Plagegeister aller Art und deren Bekämpfung: Windows update Fehlgeschlafen, Fehlercode 9C59.Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich.
![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. Guten Tag, ich wollte meine updates wie immer installieren, konnte jedoch das update "Internet Explorer 11 für WIndows 7 für 64-basierte Systeme" nicht installieren. Es kommt jedesmal update fehlgeschlagen. Habe mich in anderen Foren umgeschaut und gelesen, dass man den alten Internet Explorer deinstallieren sollte. Habe ich probiert, indem ich auf Installierte Updates ging, um dort IE zu entfernen. Auch das schlug wieder fehl, konnte jedoch das language packet entfernen. PC neugestartet, das Update verläuft jedoch weiterhin fehlerhaft. Was kann ich dagegen unternehmen? |
Windows update Fehlgeschlafen, Fehlercode 9C59. Hallo und
Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten!
Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht!

Zudem bitte auch ein Log mit Farbars Tool machen:

Scan mit Farbar's Recovery Scan Tool (FRST)

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. Nein Malware tritt eigentlich nie auf, nur selten Findet Kaspersky in Firefox temp was. Aber nichts drastisches.
__________________FRST-Log: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-12-2013 Ran by alex (administrator) on ALEX-PC on 03-12-2013 15:56:05 Running from C:\Users\alex\Desktop\FRST Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe () C:\Windows\SysWOW64\PnkBstrA.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe () C:\Program Files\Rainmeter\Rainmeter.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe (Intel(R) Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12681320 2011-08-26] (Realtek Semiconductor) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2273056 2013-11-29] (NVIDIA Corporation) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20549280 2013-10-21] (Skype Technologies S.A.) HKCU\...\Policies\system: [LogonHoursAction] 2 HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO) Startup: C:\Users\alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\alex\AppData\Roaming\Mozilla\Firefox\Profiles\l3fiemti.default FF DefaultSearchEngine: Google FF SelectedSearchEngine: Google FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll () FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=1.140.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.140.0\npesnlaunch.dll No File FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.3.1 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.1\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll No File FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @t.garena.com/garenatalk - C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll No File FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Flashblock - C:\Users\alex\AppData\Roaming\Mozilla\Firefox\Profiles\l3fiemti.default\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a} FF Extension: WOT - C:\Users\alex\AppData\Roaming\Mozilla\Firefox\Profiles\l3fiemti.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} FF Extension: noscript - C:\Users\alex\AppData\Roaming\Mozilla\Firefox\Profiles\l3fiemti.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: No Name - C:\Users\alex\AppData\Roaming\Mozilla\Firefox\Profiles\l3fiemti.default\Extensions\{99B98C2C-7274-45a3-A640-D9DF1A1C8460}.xpi FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird Chrome: ======= CHR DefaultSearchURL: (Delta Search) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding} CHR DefaultSuggestURL: (Delta Search) - "suggest_url": "" CHR Plugin: (Shockwave Flash) - C:\Users\alex\AppData\Local\Google\Chrome\Application\27.0.1453.94\PepperFlash\pepflashplayer.dll No File CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\alex\AppData\Local\Google\Chrome\Application\27.0.1453.94\ppGoogleNaClPluginChrome.dll No File CHR Plugin: (Chrome PDF Viewer) - C:\Users\alex\AppData\Local\Google\Chrome\Application\27.0.1453.94\pdf.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (ESN Launch Mozilla Plugin) - C:\Program Files (x86)\Battlelog Web Plugins\1.140.0\npesnlaunch.dll No File CHR Plugin: (ESN Launch Mozilla Plugin) - C:\Program Files (x86)\Battlelog Web Plugins\2.1.3\npesnlaunch.dll No File CHR Plugin: (Java(TM) Platform SE 7 U21) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll No File CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) CHR Plugin: (Google Update) - C:\Users\alex\AppData\Local\Google\Update\\npGoogleUpdate3.dll No File CHR Plugin: (Raidcall plugin) - C:\Users\alex\AppData\Roaming\raidcall\plugins\nprcplugin.dll (Raidcall) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll No File CHR Plugin: (Java Deployment Toolkit - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File CHR Extension: (Docs) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\ CHR Extension: (Google Drive) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0 CHR Extension: (YouTube) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0 CHR Extension: (Google Search) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\ CHR Extension: (Kaspersky URL Advisor) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\ CHR Extension: (Safe Money) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\ CHR Extension: (Virtual Keyboard) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\ CHR Extension: (Gmail) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR Extension: (Anti-Banner) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\ CHR HKLM-x32\...\Chrome\Extension: [aakchaleigkohafkfjfjbblobjifikek] - C:\Users\alex\AppData\LocalLow\proxtube\CHROME\proxtube.crx CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\urladvisor.crx CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\online_banking_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\content_blocker_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\virtkbd.crx CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\ab.crx ==================== Services (Whitelisted) ================= R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1370912 2013-11-29] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15128352 2013-11-29] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-11-09] () R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [15888 2013-02-11] (Intel(R) Corporation) ==================== Drivers (Whitelisted) ==================== R3 AcpiCtlDrv; C:\Windows\System32\DRIVERS\AcpiCtlDrv.sys [25880 2012-07-17] (Intel Corporation) S3 bulkadi; C:\Windows\System32\DRIVERS\bulkrazer_x64.sys [25088 2011-02-09] (Windows (R) Codename Longhorn DDK provider) S3 EfiVariable; C:\Windows\SysWOW64\Drivers\variable64.sys [18200 2010-10-28] (Windows (R) Server 2003 DDK provider) R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [29672 2013-01-19] (REALiX(tm)) R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [25448 2013-01-07] (Intel Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [7717984 2013-10-10] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [626272 2013-10-10] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-10] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-10] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-07-24] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-07-24] (Kaspersky Lab ZAO) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-10-30] (NVIDIA Corporation) R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-01-23] () R3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [22016 2012-09-18] (Razer USA Ltd) S3 ALSysIO; \??\C:\Users\alex\AppData\Local\Temp\ALSysIO64.sys [x] U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys [x] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys [x] U5 klflt; C:\Windows\System32\Drivers\klflt.sys [90208 2013-07-24] (Kaspersky Lab ZAO) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-03 15:54 - 2013-12-03 15:56 - 00000000 ____D C:\Users\alex\Desktop\FRST 2013-12-03 15:53 - 2013-12-03 15:54 - 00054090 _____ C:\Users\alex\Downloads\FRST.txt 2013-12-03 06:40 - 2013-10-30 18:03 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-12-03 06:40 - 2013-10-30 18:02 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-12-03 05:05 - 2013-12-03 05:05 - 00347304 _____ (Microsoft Corporation) C:\Users\alex\Downloads\MicrosoftFixit.IEPerformance.Run.exe 2013-12-03 01:28 - 2013-12-03 01:28 - 12999313 _____ C:\Users\alex\Downloads\Casey Connelly - Imgur.zip 2013-12-02 07:19 - 2013-12-02 07:19 - 16422740 _____ C:\Users\alex\Downloads\realbarbielifts - Imgur(1).zip 2013-12-02 06:29 - 2013-12-02 06:29 - 02520182 _____ C:\Users\alex\Downloads\Album 4HhzQ - Imgur.zip 2013-12-02 03:42 - 2013-12-02 03:42 - 01371376 _____ C:\Users\alex\Downloads\faucheer - Imgur.zip 2013-12-02 00:41 - 2013-12-02 00:42 - 00000000 ____D C:\Users\alex\Downloads\Sacred_Tool_v4.03 2013-12-02 00:41 - 2013-12-02 00:41 - 02304306 _____ C:\Users\alex\Downloads\Sacred_Tool_v4.03.7z 2013-12-01 21:38 - 2013-12-01 21:38 - 00000000 ____D C:\Users\alex\AppData\Local\Ascaron Entertainment 2013-11-29 00:55 - 2013-11-29 00:55 - 01327845 _____ C:\Users\alex\Downloads\body so tight - Imgur.zip 2013-11-28 17:03 - 2013-11-28 17:04 - 242396304 _____ C:\Users\alex\Desktop\Jon Bellion - Jim Morrison.avi 2013-11-28 17:00 - 2013-11-28 17:00 - 32004832 _____ (DVDVideoSoft Ltd. ) C:\Users\alex\Downloads\FreeYouTubeDownload- 2013-11-26 17:12 - 2013-11-26 17:12 - 01001781 _____ C:\Users\alex\Downloads\HUDASIscariote_beta_v.1.5.2_.7z 2013-11-26 17:12 - 2013-11-26 17:12 - 00000000 ____D C:\Users\alex\Downloads\HUDASIscariote_beta_v.1.5.2_ 2013-11-26 17:11 - 2013-11-26 17:11 - 00009432 _____ C:\Users\alex\Downloads\Scoreboard%20%5B16%3B9%20only%5D.zip 2013-11-26 02:52 - 2013-12-03 15:00 - 00114029 _____ C:\Windows\IE11_main.log 2013-11-22 23:34 - 2013-11-22 23:34 - 09973941 _____ C:\Users\alex\Downloads\The Ass Gallery - Imgur.zip 2013-11-22 19:30 - 2013-11-22 20:07 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-11-22 19:30 - 2013-11-22 19:30 - 00001144 _____ C:\Users\Public\Desktop\Diablo III.lnk 2013-11-22 19:29 - 2013-11-22 19:30 - 33120428 _____ (Blizzard Entertainment) C:\Users\alex\Downloads\Diablo-III-Setup-enGB(1).exe.part 2013-11-22 19:28 - 2013-11-22 19:29 - 40048216 _____ (Blizzard Entertainment) C:\Users\alex\Downloads\Diablo-III-Setup-enGB.exe 2013-11-22 02:37 - 2013-11-14 12:56 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 18293608 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-22 02:37 - 2013-11-14 12:56 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00357152 _____ C:\Windows\system32\NvIFROpenGL.