|
Plagegeister aller Art und deren Bekämpfung: USBStick: Korruption von Dateien und neu aufgetauchte Dateien (unlöschbar/korrupt, 15GB) auf 8GB StickWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
29.11.2013, 16:53 | #1 |
| USBStick: Korruption von Dateien und neu aufgetauchte Dateien (unlöschbar/korrupt, 15GB) auf 8GB Stick Hey Leute, ich habe genau das Problem wie es im Titel beschrieben ist. Ich programmiere mit Eclipse, auf ein mal funktionieren 2 Projekte einfach nicht mehr - Interne Fehler, manche Dateien können nicht gelöscht werden. Hier eine Liste meiner Beobachtungen: Im Verzeichnis, wo die kompilierten Datein sein sollen, befinden sich 10 Dateien und 4 Ordner. Ihre Namen ähneln Bruchstücken von xml, z.B."<item v.alu", "alue="tr.ue"" und so weiter. Ihre Größen und ihre Erstellungsdaten sind völlig unlogisch: Vom 10.08.1984 um 02:41 bis zum 05.11.2039 umd 13:35 ist alles dabei, sowie Dateigrößen von 148Mb bis zu 1,9 GB - Insgesamt 15GB, obwohl der USB-Stick nur 8GB groß ist. Versucht man die Dateien zu löschen oder zu bearbeiten, kommen Meldungen wie: Datei existiert nicht, der Pfad ist nicht vorhanden, der Dateiname ist ungültig oder zu lang, und so weiter. In einem anderen Verzeichnis, auch korrupt (sind 2 insgesamt) befindet sich nur eine Datei und 1 Ordner. Der Dateiname ist "╩■║¥", sie ist 474kb groß, sonst entspricht alles dem vorherigen Fall. Der USB-Stick ist noch kein Jahr alt und USB 3.0. Ich verwende ihn nur zu Hause und an den 100% virenfreien Schulrechnern - Auf meinem PC war zwar das Antivirenprogramm lange deaktiviert, aber er scheint sauber zu sein, habe ihn grade nochmal zusammen mit dem USBStick gescannt - Alles sauber. Ich habe es zwar länger nicht bemerkt, aber der Fehler tritt seit ca. 1 Woche auf. Für alle, die bis hier hin gelesen haben, noch ein kleiner Screenshot, damit ihr sehen könnt, was ich meine. Ich hoffe jemand weiß, woran das liegt, und wie ich diese Dateien entfernen kann. Vielen Dank an alle, die sich die Zeit genommen hab, das hier zu lesen und vielleicht sogar zu antworten. |
29.11.2013, 17:37 | #2 |
/// the machine /// TB-Ausbilder | USBStick: Korruption von Dateien und neu aufgetauchte Dateien (unlöschbar/korrupt, 15GB) auf 8GB Stick hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
29.11.2013, 19:59 | #3 |
| USBStick: Korruption von Dateien und neu aufgetauchte Dateien (unlöschbar/korrupt, 15GB) auf 8GB StickFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-11-2013 Ran by Ikaron (administrator) on IKARON-PC on 29-11-2013 19:49:50 Running from H:\download Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe (Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (Dropbox, Inc.) C:\Users\Ikaron\AppData\Roaming\Dropbox\bin\Dropbox.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe () H:\Fiesta Online\Fiesta.bin () C:\Users\Ikaron\Desktop\eclipse\eclipse.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11545192 2010-11-02] (Realtek Semiconductor) HKLM\...\Run: [EvtMgr6] - C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming HKLM\...\Run: [Launch LCore] - C:\Program Files\Logitech Gaming Software\LCore.exe [8290584 2013-08-01] (Logitech Inc.) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-10-18] (NVIDIA Corporation) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [472984 2013-06-13] (Adobe Systems Incorporated) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [X] HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [17049736 2011-11-09] (Skype Technologies S.A.) HKCU\...\Run: [SandboxieControl] - C:\Program Files\Sandboxie\SbieCtrl.exe [759384 2013-07-08] (Sandboxie Holdings, LLC) HKCU\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) MountPoints2: {b590488a-8b23-11e2-9b36-f46d04535058} - J:\LaunchU3.exe -a HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [4767304 2013-03-06] (AVAST Software) HKLM-x32\...\Run: [Adobe Creative Cloud] - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2237328 2013-09-03] (Adobe Systems Incorporated) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2349392 2013-11-11] (LogMeIn Inc.) HKLM-x32\...\Run: [20131121] - C:\Program Files\AVAST Software\Avast\Setup\emupdate\160e52c5-bc23-4a17-8bed-b806743b10e5.exe [180184 2013-11-23] (AVAST Software) Startup: C:\Users\Besuch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () Startup: C:\Users\Ikaron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Ikaron\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x624AC45B012BCE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE BHO: No Name - {0055C089-8582-441B-A0BF-17B458C2A3A8} - No File BHO: avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll No File BHO: No Name - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - No File BHO-x32: No Name - {0055C089-8582-441B-A0BF-17B458C2A3A8} - No File BHO-x32: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll No File Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: 127.0.0.1 stubedore.t Tcpip\Parameters: [DhcpNameServer] 192.168.10.1 FireFox: ======== FF ProfilePath: C:\Users\Ikaron\AppData\Roaming\Mozilla\Firefox\Profiles\gx4h6efm.default FF Homepage: hxxp://www.google.de/ FF NetworkProxy: "http", "www-proxy.t-online.de" FF NetworkProxy: "http_port", 80 FF NetworkProxy: "share_proxy_settings", true FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll () FF Plugin: @java.com/DTPlugin,version=11.0.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @videolan.org/vlc,version=2.0.5 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.4 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll No File FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Ikaron\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: amazon.com/AmazonMP3DownloaderPlugin - C:\Users\Ikaron\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll No File FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: DownloadHelper - C:\Users\Ikaron\AppData\Roaming\Mozilla\Firefox\Profiles\gx4h6efm.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} FF Extension: info - C:\Users\Ikaron\AppData\Roaming\Mozilla\Firefox\Profiles\gx4h6efm.default\Extensions\info@maltegoetz.de.xpi FF Extension: Adblock Plus - C:\Users\Ikaron\AppData\Roaming\Mozilla\Firefox\Profiles\gx4h6efm.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! WebRep - C:\Program Files\AVAST Software\Avast\WebRep\FF ==================== Services (Whitelisted) ================= S3 AccountLogDB_Server; H:\Pserver\Odin\AccountLog\AccountLog Release.exe [159744 2012-08-02] () S3 AESIRGAMES_OdinRestServer; H:\Pserver\Odin\REST\OdinRestServer.exe [66560 2013-04-30] (Aesir Games - Stu Bedore) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-06] (AVAST Software) S3 Character_DB_Server0; H:\Pserver\Odin\Character\Character Release.exe [385024 2011-01-21] () S3 GameLog_DB_Server0; H:\Pserver\Odin\GameLog\GameLog Release.exe [184320 2013-09-27] () R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.) S3 Login_Server; H:\Pserver\Odin\Login\3LoginServer2.exe [86016 2012-08-02] () S3 Manager_Server0; H:\Pserver\Odin\World00\4WorldManagerServer2.exe [405504 2011-12-23] () R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [62218696 2012-06-29] (Microsoft Corporation) S4 msvsmon90; C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe [4737024 2008-07-29] (Microsoft Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15122208 2013-10-18] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-10-02] () S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.) R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [183896 2013-07-08] (Sandboxie Holdings, LLC) S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [441288 2012-06-29] (Microsoft Corporation) S3 Zone_Server00; H:\Pserver\Odin\Zone00\5ZoneServer2.exe [2170880 2012-02-06] () S3 Zone_Server01; H:\Pserver\Odin\Zone01\5ZoneServer2.exe [2170880 2012-02-06] () S3 Zone_Server02; H:\Pserver\Odin\Zone02\5ZoneServer2.exe [2170880 2012-02-06] () S3 Zone_Server03; H:\Pserver\Odin\Zone03\5ZoneServer2.exe [2170880 2012-02-06] () S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [x] S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [x] S3 LBTServ; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [x] ==================== Drivers (Whitelisted) ==================== S3 ASPI; C:\Windows\SysWow64\DRIVERS\ASPI32.sys [84832 2002-07-17] (Adaptec) R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-03-06] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-03-06] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [70992 2013-03-06] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-03-06] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1025808 2013-03-06] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [377920 2013-03-06] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [68920 2013-03-06] (AVAST Software) S3 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [178624 2013-03-06] () S3 GEARAspiWDM; C:\Windows\SysWow64\Drivers\GEARAspiWDM.sys [15664 2013-02-04] (GEAR Software Inc.) R3 LGSHidFilt; C:\Windows\System32\DRIVERS\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.) S3 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation) S1 prodrv06; C:\Windows\SysWow64\drivers\prodrv06.sys [77184 2004-03-09] (Protection Technology) S0 prohlp02; C:\Windows\SysWow64\drivers\prohlp02.sys [65504 2004-03-09] (Protection Technology) S0 prosync1; C:\Windows\SysWow64\drivers\prosync1.sys [6944 2003-09-06] (Protection Technology) S4 RsFx0153; C:\Windows\System32\DRIVERS\RsFx0153.sys [321992 2012-06-29] (Microsoft Corporation) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [199384 2013-07-08] (Sandboxie Holdings, LLC) S0 sfhlp01; C:\Windows\SysWow64\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology) R1 vmm; C:\Windows\system32\Treiber\vmm.sys [297496 2008-02-12] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-29 19:49 - 2013-11-29 19:49 - 00000000 ____D C:\FRST 2013-11-25 01:07 - 2013-11-25 01:07 - 00001244 _____ C:\Users\Ikaron\AppData\Local\recently-used.xbel 2013-11-24 13:24 - 2013-11-29 13:49 - 00001176 _____ C:\Windows\setupact.log 2013-11-24 13:24 - 2013-11-24 13:24 - 00000000 _____ C:\Windows\setuperr.log 2013-11-21 03:00 - 2013-11-21 03:00 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-11-21 