|
Log-Analyse und Auswertung: Win 7: svchost.exe frisst ungewöhnlich viel ArbeitsspeicherWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
14.12.2013, 03:33 | #1 |
| Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher Grüsse Virenjäger Seit 3 Tagen gibt es auf meinem Rechner eine Instanz von svchost.exe die sich unersättlich an meinem Arbeitsspeicher labt, manchmal mehrere GB. Zu dem ruckelt der Rechner, friert ab und zu für einige Sekunden ein und lässt sich nicht mehr richtig herunterfahren. Freund Google hat mich zu diesem Forum geführt mit dem Verweis, dass parasitäre Kleinprogramme diesen Dienst für ihre Zwecke missbrauchen können, darum möchte ich eure Dienste in Anspruch nehmen. Die Analyse des Systems erfolgte streng nach Anleitung, dabei hat sich folgendes ereignet: Für die Analyse mit GMER wird die Trennung vom Internet befohlen, also habe ich das Netzwerkkabel abgezogen. Daraufhin stotterte mein Rechner und die fragwürdige Instanz von svchost.exe verschwand aus dem Taskmanager. FRST Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-12-2013 01 Ran by Moragor (administrator) on KLAUS-DIETER on 14-12-2013 01:24:42 Running from D:\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==== Processes (Whitelisted) ==== (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe (Corsair Components, Inc.) C:\Program Files (x86)\Corsair\CorsairLINK2\CorsairLINK_HardwareMonitor.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ Power Control\PowerControlHelp.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe (AddGadgets) C:\Users\Moragor\Desktop\PCMeter\PCMeterV0.3.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.19\AsusFanControlService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Gainward Co. Ltd.) C:\Program Files (x86)\EXPERTool\TBPanel.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe (CREALOGIX E-Payment AG) C:\Program Files (x86)\CLX.PayPen\CLXReader.exe (Overwolf) C:\Program Files (x86)\Overwolf\Overwolf.exe () C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe (Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe (Dropbox, Inc.) C:\Users\Moragor\AppData\Roaming\Dropbox\bin\Dropbox.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (cyberlink) C:\Program Files (x86)\CyberLink\Shared files\brs.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\MDM.EXE (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (Razer, Inc.) C:\Program Files (x86)\Razer\Core\64bit\RzOvlMon.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE () C:\Program Files (x86)\Everything\Everything.exe (BitLeader) C:\Program Files (x86)\lg_fwupdate\fwupdate.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe () C:\Windows\Samsung\PanelMgr\SSMMgr.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe () C:\Windows\Samsung\PanelMgr\caller64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTShellHlp.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDClock.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe (Overwolf) C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper64.exe (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6032.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6064.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE (Microsoft Corporation) C:\Windows\splwow64.exe ==== Registry (Whitelisted) ==== HKLM\...\Run: [Launch LCore] - C:\Program Files\Logitech Gaming Software\LCore.exe [7477016 2013-04-24] (Logitech Inc.) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [XboxStat] - C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [EvtMgr6] - C:\Program Files\Logitech\SetPointP\SetPoint.exe [3091224 2013-07-31] (Logitech, Inc.) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2273056 2013-11-29] (NVIDIA Corporation) Winlogon\Notify\LBTWlgn: C:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.) HKCU\...\Run: [TBPanel] - C:\Program Files (x86)\EXPERTool\TBPanel.exe [2156328 2013-05-24] (Gainward Co. Ltd.) HKCU\...\Run: [Google Update] - C:\Users\Moragor\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-07-30] (Google Inc.) HKCU\...\Run: [DisplayFusion] - C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software) HKCU\...\Run: [CLXReader] - C:\Program Files (x86)\CLX.PayPen\CLXReader.exe [4108152 2012-08-14] (CREALOGIX E-Payment AG) HKCU\...\Run: [Overwolf] - C:\Program Files (x86)\Overwolf\Overwolf.exe [35768 2013-12-09] (Overwolf) HKLM-x32\...\Run: [CLMLServer] - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816 2011-03-09] (CyberLink) HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.) HKLM-x32\...\Run: [BDRegion] - C:\Program Files (x86)\CyberLink\Shared files\brs.exe [78312 2012-05-09] (cyberlink) HKLM-x32\...\Run: [UpdatePPShortCut] - C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe [223096 2012-04-17] (CyberLink Corp.) HKLM-x32\...\Run: [LGODDFU] - C:\Program Files (x86)\lg_fwupdate\lgfw.exe [27760 2012-07-12] (Bitleader) HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4956176 2013-11-07] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [Everything] - C:\Program Files (x86)\Everything\Everything.exe [602624 2009-03-13] () HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [Razer Synapse] - C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [442200 2013-10-17] (Razer Inc.) HKLM-x32\...\Run: [Samsung PanelMgr] - C:\Windows\Samsung\PanelMgr\SSMMgr.exe [688128 2011-07-06] () HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) Startup: C:\Users\Moragor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Moragor\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) BootExecute: autocheck autochk * sdnclean64.exe ==== Internet (Whitelisted) ==== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.snapdo.com/?publisher=Somoto&dpid=Somoto&co=CH&userid=02a57947-36e0-a774-330f-af7b586fa6e1&searchtype=ds&q={searchTerms}&installDate=19/08/2013 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.ch/ HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.snapdo.com/?publisher=Somoto&dpid=Somoto&co=CH&userid=02a57947-36e0-a774-330f-af7b586fa6e1&searchtype=ds&q={searchTerms}&installDate=19/08/2013 SearchScopes: HKLM-x32 - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.snapdo.com/?publisher=Somoto&dpid=Somoto&co=CH&userid=02a57947-36e0-a774-330f-af7b586fa6e1&searchtype=ds&q={searchTerms}&installDate=19/08/2013 SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.snapdo.com/?publisher=Somoto&dpid=Somoto&co=CH&userid=02a57947-36e0-a774-330f-af7b586fa6e1&searchtype=ds&q={searchTerms}&installDate=19/08/2013 BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM-x32 - Steganos Password Manager Toolbar - {9C65D12D-CF9D-454D-8049-61965D8C6FFF} - C:\Program Files (x86)\Steganos Password Manager 2012\SPMIEToolbar.dll (Steganos Software GmbH) Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default FF NewTab: about:blank FF DefaultSearchEngine: Google.ch FF SelectedSearchEngine: Google.ch FF Homepage: about:home FF NetworkProxy: "autoconfig_url", "data:text/javascript,function%20FindProxyForURL(url%2C%20host)%20%7Bif%20(shExpMatch(url%2C%20'http%3A%2F%2Fwww.mtv.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fmedia.mtvnservices.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.iheart.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fsongza.com*')%20%7C%7C%20url.indexOf('southparkstudios.com')%20!%3D%20-1%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fpiki.fm*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fpiki.fm*')%20%7C%7C%20host%20%3D%3D%20'www.pandora.com'%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.crunchyroll.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.rdio.com*')%20%7C%7C%20(url.indexOf('proxmate%3Dactive')%20!%3D%20-1%20%26%26%20url.indexOf('amazonaws.com')%20%3D%3D%20-1)%20%7C%7C%20(url.indexOf('proxmate%3Dus')%20!%3D%20-1)%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fgrooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fretro.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fhtml5.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Flisten.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.last.fm*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fext.last.fm*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.funimation.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fsecure.funimation.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fplay.spotify.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fplay.spotify.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fwww.spotify.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.spotify.com*')%20%7C%7C%20url.indexOf('vevo.com')%20!%3D%20-1%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fwww.daisuki.net*')%20%7C%7C%20host%20%3D%3D%20's.hulu.com'%20%7C%7C%20url.indexOf('discoverymedia.com')%20!%3D%20-1%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fdsc.discovery.com%2F*'))%20%7B%20return%20'PROXY%20ab-us04.personalitycores.com%3A8000%3B%20PROXY%20ab-us05.personalitycores.com%3A8000%3B%20PROXY%20ab-us10.personalitycores.com%3A8000%3B%20PROXY%20ab-us09.personalitycores.com%3A8000%3B%20PROXY%20ab-us06.personalitycores.com%3A8000%3B%20PROXY%20ab-us02.personalitycores.com%3A8000%3B%20PROXY%20ab-us03.personalitycores.com%3A8000%3B%20PROXY%20ab-us07.personalitycores.com%3A8000%3B%20PROXY%20ab-us01.personalitycores.com%3A8000'%3B%7D%20%20else%20%7B%20return%20'DIRECT'%3B%20%7D%7D" FF NetworkProxy: "type", 2 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.7 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.0.8 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.3 - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.3 - C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Moragor\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Moragor\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: wacom.com/WacomTabletPlugin - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Deutsches Wörterbuch (Schweiz) - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\de-CH@dictionaries.addons.mozilla.org FF Extension: United States English Spellchecker - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\en-US@dictionaries.addons.mozilla.org FF Extension: HTML5 Extension for Windows Media Player Plug-in - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\jid0-nRwp7VvCqZcSRTppwWz2npqGEKw@jetpack FF Extension: ReminderFox - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{ada4b710-8346-4b82-8199-5de2b400a6ae} FF Extension: DownloadHelper - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} FF Extension: check-compatibility - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\check-compatibility@dactyl.googlecode.com.xpi FF Extension: cwwb - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\cwwb@dietrich.cx.xpi FF Extension: elemhidehelper - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\elemhidehelper@adblockplus.org.xpi FF Extension: firebug - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\firebug@software.joehewitt.com.xpi FF Extension: giorgio - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\giorgio@gilestro.tk.xpi FF Extension: jid1-QpHD8URtZWJC2A - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\jid1-QpHD8URtZWJC2A@jetpack.xpi FF Extension: jid1-xUfzOsOFlzSOXg - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\jid1-xUfzOsOFlzSOXg@jetpack.xpi FF Extension: thumbnailZoom - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\thumbnailZoom@dadler.github.com.xpi FF Extension: Session Manager - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi FF Extension: imagezoom-defaults - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{1A2D0EC4-75F5-4c91-89C4-3656F6E44B68}.xpi FF Extension: searchwp - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{3e270ac3-8936-43fb-ad20-b4685172a83d}.xpi FF Extension: stylish - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi FF Extension: noscript - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: fireftp - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f}.xpi FF Extension: No Name - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{ab4b5718-3998-4a2c-91ae-18a7c2db513e}.xpi FF Extension: googtrans - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{aff87fa2-a58e-4edd-b852-0a20203c1e17}.xpi FF Extension: Adblock Plus - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: downbarconfig - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}.xpi FF Extension: dta - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi FF Extension: greasemonkey - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi FF HKLM-x32\...\Firefox\Extensions: [{00F0643E-B367-4779-B45D-7046EBA37A88}] - C:\Program Files (x86)\Steganos Password Manager 2012\spmplugin3 FF Extension: Steganos Password Manager - C:\Program Files (x86)\Steganos Password Manager 2012\spmplugin3 FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt Chrome: ======= CHR HomePage: hxxp://feed.snapdo.com/?publisher=Somoto&dpid=Somoto&co=CH&userid=02a57947-36e0-a774-330f-af7b586fa6e1&searchtype=hp&installDate=19/08/2013 CHR RestoreOnStartup: "hxxp://www.google.ch/" CHR DefaultSearchKeyword: google.ch CHR DefaultSearchProvider: Google CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultNewTabURL: {google:baseURL}_/chrome/newtab?{google:RLZ}{google:instantExtendedEnabledParameter}{google:ntpIsThemedParameter}ie={inputEncoding} CHR Plugin: (Shockwave Flash) - C:\Users\Moragor\AppData\Local\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Moragor\AppData\Local\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\Moragor\AppData\Local\Google\Chrome\Application\31.0.1650.63\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll No File CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Google Update) - C:\Users\Moragor\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Extension: (Snap.Do ) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0 CHR Extension: (Google Docs) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 CHR Extension: (Google Drive) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Google Wallet) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 CHR Extension: (Gmail) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 ===== Services (Whitelisted) ==== R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2012-06-01] () R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2012-06-01] (ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-17] (ASUSTeK Computer Inc.) R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.19\AsusFanControlService.exe [408960 2013-08-03] (ASUSTeK Computer Inc.) S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3478544 2013-11-11] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.) S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [242664 2012-05-09] (CyberLink) R2 DisplayFusionService; C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [1375600 2013-11-27] (Binary Fortress Software) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1370912 2013-11-29] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15128352 2013-11-29] (NVIDIA Corporation) S3 OverwolfUpdaterService; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [96184 2013-12-09] (Overwolf) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2013-11-22] (Razer Inc.) R2 RzOvlMon; C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe [32960 2013-10-25] (Razer, Inc.) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [598808 2013-06-06] (Wacom Technology, Corp.) ==== Drivers (Whitelisted) ==== R0 asahci64; C:\Windows\System32\DRIVERS\asahci64.sys [49760 2012-01-06] (Asmedia Technology) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] () R3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-05] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [240920 2013-11-04] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [194872 2013-10-24] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-10-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31544 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [251192 2013-08-01] (AVG Technologies CZ, s.r.o.) S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] () R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-11-26] (Disc Soft Ltd) R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [31136 2013-07-30] (REALiX(tm)) R3 LGPBTDD; C:\Windows\System32\Drivers\LGPBTDD.sys [30728 2009-07-01] (Logitech Inc.) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-10-30] (NVIDIA Corporation) S3 PayPen; C:\Windows\System32\Drivers\PayPen.sys [20864 2012-08-14] () R3 RzDxgk; C:\Windows\system32\drivers\RzDxgk.sys [129472 2013-10-25] (Razer, Inc.) R0 RzFilter; C:\Windows\System32\drivers\RzFilter.sys [74432 2013-10-25] (Razer, Inc.) S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2013-12-02] () S3 BTMCOM; System32\Drivers\btmcom.sys [x] S3 MFE_RR; \??\C:\Users\Moragor\AppData\Local\Temp\mfe_rr.sys [x] S3 SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\WNt500x64\Sandra.sys [x] R3 WinRing0_1_2_0; \??\C:\Users\Moragor\AppData\Local\Temp\tmp8AFF.tmp [x] ==== NetSvcs (Whitelisted) ==== ==== One Month Created Files and Folders ==== 2013-12-14 01:19 - 2013-12-14 01:19 - 00009932 _____ C:\Windows\PFRO.log 2013-12-14 00:48 - 2013-12-14 01:20 - 00000168 _____ C:\Windows\setupact.log 2013-12-14 00:48 - 2013-12-14 00:48 - 00000000 _____ C:\Windows\setuperr.log 2013-12-14 00:42 - 2013-12-14 00:42 - 00090738 _____ C:\Users\Moragor\Desktop\cc_20131214_004156.reg 2013-12-14 00:40 - 2013-12-14 00:40 - 00000000 ____D C:\ProgramData\LockHunter 2013-12-14 00:31 - 2013-12-14 00:31 - 00000085 _____ C:\Windows\wininit.ini 2013-12-14 00:28 - 2013-12-14 00:28 - 00000000 ____D C:\FRST 2013-12-14 00:03 - 2013-12-14 00:03 - 00000168 _____ C:\Users\Moragor\defogger_reenable 2013-12-13 23:21 - 2013-12-13 23:25 - 00000000 ____D C:\ProgramData\SecTaskMan 2013-12-11 23:50 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-11 23:50 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-11 23:50 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-11 23:50 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-11 23:49 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-11 23:49 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-11 23:49 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-11 23:49 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-11 23:49 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-11 23:49 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-11 23:49 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-11 23:49 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-11 23:49 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-11 23:49 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-11 23:49 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-11 23:49 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-11 23:49 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-11 23:49 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-11 23:49 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-11 23:49 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-11 23:49 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-11 23:49 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-11 23:49 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-11 23:49 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-11 23:49 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-11 23:49 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-11 23:49 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-11 23:49 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-11 23:49 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-11 23:49 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-11 23:49 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-11 23:49 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-11 23:49 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-11 23:49 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-11 23:49 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-11 12:17 - 2013-12-11 16:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-12-11 11:58 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-11 11:58 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-11 11:58 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-11 11:57 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-11 11:57 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-11 11:57 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-11 11:57 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-11 11:56 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-11 11:56 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-11 11:56 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-11 11:56 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-11 11:55 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-11 11:55 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-11 11:55 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-11 11:55 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-11 11:55 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-11 11:55 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-11 11:55 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-11 11:55 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-09 22:28 - 2013-12-09 22:29 - 00000698 _____ C:\Users\Moragor\Desktop\Guild Wars 2 Load.lnk 2013-12-09 14:24 - 2013-12-09 14:24 - 00001451 _____ C:\Users\Public\Desktop\The Elder Scrolls Construction Set.lnk 2013-12-09 14:23 - 1998-06-17 19:07 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mfc42loc.dll 2013-12-09 14:09 - 2013-12-10 02:42 - 00000000 ____D C:\Users\Moragor\AppData\Local\Skyrim 2013-12-09 13:56 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-12-09 13:56 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-12-09 13:56 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-12-09 13:56 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-12-09 13:56 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-12-09 13:56 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-12-09 13:56 