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll 2013-11-22 01:20 - 2013-11-22 01:20 - 16422740 _____ C:\Users\alex\Downloads\realbarbielifts - Imgur.zip 2013-11-20 17:51 - 2013-11-20 17:51 - 20648422 _____ C:\Users\alex\Downloads\danni - Imgur.zip 2013-11-20 00:37 - 2013-11-20 00:37 - 00000000 ____D C:\Users\alex\Downloads\Cute Girl Danni - Imgur 2013-11-19 00:32 - 2013-11-19 00:32 - 00000000 ____D C:\Users\alex\AppData\Roaming\openvr 2013-11-17 20:27 - 2013-11-17 20:27 - 00045120 _____ C:\Users\alex\Downloads\dota_vpk.zip 2013-11-16 10:40 - 2013-11-16 10:40 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-15 23:31 - 2013-11-15 23:31 - 12331571 _____ C:\Users\alex\Downloads\Cute Girl Danni - Imgur.zip 2013-11-14 21:51 - 2013-11-14 21:51 - 00071108 _____ C:\s1bg 2013-11-14 21:34 - 2013-11-14 21:34 - 00071108 _____ C:\s3ho 2013-11-14 16:25 - 2013-11-14 16:25 - 03820824 _____ C:\Users\alex\Downloads\battlelog-web-plugins_2.3.1_125.exe 2013-11-14 15:01 - 2013-10-12 09:45 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-14 15:01 - 2013-10-12 09:45 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-14 15:01 - 2013-10-12 09:45 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-14 15:01 - 2013-10-12 09:43 - 19269632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-14 15:01 - 2013-10-12 08:03 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-14 15:01 - 2013-10-12 08:03 - 01138176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 14355968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-14 15:01 - 2013-10-12 07:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-14 15:01 - 2013-10-12 07:08 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-14 15:01 - 2013-10-12 06:44 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-14 15:01 - 2013-10-12 06:15 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-13 17:05 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-13 17:05 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-11-13 17:04 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-13 17:04 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-13 17:04 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-13 17:04 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-11-13 17:04 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-11-13 17:04 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-11-13 17:04 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-11-13 17:04 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-11-13 17:04 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-11-13 17:04 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-11-13 17:04 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-11-13 17:04 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-13 17:04 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-11-13 17:04 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-11-13 17:04 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-11-13 17:04 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-11-13 17:04 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-11-13 17:04 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-11-13 17:04 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-11-13 17:04 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-11-13 17:04 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-11-13 17:04 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-11-13 17:04 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-11-13 17:04 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-11-13 17:04 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-11-13 17:04 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-11-13 17:04 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-11-13 17:04 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-11-11 16:41 - 2013-11-11 16:41 - 00030402 _____ C:\Users\alex\Downloads\Attribute Spells.w3x 2013-11-11 16:26 - 2013-11-11 16:50 - 01520313 _____ C:\Users\alex\Downloads\10 Hero Siege Ice Catus.w3x 2013-11-11 08:59 - 2013-11-11 08:59 - 00590112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-11-11 03:13 - 2013-11-11 03:13 - 00012916 _____ C:\Users\alex\Downloads\test5.w3x 2013-11-08 23:56 - 2013-11-08 23:56 - 00000835 _____ C:\Users\alex\Downloads\allchant5-318-1-4.rar 2013-11-08 23:56 - 2013-11-08 23:56 - 00000000 ____D C:\Users\alex\Downloads\allchant5-318-1-4 2013-11-08 23:53 - 2013-11-08 23:53 - 00000000 ____D C:\Users\alex\Downloads\BOSS v2.1.1 Archive 2013-11-08 23:52 - 2013-11-08 23:52 - 02885631 _____ C:\Users\alex\Downloads\BOSS v2.1.1 Archive.7z 2013-11-08 20:46 - 2013-11-08 20:46 - 01602852 _____ C:\Users\alex\Downloads\TERA Deathskin - Bombshell BBP.7z 2013-11-08 20:46 - 2013-11-08 20:46 - 01242731 _____ C:\Users\alex\Downloads\TERA Berserker Metal - Bombshell BBP.7z 2013-11-08 20:45 - 2013-11-08 20:45 - 01779657 _____ C:\Users\alex\Downloads\TERA Viridinium - Optional 7B.7z 2013-11-08 20:45 - 2013-11-08 20:45 - 01430451 _____ C:\Users\alex\Downloads\TERA Deathshell - Bombshell BBP.7z 2013-11-08 18:41 - 2013-11-08 18:41 - 19763156 _____ C:\Users\alex\Downloads\Eisen Plate Plus - Cleavage NON-BBP.7z 2013-11-08 18:38 - 2013-11-08 18:38 - 09807987 _____ C:\Users\alex\Downloads\Hentai Mixed Armor - Bombshell BBP.7z 2013-11-08 18:20 - 2013-11-08 18:20 - 10919980 _____ C:\Users\alex\Downloads\Succubus Armor - Bombshell BBP.7z 2013-11-08 18:18 - 2013-11-08 18:18 - 09714582 _____ C:\Users\alex\Downloads\ThunderBird Armor - Bombshell BBP.7z 2013-11-08 18:16 - 2013-11-08 18:16 - 02316235 _____ C:\Users\alex\Downloads\Northgirl Armor - SevenBase BBP-46460-1-0.7z 2013-11-08 17:46 - 2013-11-08 17:46 - 00000000 ____D C:\Users\alex\Downloads\Milkdrinker Skin-24318-1-03 2013-11-08 17:45 - 2013-11-08 17:46 - 26894343 _____ C:\Users\alex\Downloads\Milkdrinker Skin-24318-1-03.7z 2013-11-08 17:43 - 2013-11-08 17:43 - 00102841 _____ C:\Users\alex\Downloads\Armored Rings 1_1-12232-1-0.zip 2013-11-08 17:32 - 2013-11-08 17:32 - 00000000 ____D C:\Users\alex\Downloads\Barbarian Skin-24318-1-04 2013-11-08 17:31 - 2013-11-08 17:31 - 24176488 _____ C:\Users\alex\Downloads\Barbarian Skin-24318-1-04.7z 2013-11-08 17:19 - 2013-11-08 17:19 - 00000000 ____D C:\Users\alex\Downloads\Installer with all SeveNBase Body options by MarkusFox-36992-1 2013-11-08 17:14 - 2013-11-08 17:15 - 30545707 _____ C:\Users\alex\Downloads\Installer with all SeveNBase Body options by MarkusFox-36992-1.7z 2013-11-08 12:37 - 2013-11-08 12:37 - 00001103 _____ C:\Users\alex\Downloads\ Cheat Files For Followers-41877-1-11.zip 2013-11-06 16:41 - 2013-11-06 16:41 - 00292184 _____ (Microsoft Corporation) C:\Users\alex\Downloads\dxwebsetup.exe 2013-11-05 23:45 - 2013-10-23 11:30 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433165.dll 2013-11-05 23:45 - 2013-10-23 11:30 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433165.dll 2013-11-05 23:45 - 2013-01-29 09:35 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll 2013-11-05 23:43 - 2013-11-29 17:56 - 01096480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-05 23:43 - 2013-11-29 17:56 - 00979744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-05 23:36 - 2013-11-05 23:37 - 00000000 ____D C:\Users\alex\Documents\Battlefield 4 2013-11-05 23:34 - 2013-11-05 23:34 - 03820328 _____ C:\Users\alex\Downloads\battlelog-web-plugins_2.3.0_119.exe ==================== One Month Modified Files and Folders ======= 2013-12-03 15:56 - 2013-12-03 15:54 - 00000000 ____D C:\Users\alex\Desktop\FRST 2013-12-03 15:54 - 2013-12-03 15:53 - 00054090 _____ C:\Users\alex\Downloads\FRST.txt 2013-12-03 15:54 - 2012-12-30 08:15 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner 2013-12-03 15:54 - 2012-06-02 02:35 - 00000000 ____D C:\Users\alex\AppData\Roaming\Skype 2013-12-03 15:31 - 2012-10-22 13:58 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-03 15:04 - 2012-08-29 14:13 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-12-03 15:01 - 2012-05-18 20:22 - 01605779 _____ C:\Windows\WindowsUpdate.log 2013-12-03 15:00 - 2013-11-26 02:52 - 00114029 _____ C:\Windows\IE11_main.log 2013-12-03 11:40 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-03 06:41 - 2013-05-20 14:12 - 00000000 ____D C:\Users\alex\AppData\Local\NVIDIA 2013-12-03 06:41 - 2012-06-03 00:18 - 00000000 ____D C:\Users\alex\AppData\Local\NVIDIA Corporation 2013-12-03 06:40 - 2013-09-09 05:17 - 00024254 _____ C:\Windows\setupact.log 2013-12-03 06:40 - 2013-04-16 08:32 - 00000000 ____D C:\ProgramData\NVIDIA 2013-12-03 06:40 - 2013-04-16 08:28 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-12-03 06:40 - 2013-04-15 20:37 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-12-03 06:40 - 2012-05-18 20:48 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-12-03 05:19 - 2009-07-14 05:45 - 00021856 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-03 05:19 - 2009-07-14 05:45 - 00021856 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-03 05:18 - 2011-04-12 08:43 - 00699462 _____ C:\Windows\system32\perfh007.dat 2013-12-03 05:18 - 2011-04-12 08:43 - 00149602 _____ C:\Windows\system32\perfc007.dat 2013-12-03 05:18 - 2009-07-14 06:13 - 01620812 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-03 05:12 - 2013-09-10 18:34 - 00185418 _____ C:\Windows\PFRO.log 2013-12-03 05:12 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-03 05:11 - 2013-10-17 23:25 - 00003018 _____ C:\Windows\System32\Tasks\MSIAfterburner 2013-12-03 05:05 - 2013-12-03 05:05 - 00347304 _____ (Microsoft Corporation) C:\Users\alex\Downloads\MicrosoftFixit.IEPerformance.Run.exe 2013-12-03 04:58 - 2012-09-02 20:40 - 01594156 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-12-03 04:56 - 2012-09-15 11:13 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-12-03 01:28 - 2013-12-03 01:28 - 12999313 _____ C:\Users\alex\Downloads\Casey Connelly - Imgur.zip 2013-12-02 23:32 - 2012-05-18 20:36 - 00000000 ____D C:\Program Files (x86)\Steam 2013-12-02 16:03 - 2013-08-08 16:40 - 00001894 _____ C:\Users\alex\Desktop\tatoos.txt 2013-12-02 07:19 - 2013-12-02 07:19 - 16422740 _____ C:\Users\alex\Downloads\realbarbielifts - Imgur(1).zip 2013-12-02 06:29 - 2013-12-02 06:29 - 02520182 _____ C:\Users\alex\Downloads\Album 4HhzQ - Imgur.zip 2013-12-02 03:42 - 2013-12-02 03:42 - 01371376 _____ C:\Users\alex\Downloads\faucheer - Imgur.zip 2013-12-02 00:42 - 2013-12-02 00:41 - 00000000 ____D C:\Users\alex\Downloads\Sacred_Tool_v4.03 2013-12-02 00:41 - 2013-12-02 00:41 - 02304306 _____ C:\Users\alex\Downloads\Sacred_Tool_v4.03.7z 2013-12-01 21:38 - 2013-12-01 21:38 - 00000000 ____D C:\Users\alex\AppData\Local\Ascaron Entertainment 2013-12-01 21:38 - 2013-09-09 12:15 - 00217380 _____ C:\Windows\DirectX.log 2013-12-01 21:01 - 2013-09-11 14:53 - 00000000 ____D C:\Program Files (x86)\Warcraft III 2013-11-29 17:56 - 2013-11-05 23:43 - 01096480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-29 17:56 - 2013-11-05 23:43 - 00979744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-29 00:55 - 2013-11-29 00:55 - 01327845 _____ C:\Users\alex\Downloads\body so tight - Imgur.zip 2013-11-28 17:05 - 2012-06-11 04:19 - 00000000 ____D C:\Users\alex\AppData\Roaming\DVDVideoSoft 2013-11-28 17:04 - 2013-11-28 17:03 - 242396304 _____ C:\Users\alex\Desktop\Jon Bellion - Jim Morrison.avi 2013-11-28 17:00 - 2013-11-28 17:00 - 32004832 _____ (DVDVideoSoft Ltd. ) C:\Users\alex\Downloads\FreeYouTubeDownload- 2013-11-26 17:12 - 2013-11-26 17:12 - 01001781 _____ C:\Users\alex\Downloads\HUDASIscariote_beta_v.1.5.2_.7z 2013-11-26 17:12 - 2013-11-26 17:12 - 00000000 ____D C:\Users\alex\Downloads\HUDASIscariote_beta_v.1.5.2_ 2013-11-26 17:11 - 2013-11-26 17:11 - 00009432 _____ C:\Users\alex\Downloads\Scoreboard%20%5B16%3B9%20only%5D.zip 2013-11-25 13:00 - 2012-05-19 00:35 - 00000000 ____D C:\Users\alex\Documents\Diablo III 2013-11-22 23:34 - 2013-11-22 23:34 - 09973941 _____ C:\Users\alex\Downloads\The Ass Gallery - Imgur.zip 2013-11-22 20:07 - 2013-11-22 19:30 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-11-22 19:30 - 2013-11-22 19:30 - 00001144 _____ C:\Users\Public\Desktop\Diablo III.lnk 2013-11-22 19:30 - 2013-11-22 19:29 - 33120428 _____ (Blizzard Entertainment) C:\Users\alex\Downloads\Diablo-III-Setup-enGB(1).exe.part 2013-11-22 19:29 - 2013-11-22 19:28 - 40048216 _____ (Blizzard Entertainment) C:\Users\alex\Downloads\Diablo-III-Setup-enGB.exe 2013-11-22 01:20 - 2013-11-22 01:20 - 16422740 _____ C:\Users\alex\Downloads\realbarbielifts - Imgur.zip 2013-11-21 22:47 - 2013-09-24 22:55 - 00000000 ____D C:\Users\alex\Desktop\Unending wisdom of 氷の竜 2013-11-21 20:46 - 2012-05-20 01:01 - 00000000 ____D C:\Users\alex\AppData\Roaming\TS3Client 2013-11-20 17:51 - 2013-11-20 17:51 - 20648422 _____ C:\Users\alex\Downloads\danni - Imgur.zip 2013-11-20 15:26 - 2013-10-22 22:26 - 00000716 _____ C:\Users\alex\Desktop\rift shit.txt 2013-11-20 00:37 - 2013-11-20 00:37 - 00000000 ____D C:\Users\alex\Downloads\Cute Girl Danni - Imgur 2013-11-19 00:32 - 2013-11-19 00:32 - 00000000 ____D C:\Users\alex\AppData\Roaming\openvr 