03:00 - 2013-11-21 03:00 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-11-21 03:00 - 2013-11-21 03:00 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-11-21 03:00 - 2013-11-21 03:00 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-11-21 03:00 - 2013-11-21 03:00 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-11-21 03:00 - 2013-11-21 03:00 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-11-21 03:00 - 2013-11-21 03:00 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-11-20 20:39 - 2013-11-20 20:39 - 00000000 ____D C:\Users\Ikaron\Desktop\20% Nigga 2013-11-20 20:38 - 2013-11-20 20:38 - 00000000 ____D C:\Program Files (x86)\Abyssmedia 2013-11-20 20:04 - 2013-11-20 20:04 - 00001058 _____ C:\Users\UpdatusUser\Desktop\All Video Sound Extractor.lnk 2013-11-20 20:04 - 2013-11-20 20:04 - 00001058 _____ C:\Users\Ikaron\Desktop\All Video Sound Extractor.lnk 2013-11-20 20:04 - 2013-11-20 20:04 - 00001058 _____ C:\Users\Besuch\Desktop\All Video Sound Extractor.lnk 2013-11-20 20:04 - 2013-11-20 20:04 - 00000000 ____D C:\Program Files (x86)\All Video Sound Extractor 2013-11-20 19:41 - 2013-11-23 22:49 - 00000000 ____D C:\Users\Ikaron\Desktop\Geschichte 2013-11-20 13:18 - 2013-11-20 14:05 - 00000000 ____D C:\Users\Ikaron\Desktop\MobKI 2013-11-20 03:00 - 2013-11-28 13:47 - 00030178 _____ C:\Windows\IE11_main.log 2013-11-18 18:15 - 2013-11-22 01:28 - 00000000 ____D C:\Users\Ikaron\Desktop\Geschenk 2013-11-15 00:14 - 2013-11-15 00:15 - 68503021 _____ C:\Users\Ikaron\Desktop\PrinceWhateverer - The Fight Inside (Luna_s Caps Lock Pt. 2).mp4 2013-11-14 17:48 - 2013-11-14 17:48 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\FiestaOnline 2013-11-14 17:47 - 2013-11-14 17:47 - 01227741 _____ C:\Users\Ikaron\Desktop\r34pcollage.odt 2013-11-14 17:30 - 2013-11-14 17:39 - 00000000 ____D C:\Users\Ikaron\Desktop\psplit 2013-11-14 17:13 - 2013-10-12 09:45 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-14 17:13 - 2013-10-12 09:45 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-14 17:13 - 2013-10-12 09:45 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-14 17:13 - 2013-10-12 09:43 - 19269632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-14 17:13 - 2013-10-12 09:43 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-14 17:13 - 2013-10-12 09:43 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-14 17:13 - 2013-10-12 09:43 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-14 17:13 - 2013-10-12 09:43 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-14 17:13 - 2013-10-12 09:43 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-14 17:13 - 2013-10-12 09:43 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-14 17:13 - 2013-10-12 09:43 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-14 17:13 - 2013-10-12 09:43 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-14 17:13 - 2013-10-12 09:43 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-14 17:13 - 2013-10-12 09:43 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-14 17:13 - 2013-10-12 08:03 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-14 17:13 - 2013-10-12 08:03 - 01138176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-14 17:13 - 2013-10-12 08:02 - 14355968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-14 17:13 - 2013-10-12 08:02 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-14 17:13 - 2013-10-12 08:02 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-14 17:13 - 2013-10-12 08:02 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-14 17:13 - 2013-10-12 08:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-14 17:13 - 2013-10-12 08:02 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-14 17:13 - 2013-10-12 08:02 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-14 17:13 - 2013-10-12 08:02 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-14 17:13 - 2013-10-12 08:02 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-14 17:13 - 2013-10-12 08:02 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-14 17:13 - 2013-10-12 08:02 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-14 17:13 - 2013-10-12 07:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-14 17:13 - 2013-10-12 07:08 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-14 17:13 - 2013-10-12 06:44 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-14 17:13 - 2013-10-12 06:15 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-14 17:08 - 2013-11-14 17:08 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-11-13 17:17 - 2013-11-13 17:18 - 00000000 ____D C:\Users\Ikaron\Desktop\PicuresINeedToDraw 2013-11-13 16:05 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-13 16:05 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-13 16:05 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-13 16:05 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-11-13 16:05 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-11-13 16:05 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-13 16:05 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-11-13 16:05 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-13 16:05 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-11-13 16:05 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-11-13 16:05 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-11-13 16:05 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-11-13 16:05 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-11-13 16:05 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-11-13 16:05 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-11-13 16:05 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-11-13 16:05 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-11-13 16:05 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-11-13 16:05 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-11-13 16:05 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-11-13 16:05 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-11-13 16:05 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-11-13 16:05 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-11-13 16:05 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-11-12 23:06 - 2013-11-24 17:52 - 00000000 ____D C:\Users\Ikaron\Desktop\water 2013-11-10 15:05 - 2013-11-10 15:05 - 00000000 ____D C:\Users\Ikaron\AppData\Local\Songbird2 2013-11-09 20:15 - 2013-11-20 19:27 - 00000825 _____ C:\Users\Ikaron\Desktop\test.html 2013-11-09 00:09 - 2013-11-09 00:48 - 00011179 _____ C:\Users\Ikaron\Desktop\ShishaTischEntwurf.svg 2013-11-07 23:31 - 2013-11-07 23:31 - 00000000 ____D C:\Program Files\Logitech Gaming Software 2013-11-06 19:56 - 2013-11-06 20:00 - 00000000 ____D C:\Users\Ikaron\AppData\Local\Thunderbird 2013-11-06 00:50 - 2013-11-06 00:51 - 00190050 _____ C:\Windows\DPINST.LOG 2013-11-06 00:49 - 2013-11-06 00:50 - 00002026 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk 2013-11-06 00:49 - 2013-11-06 00:49 - 00000000 ____D C:\ProgramData\Sony 2013-11-06 00:49 - 2013-11-06 00:49 - 00000000 ____D C:\Program Files (x86)\Sony 2013-11-05 15:57 - 2013-11-05 15:57 - 00000000 ____D C:\Users\Ikaron\AppData\Local\LogMeIn 2013-11-03 13:12 - 2013-11-03 13:12 - 00000586 _____ C:\Users\UpdatusUser\Desktop\Fiesta Online DE.lnk 2013-11-03 13:12 - 2013-11-03 13:12 - 00000586 _____ C:\Users\Ikaron\Desktop\Fiesta Online DE.lnk 2013-11-03 13:12 - 2013-11-03 13:12 - 00000586 _____ C:\Users\Besuch\Desktop\Fiesta Online DE.lnk 2013-11-03 13:12 - 2013-11-03 13:12 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\gamigo 2013-11-02 14:45 - 2013-11-02 14:45 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\Wireshark 2013-11-02 14:40 - 2013-11-02 14:40 - 00000000 ____D C:\Program Files (x86)\WinPcap 2013-10-31 13:09 - 2013-10-31 13:09 - 00000000 ____D C:\Users\Ikaron\AppData\Local\Apple 2013-10-30 17:07 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-10-30 17:07 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-10-30 17:07 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-10-30 17:07 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-10-30 17:07 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-10-30 17:07 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-10-30 17:07 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-10-30 17:07 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-10-30 13:14 - 2013-10-30 13:14 - 00000000 ____D C:\Users\Ikaron\AppData\Local\Unk 2013-10-30 12:31 - 2013-11-29 13:49 - 00000000 ____D C:\Users\Ikaron\AppData\Local\LogMeIn Hamachi 2013-10-30 12:31 - 2013-11-05 01:00 - 00000000 ____D C:\Users\Ikaron\AppData\Local\VirtualStore ==================== One Month Modified Files and Folders ======= 2013-11-29 19:49 - 2013-11-29 19:49 - 00000000 ____D C:\FRST 2013-11-29 19:49 - 2013-03-08 21:26 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\Skype 2013-11-29 19:02 - 2013-06-22 17:47 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-11-29 18:57 - 2013-03-08 21:14 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-29 18:48 - 2013-03-08 20:57 - 01298031 _____ C:\Windows\WindowsUpdate.log 2013-11-29 16:21 - 2013-08-19 18:02 - 00000000 ____D C:\Users\Ikaron\Desktop\eclipse 2013-11-29 14:52 - 2009-07-14 18:58 - 00764752 _____ C:\Windows\system32\perfh007.dat 2013-11-29 14:52 - 2009-07-14 18:58 - 00174178 _____ C:\Windows\system32\perfc007.dat 2013-11-29 14:52 - 2009-07-14 06:13 - 01800266 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-29 13:56 - 2009-07-14 05:45 - 00014800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-29 13:56 - 2009-07-14 05:45 - 00014800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-29 13:50 - 2013-04-11 18:42 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\Dropbox 2013-11-29 13:49 - 2013-11-24 13:24 - 00001176 _____ C:\Windows\setupact.log 2013-11-29 13:49 - 2013-10-30 12:31 - 00000000 ____D C:\Users\Ikaron\AppData\Local\LogMeIn Hamachi 2013-11-29 13:49 - 2013-10-03 00:25 - 00000000 ____D C:\ProgramData\NVIDIA 2013-11-29 13:49 - 2013-06-22 17:47 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-11-29 13:49 - 2013-03-13 22:12 - 00023038 _____ C:\Windows\PFRO.log 2013-11-29 13:49 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-11-29 02:00 - 2013-10-08 16:48 - 