrator) on LEVIGROSSE-PC on 02-12-2013 14:50:32 Running from C:\Users\Levi Grosse\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe () C:\Windows\SysWOW64\LckFldService.exe (Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe () C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Atheros) C:\Program Files (x86)\Atheros\Ath_WlanAgent.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.EXE (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(3).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12452456 2012-02-22] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-08] (Realtek Semiconductor) HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [1021056 2012-03-08] (Atheros Communications) HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [800896 2012-03-08] (Atheros Commnucations) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2886416 2012-03-02] (Synaptics Incorporated) HKLM\...\Run: [Power Management] - C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1829768 2012-02-07] (Acer Incorporated) HKLM\...\Run: [InstantUpdate] - C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuDaemon.exe [124520 2012-04-06] () HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Winlogon: [Userinit] C:\Windows\sysWOW64\userinit.exe [26624 2010-11-21] (Microsoft Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1823656 2013-11-28] (Valve Corporation) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) HKCU\...\Run: [mapdisk] - C:\Users\Levi Grosse\Documents\ArmAWork\mapdisk.bat [54 2013-09-14] () HKCU\...\Run: [Skitch] - C:\Program Files (x86)\Evernote\Skitch\Skitch.exe [4304704 2013-08-09] (Evernote) HKLM-x32\...\Run: [BackupManagerTray] - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [296984 2012-01-05] (NTI Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Dolby Advanced Audio v2] - C:\Dolby PCEE4\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-27] (Intel Corporation) HKLM-x32\...\Run: [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe [1105488 2012-03-24] (Dritek System Inc.) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [4767304 2013-03-07] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [20131121] - C:\Program Files\AVAST Software\Avast\Setup\emupdate\b079aac6-7a48-4db8-ab22-6291d3c7afef.exe [180184 2013-11-23] (AVAST Software) HKU\Default\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [162408 2011-09-13] () HKU\Default User\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [162408 2011-09-13] () AppInit_DLLs: C:\Windows\System32\nvinitx.dll [168616 2013-11-23] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll [141336 2013-11-23] (NVIDIA Corporation) Startup: C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 FireFox: ======== FF ProfilePath: C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432 FF DefaultSearchEngine: NationSearch FF SelectedSearchEngine: NationSearch FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\searchplugins\Nation.xml FF SearchPlugin: C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\searchplugins\xfire-new-customized-web-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: exif_viewer - C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\Extensions\exif_viewer@mozilla.doslash.org.xpi FF Extension: stylish - C:\Users\Levi Grosse\AppData\Roaming\Mozilla\Firefox\Profiles\ue577egx.default-1351350689432\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! WebRep - C:\Program Files\AVAST Software\Avast\WebRep\FF Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx CHR HKLM-x32\...\Chrome\Extension: [icmlaeflemplmjndnaapfdbbnpncnbda] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx ==================== Services (Whitelisted) ================= S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-11-28] (Adobe Systems) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-07] (AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-08-21] () R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [109352 2013-10-15] (SurfRight B.V.) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [127320 2012-03-16] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [162648 2012-03-16] (Intel Corporation) R2 LckFldService; C:\Windows\SysWow64\LckFldService.exe [36864 2005-06-22] () S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 mi-raysat_3dsmax2012_64; C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe [86016 2011-02-22] () R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256536 2012-01-05] (NTI Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15125280 2013-11-08] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-12-01] () R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Atheros\Ath_WlanAgent.exe [76960 2012-02-27] (Atheros) ==================== Drivers (Whitelisted) ==================== R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-03-07] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-03-07] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [70992 2013-03-07] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-03-07] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1025808 2013-03-07] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [377920 2013-03-07] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [68920 2013-03-07] (AVAST Software) S3 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [178624 2013-03-07] () S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 xhunter1; \??