2013-11-18 09:48 - 2012-10-22 13:58 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-11-18 09:48 - 2012-05-18 23:12 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-11-18 09:48 - 2012-05-18 23:12 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-11-18 09:48 - 2012-05-18 23:08 - 00000000 ____D C:\Users\alex\AppData\Local\Adobe 2013-11-17 22:43 - 2012-09-02 22:26 - 00291296 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-11-17 22:43 - 2012-09-02 20:38 - 00291296 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-11-17 22:30 - 2012-09-02 20:38 - 00291296 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-11-17 22:03 - 2012-10-06 11:16 - 00000000 ____D C:\Program Files (x86)\Origin 2013-11-17 20:27 - 2013-11-17 20:27 - 00045120 _____ C:\Users\alex\Downloads\dota_vpk.zip 2013-11-16 10:40 - 2013-11-16 10:40 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-15 23:31 - 2013-11-15 23:31 - 12331571 _____ C:\Users\alex\Downloads\Cute Girl Danni - Imgur.zip 2013-11-15 14:58 - 2012-10-06 13:26 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2013-11-14 21:51 - 2013-11-14 21:51 - 00071108 _____ C:\s1bg 2013-11-14 21:34 - 2013-11-14 21:34 - 00071108 _____ C:\s3ho 2013-11-14 21:34 - 2012-05-18 20:22 - 00000000 ____D C:\Users\alex\AppData\Local\VirtualStore 2013-11-14 16:25 - 2013-11-14 16:25 - 03820824 _____ C:\Users\alex\Downloads\battlelog-web-plugins_2.3.1_125.exe 2013-11-14 15:01 - 2013-08-12 05:16 - 00000000 ____D C:\Windows\system32\MRT 2013-11-14 15:00 - 2012-05-25 02:05 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-11-14 12:56 - 2013-11-22 02:37 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 18293608 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-14 12:56 - 2013-11-22 02:37 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00357152 _____ C:\Windows\system32\NvIFROpenGL.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll 2013-11-14 12:56 - 2013-05-20 14:07 - 02697248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-11-14 12:56 - 2013-04-16 08:31 - 15218504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-11-14 12:56 - 2013-04-16 08:31 - 03069608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-11-14 12:56 - 2013-02-10 17:51 - 00023754 _____ C:\Windows\system32\nvinfo.pb 2013-11-14 12:56 - 2012-05-18 20:49 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-11-14 12:56 - 2012-05-18 20:49 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-11-11 16:50 - 2013-11-11 16:26 - 01520313 _____ C:\Users\alex\Downloads\10 Hero Siege Ice Catus.w3x 2013-11-11 16:41 - 2013-11-11 16:41 - 00030402 _____ C:\Users\alex\Downloads\Attribute Spells.w3x 2013-11-11 16:02 - 2013-04-16 08:28 - 06674208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-11-11 16:02 - 2013-04-16 08:28 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-11-11 16:01 - 2013-04-16 08:32 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-11-11 16:01 - 2013-04-16 08:28 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-11-11 16:01 - 2013-04-16 08:28 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-11-11 16:01 - 2013-04-16 08:28 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-11-11 08:59 - 2013-11-11 08:59 - 00590112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-11-11 05:50 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-11-11 03:13 - 2013-11-11 03:13 - 00012916 _____ C:\Users\alex\Downloads\test5.w3x 2013-11-09 21:10 - 2013-08-15 15:15 - 00000934 _____ C:\Users\Public\Desktop\Nexus Mod Manager.lnk 2013-11-09 18:54 - 2012-09-02 20:38 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-11-09 11:40 - 2012-06-02 02:35 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-11-09 11:40 - 2012-06-02 02:35 - 00000000 ____D C:\ProgramData\Skype 2013-11-08 23:56 - 2013-11-08 23:56 - 00000835 _____ C:\Users\alex\Downloads\allchant5-318-1-4.rar 2013-11-08 23:56 - 2013-11-08 23:56 - 00000000 ____D C:\Users\alex\Downloads\allchant5-318-1-4 2013-11-08 23:53 - 2013-11-08 23:53 - 00000000 ____D C:\Users\alex\Downloads\BOSS v2.1.1 Archive 2013-11-08 23:52 - 2013-11-08 23:52 - 02885631 _____ C:\Users\alex\Downloads\BOSS v2.1.1 Archive.7z 2013-11-08 20:46 - 2013-11-08 20:46 - 01602852 _____ C:\Users\alex\Downloads\TERA Deathskin - Bombshell BBP.7z 2013-11-08 20:46 - 2013-11-08 20:46 - 01242731 _____ C:\Users\alex\Downloads\TERA Berserker Metal - Bombshell BBP.7z 2013-11-08 20:45 - 2013-11-08 20:45 - 01779657 _____ C:\Users\alex\Downloads\TERA Viridinium - Optional 7B.7z 2013-11-08 20:45 - 2013-11-08 20:45 - 01430451 _____ C:\Users\alex\Downloads\TERA Deathshell - Bombshell BBP.7z 2013-11-08 18:41 - 2013-11-08 18:41 - 19763156 _____ C:\Users\alex\Downloads\Eisen Plate Plus - Cleavage NON-BBP.7z 2013-11-08 18:38 - 2013-11-08 18:38 - 09807987 _____ C:\Users\alex\Downloads\Hentai Mixed Armor - Bombshell BBP.7z 2013-11-08 18:20 - 2013-11-08 18:20 - 10919980 _____ C:\Users\alex\Downloads\Succubus Armor - Bombshell BBP.7z 2013-11-08 18:18 - 2013-11-08 18:18 - 09714582 _____ C:\Users\alex\Downloads\ThunderBird Armor - Bombshell BBP.7z 2013-11-08 18:16 - 2013-11-08 18:16 - 02316235 _____ C:\Users\alex\Downloads\Northgirl Armor - SevenBase BBP-46460-1-0.7z 2013-11-08 18:16 - 2012-05-23 15:48 - 00000000 ____D C:\Users\alex\AppData\Local\Skyrim 2013-11-08 18:16 - 2012-05-23 15:47 - 00000000 ____D C:\Users\alex\Documents\Nexus Mod Manager 2013-11-08 17:46 - 2013-11-08 17:46 - 00000000 ____D C:\Users\alex\Downloads\Milkdrinker Skin-24318-1-03 2013-11-08 17:46 - 2013-11-08 17:45 - 26894343 _____ C:\Users\alex\Downloads\Milkdrinker Skin-24318-1-03.7z 2013-11-08 17:43 - 2013-11-08 17:43 - 00102841 _____ C:\Users\alex\Downloads\Armored Rings 1_1-12232-1-0.zip 2013-11-08 17:32 - 2013-11-08 17:32 - 00000000 ____D C:\Users\alex\Downloads\Barbarian Skin-24318-1-04 2013-11-08 17:31 - 2013-11-08 17:31 - 24176488 _____ C:\Users\alex\Downloads\Barbarian Skin-24318-1-04.7z 2013-11-08 17:19 - 2013-11-08 17:19 - 00000000 ____D C:\Users\alex\Downloads\Installer with all SeveNBase Body options by MarkusFox-36992-1 2013-11-08 17:15 - 2013-11-08 17:14 - 30545707 _____ C:\Users\alex\Downloads\Installer with all SeveNBase Body options by MarkusFox-36992-1.7z 2013-11-08 12:37 - 2013-11-08 12:37 - 00001103 _____ C:\Users\alex\Downloads\ Cheat Files For Followers-41877-1-11.zip 2013-11-07 18:46 - 2013-04-14 11:50 - 00020111 _____ C:\Windows\system32\lvcoinst.log 2013-11-07 18:46 - 2013-04-14 11:50 - 00000000 ____D C:\Program Files\Common Files\logishrd 2013-11-06 16:41 - 2013-11-06 16:41 - 00292184 _____ (Microsoft Corporation) C:\Users\alex\Downloads\dxwebsetup.exe 2013-11-06 16:41 - 2012-06-18 13:47 - 00000000 ___HD C:\Windows\msdownld.tmp 2013-11-06 16:41 - 2012-06-18 13:47 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-11-05 23:40 - 2012-09-02 22:26 - 00000000 ____D C:\Users\alex\AppData\Local\PunkBuster 2013-11-05 23:37 - 2013-11-05 23:36 - 00000000 ____D C:\Users\alex\Documents\Battlefield 4 2013-11-05 23:36 - 2012-10-06 11:16 - 00000000 ____D C:\ProgramData\Origin 2013-11-05 23:34 - 2013-11-05 23:34 - 03820328 _____ C:\Users\alex\Downloads\battlelog-web-plugins_2.3.0_119.exe 2013-11-05 23:31 - 2013-04-10 10:42 - 00000000 ____D C:\ProgramData\Package Cache 2013-11-05 21:55 - 2012-10-06 11:18 - 00000000 ____D C:\Users\alex\AppData\Local\Origin 2013-11-05 21:48 - 2012-06-05 00:20 - 00000000 ____D C:\Program Files (x86)\RIFT 2013-11-04 21:20 - 2012-11-27 16:24 - 00000000 ____D C:\Program Files\Nexus Mod Manager Some content of TEMP: ==================== C:\Users\alex\AppData\Local\Temp\nv3DVStreaming.dll C:\Users\alex\AppData\Local\Temp\nvSCPAPI.dll C:\Users\alex\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\alex\AppData\Local\Temp\nvStereoApiI.dll C:\Users\alex\AppData\Local\Temp\nvStInst.exe C:\Users\alex\AppData\Local\Temp\Quarantine.exe C:\Users\alex\AppData\Local\Temp\riftuninstall.exe C:\Users\alex\AppData\Local\Temp\sonarinst.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-30 00:53 ==================== End Of Log ============================ Addition: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-12-2013 Ran by alex at 2013-12-03 15:56:31 Running from C:\Users\alex\Desktop\FRST Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Kaspersky Internet Security (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5} AS: Kaspersky Internet Security (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E} ==================== Installed Programs ====================== “Œ•û”ñ‘z“V‘¥ Ver1.10aƒAƒbƒvƒf[ƒg (x32) 7-Zip 9.20 (x64 edition) (Version: Adobe AIR (x32 Version: Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.152) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) AutoHotkey (Version: Battlelog Web Plugins (x32 Version: 2.3.1) CCleaner (Version: 4.02) Core Temp 1.0 RC4 (Version: 1.0) CPUID CPU-Z 1.62 CrystalDiskInfo 5.6.2 (x32 Version: 5.6.2) D2SE V2.2.0 (x32 Version: 2.2.0) Debugging Tools for Windows (x86) (x32 Version: Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32) Diablo II (x32) Diablo III (x32) ESN Sonar (x32 Version: 0.70.4) GCFScape 1.8.4 GeForce Experience NvStream Client Components (Version: 1.6.28) Hero Editor V0.96 (x32) HP Officejet 6600 - Grundlegende Software für das Gerät (Version: 25.0.619.0) HP Officejet 6600 Hilfe (x32 Version: HP Update (x32 Version: I.R.I.S. OCR (x32 Version: Intel Extreme Tuning Utility (x32 Version: Intel(R) Desktop Utilities (x32 Version: 1.0.0) Intel(R) Extreme Tuning Utility (x32 Version: 1.0.0) Intel(R) Identity Protection Technology (x32 Version: Intel(R) Integrator Assistant (x32 Version: 1.0.0) Intel(R) Management Engine Components (x32 Version: Intel(R) Network Connections (Version: Intel® Watchdog Timer Driver (Intel® WDT) (x32) Internet Explorer (Enable DEP) Java 7 Update 45 (64-bit) (Version: 7.0.450) Kaspersky Internet Security 2013 (x32 Version: Malwarebytes Anti-Malware Version (x32 Version: Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (x32 Version: 3.5.30730.0) Microsoft Games for Windows - LIVE Redistributable (x32 Version: Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Home and Student 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000) Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Single Image 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Silverlight (Version: 5.1.20913.0) Microsoft SQL Server Compact 3.5 SP2 ENU (x32 Version: 3.5.8080.0) Microsoft SQL Server Compact 3.5 SP2 x64 ENU (Version: 3.5.8080.