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-12-09 13:56 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-12-09 13:56 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-12-09 13:56 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-12-09 13:56 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-12-09 13:56 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-12-09 13:56 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-12-09 13:56 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-12-09 13:56 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-12-09 13:56 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-12-09 13:56 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-12-09 13:56 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-12-09 13:56 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-12-09 13:56 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-12-09 13:56 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-12-09 13:56 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-12-09 13:56 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-12-09 13:56 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-12-09 13:56 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-12-09 13:56 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-12-09 13:56 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-12-09 13:56 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-12-09 13:56 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-12-09 13:56 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-12-09 13:56 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-12-09 13:56 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-12-09 13:56 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-12-09 13:56 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-12-09 13:56 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-12-09 13:56 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-12-09 13:56 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-12-09 13:56 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-12-09 13:56 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-12-09 13:56 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-12-09 13:56 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-12-09 13:56 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-12-09 13:56 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-12-09 13:56 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-12-09 13:56 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-12-09 13:56 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-12-09 13:56 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-12-09 13:56 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-12-09 13:56 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-12-09 13:56 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-12-09 13:56 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-12-09 13:56 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-12-09 13:56 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-12-09 13:56 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-12-09 13:56 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-12-09 13:56 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-12-09 13:56 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-12-09 13:56 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-12-09 13:56 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-12-09 13:56 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-12-09 13:56 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-12-09 13:56 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-12-09 13:56 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-12-09 13:56 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-12-09 13:56 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-12-09 13:56 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-12-09 13:56 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-12-09 13:56 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-12-09 13:56 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-12-09 13:56 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-12-09 13:56 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-12-09 13:55 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-12-09 13:55 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-12-09 13:55 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-12-09 13:55 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-12-09 13:55 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-12-09 13:55 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-12-09 13:55 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-12-09 13:55 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-12-09 13:55 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-12-09 13:55 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-12-09 13:55 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-12-09 13:55 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-12-09 13:55 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-12-09 13:55 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-12-09 13:55 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-12-09 13:55 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-12-09 13:55 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-12-09 13:55 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-12-06 02:10 - 2013-12-06 02:10 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-12-06 02:04 - 2013-12-06 02:04 - 00000000 ____D C:\Users\Moragor\Documents\Square Enix 2013-12-05 21:13 - 2013-12-05 21:13 - 00000207 _____ C:\Users\Moragor\Desktop\FINAL FANTASY VIII.url 2013-12-05 20:54 - 2013-12-05 20:54 - 00008387 _____ C:\Users\Moragor\AppData\Local\recently-used.xbel 2013-12-05 10:30 - 2013-12-05 10:30 - 00000234 _____ C:\Windows\CCPen200.ini 2013-12-03 02:08 - 2013-10-30 18:03 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-12-03 02:08 - 2013-10-30 18:02 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-12-02 02:35 - 2013-12-02 02:35 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2013-12-02 02:35 - 2012-06-12 18:10 - 04060560 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2013-12-02 02:35 - 2012-06-11 14:44 - 00290813 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2013-12-02 02:35 - 2012-06-08 16:18 - 03615888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2013-12-02 02:35 - 2012-06-06 11:14 - 00584320 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2013-12-02 02:35 - 2012-06-06 10:44 - 00869520 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2013-12-02 02:35 - 2012-06-05 11:38 - 05096448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2013-12-02 02:35 - 2012-06-01 09:37 - 02674320 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2013-12-02 02:35 - 2012-05-31 18:08 - 00105616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2013-12-02 02:35 - 2012-05-17 11:29 - 07163744 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2013-12-02 02:35 - 2012-05-17 11:29 - 00433504 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2013-12-02 02:35 - 2012-05-17 11:29 - 00141152 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2013-12-02 02:35 - 2012-05-17 11:29 - 00123744 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2013-12-02 02:35 - 2012-05-17 11:29 - 00074592 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2013-12-02 02:35 - 2012-05-10 15:22 - 01262696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2013-12-02 02:35 - 2012-04-10 14:40 - 02533952 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2013-12-02 02:35 - 2012-04-03 18:42 - 01345368 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2013-12-02 02:35 - 2012-04-03 18:42 - 01015640 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2013-12-02 02:35 - 2012-03-08 11:47 - 00202336 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2013-12-02 02:35 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2013-12-02 02:35 - 2012-02-21 19:45 - 02605400 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll 2013-12-02 02:35 - 2012-02-17 15:54 - 00396632 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2013-12-02 02:35 - 2012-02-14 00:05 - 08363864 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek.dll 2013-12-02 02:35 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2013-12-02 02:35 - 2012-01-23 22:30 - 00537456 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2013-12-02 02:35 - 2012-01-23 22:30 - 00524656 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2013-12-02 02:35 - 2012-01-23 22:30 - 00449392 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2013-12-02 02:35 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2013-12-02 02:35 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2013-12-02 02:35 - 2011-12-18 17:58 - 02131288 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll 2013-12-02 02:35 - 2011-12-13 16:58 - 01560168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2013-12-02 02:35 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2013-12-02 02:35 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2013-12-02 02:35 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2013-12-02 02:35 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2013-12-02 02:35 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2013-12-02 02:35 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2013-12-02 02:35 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2013-12-02 02:35 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2013-12-02 02:35 - 2010-10-03 13:46 - 00341336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2013-12-02 02:35 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2013-12-02 02:35 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2013-12-02 02:35 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2013-12-02 02:35 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2013-12-02 02:35 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2013-12-02 02:35 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2013-12-02 02:23 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-02 02:21 - 2013-12-02 02:21 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-02 02:21 - 2013-12-02 02:21 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-02 02:21 - 2013-12-02 02:21 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-02 02:21 - 2013-12-02 02:21 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-02 02:21 - 2013-12-02 02:21 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-02 02:21 - 2013-12-02 02:21 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-02 02:21 - 2013-12-02 02:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-02 02:18 - 2013-09-04 13:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2013-12-02 02:14 - 2013-03-12 13:19 - 00064624 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2013-12-02 02:13 - 2013-12-02 02:13 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-12-02 02:12 - 2013-12-02 02:12 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3 2013-12-02 02:09 - 2013-12-02 02:09 - 00003907 _____ C:\Windows\system32\WmiConf.txt 2013-12-02 02:08 - 2013-02-21 13:14 - 00495888 _____ (Intel Corporation) C:\Windows\system32\Drivers\e1c62x64.sys 2013-12-02 02:08 - 2012-12-06 18:21 - 00073032 _____ (Intel Corporation) C:\Windows\system32\e1cmsg.dll 2013-12-02 02:08 - 2012-11-14 19:07 - 00101224 _____ (Intel Corporation) C:\Windows\system32\NicInstC.dll 2013-12-02 01:50 - 2013-12-02 01:50 - 00000000 ____D C:\Users\Moragor\AppData\Local\DriverTuner 2013-12-02 01:45 - 2013-12-02 01:45 - 00000000 ____D C:\Users\Moragor\SystemRequirementsLab 2013-12-02 01:41 - 2013-12-02 01:41 - 00000000 ____D C:\Users\Moragor\Documents\Meine empfangenen Dateien 2013-12-02 01:41 - 2013-12-02 01:41 - 00000000 ____D C:\ProgramData\FLEXnet 2013-12-02 01:35 - 2013-12-02 02:34 - 00016152 _____ C:\Windows\system32\Drivers\SWDUMon.sys 2013-12-02 01:35 - 2013-12-02 01:35 - 00000000 ____D C:\Users\Moragor\AppData\Local\SlimWare Utilities Inc 2013-12-02 01:28 - 2013-12-02 01:28 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers 2013-12-02 01:28 - 2013-12-02 01:28 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Easeware 2013-12-02 00:37 - 2013-12-02 00:37 - 00000000 ____D C:\ProgramData\Ashampoo 2013-12-02 00:33 - 2013-12-02 00:33 - 00000000 ____D C:\Users\Moragor\Documents\Scannen 2013-12-02 00:31 - 2013-12-02 00:31 - 00000000 ____D C:\Windows\twain_64 2013-12-02 00:31 - 2013-10-04 06:31 - 00579072 _____ C:\Windows\system32\SNWIAUI.dll 2013-12-02 00:31 - 2013-10-04 05:53 - 00734720 _____ C:\Windows\system32\SnMinDrv.dll 2013-12-02 00:31 - 2013-10-04 05:53 - 00155136 _____ C:\Windows\system32\SnImgFlt.dll 2013-12-02 00:31 - 2013-10-04 05:52 - 00068096 _____ C:\Windows\system32\SnErHdlr.dll 2013-12-02 00:31 - 2012-12-10 03:09 - 00120846 _____ C:\Windows\system32\WIAEXSTR.loc 2013-12-02 00:31 - 2012-03-14 00:58 - 00166640 _____ (TWAIN Working Group) C:\Windows\system32\TWAINDSM.dll 2013-12-02 00:31 - 2012-03-14 00:58 - 00148728 _____ (TWAIN Working Group) C:\Windows\SysWOW64\TWAINDSM.dll 2013-12-02 00:31 - 2012-02-09 08:20 - 00355840 _____ (Samsung Electronics) C:\Windows\system32\snWIAMUI.dll 2013-12-02 00:29 - 2013-12-02 00:32 - 00000000 ____D C:\Program Files (x86)\Scan Assistant 2013-12-01 22:12 - 2013-12-01 22:12 - 00000000 ____D C:\ProgramData\SSScanAppDataDir 2013-12-01 22:12 - 2013-12-01 22:12 - 00000000 ____D C:\ProgramData\MSScanAppDataDir 2013-11-30 16:21 - 2013-11-30 16:21 - 00000000 ____D C:\Users\Moragor\AppData\Local\Razer_Inc 2013-11-30 04:01 - 2013-11-30 04:06 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\NetSpeedMonitor 2013-11-27 23:02 - 2013-11-27 23:02 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\ASCOMP Software 2013-11-27 22:49 - 2013-11-30 03:58 - 00000000 ____D C:\Users\Moragor\Documents\MessageAnalyzer 2013-11-27 22:49 - 2013-11-27 22:49 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_wfpcapture_01011.Wdf 2013-11-27 22:45 - 2013-11-27 22:54 - 00000000 ____D C:\Users\Moragor\AppData\Local\Abelssoft 2013-11-27 22:45 - 2013-11-27 22:45 - 00000000 ____D C:\Windows\System32\Tasks\Abelssoft 2013-11-27 21:08 - 2013-11-27 21:08 - 00000000 ____D C:\ProgramData\Binarysense 2013-11-26 14:35 - 2013-11-26 14:35 - 00000000 ____D C:\ProgramData\Sophos 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\Documents\Mobogenie 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\AppData\Local\Mobogenie 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\AppData\Local\cache 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 _____ C:\Users\Moragor\daemonprocess.txt 2013-11-26 03:03 - 2013-11-26 03:04 - 00000000 ____D C:\Program Files (x86)\Mobogenie 2013-11-26 03:02 - 2013-11-27 23:17 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\DAEMON Tools Lite 2013-11-26 03:02 - 2013-11-26 03:02 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2013-11-26 03:02 - 2013-11-26 03:02 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite 2013-11-26 03:01 - 2013-11-26 03:08 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2013-11-25 15:54 - 2013-11-25 15:54 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-11-21 12:54 - 2013-12-02 02:34 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Users\Public\Documents\LogiShrd 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Users\Moragor\AppData\Local\Logishrd 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Program Files\Logitech 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Program Files\Common Files\Logishrd 2013-11-21 04:22 - 2013-11-21 04:22 - 00000000 ____D C:\Users\Moragor\Documents\Egosoft 2013-11-20 22:11 - 2013-11-20 22:11 - 00000672 _____ C:\Users\Public\Desktop\Guild Wars 2.lnk 2013-11-20 10:22 - 2013-11-14 12:56 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-20 10:22 - 2013-11-14 12:56 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00357152 _____ C:\Windows\system32\NvIFROpenGL.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-20 10:22 - 2013-11-11 17:54 - 00451872 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstusb.sys 2013-11-18 09:37 - 2013-11-18 09:37 - 00000000 ____D C:\ProgramData\Overwolf 2013-11-17 15:08 - 2013-11-17 15:08 - 00000206 _____ C:\Users\Moragor\Desktop\X Rebirth.url 2013-11-16 07:59 - 2013-11-17 07:26 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-15 21:24 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2013-11-15 21:24 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2013-11-15 21:24 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2013-11-15 21:24 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2013-11-15 21:24 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2013-11-15 21:24 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2013-11-15 21:24 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2013-11-15 21:24 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2013-11-15 21:24 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2013-11-15 21:24 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2013-11-15 21:24 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2013-11-15 21:24 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2013-11-15 21:24 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2013-11-15 21:24 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2013-11-15 21:24 - 2013-10-02 00:08 - 00000000 _____ C:\Windows\SysWOW64\rdvidcrl.dll 2013-11-15 21:24 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2013-11-15 21:24 - 2013-10-01 21:57 - 06578176 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2013-11-15 21:24 - 2013-10-01 21:55 - 05698048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2013-11-15 21:21 - 2013-09-25 03:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2013-11-15 21:21 - 2013-09-25 02:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2013-11-14 15:35 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-14 15:35 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-11-14 15:34 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-11-14 15:34 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-11-14 15:34 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-11-14 15:34 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-11-14 15:34 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-11-14 15:34 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-11-14 15:34 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-11-14 15:33 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-14 15:33 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-11-14 15:33 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-11-14 15:33 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-11-14 15:33 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-11-14 15:33 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-11-14 15:33 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-11-14 15:33 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-11-14 15:33 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-11-14 15:33 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-11-14 15:33 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-11-14 15:33 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-11-14 15:33 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-11-14 15:33 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-11-14 15:33 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-11-14 15:33 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-11-14 15:32 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-14 15:32 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-14 15:32 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-14 15:32 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-11-14 15:32 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL ==================== One Month Modified Files and Folders ======= 2013-12-14 01:24 - 2013-07-31 00:12 - 00000021 _____ C:\Users\Moragor\AppData\Roaming\config_data.dat 2013-12-14 01:23 - 2013-07-30 16:08 - 01099401 _____ C:\Windows\WindowsUpdate.log 2013-12-14 01:21 - 2013-07-30 21:52 - 00000000 ____D C:\Program Files (x86)\Everything 2013-12-14 01:20 - 2013-12-14 00:48 - 00000168 _____ C:\Windows\setupact.log 2013-12-14 01:20 - 2013-10-15 18:55 - 00000000 ____D C:\Users\Moragor\AppData\Local\Overwolf 2013-12-14 01:20 - 2013-08-02 08:26 - 00000000 ____D C:\Program Files (x86)\CLX.PayPen 2013-12-14 01:20 - 2013-07-31 07:20 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Dropbox 2013-12-14 01:20 - 2013-07-30 16:49 - 00000344 _____ C:\Windows\lgfwup.ini 2013-12-14 01:20 - 2013-07-30 16:49 - 00000000 ____D C:\Program Files (x86)\lg_fwupdate 2013-12-14 01:20 - 2013-07-30 16:14 - 00000000 ____D C:\ProgramData\NVIDIA 2013-12-14 01:20 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-14 01:19 - 2013-12-14 01:19 - 00009932 _____ C:\Windows\PFRO.log 2013-12-14 01:18 - 2013-11-12 03:42 - 00000000 ____D C:\Users\Moragor\AppData\Local\Purplizer 2013-12-14 01:18 - 2013-07-30 23:18 - 00000027 _____ C:\Users\Moragor\AppData\Roaming\Network Meter_Usage.ini 2013-12-14 01:00 - 2013-07-30 18:00 - 00014833 _____ C:\Users\Moragor\Network_Meter_Data.js 2013-12-14 00:55 - 2009-07-14 05:45 - 00015152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-14 00:55 - 2009-07-14 05:45 - 00015152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-14 00:48 - 2013-12-14 00:48 - 00000000 _____ C:\Windows\setuperr.log 2013-12-14 00:46 - 2013-07-30 17:01 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-14 00:44 - 2013-08-13 17:34 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\TS3Client 2013-12-14 00:42 - 2013-12-14 00:42 - 00090738 _____ C:\Users\Moragor\Desktop\cc_20131214_004156.reg 2013-12-14 00:42 - 2013-08-04 10:00 - 00000000 ____D C:\Users\Moragor\Valley 2013-12-14 00:40 - 2013-12-14 00:40 - 00000000 ____D C:\ProgramData\LockHunter 2013-12-14 00:37 - 2013-07-30 16:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-12-14 00:34 - 2013-07-30 19:30 - 00000000 ____D C:\Users\Moragor\Heaven 2013-12-14 