\C:\Windows\xhunter1.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-02 14:50 - 2013-12-02 14:50 - 01959184 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(3).exe 2013-12-02 14:43 - 2013-12-02 14:44 - 00891184 _____ C:\Users\Levi Grosse\Downloads\SecurityCheck.exe 2013-12-02 10:29 - 2013-12-02 10:29 - 02347384 _____ (ESET) C:\Users\Levi Grosse\Downloads\esetsmartinstaller_enu(2).exe 2013-12-01 22:56 - 2013-12-01 22:56 - 00005069 _____ C:\Users\Levi Grosse\Downloads\usableCargoRamp.rar 2013-12-01 18:28 - 2013-12-01 18:29 - 02347384 _____ (ESET) C:\Users\Levi Grosse\Downloads\esetsmartinstaller_enu(1).exe 2013-12-01 16:13 - 2013-12-01 16:13 - 00000000 ____D C:\Program Files (x86)\ESET 2013-12-01 16:12 - 2013-12-01 16:13 - 02347384 _____ (ESET) C:\Users\Levi Grosse\Downloads\esetsmartinstaller_enu.exe 2013-12-01 00:58 - 2013-12-01 01:00 - 00000000 ____D C:\Users\Levi Grosse\Documents\MOHW 2013-11-30 18:19 - 2013-11-30 18:20 - 01959070 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(2).exe 2013-11-30 18:19 - 2013-11-30 18:19 - 01092069 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST(1).exe 2013-11-30 18:18 - 2013-11-30 18:18 - 01092069 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST.exe 2013-11-30 17:54 - 2013-11-30 17:54 - 00000000 ____D C:\Windows\ERUNT 2013-11-30 17:52 - 2013-11-30 17:52 - 01034531 _____ (Thisisu) C:\Users\Levi Grosse\Downloads\JRT.exe 2013-11-30 17:34 - 2013-11-30 17:39 - 00000000 ____D C:\AdwCleaner 2013-11-30 17:33 - 2013-11-30 17:33 - 01091882 _____ C:\Users\Levi Grosse\Downloads\adwcleaner.exe 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Malwarebytes 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-11-30 17:09 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-11-30 17:08 - 2013-11-30 17:08 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Levi Grosse\Downloads\mbam-setup-1.75.0.1300.exe 2013-11-30 15:47 - 2013-11-30 15:52 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-11-30 15:40 - 2013-11-30 19:11 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Origin 2013-11-30 15:40 - 2013-11-30 18:24 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Origin 2013-11-30 15:37 - 2013-12-01 19:21 - 00000000 ____D C:\Program Files (x86)\Origin 2013-11-30 15:35 - 2013-11-30 15:36 - 16952720 _____ (Electronic Arts, Inc.) C:\Users\Levi Grosse\Downloads\OriginThinSetup.exe 2013-11-29 16:02 - 2013-11-29 16:02 - 00030979 _____ C:\ComboFix.txt 2013-11-29 15:43 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe 2013-11-29 15:43 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe 2013-11-29 15:43 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-11-29 15:43 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-11-29 15:43 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-11-29 15:43 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe 2013-11-29 15:43 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe 2013-11-29 15:43 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe 2013-11-29 15:42 - 2013-11-29 16:02 - 00000000 ____D C:\Qoobox 2013-11-29 15:42 - 2013-11-29 16:00 - 00000000 ____D C:\Windows\erdnt 2013-11-29 15:40 - 2013-11-29 15:41 - 05150163 ____R (Swearware) C:\Users\Levi Grosse\Downloads\ComboFix.exe 2013-11-29 13:40 - 2013-11-29 13:40 - 06139504 _____ (Unity Technologies ApS) C:\Users\Levi Grosse\Downloads\UnityWebPlayerFull(1).exe 2013-11-28 18:55 - 2013-11-28 18:58 - 00027959 _____ C:\Users\Levi Grosse\Downloads\Addition.txt 2013-11-28 18:52 - 2013-12-02 14:50 - 00019065 _____ C:\Users\Levi Grosse\Downloads\FRST.txt 2013-11-28 18:52 - 2013-11-28 18:52 - 00000000 ____D C:\FRST 2013-11-28 18:50 - 2013-11-28 18:52 - 01959024 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(1).exe 2013-11-28 14:35 - 2013-11-28 14:36 - 01958850 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64.exe 2013-11-28 13:36 - 2013-11-28 13:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\NVIDIA 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\SysWOW64\NV 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\system32\NV 2013-11-28 11:59 - 2013-11-23 18:42 - 06674208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 01065248 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-11-28 