00000000 ____D C:\Users\Ikaron\AppData\Local\Adobe 2013-11-28 13:47 - 2013-11-20 03:00 - 00030178 _____ C:\Windows\IE11_main.log 2013-11-27 21:52 - 2013-04-21 16:43 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\Audacity 2013-11-25 01:07 - 2013-11-25 01:07 - 00001244 _____ C:\Users\Ikaron\AppData\Local\recently-used.xbel 2013-11-24 17:52 - 2013-11-12 23:06 - 00000000 ____D C:\Users\Ikaron\Desktop\water 2013-11-24 13:24 - 2013-11-24 13:24 - 00000000 _____ C:\Windows\setuperr.log 2013-11-23 23:14 - 2013-03-15 15:59 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\vlc 2013-11-23 22:49 - 2013-11-20 19:41 - 00000000 ____D C:\Users\Ikaron\Desktop\Geschichte 2013-11-23 22:26 - 2013-09-15 16:49 - 00000000 ____D C:\Windows\SysWOW64\Dump 2013-11-23 18:49 - 2013-03-08 20:57 - 00000000 ____D C:\Users\Ikaron 2013-11-22 01:28 - 2013-11-18 18:15 - 00000000 ____D C:\Users\Ikaron\Desktop\Geschenk 2013-11-21 20:44 - 2013-09-28 15:48 - 00000000 ____D C:\Users\Ikaron\Documents\SQL Server Management Studio 2013-11-21 19:33 - 2013-10-29 23:54 - 00000000 ____D C:\Users\Ikaron\AppData\Local\gtk-2.0 2013-11-21 03:00 - 2013-11-21 03:00 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-11-21 03:00 - 2013-11-21 03:00 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-11-21 03:00 - 2013-11-21 03:00 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-11-21 03:00 - 2013-11-21 03:00 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-11-21 03:00 - 2013-11-21 03:00 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-11-21 03:00 - 2013-11-21 03:00 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-11-21 03:00 - 2013-11-21 03:00 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-11-21 03:00 - 2013-11-21 03:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-11-20 20:39 - 2013-11-20 20:39 - 00000000 ____D C:\Users\Ikaron\Desktop\20% Nigga 2013-11-20 20:38 - 2013-11-20 20:38 - 00000000 ____D C:\Program Files (x86)\Abyssmedia 2013-11-20 20:04 - 2013-11-20 20:04 - 00001058 _____ C:\Users\UpdatusUser\Desktop\All Video Sound Extractor.lnk 2013-11-20 20:04 - 2013-11-20 20:04 - 00001058 _____ C:\Users\Ikaron\Desktop\All Video Sound Extractor.lnk 2013-11-20 20:04 - 2013-11-20 20:04 - 00001058 _____ C:\Users\Besuch\Desktop\All Video Sound Extractor.lnk 2013-11-20 20:04 - 2013-11-20 20:04 - 00000000 ____D C:\Program Files (x86)\All Video Sound Extractor 2013-11-20 19:27 - 2013-11-09 20:15 - 00000825 _____ C:\Users\Ikaron\Desktop\test.html 2013-11-20 14:05 - 2013-11-20 13:18 - 00000000 ____D C:\Users\Ikaron\Desktop\MobKI 2013-11-17 13:06 - 2013-03-08 21:23 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-11-17 01:32 - 2013-09-29 16:15 - 00000000 ____D C:\Users\Ikaron\Documents\Fiesta 2013-11-16 13:42 - 2013-09-18 15:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-15 00:15 - 2013-11-15 00:14 - 68503021 _____ C:\Users\Ikaron\Desktop\PrinceWhateverer - The Fight Inside (Luna_s Caps Lock Pt. 2).mp4 2013-11-15 00:14 - 2013-05-08 20:17 - 00000000 ____D C:\Users\Ikaron\Desktop\Ponies 2013-11-14 17:48 - 2013-11-14 17:48 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\FiestaOnline 2013-11-14 17:47 - 2013-11-14 17:47 - 01227741 _____ C:\Users\Ikaron\Desktop\r34pcollage.odt 2013-11-14 17:39 - 2013-11-14 17:30 - 00000000 ____D C:\Users\Ikaron\Desktop\psplit 2013-11-14 17:31 - 2013-03-12 16:01 - 00000000 ____D C:\Users\Ikaron\workspace 2013-11-14 17:13 - 2013-08-18 17:25 - 00000000 ____D C:\Windows\system32\MRT 2013-11-14 17:12 - 2013-04-19 20:14 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-11-14 17:08 - 2013-11-14 17:08 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-11-13 17:18 - 2013-11-13 17:17 - 00000000 ____D C:\Users\Ikaron\Desktop\PicuresINeedToDraw 2013-11-11 05:50 - 2013-03-08 21:32 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-11-10 15:05 - 2013-11-10 15:05 - 00000000 ____D C:\Users\Ikaron\AppData\Local\Songbird2 2013-11-09 00:48 - 2013-11-09 00:09 - 00011179 _____ C:\Users\Ikaron\Desktop\ShishaTischEntwurf.svg 2013-11-07 23:31 - 2013-11-07 23:31 - 00000000 ____D C:\Program Files\Logitech Gaming Software 2013-11-07 23:31 - 2013-03-18 18:37 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys 2013-11-07 23:31 - 2013-03-18 18:37 - 00000471 _____ C:\Windows\LkmdfCoInst.log 2013-11-07 23:28 - 2013-03-17 15:23 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\Logishrd 2013-11-06 20:00 - 2013-11-06 19:56 - 00000000 ____D C:\Users\Ikaron\AppData\Local\Thunderbird 2013-11-06 15:36 - 2013-04-11 18:42 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2013-11-06 15:36 - 2013-03-08 20:58 - 00000000 ___RD C:\Users\Ikaron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-06 00:51 - 2013-11-06 00:50 - 00190050 _____ C:\Windows\DPINST.LOG 2013-11-06 00:50 - 2013-11-06 00:49 - 00002026 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk 2013-11-06 00:50 - 2013-03-08 21:02 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-11-06 00:49 - 2013-11-06 00:49 - 00000000 ____D C:\ProgramData\Sony 2013-11-06 00:49 - 2013-11-06 00:49 - 00000000 ____D C:\Program Files (x86)\Sony 2013-11-05 15:57 - 2013-11-05 15:57 - 00000000 ____D C:\Users\Ikaron\AppData\Local\LogMeIn 2013-11-05 01:00 - 2013-10-30 12:31 - 00000000 ____D C:\Users\Ikaron\AppData\Local\VirtualStore 2013-11-03 13:12 - 2013-11-03 13:12 - 00000586 _____ C:\Users\UpdatusUser\Desktop\Fiesta Online DE.lnk 2013-11-03 13:12 - 2013-11-03 13:12 - 00000586 _____ C:\Users\Ikaron\Desktop\Fiesta Online DE.lnk 2013-11-03 13:12 - 2013-11-03 13:12 - 00000586 _____ C:\Users\Besuch\Desktop\Fiesta Online DE.lnk 2013-11-03 13:12 - 2013-11-03 13:12 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\gamigo 2013-11-02 14:45 - 2013-11-02 14:45 - 00000000 ____D C:\Users\Ikaron\AppData\Roaming\Wireshark 2013-11-02 14:40 - 2013-11-02 14:40 - 00000000 ____D C:\Program Files (x86)\WinPcap 2013-10-31 13:09 - 2013-10-31 13:09 - 00000000 ____D C:\Users\Ikaron\AppData\Local\Apple 2013-10-30 17:07 - 2013-03-10 00:12 - 00585498 _____ C:\Windows\DirectX.log 2013-10-30 14:54 - 2013-09-28 16:49 - 00335412 _____ C:\Windows\SysWOW64\Dbg.txt 2013-10-30 14:54 - 2013-09-28 16:49 - 00000008 _____ C:\Windows\SysWOW64\Size.txt 2013-10-30 13:14 - 2013-10-30 13:14 - 00000000 ____D C:\Users\Ikaron\AppData\Local\Unk 2013-10-30 12:44 - 2013-03-17 15:24 - 00010900 _____ C:\Windows\LDPINST.LOG 2013-10-30 12:44 - 2013-03-17 15:24 - 00000000 ____D C:\ProgramData\Logitech 2013-10-30 12:44 - 2013-03-17 15:24 - 00000000 ____D C:\ProgramData\Logishrd 2013-10-30 00:19 - 2013-10-16 14:41 - 00000000 ____D C:\Users\Ikaron\Desktop\HTMLUnit Some content of TEMP: ==================== C:\Users\Besuch\AppData\Local\Temp\drm_dyndata_7370014.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-20 02:24 ==================== End Of Log ============================ --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-11-2013 Ran by Ikaron at 2013-11-29 19:50:07 Running from H:\download Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C} AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== 7-Zip 9.20 (x32) Adobe Creative Cloud (x32 Version: 2.1.2.232) Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.117) Age of Chivalry (x32) All Video Sound Extractor 3.5 (x32) Amazon MP3-Downloader 1.0.18 (HKCU Version: 1.0.18) Apple Software Update (x32 Version: 2.1.3.127) ASIO4ALL (x32 Version: 2.10) Audacity 2.0.5 (x32 Version: 2.0.5) avast! Free Antivirus (x32 Version: 8.0.1483.0) Battlefield 3™ (x32 Version: 1.6.0.0) Battlefield 4™ Beta (x32 Version: 1.0.0.0) Battlelog Web Plugins (x32 Version: 2.3.0) Blender (Version: 2.68a) Bochs 2.6 (remove only) (x32 Version: 2.6) Boris Graffiti for Corel (x32 Version: 5.30.600) BPM Counter 1.6.0.0 (x32 Version: 1.6.0.0) Cheat Engine 6.3 (x32) Common (x32 Version: 14.1.0.126) Contents (x32 Version: 14.1.0.126) Corel VideoStudio Pro X4 Ultimate (x32 Version: 14.1.0.126) Counter-Strike: Source (x32) DeviceIO (x32 Version: 14.1.0.126) Dropbox (HKCU Version: 2.4.6) eReg (x32 Version: 1.20.138.34) ESN Sonar (x32 Version: 0.70.4) Fiesta Online DE 1.04.136 (x32 Version: 1.04.136) FileZilla Client 3.7.1.1 (x32 Version: 3.7.1.1) Fraps (remove only) (x32) GeForce Experience NvStream Client Components (Version: 1.6.28) Google Update Helper (x32 Version: 1.3.21.153) Guitar Pro 6 (x32) Hex-Editor MX (x32 Version: 6.0) Hotfix für Microsoft Visual C++ 2008 Express Edition mit SP1 - DEU (KB945282) (x32 Version: 1) Hotfix für Microsoft Visual C++ 2008 Express Edition mit SP1 - DEU (KB946040) (x32 Version: 1) Hotfix für Microsoft Visual C++ 2008 Express Edition mit SP1 - DEU (KB946308) (x32 Version: 1) Hotfix für Microsoft Visual C++ 2008 Express Edition mit SP1 - DEU (KB947540) (x32 Version: 1) Hotfix für Microsoft Visual C++ 2008 Express Edition mit SP1 - DEU (KB947789) (x32 Version: 1) Hotfix für Microsoft Visual C++ 2008 Express Edition mit SP1 - DEU (KB948127) (x32 Version: 1) Hotfix für Microsoft Visual Studio 2008 Remote Debugger Light (x64) - DEU (KB944899) (x32 Version: 1) ICA (x32 Version: 14.1.0.126) IL Shared Libraries (x32) Inkscape 0.48.4 (x32 Version: 0.48.4) IPM_VS_Pro (x32 Version: 13.0) ISCOM (x32 Version: 14.1.0.126) Java SE Development Kit 7 Update 25 (64-bit) (Version: 1.7.0.250) JavaFX Scene Builder 1.0 (64-bit) (Version: 1.0) Logitech Gaming Software (Version: 8.40.83) Logitech Gaming Software 8.50 (Version: 8.50.281) Logitech SetPoint 6.52 (Version: 6.52.74) LogMeIn Hamachi (x32 Version: 2.2.0.105) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000) Microsoft Help Viewer 1.0 (Version: 1.0.30319) Microsoft Help Viewer 1.0 Language Pack - DEU (Version: 1.0.30319) Microsoft SQL Server 2008 (64-bit) Microsoft SQL Server 2008 Common Files (Version: 10.0.1600.22) Microsoft SQL Server 2008 Management Objects (x32 Version: 10.0.1600.22) Microsoft SQL Server 2008 Management Studio (Version: 10.0.1600.22) Microsoft SQL Server 2008 Policies (x32 Version: 10.0.1600.22) Microsoft SQL Server 2008 R2 (64 Bit) Microsoft SQL Server 2008 R2 Native Client (Version: 10.52.4000.0) Microsoft SQL Server 2008 R2 RsFx Driver (Version: 10.52.4000.0) Microsoft SQL Server 2008 R2-Setup (Deutsch) (Version: 10.52.4000.0) Microsoft SQL Server Browser (x32 Version: 10.52.4000.0) Microsoft SQL Server Compact 3.5 SP1 English (x32 Version: 3.5.5692.0) Microsoft SQL Server Compact 3.5 SP1 Query Tools English (x32 Version: 3.5.5692.0) Microsoft SQL Server Compact 3.5 SP2 DEU (x32 Version: 3.5.8080.0) Microsoft SQL Server Compact 3.5 SP2 x64 DEU (Version: 3.5.8080.0) Microsoft SQL Server VSS Writer (Version: 10.52.4000.0) Microsoft Virtual PC 2007 SP1 (Version: 6.0.192.