00:34 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-14 00:32 - 2013-07-31 07:10 - 00000000 ____D C:\Program Files\Samsung 2013-12-14 00:31 - 2013-12-14 00:31 - 00000085 _____ C:\Windows\wininit.ini 2013-12-14 00:31 - 2013-07-30 22:53 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\uTorrent 2013-12-14 00:30 - 2013-07-30 21:54 - 00001128 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000UA.job 2013-12-14 00:28 - 2013-12-14 00:28 - 00000000 ____D C:\FRST 2013-12-14 00:03 - 2013-12-14 00:03 - 00000168 _____ C:\Users\Moragor\defogger_reenable 2013-12-14 00:03 - 2013-07-30 16:08 - 00000000 ____D C:\Users\Moragor 2013-12-13 23:25 - 2013-12-13 23:21 - 00000000 ____D C:\ProgramData\SecTaskMan 2013-12-13 22:38 - 2013-07-30 17:29 - 00000000 ____D C:\ProgramData\MFAData 2013-12-13 13:17 - 2009-07-14 18:58 - 00699416 _____ C:\Windows\system32\perfh007.dat 2013-12-13 13:17 - 2009-07-14 18:58 - 00149556 _____ C:\Windows\system32\perfc007.dat 2013-12-13 13:17 - 2009-07-14 06:13 - 01620676 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-13 13:08 - 2013-07-31 07:23 - 00000000 ___RD C:\Users\Moragor\Dropbox 2013-12-12 13:28 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-12 11:15 - 2013-11-12 03:36 - 00000000 ____D C:\Program Files (x86)\Overwolf 2013-12-12 11:14 - 2009-07-14 05:45 - 00330416 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-12 11:12 - 2013-07-30 16:54 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-12-11 23:49 - 2009-07-14 03:34 - 00000499 _____ C:\Windows\win.ini 2013-12-11 16:00 - 2013-12-11 12:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-12-11 10:46 - 2013-07-30 17:01 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 10:46 - 2013-07-30 17:01 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-11 10:46 - 2013-07-30 17:01 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-11 10:40 - 2013-07-30 16:08 - 00000000 ___RD C:\Users\Moragor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-12-10 06:38 - 2013-07-30 21:54 - 00001076 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000Core.job 2013-12-10 02:42 - 2013-12-09 14:09 - 00000000 ____D C:\Users\Moragor\AppData\Local\Skyrim 2013-12-09 22:29 - 2013-12-09 22:28 - 00000698 _____ C:\Users\Moragor\Desktop\Guild Wars 2 Load.lnk 2013-12-09 14:30 - 2013-07-31 07:30 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-12-09 14:24 - 2013-12-09 14:24 - 00001451 _____ C:\Users\Public\Desktop\The Elder Scrolls Construction Set.lnk 2013-12-09 14:23 - 2013-07-30 21:45 - 00000000 ____D C:\Games 2013-12-07 23:16 - 2013-07-30 22:27 - 00000000 ____D C:\Program Files (x86)\JDownloader 2013-12-06 05:16 - 2013-07-30 22:52 - 00000000 ____D C:\Windows\Panther 2013-12-06 02:10 - 2013-12-06 02:10 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-12-06 02:04 - 2013-12-06 02:04 - 00000000 ____D C:\Users\Moragor\Documents\Square Enix 2013-12-05 21:13 - 2013-12-05 21:13 - 00000207 _____ C:\Users\Moragor\Desktop\FINAL FANTASY VIII.url 2013-12-05 20:54 - 2013-12-05 20:54 - 00008387 _____ C:\Users\Moragor\AppData\Local\recently-used.xbel 2013-12-05 20:54 - 2013-10-14 19:23 - 00000000 ____D C:\Users\Moragor\AppData\Local\gtk-2.0 2013-12-05 20:54 - 2013-07-30 23:07 - 00000000 ____D C:\Users\Moragor\.gimp-2.8 2013-12-05 10:30 - 2013-12-05 10:30 - 00000234 _____ C:\Windows\CCPen200.ini 2013-12-05 09:55 - 2013-07-31 02:15 - 00000072 _____ C:\Users\Public\LMDebug.log 2013-12-03 06:25 - 2013-07-30 21:54 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000UA 2013-12-03 06:25 - 2013-07-30 21:54 - 00003710 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000Core 2013-12-03 02:10 - 2013-07-31 07:08 - 00000000 ____D C:\Users\Moragor\AppData\Local\NVIDIA 2013-12-03 02:09 - 2013-10-30 15:34 - 00000000 ____D C:\Users\Moragor\AppData\Local\NVIDIA Corporation 2013-12-03 02:09 - 2013-07-30 16:14 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-12-03 02:09 - 2013-07-30 16:14 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-12-03 02:09 - 2013-07-30 16:13 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-12-02 02:41 - 2013-07-31 03:26 - 05415776 _____ C:\Windows\PE_Rom.dll 2013-12-02 02:39 - 2013-08-03 12:27 - 05468800 _____ C:\Windows\PE_File.dll 2013-12-02 02:35 - 2013-12-02 02:35 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2013-12-02 02:34 - 2013-12-02 01:35 - 00016152 _____ C:\Windows\system32\Drivers\SWDUMon.sys 2013-12-02 02:34 - 2013-11-21 12:54 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys 2013-12-02 02:34 - 2013-07-30 16:08 - 00001432 _____ C:\Users\Moragor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-02 02:27 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-02 02:24 - 2013-07-30 22:01 - 01594020 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-12-02 02:21 - 2013-12-02 02:21 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-02 02:21 - 2013-12-02 02:21 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-02 02:21 - 2013-12-02 02:21 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-02 02:21 - 2013-12-02 02:21 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-02 02:21 - 2013-12-02 02:21 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-02 02:21 - 2013-12-02 02:21 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-02 02:21 - 2013-12-02 02:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-02 02:14 - 2013-07-30 16:22 - 00000000 ____D C:\Program Files (x86)\Intel 2013-12-02 02:13 - 2013-12-02 02:13 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-12-02 02:12 - 2013-12-02 02:12 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3 2013-12-02 02:10 - 2013-07-30 16:29 - 00000000 ____D C:\Program Files\Intel 2013-12-02 02:09 - 2013-12-02 02:09 - 00003907 _____ C:\Windows\system32\WmiConf.txt 2013-12-02 02:04 - 2013-07-30 16:18 - 00000000 ____D C:\Windows\System32\Tasks\ASUS 2013-12-02 01:50 - 2013-12-02 01:50 - 00000000 ____D C:\Users\Moragor\AppData\Local\DriverTuner 2013-12-02 01:45 - 2013-12-02 01:45 - 00000000 ____D C:\Users\Moragor\SystemRequirementsLab 2013-12-02 01:45 - 2013-08-15 14:44 - 00000000 ____D C:\Program Files (x86)\SystemRequirementsLab 2013-12-02 01:41 - 2013-12-02 01:41 - 00000000 ____D C:\Users\Moragor\Documents\Meine empfangenen Dateien 2013-12-02 01:41 - 2013-12-02 01:41 - 00000000 ____D C:\ProgramData\FLEXnet 2013-12-02 01:35 - 2013-12-02 01:35 - 00000000 ____D C:\Users\Moragor\AppData\Local\SlimWare Utilities Inc 2013-12-02 01:28 - 2013-12-02 01:28 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers 2013-12-02 01:28 - 2013-12-02 01:28 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Easeware 2013-12-02 00:37 - 2013-12-02 00:37 - 00000000 ____D C:\ProgramData\Ashampoo 2013-12-02 00:33 - 2013-12-02 00:33 - 00000000 ____D C:\Users\Moragor\Documents\Scannen 2013-12-02 00:32 - 2013-12-02 00:29 - 00000000 ____D C:\Program Files (x86)\Scan Assistant 2013-12-02 00:31 - 2013-12-02 00:31 - 00000000 ____D C:\Windows\twain_64 2013-12-02 00:31 - 2013-07-30 22:52 - 00000000 ____D C:\Users\Moragor\AppData\Local\SSScan 2013-12-02 00:31 - 2013-07-30 22:48 - 00000000 ____D C:\Program Files (x86)\Samsung 2013-12-02 00:28 - 2013-07-30 22:52 - 00000000 ____D C:\ProgramData\SSScan 2013-12-01 23:02 - 2013-07-30 17:22 - 00000378 _____ C:\Users\Moragor\AppData\Roaming\Digital Clock_Settings.ini 2013-12-01 22:12 - 2013-12-01 22:12 - 00000000 ____D C:\ProgramData\SSScanAppDataDir 2013-12-01 22:12 - 2013-12-01 22:12 - 00000000 ____D C:\ProgramData\MSScanAppDataDir 2013-11-30 16:21 - 2013-11-30 16:21 - 00000000 ____D C:\Users\Moragor\AppData\Local\Razer_Inc 2013-11-30 16:21 - 2013-08-03 10:15 - 00000000 ____D C:\Users\Moragor\Documents\Razer 2013-11-30 16:21 - 2013-07-30 22:55 - 00000000 ____D C:\Users\Moragor\AppData\Local\Razer 2013-11-30 16:20 - 2013-07-30 22:13 - 00002136 _____ C:\Users\Public\Desktop\Razer Game Booster.lnk 2013-11-30 16:20 - 2013-07-30 22:13 - 00000000 ____D C:\ProgramData\Razer 2013-11-30 16:20 - 2013-07-30 22:13 - 00000000 ____D C:\Program Files (x86)\Razer 2013-11-30 16:18 - 2013-08-03 12:57 - 00015300 _____ C:\autoupdate.log 2013-11-30 16:18 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-11-30 04:06 - 2013-11-30 04:01 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\NetSpeedMonitor 2013-11-30 03:58 - 2013-11-27 22:49 - 00000000 ____D C:\Users\Moragor\Documents\MessageAnalyzer 2013-11-29 17:56 - 2013-10-30 15:25 - 01096480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-11-29 17:56 - 2013-10-30 15:25 - 00979744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-11-28 16:35 - 2013-07-30 22:43 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\DisplayFusion 2013-11-28 02:52 - 2013-07-30 22:43 - 00000000 ____D C:\Users\Moragor\Documents\DisplayFusion Backups 2013-11-28 02:52 - 2013-07-30 22:43 - 00000000 ____D C:\Program Files (x86)\DisplayFusion 2013-11-27 23:17 - 2013-11-26 03:02 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\DAEMON Tools Lite 2013-11-27 23:02 - 2013-11-27 23:02 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\ASCOMP Software 2013-11-27 22:54 - 2013-11-27 22:45 - 00000000 ____D C:\Users\Moragor\AppData\Local\Abelssoft 2013-11-27 22:49 - 2013-11-27 22:49 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_wfpcapture_01011.Wdf 2013-11-27 22:45 - 2013-11-27 22:45 - 00000000 ____D C:\Windows\System32\Tasks\Abelssoft 2013-11-27 22:45 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2013-11-27 22:33 - 2013-07-30 16:54 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Mozilla 2013-11-27 21:08 - 2013-11-27 21:08 - 00000000 ____D C:\ProgramData\Binarysense 2013-11-26 14:35 - 2013-11-26 14:35 - 00000000 ____D C:\ProgramData\Sophos 2013-11-26 12:54 - 2013-12-11 23:49 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-26 11:19 - 2013-12-11 23:49 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-26 11:18 - 2013-12-11 23:49 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-26 11:11 - 2013-12-11 23:49 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-26 10:48 - 2013-12-11 23:49 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-26 10:46 - 2013-12-11 23:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-26 10:41 - 2013-12-11 23:49 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-26 10:29 - 2013-12-11 23:49 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-26 10:27 - 2013-12-11 23:49 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-26 10:23 - 2013-12-11 23:49 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-26 10:21 - 2013-12-11 23:49 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-26 10:18 - 2013-12-11 23:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-26 10:18 - 2013-12-11 23:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-26 10:16 - 2013-12-11 23:49 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-26 09:57 - 2013-12-11 23:49 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-26 09:38 - 2013-12-11 23:49 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-26 09:38 - 2013-12-11 23:49 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-26 09:35 - 2013-12-11 23:49 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-26 09:32 - 2013-12-11 23:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-26 09:28 - 2013-12-11 23:49 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-26 09:16 - 2013-12-11 23:49 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-26 09:02 - 2013-12-11 23:49 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-26 08:48 - 2013-12-11 23:49 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-26 08:32 - 2013-12-11 23:49 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-26 08:26 - 2013-12-11 23:49 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-26 08:07 - 2013-12-11 23:49 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-26 07:40 - 2013-12-11 23:49 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-26 07:34 - 2013-12-11 23:49 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-26 07:34 - 2013-12-11 23:49 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-26 07:33 - 2013-12-11 23:49 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-26 07:27 - 2013-12-11 23:49 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-26 03:08 - 2013-11-26 03:01 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\Documents\Mobogenie 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\AppData\Local\Mobogenie 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\AppData\Local\cache 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 _____ C:\Users\Moragor\daemonprocess.txt 2013-11-26 03:04 - 2013-11-26 03:03 - 00000000 ____D C:\Program Files (x86)\Mobogenie 2013-11-26 03:02 - 2013-11-26 03:02 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2013-11-26 03:02 - 2013-11-26 03:02 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite 2013-11-25 16:01 - 2013-08-25 21:00 - 00000000 ____D C:\Windows\Minidump 2013-11-25 16:01 - 2013-08-15 07:17 - 00000000 ____D C:\Users\Moragor\Tracing 2013-11-25 15:54 - 2013-11-25 15:54 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-11-23 19:26 - 2013-12-11 11:57 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-11-23 18:47 - 2013-12-11 11:57 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Users\Public\Documents\LogiShrd 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Users\Moragor\AppData\Local\Logishrd 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Program Files\Logitech 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Program Files\Common Files\Logishrd 2013-11-21 12:54 - 2013-07-30 22:28 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Logitech 2013-11-21 12:54 - 2013-07-30 22:28 - 00000000 ____D C:\ProgramData\LogiShrd 2013-11-21 12:51 - 2013-07-30 22:28 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Logishrd 2013-11-21 04:22 - 2013-11-21 04:22 - 00000000 ____D C:\Users\Moragor\Documents\Egosoft 2013-11-20 22:11 - 2013-11-20 22:11 - 00000672 _____ C:\Users\Public\Desktop\Guild Wars 2.lnk 2013-11-20 22:11 - 2013-09-24 15:16 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Guild Wars 2 2013-11-20 22:11 - 2013-07-30 22:23 - 00000000 ____D C:\Users\Moragor\Documents\Guild Wars 2 2013-11-18 09:37 - 2013-11-18 09:37 - 00000000 ____D C:\ProgramData\Overwolf 2013-11-17 15:08 - 2013-11-17 15:08 - 00000206 _____ C:\Users\Moragor\Desktop\X Rebirth.url 2013-11-17 07:26 - 2013-11-16 07:59 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-16 07:59 - 2013-07-30 17:01 - 00000000 ____D C:\Users\Moragor\AppData\Local\Adobe 2013-11-15 21:23 - 2013-07-31 03:22 - 00000000 ____D C:\Windows\system32\MRT 2013-11-15 21:22 - 2013-07-31 02:53 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-11-14 12:56 - 2013-11-20 10:22 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-14 12:56 - 2013-11-20 10:22 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00357152 _____ C:\Windows\system32\NvIFROpenGL.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-14 12:56 - 2013-11-20 10:22 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-14 12:56 - 2013-10-30 15:26 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-14 12:56 - 2013-07-30 16:14 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-14 12:56 - 2013-07-30 16:14 - 18293608 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-14 12:56 - 2013-07-30 16:14 - 15218504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-11-14 12:56 - 2013-07-30 16:14 - 03069608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-11-14 12:56 - 2013-07-30 16:14 - 02697248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-11-14 12:56 - 2013-07-30 16:14 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-11-14 12:56 - 2013-07-30 16:14 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-11-14 12:56 - 2013-07-30 16:14 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-11-14 12:56 - 2013-07-30 16:14 - 00023754 _____ C:\Windows\system32\nvinfo.pb Files to move or delete: ==================== C:\Users\Moragor\Network_Meter_Data.js ==== Bamital & volsnap Check ==== C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-11 10:58 ==== End Of Log ==== |
14.12.2013, 03:36 | #2 |
| Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher Teil 2 (Zeichenlimit)
__________________AVG Meldete beim Systemscan keine Infektionen. CPU Auslastung des fragwürdigen Prozesses ist null. FRST Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-12-2013 01 Ran by Moragor at 2013-12-14 01:25:05 Running from D:\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} ==================== Installed Programs ====================== 3DMark (x32) 7-Zip 9.20 (x64 edition) (Version: 9.20.00.0) Abloadtool (x32) Adobe Flash Player 10 ActiveX (x32 Version: 10.0.42.34) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170) Adobe Reader XI (11.0.05) - Deutsch (x32 Version: 11.0.05) Age of Empires II: HD Edition (x32) Age of Empires® III: Complete Collection (x32) AI Suite II (x32 Version: 2.01.02) Areca (x32) Asmedia ASM104x USB 3.0 Host Controller Driver (x32 Version: 1.16.10.0) Asmedia ASM106x SATA Host Controller Driver (x32 Version: 1.3.4.000) ASUS Boot Setting (x32 Version: 1.00.09) ASUS Product Register Program (x32 Version: 1.0.014) AVG 2014 (Version: 14.0.3658) AVG 2014 (Version: 14.0.4259) AVG 2014 (Version: 2014.0.4259) Blender (Version: 2.68a) Borderlands 2 (x32) Canon Utilities Digital Photo Professional 3.11 (x32 Version: 3.11.30.3) Canon Utilities EOS Sample Music (x32 Version: 1.0.1.1) Canon Utilities EOS Utility (x32 Version: 2.11.3.0) Canon Utilities ImageBrowser EX (x32 Version: 1.2.1.13) Canon Utilities PhotoStitch (x32 Version: 3.1.23.47) Canon Utilities Picture Style Editor (x32 Version: 1.10.2.0) CCleaner (Version: 4.04) Chaos on Deponia (x32) CLX.PayPen - CLX.PayPen Wireless (x32 Version: 2.0.6.1) Corsair Link(TM) USB Dongle (Driver Removal) (x32) CorsairLINK2 (x32 Version: 2.3.4816) CyberLink BD_3D Advisor 2.0 (x32 Version: 2.0.5425) CyberLink LabelPrint 2.5 (x32 Version: 2.5.5311) CyberLink Media Suite 10 (x32 Version: 10.0) CyberLink Media Suite 10 (x32 Version: 10.2021) CyberLink MediaEspresso 6.5 (x32 Version: 6.5.3019_44673) CyberLink MediaShow 6 (x32 Version: 6.0.4312) CyberLink Power2Go 7 (x32 Version: 7.0.0.3126b) CyberLink PowerDVD 10 (x32 Version: 10.0.4125.52) CyberLink PowerProducer 5.5 (x32 Version: 5.5.3.4118) D3DX10 (x32 Version: 15.4.2368.0902) DAEMON Tools Lite (x32 Version: 4.48.1.0347) Defraggler (Version: 2.15) Deponia (x32) DisplayFusion (x32) DisplayFusion 5.1.1 (x32 Version: 5.1.1.0) Dropbox (HKCU Version: 2.0.26) E-Finance Java (x32 Version: 1.0.0.0) eReg (x32 Version: 1.20.138.34) Everything 1.2.1.371 (x32) EXPERTool v8.9 (x32 Version: 8.9.4.2) FINAL FANTASY VIII (x32) FormatFactory 3.1.1 (x32 Version: 3.1.1) Fotogalerie (x32 Version: 16.4.3508.0205) Futuremark SystemInfo (x32 Version: 4.17.0) GeForce Experience NvStream Client Components (Version: 1.6.28) GIMP 2.8.6 (Version: 2.8.6) GIMP LqR Plug-In (x32 Version: PlugIn: 0.7.1 - Lib: 0.4.1) GML Matting 0.3 (x32 Version: 0.3) Goodbye Deponia (x32) Google Chrome (HKCU Version: 31.0.1650.63) Guild Wars 2 (x32) GW2BattleStats (x32 Version: 1.7.0.0) Intel(R) Management Engine Components (x32 Version: 9.0.0.1323) Intel(R) Network Connections 18.1.59.0 (Version: 18.1.59.0) Intel® Trusted Connect Service Client (Version: 1.27.798.1) Intel® Watchdog Timer Driver (Intel® WDT) (x32) IrfanView (remove only) (x32 Version: 4.36) Java 7 Update 25 (64-bit) (Version: 7.0.250) Java 7 Update 45 (x32 Version: 7.0.450) Java Auto Updater (x32 Version: 2.1.9.8) JDownloader 0.9 (x32 Version: 0.9) LG ODD Auto Firmware Update (x32 Version: 10.01.0712.01) LockHunter 2.0 beta 2, 64 bit Logitech Gaming Software (Version: 8.45.88) Logitech Gaming Software 8.46 (Version: 8.46.27) Logitech SetPoint 6.61 (Version: 6.61.15) Mafia II (x32) marvell 91xx driver (x32 Version: 1.2.0.1014) Microsoft .NET Framework 4.5 DEU Language Pack (Version: 4.5.50709) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Camera Codec Pack (Version: 16.4.1970.0624) Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0) Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0) Microsoft Office Basic Edition 2003 (x32 Version: 11.0.8173.0) Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003) Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1) Microsoft Silverlight (Version: 5.1.20913.