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610) Mozilla Firefox 25.0.1 (x86 de) (x32 Version: 25.0.1) Mozilla Maintenance Service (x32 Version: 22.0) MSI Afterburner 2.3.1 (x32 Version: 2.3.1) MSI Kombustor 2.4.2 (x32) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) MSXML 4.0 SP2 Parser and SDK (x32 Version: 4.20.9818.0) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0) Mumble 1.2.4 (x32 Version: 1.2.4) Nexus Mod Manager (Version: 0.45.7) NVIDIA 3D Vision Controller-Treiber 331.82 (Version: 331.82) NVIDIA 3D Vision Treiber 331.82 (Version: 331.82) NVIDIA GeForce Experience 1.8 (Version: 1.8) NVIDIA Grafiktreiber 331.82 (Version: 331.82) NVIDIA HD-Audiotreiber (Version: NVIDIA Install Application (Version: 2.1002.142.992) NVIDIA LED Visualizer 1.0 (Version: 1.0) NVIDIA Network Service (Version: 1.0) NVIDIA PhysX (x32 Version: 9.13.0725) NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725) NVIDIA ShadowPlay 10.10.5 (Version: 10.10.5) NVIDIA Stereoscopic 3D Driver (x32 Version: NVIDIA Systemsteuerung 331.82 (Version: 331.82) NVIDIA Update 10.10.5 (Version: 10.10.5) NVIDIA Update Core (Version: 10.10.5) NVIDIA Virtual Audio 1.2.12 (Version: 1.2.12) Origin (x32 Version: Pando Media Booster (x32 Version: PunkBuster Services (x32 Version: 0.993) Rainmeter (x32 Version: 2.4 r1678) Razer Mamba (x32 Version: 2.01.05) Razer Megalodon Firmware Updater (x32 Version: 2.12.02) Razer Synapse 2.0 (x32 Version: 1.5.18) Realtek High Definition Audio Driver (x32 Version: Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: Sacred 2 Gold (x32) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32) SHIELD Streaming (Version: 1.6.75) Skype Click to Call (x32 Version: 5.10.9560) Skype™ 6.10 (x32 Version: 6.10.104) Steam (x32 Version: Studie zur Verbesserung von HP Officejet 6600 Produkten (Version: 25.0.619.0) Team Fortress 2 (x32) TeamSpeak 3 Client (HKCU Version: Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (x32) Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition (x32) Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition (x32) Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (x32) Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (x32) Update for Microsoft Word 2010 (KB2827323) 32-Bit Edition (x32) Warcraft III (x32) ==================== Restore Points ========================= 03-12-2013 14:00:11 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2013-06-25 16:27 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {0FBDAA31-E66F-4320-B674-1ACAC1C4E177} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-05-11] (Adobe Systems Incorporated) Task: {5083AA73-3729-411E-B68E-F1380F658960} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [2011-03-24] (Hewlett-Packard) Task: {6B2FFB2F-4FF8-4BD7-8DF4-E18F460D6AD1} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2013-01-23] () Task: {A1E29D82-9CB9-4A34-A4F1-DC80B70FAFB8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-18] (Adobe Systems Incorporated) Task: {B4D70004-CEA2-4D20-BF2E-C595D989E33E} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe Task: {B859BC22-EDAF-42AC-9D6C-D21C89B622CD} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd) Task: {C3C7196B-FEED-4B1F-A1CD-C15CCEA1B4F6} - System32\Tasks\HPCustParticipation HP Officejet 6600 => C:\Program Files\HP\HP Officejet 6600\Bin\HPCustPartic.exe [2011-09-09] (Hewlett-Packard Co.) Task: {C74E41DC-8BB7-4D28-A603-23FD324EDB60} - System32\Tasks\{8988545C-562D-413A-BC86-6818C950A893} => Firefox.exe hxxp://ui.skype.com/ui/0/ Task: {DE144AFD-ABFC-4428-8ED3-E5261FA200A4} - System32\Tasks\Google Updater and Installer => C:\Users\alex\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2013-04-16 08:28 - 2013-11-11 16:02 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2012-11-04 15:25 - 2012-11-04 15:25 - 00736968 _____ () C:\Program Files\Rainmeter\Rainmeter.dll 2012-11-04 15:24 - 2012-11-04 15:24 - 00499712 _____ () C:\Program Files\Rainmeter\Plugins\NowPlaying.dll 2012-11-04 15:23 - 2012-11-04 15:23 - 00011776 _____ () C:\Program Files\Rainmeter\Plugins\RecycleManager.dll 2012-11-04 15:23 - 2012-11-04 15:23 - 00011776 _____ () C:\Program Files\Rainmeter\Plugins\PowerPlugin.dll 2012-11-04 15:23 - 2012-11-04 15:23 - 00056832 _____ () C:\Program Files\Rainmeter\Plugins\WebParser.dll 2012-08-17 20:39 - 2013-07-24 07:45 - 01310136 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\kpcengine.2.2.dll 2012-08-17 20:38 - 2012-08-17 20:38 - 00479160 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\dblite.dll 2013-01-16 17:01 - 2013-01-16 17:01 - 00069632 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll 2013-01-16 17:00 - 2013-01-16 17:00 - 00061440 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll 2013-01-16 17:01 - 2013-01-16 17:01 - 00229376 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll 2013-01-16 17:00 - 2013-01-16 17:00 - 00143360 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll 2013-01-16 17:01 - 2013-01-16 17:01 - 00348160 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll 2011-04-30 20:04 - 2011-04-30 20:04 - 00013312 _____ () C:\Program Files (x86)\MSI Afterburner\RTTSH.dll 2013-11-05 23:43 - 2013-11-29 17:55 - 00622368 _____ () C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvGpuInterface.dll 2013-11-16 10:40 - 2013-11-16 10:40 - 03363952 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2013-11-18 09:48 - 2013-11-18 09:48 - 16237448 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/02/2013 00:45:38 AM) (Source: Application Hang) (User: ) Description: Programm sacred2.exe, Version kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 15dc Startzeit: 01ceeeef42e296f7 Endzeit: 1041 Anwendungspfad: C:\Program Files (x86)\Steam\steamapps\common\Sacred 2 Gold\system\sacred2.exe Berichts-ID: Error: (11/20/2013 10:49:34 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Rainmeter.exe, Version:, Zeitstempel: 0x50967a4e Name des fehlerhaften Moduls: NowPlaying.dll, Version:, Zeitstempel: 0x50967aa9 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000016dd7 ID des fehlerhaften Prozesses: 0x610 Startzeit der fehlerhaften Anwendung: 0xRainmeter.exe0 Pfad der fehlerhaften Anwendung: Rainmeter.exe1 Pfad des fehlerhaften Moduls: Rainmeter.exe2 Berichtskennung: Rainmeter.exe3 Error: (11/14/2013 04:24:17 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Name des fehlerhaften Moduls: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Ausnahmecode: 0xc0000005 Fehleroffset: 0x009b615b ID des fehlerhaften Prozesses: 0x19ac Startzeit der fehlerhaften Anwendung: 0xbf4_x86.exe0 Pfad der fehlerhaften Anwendung: bf4_x86.exe1 Pfad des fehlerhaften Moduls: bf4_x86.exe2 Berichtskennung: bf4_x86.exe3 Error: (11/14/2013 02:15:39 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Name des fehlerhaften Moduls: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Ausnahmecode: 0xc0000005 Fehleroffset: 0x00a50513 ID des fehlerhaften Prozesses: 0x1058 Startzeit der fehlerhaften Anwendung: 0xbf4_x86.exe0 Pfad der fehlerhaften Anwendung: bf4_x86.exe1 Pfad des fehlerhaften Moduls: bf4_x86.exe2 Berichtskennung: bf4_x86.exe3 Error: (11/14/2013 00:22:43 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Name des fehlerhaften Moduls: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Ausnahmecode: 0xc0000005 Fehleroffset: 0x00a1dc70 ID des fehlerhaften Prozesses: 0x1508 Startzeit der fehlerhaften Anwendung: 0xbf4_x86.exe0 Pfad der fehlerhaften Anwendung: bf4_x86.exe1 Pfad des fehlerhaften Moduls: bf4_x86.exe2 Berichtskennung: bf4_x86.exe3 Error: (11/12/2013 11:38:16 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Name des fehlerhaften Moduls: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Ausnahmecode: 0xc0000005 Fehleroffset: 0x003755d9 ID des fehlerhaften Prozesses: 0x1764 Startzeit der fehlerhaften Anwendung: 0xbf4_x86.exe0 Pfad der fehlerhaften Anwendung: bf4_x86.exe1 Pfad des fehlerhaften Moduls: bf4_x86.exe2 Berichtskennung: bf4_x86.exe3 Error: (11/08/2013 10:44:03 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Name des fehlerhaften Moduls: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Ausnahmecode: 0xc0000005 Fehleroffset: 0x0059fc09 ID des fehlerhaften Prozesses: 0x16a4 Startzeit der fehlerhaften Anwendung: 0xbf4_x86.exe0 Pfad der fehlerhaften Anwendung: bf4_x86.exe1 Pfad des fehlerhaften Moduls: bf4_x86.exe2 Berichtskennung: bf4_x86.exe3 Error: (11/08/2013 10:32:22 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Name des fehlerhaften Moduls: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Ausnahmecode: 0xc0000005 Fehleroffset: 0x005e9010 ID des fehlerhaften Prozesses: 0x654 Startzeit der fehlerhaften Anwendung: 0xbf4_x86.exe0 Pfad der fehlerhaften Anwendung: bf4_x86.exe1 Pfad des fehlerhaften Moduls: bf4_x86.exe2 Berichtskennung: bf4_x86.exe3 Error: (11/07/2013 09:31:41 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Name des fehlerhaften Moduls: d3d11.dll, Version: 6.2.9200.16570, Zeitstempel: 0x5153774d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0008eae6 ID des fehlerhaften Prozesses: 0x11e8 Startzeit der fehlerhaften Anwendung: 0xbf4_x86.exe0 Pfad der fehlerhaften Anwendung: bf4_x86.exe1 Pfad des fehlerhaften Moduls: bf4_x86.exe2 Berichtskennung: bf4_x86.exe3 Error: (11/07/2013 06:39:23 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Name des fehlerhaften Moduls: bf4_x86.exe, Version:, Zeitstempel: 0x526b90bd Ausnahmecode: 0xc0000005 Fehleroffset: 0x00a1db21 ID des fehlerhaften Prozesses: 0x11ec Startzeit der fehlerhaften Anwendung: 0xbf4_x86.exe0 Pfad der fehlerhaften Anwendung: bf4_x86.exe1 Pfad des fehlerhaften Moduls: bf4_x86.exe2 Berichtskennung: bf4_x86.exe3 System errors: ============= Error: (12/03/2013 03:00:35 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Internet Explorer 11 für Windows 7 für x64-basierte Systeme Error: (12/03/2013 05:13:40 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Internet Explorer 11 für Windows 7 für x64-basierte Systeme Error: (12/03/2013 05:12:43 AM) (Source: WMPNetworkSvc) (User: ) Description: Dienst "WMPNetworkSvc" konnte nicht ordnungsgemäß gestartet werden, da ein Fehler "0x80070422" in "CoCreateInstance(CLSID_UPnPDeviceFinder)" aufgetreten ist. Überprüfen Sie, ob der Dienst "UPnPHost" ausgeführt wird und ob die Windows-Komponente "UPnPHost" richtig installiert ist. Error: (12/03/2013 05:12:43 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (12/03/2013 05:12:32 AM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom Error: (12/03/2013 05:12:25 AM) (Source: Application Popup) (User: ) Description: Treiber PCI hat eine ungültige ID für das untergeordnete Gerät (BA870010B5DF0E0080) zurückgegeben. Error: (12/03/2013 05:12:25 AM) (Source: Application Popup) (User: ) Description: Treiber PCI hat eine ungültige ID für das untergeordnete Gerät (BA870010B5DF0E0040) zurückgegeben. Error: (12/03/2013 05:12:24 AM) (Source: Application Popup) (User: ) Description: Treiber PCI hat eine ungültige ID für das untergeordnete Gerät (FFFFFFFFFFFFFFFF00) zurückgegeben. Error: (12/03/2013 05:12:24 AM) (Source: Application Popup) (User: ) Description: Treiber PCI hat eine ungültige ID für das untergeordnete Gerät (UBA870010B5DF0E0000) zurückgegeben. Error: (12/03/2013 05:07:29 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Internet Explorer 11 für Windows 7 für x64-basierte Systeme Microsoft Office Sessions: ========================= Error: (12/02/2013 00:45:38 AM) (Source: Application Hang)(User: ) Description: sacred2.exe2.65.2.015dc01ceeeef42e296f71041C:\Program Files (x86)\Steam\steamapps\common\Sacred 2 Gold\system\sacred2.exe Error: (11/20/2013 10:49:34 PM) (Source: Application Error)(User: ) Description: Rainmeter.exe2.4.0.167850967a4eNowPlaying.dll1.1.5.050967aa9c00000050000000000016dd761001cee5d8c4021ba1C:\Program Files\Rainmeter\Rainmeter.exeC:\Program Files\Rainmeter\Plugins\NowPlaying.dlla48c0659-522d-11e3-80b0-e0cb4e8b8e4b Error: (11/14/2013 04:24:17 AM) (Source: Application Error)(User: ) Description: bf4_x86.exe1.0.0.0526b90bdbf4_x86.exe1.0.0.0526b90bdc0000005009b615b19ac01cee0e74ef8fd0eC:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exeC:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe3dbbbbce-4cdc-11e3-8aee-e0cb4e8b8e4b Error: (11/14/2013 02:15:39 AM) (Source: Application Error)(User: ) Description: bf4_x86.exe1.0.0.0526b90bdbf4_x86.exe1.0.0.0526b90bdc000000500a50513105801cee0d53ab7e66dC:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exeC:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe458406f5-4cca-11e3-8aee-e0cb4e8b8e4b Error: (11/14/2013 00:22:43 AM) (Source: Application Error)(User: ) Description: bf4_x86.exe1.0.0.0526b90bdbf4_x86.exe1.0.0.0526b90bdc000000500a1dc70150801cee0c6fc8b0ca0C:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exeC:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe7e9ae912-4cba-11e3-8aee-e0cb4e8b8e4b Error: (11/12/2013 11:38:16 PM) (Source: Application Error)(User: ) Description: bf4_x86.exe1.0.0.0526b90bdbf4_x86.exe1.0.0.0526b90bdc0000005003755d9176401cedff617514508C:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exeC:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe1ee957ad-4beb-11e3-b026-e0cb4e8b8e4b Error: (11/08/2013 10:44:03 AM) (Source: Application Error)(User: ) Description: bf4_x86.exe1.0.0.0526b90bdbf4_x86.exe1.0.0.0526b90bdc00000050059fc0916a401cedc6575ca1112C:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exeC:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe4d21bf99-485a-11e3-af68-e0cb4e8b8e4b Error: (11/08/2013 10:32:22 AM) (Source: Application Error)(User: ) Description: bf4_x86.exe1.0.0.0526b90bdbf4_x86.exe1.0.0.0526b90bdc0000005005e901065401cedc65215cbd49C:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exeC:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exeaac9c776-4858-11e3-af68-e0cb4e8b8e4b Error: (11/07/2013 09:31:41 AM) (Source: Application Error)(User: ) Description: bf4_x86.exe1.0.0.0526b90bdd3d11.dll6.2.9200.165705153774dc00000050008eae611e801cedb8e4757e943C:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exeC:\Windows\system32\d3d11.dll064dae42-4787-11e3-90f7-e0cb4e8b8e4b Error: (11/07/2013 06:39:23 AM) (Source: Application Error)(User: ) Description: bf4_x86.exe1.0.0.0526b90bdbf4_x86.exe1.0.0.0526b90bdc000000500a1db2111ec01cedb7a08edb6cfC:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exeC:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exef4557e2b-476e-11e3-90f7-e0cb4e8b8e4b CodeIntegrity Errors: =================================== Date: 2013-12-03 00:36:50.069 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-03 00:36:50.068 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-03 00:36:50.067 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-03 00:36:50.064 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-03 00:36:50.062 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-03 00:36:50.061 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 00:30:46.114 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 00:30:46.113 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 00:30:46.111 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 00:30:46.108 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 30% Total physical RAM: 8116.18 MB Available physical RAM: 5626.34 MB Total Pagefile: 14795.79 MB Available Pagefile: 12050.21 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.69 GB) (Free:9.3 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 983FA1FB) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=112 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
Zitat:
![]() | #5 |
![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. Ich habe dazu schonmal 1-2 Foreneinträge gemacht, jedesmal der gleiche 'Virus'. Da mein system beidesmale nicht negativ beinträchtigt ist, und ich die eigentlich Ursache gefunden hab trat er auch nicht mehr auf. Es war: mozilla-temp-31806 Nicht desinfizierte Objekte: HiddenObject.Multi.Generic 22.11.2013 17:13:18 c:\Documents and Settings\alex\AppData\Local\Temp\mozilla-temp-files\ Zurückgestellt Untersuchung des Computers und mozilla-temp-31806 Gefunden: HiddenObject.Multi.Generic 22.11.2013 17:13:18 c:\Documents and Settings\alex\AppData\Local\Temp\mozilla-temp-files\ Protokolliert Untersuchung des Computers Jedesmal einen Beitrag im Forum will ich nun auch nicht machen. EDIT: Ich hab in Firefox eingestellt, das wenn der Browser geschlossen wird, nichts gespeichert wird. Seit dem Zeitpunkt traten die Meldungen nicht mehr auf. |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. Malwarebytes Anti-Rootkit (MBAR) Downloade dir bitte ![]()
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers
Malwarebytes Anti-Rootkit (MBAR)

Downloade dir bitte
![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. MBAR- Log: Code:
ATTFilter Malwarebytes Anti-Rootkit BETA www.malwarebytes.org Database version: v2013.12.03.08 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16736 alex :: ALEX-PC [administrator] 03.12.2013 22:45:38 mbar-log-2013-12-03 (22-45-38).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 232311 Time elapsed: 6 minute(s), 41 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) |
![]() | #8 |
Adware/Junkware/Toolbars entfernen

1. Schritt: adwCleaner

Downloade Dir bitte
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. adwCleaner-Log: Code:
ATTFilter # AdwCleaner v3.014 - Bericht erstellt am 03/12/2013 um 23:25:35 # Updated 01/12/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : alex - ALEX-PC # Gestartet von : C:\Users\alex\Downloads\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.16736 -\\ Mozilla Firefox v25.0.1 (de) [ Datei : C:\Users\alex\AppData\Roaming\Mozilla\Firefox\Profiles\l3fiemti.default\prefs.js ] -\\ Google Chrome v [ Datei : C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [2657 octets] - [09/09/2013 05:14:46] AdwCleaner[R1].txt - [1234 octets] - [21/10/2013 22:53:13] AdwCleaner[R2].txt - [1151 octets] - [03/12/2013 23:24:55] AdwCleaner[S0].txt - [2718 octets] - [09/09/2013 05:16:11] AdwCleaner[S1].txt - [1295 octets] - [21/10/2013 22:54:06] AdwCleaner[S2].txt - [1073 octets] - [03/12/2013 23:25:35] ########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1133 octets] ########## JRT-Log: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.0.8 (11.05.2013:1) OS: Windows 7 Home Premium x64 Ran by alex on 03.12.2013 at 23:31:09,83 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin" ~~~ FireFox Emptied folder: C:\Users\alex\AppData\Roaming\mozilla\firefox\profiles\l3fiemti.default\minidumps [18 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 03.12.2013 at 23:35:26,82 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-12-2013 02 Ran by alex (administrator) on ALEX-PC on 03-12-2013 23:37:40 Running from C:\Users\alex\Desktop\FRST Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe () C:\Program Files\Rainmeter\Rainmeter.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Intel(R) Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12681320 2011-08-26] (Realtek Semiconductor) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2273056 2013-11-29] (NVIDIA Corporation) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20549280 2013-10-21] (Skype Technologies S.A.) HKCU\...\Policies\system: [LogonHoursAction] 2 HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO) Startup: C:\Users\alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\alex\AppData\Roaming\Mozilla\Firefox\Profiles\l3fiemti.default FF DefaultSearchEngine: Google FF SelectedSearchEngine: Google FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll () FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=1.140.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.140.0\npesnlaunch.dll No File FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.3.1 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.1\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll No File FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @t.garena.com/garenatalk - C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll No File FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Flashblock - C:\Users\alex\AppData\Roaming\Mozilla\Firefox\Profiles\l3fiemti.default\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a} FF Extension: WOT - C:\Users\alex\AppData\Roaming\Mozilla\Firefox\Profiles\l3fiemti.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} FF Extension: noscript - C:\Users\alex\AppData\Roaming\Mozilla\Firefox\Profiles\l3fiemti.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: No Name - C:\Users\alex\AppData\Roaming\Mozilla\Firefox\Profiles\l3fiemti.default\Extensions\{99B98C2C-7274-45a3-A640-D9DF1A1C8460}.xpi FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird Chrome: ======= CHR DefaultSearchURL: (Delta Search) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding} CHR DefaultSuggestURL: (Delta Search) - "suggest_url": "" CHR Plugin: (Shockwave Flash) - C:\Users\alex\AppData\Local\Google\Chrome\Application\27.0.1453.94\PepperFlash\pepflashplayer.dll No File CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\alex\AppData\Local\Google\Chrome\Application\27.0.1453.94\ppGoogleNaClPluginChrome.dll No File CHR Plugin: (Chrome PDF Viewer) - C:\Users\alex\AppData\Local\Google\Chrome\Application\27.0.1453.94\pdf.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (ESN Launch Mozilla Plugin) - C:\Program Files (x86)\Battlelog Web Plugins\1.140.0\npesnlaunch.dll No File CHR Plugin: (ESN Launch Mozilla Plugin) - C:\Program Files (x86)\Battlelog Web Plugins\2.1.3\npesnlaunch.dll No File CHR Plugin: (Java(TM) Platform SE 7 U21) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll No File CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) CHR Plugin: (Google Update) - C:\Users\alex\AppData\Local\Google\Update\\npGoogleUpdate3.dll No File CHR Plugin: (Raidcall plugin) - C:\Users\alex\AppData\Roaming\raidcall\plugins\nprcplugin.dll (Raidcall) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll No File CHR Plugin: (Java Deployment Toolkit - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File CHR Extension: (Docs) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\ CHR Extension: (Google Drive) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0 CHR Extension: (YouTube) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0 CHR Extension: (Google Search) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\ CHR Extension: (Kaspersky URL Advisor) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\ CHR Extension: (Safe Money) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\ CHR Extension: (Virtual Keyboard) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\ CHR Extension: (Gmail) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR Extension: (Anti-Banner) - C:\Users\alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\ CHR HKLM-x32\...\Chrome\Extension: [aakchaleigkohafkfjfjbblobjifikek] - C:\Users\alex\AppData\LocalLow\proxtube\CHROME\proxtube.crx CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\urladvisor.crx CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\online_banking_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\content_blocker_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\virtkbd.crx CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\ab.crx ==================== Services (Whitelisted) ================= R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1370912 2013-11-29] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15128352 2013-11-29] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-11-09] () R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [15888 2013-02-11] (Intel(R) Corporation) ==================== Drivers (Whitelisted) ==================== R3 AcpiCtlDrv; C:\Windows\System32\DRIVERS\AcpiCtlDrv.sys [25880 2012-07-17] (Intel Corporation) S3 bulkadi; C:\Windows\System32\DRIVERS\bulkrazer_x64.sys [25088 2011-02-09] (Windows (R) Codename Longhorn DDK provider) S3 EfiVariable; C:\Windows\SysWOW64\Drivers\variable64.sys [18200 2010-10-28] (Windows (R) Server 2003 DDK provider) R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [29672 2013-01-19] (REALiX(tm)) R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [25448 2013-01-07] (Intel Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [7717984 2013-10-10] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [626272 2013-10-10] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-10] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-10] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-07-24] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-07-24] (Kaspersky Lab ZAO) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-10-30] (NVIDIA Corporation) R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-01-23] () R3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [22016 2012-09-18] (Razer USA Ltd) S3 ALSysIO; \??