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2008 Express Edition mit SP1 - DEU (x32) Microsoft Visual C++ 2008 Express Edition with SP1 - DEU (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (x32 Version: 9.0.30729.4974) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual C++ 2010 Express - DEU (x32 Version: 10.0.30319) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (x32 Version: 11.0.51106.1) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106) Microsoft Visual Studio 2008 Remote Debugger Light (x64) - DEU Microsoft Visual Studio 2008 Remote Debugger Light (x64) - DEU (Version: 9.0.30729) Microsoft Visual Studio 2008 Remote Debugger Light (x64) - DEU Service Pack 1 (KB945140) (x32 Version: 1) Microsoft Visual Studio 2010 Express Prerequisites x64 - DEU (Version: 10.0.30319) Microsoft Web Platform Installer 4.6 (Version: 4.0.40719.0) Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for .NET Framework - deu (Version: 3.5.30729) Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for Win32 (Version: 6.1.5295.17011) Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0) Mozilla Firefox 25.0.1 (x86 de) (x32 Version: 25.0.1) Mozilla Maintenance Service (x32 Version: 25.0.1) Mozilla Thunderbird 17.0.8 (x86 de) (x32 Version: 17.0.8) Mp3tag v2.55a (x32 Version: v2.55a) MP4 To MP3 Converter V3.0.4 (x32) MySQL Connector J (x32 Version: 5.1.26) Need for Speed™ Most Wanted (x32) NEF to JPG (x32) Nexus Mod Manager (Version: 0.45.1) NifSkope (remove only) (x32) Notepad++ (x32 Version: 6.3) NVIDIA 3D Vision Controller-Treiber 331.65 (Version: 331.65) NVIDIA 3D Vision Treiber 331.65 (Version: 331.65) NVIDIA GeForce Experience 1.7 (Version: 1.7) NVIDIA Grafiktreiber 331.65 (Version: 331.65) NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4) NVIDIA Install Application (Version: 2.1002.140.952) NVIDIA LED Visualizer 1.0 (Version: 1.0) NVIDIA PhysX (x32 Version: 9.13.0725) NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725) NVIDIA ShadowPlay 9.3.16 (Version: 9.3.16) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3165) NVIDIA Systemsteuerung 331.65 (Version: 331.65) NVIDIA Update 9.3.16 (Version: 9.3.16) NVIDIA Update Components (Version: 9.3.16) NVIDIA Virtual Audio 1.2.9 (Version: 1.2.9) Odin 1.00 (x32) OKI MC351/361/561 Scanner (x32 Version: 1.0.2.0) OpenOffice.org 3.4.1 (x32 Version: 3.41.9593) Origin (x32 Version: 9.1.15.109) Portal (x32) proDAD Mercalli 2.0 (x32 Version: 2.0.92) PunkBuster Services (x32 Version: 0.993) PureHD (x32 Version: 14.1.0.126) Python 2.7.3 (64-bit) (Version: 2.7.3150) QuickTime (x32 Version: 7.74.80.86) Realtek Ethernet Controller Driver (x32 Version: 7.37.1229.2010) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6235) Sandboxie 4.04 (64-bit) (Version: 4.04) ScannerDriver (Version: 1.0.2.0) Service Pack 2 für SQL Server 2008 R2 (KB2630458) (64-bit) (Version: 10.52.4000.0) Setup (x32 Version: 14.1.0.126) Share (x32 Version: 14.1.0.126) Share64 (Version: 14.1.0.126) SHIELD Streaming (Version: 1.6.34) Skype™ 5.7 (x32 Version: 5.7.123) SmartSound Common Data (x32 Version: 1.1.0) SmartSound Quicktracks 5 (x32 Version: 5.1.6) Songbird 2.2.0 (Build 2453) (x32) Sony PC Companion 2.10.181 (x32 Version: 2.10.181) SPORE™ (x32 Version: 1.05.0001) SQL Server 2008 R2 SP2 Common Files (Version: 10.52.4000.0) SQL Server 2008 R2 SP2 Database Engine Services (Version: 10.52.4000.0) SQL Server 2008 R2 SP2 Database Engine Shared (Version: 10.52.4000.0) Sql Server Customer Experience Improvement Program (Version: 10.50.1600.1) SQL Server System CLR Types (x32 Version: 10.0.1600.22) Super Meat Boy (x32) TeamSpeak 3 Client (x32 Version: 3.0.13) TeamViewer 8 (x32 Version: 8.0.22298) TERA (x32 Version: 7) Terraria (x32) The Stanley Parable (x32) The Stanley Parable Demo (x32) Unity Web Player (HKCU Version: ) Unterstützungsdateien für Microsoft SQL Server 2008-Setup (Version: 10.1.2731.0) VC Runtimes MSI (x32 Version: 9.0.21022) VIO (x32 Version: 14.1.0.126) VLC media player 2.0.5 (Version: 2.0.5) VSClassic (x32 Version: 14.1.0.126) VSUltimate (x32 Version: 14.1.0.126) Windows Media Encoder 9 Series (x32 Version: 9.00.2980) Windows Media Encoder 9 Series (x32) WinPcap 4.1.3 (x32 Version: 4.1.0.2980) Wireshark 1.10.3 (64-bit) (x32 Version: 1.10.3) XAMPP (x32 Version: 1.8.3-0) Xeni Online Version 1.0 (x32 Version: 1.0) ==================== Restore Points ========================= 18-06-2013 21:59:38 Windows 7 Service Pack 1 18-06-2013 22:11:39 Windows Update 03-08-2013 16:58:19 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2013-09-28 16:42 - 00000845 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 stubedore.t ==================== Scheduled Tasks (whitelisted) ============= Task: {4F59A5FE-BD69-4CD4-959D-6085D84F252E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {9A81464C-E195-4046-A7F0-3C0CE25E544C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {A67BBB27-22AE-4333-A948-B12BF97B8305} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-03-06] (AVAST Software) Task: {BD43D6F0-2FD2-42E0-BF58-9B452DC1A228} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-13] (Adobe Systems Incorporated) Task: {C6C4D18B-6B4B-4782-9772-CB2052756E55} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {D81E2312-B609-4DF9-8E99-B1B22B7780F9} - System32\Tasks\AdobeAAMUpdater-1.0-Ikaron-PC-Ikaron => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [2013-06-13] (Adobe Systems Incorporated) Task: {F7FB5C5A-A29D-4131-8AE6-AF91F9E00B4F} - System32\Tasks\YourFile DownloaderUpdate => C:\Program Files (x86)\YourFileDownloader\YourFileUpdater.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-08-30 09:01 - 2013-08-30 09:01 - 03358064 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_v_1_1_0_x64.dll 2010-01-02 15:42 - 2010-01-02 15:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2012-06-18 16:24 - 2012-06-18 16:24 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_05.dll 2013-05-21 20:19 - 2013-05-21 20:19 - 00057344 ____N () C:\Users\Ikaron\Desktop\eclipse\plugins\org.eclipse.equinox.launcher.win32.win32.x86_64_1.1.200.v20130521-0416\eclipse_1503.dll 2013-08-19 18:06 - 2013-08-19 18:06 - 00055296 _____ () C:\Users\Ikaron\Desktop\eclipse\configuration\org.eclipse.osgi\bundles\296\1\.cp\os\win32\x86_64\localfile_1_0_0.dll 2013-08-19 18:06 - 2013-08-19 18:06 - 00044032 _____ () C:\Users\Ikaron\Desktop\eclipse\configuration\org.eclipse.osgi\bundles\299\1\.cp\jWinHttp-1.0.0.dll 2013-11-28 22:04 - 2013-11-28 19:20 - 02241536 _____ () C:\Program Files\AVAST Software\Avast\defs\13112801\algo.dll 2013-11-06 00:49 - 2012-04-30 10:57 - 00039936 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\TMonitorAPI.dll 2013-11-06 00:49 - 2013-09-13 10:02 - 00208896 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\MExplorer.dll 2013-08-23 20:01 - 2013-08-23 20:01 - 25100288 _____ () C:\Users\Ikaron\AppData\Roaming\Dropbox\bin\libcef.dll 2013-09-03 14:25 - 2013-09-03 14:25 - 32726528 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\libcef.dll 2013-03-13 12:42 - 2013-06-05 13:21 - 00071560 _____ () C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\zlib1.dll 2013-08-30 09:00 - 2013-08-30 09:00 - 00381808 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CCInvokeAAM.dll 2013-09-18 15:33 - 2013-11-16 13:42 - 03363952 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2013-10-13 09:27 - 2013-10-13 09:27 - 16233864 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll 2008-02-25 10:27 - 2008-02-25 10:27 - 00372736 _____ () H:\Fiesta Online\Mss32.dll 2008-02-26 00:58 - 2008-02-26 00:58 - 00138752 _____ () H:\Fiesta Online\miles\mssmp3.asi 2008-02-26 00:58 - 2008-02-26 00:58 - 00214528 _____ () H:\Fiesta Online\miles\mssvoice.asi 2008-02-26 00:58 - 2008-02-26 00:58 - 00100352 _____ () H:\Fiesta Online\miles\mssa3d.m3d 2008-02-26 00:58 - 2008-02-26 00:58 - 00083456 _____ () H:\Fiesta Online\miles\mssds3d.m3d 2008-02-26 00:58 - 2008-02-26 00:58 - 00092160 _____ () H:\Fiesta Online\miles\mssdx7.m3d 2008-02-26 00:58 - 2008-02-26 00:58 - 00118272 _____ () H:\Fiesta Online\miles\msseax.m3d 2008-02-26 00:58 - 2008-02-26 00:58 - 00372224 _____ () H:\Fiesta Online\miles\mssrsx.m3d 2008-02-26 00:58 - 2008-02-26 00:58 - 00079360 _____ () H:\Fiesta Online\miles\msssoft.m3d 2008-02-26 00:58 - 2008-02-26 00:58 - 00111104 _____ () H:\Fiesta Online\miles\mssdsp.flt ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: PCI-Kommunikationscontroller (einfach) Description: PCI-Kommunikationscontroller (einfach) Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (11/23/2013 11:12:54 PM) (Source: MsiInstaller) (User: Ikaron-PC) Description: Product: JavaFX Scene Builder 1.0 (64-bit) -- Error 2203. Database: C:\Windows\Installer\235b6b1.ipi. Cannot open database file. System error -2147286928. Error: (11/23/2013 11:12:49 PM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\msiexec.exe /V; Beschreibung = Removed JavaFX Scene Builder 1.0 (64-bit).; Fehler = 0x80070070). Error: (11/23/2013 11:12:44 PM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\msiexec.exe /V; Beschreibung = Removed JavaFX Scene Builder 1.0 (64-bit).; Fehler = 0x80070070). Error: (11/22/2013 05:13:41 PM) (Source: System Restore) (User: ) Description: Der geplante Wiederherstellungspunkt konnte nicht erstellt werden. Zusätzliche Informationen: (0x8004231f). Error: (11/22/2013 05:13:41 PM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; Beschreibung = Geplanter Prüfpunkt; Fehler = 0x8004231f). Error: (11/21/2013 03:00:39 AM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\servicing\TrustedInstaller.exe; Beschreibung = Windows Modules Installer; Fehler = 0x8004231f). Error: (11/21/2013 03:00:23 AM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\svchost.exe -k netsvcs; Beschreibung = Windows Update; Fehler = 0x8004231f). Error: (11/14/2013 05:51:13 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: NANOFS.exe, Version: 1.0.0.0, Zeitstempel: 0x52768551 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18229, Zeitstempel: 0x51fb1116 Ausnahmecode: 0xe0434352 Fehleroffset: 0x0000c41f ID des fehlerhaften Prozesses: 0x1854 Startzeit der fehlerhaften Anwendung: 0xNANOFS.exe0 Pfad der fehlerhaften Anwendung: NANOFS.exe1 Pfad des fehlerhaften Moduls: NANOFS.exe2 Berichtskennung: NANOFS.exe3 Error: (11/14/2013 05:51:13 PM) (Source: .NET Runtime) (User: ) Description: Anwendung: NANOFS.