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (x32 Version: 11.0.51106.1) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (x32 Version: 11.0.51106.1) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 (Version: 11.0.51106) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 (Version: 11.0.51106) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106) Microsoft Xbox 360 Accessories 1.2 (Version: 1.20.146.0) Movie Maker (x32 Version: 16.4.3508.0205) Mozilla Firefox 25.0.1 (x86 de) (x32 Version: 25.0.1) Mozilla Maintenance Service (x32 Version: 24.2.0) Mozilla Thunderbird 24.2.0 (x86 de) (x32 Version: 24.2.0) Mp3tag v2.57 (x32 Version: v2.57) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT110 (x32 Version: 16.4.1108.0727) MSVCRT110_amd64 (Version: 16.4.1109.0912) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) Nexus Mod Manager (Version: 0.45.6) NVIDIA 3D Vision Controller-Treiber 331.82 (Version: 331.82) NVIDIA 3D Vision Treiber 331.82 (Version: 331.82) NVIDIA 3D Vision Video Player (x32 Version: 1.7.5) NVIDIA GeForce Experience 1.8 (Version: 1.8) NVIDIA Grafiktreiber 331.82 (Version: 331.82) NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4) NVIDIA Install Application (Version: 2.1002.142.992) NVIDIA LED Visualizer 1.0 (Version: 1.0) NVIDIA Network Service (Version: 1.0) NVIDIA PhysX (x32 Version: 9.13.0725) NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725) NVIDIA ShadowPlay 10.10.5 (Version: 10.10.5) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3182) NVIDIA Systemsteuerung 331.82 (Version: 331.82) NVIDIA Update 10.10.5 (Version: 10.10.5) NVIDIA Update Core (Version: 10.10.5) NVIDIA Virtual Audio 1.2.12 (Version: 1.2.12) Overwolf (x32 Version: 0.47.284) Photo Common (x32 Version: 16.4.3508.0205) Photo Gallery (x32 Version: 16.4.3508.0205) Razer Core (x32 Version: 1.0.1.46) Razer Game Booster (x32 Version: 4.1.59.0) Razer Synapse 2.0 (x32 Version: 1.15.4) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6657) Samsung Scan Assistant (x32 Version: 1.05.07 (20.07.2012)) Samsung Universal Print Driver 2 PCL6 (x32 Version: 2.50.03.00) Samsung Universal Scan Driver (x32 Version: 1.2.19.0) SHIELD Streaming (Version: 1.6.75) Skype™ 6.10 (x32 Version: 6.10.104) Speccy (Version: 1.22) Star Wars: Knights of the Old Republic (x32) Star Wars: Knights of the Old Republic II (x32) StarCitizen (x32 Version: 1.0) Steam (x32 Version: 1.0.0.0) Steganos Password Manager 2012 (x32 Version: 13.0.2) System Requirements Lab CYRI (x32 Version: 6.0.7.0) System Requirements Lab for Intel (x32 Version: 4.5.11.0) TeamSpeak 3 Client (Version: 3.0.13.1) TES Construction Set (x32) Total War: ROME II (x32) Total War: SHOGUN 2 (x32) TreeSize Free V2.7 (x32 Version: 2.7) Tropico 4 (x32) Tunatic (x32) Visual Studio 2010 x64 Redistributables (Version: 13.0.0.1) Visual Studio 2012 x64 Redistributables (Version: 14.0.0.1) Visual Studio 2012 x86 Redistributables (x32 Version: 14.0.0.1) VLC media player 2.0.8 (Version: 2.0.8) Wacom Tablett (Version: 6.3.6-3) Wartung Samsung CLX-3180 Series (x32) WebTablet FB Plugin 32 bit (x32 Version: 2.1.0.3) WebTablet FB Plugin 64 bit (Version: 2.1.0.3) Windows Live Communications Platform (x32 Version: 16.4.3508.0205) Windows Live Essentials (x32 Version: 16.4.3508.0205) Windows Live ID Sign-in Assistant (Version: 7.250.4311.0) Windows Live Installer (x32 Version: 16.4.3508.0205) Windows Live Messenger (x32 Version: 16.4.3508.0205) Windows Live Photo Common (x32 Version: 16.4.3508.0205) Windows Live PIMT Platform (x32 Version: 16.4.3508.0205) Windows Live SOXE (x32 Version: 16.4.3508.0205) Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205) Windows Live UX Platform (x32 Version: 16.4.3508.0205) Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205) Windows-Treiberpaket - C Technologies AB (PayPen) Input Pen (09/28/2007 2.0.0.0) (Version: 09/28/2007 2.0.0.0) X Rebirth (x32) X3: Albion Prelude (x32) X3: Reunion (x32) X3: Terran Conflict (x32) ==================== Restore Points ========================= 13-12-2013 23:37:07 Entfernt 3DMark 11 ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {038C499D-1B9E-48A9-9518-4782B0829B7C} - System32\Tasks\Razer_Game_Booster_AutoUpdate => C:\Program Files (x86)\Razer\Razer Game Booster\AutoUpdate.exe Task: {0DF5D25F-5E63-49C0-9CBC-EC3056BFC4A3} - System32\Tasks\Backup2 => F:\backup_616701900.bat [2013-08-02] () Task: {21CB778D-7980-4ADE-BF1C-ED68F6985F40} - System32\Tasks\Defraggler Volume D Task => C:\Program Files\Defraggler\df64.exe [2013-07-05] (Piriform Ltd) Task: {40ABC76A-D8DD-4958-8180-660A3F0811EE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-07-22] (Piriform Ltd) Task: {47472F59-945D-4EAA-B4C9-820B33097567} - System32\Tasks\Backup1 => E:\backup_134474422.bat [2013-08-02] () Task: {62136AD8-BDE1-4C16-9656-F7F3884D80EB} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr.exe [2011-09-09] () Task: {64AA4CDC-F83C-4C55-B49C-05C3F32199E8} - System32\Tasks\Start CorsairLINK Hardware Monitor => C:\Program Files (x86)\Corsair\CorsairLINK2\CorsairLINK_HardwareMonitor.exe [2013-03-09] (Corsair Components, Inc.) Task: {70DE4F15-0007-4D89-B1DD-7BA61BB3FC8F} - System32\Tasks\ASUS\ASUS DigiPowerControl Help => C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ Power Control\PowerControlHelp.exe [2012-07-23] (ASUSTeK Computer Inc.) Task: {8603220E-49AE-465A-A6DC-0C40FC9BA2A9} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000Core => C:\Users\Moragor\AppData\Local\Google\Update\GoogleUpdate.exe [2013-07-30] (Google Inc.) Task: {8B028DE7-E4A5-4BB2-8A31-BA156DBD296F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000UA => C:\Users\Moragor\AppData\Local\Google\Update\GoogleUpdate.exe [2013-07-30] (Google Inc.) Task: {BFFFE89B-36A3-460A-8786-1CB269E1B549} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11] (Adobe Systems Incorporated) Task: {CB4E5A10-2FEF-420F-86CE-5B3E242C1A04} - System32\Tasks\ASUS\i-Setup171723 => C:\Windows\Chipset\AsusSetup.exe [2010-09-08] (ASUSTeK Computer Inc.) Task: {E2E5A6C6-0543-4262-B783-C10EB1738940} - System32\Tasks\Abelssoft\CheckDriveBackgroundGuard => C:\Program Files (x86)\CheckDrive\CheckDriveBackgroundGuard.exe Task: {EAA3B024-6197-4035-92B6-6041A44C23EE} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2012-03-13] (ASUSTeK Computer Inc.) Task: {EB947F17-C8AB-4D36-AF9C-84939FE182DF} - System32\Tasks\PCMeter\Startup => C:\Users\Moragor\Desktop\PCMeter\PCMeterV0.3.exe [2013-01-12] (AddGadgets) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Defraggler Volume D Task.job => C:\Program Files\Defraggler\df64.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000Core.job => C:\Users\Moragor\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000UA.job => C:\Users\Moragor\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-07-30 22:47 - 2011-04-11 06:26 - 00034304 _____ () C:\Windows\System32\spep6l.dll 2013-07-30 16:14 - 2013-11-11 16:02 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00045608 _____ () C:\Program Files (x86)\Overwolf\x64\OWExplorer-20125.dll 2013-10-13 10:00 - 2013-10-13 10:00 - 00012520 _____ () C:\Users\Moragor\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.3.gadget\CoreTempReader.dll 2013-10-13 10:00 - 2013-10-13 10:00 - 00015080 _____ () C:\Users\Moragor\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.3.gadget\GetCoreTempInfoNET.dll 2013-10-13 10:00 - 2013-10-13 10:00 - 00014056 _____ () C:\Users\Moragor\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.3.gadget\SystemInfo.dll 2013-10-12 19:48 - 2013-06-06 03:09 - 01185048 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00039464 _____ () C:\Program Files (x86)\Overwolf\x64\OWLog.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00721960 _____ () C:\Program Files (x86)\Overwolf\x64\OWExplorerLauncher.dll 2013-12-02 00:31 - 2013-10-04 05:53 - 00734720 _____ () C:\Windows\system32\SnMinDrv.dll 2013-07-30 22:47 - 2013-04-22 16:04 - 01363968 _____ () C:\Windows\system32\spool\DRIVERS\x64\3\spep6du.dll 2013-07-31 03:10 - 2013-12-14 01:20 - 00029184 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll 2013-07-31 03:10 - 2010-06-29 03:58 - 00104448 ____N () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll 2013-08-03 15:23 - 2013-03-09 09:09 - 00053760 _____ () C:\Program Files (x86)\Corsair\CorsairLINK2\SynchronousIO.Native.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00079400 _____ () C:\Program Files (x86)\Overwolf\OWExplorer-20125.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00015288 _____ () C:\Program Files (x86)\Overwolf\ODK.AddIns.V2.HostView.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00134696 _____ () C:\Program Files (x86)\Overwolf\OWService.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00970792 _____ () C:\Program Files (x86)\Overwolf\OWServer.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00038440 _____ () C:\Program Files (x86)\Overwolf\OWLog.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00839720 _____ () C:\Program Files (x86)\Overwolf\OWAgent.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00025600 _____ () C:\Program Files (x86)\Overwolf\CoreAudioApi.dll 2013-11-12 03:37 - 2013-12-09 12:08 - 00014776 _____ () C:\Users\Moragor\AppData\Local\Overwolf\Apps\Contracts\ODK.AddIns.V2.Contract.dll 2013-11-12 03:37 - 2013-12-09 12:08 - 00014776 _____ () C:\Users\Moragor\AppData\Local\Overwolf\Apps\AddInViews\ODK.AddIns.V2.AddInView.dll 2013-11-12 04:04 - 2013-11-12 04:04 - 02173952 _____ () C:\Users\Moragor\AppData\Local\Overwolf\Apps\AddIns\LMDavid_GW2_Overpowered_1.0.0\ODK.AddIns.ThirdParty.LMDavid_GW2_Overpowered.dll 2013-11-12 03:37 - 2013-12-09 12:08 - 00016824 _____ () C:\Users\Moragor\AppData\Local\Overwolf\Apps\AddInSideAdapters\ODK.AddIns.V2.AddInSideAdapter.dll 2013-11-12 03:37 - 2013-12-09 12:08 - 00017848 _____ () C:\Users\Moragor\AppData\Local\Overwolf\Apps\HostSideAdapters\ODK.AddIns.V2.HostSideAdapter.dll 2013-08-02 08:38 - 2013-01-29 18:45 - 00112128 _____ () C:\Program Files (x86)\Canon\ImageBrowser EX\MFMFileSystemWatcher.dll 2013-03-13 21:48 - 2013-03-13 21:48 - 24978944 _____ () C:\Users\Moragor\AppData\Roaming\Dropbox\bin\libcef.dll 2011-03-09 13:21 - 2011-03-09 13:21 - 00619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2011-03-09 13:21 - 2011-03-09 13:21 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2013-07-31 03:12 - 2012-05-17 11:57 - 00043520 ____N () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\HookKey32.dll 2013-07-31 03:12 - 2012-07-05 11:05 - 00253952 ____N () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\pngio.dll 2013-07-31 03:11 - 2011-07-12 19:14 - 00147456 _____ () C:\Program Files (x86)\ASUS\AI Suite II\AssistFunc.dll 2013-07-31 03:11 - 2010-10-05 08:22 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\pngio.dll 2013-07-31 03:11 - 2012-10-08 17:07 - 00972288 _____ () C:\Program Files (x86)\ASUS\AI Suite II\BarGadget\BarGadget.dll 2013-07-31 03:12 - 2012-06-19 11:56 - 01305600 ____N () C:\Program Files (x86)\ASUS\AI Suite II\MyLogo\MyLogo.dll 2013-07-31 03:11 - 2012-05-25 10:33 - 00883712 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\Sensor.dll 2013-07-31 03:11 - 2012-05-28 21:27 - 01622528 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor Graph\SensorGraph.dll 2013-07-31 03:11 - 2011-09-19 20:18 - 01243136 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Settings\Settings.dll 2013-07-31 03:11 - 2011-07-21 09:06 - 00846848 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Splitter\Splitter.dll 2013-07-31 03:11 - 2012-08-29 18:09 - 00875520 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TabGadget\TabGadget.dll 2013-12-02 02:05 - 2011-06-08 11:15 - 00651264 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Thermal Radar\ThermalRadar.dll 2013-07-31 03:10 - 2010-08-23 03:17 - 00662016 ____R () C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMLib.dll 2013-07-31 03:11 - 2010-10-05 08:22 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\ImageHelper.dll 2013-07-31 03:11 - 2009-08-12 20:15 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\pngio.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service) (User: ) Description: Der Index kann nicht initialisiert werden. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service) (User: ) Description: Die Anwendung kann nicht initialisiert werden. Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service) (User: ) Description: Das Gatherer-Objekt kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service) (User: ) Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service) (User: ) Description: Plug-In in <Search.JetPropStore> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service) (User: ) Description: Die Eigenschaftenspeicherdaten können von Windows Search nicht geladen werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Die Inhaltsindexdatenbank ist fehlerhaft. (HRESULT : 0xc0041800) (0xc0041800) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service) (User: ) Description: Windows Search wird aufgrund eines Problems bei der Indizierung The catalog is corrupt beendet. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service) (User: ) Description: Vom Suchdienst wurden beschädigte Datendateien im Index {id=4700} erkannt. Vom Dienst wird versucht, dieses Problem durch Neuerstellung des Indexes automatisch zu beheben. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service) (User: ) Description: Der Jet-Eigenschaftenspeicher kann von Windows Search nicht geöffnet werden. Details: 0x%08x (0xc0041800 - Die Inhaltsindexdatenbank ist fehlerhaft. (HRESULT : 0xc0041800)) Error: (12/14/2013 01:20:09 AM) (Source: ESENT) (User: ) Description: Windows (1552) Windows: Fehler -1811 beim Öffnen von Protokolldatei C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0011A.log. System errors: ============= Error: (12/14/2013 01:20:39 AM) (Source: Service Control Manager) (User: ) Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Windows Search" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: %%1056 Error: (12/14/2013 01:20:13 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (12/14/2013 01:20:09 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (12/14/2013 01:20:09 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde mit folgendem dienstspezifischem Fehler beendet: %%-1073473535. Error: (12/14/2013 00:32:51 AM) (Source: Service Control Manager) (User: ) Description: Dienst "AllShare Framework DMS" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (12/13/2013 01:09:08 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (12/13/2013 01:08:50 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 12.12.2013 um 21:32:02 unerwartet heruntergefahren. Error: (12/12/2013 11:15:01 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (12/11/2013 11:48:05 PM) (Source: DCOM) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (12/11/2013 03:46:08 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Microsoft Office Sessions: ========================= Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service)(User: ) Description: Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) Search.TripoliIndexer Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Search.JetPropStore Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Die Inhaltsindexdatenbank ist fehlerhaft. (HRESULT : 0xc0041800) (0xc0041800) Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service)(User: ) Description: Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) The catalog is corrupt Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service)(User: ) Description: Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) 4700 Error: (12/14/2013 01:20:09 AM) (Source: Windows Search Service)(User: ) Description: Details: 0x%08x (0xc0041800 - Die Inhaltsindexdatenbank ist fehlerhaft. (HRESULT : 0xc0041800)) Error: (12/14/2013 01:20:09 AM) (Source: ESENT)(User: ) Description: Windows1552Windows: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0011A.log-1811 ==================== Memory info =========================== Percentage of memory in use: 22% Total physical RAM: 16322.99 MB Available physical RAM: 12679.64 MB Total Pagefile: 32644.16 MB Available Pagefile: 28774.72 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:238.37 GB) (Free:105.17 GB) NTFS Drive d: (2TB) (Fixed) (Total:1863.01 GB) (Free:1597.72 GB) NTFS Drive e: (Backup 1) (Fixed) (Total:232.88 GB) (Free:39.87 GB) NTFS Drive f: (Backup 2) (Fixed) (Total:465.76 GB) (Free:230.11 GB) NTFS Drive g: (Galileo Press) (CDROM) (Total:1.93 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 238 GB) (Disk ID: E418B976) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=238 GB) - (Type=07 NTFS) ======================================================== Disk: 3 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 714D68FC) Partition 1: (Not Active) - (Size=-198626508800) - (Type=07 NTFS) ==================== End Of Log ============================ Code:
ATTFilter GMER 2.1.19163 - hxxp://www.gmer.net Rootkit scan 2013-12-14 01:32:56 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk2\DR2 -> \Device\00000073 OCZ-VERT rev.1.5_ 238.47GB Running: gmer_2.1.19163.exe; Driver: C:\Users\Moragor\AppData\Local\Temp\kwliypoc.sys ---- User code sections - GMER 2.1 ---- .text C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe[2920] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe[2920] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe[3392] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe[3392] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe[3196] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe[3196] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\CLX.PayPen\CLXReader.exe[3576] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\CLX.PayPen\CLXReader.exe[3576] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\Overwolf\Overwolf.exe[3640] C:\Windows\syswow64\USER32.dll!GetMessageW 00000000754b78e2 5 bytes JMP 0000000153109300 .text C:\Program Files (x86)\Overwolf\Overwolf.exe[3640] C:\Windows\syswow64\USER32.dll!ShowWindow 00000000754c0dfb 5 bytes JMP 0000000153109440 .text C:\Program Files (x86)\Overwolf\Overwolf.exe[3640] C:\Windows\syswow64\USER32.dll!GetCursorPos 00000000754c1218 5 bytes JMP 00000001531090e0 .text C:\Program Files (x86)\Overwolf\Overwolf.exe[3640] C:\Windows\syswow64\USER32.dll!UpdateLayeredWindowIndirect 00000000754c28da 5 bytes JMP 0000000153108d70 .text C:\Program Files (x86)\Overwolf\Overwolf.exe[3640] C:\Windows\syswow64\USER32.dll!WindowFromPoint 00000000754ded12 5 bytes JMP 0000000153108f40 .text C:\Program Files (x86)\Overwolf\Overwolf.exe[3640] C:\Windows\syswow64\USER32.dll!AttachThreadInput 00000000754df188 5 bytes JMP 000000015310a560 .text C:\Program Files (x86)\Overwolf\Overwolf.exe[3640] C:\Windows\syswow64\shell32.dll!ShellExecuteW 0000000075ae3c31 5 bytes JMP 000000015310a370 .text C:\Program Files (x86)\Overwolf\Overwolf.exe[3640] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\Overwolf\Overwolf.exe[3640] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\Overwolf\Overwolf.exe[3640] C:\Windows\syswow64\COMDLG32.dll!GetOpenFileNameW 0000000076b2a2d5 5 bytes JMP 000000015310a010 .text C:\Program Files (x86)\Overwolf\Overwolf.exe[3640] C:\Windows\syswow64\COMDLG32.dll!GetSaveFileNameW 0000000076b2a36e 5 bytes JMP 000000015310a1c0 .text C:\Users\Moragor\AppData\Roaming\Dropbox\bin\Dropbox.exe[4032] C:\Windows\syswow64\Psapi.dll!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Users\Moragor\AppData\Roaming\Dropbox\bin\Dropbox.exe[4032] C:\Windows\syswow64\Psapi.dll!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE[2132] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE[2132] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\Everything\Everything.exe[4200] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\Everything\Everything.exe[4200] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe[5460] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe[5460] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6032.exe[6536] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6032.exe[6536] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe[8104] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe[8104] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe[7496] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe[7496] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE[8332] C:\Windows\syswow64\ole32.dll!OleLoadFromStream 0000000076746143 5 bytes JMP 0000000156eb44c3 .text C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE[8332] C:\Windows\syswow64\OLEAUT32.dll!SysFreeString 0000000076b73e59 5 bytes JMP 0000000156c55685 .text C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE[8332] C:\Windows\syswow64\OLEAUT32.dll!VariantClear 0000000076b73eae 5 bytes JMP 0000000156c57fde .text C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE[8332] C:\Windows\syswow64\OLEAUT32.dll!SysAllocStringByteLen 0000000076b74731 5 bytes JMP 0000000156c580e0 .text C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE[8332] C:\Windows\syswow64\OLEAUT32.dll!VariantChangeType 0000000076b75dee 5 bytes JMP 0000000156c6b87d .text C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE[8332] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE[8332] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 .text D:\Downloads\gmer_2.1.19163.exe[3936] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 00000000758a1465 2 bytes [8A, 75] .text D:\Downloads\gmer_2.1.19163.exe[3936] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000758a14bb 2 bytes [8A, 75] .text ... * 2 ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\8c598b00c213 Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\8c598b00c213@8c598b017935 0xE4 0x1C 0xA8 0x43 ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\8c598b00c213 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\8c598b00c213@8c598b017935 0xE4 0x1C 0xA8 0x43 ... ---- EOF - GMER 2.1 ---- |
16.12.2013, 16:55 | #3 |
/// the machine /// TB-Ausbilder | Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher hi,
__________________ProcessExplorer als Ersatz für den Windows Taskmanager installieren Lade Dir den Process Explorer als Ersatz für den Taskmanager herunter und installiere ihn, hier findest Du eine Anleitung. Das ist ein wesentlich leistungsfähigerer Ersatz für den Windows-Taskmanager. Im Menü unter "Options" kannst Du den ProcessExplorer dauerhaft als Ersatz für den Taskmanager einrichten (Replace Taskmanager). Das ist sehr empfehlenswert, weil der ProcessExplorer erheblich mehr Funktionen als der Taskmanager hat. Wenn Du diese Einstellung gemacht hast, öffnet sich mit der Tastenkombination STRG + ALT + Entf. nicht mehr der Taskmanager, sondern der ProcessExplorer. Das kann jederzeit durch Abhaken dieser Einstellung wieder rückgängig gemacht werden. Was wir jetzt konkret brauchen: In jeder Zeile steht ein Prozess, ein paar der Zeilen sind keine richtigen Prozesse, sondern nur Pseudoprozesse für die Tätigkeit des Windos-Kernels. Im Menü View => Select Columns wird ein Dialog geöffnet, in dem Du auswählen kannst, welche Spalten mit Informationen zu den Prozessen angezeigt werden sollen. In dem gehe in das Register "Process Performance" und stelle sicher, dass dort "CPU Usage" angehakt ist, "CPU History" wäre ebenfalls sinnvoll. Unter "CPU Usage" wird der aktuelle Wert der Prozessorauslastung für jeden Prozess angezeigt (im Tabellentitel steht nur kurz "CPU"), "CPU History" blendet für jeden Prozess ein Diagramm ein, das eine Kurve mit der Prozessorauslastung für die letzte Zeit anzeigt. Damit sollte es Dir möglich sein, zu identifizieren, welcher Prozess Deine CPU in Trab hält. Mache einen Doppelklick auf den Prozess. Du kannst von dem ganzen auch einen Screenshot machen und ihn als Anhang mit Deiner Antwort hochladen (auf "Erweitert" unter dem Textfeld klicken und über "Anhänge verwalten" auf Deinem Rechner suchen lassen und über "Hochladen" anhängen).
