|
Plagegeister aller Art und deren Bekämpfung: Internet Trojaner (rvzr-a.akamaihd.net)Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
15.12.2013, 16:59 | #1 |
| Internet Trojaner (rvzr-a.akamaihd.net) Hallo Trojaner-Board Team, seit einigen Tagen habe ich ein Problem mit einem Trojaner (rvzr-a.akamaihd.net) der mir immer wieder irgendwelche Werbung oder Sachen im Internet öffntet. Mein AntiViren Program zeigt nichts. Bitte um Hilfe MfG |
15.12.2013, 17:09 | #2 |
/// the machine /// TB-Ausbilder | Internet Trojaner (rvzr-a.akamaihd.net) hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
15.12.2013, 17:17 | #3 |
| Internet Trojaner (rvzr-a.akamaihd.net) hi schrauber,
__________________hier sind die beiden Text-Logs FRST: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-12-2013 01 Ran by PC (administrator) on PC-PC on 15-12-2013 17:14:01 Running from C:\Users\PC\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation) HKLM-x32\...\RunOnce: [ Malwarebytes Anti-Malware ] - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1823656 2013-12-11] (Valve Corporation) MountPoints2: {5f9e8a0b-3700-11e3-a6df-3085a9b2f015} - D:\LaunchU3.exe -a HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xD600BBEC7097CE01 BHO: Plus-HD-1.2 - {11111111-1111-1111-1111-110311121155} - C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-bho64.dll No File BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\z0skj7tx.default FF SearchEngineOrder.1: Google FF SelectedSearchEngine: Google FF Homepage: hxxp://www.google.com FF Keyword.URL: hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\PC\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Plus-HD-1.2 - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\z0skj7tx.default\Extensions\39e612de-2951-40c2-ab4a-82e121c42778@4e0cecc2-7c67-4374-bc4c-f15656d80ab7.com FF Extension: Youtube MP3 Podcaster - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\z0skj7tx.default\Extensions\youtubemp3podcaster@jeremy.d.gregorio.com FF Extension: paulsaintuzb - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\z0skj7tx.default\Extensions\paulsaintuzb@gmail.com.xpi FF Extension: No Name - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\z0skj7tx.default\Extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi ==================== Services (Whitelisted) ================= R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151744 2013-12-15] (IObit) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation) R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15125280 2013-11-08] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-12-11] () R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2011-11-11] (VIA Technologies, Inc.) S2 SpyHunter 4 Service; C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE [x] ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-23] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [13368 2009-07-06] () S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2012-06-22] () R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-17] () R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation) S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-15 17:14 - 2013-12-15 17:14 - 00007982 _____ C:\Users\PC\Desktop\FRST.txt 2013-12-15 17:13 - 2013-12-15 17:13 - 01927796 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe 2013-12-15 17:13 - 2013-12-15 17:13 - 00000000 ____D C:\FRST 2013-12-15 17:12 - 2013-12-15 17:12 - 00000416 _____ C:\DelFix.txt 2013-12-15 17:06 - 2013-12-15 17:06 - 00001113 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-12-15 17:06 - 2013-12-15 17:06 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-12-15 17:06 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-12-15 16:55 - 2013-12-15 16:55 - 00000000 ____D C:\Program Files (x86)\ESET 2013-12-15 16:49 - 2013-12-15 16:49 - 00000168 _____ C:\Windows\setupact.log 2013-12-15 16:49 - 2013-12-15 16:49 - 00000000 _____ C:\Windows\setuperr.log 2013-12-15 16:36 - 2013-12-15 16:36 - 00000000 ____D C:\Windows\ERUNT 2013-12-15 16:01 - 2013-12-15 16:01 - 00000000 ____D C:\Users\PC\AppData\Roaming\Malwarebytes 2013-12-15 16:01 - 2013-12-15 16:01 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\Users\PC\AppData\Roaming\IObit 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\ProgramData\ProductData 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\ProgramData\IObit 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\Program Files (x86)\IObit 2013-12-15 15:37 - 2013-12-15 15:37 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-12-15 15:37 - 2013-12-15 15:37 - 00000000 _____ C:\autoexec.bat 2013-12-15 15:37 - 2012-06-22 11:01 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys 2013-12-15 14:41 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-15 14:41 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-15 14:41 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-15 14:41 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-15 14:41 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-15 14:41 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-15 14:41 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-15 14:41 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-15 14:41 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-15 14:41 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-15 14:41 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-15 14:41 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-15 14:41 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-15 14:41 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-15 14:41 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-15 14:41 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-15 14:41 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-15 14:41 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-15 14:41 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-15 14:41 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-15 14:41 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-15 14:41 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-15 14:41 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-15 14:41 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-15 14:41 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-15 14:41 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-15 14:41 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-15 14:41 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-15 14:41 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-15 14:41 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-15 14:41 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-14 23:36 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-14 23:32 - 2013-12-14 23:32 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-14 23:32 - 2013-12-14 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-14 23:32 - 2013-12-14 23:32 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-14 23:32 - 2013-12-14 23:32 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-14 23:32 - 2013-12-14 23:32 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-14 23:32 - 2013-12-14 23:32 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-14 23:32 - 2013-12-14 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-13 14:08 - 2013-12-13 14:08 - 00536133 _____ C:\Users\PC\Desktop\Dead.Space.3.v1.0-v1.0.0.1.Plus.9.Trainer-FLiNG.rar 2013-12-13 14:05 - 2013-12-13 14:05 - 00000000 ____D C:\Users\PC\Documents\FLiNGTrainer 2013-12-11 22:17 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-11 22:17 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-11 22:17 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-11 22:17 