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.Threading.ThreadStateException Stapel: bei System.Threading.Thread.StartupSetApartmentStateInternal() bei System.Threading.Thread.Start(System.Threading.StackCrawlMark ByRef) bei System.Threading.Thread.Start(System.Object) bei ..(System.Object) bei System.Threading.ThreadHelper.ThreadStart_Context(System.Object) bei System.Threading.ExecutionContext.runTryCode(System.Object) bei System.Runtime.CompilerServices.RuntimeHelpers.ExecuteCodeWithGuaranteedCleanup(TryCode, CleanupCode, System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) bei System.Threading.ThreadHelper.ThreadStart(System.Object) Error: (11/07/2013 11:32:00 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: LGS-8.50.281.exe, Version: 0.0.0.0, Zeitstempel: 0x4aa7ac55 Name des fehlerhaften Moduls: LGS-8.50.281.exe, Version: 0.0.0.0, Zeitstempel: 0x4aa7ac55 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00005a24 ID des fehlerhaften Prozesses: 0xee8 Startzeit der fehlerhaften Anwendung: 0xLGS-8.50.281.exe0 Pfad der fehlerhaften Anwendung: LGS-8.50.281.exe1 Pfad des fehlerhaften Moduls: LGS-8.50.281.exe2 Berichtskennung: LGS-8.50.281.exe3 System errors: ============= Error: (11/29/2013 04:23:51 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk3\DR3. Error: (11/29/2013 04:23:51 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk3\DR3. Error: (11/29/2013 04:23:50 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk3\DR3. Error: (11/29/2013 04:23:50 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk3\DR3. Error: (11/29/2013 04:23:48 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk3\DR3. Error: (11/29/2013 04:23:45 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk3\DR3. Error: (11/29/2013 04:23:44 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk3\DR3. Error: (11/29/2013 04:23:44 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk3\DR3. Error: (11/29/2013 04:23:43 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk3\DR3. Error: (11/29/2013 04:23:43 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk3\DR3. Microsoft Office Sessions: ========================= Error: (11/23/2013 11:12:54 PM) (Source: MsiInstaller)(User: Ikaron-PC) Description: Product: JavaFX Scene Builder 1.0 (64-bit) -- Error 2203. Database: C:\Windows\Installer\235b6b1.ipi. Cannot open database file. System error -2147286928.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (11/23/2013 11:12:49 PM) (Source: System Restore)(User: ) Description: C:\Windows\system32\msiexec.exe /VRemoved JavaFX Scene Builder 1.0 (64-bit).0x80070070 Error: (11/23/2013 11:12:44 PM) (Source: System Restore)(User: ) Description: C:\Windows\system32\msiexec.exe /VRemoved JavaFX Scene Builder 1.0 (64-bit).0x80070070 Error: (11/22/2013 05:13:41 PM) (Source: System Restore)(User: ) Description: 0x8004231f Error: (11/22/2013 05:13:41 PM) (Source: System Restore)(User: ) Description: C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreationGeplanter Prüfpunkt0x8004231f Error: (11/21/2013 03:00:39 AM) (Source: System Restore)(User: ) Description: C:\Windows\servicing\TrustedInstaller.exeWindows Modules Installer0x8004231f Error: (11/21/2013 03:00:23 AM) (Source: System Restore)(User: ) Description: C:\Windows\system32\svchost.exe -k netsvcsWindows Update0x8004231f Error: (11/14/2013 05:51:13 PM) (Source: Application Error)(User: ) Description: NANOFS.exe1.0.0.052768551KERNELBASE.dll6.1.7601.1822951fb1116e04343520000c41f185401cee159a3b5bd8dH:\Xeni Online Patched\NANOFS.exeC:\Windows\syswow64\KERNELBASE.dllf7cea0a4-4d4c-11e3-8be4-f46d04535058 Error: (11/14/2013 05:51:13 PM) (Source: .NET Runtime)(User: ) Description: Anwendung: NANOFS.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.Threading.ThreadStateException Stapel: bei System.Threading.Thread.StartupSetApartmentStateInternal() bei System.Threading.Thread.Start(System.Threading.StackCrawlMark ByRef) bei System.Threading.Thread.Start(System.Object) bei ..(System.Object) bei System.Threading.ThreadHelper.ThreadStart_Context(System.Object) bei System.Threading.ExecutionContext.runTryCode(System.Object) bei System.Runtime.CompilerServices.RuntimeHelpers.ExecuteCodeWithGuaranteedCleanup(TryCode, CleanupCode, System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) bei System.Threading.ThreadHelper.ThreadStart(System.Object) Error: (11/07/2013 11:32:00 PM) (Source: Application Error)(User: ) Description: LGS-8.50.281.exe0.0.0.04aa7ac55LGS-8.50.281.exe0.0.0.04aa7ac55c000000500005a24ee801cedc0925cf8d5fC:\Users\Ikaron\AppData\Local\Temp\LGS-8.50.281\LGS-8.50.281.exeC:\Users\Ikaron\AppData\Local\Temp\LGS-8.50.281\LGS-8.50.281.exe6a4ec6dc-47fc-11e3-ac58-f46d04535058 CodeIntegrity Errors: =================================== Date: 2013-10-05 17:11:43.587 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\amd64_microsoft-windows-appid_31bf3856ad364e35_6.1.7600.21490_none_b3bab697e502a956\appidapi.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-10-05 17:11:43.547 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\amd64_microsoft-windows-appid_31bf3856ad364e35_6.1.7600.21490_none_b3bab697e502a956\appidapi.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 51% Total physical RAM: 8168.87 MB Available physical RAM: 3980.83 MB Total Pagefile: 16335.91 MB Available Pagefile: 11824.65 MB Total Virtual: 8192 MB Available Virtual: 8191.79 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:37.05 GB) (Free:0.22 GB) NTFS Drive d: (PRINZESSIN_MONONOKE_SE_D1) (CDROM) (Total:7.2 GB) (Free:0 GB) UDF Drive e: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive f: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive g: () (Fixed) (Total:238.37 GB) (Free:53.96 GB) NTFS Drive h: (HDD 2) (Fixed) (Total:931.41 GB) (Free:225.77 GB) NTFS Drive i: (USB DISK) (Removable) (Total:7.2 GB) (Free:3.85 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 37 GB) (Disk ID: 331F429F) Partition: GPT Partition Type ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 45FD45FC) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 238 GB) (Disk ID: 8EE7306E) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=238 GB) - (Type=07 NTFS) ======================================================== Disk: 3 (MBR Code: Windows XP) (Size: 7 GB) (Disk ID: C3072E18) Partition 1: (Not Active) - (Size=7 GB) - (Type=0C) ==================== End Of Log ============================ |
30.11.2013, 16:59 | #4 | |
/// the machine /// TB-Ausbilder | USBStick: Korruption von Dateien und neu aufgetauchte Dateien (unlöschbar/korrupt, 15GB) auf 8GB Stick Stick anstecken, dran lassen. Panda USB Vaccine - Download - Filepony Damit die Sticks absichern. Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
30.11.2013, 23:49 | #5 |
| USBStick: Korruption von Dateien und neu aufgetauchte Dateien (unlöschbar/korrupt, 15GB) auf 8GB StickCode:
ATTFilter ComboFix 13-11-27.01 - Ikaron 30.11.2013 23:43:01.1.8 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.8169.5134 [GMT 1:00] ausgeführt von:: c:\users\Ikaron\Desktop\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Neuer Wiederherstellungspunkt wurde erstellt . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . C:\test.exe c:\users\Ikaron\122.txt c:\users\Ikaron\125.txt c:\windows\SysWow64\Dump c:\windows\SysWow64\FlashPlayerApp.exe c:\windows\SysWow64\frapsvid.dll H:\install.exe . . ((((((((((((((((((((((( Dateien erstellt von 2013-10-28 bis 2013-11-30 )))))))))))))))))))))))))))))) . . 2013-11-29 18:49 . 2013-11-29 18:49 -------- d-----w- C:\FRST 2013-11-29 12:53 . 2013-11-08 03:12 10285968 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2D4FEC41-F8FC-4605-A665-C49C89861764}\mpengine.dll 2013-11-20 19:38 . 2013-11-20 19:38 -------- d-----w- c:\program files (x86)\Abyssmedia 2013-11-20 19:04 . 2013-11-20 19:04 -------- d-----w- c:\program files (x86)\All Video Sound Extractor 2013-11-14 16:48 . 2013-11-14 16:48 -------- d-----w- c:\users\Ikaron\AppData\Roaming\FiestaOnline 2013-11-14 16:08 . 2013-11-14 16:08 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi 2013-11-10 14:05 . 2013-11-10 14:05 -------- d-----w- c:\users\Ikaron\AppData\Local\Songbird2 2013-11-07 22:31 . 2013-11-07 22:31 -------- d-----w- c:\program files\Logitech Gaming Software 2013-11-06 18:56 . 2013-11-06 19:00 -------- d-----w- c:\users\Ikaron\AppData\Local\Thunderbird 2013-11-05 23:49 . 2013-11-05 23:49 -------- d-----w- c:\programdata\Sony 2013-11-05 23:49 . 2013-11-05 23:49 -------- d-----w- c:\program files (x86)\Sony 2013-11-05 14:57 . 2013-11-05 14:57 -------- d-----w- c:\users\Ikaron\AppData\Local\LogMeIn 2013-11-02 13:45 . 2013-11-02 13:45 -------- d-----w- c:\users\Ikaron\AppData\Roaming\Wireshark 2013-11-02 13:40 . 2013-11-02 13:40 -------- d-----w- c:\program files (x86)\WinPcap . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-11-21 02:00 . 2013-11-21 02:00 44032 ----a-w- c:\windows\apppatch\acwow64.dll 2013-11-14 16:12 . 2013-04-19 19:14 82896128 ----a-w- c:\windows\system32\MRT.exe 2013-11-11 04:50 . 2013-03-08 20:32 267936 ------w- c:\windows\system32\MpSigStub.exe 2013-11-07 22:31 . 2013-03-18 17:37 18960 ----a-w- c:\windows\system32\drivers\LNonPnP.sys 2013-10-23 10:30 . 2013-10-29 22:33 9524088 ----a-w- c:\windows\SysWow64\nvcuda.dll 2013-10-23 10:30 . 2013-10-29 22:33 9480328 ----a-w- c:\windows\SysWow64\nvopencl.dll 2013-10-23 10:30 . 2013-10-29 22:33 696096 ----a-w- c:\windows\system32\NvFBC64.dll 2013-10-23 10:30 . 2013-10-29 22:33 655136 ----a-w- c:\windows\system32\NvIFR64.dll 2013-10-23 10:30 . 2013-10-29 22:33 599840 ----a-w- c:\windows\SysWow64\NvFBC.dll 2013-10-23 10:30 . 2013-10-29 22:33 560416 ----a-w- c:\windows\SysWow64\NvIFR.dll 2013-10-23 10:30 . 2013-10-29 22:33 479520 ----a-w- c:\windows\system32\nvEncodeAPI64.dll 2013-10-23 10:30 . 