__________________ |
16.12.2013, 18:48 | #4 |
| Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher So, ich habe den Screenshot angehängt. Die CPU Auslastung ist aber nicht das Problem sondern der Arbeitsspeicher. Der Prozess war vor ner Weile wieder auf über einem GB, jetzt ist er wieder abgesunken, das passiert manchmal (Vorführeffekt halt). |
17.12.2013, 10:28 | #5 |
/// the machine /// TB-Ausbilder | Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher Hm, schwer zu sagen. Ich würd mal alles von AVG sauber deinstallieren und ohne AVG testen.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
17.12.2013, 15:10 | #6 |
| Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher Ich glaub ich hab den Übeltäter. Als ich heute Morgen angefangen habe zu arbeiten habe ich auf meinem 2. Monitor den Process Explorer laufen lassen um die Prozesse zu überwachen. Zuerst lief alles normal bis ein Windows Update startete, schon schnellte der Speicherverbrauch wieder in die Höhe. Als das Update durch war ging der Verbrauch wieder auf den Normalwert runter. Laut Tooltip im Process Explorer ist die Instanz der svchost.exe die die Probleme breitet auch fürs Windows Update zuständig. Da es sich bei meinem Problem dem Anschein nach um ein Windows Problem handelt und nicht um einen "Schädlingsbefall" bin ich in diesem Forum wohl falsch. Ich danke dir für deine Hilfe, schrauber und begebe mich auf die Suche nach Windows Support. |
18.12.2013, 09:50 | #7 |
/// the machine /// TB-Ausbilder | Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher Das können wir auch hier machen Downloade dir bitte Windows Repair (All In One) von hier.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.12.2013, 11:11 | #8 |
| Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher Cool, super Service hier. Ich hab das Programm nach Anweisung laufen lassen, keine besonderen Vorkommnisse. Naja, stimmt nicht ganz, das Programm ist mittlerweile wesentlich aktualisiert worden. Im letzten Schritt mit den Kästchen und den Haken gibt es zusätzliche Optionen die nicht auf dem Screenshot sind. Ich hab alles was nicht auf de Liste stand einfach deaktiviert. Sonstige Änderungen am Programm die mir aufgefallen sind: - Das Programm muss nicht mehr installiert werden sondern wird direkt ausgeführt. - Es hat einen neuen, dunkleren Skin - In Step 2 gibt es eine zweite Scan Option - Im "Start Repairs" Reiter kann man nicht mehr zwischen Basic, Advanced und Custom Modus wählen |
19.12.2013, 09:55 | #9 |
/// the machine /// TB-Ausbilder | Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher Danke für die Info. Bitte ein frisches FRST log. Noch Probleme`?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.12.2013, 15:49 | #10 |
| Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher Bis jetzt läuft alles normal. Wenns wirklich am Update lag werden wir wohl bis zum nächsten Update warten müssen um absoluut sicher zu sein. FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-12-2013 05 Ran by Moragor (administrator) on KLAUS-DIETER on 19-12-2013 15:35:44 Running from D:\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Corsair Components, Inc.) C:\Program Files (x86)\Corsair\CorsairLINK2\CorsairLINK_HardwareMonitor.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ Power Control\PowerControlHelp.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe (AddGadgets) C:\Users\Moragor\Desktop\PCMeter\PCMeterV0.3.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.19\AsusFanControlService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (Gainward Co. Ltd.) C:\Program Files (x86)\EXPERTool\TBPanel.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Google Inc.) C:\Users\Moragor\AppData\Local\Google\Update\GoogleUpdate.exe (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe (CREALOGIX E-Payment AG) C:\Program Files (x86)\CLX.PayPen\CLXReader.exe (Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe (Overwolf) C:\Program Files (x86)\Overwolf\Overwolf.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\MDM.EXE (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (Razer, Inc.) C:\Program Files (x86)\Razer\Core\64bit\RzOvlMon.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe () C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe (Dropbox, Inc.) C:\Users\Moragor\AppData\Roaming\Dropbox\bin\Dropbox.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Sysinternals - www.sysinternals.com) C:\Program Files (x86)\ProcessExplorer_1540\procexp.exe (cyberlink) C:\Program Files (x86)\CyberLink\Shared files\brs.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Sysinternals - www.sysinternals.com) C:\Users\Moragor\AppData\Local\Temp\procexp64.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe () C:\Program Files (x86)\Everything\Everything.exe (BitLeader) C:\Program Files (x86)\lg_fwupdate\fwupdate.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe () C:\Windows\Samsung\PanelMgr\SSMMgr.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe () C:\Windows\Samsung\PanelMgr\caller64.exe (Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTShellHlp.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDClock.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Overwolf) C:\Program Files (x86)\Overwolf\Purplizer\Purplizer.exe (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6032.exe (Overwolf) C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper64.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6064.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [XboxStat] - C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [EvtMgr6] - C:\Program Files\Logitech\SetPointP\SetPoint.exe [3091224 2013-07-31] (Logitech, Inc.) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [Launch LCore] - C:\Program Files\Logitech Gaming Software\LCore.exe [8292120 2013-11-14] (Logitech Inc.) Winlogon\Notify\LBTWlgn: C:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.) HKCU\...\Run: [TBPanel] - C:\Program Files (x86)\EXPERTool\TBPanel.exe [2156328 2013-05-24] (Gainward Co. Ltd.) HKCU\...\Run: [Google Update] - C:\Users\Moragor\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-07-30] (Google Inc.) HKCU\...\Run: [DisplayFusion] - C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software) HKCU\...\Run: [CLXReader] - C:\Program Files (x86)\CLX.PayPen\CLXReader.exe [4108152 2012-08-14] (CREALOGIX E-Payment AG) HKCU\...\Run: [Overwolf] - C:\Program Files (x86)\Overwolf\Overwolf.exe [35768 2013-12-09] (Overwolf) HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd) HKLM-x32\...\Run: [CLMLServer] - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816 2011-03-09] (CyberLink) HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.) HKLM-x32\...\Run: [BDRegion] - C:\Program Files (x86)\CyberLink\Shared files\brs.exe [78312 2012-05-09] (cyberlink) HKLM-x32\...\Run: [UpdatePPShortCut] - C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe [223096 2012-04-17] (CyberLink Corp.) HKLM-x32\...\Run: [LGODDFU] - C:\Program Files (x86)\lg_fwupdate\lgfw.exe [27760 2012-07-12] (Bitleader) HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4956176 2013-11-07] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [Everything] - C:\Program Files (x86)\Everything\Everything.exe [602624 2009-03-13] () HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [Razer Synapse] - C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [442712 2013-11-17] (Razer Inc.) HKLM-x32\...\Run: [Samsung PanelMgr] - C:\Windows\Samsung\PanelMgr\SSMMgr.exe [688128 2011-07-06] () HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) Startup: C:\Users\Moragor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Moragor\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Moragor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Process Explorer.lnk ShortcutTarget: Process Explorer.lnk -> C:\Program Files (x86)\ProcessExplorer_1540\procexp.exe (Sysinternals - www.sysinternals.com) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.ch/ BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM-x32 - Steganos Password Manager Toolbar - {9C65D12D-CF9D-454D-8049-61965D8C6FFF} - C:\Program Files (x86)\Steganos Password Manager 2012\SPMIEToolbar.dll (Steganos Software GmbH) Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default FF NewTab: about:blank FF DefaultSearchEngine: Google.ch FF SelectedSearchEngine: Google.ch FF Homepage: about:home FF NetworkProxy: "autoconfig_url", "data:text/javascript,function%20FindProxyForURL(url%2C%20host)%20%7Bif%20(shExpMatch(url%2C%20'http%3A%2F%2Fsongza.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fwww.daisuki.net*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.mtv.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fmedia.mtvnservices.com*')%20%7C%7C%20url.indexOf('play.google.com')%20!%3D%20-1%20%7C%7C%20(url.indexOf('youtube.com%2Fvideoplayback')%20!%3D%20-1%20%26%26%20url.indexOf('%26gcr%3Dus')%20!%3D%20-1%20%26%26%20url.indexOf('%26ptchn')%20!%3D%20-1)%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.iheart.com*')%20%7C%7C%20url.indexOf('southparkstudios.com')%20!%3D%20-1%20%7C%7C%20host%20%3D%3D%20's.hulu.com'%20%7C%7C%20(url.indexOf('proxmate%3Dactive')%20!%3D%20-1%20%26%26%20url.indexOf('amazonaws.com')%20%3D%3D%20-1)%20%7C%7C%20(url.indexOf('proxmate%3Dus')%20!%3D%20-1)%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.crunchyroll.com*')%20%7C%7C%20host%20%3D%3D%20'www.pandora.com'%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fplay.spotify.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fplay.spotify.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fwww.spotify.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.spotify.com*')%20%7C%7C%20url.indexOf('discoverymedia.com')%20!%3D%20-1%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fdsc.discovery.com%2F*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fgrooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fretro.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fhtml5.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Flisten.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.funimation.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fsecure.funimation.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.rdio.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.last.fm*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fext.last.fm*')%20%7C%7C%20url.indexOf('vevo.com')%20!%3D%20-1%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fpiki.fm*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fpiki.fm*'))%20%7B%20return%20'PROXY%20nq-us10.personalitycores.com%3A8000%3B%20PROXY%20nq-us06.personalitycores.com%3A8000%3B%20PROXY%20nq-us04.personalitycores.com%3A8000%3B%20PROXY%20nq-us12.personalitycores.com%3A8000%3B%20PROXY%20nq-us11.personalitycores.com%3A8000%3B%20PROXY%20nq-us09.personalitycores.com%3A8000%3B%20PROXY%20nq-us08.personalitycores.com%3A8000%3B%20PROXY%20nq-us05.personalitycores.com%3A8000%3B%20PROXY%20nq-us07.personalitycores.com%3A8000'%3B%7D%20%20else%20%7B%20return%20'DIRECT'%3B%20%7D%7D" FF NetworkProxy: "type", 2 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.7 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.0.8 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.3 - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.3 - C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Moragor\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Moragor\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: wacom.com/WacomTabletPlugin - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: German Dictionary (Switzerland) - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\de-CH@dictionaries.addons.mozilla.org FF Extension: United States English Spellchecker - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\en-US@dictionaries.addons.mozilla.org FF Extension: HTML5 Extension for Windows Media Player Plug-in - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\jid0-nRwp7VvCqZcSRTppwWz2npqGEKw@jetpack FF Extension: ReminderFox - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{ada4b710-8346-4b82-8199-5de2b400a6ae} FF Extension: DownloadHelper - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} FF Extension: checkCompatibility - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\check-compatibility@dactyl.googlecode.com.xpi FF Extension: Cookie Whitelist, With Buttons - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\cwwb@dietrich.cx.xpi FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\elemhidehelper@adblockplus.org.xpi FF Extension: Firebug - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\firebug@software.joehewitt.com.xpi FF Extension: Imgur Uploader - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\giorgio@gilestro.tk.xpi FF Extension: ProxMate - Improve your Internet! - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\jid1-QpHD8URtZWJC2A@jetpack.xpi FF Extension: Reddit Enhancement Suite - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\jid1-xUfzOsOFlzSOXg@jetpack.xpi FF Extension: Thumbnail Zoom Plus - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\thumbnailZoom@dadler.github.com.xpi FF Extension: Session Manager - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi FF Extension: Image Zoom - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{1A2D0EC4-75F5-4c91-89C4-3656F6E44B68}.xpi FF Extension: SearchWP - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{3e270ac3-8936-43fb-ad20-b4685172a83d}.xpi FF Extension: Stylish - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi FF Extension: NoScript - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: FireFTP - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f}.xpi FF Extension: Search by Image for Google - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{ab4b5718-3998-4a2c-91ae-18a7c2db513e}.xpi FF Extension: gTranslate - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{aff87fa2-a58e-4edd-b852-0a20203c1e17}.xpi FF Extension: Adblock Plus - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: Download Statusbar - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}.xpi FF Extension: DownThemAll! - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi FF Extension: Greasemonkey - C:\Users\Moragor\AppData\Roaming\Mozilla\Firefox\Profiles\vzz1fxew.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi FF HKLM-x32\...\Firefox\Extensions: [{00F0643E-B367-4779-B45D-7046EBA37A88}] - C:\Program Files (x86)\Steganos Password Manager 2012\spmplugin3 FF Extension: Steganos Password Manager - C:\Program Files (x86)\Steganos Password Manager 2012\spmplugin3 FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt Chrome: ======= CHR HomePage: hxxp://www.google.com CHR RestoreOnStartup: "hxxp://www.google.ch/" CHR DefaultSearchKeyword: google.ch CHR DefaultSearchProvider: Google CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultNewTabURL: {google:baseURL}_/chrome/newtab?{google:RLZ}{google:instantExtendedEnabledParameter}{google:ntpIsThemedParameter}ie={inputEncoding} CHR Plugin: (Shockwave Flash) - C:\Users\Moragor\AppData\Local\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Moragor\AppData\Local\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\Moragor\AppData\Local\Google\Chrome\Application\31.0.1650.63\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll No File CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Google Update) - C:\Users\Moragor\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Extension: (Google Docs) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 CHR Extension: (Google Drive) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Google Wallet) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 CHR Extension: (Gmail) - C:\Users\Moragor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 ==================== Services (Whitelisted) ================= R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2012-06-01] () R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2012-06-01] (ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-17] (ASUSTeK Computer Inc.) R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.19\AsusFanControlService.exe [408960 2013-08-03] (ASUSTeK Computer Inc.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3478544 2013-11-11] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.) S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [242664 2012-05-09] (CyberLink) R2 DisplayFusionService; C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [1375600 2013-11-27] (Binary Fortress Software) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) S3 OverwolfUpdaterService; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [96184 2013-12-09] (Overwolf) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2013-11-22] (Razer Inc.) R2 RzOvlMon; C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe [32960 2013-12-11] (Razer, Inc.) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [598808 2013-06-06] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== R0 asahci64; C:\Windows\System32\DRIVERS\asahci64.sys [49760 2012-01-06] (Asmedia Technology) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] () R3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-05] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [240920 2013-11-04] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [194872 2013-10-24] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-10-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31544 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [251192 2013-08-01] (AVG Technologies CZ, s.r.o.) S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] () R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-11-26] (Disc Soft Ltd) R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [31136 2013-07-30] (REALiX(tm)) R3 LGPBTDD; C:\Windows\System32\Drivers\LGPBTDD.sys [30728 2009-07-01] (Logitech Inc.) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) S3 PayPen; C:\Windows\System32\Drivers\PayPen.sys [20864 2012-08-14] () R3 RzDxgk; C:\Windows\system32\drivers\RzDxgk.sys [129472 2013-10-25] (Razer, Inc.) R0 RzFilter; C:\Windows\System32\drivers\RzFilter.sys [74432 2013-10-25] (Razer, Inc.) S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2013-12-02] () S3 BTMCOM; System32\Drivers\btmcom.sys [x] S3 MFE_RR; \??\C:\Users\Moragor\AppData\Local\Temp\mfe_rr.sys [x] S3 SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\WNt500x64\Sandra.sys [x] R3 WinRing0_1_2_0; \??