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-11 22:09 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-11 22:09 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-11 22:09 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-11 22:09 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-11 22:09 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-11 22:09 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-11 22:09 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-11 22:09 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-11 22:09 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-11 22:09 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-11 22:09 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-11 22:09 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-11 22:09 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-11 22:09 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-11 22:09 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-11 22:09 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-11 22:09 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-11 22:09 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-11 22:09 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-10 21:23 - 2013-12-10 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-09 20:59 - 2013-12-09 20:59 - 07600226 _____ C:\Users\PC\Downloads\ACBF_THEME.ZIP 2013-12-09 18:41 - 2013-12-11 22:04 - 00000000 ____D C:\Users\PC\Documents\Assassin's Creed IV Black Flag 2013-12-09 18:30 - 2013-12-09 18:30 - 00000141 _____ C:\Users\PC\Desktop\Assassin's Creed IV Black Flag.url 2013-12-09 18:06 - 2013-12-09 18:06 - 13486329 _____ C:\Users\PC\Downloads\FC3_THEME.ZIP 2013-12-06 18:50 - 2013-12-06 18:50 - 00000000 ____D C:\Users\PC\Documents\EA Games 2013-12-06 18:50 - 2013-12-06 18:50 - 00000000 ____D C:\Users\PC\AppData\Local\EA Games 2013-12-06 18:48 - 2013-12-06 18:48 - 00001208 _____ C:\Users\Public\Desktop\Dead Space 3.lnk 2013-12-06 18:31 - 2013-12-06 18:31 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-12-02 06:00 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-11-30 20:35 - 2013-11-30 20:35 - 03807984 _____ C:\Users\PC\Downloads\State of Decay Trainer +8 for update #8.zip 2013-11-30 20:35 - 2013-11-02 17:37 - 03961856 _____ C:\Users\PC\Desktop\State of Decay Trainer 'B' +8 for update #8 MrAntiFun.EXE 2013-11-30 20:32 - 2013-11-30 20:32 - 03882039 _____ C:\Users\PC\Downloads\State of Decay Trainer +4 for Beta Release.rar 2013-11-30 19:29 - 2013-11-21 07:54 - 02097152 _____ C:\Users\PC\Desktop\M5A78L-M-USB3-ASUS-1801.ROM 2013-11-30 19:10 - 2008-01-03 21:34 - 00011832 _____ C:\Windows\SysWOW64\Drivers\AsInsHelp64.sys 2013-11-30 19:10 - 2008-01-03 21:34 - 00010216 _____ C:\Windows\SysWOW64\Drivers\AsInsHelp32.sys 2013-11-30 18:55 - 2013-11-30 18:55 - 00000000 ____D C:\Windows\AsDmiHtm 2013-11-30 18:45 - 2013-11-30 19:10 - 00000000 ____D C:\Windows\System32\Tasks\ASUS 2013-11-30 18:45 - 2013-11-30 19:10 - 00000000 ____D C:\Program Files (x86)\ASUS 2013-11-30 18:45 - 2010-12-28 03:19 - 00028672 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2013-11-30 18:45 - 2010-08-23 23:16 - 00013440 _____ C:\Windows\SysWOW64\Drivers\AsIO.sys 2013-11-29 06:14 - 2013-11-29 06:14 - 00001837 _____ C:\Users\PC\Desktop\sasdaas.ggb 2013-11-29 05:54 - 2013-11-29 05:54 - 00001855 _____ C:\Users\Public\Desktop\GeoGebra.lnk 2013-11-29 05:54 - 2013-11-29 05:54 - 00000000 ____D C:\Users\PC\AppData\Roaming\GeoGebra 4.4 2013-11-29 05:54 - 2013-11-29 05:54 - 00000000 ____D C:\Program Files (x86)\GeoGebra 4.4 2013-11-29 05:53 - 2013-11-29 05:54 - 41822200 _____ (International GeoGebra Institute) C:\Users\PC\Downloads\GeoGebra-Windows-Installer-4-3-78-0.exe 2013-11-28 12:40 - 2013-11-28 12:40 - 00000000 ____D C:\Users\PC\Documents\Telltale Games 2013-11-23 11:53 - 2013-11-23 11:53 - 00000796 _____ C:\Users\PC\Desktop\Assassin's Creed Revelations.lnk 2013-11-23 11:51 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-11-23 11:51 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-11-23 11:51 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-11-23 11:51 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-11-23 11:51 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2013-11-23 11:51 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-11-23 11:51 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-11-23 11:51 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-11-23 11:51 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-11-22 23:02 - 2013-11-22 23:03 - 00007856 _____ C:\Users\PC\Desktop\Ubisoft_-_Auftragsbestätigung_Bestellung_Nr_24988928024.eml 2013-11-22 23:01 - 2013-11-22 23:02 - 00025600 ___SH C:\Users\PC\Documents\Thumbs.db 2013-11-22 20:25 - 2013-11-22 20:25 - 00000000 ____D C:\Users\PC\AppData\Local\Aeria Games 2013-11-22 20:24 - 2013-11-22 20:38 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames 2013-11-22 20:24 - 2013-11-22 20:24 - 00000000 ____D C:\ProgramData\Aeria Games 2013-11-22 20:21 - 2013-11-22 20:21 - 00000000 ____D C:\Users\PC\AppData\Roaming\Aeria Games & Entertainment 2013-11-22 19:58 - 2013-11-22 20:21 - 00000000 ____D C:\AeriaGames 2013-11-22 19:58 - 2013-11-22 19:58 - 00558104 _____ (Aeria Games & Entertainment) C:\Users\PC\Downloads\scarletblade_de_downloader.exe 2013-11-21 18:12 - 2013-11-21 18:12 - 00972190 _____ C:\Users\PC\Desktop\msinfo32.nfo 2013-11-21 18:11 - 2013-11-21 18:11 - 00027887 _____ C:\Users\PC\Desktop\DxDiag.txt 2013-11-20 16:00 - 2013-11-14 12:57 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2013-11-20 16:00 - 2013-11-14 12:57 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-20 16:00 - 2013-11-14 12:56 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00357152 _____ C:\Windows\system32\NvIFROpenGL.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-20 16:00 - 2013-11-14 12:56 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-20 13:15 - 2013-11-20 13:15 - 00000000 ____D C:\Users\PC\AppData\Roaming\Unity 2013-11-20 13:12 - 2013-11-20 13:12 - 00000000 ____D C:\Users\PC\AppData\Local\Unity 2013-11-19 16:49 - 2012-07-03 08:37 - 01472360 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2013-11-19 16:48 - 2012-08-30 20:14 - 01760104 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco64.dll 2013-11-19 16:48 - 2012-08-30 20:14 - 01482600 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco64.dll 2013-11-19 16:47 - 2013-11-14 12:56 - 18293608 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-19 16:47 - 2013-11-14 12:56 - 15218504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-11-19 09:58 - 2013-11-19 15:52 - 00000000 ____D C:\Program Files (x86)\findAdeal 2013-11-17 17:56 - 2013-11-17 17:56 - 00000796 _____ C:\Users\PC\Desktop\Assassin's Creed Brotherhood.lnk ==================== One Month Modified Files and Folders ======= 2013-12-15 17:14 - 2013-12-15 17:14 - 00007982 _____ C:\Users\PC\Desktop\FRST.txt 2013-12-15 17:13 - 2013-12-15 17:13 - 01927796 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe 2013-12-15 17:13 - 2013-12-15 17:13 - 00000000 ____D C:\FRST 2013-12-15 17:12 - 2013-12-15 17:12 - 00000416 _____ C:\DelFix.txt 2013-12-15 17:12 - 2013-08-12 14:57 - 01841391 _____ C:\Windows\WindowsUpdate.log 2013-12-15 17:10 - 2013-08-13 16:30 - 00000000 ____D C:\Program Files (x86)\Steam 2013-12-15 17:10 - 2013-08-13 16:26 - 00000000 ____D C:\Users\PC\AppData\Roaming\Skype 2013-12-15 17:06 - 2013-12-15 17:06 - 00001113 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-12-15 17:06 - 2013-12-15 17:06 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-12-15 16:56 - 2009-07-14 05:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-15 16:56 - 2009-07-14 05:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-15 16:55 - 