11:59 - 2013-11-23 18:42 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2013-11-28 11:59 - 2013-11-23 18:42 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-11-28 11:59 - 2013-11-22 17:28 - 03498475 _____ C:\Windows\system32\nvcoproc.bin 2013-11-28 11:30 - 2013-11-23 20:26 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 18293096 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 15218504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 12613920 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-28 11:30 - 2013-11-23 20:26 - 11566648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 11441664 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 09663656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 03069608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 02697248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433193.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433193.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-28 11:30 - 2013-11-23 20:26 - 00032544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2013-11-28 11:30 - 2013-11-23 20:26 - 00023754 _____ C:\Windows\system32\nvinfo.pb 2013-11-28 11:21 - 2013-11-28 11:21 - 00003240 _____ C:\Windows\System32\Tasks\{F948D6A6-E943-4D72-B154-17C8CA7B3B4D} 2013-11-28 11:14 - 2013-11-28 11:14 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(2).exe 2013-11-28 11:07 - 2013-11-28 11:07 - 00000000 ____D C:\PS_CS2_Gr_NonRet 2013-11-28 10:57 - 2013-11-28 10:58 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(1).exe 2013-11-28 10:43 - 2013-11-08 21:47 - 01064224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-28 10:43 - 2013-11-08 21:47 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-28 10:40 - 2013-09-28 00:01 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-11-28 10:40 - 2013-09-28 00:01 - 00028960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-11-27 13:18 - 2013-11-28 11:16 - 00151552 _____ C:\Windows\SysWOW64\nvRegDev.dll 2013-11-27 13:17 - 2013-11-28 11:21 - 00061440 _____ C:\Windows\SysWOW64\nvPhotoshopUtil.dll 2013-11-27 13:17 - 2013-11-28 11:21 - 00040960 _____ C:\Windows\SysWOW64\nvISWOW64.dll 2013-11-27 13:16 - 2013-11-27 13:17 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800.exe 2013-11-27 08:48 - 2013-11-27 10:01 - 01195004 _____ C:\Users\Levi Grosse\Desktop\untitled.blend 2013-11-26 21:01 - 2013-11-26 21:04 - 112496772 _____ C:\Users\Levi Grosse\Downloads\@HAFM_A3_Stable_v1.rar.part 2013-11-24 10:36 - 2013-11-24 10:36 - 00000000 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_36_50.272604.dmp 2013-11-24 10:34 - 2013-11-24 10:34 - 00188754 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_34_05.199162.dmp 2013-11-24 09:26 - 2013-11-29 11:57 - 00000000 ____D C:\Users\Levi Grosse\Desktop\lol fun 2013-11-24 04:09 - 2013-11-24 04:09 - 00188526 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_09_33.084763.dmp 2013-11-24 04:08 - 2013-11-24 04:08 - 00181447 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_08_43.455113.dmp 2013-11-24 04:07 - 2013-11-24 04:07 - 00219694 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_07_16.031364.dmp 2013-11-23 02:39 - 2013-11-23 02:39 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Unity 2013-11-23 02:18 - 2013-11-23 02:18 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\.mono 2013-11-23 02:14 - 2013-11-23 02:14 - 06137144 _____ (Unity Technologies ApS) C:\Users\Levi Grosse\Downloads\UnityWebPlayerFull.exe 2013-11-22 09:31 - 2013-11-22 09:31 - 20730241 _____ C:\Users\Levi Grosse\Downloads\@IanSky_Scope_Mod_R6.1.rar 2013-11-22 07:45 - 2013-11-22 07:47 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Autodesk 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Users\Levi Grosse\Documents\Inventor Server x64 Autodesk 3ds Max 2012 64-bit - English 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared 2013-11-22 07:37 - 2013-11-28 13:43 - 00000000 ____D C:\Users\Levi Grosse\Documents\3dsMax 2013-11-22 07:36 - 2013-11-22 07:42 - 00000000 ____D C:\Program Files\Autodesk 2013-11-22 07:36 - 2013-11-22 07:40 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared 2013-11-22 07:35 - 2013-11-22 07:35 - 00000000 ____D C:\Program Files (x86)\Autodesk 2013-11-22 07:15 - 2013-11-22 07:46 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Autodesk 2013-11-22 07:15 - 2013-11-22 07:46 - 00000000 ____D C:\ProgramData\Autodesk 2013-11-22 07:06 - 2013-11-22 07:06 - 00000000 ____D C:\Autodesk 2013-11-20 02:58 - 2013-11-20 02:58 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX_Projects 2013-11-20 02:57 - 2013-11-20 03:07 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\six-updater 2013-11-20 02:56 - 2013-11-20 02:56 - 00000000 ____D C:\Program Files (x86)\SIX Projects 2013-11-20 02:54 - 2013-11-20 02:54 