\C:\Users\Moragor\AppData\Local\Temp\tmp8F34.tmp [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-19 15:35 - 2013-12-19 15:35 - 00000000 ____D C:\Users\Moragor\Desktop\Neuer Ordner 2013-12-18 10:15 - 2013-12-18 10:35 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2013-12-18 10:06 - 2013-12-18 10:07 - 00046710 _____ C:\Windows\DPINST.LOG 2013-12-18 02:49 - 2013-12-18 02:49 - 00000000 ____D C:\Program Files\Logitech Gaming Software 2013-12-18 02:34 - 2013-12-18 02:34 - 00000000 ____D C:\Windows\ERUNT 2013-12-17 19:47 - 2013-12-05 09:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-12-17 19:47 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-12-17 19:47 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-12-17 19:47 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-12-17 19:47 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-12-16 18:49 - 2013-12-16 18:49 - 00000000 ____D C:\Program Files (x86)\ProcessExplorer_1540 2013-12-14 14:23 - 2013-12-14 14:23 - 00008391 _____ C:\Users\Moragor\AppData\Local\recently-used.xbel 2013-12-14 01:19 - 2013-12-18 10:37 - 00010288 _____ C:\Windows\PFRO.log 2013-12-14 00:48 - 2013-12-19 15:13 - 00003320 _____ C:\Windows\setupact.log 2013-12-14 00:48 - 2013-12-14 00:48 - 00000000 _____ C:\Windows\setuperr.log 2013-12-14 00:40 - 2013-12-14 00:40 - 00000000 ____D C:\ProgramData\LockHunter 2013-12-14 00:31 - 2013-12-14 00:31 - 00000085 _____ C:\Windows\wininit.ini 2013-12-14 00:28 - 2013-12-19 15:35 - 00000000 ____D C:\FRST 2013-12-13 23:21 - 2013-12-13 23:25 - 00000000 ____D C:\ProgramData\SecTaskMan 2013-12-11 23:50 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-11 23:50 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-11 23:50 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-11 23:50 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-11 23:49 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-11 23:49 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-11 23:49 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-11 23:49 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-11 23:49 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-11 23:49 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-11 23:49 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-11 23:49 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-11 23:49 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-11 23:49 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-11 23:49 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-11 23:49 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-11 23:49 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-11 23:49 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-11 23:49 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-11 23:49 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-11 23:49 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-11 23:49 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-11 23:49 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-11 23:49 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-11 23:49 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-11 23:49 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-11 23:49 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-11 23:49 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-11 23:49 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-11 23:49 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-11 23:49 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-11 23:49 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-11 23:49 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-11 23:49 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-11 23:49 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-11 12:17 - 2013-12-11 16:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-12-11 11:58 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-11 11:58 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-11 11:58 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-11 11:57 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-11 11:57 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-11 11:57 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-11 11:57 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-11 11:56 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-11 11:56 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-11 11:56 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-11 11:56 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-11 11:55 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-11 11:55 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-11 11:55 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-11 11:55 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-11 11:55 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-11 11:55 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-11 11:55 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-11 11:55 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-09 22:28 - 2013-12-09 22:29 - 00000698 _____ C:\Users\Moragor\Desktop\Guild Wars 2 Load.lnk 2013-12-09 14:23 - 1998-06-17 19:07 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mfc42loc.dll 2013-12-09 14:09 - 2013-12-10 02:42 - 00000000 ____D C:\Users\Moragor\AppData\Local\Skyrim 2013-12-09 13:56 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-12-09 13:56 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-12-09 13:56 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-12-09 13:56 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-12-09 13:56 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-12-09 13:56 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-12-09 13:56 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-12-09 13:56 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-12-09 13:56 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-12-09 13:56 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-12-09 13:56 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-12-09 13:56 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-12-09 13:56 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-12-09 13:56 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-12-09 13:56 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-12-09 13:56 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-12-09 13:56 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-12-09 13:56 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-12-09 13:56 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-12-09 13:56 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-12-09 13:56 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-12-09 13:56 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-12-09 13:56 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-12-09 13:56 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-12-09 13:56 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-12-09 13:56 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-12-09 13:56 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-12-09 13:56 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-12-09 13:56 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-12-09 13:56 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-12-09 13:56 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-12-09 13:56 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-12-09 13:56 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-12-09 13:56 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-12-09 13:56 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-12-09 13:56 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-12-09 13:56 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-12-09 13:56 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-12-09 13:56 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-12-09 13:56 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-12-09 13:56 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-12-09 13:56 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-12-09 13:56 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-12-09 13:56 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-12-09 13:56 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-12-09 13:56 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-12-09 13:56 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-12-09 13:56 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-12-09 13:56 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-12-09 13:56 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-12-09 13:56 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-12-09 13:56 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-12-09 13:56 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-12-09 13:56 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-12-09 13:56 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-12-09 13:56 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-12-09 13:56 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-12-09 13:56 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-12-09 13:56 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-12-09 13:56 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-12-09 13:56 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-12-09 13:56 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-12-09 13:56 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-12-09 13:56 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-12-09 13:56 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-12-09 13:56 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-12-09 13:56 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-12-09 13:56 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-12-09 13:56 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-12-09 13:56 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-12-09 13:56 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-12-09 13:56 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-12-09 13:56 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-12-09 13:56 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-12-09 13:56 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-12-09 13:56 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-12-09 13:56 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-12-09 13:56 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-12-09 13:56 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-12-09 13:56 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-12-09 13:56 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-12-09 13:55 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-12-09 13:55 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-12-09 13:55 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-12-09 13:55 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-12-09 13:55 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-12-09 13:55 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-12-09 13:55 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-12-09 13:55 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-12-09 13:55 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-12-09 13:55 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-12-09 13:55 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-12-09 13:55 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-12-09 13:55 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-12-09 13:55 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-12-09 13:55 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-12-09 13:55 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-12-09 13:55 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-12-09 13:55 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-12-06 02:10 - 2013-12-06 02:10 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-12-06 02:04 - 2013-12-06 02:04 - 00000000 ____D C:\Users\Moragor\Documents\Square Enix 2013-12-05 21:13 - 2013-12-05 21:13 - 00000207 _____ C:\Users\Moragor\Desktop\FINAL FANTASY VIII.url 2013-12-05 10:30 - 2013-12-05 10:30 - 00000234 _____ C:\Windows\CCPen200.ini 2013-12-02 02:35 - 2013-12-02 02:35 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2013-12-02 02:35 - 2012-06-12 18:10 - 04060560 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2013-12-02 02:35 - 2012-06-11 14:44 - 00290813 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2013-12-02 02:35 - 2012-06-08 16:18 - 03615888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2013-12-02 02:35 - 2012-06-06 11:14 - 00584320 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2013-12-02 02:35 - 2012-06-06 10:44 - 00869520 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2013-12-02 02:35 - 2012-06-05 11:38 - 05096448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2013-12-02 02:35 - 2012-06-01 09:37 - 02674320 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2013-12-02 02:35 - 2012-05-31 18:08 - 00105616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2013-12-02 02:35 - 2012-05-17 11:29 - 07163744 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2013-12-02 02:35 - 2012-05-17 11:29 - 00433504 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2013-12-02 02:35 - 2012-05-17 11:29 - 00141152 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2013-12-02 02:35 - 2012-05-17 11:29 - 00123744 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2013-12-02 02:35 - 2012-05-17 11:29 - 00074592 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2013-12-02 02:35 - 2012-05-10 15:22 - 01262696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2013-12-02 02:35 - 2012-04-10 14:40 - 02533952 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2013-12-02 02:35 - 2012-04-03 18:42 - 01345368 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2013-12-02 02:35 - 2012-04-03 18:42 - 01015640 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2013-12-02 02:35 - 2012-03-08 11:47 - 00202336 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2013-12-02 02:35 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2013-12-02 02:35 - 2012-02-21 19:45 - 02605400 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll 2013-12-02 02:35 - 2012-02-17 15:54 - 00396632 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2013-12-02 02:35 - 2012-02-14 00:05 - 08363864 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek.dll 2013-12-02 02:35 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2013-12-02 02:35 - 2012-01-23 22:30 - 00537456 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2013-12-02 02:35 - 2012-01-23 22:30 - 00524656 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2013-12-02 02:35 - 2012-01-23 22:30 - 00449392 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2013-12-02 02:35 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2013-12-02 02:35 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2013-12-02 02:35 - 2011-12-18 17:58 - 02131288 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll 2013-12-02 02:35 - 2011-12-13 16:58 - 01560168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2013-12-02 02:35 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2013-12-02 02:35 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2013-12-02 02:35 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2013-12-02 02:35 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2013-12-02 02:35 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2013-12-02 02:35 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2013-12-02 02:35 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2013-12-02 02:35 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2013-12-02 02:35 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2013-12-02 02:35 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2013-12-02 02:35 - 2010-10-03 13:46 - 00341336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2013-12-02 02:35 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2013-12-02 02:35 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2013-12-02 02:35 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2013-12-02 02:35 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2013-12-02 02:35 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2013-12-02 02:35 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2013-12-02 02:23 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-02 02:21 - 2013-12-02 02:21 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-02 02:21 - 2013-12-02 02:21 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-02 02:21 - 2013-12-02 02:21 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-02 02:21 - 2013-12-02 02:21 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-02 02:21 - 2013-12-02 02:21 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-02 02:21 - 2013-12-02 02:21 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-02 02:21 - 2013-12-02 02:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-02 02:18 - 2013-09-04 13:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2013-12-02 02:18 - 2013-09-04 13:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2013-12-02 02:14 - 2013-03-12 13:19 - 00064624 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2013-12-02 02:13 - 2013-12-02 02:13 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-12-02 02:12 - 2013-12-02 02:12 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3 2013-12-02 02:09 - 2013-12-02 02:09 - 00003907 _____ C:\Windows\system32\WmiConf.txt 2013-12-02 02:08 - 2013-02-21 13:14 - 00495888 _____ (Intel Corporation) C:\Windows\system32\Drivers\e1c62x64.sys 2013-12-02 02:08 - 2012-12-06 18:21 - 00073032 _____ (Intel Corporation) C:\Windows\system32\e1cmsg.dll 2013-12-02 02:08 - 2012-11-14 19:07 - 00101224 _____ (Intel Corporation) C:\Windows\system32\NicInstC.dll 2013-12-02 01:50 - 2013-12-02 01:50 - 00000000 ____D C:\Users\Moragor\AppData\Local\DriverTuner 2013-12-02 01:45 - 2013-12-02 01:45 - 00000000 ____D C:\Users\Moragor\SystemRequirementsLab 2013-12-02 01:41 - 2013-12-02 01:41 - 00000000 ____D C:\Users\Moragor\Documents\Meine empfangenen Dateien 2013-12-02 01:41 - 2013-12-02 01:41 - 00000000 ____D C:\ProgramData\FLEXnet 2013-12-02 01:35 - 2013-12-02 02:34 - 00016152 _____ C:\Windows\system32\Drivers\SWDUMon.sys 2013-12-02 01:35 - 2013-12-02 01:35 - 00000000 ____D C:\Users\Moragor\AppData\Local\SlimWare Utilities Inc 2013-12-02 01:28 - 2013-12-02 01:28 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers 2013-12-02 01:28 - 2013-12-02 01:28 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Easeware 2013-12-02 00:37 - 2013-12-02 00:37 - 00000000 ____D C:\ProgramData\Ashampoo 2013-12-02 00:33 - 2013-12-02 00:33 - 00000000 ____D C:\Users\Moragor\Documents\Scannen 2013-12-02 00:31 - 2013-12-02 00:31 - 00000000 ____D C:\Windows\twain_64 2013-12-02 00:31 - 2013-10-04 06:31 - 00579072 _____ C:\Windows\system32\SNWIAUI.dll 2013-12-02 00:31 - 2013-10-04 05:53 - 00734720 _____ C:\Windows\system32\SnMinDrv.dll 2013-12-02 00:31 - 2013-10-04 05:53 - 00155136 _____ C:\Windows\system32\SnImgFlt.dll 2013-12-02 00:31 - 2013-10-04 05:52 - 00068096 _____ C:\Windows\system32\SnErHdlr.dll 2013-12-02 00:31 - 2012-12-10 03:09 - 00120846 _____ C:\Windows\system32\WIAEXSTR.loc 2013-12-02 00:31 - 2012-03-14 00:58 - 00166640 _____ (TWAIN Working Group) C:\Windows\system32\TWAINDSM.dll 2013-12-02 00:31 - 2012-03-14 00:58 - 00148728 _____ (TWAIN Working Group) C:\Windows\SysWOW64\TWAINDSM.dll 2013-12-02 00:31 - 2012-02-09 08:20 - 00355840 _____ (Samsung Electronics) C:\Windows\system32\snWIAMUI.dll 2013-12-02 00:29 - 2013-12-02 00:32 - 00000000 ____D C:\Program Files (x86)\Scan Assistant 2013-12-01 22:12 - 2013-12-01 22:12 - 00000000 ____D C:\ProgramData\SSScanAppDataDir 2013-12-01 22:12 - 2013-12-01 22:12 - 00000000 ____D C:\ProgramData\MSScanAppDataDir 2013-11-30 16:21 - 2013-11-30 16:21 - 00000000 ____D C:\Users\Moragor\AppData\Local\Razer_Inc 2013-11-30 04:01 - 2013-11-30 04:06 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\NetSpeedMonitor 2013-11-27 23:02 - 2013-11-27 23:02 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\ASCOMP Software 2013-11-27 22:49 - 2013-11-30 03:58 - 00000000 ____D C:\Users\Moragor\Documents\MessageAnalyzer 2013-11-27 22:49 - 2013-11-27 22:49 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_wfpcapture_01011.Wdf 2013-11-27 22:45 - 2013-11-27 22:54 - 00000000 ____D C:\Users\Moragor\AppData\Local\Abelssoft 2013-11-27 22:45 - 2013-11-27 22:45 - 00000000 ____D C:\Windows\System32\Tasks\Abelssoft 2013-11-27 21:08 - 2013-11-27 21:08 - 00000000 ____D C:\ProgramData\Binarysense 2013-11-26 14:35 - 2013-11-26 14:35 - 00000000 ____D C:\ProgramData\Sophos 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\Documents\Mobogenie 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\AppData\Local\Mobogenie 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\AppData\Local\cache 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 _____ C:\Users\Moragor\daemonprocess.txt 2013-11-26 03:02 - 2013-11-27 23:17 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\DAEMON Tools Lite 2013-11-26 03:02 - 2013-11-26 03:02 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2013-11-26 03:02 - 2013-11-26 03:02 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite 2013-11-26 03:01 - 2013-11-26 03:08 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2013-11-25 15:54 - 2013-11-25 15:54 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-11-21 12:54 - 2013-12-02 02:34 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Users\Public\Documents\LogiShrd 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Users\Moragor\AppData\Local\Logishrd 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Program Files\Logitech 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Program Files\Common Files\Logishrd 2013-11-21 04:22 - 2013-11-21 04:22 - 00000000 ____D C:\Users\Moragor\Documents\Egosoft 2013-11-20 22:11 - 2013-11-20 22:11 - 00000672 _____ C:\Users\Public\Desktop\Guild Wars 2.lnk 2013-11-20 10:22 - 2013-11-14 12:56 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-20 10:22 - 2013-11-14 12:56 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00357152 _____ C:\Windows\system32\NvIFROpenGL.