2013-12-15 16:55 - 00000000 ____D C:\Program Files (x86)\ESET 2013-12-15 16:54 - 2011-04-12 08:43 - 00707706 _____ C:\Windows\system32\perfh007.dat 2013-12-15 16:54 - 2011-04-12 08:43 - 00153192 _____ C:\Windows\system32\perfc007.dat 2013-12-15 16:54 - 2009-07-14 06:13 - 01643558 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-15 16:49 - 2013-12-15 16:49 - 00000168 _____ C:\Windows\setupact.log 2013-12-15 16:49 - 2013-12-15 16:49 - 00000000 _____ C:\Windows\setuperr.log 2013-12-15 16:49 - 2013-08-12 15:06 - 00000000 ____D C:\ProgramData\NVIDIA 2013-12-15 16:49 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-15 16:36 - 2013-12-15 16:36 - 00000000 ____D C:\Windows\ERUNT 2013-12-15 16:27 - 2013-11-06 17:30 - 00000000 ____D C:\Program Files (x86)\SpeedFan 2013-12-15 16:01 - 2013-12-15 16:01 - 00000000 ____D C:\Users\PC\AppData\Roaming\Malwarebytes 2013-12-15 16:01 - 2013-12-15 16:01 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\Users\PC\AppData\Roaming\IObit 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\ProgramData\ProductData 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\ProgramData\IObit 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\Program Files (x86)\IObit 2013-12-15 15:37 - 2013-12-15 15:37 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-12-15 15:37 - 2013-12-15 15:37 - 00000000 _____ C:\autoexec.bat 2013-12-15 15:31 - 2013-10-01 19:27 - 00000000 ____D C:\Windows\Minidump 2013-12-15 15:31 - 2013-08-27 09:49 - 00000000 ____D C:\Users\PC\AppData\Local\CrashDumps 2013-12-15 15:31 - 2013-08-12 15:36 - 00000000 ____D C:\Windows\Panther 2013-12-15 07:49 - 2013-08-28 16:41 - 00291944 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-12-15 07:49 - 2013-08-27 13:38 - 00291944 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-12-15 07:48 - 2013-08-12 14:57 - 00001425 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-15 07:47 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-14 23:32 - 2013-12-14 23:32 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-14 23:32 - 2013-12-14 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-14 23:32 - 2013-12-14 23:32 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-14 23:32 - 2013-12-14 23:32 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-14 23:32 - 2013-12-14 23:32 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-14 23:32 - 2013-12-14 23:32 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-14 23:32 - 2013-12-14 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-14 23:32 - 2013-08-15 14:08 - 00000000 ____D C:\Windows\system32\MRT 2013-12-14 23:31 - 2013-08-12 16:14 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-14 23:29 - 2013-08-27 13:38 - 00291944 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-12-13 20:27 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-13 19:48 - 2013-09-17 11:12 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-13 14:09 - 2013-08-30 16:37 - 00000000 ____D C:\Program Files (x86)\Origin 2013-12-13 14:08 - 2013-12-13 14:08 - 00536133 _____ C:\Users\PC\Desktop\Dead.Space.3.v1.0-v1.0.0.1.Plus.9.Trainer-FLiNG.rar 2013-12-13 14:05 - 2013-12-13 14:05 - 00000000 ____D C:\Users\PC\Documents\FLiNGTrainer 2013-12-13 14:04 - 2013-09-17 11:12 - 00003824 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-13 14:04 - 2013-08-12 15:30 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-13 14:04 - 2013-08-12 15:30 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-12 13:35 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-12 13:34 - 2009-07-14 05:45 - 00413600 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-11 22:16 - 2013-09-07 17:28 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-12-11 22:04 - 2013-12-09 18:41 - 00000000 ____D C:\Users\PC\Documents\Assassin's Creed IV Black Flag 2013-12-11 22:01 - 2013-08-27 13:38 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-12-11 22:00 - 2013-08-28 16:41 - 00000000 ____D C:\Users\PC\AppData\Local\PunkBuster 2013-12-11 20:07 - 2013-08-12 16:34 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-12-10 21:24 - 2013-12-10 21:23 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-09 20:59 - 2013-12-09 20:59 - 07600226 _____ C:\Users\PC\Downloads\ACBF_THEME.ZIP 2013-12-09 18:30 - 2013-12-09 18:30 - 00000141 _____ C:\Users\PC\Desktop\Assassin's Creed IV Black Flag.url 2013-12-09 18:30 - 2013-08-12 14:57 - 00000000 ____D C:\Users\PC 2013-12-09 18:06 - 2013-12-09 18:06 - 13486329 _____ C:\Users\PC\Downloads\FC3_THEME.ZIP 2013-12-09 17:54 - 2013-08-28 11:29 - 00000000 ____D C:\Program Files (x86)\Ubisoft 2013-12-06 19:31 - 2013-08-30 16:37 - 00000000 ____D C:\ProgramData\Origin 2013-12-06 18:50 - 2013-12-06 18:50 - 00000000 ____D C:\Users\PC\Documents\EA Games 2013-12-06 18:50 - 2013-12-06 18:50 - 00000000 ____D C:\Users\PC\AppData\Local\EA Games 2013-12-06 18:50 - 2013-08-30 16:38 - 00000000 ____D C:\Users\PC\AppData\Local\Origin 2013-12-06 18:50 - 2013-08-30 16:37 - 00000000 ____D C:\ProgramData\Electronic Arts 2013-12-06 18:48 - 2013-12-06 18:48 - 00001208 _____ C:\Users\Public\Desktop\Dead Space 3.lnk 2013-12-06 18:31 - 2013-12-06 18:31 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-12-02 06:02 - 2013-08-14 10:37 - 00000000 ____D C:\Users\PC\Documents\My Games 2013-11-30 20:35 - 2013-11-30 20:35 - 03807984 _____ C:\Users\PC\Downloads\State of Decay Trainer +8 for update #8.zip 2013-11-30 20:32 - 2013-11-30 20:32 - 03882039 _____ C:\Users\PC\Downloads\State of Decay Trainer +4 for Beta Release.rar 2013-11-30 19:10 - 2013-11-30 18:45 - 00000000 ____D C:\Windows\System32\Tasks\ASUS 2013-11-30 19:10 - 2013-11-30 18:45 - 00000000 ____D C:\Program Files (x86)\ASUS 2013-11-30 19:10 - 2013-08-12 15:00 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-11-30 18:55 - 2013-11-30 18:55 - 00000000 ____D C:\Windows\AsDmiHtm 2013-11-30 18:55 - 2013-08-12 14:58 - 00036266 _____ C:\Windows\Ascd_tmp.ini 2013-11-30 18:55 - 2013-08-12 14:58 - 00001769 _____ C:\Windows\Language_trs.ini 2013-11-29 06:14 - 2013-11-29 06:14 - 00001837 _____ C:\Users\PC\Desktop\sasdaas.ggb 2013-11-29 05:54 - 2013-11-29 05:54 - 00001855 _____ C:\Users\Public\Desktop\GeoGebra.lnk 2013-11-29 05:54 - 2013-11-29 05:54 - 00000000 ____D C:\Users\PC\AppData\Roaming\GeoGebra 4.4 2013-11-29 05:54 - 2013-11-29 05:54 - 00000000 ____D C:\Program Files (x86)\GeoGebra 4.4 2013-11-29 05:54 - 2013-11-29 05:53 - 41822200 _____ (International GeoGebra Institute) C:\Users\PC\Downloads\GeoGebra-Windows-Installer-4-3-78-0.exe 2013-11-29 05:52 - 2013-08-13 16:26 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-11-29 05:52 - 2013-08-13 16:26 - 00000000 ____D C:\ProgramData\Skype 2013-11-28 12:40 - 2013-11-28 12:40 - 00000000 ____D C:\Users\PC\Documents\Telltale Games 2013-11-26 17:21 - 2013-08-13 19:13 - 00000000 ____D C:\Users\PC\Desktop\Filip 2013-11-26 12:54 - 2013-12-15 14:41 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-26 11:19 - 2013-12-15 14:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-26 11:18 - 2013-12-15 14:41 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-26 11:11 - 2013-12-15 14:41 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-26 10:48 - 2013-12-15 14:41 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-26 10:46 - 2013-12-15 14:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-26 10:41 - 2013-12-15 14:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-26 10:29 - 2013-12-15 14:41 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-26 10:27 - 2013-12-15 14:41 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-26 10:23 - 2013-12-15 14:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-26 10:21 - 2013-12-15 14:41 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-26 10:18 - 2013-12-15 