2013-10-29 22:33 405280 ----a-w- c:\windows\SysWow64\nvEncodeAPI.dll 2013-10-23 10:30 . 2013-10-29 22:33 317472 ----a-w- c:\windows\system32\nvoglshim64.dll 2013-10-23 10:30 . 2013-10-29 22:33 3131680 ----a-w- c:\windows\system32\nvcuvid.dll 2013-10-23 10:30 . 2013-10-29 22:33 3124512 ----a-w- c:\windows\system32\nvcuvenc.dll 2013-10-23 10:30 . 2013-10-29 22:33 30344480 ----a-w- c:\windows\system32\nvoglv64.dll 2013-10-23 10:30 . 2013-10-29 22:33 2946848 ----a-w- c:\windows\SysWow64\nvcuvid.dll 2013-10-23 10:30 . 2013-10-29 22:33 2747168 ----a-w- c:\windows\SysWow64\nvcuvenc.dll 2013-10-23 10:30 . 2013-10-29 22:33 266984 ----a-w- c:\windows\SysWow64\nvoglshim32.dll 2013-10-23 10:30 . 2013-10-29 22:33 25257248 ----a-w- c:\windows\system32\nvcompiler.dll 2013-10-23 10:30 . 2013-10-29 22:33 22933792 ----a-w- c:\windows\SysWow64\nvoglv32.dll 2013-10-23 10:30 . 2013-10-29 22:33 1884448 ----a-w- c:\windows\system32\nvdispco6433165.dll 2013-10-23 10:30 . 2013-10-29 22:33 18286416 ----a-w- c:\windows\system32\nvwgf2umx.dll 2013-10-23 10:30 . 2013-10-29 22:33 18199872 ----a-w- c:\windows\system32\nvd3dumx.dll 2013-10-23 10:30 . 2013-10-29 22:33 17560352 ----a-w- c:\windows\SysWow64\nvcompiler.dll 2013-10-23 10:30 . 2013-10-29 22:33 168616 ----a-w- c:\windows\system32\nvinitx.dll 2013-10-23 10:30 . 2013-10-29 22:33 15855568 ----a-w- c:\windows\SysWow64\nvwgf2um.dll 2013-10-23 10:30 . 2013-10-29 22:33 15212336 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2013-10-23 10:30 . 2013-10-29 22:33 1511712 ----a-w- c:\windows\system32\nvdispgenco6433165.dll 2013-10-23 10:30 . 2013-10-29 22:33 141336 ----a-w- c:\windows\SysWow64\nvinit.dll 2013-10-23 10:30 . 2013-10-29 22:33 12572960 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys 2013-10-23 10:30 . 2013-10-29 22:33 1241376 ----a-w- c:\windows\SysWow64\nvumdshim.dll 2013-10-23 10:30 . 2013-10-29 22:33 11426568 ----a-w- c:\windows\system32\nvcuda.dll 2013-10-23 10:30 . 2013-10-29 22:33 11374520 ----a-w- c:\windows\system32\nvopencl.dll 2013-10-23 10:30 . 2013-10-02 23:23 3067560 ----a-w- c:\windows\system32\nvapi64.dll 2013-10-23 10:30 . 2013-03-08 21:27 61216 ----a-w- c:\windows\system32\OpenCL.dll 2013-10-23 10:30 . 2013-03-08 21:27 53024 ----a-w- c:\windows\SysWow64\OpenCL.dll 2013-10-23 10:30 . 2013-03-08 21:27 2695200 ----a-w- c:\windows\SysWow64\nvapi.dll 2013-10-23 10:30 . 2013-03-08 21:27 1435504 ----a-w- c:\windows\system32\nvumdshimx.dll 2013-10-23 08:20 . 2013-10-02 23:25 6669600 ----a-w- c:\windows\system32\nvcpl.dll 2013-10-23 08:20 . 2013-10-02 23:25 3489568 ----a-w- c:\windows\system32\nvsvc64.dll 2013-10-23 08:20 . 2013-10-02 23:25 922912 ----a-w- c:\windows\system32\nvvsvc.exe 2013-10-23 08:20 . 2013-10-02 23:25 63776 ----a-w- c:\windows\system32\nvshext.dll 2013-10-23 08:20 . 2013-10-02 23:25 2559776 ----a-w- c:\windows\system32\nvsvcr.dll 2013-10-23 08:20 . 2013-10-02 23:25 219424 ----a-w- c:\windows\system32\nvmctray.dll 2013-10-23 08:20 . 2013-10-02 23:25 3426956 ----a-w- c:\windows\system32\nvcoproc.bin 2013-10-23 02:02 . 2013-10-23 02:02 589600 ----a-w- c:\windows\SysWow64\nvStreaming.exe 2013-10-20 10:57 . 2013-05-15 14:22 290184 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2013-10-20 10:57 . 2013-05-12 22:22 290184 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2013-10-20 10:57 . 2013-05-12 22:22 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2013-10-18 01:36 . 2013-10-29 22:13 1063200 ----a-w- c:\windows\system32\nvspcap64.dll 2013-10-18 01:36 . 2013-10-29 22:13 955168 ----a-w- c:\windows\SysWow64\nvspcap.dll 2013-10-13 08:27 . 2013-03-08 20:14 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-10-05 15:16 . 2013-10-05 15:16 164880 ---ha-w- c:\users\Besuch\AppData\Roaming\Microsoft\Virtual PC\VPCKeyboard.dll 2013-10-02 21:52 . 2013-05-12 22:22 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2013-09-28 10:30 . 2013-04-06 14:41 164880 ---ha-w- c:\users\Ikaron\AppData\Roaming\Microsoft\Virtual PC\VPCKeyboard.dll 2013-09-27 23:01 . 2013-10-29 22:12 39200 ----a-w- c:\windows\system32\drivers\nvvad64v.sys 2013-09-27 23:01 . 2013-10-29 22:12 28960 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll 2013-09-27 23:01 . 2013-10-02 23:23 29984 ----a-w- c:\windows\system32\nvaudcap64v.dll 2013-09-27 08:57 . 2013-10-02 23:14 1884448 ----a-w- c:\windows\system32\nvdispco6433140.dll 2013-09-27 08:57 . 2013-10-02 23:14 1511712 ----a-w- c:\windows\system32\nvdispgenco6433140.dll 2013-09-04 22:09 . 2013-09-04 22:09 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll 2013-09-04 12:12 . 2013-10-09 13:45 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys 2013-09-04 12:11 . 2013-10-09 13:45 325120 ----a-w- c:\windows\system32\drivers\usbport.sys 2013-09-04 12:11 . 2013-10-09 13:45 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys 2013-09-04 12:11 . 2013-10-09 13:45 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys 2013-09-04 12:11 . 2013-10-09 13:45 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys 2013-09-04 12:11 . 2013-10-09 13:45 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys 2013-09-04 12:11 . 2013-10-09 13:45 7808 ----a-w- c:\windows\system32\drivers\usbd.sys . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-11 02:09 131248 ----a-w- c:\users\Ikaron\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-11 02:09 131248 ----a-w- c:\users\Ikaron\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-11 02:09 131248 ----a-w- c:\users\Ikaron\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-11 02:09 131248 ----a-w- c:\users\Ikaron\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2011-11-09 17049736] "SandboxieControl"="c:\program files\Sandboxie\SbieCtrl.exe" [2013-07-08 759384] "Sony PC Companion"="c:\program files (x86)\Sony\Sony PC Companion\PCCompanion.exe" [2013-05-29 449248] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-03-06 4767304] "Adobe Creative Cloud"="c:\program files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" [2013-09-03 2237328] "LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2013-11-11 2349392] "20131121"="c:\program files\AVAST Software\Avast\setup\emupdate\160e52c5-bc23-4a17-8bed-b806743b10e5.exe" [2013-11-23 180184] . c:\users\Besuch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ OpenOffice.org 3.4.1.lnk - c:\program files (x86)\OpenOffice.org 3\program\quickstart.exe [2012-8-13 1199104] . c:\users\Ikaron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Dropbox.lnk - c:\users\Ikaron\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2013-11-1 29769432] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R3 AccountLogDB_Server;_AccountLog DB Server;h:\pserver\Odin\AccountLog\AccountLog Release.exe;h:\pserver\Odin\AccountLog\AccountLog Release.exe [x] R3 AESIRGAMES_OdinRestServer;_OdinRestServer;h:\pserver\Odin\REST\OdinRestServer.exe;h:\pserver\Odin\REST\OdinRestServer.exe [x] R3 ASPI;Advanced SCSI Programming Interface Driver;c:\windows\System32\DRIVERS\ASPI32.sys;c:\windows\SYSNATIVE\DRIVERS\ASPI32.sys [x] R3 aswVmm;aswVmm; [x] R3 Character_DB_Server0;_Character DB Server0;h:\pserver\Odin\Character\Character Release.exe;h:\pserver\Odin\Character\Character Release.exe [x] R3 GameLog_DB_Server0;_GameLog DB Server0;h:\pserver\Odin\GameLog\GameLog Release.exe;h:\pserver\Odin\GameLog\GameLog Release.exe [x] R3 Login_Server;_Login Server;h:\pserver\Odin\Login\3LoginServer2.exe;h:\pserver\Odin\Login\3LoginServer2.exe [x] R3 Manager_Server0;_Manager Server0;h:\pserver\Odin\World00\4WorldManagerServer2.exe;h:\pserver\Odin\World00\4WorldManagerServer2.exe [x] R3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys;c:\windows\SYSNATIVE\drivers\npf.sys [x] R3 Sony PC Companion;Sony PC Companion;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 Zone_Server00;_Zone Server00;h:\pserver\Odin\Zone00\5ZoneServer2.exe;h:\pserver\Odin\Zone00\5ZoneServer2.exe [x] R3 Zone_Server01;_Zone Server01;h:\pserver\Odin\Zone01\5ZoneServer2.exe;h:\pserver\Odin\Zone01\5ZoneServer2.exe [x] R3 Zone_Server02;_Zone Server02;h:\pserver\Odin\Zone02\5ZoneServer2.exe;h:\pserver\Odin\Zone02\5ZoneServer2.exe [x] R3 Zone_Server03;_Zone Server03;h:\pserver\Odin\Zone03\5ZoneServer2.exe;h:\pserver\Odin\Zone03\5ZoneServer2.exe [x] R4 MSSQLServerADHelper100;SQL Server Hilfsdienst für Active Directory;c:\program files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE;c:\program files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [x] R4 RsFx0153;RsFx0153 Driver;c:\windows\system32\DRIVERS\RsFx0153.sys;c:\windows\SYSNATIVE\DRIVERS\RsFx0153.sys [x] R4 SQLAgent$SQLEXPRESS;SQL Server-Agent (SQLEXPRESS);c:\program files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE;c:\program files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [x] S0 aswRvrt;aswRvrt; [x] S1 aswSnx;aswSnx; [x] S1 aswSP;aswSP; [x] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [x] S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 TeamViewer8;TeamViewer 8;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [x] S3 LADF_CaptureOnly;LADF Capture Filter Driver;c:\windows\system32\DRIVERS\ladfGSCamd64.sys;c:\windows\SYSNATIVE\DRIVERS\ladfGSCamd64.sys [x] S3 LADF_RenderOnly;LADF Render Filter Driver;c:\windows\system32\DRIVERS\ladfGSRamd64.sys;c:\windows\SYSNATIVE\DRIVERS\ladfGSRamd64.sys [x] S3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;c:\windows\system32\drivers\LGBusEnum.sys;c:\windows\SYSNATIVE\drivers\LGBusEnum.sys [x] S3 LGSHidFilt;Logitech Gaming KMDF HID Filter Driver;c:\windows\system32\DRIVERS\LGSHidFilt.Sys;c:\windows\SYSNATIVE\DRIVERS\LGSHidFilt.Sys [x] S3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;c:\windows\system32\drivers\LGVirHid.sys;c:\windows\SYSNATIVE\drivers\LGVirHid.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] . . Inhalt des "geplante Tasks" Ordners . 