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup(1).exe 2013-11-20 02:49 - 2013-11-20 02:50 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup.exe 2013-11-20 02:26 - 2013-11-20 02:26 - 11311984 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play(1).exe 2013-11-19 23:01 - 2013-11-19 23:01 - 00000000 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe 2013-11-19 23:00 - 2013-11-19 23:01 - 13189037 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe.part 2013-11-19 13:36 - 2013-11-19 13:41 - 177171911 _____ C:\Users\Levi Grosse\Downloads\German_Weapons_Pack_v1.7.rar 2013-11-19 13:27 - 2013-11-19 13:28 - 41023637 _____ C:\Users\Levi Grosse\Downloads\FA18_v1.51_ARMA_3.rar 2013-11-19 13:26 - 2013-11-19 13:26 - 00802768 _____ C:\Users\Levi Grosse\Downloads\ado_boussole.rar 2013-11-19 13:20 - 2013-11-19 13:26 - 205994424 _____ C:\Users\Levi Grosse\Downloads\@idzgladius.rar 2013-11-19 10:33 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-11-19 10:27 - 2013-11-19 10:27 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-19 10:25 - 2013-11-19 10:33 - 00009916 _____ C:\Windows\IE11_main.log 2013-11-17 16:10 - 2013-11-17 16:10 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Arktos Entertainment 2013-11-17 16:08 - 2013-11-17 16:08 - 00000000 ____D C:\Users\Levi Grosse\Documents\Arktos 2013-11-16 21:52 - 2013-11-16 21:52 - 02810471 _____ C:\Users\Levi Grosse\Downloads\@Bike.rar 2013-11-15 22:58 - 2013-11-27 01:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-15 21:45 - 2013-11-15 21:45 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\DCS 2013-11-13 20:03 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-13 20:03 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-13 20:03 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-13 20:03 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-11-13 20:03 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-11-13 20:03 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-13 20:03 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-11-13 20:03 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-11-13 20:03 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-11-13 20:03 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-11-13 20:03 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-11-13 20:03 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-11-13 20:03 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-11-13 20:03 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-13 20:03 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-11-13 20:03 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-11-13 20:03 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-11-13 20:03 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-11-13 20:03 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-11-13 20:03 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-11-13 20:03 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-11-13 20:03 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-11-13 20:03 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-11-13 20:03 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-11-13 20:03 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-11-13 20:03 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-11-13 20:03 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-11-13 20:03 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-11-13 20:03 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-11-13 20:03 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-11-12 14:50 - 2013-11-12 16:49 - 441583242 _____ C:\Users\Levi Grosse\Downloads\@jsrs2.0.rar 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\TuneUp Software 2013-11-10 11:21 - 2013-11-10 11:30 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\DVDVideoSoft 2013-11-10 11:18 - 2013-11-10 11:19 - 32206488 _____ (DVDVideoSoft Ltd. ) C:\Users\Levi Grosse\Downloads\FreeYouTubeToMP3Converter_3.12.16.1030.exe 2013-11-10 10:28 - 2013-11-10 10:32 - 185831992 _____ (Sony Creative Software Inc.) C:\Users\Levi Grosse\Downloads\moviestudiope12.0.334_64bit.exe 2013-11-09 23:14 - 2013-11-09 23:14 - 00394148 _____ C:\Users\Levi Grosse\Downloads\dbo_animationfiles.rar 2013-11-07 23:40 - 2013-11-07 23:50 - 00000173 _____ C:\Windows\user_bmvg5.ini 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\Documents\arma 2 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\ProgramData\SIX Networks 2013-11-07 12:22 - 2013-11-07 12:22 - 01005568 _____ (Microsoft Corporation) C:\Users\Levi Grosse\Downloads\dotNetFx45_Full_setup.exe 2013-11-07 12:17 - 2013-11-07 12:19 - 11300072 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play.exe 2013-11-03 09:12 - 2013-11-03 09:12 - 00000000 ____D C:\ProgramData\GFACE 2013-11-02 23:51 - 2013-11-02 23:51 - 00002072 _____ C:\Users\Public\Desktop\Blender.lnk 2013-11-02 23:49 - 2013-11-02 23:51 - 43398086 _____ C:\Users\Levi Grosse\Downloads\blender-2.69-windows32.exe ==================== One Month Modified Files and Folders ======= 2013-12-02 14:51 - 2013-11-28 18:52 - 00019065 _____ C:\Users\Levi Grosse\Downloads\FRST.txt 2013-12-02 14:50 - 2013-12-02 14:50 - 01959184 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(3).exe 2013-12-02 14:44 - 2013-12-02 14:43 - 00891184 _____ C:\Users\Levi Grosse\Downloads\SecurityCheck.exe 2013-12-02 14:22 - 2012-06-21 04:23 - 01262621 _____ C:\Windows\WindowsUpdate.log 2013-12-02 13:53 - 2013-03-23 18:56 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-02 10:29 - 2013-12-02 10:29 - 02347384 _____ (ESET) C:\Users\Levi Grosse\Downloads\esetsmartinstaller_enu(2).exe 2013-12-02 10:29 - 2013-02-23 20:50 - 00000000 ____D C:\Program Files (x86)\Steam 2013-12-02 10:29 - 2012-09-11 18:15 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Skype 2013-12-02 10:22 - 2009-07-14 05:45 - 00024416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-02 10:22 - 2009-07-14 05:45 - 00024416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-02 10:16 - 2013-10-02 18:24 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Skitch 2013-12-02 10:15 - 2012-06-21 04:34 - 00000828 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job 2013-12-02 10:14 - 2013-06-06 00:51 - 00034752 _____ C:\Windows\setupact.log 2013-12-02 10:14 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-02 03:41 - 2012-10-11 20:19 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\TS3Client 2013-12-01 23:18 - 2012-09-18 22:51 - 00291328 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-12-01 23:18 - 2012-09-18 21:58 - 00291328 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-12-01 23:17 - 2012-09-18 21:58 - 00280600 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-12-01 22:56 - 2013-12-01 22:56 - 00005069 _____ C:\Users\Levi Grosse\Downloads\usableCargoRamp.rar 2013-12-01 22:16 - 2012-11-29 19:53 - 00000000 ____D C:\Users\Levi Grosse\Desktop\Blender_Projekte 2013-12-01 21:35 - 2012-09-14 23:03 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\CrashDumps 2013-12-01 19:21 - 2013-11-30 15:37 - 00000000 ____D C:\Program Files (x86)\Origin 2013-12-01 18:29 - 2013-12-01 18:28 - 02347384 _____ (ESET) C:\Users\Levi Grosse\Downloads\esetsmartinstaller_enu(1).exe 2013-12-01 16:16 - 2012-06-21 04:34 - 00000830 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job 2013-12-01 16:13 - 2013-12-01 16:13 - 00000000 ____D C:\Program Files (x86)\ESET 2013-12-01 16:13 - 2013-12-01 16:12 - 02347384 _____ (ESET) C:\Users\Levi Grosse\Downloads\esetsmartinstaller_enu.exe 2013-12-01 12:43 - 2012-03-28 20:18 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-12-01 12:43 - 2012-03-28 20:18 - 00000000 ____D C:\ProgramData\Skype 2013-12-01 12:42 - 2013-09-14 11:16 - 00000000 ____D C:\Users\Levi Grosse\Documents\ArmAWork 2013-12-01 01:00 - 2013-12-01 00:58 - 00000000 ____D C:\Users\Levi Grosse\Documents\MOHW 2013-12-01 00:58 - 2012-09-18 22:47 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\PunkBuster 2013-12-01 00:57 - 2012-12-19 19:26 - 00000000 ____D C:\ProgramData\Origin 2013-12-01 00:34 - 2012-09-18 21:58 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-12-01 00:33 - 2013-06-17 04:16 - 00373573 _____ C:\Windows\DirectX.log 2013-11-30 19:18 - 2013-06-22 01:37 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Arma 3 2013-11-30 19:11 - 2013-11-30 15:40 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Origin 2013-11-30 18:24 - 2013-11-30 15:40 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Origin 2013-11-30 18:20 - 2013-11-30 18:19 - 01959070 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(2).exe 2013-11-30 18:19 - 2013-11-30 18:19 - 01092069 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST(1).exe 2013-11-30 18:18 - 2013-11-30 18:18 - 01092069 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST.exe 2013-11-30 17:54 - 2013-11-30 17:54 - 00000000 ____D C:\Windows\ERUNT 2013-11-30 17:52 - 2013-11-30 17:52 - 01034531 _____ (Thisisu) C:\Users\Levi Grosse\Downloads\JRT.exe 2013-11-30 17:40 - 2013-06-06 00:51 - 00221914 _____ C:\Windows\PFRO.log 2013-11-30 17:39 - 2013-11-30 17:34 - 00000000 ____D C:\AdwCleaner 2013-11-30 17:33 - 2013-11-30 17:33 - 01091882 _____ C:\Users\Levi Grosse\Downloads\adwcleaner.exe 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Malwarebytes 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-11-30 17:09 - 2013-11-30 17:09 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-11-30 17:08 - 2013-11-30 17:08 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Levi Grosse\Downloads\mbam-setup-1.75.0.1300.exe 2013-11-30 16:48 - 2013-08-23 02:56 - 00000000 ____D C:\Users\Levi Grosse\Desktop\Asphalt 