\C:\Users\alex\AppData\Local\Temp\ALSysIO64.sys [x] U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys [x] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys [x] U5 klflt; C:\Windows\System32\Drivers\klflt.sys [90208 2013-07-24] (Kaspersky Lab ZAO) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-03 23:35 - 2013-12-03 23:35 - 00000825 _____ C:\Users\alex\Desktop\JRT.txt 2013-12-03 23:24 - 2013-12-03 23:24 - 01110034 _____ C:\Users\alex\Downloads\adwcleaner.exe 2013-12-03 23:24 - 2013-12-03 23:24 - 01034531 _____ (Thisisu) C:\Users\alex\Downloads\JRT.exe 2013-12-03 22:45 - 2013-12-03 22:45 - 00116440 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2013-12-03 22:44 - 2013-12-03 22:56 - 00000000 ____D C:\Users\alex\Desktop\mbar 2013-12-03 22:44 - 2013-12-03 22:44 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2013-12-03 22:43 - 2013-12-03 22:44 - 12576792 _____ (Malwarebytes Corp.) C:\Users\alex\Downloads\mbar- 2013-12-03 15:54 - 2013-12-03 23:37 - 00000000 ____D C:\Users\alex\Desktop\FRST 2013-12-03 15:53 - 2013-12-03 15:54 - 00054090 _____ C:\Users\alex\Downloads\FRST.txt 2013-12-03 06:40 - 2013-10-30 18:03 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-12-03 06:40 - 2013-10-30 18:02 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-12-03 05:05 - 2013-12-03 05:05 - 00347304 _____ (Microsoft Corporation) C:\Users\alex\Downloads\MicrosoftFixit.IEPerformance.Run.exe 2013-12-03 01:28 - 2013-12-03 01:28 - 12999313 _____ C:\Users\alex\Downloads\Casey Connelly - Imgur.zip 2013-12-02 07:19 - 2013-12-02 07:19 - 16422740 _____ C:\Users\alex\Downloads\realbarbielifts - Imgur(1).zip 2013-12-02 06:29 - 2013-12-02 06:29 - 02520182 _____ C:\Users\alex\Downloads\Album 4HhzQ - Imgur.zip 2013-12-02 03:42 - 2013-12-02 03:42 - 01371376 _____ C:\Users\alex\Downloads\faucheer - Imgur.zip 2013-12-02 00:41 - 2013-12-02 00:42 - 00000000 ____D C:\Users\alex\Downloads\Sacred_Tool_v4.03 2013-12-02 00:41 - 2013-12-02 00:41 - 02304306 _____ C:\Users\alex\Downloads\Sacred_Tool_v4.03.7z 2013-12-01 21:38 - 2013-12-01 21:38 - 00000000 ____D C:\Users\alex\AppData\Local\Ascaron Entertainment 2013-11-29 00:55 - 2013-11-29 00:55 - 01327845 _____ C:\Users\alex\Downloads\body so tight - Imgur.zip 2013-11-28 17:03 - 2013-11-28 17:04 - 242396304 _____ C:\Users\alex\Desktop\Jon Bellion - Jim Morrison.avi 2013-11-28 17:00 - 2013-11-28 17:00 - 32004832 _____ (DVDVideoSoft Ltd. ) C:\Users\alex\Downloads\FreeYouTubeDownload- 2013-11-26 17:12 - 2013-11-26 17:12 - 01001781 _____ C:\Users\alex\Downloads\HUDASIscariote_beta_v.1.5.2_.7z 2013-11-26 17:12 - 2013-11-26 17:12 - 00000000 ____D C:\Users\alex\Downloads\HUDASIscariote_beta_v.1.5.2_ 2013-11-26 17:11 - 2013-11-26 17:11 - 00009432 _____ C:\Users\alex\Downloads\Scoreboard%20%5B16%3B9%20only%5D.zip 2013-11-26 02:52 - 2013-12-03 15:00 - 00114029 _____ C:\Windows\IE11_main.log 2013-11-22 23:34 - 2013-11-22 23:34 - 09973941 _____ C:\Users\alex\Downloads\The Ass Gallery - Imgur.zip 2013-11-22 19:30 - 2013-11-22 20:07 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-11-22 19:30 - 2013-11-22 19:30 - 00001144 _____ C:\Users\Public\Desktop\Diablo III.lnk 2013-11-22 19:29 - 2013-11-22 19:30 - 33120428 _____ (Blizzard Entertainment) C:\Users\alex\Downloads\Diablo-III-Setup-enGB(1).exe.part 2013-11-22 19:28 - 2013-11-22 19:29 - 40048216 _____ (Blizzard Entertainment) C:\Users\alex\Downloads\Diablo-III-Setup-enGB.exe 2013-11-22 02:37 - 2013-11-14 12:56 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 18293608 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-22 02:37 - 2013-11-14 12:56 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00357152 _____ C:\Windows\system32\NvIFROpenGL.dll 2013-11-22 02:37 - 2013-11-14 12:56 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll 2013-11-22 01:20 - 2013-11-22 01:20 - 16422740 _____ C:\Users\alex\Downloads\realbarbielifts - Imgur.zip 2013-11-20 17:51 - 2013-11-20 17:51 - 20648422 _____ C:\Users\alex\Downloads\danni - Imgur.zip 2013-11-20 00:37 - 2013-11-20 00:37 - 00000000 ____D C:\Users\alex\Downloads\Cute Girl Danni - Imgur 2013-11-19 00:32 - 2013-11-19 00:32 - 00000000 ____D C:\Users\alex\AppData\Roaming\openvr 2013-11-17 20:27 - 2013-11-17 20:27 - 00045120 _____ C:\Users\alex\Downloads\dota_vpk.zip 2013-11-16 10:40 - 2013-11-16 10:40 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-15 23:31 - 2013-11-15 23:31 - 12331571 _____ C:\Users\alex\Downloads\Cute Girl Danni - Imgur.zip 2013-11-14 21:51 - 2013-11-14 21:51 - 00071108 _____ C:\s1bg 2013-11-14 21:34 - 2013-11-14 21:34 - 00071108 _____ C:\s3ho 2013-11-14 16:25 - 2013-11-14 16:25 - 03820824 _____ C:\Users\alex\Downloads\battlelog-web-plugins_2.3.1_125.exe 2013-11-14 15:01 - 2013-10-12 09:45 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-14 15:01 - 2013-10-12 09:45 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-14 15:01 - 2013-10-12 09:45 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-14 15:01 - 2013-10-12 09:43 - 19269632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-14 15:01 - 2013-10-12 09:43 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-14 15:01 - 2013-10-12 08:03 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-14 15:01 - 2013-10-12 08:03 - 01138176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 14355968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-14 15:01 - 2013-10-12 08:02 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-14 15:01 - 2013-10-12 07:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-14 15:01 - 2013-10-12 07:08 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-14 15:01 - 2013-10-12 06:44 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-14 15:01 - 2013-10-12 06:15 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-13 17:05 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-13 17:05 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-11-13 17:04 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-13 17:04 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-13 17:04 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-13 17:04 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-11-13 17:04 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-11-13 17:04 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-11-13 17:04 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-11-13 17:04 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-11-13 17:04 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-11-13 17:04 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-11-13 17:04 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-11-13 17:04 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-13 17:04 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-11-13 17:04 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-11-13 17:04 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-11-13 17:04 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-11-13 17:04 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-11-13 17:04 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-11-13 17:04 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-11-13 17:04 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-11-13 17:04 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-11-13 17:04 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-11-13 17:04 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-11-13 17:04 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-11-13 17:04 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-11-13 17:04 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-11-13 17:04 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-11-13 17:04 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-11-11 16:41 - 2013-11-11 16:41 - 00030402 _____ C:\Users\alex\Downloads\Attribute Spells.w3x 2013-11-11 16:26 - 2013-11-11 16:50 - 01520313 _____ C:\Users\alex\Downloads\10 Hero Siege Ice Catus.w3x 2013-11-11 08:59 - 2013-11-11 08:59 - 00590112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-11-11 03:13 - 2013-11-11 03:13 - 00012916 _____ C:\Users\alex\Downloads\test5.w3x 2013-11-08 23:56 - 2013-11-08 23:56 - 00000835 _____ C:\Users\alex\Downloads\allchant5-318-1-4.rar 2013-11-08 23:56 - 2013-11-08 23:56 - 00000000 ____D C:\Users\alex\Downloads\allchant5-318-1-4 2013-11-08 23:53 - 2013-11-08 23:53 - 00000000 ____D C:\Users\alex\Downloads\BOSS v2.1.1 Archive 2013-11-08 23:52 - 2013-11-08 23:52 - 02885631 _____ C:\Users\alex\Downloads\BOSS v2.1.1 Archive.7z 2013-11-08 20:46 - 2013-11-08 20:46 - 01602852 _____ C:\Users\alex\Downloads\TERA Deathskin - Bombshell BBP.7z 2013-11-08 20:46 - 2013-11-08 20:46 - 01242731 _____ C:\Users\alex\Downloads\TERA Berserker Metal - Bombshell BBP.7z 2013-11-08 20:45 - 2013-11-08 20:45 - 01779657 _____ C:\Users\alex\Downloads\TERA Viridinium - Optional 7B.7z 2013-11-08 20:45 - 2013-11-08 20:45 - 01430451 _____ C:\Users\alex\Downloads\TERA Deathshell - Bombshell BBP.7z 2013-11-08 18:41 - 2013-11-08 18:41 - 19763156 _____ C:\Users\alex\Downloads\Eisen Plate Plus - Cleavage NON-BBP.7z 2013-11-08 18:38 - 2013-11-08 18:38 - 09807987 _____ C:\Users\alex\Downloads\Hentai Mixed Armor - Bombshell BBP.7z 2013-11-08 18:20 - 2013-11-08 18:20 - 10919980 _____ C:\Users\alex\Downloads\Succubus Armor - Bombshell BBP.7z 2013-11-08 18:18 - 2013-11-08 18:18 - 09714582 _____ C:\Users\alex\Downloads\ThunderBird Armor - Bombshell BBP.7z 2013-11-08 18:16 - 2013-11-08 18:16 - 02316235 _____ C:\Users\alex\Downloads\Northgirl Armor - SevenBase BBP-46460-1-0.7z 2013-11-08 17:46 - 2013-11-08 17:46 - 00000000 ____D C:\Users\alex\Downloads\Milkdrinker Skin-24318-1-03 2013-11-08 17:45 - 2013-11-08 17:46 - 26894343 _____ C:\Users\alex\Downloads\Milkdrinker Skin-24318-1-03.7z 2013-11-08 17:43 - 2013-11-08 17:43 - 00102841 _____ C:\Users\alex\Downloads\Armored Rings 1_1-12232-1-0.zip 2013-11-08 17:32 - 2013-11-08 17:32 - 00000000 ____D C:\Users\alex\Downloads\Barbarian Skin-24318-1-04 2013-11-08 17:31 - 2013-11-08 17:31 - 24176488 _____ C:\Users\alex\Downloads\Barbarian Skin-24318-1-04.7z 2013-11-08 17:19 - 2013-11-08 17:19 - 00000000 ____D C:\Users\alex\Downloads\Installer with all SeveNBase Body options by MarkusFox-36992-1 2013-11-08 17:14 - 2013-11-08 17:15 - 30545707 _____ C:\Users\alex\Downloads\Installer with all SeveNBase Body options by MarkusFox-36992-1.7z 2013-11-08 12:37 - 2013-11-08 12:37 - 00001103 _____ C:\Users\alex\Downloads\ Cheat Files For Followers-41877-1-11.zip 2013-11-06 16:41 - 2013-11-06 16:41 - 00292184 _____ (Microsoft Corporation) C:\Users\alex\Downloads\dxwebsetup.exe 2013-11-05 23:45 - 2013-10-23 11:30 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433165.dll 2013-11-05 23:45 - 2013-10-23 11:30 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433165.dll 2013-11-05 23:45 - 2013-01-29 09:35 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll 2013-11-05 23:43 - 2013-11-29 17:56 - 01096480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-05 23:43 - 2013-11-29 17:56 - 00979744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-05 23:36 - 2013-11-05 23:37 - 00000000 ____D C:\Users\alex\Documents\Battlefield 4 2013-11-05 23:34 - 2013-11-05 23:34 - 03820328 _____ C:\Users\alex\Downloads\battlelog-web-plugins_2.3.0_119.exe ==================== One Month Modified Files and Folders ======= 2013-12-03 23:37 - 2013-12-03 15:54 - 00000000 ____D C:\Users\alex\Desktop\FRST 2013-12-03 23:36 - 2009-07-14 05:45 - 00021856 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-03 23:36 - 2009-07-14 05:45 - 00021856 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-03 23:35 - 2013-12-03 23:35 - 00000825 _____ C:\Users\alex\Desktop\JRT.txt 2013-12-03 23:35 - 2011-04-12 08:43 - 00699462 _____ C:\Windows\system32\perfh007.dat 2013-12-03 23:35 - 2011-04-12 08:43 - 00149602 _____ C:\Windows\system32\perfc007.dat 2013-12-03 23:35 - 2009-07-14 06:13 - 01620812 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-03 