2013-11-30 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-08 08:27] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ AccExtIco1] @="{AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}" [HKEY_CLASSES_ROOT\CLSID\{AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}] 2013-08-30 08:01 3358064 ----a-w- c:\program files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_v_1_1_0_x64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ AccExtIco2] @="{853B7E05-C47D-4985-909A-D0DC5C6D7303}" [HKEY_CLASSES_ROOT\CLSID\{853B7E05-C47D-4985-909A-D0DC5C6D7303}] 2013-08-30 08:01 3358064 ----a-w- c:\program files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_v_1_1_0_x64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ AccExtIco3] @="{42D38F2E-98E9-4382-B546-E24E4D6D04BB}" [HKEY_CLASSES_ROOT\CLSID\{42D38F2E-98E9-4382-B546-E24E4D6D04BB}] 2013-08-30 08:01 3358064 ----a-w- c:\program files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_v_1_1_0_x64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2013-03-06 22:32 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-11 02:09 164016 ----a-w- c:\users\Ikaron\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-11 02:09 164016 ----a-w- c:\users\Ikaron\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-11 02:09 164016 ----a-w- c:\users\Ikaron\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-11 02:09 164016 ----a-w- c:\users\Ikaron\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-11-02 11545192] "Launch LCore"="c:\program files\Logitech Gaming Software\LCore.exe" [2013-08-01 8290584] "Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-10-18 1028384] "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2013-06-13 472984] "ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2013-10-18 1063200] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm IE: Download all links with IDM - c:\users\Ikaron\AppData\Local\Temp\7zOB064.tmp\IEGetAll.htm IE: Download with IDM - c:\users\Ikaron\AppData\Local\Temp\7zOB064.tmp\IEExt.htm IE: {{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - FF - ProfilePath - c:\users\Ikaron\AppData\Roaming\Mozilla\Firefox\Profiles\gx4h6efm.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.de/ FF - prefs.js: network.proxy.http - www-proxy.t-online.de FF - prefs.js: network.proxy.http_port - 80 FF - prefs.js: network.proxy.type - 0 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe HKLM_Wow6432Node-ActiveSetup-{8A69D345-D564-463c-AFF1-A69D9E530F96} - c:\program files (x86)\Google\Chrome\Application\28.0.1500.95\Installer\chrmstp.exe BHO-{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - (no file) HKLM-Run-EvtMgr6 - c:\program files\Logitech\SetPointP\SetPoint.exe AddRemove-7-Zip - c:\program files (x86)\7-Zip\Uninstall.exe AddRemove-ASIO4ALL - c:\program files (x86)\ASIO4ALL v2\uninstall.exe AddRemove-Battlelog Web Plugins - c:\program files (x86)\Battlelog Web Plugins\uninstall.exe AddRemove-Bochs 2.6 - c:\users\Ikaron\Desktop\OS\bochs\Uninstall.exe AddRemove-Fraps - c:\fraps\uninstall.exe AddRemove-Inkscape - c:\program files (x86)\Inkscape\Uninstall.exe AddRemove-Mp3tag - c:\program files (x86)\Mp3tag\Mp3tagUninstall.EXE AddRemove-xampp - c:\xampp\uninstall.exe AddRemove-{13D87B39-2A3B-4675-A0D9-B8B01EA2F8E3}_is1 - c:\program files (x86)\NEF to JPG\unins000.exe AddRemove-Amazon MP3-Downloader - c:\users\Ikaron\AppData\Local\Program Files\Amazon\MP3 Downloader\Uninstall.exe AddRemove-UnityWebPlayer - c:\users\Ikaron\AppData\Local\Unity\WebPlayer\Uninstall.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-749348781-2292475987-2764822233-1000\Software\SecuROM\License information*] "datasecu"=hex:97,64,34,53,6c,0f,a9,cd,1f,a0,36,0d,76,fd,34,98,f4,2a,ad,2f,14, 0e,98,98,cc,1d,0e,90,f8,f5,74,dd,f0,90,1c,67,4f,0b,a0,90,3b,82,a4,49,82,16,\ "rkeysecu"=hex:cb,bd,f2,61,5a,4e,c6,95,f2,29,8b,82,ba,6b,3d,44 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2013-11-30 23:48:07 ComboFix-quarantined-files.txt 2013-11-30 22:48 ComboFix2.txt 2012-11-20 21:26 . Vor Suchlauf: 134.688.768 Bytes frei Nach Suchlauf: 891.613.184 Bytes frei . - - End Of File - - FCF1CE682C05825435FBD2B172760EA9 5FB38429D5D77768867C76DCBDB35194 Code:
ATTFilter <tags>Editor</tags> <tags>org.eclipse.jdt.ui.CompilationUnitEditor</tags> <tags>removeOnHide</tags> <menus xsi:type="menu:PopupMenu" xmi:id="_78smlDjeEeOl7c84qMCIKQ" elementId="#CompilationUnitEditorContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitEditorContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.EditorContext</tags> <tags>popup:#AbstractTextEditorContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smlTjeEeOl7c84qMCIKQ" elementId="#CompilationUnitRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitRulerContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.RulerContext</tags> <tags>popup:#AbstractTextEditorRulerContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smljjeEeOl7c84qMCIKQ" elementId="#OverviewRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#OverviewRulerContext</tags> </menus> </children> <children xsi:type="basic:Part" xmi:id="_78smlzjeEeOl7c84qMCIKQ" elementId="org.eclipse.e4.ui.compatibility.editor" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.CompatibilityEditor" label="World.java" iconURI="platform:/plugin/org.eclipse.jdt.ui/icons/full/obj16/jcu_obj.gif" tooltip="Game/src/com/ikaron/game/management/World.java" closeable="true"> <persistedState key="memento" value="<?xml version="1.0" encoding="UTF-8"?> <editor id="org.eclipse.jdt.ui.CompilationUnitEditor"> <input factoryID="org.eclipse.ui.part.FileEditorInputFactory" path="/Game/src/com/ikaron/game/management/World.java"/> <editorState selectionHorizontalPixel="0" selectionLength="0" selectionOffset="0" selectionTopPixel="0"/> </editor>"/> <tags>Editor</tags> <tags>org.eclipse.jdt.ui.CompilationUnitEditor</tags> <tags>removeOnHide</tags> <menus xsi:type="menu:PopupMenu" xmi:id="_78smmDjeEeOl7c84qMCIKQ" elementId="#CompilationUnitEditorContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitEditorContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.EditorContext</tags> <tags>popup:#AbstractTextEditorContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smmTjeEeOl7c84qMCIKQ" elementId="#CompilationUnitRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitRulerContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.RulerContext</tags> <tags>popup:#AbstractTextEditorRulerContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smmjjeEeOl7c84qMCIKQ" elementId="#OverviewRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#OverviewRulerContext</tags> </menus> </children> <children xsi:type="basic:Part" xmi:id="_78smmzjeEeOl7c84qMCIKQ" elementId="org.eclipse.e4.ui.compatibility.editor" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.CompatibilityEditor" label="Menu.java" iconURI="platform:/plugin/org.eclipse.jdt.ui/icons/full/obj16/jcu_obj.gif" tooltip="Game/src/com/ikaron/menu/Menu.java" closeable="true"> <persistedState key="memento" value="<?xml version="1.0" encoding="UTF-8"?> <editor id="org.eclipse.jdt.ui.CompilationUnitEditor"> <input factoryID="org.eclipse.ui.part.FileEditorInputFactory" path="/Game/src/com/ikaron/menu/Menu.java"/> <editorState selectionHorizontalPixel="0" selectionLength="0" selectionOffset="439" selectionTopPixel="0"/> </editor>"/> <tags>Editor</tags> <tags>org.eclipse.jdt.ui.CompilationUnitEditor</tags> <tags>removeOnHide</tags> <menus xsi:type="menu:PopupMenu" xmi:id="_78smnDjeEeOl7c84qMCIKQ" elementId="#CompilationUnitEditorContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitEditorContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.EditorContext</tags> <tags>popup:#AbstractTextEditorContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smnTjeEeOl7c84qMCIKQ" elementId="#CompilationUnitRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#Compilatio |0|0|0|SLoader.java" closeable="true"> <persistedState key="memento" value="<?xml version="1.0" encoding="UTF-8"?> <editor id="org.eclipse.jdt.ui.CompilationUnitEditor"> <input factoryID="org.eclipse.ui.part.FileEditorInputFactory" path="/Game/src/com/ikaron/data/AnimationLoader.java"/> <editorState selectionHorizontalPixel="0" selectionLength="0" selectionOffset="117" selectionTopPixel="0"/> </editor>"/> <tags>Editor</tags> <tags>org.eclipse.jdt.ui.CompilationUnitEditor</tags> <tags>removeOnHide</tags> <menus xsi:type="menu:PopupMenu" xmi:id="_78smrzjeEeOl7c84qMCIKQ" elementId="#CompilationUnitEditorContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitEditorContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.EditorContext</tags> <tags>popup:#AbstractTextEditorContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smsDjeEeOl7c84qMCIKQ" elementId="#CompilationUnitRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitRulerContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.RulerContext</tags> <tags>popup:#AbstractTextEditorRulerContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smsTjeEeOl7c84qMCIKQ" elementId="#OverviewRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#OverviewRulerContext</tags> </menus> </children> <children xsi:type="basic:Part" xmi:id="_78smsjjeEeOl7c84qMCIKQ" elementId="org.eclipse.e4.ui.compatibility.editor" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.CompatibilityEditor" label="Animation.java" iconURI="platform:/plugin/org.eclipse.jdt.ui/icons/full/obj16/jcu_obj.gif" tooltip="Game/src/com/ikaron/data/Animation.java" closeable="true"> <persistedState key="memento" value="<?xml version="1.0" encoding="UTF-8"?