14:41 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-26 10:18 - 2013-12-15 14:41 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-26 10:16 - 2013-12-15 14:41 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-26 09:57 - 2013-12-15 14:41 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-26 09:38 - 2013-12-15 14:41 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-26 09:38 - 2013-12-15 14:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-26 09:35 - 2013-12-15 14:41 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-26 09:32 - 2013-12-15 14:41 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-26 09:28 - 2013-12-15 14:41 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-26 09:16 - 2013-12-15 14:41 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-26 09:02 - 2013-12-15 14:41 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-26 08:48 - 2013-12-15 14:41 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-26 08:32 - 2013-12-15 14:41 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-26 08:26 - 2013-12-15 14:41 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-26 08:07 - 2013-12-15 14:41 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-26 07:40 - 2013-12-15 14:41 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-26 07:34 - 2013-12-15 14:41 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-26 07:34 - 2013-12-15 14:41 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-26 07:33 - 2013-12-15 14:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-26 07:27 - 2013-12-15 14:41 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-25 18:45 - 2013-08-12 15:29 - 00000000 ____D C:\Users\PC\AppData\Local\Adobe 2013-11-23 19:26 - 2013-12-11 22:09 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-11-23 18:47 - 2013-12-11 22:09 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-11-23 11:53 - 2013-11-23 11:53 - 00000796 _____ C:\Users\PC\Desktop\Assassin's Creed Revelations.lnk 2013-11-22 23:03 - 2013-11-22 23:02 - 00007856 _____ C:\Users\PC\Desktop\Ubisoft_-_Auftragsbestätigung_Bestellung_Nr_24988928024.eml 2013-11-22 23:02 - 2013-11-22 23:01 - 00025600 ___SH C:\Users\PC\Documents\Thumbs.db 2013-11-22 20:38 - 2013-11-22 20:24 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames 2013-11-22 20:25 - 2013-11-22 20:25 - 00000000 ____D C:\Users\PC\AppData\Local\Aeria Games 2013-11-22 20:24 - 2013-11-22 20:24 - 00000000 ____D C:\ProgramData\Aeria Games 2013-11-22 20:21 - 2013-11-22 20:21 - 00000000 ____D C:\Users\PC\AppData\Roaming\Aeria Games & Entertainment 2013-11-22 20:21 - 2013-11-22 19:58 - 00000000 ____D C:\AeriaGames 2013-11-22 19:58 - 2013-11-22 19:58 - 00558104 _____ (Aeria Games & Entertainment) C:\Users\PC\Downloads\scarletblade_de_downloader.exe 2013-11-21 18:12 - 2013-11-21 18:12 - 00972190 _____ C:\Users\PC\Desktop\msinfo32.nfo 2013-11-21 18:11 - 2013-11-21 18:11 - 00027887 _____ C:\Users\PC\Desktop\DxDiag.txt 2013-11-21 10:21 - 2009-07-14 06:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-11-21 07:54 - 2013-11-30 19:29 - 02097152 _____ C:\Users\PC\Desktop\M5A78L-M-USB3-ASUS-1801.ROM 2013-11-20 16:05 - 2013-08-12 15:05 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-11-20 16:01 - 2013-08-12 15:05 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-11-20 13:15 - 2013-11-20 13:15 - 00000000 ____D C:\Users\PC\AppData\Roaming\Unity 2013-11-20 13:12 - 2013-11-20 13:12 - 00000000 ____D C:\Users\PC\AppData\Local\Unity 2013-11-19 15:52 - 2013-11-19 09:58 - 00000000 ____D C:\Program Files (x86)\findAdeal 2013-11-19 13:54 - 2013-10-11 16:45 - 00001912 _____ C:\Windows\epplauncher.mif 2013-11-19 13:54 - 2013-10-11 16:45 - 00000000 ____D C:\Program Files\Microsoft Security Client 2013-11-19 13:54 - 2013-10-11 16:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client 2013-11-19 11:21 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-11-17 17:58 - 2013-08-28 13:11 - 00000000 ____D C:\ProgramData\Ubisoft 2013-11-17 17:56 - 2013-11-17 17:56 - 00000796 _____ C:\Users\PC\Desktop\Assassin's Creed Brotherhood.lnk ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-13 20:20 ==================== End Of Log ============================ Addition: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-12-2013 01 Ran by PC at 2013-12-15 17:14:35 Running from C:\Users\PC\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} ==================== Installed Programs ====================== Adobe Flash Player 11 ActiveX (x32 Version: 11.8.800.175) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170) Adobe Reader XI (11.0.05) - Deutsch (x32 Version: 11.0.05) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (x32) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (x32) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (x32) Asmedia ASM104x USB 3.0 Host Controller Driver (x32 Version: 1.14.3.0) Assassin's Creed Brotherhood (x32 Version: 1.03) Assassin's Creed IV Black Flag (x32) Assassin's Creed Revelations 1.03 (x32 Version: 1.03) Assassin's Creed(R) III v1.06 (x32 Version: 1.06) ASUSUpdate (x32 Version: 7.18.03) ATI Catalyst Install Manager (Version: 3.0.762.0) Call of Duty: Black Ops II - Multiplayer (x32) Call of Duty: Black Ops II - Zombies (x32) Call of Duty: Ghosts - Multiplayer (x32) CCleaner (Version: 4.05) Cheat Engine 6.3 (x32) Dead Space™ 3 (x32 Version: 1.0.0.0) Die Schlacht um Mittelerde™ II (x32) EPSON BX630FW Series Printer Uninstall EPU-4 Engine (x32 Version: 1.03.03) Far Cry® 3 (x32) GeForce Experience NvStream Client Components (Version: 1.6.28) GeoGebra 4.4 (x32 Version: 4.3.78.0) Hitman: Absolution (x32) Java 7 Update 45 (x32 Version: 7.0.450) Java Auto Updater (x32 Version: 2.1.9.8) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300) Metro: Last Light (x32) Microsoft .NET Framework 1.1 (x32 Version: 1.1.4322) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft Office 2007 Service Pack 3 (SP3) (x32) Microsoft Office Access MUI (Polish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Excel MUI (Polish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003) Microsoft Office Groove MUI (Polish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office InfoPath MUI (Polish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000) Microsoft Office OneNote MUI (Polish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Outlook MUI (Polish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (Polish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Polish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proofing (Polish) 2007 (x32 Version: 12.0.4518.1020) Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32) Microsoft Office Publisher MUI (Polish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared 64-bit MUI (Polish) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared MUI (Polish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (Polish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Security Client (Version: 4.4.0304.0) Microsoft Security Essentials (Version: 4.4.304.