23:32 - 2012-05-18 20:22 - 01628016 _____ C:\Windows\WindowsUpdate.log 2013-12-03 23:31 - 2012-10-22 13:58 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-03 23:29 - 2013-09-09 05:17 - 00024646 _____ C:\Windows\setupact.log 2013-12-03 23:29 - 2013-04-16 08:32 - 00000000 ____D C:\ProgramData\NVIDIA 2013-12-03 23:29 - 2012-08-29 14:13 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-12-03 23:29 - 2012-06-02 02:35 - 00000000 ____D C:\Users\alex\AppData\Roaming\Skype 2013-12-03 23:29 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-03 23:28 - 2013-09-09 05:14 - 00000000 ____D C:\AdwCleaner 2013-12-03 23:27 - 2012-12-30 08:15 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner 2013-12-03 23:24 - 2013-12-03 23:24 - 01110034 _____ C:\Users\alex\Downloads\adwcleaner.exe 2013-12-03 23:24 - 2013-12-03 23:24 - 01034531 _____ (Thisisu) C:\Users\alex\Downloads\JRT.exe 2013-12-03 23:24 - 2013-10-17 23:25 - 00003018 _____ C:\Windows\System32\Tasks\MSIAfterburner 2013-12-03 22:56 - 2013-12-03 22:44 - 00000000 ____D C:\Users\alex\Desktop\mbar 2013-12-03 22:56 - 2013-06-19 15:45 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2013-12-03 22:45 - 2013-12-03 22:45 - 00116440 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2013-12-03 22:44 - 2013-12-03 22:44 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2013-12-03 22:44 - 2013-12-03 22:43 - 12576792 _____ (Malwarebytes Corp.) C:\Users\alex\Downloads\mbar- 2013-12-03 20:30 - 2012-05-18 20:36 - 00000000 ____D C:\Program Files (x86)\Steam 2013-12-03 15:54 - 2013-12-03 15:53 - 00054090 _____ C:\Users\alex\Downloads\FRST.txt 2013-12-03 15:00 - 2013-11-26 02:52 - 00114029 _____ C:\Windows\IE11_main.log 2013-12-03 11:40 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-03 06:41 - 2013-05-20 14:12 - 00000000 ____D C:\Users\alex\AppData\Local\NVIDIA 2013-12-03 06:41 - 2012-06-03 00:18 - 00000000 ____D C:\Users\alex\AppData\Local\NVIDIA Corporation 2013-12-03 06:40 - 2013-04-16 08:28 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-12-03 06:40 - 2013-04-15 20:37 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-12-03 06:40 - 2012-05-18 20:48 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-12-03 05:12 - 2013-09-10 18:34 - 00185418 _____ C:\Windows\PFRO.log 2013-12-03 05:05 - 2013-12-03 05:05 - 00347304 _____ (Microsoft Corporation) C:\Users\alex\Downloads\MicrosoftFixit.IEPerformance.Run.exe 2013-12-03 04:58 - 2012-09-02 20:40 - 01594156 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-12-03 04:56 - 2012-09-15 11:13 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-12-03 01:28 - 2013-12-03 01:28 - 12999313 _____ C:\Users\alex\Downloads\Casey Connelly - Imgur.zip 2013-12-02 16:03 - 2013-08-08 16:40 - 00001894 _____ C:\Users\alex\Desktop\tatoos.txt 2013-12-02 07:19 - 2013-12-02 07:19 - 16422740 _____ C:\Users\alex\Downloads\realbarbielifts - Imgur(1).zip 2013-12-02 06:29 - 2013-12-02 06:29 - 02520182 _____ C:\Users\alex\Downloads\Album 4HhzQ - Imgur.zip 2013-12-02 03:42 - 2013-12-02 03:42 - 01371376 _____ C:\Users\alex\Downloads\faucheer - Imgur.zip 2013-12-02 00:42 - 2013-12-02 00:41 - 00000000 ____D C:\Users\alex\Downloads\Sacred_Tool_v4.03 2013-12-02 00:41 - 2013-12-02 00:41 - 02304306 _____ C:\Users\alex\Downloads\Sacred_Tool_v4.03.7z 2013-12-01 21:38 - 2013-12-01 21:38 - 00000000 ____D C:\Users\alex\AppData\Local\Ascaron Entertainment 2013-12-01 21:38 - 2013-09-09 12:15 - 00217380 _____ C:\Windows\DirectX.log 2013-12-01 21:01 - 2013-09-11 14:53 - 00000000 ____D C:\Program Files (x86)\Warcraft III 2013-11-29 17:56 - 2013-11-05 23:43 - 01096480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-29 17:56 - 2013-11-05 23:43 - 00979744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-29 00:55 - 2013-11-29 00:55 - 01327845 _____ C:\Users\alex\Downloads\body so tight - Imgur.zip 2013-11-28 17:05 - 2012-06-11 04:19 - 00000000 ____D C:\Users\alex\AppData\Roaming\DVDVideoSoft 2013-11-28 17:04 - 2013-11-28 17:03 - 242396304 _____ C:\Users\alex\Desktop\Jon Bellion - Jim Morrison.avi 2013-11-28 17:00 - 2013-11-28 17:00 - 32004832 _____ (DVDVideoSoft Ltd. ) C:\Users\alex\Downloads\FreeYouTubeDownload- 2013-11-26 17:12 - 2013-11-26 17:12 - 01001781 _____ C:\Users\alex\Downloads\HUDASIscariote_beta_v.1.5.2_.7z 2013-11-26 17:12 - 2013-11-26 17:12 - 00000000 ____D C:\Users\alex\Downloads\HUDASIscariote_beta_v.1.5.2_ 2013-11-26 17:11 - 2013-11-26 17:11 - 00009432 _____ C:\Users\alex\Downloads\Scoreboard%20%5B16%3B9%20only%5D.zip 2013-11-25 13:00 - 2012-05-19 00:35 - 00000000 ____D C:\Users\alex\Documents\Diablo III 2013-11-22 23:34 - 2013-11-22 23:34 - 09973941 _____ C:\Users\alex\Downloads\The Ass Gallery - Imgur.zip 2013-11-22 20:07 - 2013-11-22 19:30 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-11-22 19:30 - 2013-11-22 19:30 - 00001144 _____ C:\Users\Public\Desktop\Diablo III.lnk 2013-11-22 19:30 - 2013-11-22 19:29 - 33120428 _____ (Blizzard Entertainment) C:\Users\alex\Downloads\Diablo-III-Setup-enGB(1).exe.part 2013-11-22 19:29 - 2013-11-22 19:28 - 40048216 _____ (Blizzard Entertainment) C:\Users\alex\Downloads\Diablo-III-Setup-enGB.exe 2013-11-22 01:20 - 2013-11-22 01:20 - 16422740 _____ C:\Users\alex\Downloads\realbarbielifts - Imgur.zip 2013-11-21 22:47 - 2013-09-24 22:55 - 00000000 ____D C:\Users\alex\Desktop\Unending wisdom of 氷の竜 2013-11-21 20:46 - 2012-05-20 01:01 - 00000000 ____D C:\Users\alex\AppData\Roaming\TS3Client 2013-11-20 17:51 - 2013-11-20 17:51 - 20648422 _____ C:\Users\alex\Downloads\danni - Imgur.zip 2013-11-20 15:26 - 2013-10-22 22:26 - 00000716 _____ C:\Users\alex\Desktop\rift shit.txt 2013-11-20 00:37 - 2013-11-20 00:37 - 00000000 ____D C:\Users\alex\Downloads\Cute Girl Danni - Imgur 2013-11-19 00:32 - 2013-11-19 00:32 - 00000000 ____D C:\Users\alex\AppData\Roaming\openvr 2013-11-18 09:48 - 2012-10-22 13:58 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-11-18 09:48 - 2012-05-18 23:12 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-11-18 09:48 - 2012-05-18 23:12 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-11-18 09:48 - 2012-05-18 23:08 - 00000000 ____D C:\Users\alex\AppData\Local\Adobe 2013-11-17 22:43 - 2012-09-02 22:26 - 00291296 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-11-17 22:43 - 2012-09-02 20:38 - 00291296 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-11-17 22:30 - 2012-09-02 20:38 - 00291296 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-11-17 22:03 - 2012-10-06 11:16 - 00000000 ____D C:\Program Files (x86)\Origin 2013-11-17 20:27 - 2013-11-17 20:27 - 00045120 _____ C:\Users\alex\Downloads\dota_vpk.zip 2013-11-16 10:40 - 2013-11-16 10:40 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-15 23:31 - 2013-11-15 23:31 - 12331571 _____ C:\Users\alex\Downloads\Cute Girl Danni - Imgur.zip 2013-11-15 14:58 - 2012-10-06 13:26 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2013-11-14 21:51 - 2013-11-14 21:51 - 00071108 _____ C:\s1bg 2013-11-14 21:34 - 2013-11-14 21:34 - 00071108 _____ C:\s3ho 2013-11-14 21:34 - 2012-05-18 20:22 - 00000000 ____D C:\Users\alex\AppData\Local\VirtualStore 2013-11-14 16:25 - 2013-11-14 16:25 - 03820824 _____ C:\Users\alex\Downloads\battlelog-web-plugins_2.3.1_125.exe 2013-11-14 15:01 - 2013-08-12 05:16 - 00000000 ____D C:\Windows\system32\MRT 2013-11-14 15:00 - 2012-05-25 02:05 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-11-14 12:56 - 2013-11-22 02:37 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 18293608 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-14 12:56 - 2013-11-22 02:37 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00357152 _____ C:\Windows\system32\NvIFROpenGL.dll 2013-11-14 12:56 - 2013-11-22 02:37 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll 2013-11-14 12:56 - 2013-05-20 14:07 - 02697248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-11-14 12:56 - 2013-04-16 08:31 - 15218504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-11-14 12:56 - 2013-04-16 08:31 - 03069608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-11-14 12:56 - 2013-02-10 17:51 - 00023754 _____ C:\Windows\system32\nvinfo.pb 2013-11-14 12:56 - 2012-05-18 20:49 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-11-14 12:56 - 2012-05-18 20:49 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-11-11 16:50 - 2013-11-11 16:26 - 01520313 _____ C:\Users\alex\Downloads\10 Hero Siege Ice Catus.w3x 2013-11-11 16:41 - 2013-11-11 16:41 - 00030402 _____ C:\Users\alex\Downloads\Attribute Spells.w3x 2013-11-11 16:02 - 2013-04-16 08:28 - 06674208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-11-11 16:02 - 2013-04-16 08:28 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-11-11 16:01 - 2013-04-16 08:32 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-11-11 16:01 - 2013-04-16 08:28 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-11-11 16:01 - 2013-04-16 08:28 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-11-11 16:01 - 2013-04-16 08:28 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-11-11 08:59 - 2013-11-11 08:59 - 00590112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-11-11 05:50 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-11-11 03:13 - 2013-11-11 03:13 - 00012916 _____ C:\Users\alex\Downloads\test5.w3x 2013-11-09 21:10 - 2013-08-15 15:15 - 00000934 _____ C:\Users\Public\Desktop\Nexus Mod Manager.lnk 2013-11-09 18:54 - 2012-09-02 20:38 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-11-09 11:40 - 2012-06-02 02:35 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-11-09 11:40 - 2012-06-02 02:35 - 00000000 ____D C:\ProgramData\Skype 2013-11-08 23:56 - 2013-11-08 23:56 - 00000835 _____ C:\Users\alex\Downloads\allchant5-318-1-4.rar 2013-11-08 23:56 - 2013-11-08 23:56 - 00000000 ____D C:\Users\alex\Downloads\allchant5-318-1-4 2013-11-08 23:53 - 2013-11-08 23:53 - 00000000 ____D C:\Users\alex\Downloads\BOSS v2.1.1 Archive 2013-11-08 23:52 - 2013-11-08 23:52 - 02885631 _____ C:\Users\alex\Downloads\BOSS v2.1.1 Archive.7z 2013-11-08 20:46 - 2013-11-08 20:46 - 01602852 _____ C:\Users\alex\Downloads\TERA Deathskin - Bombshell BBP.7z 2013-11-08 20:46 - 2013-11-08 20:46 - 01242731 _____ C:\Users\alex\Downloads\TERA Berserker Metal - Bombshell BBP.7z 2013-11-08 20:45 - 2013-11-08 20:45 - 01779657 _____ C:\Users\alex\Downloads\TERA Viridinium - Optional 7B.7z 2013-11-08 20:45 - 2013-11-08 20:45 - 01430451 _____ C:\Users\alex\Downloads\TERA Deathshell - Bombshell BBP.7z 2013-11-08 18:41 - 2013-11-08 18:41 - 19763156 _____ C:\Users\alex\Downloads\Eisen Plate Plus - Cleavage NON-BBP.7z 2013-11-08 18:38 - 2013-11-08 18:38 - 09807987 _____ C:\Users\alex\Downloads\Hentai Mixed Armor - Bombshell BBP.7z 2013-11-08 18:20 - 2013-11-08 18:20 - 10919980 _____ C:\Users\alex\Downloads\Succubus Armor - Bombshell BBP.7z 2013-11-08 18:18 - 2013-11-08 18:18 - 09714582 _____ C:\Users\alex\Downloads\ThunderBird Armor - Bombshell BBP.7z 2013-11-08 18:16 - 2013-11-08 18:16 - 02316235 _____ C:\Users\alex\Downloads\Northgirl Armor - SevenBase BBP-46460-1-0.7z 2013-11-08 18:16 - 2012-05-23 15:48 - 00000000 ____D C:\Users\alex\AppData\Local\Skyrim 2013-11-08 18:16 - 2012-05-23 15:47 - 00000000 ____D C:\Users\alex\Documents\Nexus Mod Manager 2013-11-08 17:46 - 2013-11-08 17:46 - 00000000 ____D C:\Users\alex\Downloads\Milkdrinker Skin-24318-1-03 2013-11-08 17:46 - 2013-11-08 17:45 - 26894343 _____ C:\Users\alex\Downloads\Milkdrinker Skin-24318-1-03.7z 2013-11-08 17:43 - 2013-11-08 17:43 - 00102841 _____ C:\Users\alex\Downloads\Armored Rings 1_1-12232-1-0.zip 2013-11-08 17:32 - 2013-11-08 17:32 - 00000000 ____D C:\Users\alex\Downloads\Barbarian Skin-24318-1-04 2013-11-08 17:31 - 2013-11-08 17:31 - 24176488 _____ C:\Users\alex\Downloads\Barbarian Skin-24318-1-04.7z 2013-11-08 17:19 - 2013-11-08 17:19 - 00000000 ____D C:\Users\alex\Downloads\Installer with all SeveNBase Body options by