> <editor id="org.eclipse.jdt.ui.CompilationUnitEditor"> <input factoryID="org.eclipse.ui.part.FileEditorInputFactory" path="/Game/src/com/ikaron/data/Animation.java"/> <editorState selectionHorizontalPixel="0" selectionLength="0" selectionOffset="641" selectionTopPixel="650"/> </editor>"/> <tags>Editor</tags> <tags>org.eclipse.jdt.ui.CompilationUnitEditor</tags> <tags>removeOnHide</tags> <menus xsi:type="menu:PopupMenu" xmi:id="_78smszjeEeOl7c84qMCIKQ" elementId="#CompilationUnitEditorContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitEditorContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.EditorContext</tags> <tags>popup:#AbstractTextEditorContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smtDjeEeOl7c84qMCIKQ" elementId="#CompilationUnitRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitRulerContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.RulerContext</tags> <tags>popup:#AbstractTextEditorRulerContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smtTjeEeOl7c84qMCIKQ" elementId="#OverviewRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#OverviewRulerContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smtjjeEeOl7c84qMCIKQ" elementId="#CompilationUnitEditorContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitEditorContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.EditorContext</tags> <tags>popup:#AbstractTextEditorContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smtzjeEeOl7c84qMCIKQ" elementId="#CompilationUnitRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitRulerContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.RulerContext</tags> <tags>popup:#AbstractTextEditorRulerContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smuDjeEeOl7c84qMCIKQ" elementId="#OverviewRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#OverviewRulerContext</tags> </menus> </children> <children xsi:type="basic:Part" xmi:id="_78smuTjeEeOl7c84qMCIKQ" elementId="org.eclipse.e4.ui.compatibility.editor" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.CompatibilityEditor" label="TextureBank.java" iconURI="platform:/plugin/org.eclipse.jdt.ui/icons/full/obj16/jcu_obj.gif" tooltip="Rigging/src/com/ikaron/rigging2d/TextureBank.java" closeable="true"> <persistedState key="memento" value="<?xml version="1.0" encoding="UTF-8"?> <editor id="org.eclipse.jdt.ui.CompilationUnitEditor"> <input factoryID="org.eclipse.ui.part.FileEditorInputFactory" path="/Rigging/src/com/ikaron/rigging2d/TextureBank.java"/> <editorState selectionHorizontalPixel="0" selectionLength="0" selectionOffset="1664" selectionTopPixel="590"/> </editor>"/> <tags>Editor</tags> <tags>org.eclipse.jdt.ui.CompilationUnitEditor</tags> <tags>removeOnHide</tags> <menus xsi:type="menu:PopupMenu" xmi:id="_78smujjeEeOl7c84qMCIKQ" elementId="#CompilationUnitEditorContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitEditorContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.EditorContext</tags> <tags>popup:#AbstractTextEditorContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smuzjeEeOl7c84qMCIKQ" elementId="#CompilationUnitRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#CompilationUnitRulerContext</tags> <tags>popup:org.eclipse.jdt.ui.CompilationUnitEditor.RulerContext</tags> <tags>popup:#AbstractTextEditorRulerContext</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78smvDjeEeOl7c84qMCIKQ" elementId="#OverviewRulerContext"> <tags>menuContribution:popup</tags> <tags>popup:#OverviewRulerContext</tags> </menus> </children> <children xsi:type="basic:Part" xmi:id="_78smvTjeEeOl7c84qMCIKQ" elementId="org.eclipse.e4.ui.compatibility.editor" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.CompatibilityEditor" label="KeyListener.java" iconURI="platform:/plugin/org.eclipse.jdt.ui/icons/full/obj16/jcu_obj.gif" tooltip="Game/src/com/ikaron/menu/KeyListener.java" closeable="true"> <persistedState key="memento" value="<?xml version="1.0" encoding="UTF-8"?> <editor id="org.eclipse.jdt.ui.CompilationUnitEditor"> <input factoryID="org.eclipse.ui.part.FileEditorInputFactory" path="/Game/src/com/ikaron/menu/KeyListener.java"/> <editorState selectionHorizontalPixel="0" selectionLength="0" selectionOffset="84" selectionTopPixel="0"/> </editor>"/> <tags>Editor</tags> <tags>org.eclipse.jdt.ui.CompilationUnitEditor</tags> <tags>removeOnHide</tags> <menus xsi:type="menu:PopupMenu" xmi:id="_78smvjjeEeOl7c84qMCIKQ" elementId="#CompilationUnitEditorCon |0|0|0|SageExplorer"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.jdt.ui.PackageExplorer</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm4jjeEeOl7c84qMCIKQ" elementId="org.eclipse.jdt.ui.PackageExplorer"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.jdt.ui.PackageExplorer</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm4zjeEeOl7c84qMCIKQ" elementId="org.eclipse.jdt.ui.PackageExplorer"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.jdt.ui.PackageExplorer</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm5DjeEeOl7c84qMCIKQ" elementId="org.eclipse.jdt.ui.PackageExplorer"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.jdt.ui.PackageExplorer</tags> </menus> <toolbar xmi:id="_78sm5TjeEeOl7c84qMCIKQ" elementId="org.eclipse.jdt.ui.PackageExplorer"/> </sharedElements> <sharedElements xsi:type="basic:Part" xmi:id="_78sm6TjeEeOl7c84qMCIKQ" elementId="org.eclipse.jdt.ui.TypeHierarchy" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.CompatibilityView" label="Type Hierarchy" iconURI="platform:/plugin/org.eclipse.jdt.ui/icons/full/eview16/class_hi.gif" closeable="true"> <tags>View</tags> <tags>categoryTag:Java</tags> </sharedElements> <sharedElements xsi:type="basic:Part" xmi:id="_78sm6jjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ResourceNavigator" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.CompatibilityView" label="Navigator" iconURI="platform:/plugin/org.eclipse.ui.ide/icons/full/eview16/filenav_nav.gif" closeable="true"> <tags>View</tags> <tags>categoryTag:General</tags> </sharedElements> <sharedElements xsi:type="basic:Part" xmi:id="_78sm6zjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.navigator.ProjectExplorer" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.CompatibilityView" label="Project Explorer" iconURI="platform:/plugin/org.eclipse.ui.navigator.resources/icons/full/eview16/resource_persp.gif" closeable="true"> <tags>View</tags> <tags>categoryTag:General</tags> </sharedElements> <sharedElements xsi:type="basic:Part" xmi:id="_78sm7DjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.CompatibilityView" label="Problems" iconURI="platform:/plugin/org.eclipse.ui.ide/icons/full/eview16/problems_view.gif" tooltip="" closeable="true"> <persistedState key="memento" value="<?xml version="1.0" encoding="UTF-8"?> <view PRIMARY_SORT_FIELD="org.eclipse.ui.ide.severityAndDescriptionField" categoryGroup="org.eclipse.ui.ide.severity" markerContentGenerator="org.eclipse.ui.ide.problemsGenerator" partName="Problems"> <expanded> <category IMemento.internal.id="Errors"/> <category IMemento.internal.id="Warnings"/> </expanded> <columnWidths org.eclipse.ui.ide.locationField="90" org.eclipse.ui.ide.markerType="90" org.eclipse.ui.ide.pathField="120" org.eclipse.ui.ide.resourceField="90" org.eclipse.ui.ide.severityAndDescriptionField="574"/> <visible IMemento.internal.id="org.eclipse.ui.ide.severityAndDescriptionField"/> <visible IMemento.internal.id="org.eclipse.ui.ide.resourceField"/> <visible IMemento.internal.id="org.eclipse.ui.ide.pathField"/> <visible IMemento.internal.id="org.eclipse.ui.ide.locationField"/> <visible IMemento.internal.id="org.eclipse.ui.ide.markerType"/> </view>"/> <tags>View</tags> <tags>categoryTag:General</tags> <menus xmi:id="_78sm7TjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView"> <tags>ViewMenu</tags> <tags>menuContribution:menu</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm7jjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.ui.views.ProblemView</tags> <tags>popup:org.eclipse.ui.ide.MarkersView</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm7zjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.ui.views.ProblemView</tags> <tags>popup:org.eclipse.ui.ide.MarkersView</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm8DjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.ui.views.ProblemView</tags> <tags>popup:org.eclipse.ui.ide.MarkersView</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm8TjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.ui.views.ProblemView</tags> <tags>popup:org.eclipse.ui.ide.MarkersView</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm8jjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.ui.views.ProblemView</tags> <tags>popup:org.eclipse.ui.ide.MarkersView</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm8zjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.ui.views.ProblemView</tags> <tags>popup:org.eclipse.ui.ide.MarkersView</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm9DjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.ui.views.ProblemView</tags> <tags>popup:org.eclipse.ui.ide.MarkersView</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm9TjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.ui.views.ProblemView</tags> <tags>popup:org.eclipse.ui.ide.MarkersView</tags> </menus> <menus xsi:type="menu:PopupMenu" xmi:id="_78sm9jjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView"> <tags>menuContribution:popup</tags> <tags>popup:org.eclipse.ui.views.ProblemView</tags> <tags>popup:org.eclipse.ui.ide.MarkersView</tags> </menus> <toolbar xmi:id="_78sm9zjeEeOl7c84qMCIKQ" elementId="org.eclipse.ui.views.ProblemView" visible="false"/> </sharedElements> <sharedElements xsi:type="basic:Part" xmi:id="_78sm-DjeEeOl7c84qMCIKQ" elementId="org.eclipse.jdt.ui.JavadocView" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.CompatibilityView" label="Javadoc" iconURI="platform:/plugin/org.eclipse.jdt.ui/icons/full/eview16/javadoc.gif" closeable="true"> <tags>View</tags> <tags>categoryTag:Java</tags> </sharedElements> <sharedElements xsi:type="basic:Part" xmi:id="_78sm-TjeEeOl7c84qMCIKQ" elementId="org.eclipse.jdt.ui.SourceView" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.CompatibilityView" label="Declaration" iconURI="platform:/plugin/org.eclipse.jdt.ui/icons/full/eview16/source.gif" closeable="true"> <tags>View</tags> <tags>categoryTag:Java</tags> </sharedElements> <sharedElements xsi:type="basic:Part" xmi:id="_78sm-jjeEeOl7c84qMCIKQ" elementId="org.eclipse.search.ui.views.SearchView" contributionURI="bundleclass://org.eclipse.ui.workbench/org.eclipse.ui.internal.e4.compatibility.Compati Geändert von Ikaron (01.12.2013 um 00:27 Uhr) |
01.12.2013, 16:09 | #6 |
/// the machine /// TB-Ausbilder | USBStick: Korruption von Dateien und neu aufgetauchte Dateien (unlöschbar/korrupt, 15GB) auf 8GB Stick Wäre die schnellste Option Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ --> USBStick: Korruption von Dateien und neu aufgetauchte Dateien (unlöschbar/korrupt, 15GB) auf 8GB Stick |
Themen zu USBStick: Korruption von Dateien und neu aufgetauchte Dateien (unlöschbar/korrupt, 15GB) auf 8GB Stick |
100%, anderen, antivirenprogramm, antworten, dateien, dateiname, deaktiviert, einfach, entfernen, fehler, funktionieren, gelöscht, leute, liste, länger, löschen, meldungen, namen, neu, nicht mehr, problem, screenshot, ungültig, woche, worte |