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610) Microsoft Xbox 360 Accessories 1.2 (Version: 1.20.146.0) Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0) Mozilla Maintenance Service (x32 Version: 26.0) NVIDIA 3D Vision Controller-Treiber 331.82 (Version: 331.82) NVIDIA 3D Vision Treiber 331.82 (Version: 331.82) NVIDIA GeForce Experience 1.7.1 (Version: 1.7.1) NVIDIA Grafiktreiber 331.82 (Version: 331.82) NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4) NVIDIA Install Application (Version: 2.1002.140.952) NVIDIA LED Visualizer 1.0 (Version: 1.0) NVIDIA PhysX (x32 Version: 9.13.0725) NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725) NVIDIA ShadowPlay 9.3.21 (Version: 9.3.21) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3182) NVIDIA Systemsteuerung 331.82 (Version: 331.82) NVIDIA Update 9.3.21 (Version: 9.3.21) NVIDIA Update Components (Version: 9.3.21) NVIDIA Virtual Audio 1.2.9 (Version: 1.2.9) Origin (x32 Version: 9.2.1.4399) oZone3D.Net FurMark v1.8.2 (x32) Platform (x32 Version: 1.39) PunkBuster Services (x32 Version: 0.991) Realtek Ethernet Controller Driver (x32 Version: 7.52.203.2012) SHIELD Streaming (Version: 1.6.53) Skype™ 6.11 (x32 Version: 6.11.102) State of Decay (x32) Steam (x32 Version: 1.0.0.0) TeamViewer 8 (x32 Version: 8.0.20768) TechPowerUp GPU-Z (x32) The Elder Scrolls V: Skyrim (x32) The Walking Dead (x32) Total War: ROME II (x32) Unity Web Player (HKCU Version: ) Update for 2007 Microsoft Office System (KB967642) (x32) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (x32) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2850085) 32-Bit Edition (x32) Uplay (x32 Version: 2.0) VIA Plattform-Geräte-Manager (x32 Version: 1.39) Visual Studio 2012 x64 Redistributables (Version: 14.0.0.1) Visual Studio 2012 x86 Redistributables (x32 Version: 14.0.0.1) WinRAR 4.20 (64-Bit) (Version: 4.20.0) ==================== Restore Points ========================= 01-12-2013 14:44:53 Windows Update 02-12-2013 04:59:48 DirectX wurde installiert 04-12-2013 19:20:26 Windows Update 06-12-2013 17:47:27 DirectX wurde installiert 08-12-2013 19:11:56 Windows Update 09-12-2013 17:33:09 DirectX wurde installiert 11-12-2013 19:18:49 Windows Update 11-12-2013 21:14:47 Windows Update 13-12-2013 13:06:56 Uniblue SpeedUpMyPC installation 14-12-2013 22:31:15 Windows Update 15-12-2013 13:41:01 Windows Update 15-12-2013 14:37:14 Installed SpyHunter 15-12-2013 14:59:22 IObit Uninstaller restore point 15-12-2013 14:59:45 IObit Uninstaller restore point 15-12-2013 15:28:08 Removed SpyHunter 15-12-2013 15:29:03 Removed SpyHunter ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0BB85C22-6C7C-4243-87B1-38EEFA1F82C1} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.5.0.67\SymErr.exe Task: {0D3F96C8-EA0A-4A8F-B563-7457CCD56316} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-13] (Adobe Systems Incorporated) Task: {0E0F06A8-434D-412D-9DD5-1B17522A750E} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.5.0.67\SymErr.exe Task: {2C135B1F-8DF9-43EF-B850-33E29278C523} - System32\Tasks\ASUS\ASUS Update Checker => C:\Program Files (x86)\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe [2009-12-28] (ASUSTeK Computer Inc.) Task: {34A8CBB8-73B9-4C78-A3F7-8EDBCE27E25E} - System32\Tasks\ASUS\ASUS SIX Engine => C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe [2012-01-03] (ASUSTek Computer Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2013-12-10 21:23 - 2013-12-10 21:24 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2013-12-13 14:04 - 2013-12-13 14:04 - 16242056 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\PC\Desktop\Ubisoft_-_Auftragsbestätigung_Bestellung_Nr_24988928024.eml:OECustomProperty ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/15/2013 04:55:29 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (12/15/2013 04:55:25 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (12/15/2013 04:55:25 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (12/15/2013 04:54:36 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (12/15/2013 04:50:48 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/15/2013 04:49:05 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (12/15/2013 04:49:05 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (12/15/2013 04:49:05 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcNvVAD endpoint registration failed [0] System errors: ============= Error: (12/15/2013 05:11:31 PM) (Source: Service Control Manager) (User: ) Description: Dienst "NVIDIA Stereoscopic 3D Driver Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (12/15/2013 04:49:01 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "SpyHunter 4 Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Microsoft Office Sessions: ========================= ==================== Memory info =========================== Percentage of memory in use: 20% Total physical RAM: 8174.12 MB Available physical RAM: 6504.61 MB Total Pagefile: 16346.41 MB Available Pagefile: 14599.97 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.76 GB) (Free:191.53 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive e: (Volume) (Fixed) (Total:931.51 GB) (Free:931.38 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: AD0405F5) Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 04AD13AE) Partition 1: (Active) - (Size=466 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
16.12.2013, 10:02 | #4 |
/// the machine /// TB-Ausbilder | Internet Trojaner (rvzr-a.akamaihd.net) Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
16.12.2013, 16:01 | #5 |
| Internet Trojaner (rvzr-a.akamaihd.net) MAM Log: Code:
ATTFilter Malwarebytes Anti-Malware (Test) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.12.15.03 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16476 PC :: PC-PC [limitiert] Schutz: Aktiviert 15.12.2013 16:02:13 mbam-log-2013-12-15 (16-02-13).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|E:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 370276 Laufzeit: 21 Minute(n), 34 Sekunde(n) Infizierte Speicherprozesse: 2 C:\Program Files (x86)\Storimbo\updateStorimbo.exe (PUP.Optional.Storimbo.A) -> 1892 -> Löschen bei Neustart. C:\Program Files (x86)\Storimbo\bin\utilStorimbo.exe (PUP.Optional.Storimbo.A) -> 1972 -> Löschen bei Neustart. Infizierte Speichermodule: 1 C:\Program Files (x86)\Storimbo\bin\sqlite3.dll (PUP.Optional.Storimbo.A) -> Löschen bei Neustart. Infizierte Registrierungsschlüssel: 21 HKLM\SYSTEM\CurrentControlSet\Services\Update Storimbo (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SYSTEM\CurrentControlSet\Services\Util Storimbo (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{ddac750c-59da-4bb6-9ee7-ead55ebe0b64} (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\TypeLib\{c8cbf3bf-e2b2-4840-a263-b8d0b9c95aef} (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Interface\{CF32B76A-BA14-420E-B342-4B2753834861} (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DDAC750C-59DA-4BB6-9EE7-EAD55EBE0B64} (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{11111111-1111-1111-1111-110311121155} (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\TypeLib\{44444444-4444-4444-4444-440344124455} (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Interface\{55555555-5555-5555-5555-550355125555} (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CrossriderApp0031255.BHO.1 (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311121155} (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} (PUP.Optional.BrowseFox.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CrossriderApp0031255.BHO (PUP.Optional.CrossRider.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CrossriderApp0031255.Sandbox (PUP.Optional.CrossRider.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CrossriderApp0031255.Sandbox.1 (PUP.Optional.CrossRider.