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-20 10:22 - 2013-11-14 12:56 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-20 10:22 - 2013-11-11 17:54 - 00451872 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstusb.sys ==================== One Month Modified Files and Folders ======= 2013-12-19 15:36 - 2013-07-31 00:12 - 00000021 _____ C:\Users\Moragor\AppData\Roaming\config_data.dat 2013-12-19 15:35 - 2013-12-19 15:35 - 00000000 ____D C:\Users\Moragor\Desktop\Neuer Ordner 2013-12-19 15:35 - 2013-12-14 00:28 - 00000000 ____D C:\FRST 2013-12-19 15:30 - 2013-07-30 21:54 - 00001128 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000UA.job 2013-12-19 15:21 - 2009-07-14 18:58 - 00685554 _____ C:\Windows\system32\perfh007.dat 2013-12-19 15:21 - 2009-07-14 18:58 - 00145386 _____ C:\Windows\system32\perfc007.dat 2013-12-19 15:21 - 2009-07-14 06:13 - 01620676 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-19 15:18 - 2013-07-30 17:29 - 00000000 ____D C:\ProgramData\MFAData 2013-12-19 15:18 - 2009-07-14 05:45 - 00015152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-19 15:18 - 2009-07-14 05:45 - 00015152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-19 15:16 - 2013-07-30 16:08 - 01422369 _____ C:\Windows\WindowsUpdate.log 2013-12-19 15:13 - 2013-12-14 00:48 - 00003320 _____ C:\Windows\setupact.log 2013-12-19 15:13 - 2013-11-12 03:42 - 00000000 ____D C:\Users\Moragor\AppData\Local\Purplizer 2013-12-19 15:13 - 2013-10-15 18:55 - 00000000 ____D C:\Users\Moragor\AppData\Local\Overwolf 2013-12-19 15:13 - 2013-08-02 08:26 - 00000000 ____D C:\Program Files (x86)\CLX.PayPen 2013-12-19 15:13 - 2013-07-31 07:23 - 00000000 ___RD C:\Users\Moragor\Dropbox 2013-12-19 15:13 - 2013-07-31 07:20 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Dropbox 2013-12-19 15:13 - 2013-07-30 18:00 - 00017726 _____ C:\Users\Moragor\Network_Meter_Data.js 2013-12-19 15:13 - 2013-07-30 16:49 - 00000344 _____ C:\Windows\lgfwup.ini 2013-12-19 15:13 - 2013-07-30 16:49 - 00000000 ____D C:\Program Files (x86)\lg_fwupdate 2013-12-19 15:12 - 2013-07-30 16:14 - 00000000 ____D C:\ProgramData\NVIDIA 2013-12-19 15:12 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-18 18:29 - 2013-07-30 23:18 - 00000027 _____ C:\Users\Moragor\AppData\Roaming\Network Meter_Usage.ini 2013-12-18 17:46 - 2013-07-30 17:01 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-18 12:16 - 2013-07-31 02:15 - 00000072 _____ C:\Users\Public\LMDebug.log 2013-12-18 10:38 - 2013-07-30 21:52 - 00000000 ____D C:\Program Files (x86)\Everything 2013-12-18 10:38 - 2009-07-14 19:18 - 00000000 ___RD C:\Users\Public\Recorded TV 2013-12-18 10:38 - 2009-07-14 05:45 - 00330416 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-18 10:37 - 2013-12-14 01:19 - 00010288 _____ C:\Windows\PFRO.log 2013-12-18 10:35 - 2013-12-18 10:15 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2013-12-18 10:35 - 2009-07-14 03:34 - 00000535 _____ C:\Windows\win.ini 2013-12-18 10:31 - 2013-07-30 16:50 - 00071520 _____ C:\Users\Moragor\AppData\Local\GDIPFONTCACHEV1.DAT 2013-12-18 10:07 - 2013-12-18 10:06 - 00046710 _____ C:\Windows\DPINST.LOG 2013-12-18 10:06 - 2013-10-31 11:51 - 00000000 ____D C:\Windows\Razer Core 2013-12-18 09:57 - 2013-08-13 17:34 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\TS3Client 2013-12-18 06:30 - 2013-07-30 21:54 - 00001076 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000Core.job 2013-12-18 02:49 - 2013-12-18 02:49 - 00000000 ____D C:\Program Files\Logitech Gaming Software 2013-12-18 02:48 - 2013-07-30 22:28 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Logishrd 2013-12-18 02:34 - 2013-12-18 02:34 - 00000000 ____D C:\Windows\ERUNT 2013-12-18 02:07 - 2013-07-30 16:08 - 00000000 ____D C:\Users\Moragor 2013-12-16 18:52 - 2013-07-30 16:08 - 00000000 ___RD C:\Users\Moragor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-12-16 18:49 - 2013-12-16 18:49 - 00000000 ____D C:\Program Files (x86)\ProcessExplorer_1540 2013-12-16 18:08 - 2013-07-31 03:22 - 00000000 ____D C:\Windows\system32\MRT 2013-12-16 18:08 - 2013-07-30 22:01 - 01594020 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-12-16 18:06 - 2013-07-31 02:53 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-14 15:09 - 2013-07-30 23:07 - 00000000 ____D C:\Users\Moragor\.gimp-2.8 2013-12-14 14:23 - 2013-12-14 14:23 - 00008391 _____ C:\Users\Moragor\AppData\Local\recently-used.xbel 2013-12-14 14:23 - 2013-10-14 19:23 - 00000000 ____D C:\Users\Moragor\AppData\Local\gtk-2.0 2013-12-14 00:48 - 2013-12-14 00:48 - 00000000 _____ C:\Windows\setuperr.log 2013-12-14 00:42 - 2013-08-04 10:00 - 00000000 ____D C:\Users\Moragor\Valley 2013-12-14 00:40 - 2013-12-14 00:40 - 00000000 ____D C:\ProgramData\LockHunter 2013-12-14 00:37 - 2013-07-30 16:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-12-14 00:34 - 2013-07-30 19:30 - 00000000 ____D C:\Users\Moragor\Heaven 2013-12-14 00:34 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-14 00:32 - 2013-07-31 07:10 - 00000000 ____D C:\Program Files\Samsung 2013-12-14 00:31 - 2013-12-14 00:31 - 00000085 _____ C:\Windows\wininit.ini 2013-12-14 00:31 - 2013-07-30 22:53 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\uTorrent 2013-12-13 23:25 - 2013-12-13 23:21 - 00000000 ____D C:\ProgramData\SecTaskMan 2013-12-12 13:28 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-12 11:15 - 2013-11-12 03:36 - 00000000 ____D C:\Program Files (x86)\Overwolf 2013-12-12 11:12 - 2013-07-30 16:54 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-12-11 16:00 - 2013-12-11 12:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-12-11 10:46 - 2013-07-30 17:01 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 10:46 - 2013-07-30 17:01 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-11 10:46 - 2013-07-30 17:01 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-10 03:13 - 2013-10-30 15:25 - 01100248 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-12-10 03:13 - 2013-10-30 15:25 - 00982232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-12-10 02:42 - 2013-12-09 14:09 - 00000000 ____D C:\Users\Moragor\AppData\Local\Skyrim 2013-12-09 22:29 - 2013-12-09 22:28 - 00000698 _____ C:\Users\Moragor\Desktop\Guild Wars 2 Load.lnk 2013-12-09 14:30 - 2013-07-31 07:30 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-12-09 14:23 - 2013-07-30 21:45 - 00000000 ____D C:\Games 2013-12-07 23:16 - 2013-07-30 22:27 - 00000000 ____D C:\Program Files (x86)\JDownloader 2013-12-06 05:16 - 2013-07-30 22:52 - 00000000 ____D C:\Windows\Panther 2013-12-06 02:10 - 2013-12-06 02:10 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-12-06 02:04 - 2013-12-06 02:04 - 00000000 ____D C:\Users\Moragor\Documents\Square Enix 2013-12-05 21:13 - 2013-12-05 21:13 - 00000207 _____ C:\Users\Moragor\Desktop\FINAL FANTASY VIII.url 2013-12-05 10:30 - 2013-12-05 10:30 - 00000234 _____ C:\Windows\CCPen200.ini 2013-12-05 09:42 - 2013-12-17 19:47 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-12-05 09:42 - 2013-12-17 19:47 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-12-05 09:42 - 2013-07-31 07:15 - 00035104 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2013-12-03 06:25 - 2013-07-30 21:54 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000UA 2013-12-03 06:25 - 2013-07-30 21:54 - 00003710 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000Core 2013-12-03 02:10 - 2013-07-31 07:08 - 00000000 ____D C:\Users\Moragor\AppData\Local\NVIDIA 2013-12-03 02:09 - 2013-10-30 15:34 - 00000000 ____D C:\Users\Moragor\AppData\Local\NVIDIA Corporation 2013-12-03 02:09 - 2013-07-30 16:14 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-12-03 02:09 - 2013-07-30 16:14 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-12-03 02:09 - 2013-07-30 16:13 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-12-02 02:41 - 2013-07-31 03:26 - 05415776 _____ C:\Windows\PE_Rom.dll 2013-12-02 02:39 - 2013-08-03 12:27 - 05468800 _____ C:\Windows\PE_File.dll 2013-12-02 02:35 - 2013-12-02 02:35 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2013-12-02 02:34 - 2013-12-02 01:35 - 00016152 _____ C:\Windows\system32\Drivers\SWDUMon.sys 2013-12-02 02:34 - 2013-11-21 12:54 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys 2013-12-02 02:34 - 2013-07-30 16:08 - 00001432 _____ C:\Users\Moragor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-02 02:27 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-02 02:21 - 2013-12-02 02:21 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-02 02:21 - 2013-12-02 02:21 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-02 02:21 - 2013-12-02 02:21 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-02 02:21 - 2013-12-02 02:21 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-02 02:21 - 2013-12-02 02:21 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-02 02:21 - 2013-12-02 02:21 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-02 02:21 - 2013-12-02 02:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-02 02:21 - 2013-12-02 02:21 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-02 02:21 - 2013-12-02 02:21 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-02 02:14 - 2013-07-30 16:22 - 00000000 ____D C:\Program Files (x86)\Intel 2013-12-02 02:13 - 2013-12-02 02:13 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-12-02 02:12 - 2013-12-02 02:12 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3 2013-12-02 02:10 - 2013-07-30 16:29 - 00000000 ____D C:\Program Files\Intel 2013-12-02 02:09 - 2013-12-02 02:09 - 00003907 _____ C:\Windows\system32\WmiConf.txt 2013-12-02 02:04 - 2013-07-30 16:18 - 00000000 ____D C:\Windows\System32\Tasks\ASUS 2013-12-02 01:50 - 2013-12-02 01:50 - 00000000 ____D C:\Users\Moragor\AppData\Local\DriverTuner 2013-12-02 01:45 - 2013-12-02 01:45 - 00000000 ____D C:\Users\Moragor\SystemRequirementsLab 2013-12-02 01:45 - 2013-08-15 14:44 - 00000000 ____D C:\Program Files (x86)\SystemRequirementsLab 2013-12-02 01:41 - 2013-12-02 01:41 - 00000000 ____D C:\Users\Moragor\Documents\Meine empfangenen Dateien 2013-12-02 01:41 - 2013-12-02 01:41 - 00000000 ____D C:\ProgramData\FLEXnet 2013-12-02 01:35 - 2013-12-02 01:35 - 00000000 ____D C:\Users\Moragor\AppData\Local\SlimWare Utilities Inc 2013-12-02 01:28 - 2013-12-02 01:28 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers 2013-12-02 01:28 - 2013-12-02 01:28 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Easeware 2013-12-02 00:37 - 2013-12-02 00:37 - 00000000 ____D C:\ProgramData\Ashampoo 2013-12-02 00:33 - 2013-12-02 00:33 - 00000000 ____D C:\Users\Moragor\Documents\Scannen 2013-12-02 00:32 - 2013-12-02 00:29 - 00000000 ____D C:\Program Files (x86)\Scan Assistant 2013-12-02 00:31 - 2013-12-02 00:31 - 00000000 ____D C:\Windows\twain_64 2013-12-02 00:31 - 2013-07-30 22:52 - 00000000 ____D C:\Users\Moragor\AppData\Local\SSScan 2013-12-02 00:31 - 2013-07-30 22:48 - 00000000 ____D C:\Program Files (x86)\Samsung 2013-12-02 00:28 - 2013-07-30 22:52 - 00000000 ____D C:\ProgramData\SSScan 2013-12-01 23:02 - 2013-07-30 17:22 - 00000378 _____ C:\Users\Moragor\AppData\Roaming\Digital Clock_Settings.ini 2013-12-01 22:12 - 2013-12-01 22:12 - 00000000 ____D C:\ProgramData\SSScanAppDataDir 2013-12-01 22:12 - 2013-12-01 22:12 - 00000000 ____D C:\ProgramData\MSScanAppDataDir 2013-11-30 16:21 - 2013-11-30 16:21 - 00000000 ____D C:\Users\Moragor\AppData\Local\Razer_Inc 2013-11-30 16:21 - 2013-08-03 10:15 - 00000000 ____D C:\Users\Moragor\Documents\Razer 2013-11-30 16:21 - 2013-07-30 22:55 - 00000000 ____D C:\Users\Moragor\AppData\Local\Razer 2013-11-30 16:20 - 2013-07-30 22:13 - 00002136 _____ C:\Users\Public\Desktop\Razer Game Booster.lnk 2013-11-30 16:20 - 2013-07-30 22:13 - 00000000 ____D C:\ProgramData\Razer 2013-11-30 16:20 - 2013-07-30 22:13 - 00000000 ____D C:\Program Files (x86)\Razer 2013-11-30 16:18 - 2013-08-03 12:57 - 00015300 _____ C:\autoupdate.log 2013-11-30 16:18 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-11-30 04:06 - 2013-11-30 04:01 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\NetSpeedMonitor 2013-11-30 03:58 - 2013-11-27 22:49 - 00000000 ____D C:\Users\Moragor\Documents\MessageAnalyzer 2013-11-28 16:35 - 2013-07-30 22:43 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\DisplayFusion 2013-11-28 02:52 - 2013-07-30 22:43 - 00000000 ____D C:\Users\Moragor\Documents\DisplayFusion Backups 2013-11-28 02:52 - 2013-07-30 22:43 - 00000000 ____D C:\Program Files (x86)\DisplayFusion 2013-11-27 23:17 - 2013-11-26 03:02 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\DAEMON Tools Lite 2013-11-27 23:02 - 2013-11-27 23:02 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\ASCOMP Software 2013-11-27 22:54 - 2013-11-27 22:45 - 00000000 ____D C:\Users\Moragor\AppData\Local\Abelssoft 2013-11-27 22:49 - 2013-11-27 22:49 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_wfpcapture_01011.Wdf 2013-11-27 22:45 - 2013-11-27 22:45 - 00000000 ____D C:\Windows\System32\Tasks\Abelssoft 2013-11-27 22:45 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2013-11-27 22:33 - 2013-07-30 16:54 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Mozilla 2013-11-27 21:08 - 2013-11-27 21:08 - 00000000 ____D C:\ProgramData\Binarysense 2013-11-26 14:35 - 2013-11-26 14:35 - 00000000 ____D C:\ProgramData\Sophos 2013-11-26 12:54 - 2013-12-11 23:49 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-26 11:19 - 2013-12-11 23:49 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-26 11:18 - 2013-12-11 23:49 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-26 11:11 - 2013-12-11 23:49 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-26 10:48 - 2013-12-11 23:49 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-26 10:46 - 2013-12-11 23:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-26 10:41 - 2013-12-11 23:49 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-26 10:29 - 2013-12-11 23:49 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-26 10:27 - 2013-12-11 23:49 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-26 10:23 - 2013-12-11 23:49 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-26 10:21 - 2013-12-11 23:49 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-26 10:18 - 2013-12-11 23:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-26 10:18 - 2013-12-11 23:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-26 10:16 - 2013-12-11 23:49 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-26 09:57 - 2013-12-11 23:49 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-26 09:38 - 2013-12-11 23:49 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-26 09:38 - 2013-12-11 23:49 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-26 09:35 - 2013-12-11 23:49 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-26 09:32 - 2013-12-11 23:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-26 09:28 - 2013-12-11 23:49 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-26 09:16 - 2013-12-11 23:49 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-26 09:02 - 2013-12-11 23:49 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-26 08:48 - 2013-12-11 23:49 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-26 08:32 - 2013-12-11 23:49 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-26 08:26 - 2013-12-11 23:49 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-26 08:07 - 2013-12-11 23:49 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-26 07:40 - 2013-12-11 23:49 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-26 07:34 - 2013-12-11 23:49 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-26 07:34 - 2013-12-11 23:49 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-26 07:33 - 2013-12-11 23:49 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-26 07:27 - 2013-12-11 23:49 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-26 03:08 - 2013-11-26 03:01 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\Documents\Mobogenie 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\AppData\Local\Mobogenie 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 ____D C:\Users\Moragor\AppData\Local\cache 2013-11-26 03:04 - 2013-11-26 03:04 - 00000000 _____ C:\Users\Moragor\daemonprocess.txt 2013-11-26 03:02 - 2013-11-26 03:02 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2013-11-26 03:02 - 2013-11-26 03:02 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite 2013-11-25 16:01 - 2013-08-25 21:00 - 00000000 ____D C:\Windows\Minidump 2013-11-25 16:01 - 2013-08-15 07:17 - 00000000 ____D C:\Users\Moragor\Tracing 2013-11-25 15:54 - 2013-11-25 15:54 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-11-23 19:26 - 2013-12-11 11:57 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-11-23 18:47 - 2013-12-11 11:57 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Users\Public\Documents\LogiShrd 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Users\Moragor\AppData\Local\Logishrd 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Program Files\Logitech 2013-11-21 12:54 - 2013-11-21 12:54 - 00000000 ____D C:\Program Files\Common Files\Logishrd 2013-11-21 12:54 - 2013-07-30 22:28 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Logitech 2013-11-21 12:54 - 2013-07-30 22:28 - 00000000 ____D C:\ProgramData\LogiShrd 2013-11-21 04:22 - 2013-11-21 04:22 - 00000000 ____D C:\Users\Moragor\Documents\Egosoft 2013-11-20 22:11 - 2013-11-20 22:11 - 00000672 _____ C:\Users\Public\Desktop\Guild Wars 2.lnk 2013-11-20 22:11 - 2013-09-24 15:16 - 00000000 ____D C:\Users\Moragor\AppData\Roaming\Guild Wars 2 2013-11-20 22:11 - 2013-07-30 22:23 - 00000000 ____D C:\Users\Moragor\Documents\Guild Wars 2 Files to move or delete: ==================== C:\Users\Moragor\Network_Meter_Data.js Some content of TEMP: ==================== C:\Users\Moragor\AppData\Local\Temp\procexp64.exe C:\Users\Moragor\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-11 10:58 ==================== End Of Log ============================ --- --- --- |
19.12.2013, 15:50 | #11 |
| Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-12-2013 05 Ran by Moragor at 2013-12-19 15:36:14 Running from D:\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AS: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} ==================== Installed Programs ====================== 3DMark (x32) 7-Zip 9.20 (x64 edition) (Version: 9.20.00.0) Abloadtool (x32) Adobe Flash Player 10 ActiveX (x32 Version: 10.0.42.34) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170) Adobe Reader XI (11.0.05) - Deutsch (x32 Version: 11.0.05) Age of Empires II: HD Edition (x32) Age of Empires® III: Complete Collection (x32) AI Suite II (x32 Version: 2.01.02) Areca (x32) Asmedia ASM104x USB 3.0 Host Controller Driver (x32 Version: 1.16.10.0) Asmedia ASM106x SATA Host Controller Driver (x32 Version: 1.3.4.000) ASUS Boot Setting (x32 Version: 1.00.09) ASUS Product Register Program (x32 Version: 1.0.014) AVG 2014 (Version: 14.0.3658) AVG 2014 (Version: 14.0.4259) AVG 2014 (Version: 2014.0.4259) Blender (Version: 2.68a) Borderlands 2 (x32) Canon Utilities Digital Photo Professional 3.11 (x32 Version: 3.11.30.3) Canon Utilities EOS Sample Music (x32 Version: 1.0.1.1) Canon Utilities EOS Utility (x32 Version: 2.11.3.0) Canon Utilities ImageBrowser EX (x32 Version: 1.2.1.13) Canon Utilities PhotoStitch (x32 Version: 3.1.23.47) Canon Utilities Picture Style Editor (x32 Version: 1.10.2.0) CCleaner (Version: 4.04) Chaos on Deponia (x32) CLX.PayPen - CLX.PayPen Wireless (x32 Version: 2.0.6.1) Corsair Link(TM) USB Dongle (Driver Removal) (x32) CorsairLINK2 (x32 Version: 2.3.4816) CyberLink BD_3D Advisor 2.0 (x32 Version: 2.0.5425) CyberLink LabelPrint 2.5 (x32 Version: 2.5.5311) CyberLink Media Suite 10 (x32 Version: 10.0) CyberLink Media Suite 10 (x32 Version: 10.2021) CyberLink MediaEspresso 6.5 (x32 Version: 6.5.3019_44673) CyberLink MediaShow 6 (x32 Version: 6.0.4312) CyberLink Power2Go 7 (x32 Version: 7.0.0.3126b) CyberLink PowerDVD 10 (x32 Version: 10.0.4125.52) CyberLink PowerProducer 5.5 (x32 Version: 5.5.3.4118) D3DX10 (x32 Version: 15.4.2368.0902) DAEMON Tools Lite (x32 Version: 4.48.1.0347) Defraggler (Version: 2.15) Deponia (x32) DisplayFusion (x32) DisplayFusion 5.1.1 (x32 Version: 5.1.1.0) Dropbox (HKCU Version: 2.0.26) E-Finance Java (x32 Version: 1.0.0.0) eReg (x32 Version: 1.20.138.34) Everything 1.2.1.371 (x32) EXPERTool v8.9 (x32 Version: 8.9.4.2) FINAL FANTASY VIII (x32) FormatFactory 3.1.1 (x32 Version: 3.1.1) Fotogalerie (x32 Version: 16.4.3508.0205) Futuremark SystemInfo (x32 Version: 4.17.0) GeForce Experience NvStream Client Components (Version: 1.6.28) GIMP 2.8.6 (Version: 2.8.6) GIMP LqR Plug-In (x32 Version: PlugIn: 0.7.1 - Lib: 0.4.1) GML Matting 0.3 (x32 Version: 0.3) Goodbye Deponia (x32) Google Chrome (HKCU Version: 31.0.1650.63) Guild Wars 2 (x32) GW2BattleStats (x32 Version: 1.7.0.0) Intel(R) Management Engine Components (x32 Version: 9.0.0.1323) Intel(R) Network Connections 18.1.59.0 (Version: 18.1.59.0) Intel® Trusted Connect Service Client (Version: 1.27.798.1) Intel® Watchdog Timer Driver (Intel® WDT) (x32) IrfanView (remove only) (x32 Version: 4.36) Java 7 Update 25 (64-bit) (Version: 7.0.250) Java 7 Update 45 (x32 Version: 7.0.450) Java Auto Updater (x32 Version: 2.1.9.8) JDownloader 0.9 (x32 Version: 0.9) LG ODD Auto Firmware Update (x32 Version: 10.01.0712.01) LockHunter 2.0 beta 2, 64 bit Logitech Gaming Software (Version: 8.45.88) Logitech Gaming Software 8.51 (Version: 8.51.5) Logitech SetPoint 6.61 (Version: 6.61.15) Mafia II (x32) marvell 91xx driver (x32 Version: 1.2.0.1014) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938) Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Camera Codec Pack (Version: 16.4.1970.0624) Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0) Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0) Microsoft Office Basic Edition 2003 (x32 Version: 11.0.8173.0) Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003) Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1) Microsoft Silverlight (Version: 5.1.20913.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (x32 Version: 11.0.51106.1) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (x32 Version: 11.0.51106.1) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 (Version: 11.0.51106) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 (Version: 11.0.51106) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106) Microsoft Xbox 360 Accessories 1.2 (Version: 1.20.146.0) Movie Maker (x32 Version: 16.4.3508.0205) Mozilla Firefox 25.0.1 (x86 de) (x32 Version: 25.0.1) Mozilla Maintenance Service (x32 Version: 24.2.0) Mozilla Thunderbird 24.2.0 (x86 de) (x32 Version: 24.2.0) Mp3tag v2.57 (x32 Version: v2.57) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT110 (x32 Version: 16.4.1108.0727) MSVCRT110_amd64 (Version: 16.4.1109.0912) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) Nexus Mod Manager (Version: 0.45.6) NVIDIA 3D Vision Controller-Treiber 331.82 (Version: 331.82) NVIDIA 3D Vision Treiber 331.82 (Version: 331.82) NVIDIA 3D Vision Video Player (x32 Version: 1.7.5) NVIDIA GeForce Experience 1.8.1 (Version: 1.8.1) NVIDIA Grafiktreiber 331.82 (Version: 331.82) NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4) NVIDIA Install Application (Version: 2.1002.142.992) NVIDIA LED Visualizer 1.0 (Version: 1.0) NVIDIA Network Service (Version: 1.0) NVIDIA PhysX (x32 Version: 9.13.0725) NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725) NVIDIA ShadowPlay 10.11.15 (Version: 10.11.15) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3182) NVIDIA Systemsteuerung 331.82 (Version: 331.82) NVIDIA Update 10.11.15 (Version: 10.11.15) NVIDIA Update Core (Version: 10.11.15) NVIDIA Virtual Audio 1.2.19 (Version: 1.2.19) Overwolf (x32 Version: 0.47.284) Photo Common (x32 Version: 16.4.3508.0205) Photo Gallery (x32 Version: 16.4.3508.0205) Razer Core (x32 Version: 1.0.1.56) Razer Game Booster (x32 Version: 4.1.59.0) Razer Synapse 2.0 (x32 Version: 1.16.6) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6657) Samsung Scan Assistant (x32 Version: 1.05.07 (20.07.2012)) Samsung Universal Print Driver 2 PCL6 (x32 Version: 2.50.03.00) Samsung Universal Scan Driver (x32 Version: 1.2.19.0) SHIELD Streaming (Version: 1.6.85) Skype™ 6.10 (x32 Version: 6.10.104) Speccy (Version: 1.22) Star Wars: Knights of the Old Republic (x32) Star Wars: Knights of the Old Republic II (x32) StarCitizen (x32 Version: 1.0) Steam (x32 Version: 1.0.0.0) Steganos Password Manager 2012 (x32 Version: 13.0.2) System Requirements Lab CYRI (x32 Version: 6.0.7.0) System Requirements Lab for Intel (x32 Version: 4.5.11.0) TeamSpeak 3 Client (Version: 3.0.13.1) Total War: ROME II (x32) Total War: SHOGUN 2 (x32) TreeSize Free V2.7 (x32 Version: 2.7) Tropico 4 (x32) Tunatic (x32) Visual Studio 2010 x64 Redistributables (Version: 13.0.0.1) Visual Studio 2012 x64 Redistributables (Version: 14.0.0.1) Visual Studio 2012 x86 Redistributables (x32 Version: 14.0.0.1) VLC media player 2.0.8 (Version: 2.0.8) Wacom Tablett (Version: 6.3.6-3) Wartung Samsung CLX-3180 Series (x32) WebTablet FB Plugin 32 bit (x32 Version: 2.1.0.3) WebTablet FB Plugin 64 bit (Version: 2.1.0.3) Windows Live Communications Platform (x32 Version: 16.4.3508.0205) Windows Live Essentials (x32 Version: 16.4.3508.0205) Windows Live ID Sign-in Assistant (Version: 7.250.4311.0) Windows Live Installer (x32 Version: 16.4.3508.0205) Windows Live Messenger (x32 Version: 16.4.3508.0205) Windows Live Photo Common (x32 Version: 16.4.3508.0205) Windows Live PIMT Platform (x32 Version: 16.4.3508.0205) Windows Live SOXE (x32 Version: 16.4.3508.0205) Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205) Windows Live UX Platform (x32 Version: 16.4.3508.0205) Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205) Windows-Treiberpaket - C Technologies AB (PayPen) Input Pen (09/28/2007 2.0.0.0) (Version: 09/28/2007 2.0.0.0) X Rebirth (x32) X3: Albion Prelude (x32) X3: Reunion (x32) X3: Terran Conflict (x32) ==================== Restore Points ========================= 18-12-2013 14:24:26 Geplanter Prüfpunkt ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {038C499D-1B9E-48A9-9518-4782B0829B7C} - System32\Tasks\Razer_Game_Booster_AutoUpdate => C:\Program Files (x86)\Razer\Razer Game Booster\AutoUpdate.exe Task: {0DF5D25F-5E63-49C0-9CBC-EC3056BFC4A3} - System32\Tasks\Backup2 => F:\backup_616701900.bat [2013-08-02] () Task: {21CB778D-7980-4ADE-BF1C-ED68F6985F40} - System32\Tasks\Defraggler Volume D Task => C:\Program Files\Defraggler\df64.exe [2013-07-05] (Piriform Ltd) Task: {40ABC76A-D8DD-4958-8180-660A3F0811EE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-07-22] (Piriform Ltd) Task: {47472F59-945D-4EAA-B4C9-820B33097567} - System32\Tasks\Backup1 => E:\backup_134474422.bat [2013-08-02] () Task: {62136AD8-BDE1-4C16-9656-F7F3884D80EB} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr.exe [2011-09-09] () Task: {64AA4CDC-F83C-4C55-B49C-05C3F32199E8} - System32\Tasks\Start CorsairLINK Hardware Monitor => C:\Program Files (x86)\Corsair\CorsairLINK2\CorsairLINK_HardwareMonitor.exe [2013-03-09] (Corsair Components, Inc.) Task: {70DE4F15-0007-4D89-B1DD-7BA61BB3FC8F} - System32\Tasks\ASUS\ASUS DigiPowerControl Help => C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ Power Control\PowerControlHelp.exe [2012-07-23] (ASUSTeK Computer Inc.) Task: {8603220E-49AE-465A-A6DC-0C40FC9BA2A9} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000Core => C:\Users\Moragor\AppData\Local\Google\Update\GoogleUpdate.exe [2013-07-30] (Google Inc.) Task: {8B028DE7-E4A5-4BB2-8A31-BA156DBD296F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000UA => C:\Users\Moragor\AppData\Local\Google\Update\GoogleUpdate.exe [2013-07-30] (Google Inc.) Task: {BFFFE89B-36A3-460A-8786-1CB269E1B549} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11] (Adobe Systems Incorporated) Task: {CB4E5A10-2FEF-420F-86CE-5B3E242C1A04} - System32\Tasks\ASUS\i-Setup171723 => C:\Windows\Chipset\AsusSetup.exe [2010-09-08] (ASUSTeK Computer Inc.) Task: {E2E5A6C6-0543-4262-B783-C10EB1738940} - System32\Tasks\Abelssoft\CheckDriveBackgroundGuard => C:\Program Files (x86)\CheckDrive\CheckDriveBackgroundGuard.exe Task: {EAA3B024-6197-4035-92B6-6041A44C23EE} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2012-03-13] (ASUSTeK Computer Inc.) Task: {EB947F17-C8AB-4D36-AF9C-84939FE182DF} - System32\Tasks\PCMeter\Startup => C:\Users\Moragor\Desktop\PCMeter\PCMeterV0.3.exe [2013-01-12] (AddGadgets) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Defraggler Volume D Task.job => C:\Program Files\Defraggler\df64.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000Core.job => C:\Users\Moragor\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1534359565-3824859437-1116867023-1000UA.job => C:\Users\Moragor\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-12-09 12:08 - 2013-12-09 12:08 - 00045608 _____ () C:\Program Files (x86)\Overwolf\x64\OWExplorer-20125.dll 2013-10-13 10:00 - 2013-10-13 10:00 - 00012520 _____ () C:\Users\Moragor\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.3.gadget\CoreTempReader.dll 2013-10-13 10:00 - 2013-10-13 10:00 - 00015080 _____ () C:\Users\Moragor\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.3.gadget\GetCoreTempInfoNET.dll 2013-10-13 10:00 - 2013-10-13 10:00 - 00014056 _____ () C:\Users\Moragor\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.3.gadget\SystemInfo.dll 2013-12-17 19:47 - 2013-12-10 03:15 - 00093984 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll 2013-12-17 19:47 - 2013-12-10 03:15 - 00874784 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll 2013-10-12 19:48 - 2013-06-06 03:09 - 01185048 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00039464 _____ () C:\Program Files (x86)\Overwolf\x64\OWLog.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00721960 _____ () C:\Program Files (x86)\Overwolf\x64\OWExplorerLauncher.dll 2013-07-31 03:10 - 2013-12-19 15:12 - 00029184 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll 2013-07-31 03:10 - 2010-06-29 03:58 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll 2013-08-03 15:23 - 2013-03-09 09:09 - 00053760 _____ () C:\Program Files (x86)\Corsair\CorsairLINK2\SynchronousIO.Native.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00079400 _____ () C:\Program Files (x86)\Overwolf\OWExplorer-20125.dll 2013-07-31 03:12 - 2012-05-17 11:57 - 00043520 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\HookKey32.dll 2013-07-31 03:12 - 2012-07-05 11:05 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\pngio.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00015288 _____ () C:\Program Files (x86)\Overwolf\ODK.AddIns.V2.HostView.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00134696 _____ () C:\Program Files (x86)\Overwolf\OWService.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00970792 _____ () C:\Program Files (x86)\Overwolf\OWServer.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00038440 _____ () C:\Program Files (x86)\Overwolf\OWLog.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00025600 _____ () C:\Program Files (x86)\Overwolf\CoreAudioApi.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00839720 _____ () C:\Program Files (x86)\Overwolf\OWAgent.dll 2013-11-12 03:37 - 2013-12-09 12:08 - 00014776 _____ () C:\Users\Moragor\AppData\Local\Overwolf\Apps\Contracts\ODK.AddIns.V2.Contract.dll 2013-11-12 03:37 - 2013-12-09 12:08 - 00014776 _____ () C:\Users\Moragor\AppData\Local\Overwolf\Apps\AddInViews\ODK.AddIns.V2.AddInView.dll 2013-11-12 04:04 - 2013-11-12 04:04 - 02173952 _____ () C:\Users\Moragor\AppData\Local\Overwolf\Apps\AddIns\LMDavid_GW2_Overpowered_1.0.0\ODK.AddIns.ThirdParty.LMDavid_GW2_Overpowered.dll 2013-11-12 03:37 - 2013-12-09 12:08 - 00016824 _____ () C:\Users\Moragor\AppData\Local\Overwolf\Apps\AddInSideAdapters\ODK.AddIns.V2.AddInSideAdapter.dll 2013-11-12 03:37 - 2013-12-09 12:08 - 00017848 _____ () C:\Users\Moragor\AppData\Local\Overwolf\Apps\HostSideAdapters\ODK.AddIns.V2.HostSideAdapter.dll 2013-08-02 08:38 - 2013-01-29 18:45 - 00112128 _____ () C:\Program Files (x86)\Canon\ImageBrowser EX\MFMFileSystemWatcher.dll 2013-03-13 21:48 - 2013-03-13 21:48 - 24978944 _____ () C:\Users\Moragor\AppData\Roaming\Dropbox\bin\libcef.dll 2011-03-09 13:21 - 2011-03-09 13:21 - 00619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2011-03-09 13:21 - 2011-03-09 13:21 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2013-07-31 03:11 - 2011-07-12 19:14 - 00147456 _____ () C:\Program Files (x86)\ASUS\AI Suite II\AssistFunc.dll 2013-07-31 03:11 - 2010-10-05 08:22 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\pngio.dll 2013-07-31 03:11 - 2012-10-08 17:07 - 00972288 _____ () C:\Program Files (x86)\ASUS\AI Suite II\BarGadget\BarGadget.dll 2013-07-31 03:12 - 2012-06-19 11:56 - 01305600 _____ () C:\Program Files (x86)\ASUS\AI Suite II\MyLogo\MyLogo.dll 2013-07-31 03:11 - 2012-05-25 10:33 - 00883712 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\Sensor.dll 2013-07-31 03:11 - 2012-05-28 21:27 - 01622528 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor Graph\SensorGraph.dll 2013-07-31 03:11 - 2011-09-19 20:18 - 01243136 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Settings\Settings.dll 2013-07-31 03:11 - 2011-07-21 09:06 - 00846848 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Splitter\Splitter.dll 2013-07-31 03:11 - 2012-08-29 18:09 - 00875520 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TabGadget\TabGadget.dll 2013-12-02 02:05 - 2011-06-08 11:15 - 00651264 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Thermal Radar\ThermalRadar.dll 2013-07-31 03:10 - 2010-08-23 03:17 - 00662016 ____R () C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMLib.dll 2013-07-31 03:11 - 2010-10-05 08:22 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\ImageHelper.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 01213633 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libxml2-2.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00055808 _____ () C:\Program Files (x86)\Overwolf\Purplizer\zlib1.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00301681 _____ () C:\Program Files (x86)\Overwolf\Purplizer\plugins\libmsn.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00482872 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libgio-2.0-0.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00219305 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libpng14-14.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00904525 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libcairo-2.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00279059 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libfontconfig-1.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00143096 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libexpat-1.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00535264 _____ () C:\Program Files (x86)\Overwolf\Purplizer\freetype6.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00095189 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libpangocairo-1.0-0.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00016371 _____ () C:\Program Files (x86)\Overwolf\Purplizer\plugins\libxmpp.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00323844 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libjabber.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00016330 _____ () C:\Program Files (x86)\Overwolf\Purplizer\plugins\libyahoo.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00190138 _____ () C:\Program Files (x86)\Overwolf\Purplizer\libymsg.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00018706 _____ () C:\Program Files (x86)\Overwolf\Purplizer\plugins\ssl-nss.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00006526 _____ () C:\Program Files (x86)\Overwolf\Purplizer\plugins\ssl.dll 2013-12-09 12:08 - 2013-12-09 12:08 - 00417501 _____ () C:\Program Files (x86)\Overwolf\Purplizer\sqlite3.dll 2013-07-31 03:11 - 2009-08-12 20:15 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\pngio.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/18/2013 00:38:49 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1". Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (12/18/2013 10:33:31 AM) (Source: WinMgmt) (User: ) Description: PowerMeterProviderSELECT * FROM Win32_PowerMeterEventWin32_PowerMeterEvent//./root/CIMV2/power Error: (12/18/2013 10:33:31 AM) (Source: WinMgmt) (User: ) Description: SELECT * FROM Win32_PowerMeterEventWin32_PowerMeterEvent//./root/CIMV2/power Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt) (User: ) Description: 0x80041002C:\WINDOWS\SYSTEM32\WBEM\EN-US\MSFEEDSBS.MFL Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt) (User: ) Description: 0x80041002C:\WINDOWS\SYSTEM32\WBEM\EN-US\MSFEEDS.MFL Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt) (User: ) Description: 0x80041002C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\DE\ASPNET.MFL Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt) (User: ) Description: 0x80041002C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\DE\ASPNET.MFL Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt) (User: ) Description: 0x80041002C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\ASPNET.MOF Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt) (User: ) Description: 0x80041002C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\ASPNET.MOF Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt) (User: ) Description: 0x80041002C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\MOF\SERVICEMODEL.MOF System errors: ============= Error: (12/19/2013 03:13:07 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (12/18/2013 03:38:47 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (12/18/2013 03:37:28 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst Gruppenrichtlinienclient konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden. Error: (12/18/2013 03:22:48 PM) (Source: volsnap) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. Error: (12/18/2013 10:38:39 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (12/18/2013 10:33:07 AM) (Source: DCOM) (User: ) Description: {C49E32C6-BC8B-11D2-85D4-00105A1F8304} Error: (12/18/2013 10:03:06 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Microsoft Office Sessions: ========================= Error: (12/18/2013 00:38:49 PM) (Source: SideBySide)(User: ) Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files (x86)\CLX.PayPen\DriverInstaller\DPInst_ia64.exe Error: (12/18/2013 10:33:31 AM) (Source: WinMgmt)(User: ) Description: PowerMeterProviderSELECT * FROM Win32_PowerMeterEventWin32_PowerMeterEvent//./root/CIMV2/power Error: (12/18/2013 10:33:31 AM) (Source: WinMgmt)(User: ) Description: SELECT * FROM Win32_PowerMeterEventWin32_PowerMeterEvent//./root/CIMV2/power Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt)(User: ) Description: 0x80041002C:\WINDOWS\SYSTEM32\WBEM\EN-US\MSFEEDSBS.MFL Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt)(User: ) Description: 0x80041002C:\WINDOWS\SYSTEM32\WBEM\EN-US\MSFEEDS.MFL Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt)(User: ) Description: 0x80041002C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\DE\ASPNET.MFL Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt)(User: ) Description: 0x80041002C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\DE\ASPNET.MFL Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt)(User: ) Description: 0x80041002C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\ASPNET.MOF Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt)(User: ) Description: 0x80041002C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\ASPNET.MOF Error: (12/18/2013 10:33:15 AM) (Source: WinMgmt)(User: ) Description: 0x80041002C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\MOF\SERVICEMODEL.MOF ==================== Memory info =========================== Percentage of memory in use: 23% Total physical RAM: 16322.99 MB Available physical RAM: 12411.82 MB Total Pagefile: 32644.16 MB Available Pagefile: 28176.35 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:238.37 GB) (Free:101.16 GB) NTFS Drive d: (2TB) (Fixed) (Total:1863.01 GB) (Free:1594.31 GB) NTFS Drive e: (Backup 1) (Fixed) (Total:232.88 GB) (Free:36.07 GB) NTFS Drive f: (Backup 2) (Fixed) (Total:465.76 GB) (Free:230.11 GB) NTFS Drive g: (Galileo Press) (CDROM) (Total:1.93 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 238 GB) (Disk ID: E418B976) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=238 GB) - (Type=07 NTFS) ======================================================== Disk: 3 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 714D68FC) Partition 1: (Not Active) - (Size=-198626508800) - (Type=07 NTFS) ==================== End Of Log ============================ |
20.12.2013, 09:57 | #12 |
/// the machine /// TB-Ausbilder | Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
20.12.2013, 11:32 | #13 |
| Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher So, die letzten Punkte sind erledigt. Vielen Dank für deine Hilfe. Und danke für die Tips, ein paar der Sachen werd ich mir auf jeden Fall genauer anschauen. |
21.12.2013, 11:59 | #14 |
/// the machine /// TB-Ausbilder | Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Win 7: svchost.exe frisst ungewöhnlich viel Arbeitsspeicher |
administrator, canon, computer, desktop, explorer, fehlercode 0x80070490, fehlercode windows, flash player, google, homepage, installation, internet, launch, mobogenie, mobogenie entfernen, mozilla, newtab, plug-in, realtek, registry, rundll, sekunden, services.exe, software, svchost.exe, tablet, winlogon.exe |