2013-11-30 15:52 - 2013-11-30 15:47 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-11-30 15:36 - 2013-11-30 15:35 - 16952720 _____ (Electronic Arts, Inc.) C:\Users\Levi Grosse\Downloads\OriginThinSetup.exe 2013-11-30 15:28 - 2012-09-14 18:13 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Unity 2013-11-29 20:31 - 2012-09-11 17:54 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Adobe 2013-11-29 16:02 - 2013-11-29 16:02 - 00030979 _____ C:\ComboFix.txt 2013-11-29 16:02 - 2013-11-29 15:42 - 00000000 ____D C:\Qoobox 2013-11-29 16:02 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default 2013-11-29 16:00 - 2013-11-29 15:42 - 00000000 ____D C:\Windows\erdnt 2013-11-29 15:58 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini 2013-11-29 15:56 - 2012-09-11 23:48 - 00000000 ____D C:\Users\Levi Grosse 2013-11-29 15:41 - 2013-11-29 15:40 - 05150163 ____R (Swearware) C:\Users\Levi Grosse\Downloads\ComboFix.exe 2013-11-29 13:40 - 2013-11-29 13:40 - 06139504 _____ (Unity Technologies ApS) C:\Users\Levi Grosse\Downloads\UnityWebPlayerFull(1).exe 2013-11-29 11:57 - 2013-11-24 09:26 - 00000000 ____D C:\Users\Levi Grosse\Desktop\lol fun 2013-11-28 18:58 - 2013-11-28 18:55 - 00027959 _____ C:\Users\Levi Grosse\Downloads\Addition.txt 2013-11-28 18:52 - 2013-11-28 18:52 - 00000000 ____D C:\FRST 2013-11-28 18:52 - 2013-11-28 18:50 - 01959024 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64(1).exe 2013-11-28 14:36 - 2013-11-28 14:35 - 01958850 _____ (Farbar) C:\Users\Levi Grosse\Downloads\FRST64.exe 2013-11-28 13:43 - 2013-11-22 07:37 - 00000000 ____D C:\Users\Levi Grosse\Documents\3dsMax 2013-11-28 13:36 - 2013-11-28 13:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\NVIDIA 2013-11-28 13:06 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\SysWOW64\NV 2013-11-28 12:10 - 2013-11-28 12:10 - 00000000 ____D C:\Windows\system32\NV 2013-11-28 12:10 - 2013-05-26 13:41 - 00000000 ____D C:\ProgramData\NVIDIA 2013-11-28 11:59 - 2012-06-21 04:30 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-11-28 11:59 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Help 2013-11-28 11:58 - 2013-05-26 13:39 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-11-28 11:58 - 2012-06-21 04:30 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-11-28 11:37 - 2012-09-11 23:49 - 00068064 _____ C:\Users\Levi Grosse\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-28 11:34 - 2009-07-14 05:45 - 00314928 _____ C:\Windows\system32\FNTCACHE.DAT 2013-11-28 11:21 - 2013-11-28 11:21 - 00003240 _____ C:\Windows\System32\Tasks\{F948D6A6-E943-4D72-B154-17C8CA7B3B4D} 2013-11-28 11:21 - 2013-11-27 13:17 - 00061440 _____ C:\Windows\SysWOW64\nvPhotoshopUtil.dll 2013-11-28 11:21 - 2013-11-27 13:17 - 00040960 _____ C:\Windows\SysWOW64\nvISWOW64.dll 2013-11-28 11:16 - 2013-11-27 13:18 - 00151552 _____ C:\Windows\SysWOW64\nvRegDev.dll 2013-11-28 11:14 - 2013-11-28 11:14 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(2).exe 2013-11-28 11:11 - 2012-03-28 19:57 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-11-28 11:10 - 2012-09-11 23:50 - 00000000 ___RD C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-28 11:07 - 2013-11-28 11:07 - 00000000 ____D C:\PS_CS2_Gr_NonRet 2013-11-28 10:58 - 2013-11-28 10:57 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800(1).exe 2013-11-28 06:06 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-11-27 13:20 - 2012-03-28 19:43 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-11-27 13:17 - 2013-11-27 13:16 - 18518646 _____ (InstallShield Software Corporation) C:\Users\Levi Grosse\Downloads\Photoshop_Plugins_x64_8.55.0109.1800.exe 2013-11-27 10:01 - 2013-11-27 08:48 - 01195004 _____ C:\Users\Levi Grosse\Desktop\untitled.blend 2013-11-27 04:46 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-11-27 01:13 - 2013-11-15 22:58 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-26 21:04 - 2013-11-26 21:01 - 112496772 _____ C:\Users\Levi Grosse\Downloads\@HAFM_A3_Stable_v1.rar.part 2013-11-24 10:36 - 2013-11-24 10:36 - 00000000 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_36_50.272604.dmp 2013-11-24 10:34 - 2013-11-24 10:34 - 00188754 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 10_34_05.199162.dmp 2013-11-24 04:09 - 2013-11-24 04:09 - 00188526 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_09_33.084763.dmp 2013-11-24 04:08 - 2013-11-24 04:08 - 00181447 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_08_43.455113.dmp 2013-11-24 04:07 - 2013-11-24 04:07 - 00219694 _____ C:\Users\Levi Grosse\Documents\ts3_clientui-win64-1380283653-2013-11-24 04_07_16.031364.dmp 2013-11-23 20:26 - 2013-11-28 11:30 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 18293096 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 15218504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 12613920 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-23 20:26 - 2013-11-28 11:30 - 11566648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 11441664 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 09663656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 03069608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 02697248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433193.