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\Software\Storimbo (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\Software\Conduit\FF (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\Software\InstalledBrowserExtensions\Plus HD (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Plus-HD-1.2 (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\Software\Storimbo (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Plus-HD-1.2 (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 4 C:\Program Files (x86)\Storimbo (PUP.Optional.Storimbo.A) -> Löschen bei Neustart. C:\Program Files (x86)\Storimbo\bin (PUP.Optional.Storimbo.A) -> Löschen bei Neustart. C:\Program Files (x86)\Storimbo\bin\plugins (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2 (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateien: 42 C:\Program Files (x86)\Storimbo\updateStorimbo.exe (PUP.Optional.Storimbo.A) -> Löschen bei Neustart. C:\Program Files (x86)\Storimbo\bin\utilStorimbo.exe (PUP.Optional.Storimbo.A) -> Löschen bei Neustart. C:\Program Files (x86)\Storimbo\StorimboBHO.dll (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-bho.dll (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-bg.exe (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-bho64.dll (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-buttonutil.exe (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-buttonutil64.exe (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-chromeinstaller.exe (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-codedownloader.exe (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-enabler.exe (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-firefoxinstaller.exe (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-updater.exe (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\PC\Desktop\dirupd2+14tr.exe (PUP.HackTool.Agent) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\PC\Desktop\Filip\MIF\Trainer\Dead Space 2 V1.0 +3 Trainer.exe (HackTool.GamesCheat.Gen) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\PC\Desktop\Filip\MIF\Trainer\Stronghold 2 v1.41 Trainer +4.exe (HackTool.GamesCheat.Gen) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\PC\Downloads\Assassins_Creed_Revelations_DLC.exe (PUP.Optional.OneClickDownloader.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\PC\Downloads\Java.exe (PUP.Optional.BundleInstaller.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\PC\Downloads\OnlineWeatherSetup-bi3T3hb.exe (PUP.Optional.Somoto) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows\Tasks\Plus-HD-1.2-chromeinstaller.job (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows\Tasks\Plus-HD-1.2-codedownloader.job (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows\Tasks\Plus-HD-1.2-enabler.job (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows\Tasks\Plus-HD-1.2-firefoxinstaller.job (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows\Tasks\Plus-HD-1.2-updater.job (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Storimbo\Storimbo.ico (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Storimbo\StorimboUninstall.exe (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Storimbo\updateStorimbo.InstallState (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Storimbo\bin\sqlite3.dll (PUP.Optional.Storimbo.A) -> Löschen bei Neustart. C:\Program Files (x86)\Storimbo\bin\utilStorimbo.InstallState (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Storimbo\bin\plugins\Storimbo.FFUpdate.dll (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Storimbo\bin\plugins\Storimbo.GCUpdate.dll (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Storimbo\bin\plugins\Storimbo.IEUpdate.dll (PUP.Optional.Storimbo.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\31255.crx (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\31255.xpi (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\background.html (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Installer.log (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-buttonutil.dll (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-buttonutil64.dll (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-helper.exe (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2.ico (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\Uninstall.exe (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Plus-HD-1.2\utils.exe (PUP.Optional.PlusHD.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) Code:
ATTFilter # AdwCleaner v3.015 - Bericht erstellt am 16/12/2013 um 16:11:59 # Updated 10/12/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : PC - PC-PC # Gestartet von : C:\Users\PC\Desktop\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16428 -\\ Mozilla Firefox v26.0 (de) [ Datei : C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\z0skj7tx.default\prefs.js ] ************************* AdwCleaner[R0].txt - [786 octets] - [16/12/2013 16:11:16] AdwCleaner[S0].txt - [708 octets] - [16/12/2013 16:11:59] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [767 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.0.8 (11.05.2013:1) OS: Windows 7 Home Premium x64 Ran by PC on 16.12.2013 at 16:15:41,10 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ FireFox Emptied folder: C:\Users\PC\AppData\Roaming\mozilla\firefox\profiles\z0skj7tx.default\minidumps [157 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 16.12.2013 at 16:21:28,21 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter [IMG] Geändert von Tal (16.12.2013 um 16:26 Uhr) |
17.12.2013, 09:54 | #6 |
/// the machine /// TB-Ausbilder | Internet Trojaner (rvzr-a.akamaihd.net)ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ --> Internet Trojaner (rvzr-a.akamaihd.net) |
06.01.2014, 12:37 | #7 |
| Internet Trojaner (rvzr-a.akamaihd.net) Entschuldige das mein Post erst so spät erscheint. Aus privaten gründen hatte ich nämlich keine Zeit. ESET: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=dd8773fc15720d4086a68cf33e45a1fd # engine=16535 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-01-06 11:16:05 # local_time=2014-01-06 12:16:05 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5893 16776574 100 94 7526354 140636815 0 0 # scanned=159788 # found=1 # cleaned=0 # scan_time=6737 sh=CEF67BC81E05C6CF1C896DB39203CC08FC93A137 ft=0 fh=0000000000000000 vn="a variant of Win32/Packed.VMProtect.ABD trojan" ac=I fn="C:\Users\PC\Downloads\StateOD+9Tr-LNG_UD9.rar" Code:
ATTFilter Results of screen317's Security Check version 0.99.78 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Microsoft Security Essentials Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Call of Duty: Ghosts - Multiplayer Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 45 Adobe Flash Player 11.9.900.170 Adobe Reader XI Mozilla Firefox (26.0) ````````Process Check: objlist.exe by Laurent```````` Microsoft Security Essentials MSMpEng.exe Microsoft Security Essentials msseces.exe Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Malwarebytes' Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-01-2014 Ran by PC (administrator) on PC-PC on 06-01-2014 12:36:41 Running from C:\Users\PC\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1823656 2013-12-11] (Valve Corporation) MountPoints2: {5f9e8a0b-3700-11e3-a6df-3085a9b2f015} - D:\LaunchU3.exe -a ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xD600BBEC7097CE01 BHO: Plus-HD-1.2 - {11111111-1111-1111-1111-110311121155} - C:\Program Files (x86)\Plus-HD-1.2\Plus-HD-1.2-bho64.dll No File BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\z0skj7tx.default FF SearchEngineOrder.1: Google FF SelectedSearchEngine: Google FF Homepage: hxxp://www.google.de FF Keyword.URL: hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\PC\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Youtube MP3 Podcaster - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\z0skj7tx.default\Extensions\youtubemp3podcaster@jeremy.d.gregorio.com ==================== Services (Whitelisted) ================= R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151744 2013-12-15] (IObit) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation) R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-12-11] () R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2011-11-11] (VIA Technologies, Inc.) S2 SpyHunter 4 