MarkusFox-36992-1 2013-11-08 17:15 - 2013-11-08 17:14 - 30545707 _____ C:\Users\alex\Downloads\Installer with all SeveNBase Body options by MarkusFox-36992-1.7z 2013-11-08 12:37 - 2013-11-08 12:37 - 00001103 _____ C:\Users\alex\Downloads\ Cheat Files For Followers-41877-1-11.zip 2013-11-07 18:46 - 2013-04-14 11:50 - 00020111 _____ C:\Windows\system32\lvcoinst.log 2013-11-07 18:46 - 2013-04-14 11:50 - 00000000 ____D C:\Program Files\Common Files\logishrd 2013-11-06 16:41 - 2013-11-06 16:41 - 00292184 _____ (Microsoft Corporation) C:\Users\alex\Downloads\dxwebsetup.exe 2013-11-06 16:41 - 2012-06-18 13:47 - 00000000 ___HD C:\Windows\msdownld.tmp 2013-11-06 16:41 - 2012-06-18 13:47 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-11-05 23:40 - 2012-09-02 22:26 - 00000000 ____D C:\Users\alex\AppData\Local\PunkBuster 2013-11-05 23:37 - 2013-11-05 23:36 - 00000000 ____D C:\Users\alex\Documents\Battlefield 4 2013-11-05 23:36 - 2012-10-06 11:16 - 00000000 ____D C:\ProgramData\Origin 2013-11-05 23:34 - 2013-11-05 23:34 - 03820328 _____ C:\Users\alex\Downloads\battlelog-web-plugins_2.3.0_119.exe 2013-11-05 23:31 - 2013-04-10 10:42 - 00000000 ____D C:\ProgramData\Package Cache 2013-11-05 21:55 - 2012-10-06 11:18 - 00000000 ____D C:\Users\alex\AppData\Local\Origin 2013-11-05 21:48 - 2012-06-05 00:20 - 00000000 ____D C:\Program Files (x86)\RIFT 2013-11-04 21:20 - 2012-11-27 16:24 - 00000000 ____D C:\Program Files\Nexus Mod Manager Some content of TEMP: ==================== C:\Users\alex\AppData\Local\Temp\nv3DVStreaming.dll C:\Users\alex\AppData\Local\Temp\nvSCPAPI.dll C:\Users\alex\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\alex\AppData\Local\Temp\nvStereoApiI.dll C:\Users\alex\AppData\Local\Temp\nvStInst.exe C:\Users\alex\AppData\Local\Temp\Quarantine.exe C:\Users\alex\AppData\Local\Temp\riftuninstall.exe C:\Users\alex\AppData\Local\Temp\sonarinst.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-30 00:53 ==================== End Of Log ============================ Addition: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-12-2013 02 Ran by alex at 2013-12-03 23:38:14 Running from C:\Users\alex\Desktop\FRST Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Kaspersky Internet Security (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5} AS: Kaspersky Internet Security (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E} ==================== Installed Programs ====================== “Œ•û”ñ‘z“V‘¥ Ver1.10aƒAƒbƒvƒf[ƒg (x32) 7-Zip 9.20 (x64 edition) (Version: Adobe AIR (x32 Version: Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.152) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) AutoHotkey (Version: Battlelog Web Plugins (x32 Version: 2.3.1) CCleaner (Version: 4.02) Core Temp 1.0 RC4 (Version: 1.0) CPUID CPU-Z 1.62 CrystalDiskInfo 5.6.2 (x32 Version: 5.6.2) D2SE V2.2.0 (x32 Version: 2.2.0) Debugging Tools for Windows (x86) (x32 Version: Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32) Diablo II (x32) Diablo III (x32) ESN Sonar (x32 Version: 0.70.4) GCFScape 1.8.4 GeForce Experience NvStream Client Components (Version: 1.6.28) Hero Editor V0.96 (x32) HP Officejet 6600 - Grundlegende Software für das Gerät (Version: 25.0.619.0) HP Officejet 6600 Hilfe (x32 Version: HP Update (x32 Version: I.R.I.S. OCR (x32 Version: Intel Extreme Tuning Utility (x32 Version: Intel(R) Desktop Utilities (x32 Version: 1.0.0) Intel(R) Extreme Tuning Utility (x32 Version: 1.0.0) Intel(R) Identity Protection Technology (x32 Version: Intel(R) Integrator Assistant (x32 Version: 1.0.0) Intel(R) Management Engine Components (x32 Version: Intel(R) Network Connections (Version: Intel® Watchdog Timer Driver (Intel® WDT) (x32) Internet Explorer (Enable DEP) Java 7 Update 45 (64-bit) (Version: 7.0.450) Kaspersky Internet Security 2013 (x32 Version: Malwarebytes Anti-Malware Version (x32 Version: Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (x32 Version: 3.5.30730.0) Microsoft Games for Windows - LIVE Redistributable (x32 Version: Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Home and Student 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000) Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Single Image 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Silverlight (Version: 5.1.20913.0) Microsoft SQL Server Compact 3.5 SP2 ENU (x32 Version: 3.5.8080.0) Microsoft SQL Server Compact 3.5 SP2 x64 ENU (Version: 3.5.8080.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610) Mozilla Firefox 25.0.1 (x86 de) (x32 Version: 25.0.1) Mozilla Maintenance Service (x32 Version: 22.0) MSI Afterburner 2.3.1 (x32 Version: 2.3.1) MSI Kombustor 2.4.2 (x32) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) MSXML 4.0 SP2 Parser and SDK (x32 Version: 4.20.9818.0) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0) Mumble 1.2.4 (x32 Version: 1.2.4) Nexus Mod Manager (Version: 0.45.7) NVIDIA 3D Vision Controller-Treiber 331.82 (Version: 331.82) NVIDIA 3D Vision Treiber 331.82 (Version: 331.82) NVIDIA GeForce Experience 1.8 (Version: 1.8) NVIDIA Grafiktreiber 331.82 (Version: 331.82) NVIDIA HD-Audiotreiber (Version: NVIDIA Install Application (Version: 2.1002.142.992) NVIDIA LED Visualizer 1.0 (Version: 1.0) NVIDIA Network Service (Version: 1.0) NVIDIA PhysX (x32 Version: 9.13.0725) NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725) NVIDIA ShadowPlay 10.10.5 (Version: 10.10.5) NVIDIA Stereoscopic 3D Driver (x32 Version: NVIDIA Systemsteuerung 331.82 (Version: 331.82) NVIDIA Update 10.10.5 (Version: 10.10.5) NVIDIA Update Core (Version: 10.10.5) NVIDIA Virtual Audio 1.2.12 (Version: 1.2.12) Origin (x32 Version: Pando Media Booster (x32 Version: PunkBuster Services (x32 Version: 0.993) Rainmeter (x32 Version: 2.4 r1678) Razer Mamba (x32 Version: 2.01.05) Razer Megalodon Firmware Updater (x32 Version: 2.12.02) Razer Synapse 2.0 (x32 Version: 1.5.18) Realtek High Definition Audio Driver (x32 Version: Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: Sacred 2 Gold (x32) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32) SHIELD Streaming (Version: 1.6.75) Skype Click to Call (x32 Version: 5.10.9560) Skype™ 6.10 (x32 Version: 6.10.104) Steam (x32 Version: Studie zur Verbesserung von HP Officejet 6600 Produkten (Version: 25.0.619.0) Team Fortress 2 (x32) TeamSpeak 3 Client (HKCU Version: Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (x32) Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition (x32) Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition (x32) Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (x32) Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (x32) Update for Microsoft Word 2010 (KB2827323) 32-Bit Edition (x32) Warcraft III (x32) ==================== Restore Points ========================= 03-12-2013 14:00:11 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2013-06-25 16:27 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {0FBDAA31-E66F-4320-B674-1ACAC1C4E177} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-05-11] (Adobe Systems Incorporated) Task: {5083AA73-3729-411E-B68E-F1380F658960} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [2011-03-24] (Hewlett-Packard) Task: {A020EA38-5D05-4CE3-87A0-85754FC84FAC} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2013-01-23] () Task: {A1E29D82-9CB9-4A34-A4F1-DC80B70FAFB8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-18] (Adobe Systems Incorporated) Task: {B4D70004-CEA2-4D20-BF2E-C595D989E33E} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe Task: {B859BC22-EDAF-42AC-9D6C-D21C89B622CD} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd) Task: {C3C7196B-FEED-4B1F-A1CD-C15CCEA1B4F6} - System32\Tasks\HPCustParticipation HP Officejet 6600 => C:\Program Files\HP\HP Officejet 6600\Bin\HPCustPartic.exe [2011-09-09] (Hewlett-Packard Co.) Task: {C74E41DC-8BB7-4D28-A603-23FD324EDB60} - System32\Tasks\{8988545C-562D-413A-BC86-6818C950A893} => Firefox.exe hxxp://ui.skype.com/ui/0/ Task: {DE144AFD-ABFC-4428-8ED3-E5261FA200A4} - System32\Tasks\Google Updater and Installer => C:\Users\alex\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2012-11-04 15:25 - 2012-11-04 15:25 - 00736968 _____ () C:\Program Files\Rainmeter\Rainmeter.dll 2012-11-04 15:24 - 2012-11-04 15:24 - 00499712 _____ () C:\Program Files\Rainmeter\Plugins\NowPlaying.dll 2012-11-04 15:23 - 2012-11-04 15:23 - 00011776 _____ () C:\Program Files\Rainmeter\Plugins\RecycleManager.dll 2012-11-04 15:23 - 2012-11-04 15:23 - 00011776 _____ () C:\Program Files\Rainmeter\Plugins\PowerPlugin.dll 2012-11-04 15:23 - 2012-11-04 15:23 - 00056832 _____ () C:\Program Files\Rainmeter\Plugins\WebParser.dll 2012-08-17 20:39 - 2013-07-24 07:45 - 01310136 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\kpcengine.2.2.dll 2012-08-17 20:38 - 2012-08-17 20:38 - 00479160 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\dblite.dll 2013-01-16 17:01 - 2013-01-16 17:01 - 00069632 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll 2013-01-16 17:00 - 2013-01-16 17:00 - 00061440 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll 2013-01-16 17:01 - 2013-01-16 17:01 - 00229376 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll 2013-01-16 17:00 - 2013-01-16 17:00 - 00143360 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll 2013-01-16 17:01 - 2013-01-16 17:01 - 00348160 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll 2011-04-30 20:04 - 2011-04-30 20:04 - 00013312 _____ () C:\Program Files (x86)\MSI Afterburner\RTTSH.dll 2013-11-16 10:40 - 2013-11-16 10:40 - 03363952 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2013-11-18 09:48 - 2013-11-18 09:48 - 16237448 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== System errors: ============= Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2013-12-03 00:36:50.069 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-03 00:36:50.068 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-03 00:36:50.067 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-03 00:36:50.064 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-03 00:36:50.062 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-03 00:36:50.061 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 00:30:46.114 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 00:30:46.113 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 00:30:46.111 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 00:30:46.108 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 26% Total physical RAM: 8116.18 MB Available physical RAM: 5966.84 MB Total Pagefile: 15160.75 MB Available Pagefile: 12796.46 MB Total Virtual: 8192 MB Available Virtual: 8191.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.69 GB) (Free:9.16 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 983FA1FB) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=112 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. Was sagt mittlerweile das Windows Update?
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. Update nach ca 10-15Minuten fehlgeschlagen. Fehlercode:80243004 Immerhin ist der alte Error verschwunden ![]() EDIT: Das Update ist immeroch IE 11 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. Windows Update-Fehler 0x80243004 Ansonsten mal probieren, den IE11 manuell zu installieren => Internet Explorer*11 herunterladen - Microsoft Windows
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. Hab ich gemacht, gleicher Error wie am anfang 9C59. |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. Mach das mal bitte => http://www.trojaner-board.de/126216-...tml#post946713
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() ![]() | ![]() Windows update Fehlgeschlafen, Fehlercode 9C59. Okay durchgeführt. Soll ich das bzw. die Logfiles posten? Am Rande, die in dem Tutorial gelinkte Version ist outdated, sagt das Programm ![]() |