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433193.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-23 20:26 - 2013-11-28 11:30 - 00032544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2013-11-23 20:26 - 2013-11-28 11:30 - 00023754 _____ C:\Windows\system32\nvinfo.pb 2013-11-23 18:42 - 2013-11-28 11:59 - 06674208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 01065248 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-11-23 18:42 - 2013-11-28 11:59 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2013-11-23 18:42 - 2013-11-28 11:59 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-11-23 02:39 - 2013-11-23 02:39 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Unity 2013-11-23 02:18 - 2013-11-23 02:18 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\.mono 2013-11-23 02:14 - 2013-11-23 02:14 - 06137144 _____ (Unity Technologies ApS) C:\Users\Levi Grosse\Downloads\UnityWebPlayerFull.exe 2013-11-22 17:28 - 2013-11-28 11:59 - 03498475 _____ C:\Windows\system32\nvcoproc.bin 2013-11-22 09:31 - 2013-11-22 09:31 - 20730241 _____ C:\Users\Levi Grosse\Downloads\@IanSky_Scope_Mod_R6.1.rar 2013-11-22 07:47 - 2013-11-22 07:45 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Autodesk 2013-11-22 07:46 - 2013-11-22 07:15 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Autodesk 2013-11-22 07:46 - 2013-11-22 07:15 - 00000000 ____D C:\ProgramData\Autodesk 2013-11-22 07:45 - 2012-03-28 19:42 - 00000000 ____D C:\ProgramData\FLEXnet 2013-11-22 07:42 - 2013-11-22 07:36 - 00000000 ____D C:\Program Files\Autodesk 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Users\Levi Grosse\Documents\Inventor Server x64 Autodesk 3ds Max 2012 64-bit - English 2013-11-22 07:41 - 2013-11-22 07:41 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared 2013-11-22 07:40 - 2013-11-22 07:36 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared 2013-11-22 07:36 - 2009-07-14 03:34 - 00017598 _____ C:\Windows\system32\Drivers\etc\services 2013-11-22 07:35 - 2013-11-22 07:35 - 00000000 ____D C:\Program Files (x86)\Autodesk 2013-11-22 07:06 - 2013-11-22 07:06 - 00000000 ____D C:\Autodesk 2013-11-20 03:07 - 2013-11-20 02:57 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\six-updater 2013-11-20 02:58 - 2013-11-20 02:58 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX_Projects 2013-11-20 02:56 - 2013-11-20 02:56 - 00000000 ____D C:\Program Files (x86)\SIX Projects 2013-11-20 02:54 - 2013-11-20 02:54 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup(1).exe 2013-11-20 02:50 - 2013-11-20 02:49 - 16906651 _____ (Oleg N. Scherbakov) C:\Users\Levi Grosse\Downloads\su-setup.exe 2013-11-20 02:26 - 2013-11-20 02:26 - 11311984 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play(1).exe 2013-11-19 23:01 - 2013-11-19 23:01 - 00000000 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe 2013-11-19 23:01 - 2013-11-19 23:00 - 13189037 _____ C:\Users\Levi Grosse\Downloads\HandBrake-0.9.9-i686-Win_GUI.exe.part 2013-11-19 13:41 - 2013-11-19 13:36 - 177171911 _____ C:\Users\Levi Grosse\Downloads\German_Weapons_Pack_v1.7.rar 2013-11-19 13:28 - 2013-11-19 13:27 - 41023637 _____ C:\Users\Levi Grosse\Downloads\FA18_v1.51_ARMA_3.rar 2013-11-19 13:26 - 2013-11-19 13:26 - 00802768 _____ C:\Users\Levi Grosse\Downloads\ado_boussole.rar 2013-11-19 13:26 - 2013-11-19 13:20 - 205994424 _____ C:\Users\Levi Grosse\Downloads\@idzgladius.rar 2013-11-19 10:53 - 2012-09-11 23:50 - 00001429 _____ C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-19 10:33 - 2013-11-19 10:25 - 00009916 _____ C:\Windows\IE11_main.log 2013-11-19 10:27 - 2013-11-19 10:27 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-19 10:27 - 2013-11-19 10:27 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-19 10:27 - 2013-11-19 10:27 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-11-19 10:27 - 2013-11-19 10:27 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-11-19 10:27 - 2013-11-19 10:27 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-11-19 10:27 - 2013-11-19 10:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-11-19 10:27 - 2013-11-19 10:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-11-19 10:27 - 2013-11-19 10:27 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-19 09:39 - 2013-03-05 14:30 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2013-11-18 02:16 - 2012-11-21 20:19 - 00000000 ___HD C:\Windows\msdownld.tmp 