Service; C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE [x] ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-23] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [13368 2009-07-06] () S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2012-06-22] () R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-17] () R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-06 12:36 - 2014-01-06 12:36 - 00008844 _____ C:\Users\PC\Desktop\FRST.txt 2014-01-06 12:36 - 2014-01-06 12:36 - 00000000 ____D C:\Users\PC\Desktop\FRST-OlderVersion 2014-01-06 12:35 - 2014-01-06 12:35 - 00987410 _____ C:\Users\PC\Desktop\SecurityCheck.exe 2014-01-06 10:22 - 2014-01-06 10:22 - 02347384 _____ (ESET) C:\Users\PC\Desktop\esetsmartinstaller_enu.exe 2014-01-03 17:17 - 2014-01-03 17:17 - 04233064 _____ (ASCOMP Software GmbH ) C:\Users\PC\Desktop\sEraser_4.201.exe 2014-01-03 17:17 - 2014-01-03 17:17 - 00002165 _____ C:\Users\Public\Desktop\Secure Eraser.lnk 2014-01-03 17:17 - 2014-01-03 17:17 - 00000000 ____D C:\Users\PC\AppData\Roaming\ASCOMP Software 2014-01-03 17:17 - 2014-01-03 17:17 - 00000000 ____D C:\Program Files (x86)\ASCOMP Software 2014-01-03 10:00 - 2014-01-03 10:00 - 00000000 ____D C:\Crash 2014-01-03 09:46 - 2014-01-03 09:46 - 00000000 ____D C:\Users\PC\AppData\Local\SCE 2014-01-02 23:06 - 2014-01-02 23:06 - 00053717 _____ C:\Users\PC\Desktop\USAIPDEMO.pbk 2014-01-02 20:04 - 2014-01-02 20:04 - 00000000 ____D C:\Users\PC\AppData\Local\wb games 2014-01-01 16:30 - 2014-01-01 16:30 - 02143832 _____ C:\Users\PC\Desktop\instsf449.exe 2014-01-01 16:30 - 2014-01-01 16:30 - 00001011 _____ C:\Users\PC\Desktop\SpeedFan.lnk 2013-12-27 16:39 - 2013-12-27 16:39 - 03471240 _____ C:\Users\PC\Downloads\StateOD+9Tr-LNG_UD9.rar 2013-12-26 21:10 - 2013-12-26 21:10 - 03807984 _____ C:\Users\PC\Desktop\State of Decay Trainer +8 for update #8(1).zip 2013-12-25 12:35 - 2013-12-25 12:35 - 00000000 ____D C:\Users\PC\Documents\Ubisoft 2013-12-21 16:19 - 2013-12-21 16:19 - 00835601 _____ C:\Users\PC\Desktop\d2a536_4e9f41748794f.zip 2013-12-21 12:24 - 2013-12-21 12:24 - 00000000 ____D C:\Users\PC\AppData\Local\Electronic Arts 2013-12-21 12:13 - 2013-12-21 12:13 - 00002069 _____ C:\Users\Public\Desktop\Dead Space™.lnk 2013-12-21 11:47 - 2013-12-21 11:47 - 00000000 ____D C:\Users\PC\Documents\Electronic Arts 2013-12-21 11:42 - 2014-01-03 11:41 - 00035518 _____ C:\Windows\DirectX.log 2013-12-18 20:55 - 2013-11-14 12:56 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-12-18 20:55 - 2013-11-14 12:56 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00357152 _____ C:\Windows\system32\NvIFROpenGL.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-12-18 20:55 - 2013-11-14 12:56 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-12-18 20:51 - 2013-12-18 20:54 - 255488144 _____ (NVIDIA Corporation) C:\Users\PC\Downloads\331.82-desktop-win8-win7-winvista-64bit-international-whql.exe 2013-12-17 20:50 - 2013-11-23 20:26 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433193.dll 2013-12-17 20:50 - 2013-11-23 20:26 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433193.dll 2013-12-17 20:49 - 2013-12-17 20:49 - 00000000 ____D C:\NVIDIA 2013-12-17 20:33 - 2013-12-05 09:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-12-17 20:33 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-12-17 14:37 - 2014-01-06 09:16 - 00000000 ____D C:\Users\PC\AppData\Local\DayZ 2013-12-17 14:37 - 2013-12-17 14:37 - 00000000 ____D C:\Users\PC\Documents\DayZ 2013-12-16 16:15 - 2013-12-16 16:15 - 01034531 _____ (Thisisu) C:\Users\PC\Desktop\JRT.exe 2013-12-16 16:11 - 2013-12-16 16:12 - 00000000 ____D C:\AdwCleaner 2013-12-16 16:01 - 2013-12-16 16:01 - 01226750 _____ C:\Users\PC\Desktop\adwcleaner.exe 2013-12-15 17:13 - 2014-01-06 12:36 - 01931762 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe 2013-12-15 17:13 - 2014-01-06 12:36 - 00000000 ____D C:\FRST 2013-12-15 17:12 - 2013-12-15 17:12 - 00000416 _____ C:\DelFix.txt 2013-12-15 17:06 - 2013-12-15 17:06 - 00001113 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-12-15 17:06 - 2013-12-15 17:06 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-12-15 17:06 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-12-15 16:55 - 2013-12-15 16:55 - 00000000 ____D C:\Program Files (x86)\ESET 2013-12-15 16:49 - 2014-01-06 10:20 - 00013171 _____ C:\Windows\setupact.log 2013-12-15 16:49 - 2013-12-15 16:49 - 00000000 _____ C:\Windows\setuperr.log 2013-12-15 16:36 - 2013-12-15 16:36 - 00000000 ____D C:\Windows\ERUNT 2013-12-15 16:01 - 2013-12-15 16:01 - 00000000 ____D C:\Users\PC\AppData\Roaming\Malwarebytes 2013-12-15 16:01 - 2013-12-15 16:01 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-12-15 15:58 - 2013-12-30 15:20 - 00000000 ____D C:\ProgramData\ProductData 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\Users\PC\AppData\Roaming\IObit 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\ProgramData\IObit 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\Program Files (x86)\IObit 2013-12-15 15:37 - 2013-12-15 15:37 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-12-15 15:37 - 2013-12-15 15:37 - 00000000 _____ C:\autoexec.bat 2013-12-15 15:37 - 2012-06-22 11:01 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys 2013-12-15 14:41 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-15 14:41 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-15 14:41 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-15 14:41 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-15 14:41 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-15 14:41 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-15 14:41 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-15 14:41 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-15 14:41 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-15 14:41 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-15 14:41 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-15 14:41 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-15 14:41 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-15 14:41 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-15 14:41 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-15 14:41 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-15 14:41 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-15 14:41 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-15 14:41 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-15 14:41 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-15 14:41 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-15 14:41 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-15 14:41 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-15 14:41 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-15 14:41 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-15 14:41 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-15 14:41 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-15 14:41 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-15 14:41 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-15 14:41 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-15 14:41 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-14 23:36 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-14 23:32 - 2013-12-14 23:32 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-14 23:32 - 2013-12-14 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-14 23:32 - 2013-12-14 23:32 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-14 23:32 - 2013-12-14 23:32 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-14 23:32 - 2013-12-14 23:32 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-14 23:32 - 2013-12-14 23:32 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-14 