2013-11-17 16:10 - 2013-11-17 16:10 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Arktos Entertainment 2013-11-17 16:08 - 2013-11-17 16:08 - 00000000 ____D C:\Users\Levi Grosse\Documents\Arktos 2013-11-16 21:52 - 2013-11-16 21:52 - 02810471 _____ C:\Users\Levi Grosse\Downloads\@Bike.rar 2013-11-16 12:53 - 2012-09-11 18:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-11-15 21:45 - 2013-11-15 21:45 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\DCS 2013-11-14 01:55 - 2013-07-12 23:58 - 00000000 ____D C:\Windows\system32\MRT 2013-11-14 01:52 - 2012-10-12 20:26 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-11-12 16:49 - 2013-11-12 14:50 - 441583242 _____ C:\Users\Levi Grosse\Downloads\@jsrs2.0.rar 2013-11-11 05:50 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-11-10 11:30 - 2013-11-10 11:21 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\DVDVideoSoft 2013-11-10 11:24 - 2012-09-13 17:06 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Google 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2013-11-10 11:23 - 2013-11-10 11:23 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\TuneUp Software 2013-11-10 11:23 - 2012-11-06 14:15 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-11-10 11:19 - 2013-11-10 11:18 - 32206488 _____ (DVDVideoSoft Ltd. ) C:\Users\Levi Grosse\Downloads\FreeYouTubeToMP3Converter_3.12.16.1030.exe 2013-11-10 10:43 - 2013-07-06 22:50 - 00000000 ____D C:\ProgramData\Sony 2013-11-10 10:43 - 2013-04-03 21:34 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\Sony 2013-11-10 10:39 - 2013-07-06 22:49 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\Sony 2013-11-10 10:32 - 2013-11-10 10:28 - 185831992 _____ (Sony Creative Software Inc.) C:\Users\Levi Grosse\Downloads\moviestudiope12.0.334_64bit.exe 2013-11-09 23:14 - 2013-11-09 23:14 - 00394148 _____ C:\Users\Levi Grosse\Downloads\dbo_animationfiles.rar 2013-11-08 21:47 - 2013-11-28 10:43 - 01064224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-08 21:47 - 2013-11-28 10:43 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-07 23:50 - 2013-11-07 23:40 - 00000173 _____ C:\Windows\user_bmvg5.ini 2013-11-07 12:42 - 2013-06-22 01:37 - 00000000 ____D C:\Users\Levi Grosse\Documents\Arma 3 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\Documents\arma 2 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Roaming\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\Users\Levi Grosse\AppData\Local\SIX Networks 2013-11-07 12:36 - 2013-11-07 12:36 - 00000000 ____D C:\ProgramData\SIX Networks 2013-11-07 12:22 - 2013-11-07 12:22 - 01005568 _____ (Microsoft Corporation) C:\Users\Levi Grosse\Downloads\dotNetFx45_Full_setup.exe 2013-11-07 12:19 - 2013-11-07 12:17 - 11300072 _____ (SIX Networks) C:\Users\Levi Grosse\Downloads\withSIX-Play.exe 2013-11-06 21:10 - 2012-06-21 14:11 - 01884308 _____ C:\Windows\system32\perfh007.dat 2013-11-06 21:10 - 2012-06-21 14:11 - 00534232 _____ C:\Windows\system32\perfc007.dat 2013-11-06 21:10 - 2009-07-14 06:13 - 00006540 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-03 09:12 - 2013-11-03 09:12 - 00000000 ____D C:\ProgramData\GFACE 2013-11-02 23:51 - 2013-11-02 23:51 - 00002072 _____ C:\Users\Public\Desktop\Blender.lnk 2013-11-02 23:51 - 2013-11-02 23:49 - 43398086 _____ C:\Users\Levi Grosse\Downloads\blender-2.69-windows32.exe Some content of TEMP: ==================== C:\Users\Levi Grosse\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-01 20:55 ==================== End Of Log ============================ --- --- --- Uhm,ich bin cgartist,ud falls ihr mal was im bereich 3d/cg/games braucht,meldet euch,ich würde mich freuen als dankeschön hefen zu können . Helfen* |
03.12.2013, 09:54 | #10 |
/// the machine /// TB-Ausbilder | Neuer bundestrojaner Java und Adobe updaten. Fertig Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
03.12.2013, 11:07 | #11 |
| Neuer bundestrojaner Ich Danke Ihnen sehr . Hey,irgendwie ist das dankeschön und ich nicht angekommen,also nochmal , dankeschön ,ich hätte noch eine lezte frage ja ,ich habe 0 idee wie ich den adblocker und das WOT addon insallieren könnte . |
04.12.2013, 10:19 | #12 |
/// the machine /// TB-Ausbilder | Neuer bundestrojaner Mach es am Besten in Firefox direkt, Extras > Addons, dort danach suchen und direkt in FF installieren
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
04.12.2013, 15:10 | #13 |
| Neuer bundestrojaner Dankeschön,erledigt . |
05.12.2013, 09:42 | #14 |
/// the machine /// TB-Ausbilder | Neuer bundestrojaner Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Neuer bundestrojaner |
beschränkt, browser, bundestrojaner, eingefangen, geschlossen, gesperrt, pup.optional.conduit.a, pup.optional.dealply.a, pup.optional.opencandy, pup.optional.sweetim.a, stunden, virus total, website, wissen, zahlen |