23:32 - 2013-12-14 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-13 14:08 - 2013-12-13 14:08 - 00536133 _____ C:\Users\PC\Desktop\Dead.Space.3.v1.0-v1.0.0.1.Plus.9.Trainer-FLiNG.rar 2013-12-13 14:05 - 2013-12-13 14:05 - 00000000 ____D C:\Users\PC\Documents\FLiNGTrainer 2013-12-11 22:17 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-11 22:17 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-11 22:17 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-11 22:17 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-11 22:09 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-11 22:09 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-11 22:09 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-11 22:09 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-11 22:09 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-11 22:09 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-11 22:09 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-11 22:09 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-11 22:09 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-11 22:09 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-11 22:09 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-11 22:09 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-11 22:09 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-11 22:09 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-11 22:09 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-11 22:09 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-11 22:09 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-11 22:09 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-11 22:09 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-10 21:23 - 2013-12-10 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-09 20:59 - 2013-12-09 20:59 - 07600226 _____ C:\Users\PC\Downloads\ACBF_THEME.ZIP 2013-12-09 18:41 - 2013-12-11 22:04 - 00000000 ____D C:\Users\PC\Documents\Assassin's Creed IV Black Flag 2013-12-09 18:30 - 2013-12-09 18:30 - 00000141 _____ C:\Users\PC\Desktop\Assassin's Creed IV Black Flag.url 2013-12-09 18:06 - 2013-12-09 18:06 - 13486329 _____ C:\Users\PC\Downloads\FC3_THEME.ZIP ==================== One Month Modified Files and Folders ======= 2014-01-06 12:36 - 2014-01-06 12:36 - 00008844 _____ C:\Users\PC\Desktop\FRST.txt 2014-01-06 12:36 - 2014-01-06 12:36 - 00000000 ____D C:\Users\PC\Desktop\FRST-OlderVersion 2014-01-06 12:36 - 2013-12-15 17:13 - 01931762 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe 2014-01-06 12:36 - 2013-12-15 17:13 - 00000000 ____D C:\FRST 2014-01-06 12:36 - 2013-08-13 16:26 - 00000000 ____D C:\Users\PC\AppData\Roaming\Skype 2014-01-06 12:35 - 2014-01-06 12:35 - 00987410 _____ C:\Users\PC\Desktop\SecurityCheck.exe 2014-01-06 11:49 - 2013-08-13 16:30 - 00000000 ____D C:\Program Files (x86)\Steam 2014-01-06 11:43 - 2013-08-12 14:57 - 01749941 _____ C:\Windows\WindowsUpdate.log 2014-01-06 10:27 - 2009-07-14 05:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-06 10:27 - 2009-07-14 05:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-06 10:26 - 2011-04-12 08:43 - 00707706 _____ C:\Windows\system32\perfh007.dat 2014-01-06 10:26 - 2011-04-12 08:43 - 00153192 _____ C:\Windows\system32\perfc007.dat 2014-01-06 10:26 - 2009-07-14 06:13 - 01643558 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-06 10:22 - 2014-01-06 10:22 - 02347384 _____ (ESET) C:\Users\PC\Desktop\esetsmartinstaller_enu.exe 2014-01-06 10:20 - 2013-12-15 16:49 - 00013171 _____ C:\Windows\setupact.log 2014-01-06 10:20 - 2013-08-12 15:06 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-06 10:20 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-06 09:16 - 2013-12-17 14:37 - 00000000 ____D C:\Users\PC\AppData\Local\DayZ 2014-01-05 20:10 - 2013-08-30 16:37 - 00000000 ____D C:\Program Files (x86)\Origin 2014-01-03 17:17 - 2014-01-03 17:17 - 04233064 _____ (ASCOMP Software GmbH ) C:\Users\PC\Desktop\sEraser_4.201.exe 2014-01-03 17:17 - 2014-01-03 17:17 - 00002165 _____ C:\Users\Public\Desktop\Secure Eraser.lnk 2014-01-03 17:17 - 2014-01-03 17:17 - 00000000 ____D C:\Users\PC\AppData\Roaming\ASCOMP Software 2014-01-03 17:17 - 2014-01-03 17:17 - 00000000 ____D C:\Program Files (x86)\ASCOMP Software 2014-01-03 11:41 - 2013-12-21 11:42 - 00035518 _____ C:\Windows\DirectX.log 2014-01-03 11:40 - 2013-08-27 09:49 - 00000000 ____D C:\Users\PC\AppData\Local\CrashDumps 2014-01-03 10:00 - 2014-01-03 10:00 - 00000000 ____D C:\Crash 2014-01-03 09:46 - 2014-01-03 09:46 - 00000000 ____D C:\Users\PC\AppData\Local\SCE 2014-01-02 23:06 - 2014-01-02 23:06 - 00053717 _____ C:\Users\PC\Desktop\USAIPDEMO.pbk 2014-01-02 20:11 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2014-01-02 20:04 - 2014-01-02 20:04 - 00000000 ____D C:\Users\PC\AppData\Local\wb games 2014-01-01 16:31 - 2013-11-06 17:30 - 00000000 ____D C:\Program Files (x86)\SpeedFan 2014-01-01 16:30 - 2014-01-01 16:30 - 02143832 _____ C:\Users\PC\Desktop\instsf449.exe 2014-01-01 16:30 - 2014-01-01 16:30 - 00001011 _____ C:\Users\PC\Desktop\SpeedFan.lnk 2014-01-01 16:30 - 2013-11-06 17:30 - 00000045 _____ C:\Windows\SysWOW64\initdebug.nfo 2013-12-30 15:20 - 2013-12-15 15:58 - 00000000 ____D C:\ProgramData\ProductData 2013-12-29 09:48 - 2013-08-28 16:41 - 00281688 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-12-29 09:48 - 2013-08-27 13:38 - 00281688 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-12-28 14:16 - 2013-08-27 13:38 - 00281688 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-12-27 16:39 - 2013-12-27 16:39 - 03471240 _____ C:\Users\PC\Downloads\StateOD+9Tr-LNG_UD9.rar 2013-12-26 21:10 - 2013-12-26 21:10 - 03807984 _____ C:\Users\PC\Desktop\State of Decay Trainer +8 for update #8(1).zip 2013-12-25 12:35 - 2013-12-25 12:35 - 00000000 ____D C:\Users\PC\Documents\Ubisoft 2013-12-21 16:19 - 2013-12-21 16:19 - 00835601 _____ C:\Users\PC\Desktop\d2a536_4e9f41748794f.zip 2013-12-21 12:24 - 2013-12-21 12:24 - 00000000 ____D C:\Users\PC\AppData\Local\Electronic Arts 2013-12-21 12:13 - 2013-12-21 12:13 - 00002069 _____ C:\Users\Public\Desktop\Dead Space™.lnk 2013-12-21 11:47 - 2013-12-21 11:47 - 00000000 ____D C:\Users\PC\Documents\Electronic Arts 2013-12-21 11:47 - 2013-08-13 18:16 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-12-19 06:18 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-18 20:57 - 2013-08-12 15:05 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-12-18 20:54 - 2013-12-18 20:51 - 255488144 _____ (NVIDIA Corporation) C:\Users\PC\Downloads\331.82-desktop-win8-win7-winvista-64bit-international-whql.exe 2013-12-18 15:16 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-17 20:49 - 2013-12-17 20:49 - 00000000 ____D C:\NVIDIA 2013-12-17 19:48 - 2013-11-13 14:26 - 00000000 ____D C:\Users\PC\AppData\Local\NVIDIA Corporation 2013-12-17 19:48 - 2013-08-19 19:42 - 00000000 ____D C:\Users\PC\AppData\Local\NVIDIA 2013-12-17 19:48 - 2013-08-12 15:05 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-12-17 19:47 - 2013-08-12 15:05 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-12-17 14:37 - 2013-12-17 14:37 - 00000000 ____D C:\Users\PC\Documents\DayZ 2013-12-16 16:15 - 2013-12-16 16:15 - 01034531 _____ (Thisisu) C:\Users\PC\Desktop\JRT.exe 2013-12-16 16:12 - 2013-12-16 16:11 - 00000000 ____D C:\AdwCleaner 2013-12-16 16:01 - 2013-12-16 16:01 - 01226750 _____ C:\Users\PC\Desktop\adwcleaner.exe 2013-12-15 17:12 - 2013-12-15 17:12 - 00000416 _____ C:\DelFix.txt 2013-12-15 17:06 - 2013-12-15 17:06 - 00001113 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-12-15 17:06 - 2013-12-15 17:06 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-12-15 16:55 - 2013-12-15 16:55 - 00000000 ____D C:\Program Files (x86)\ESET 2013-12-15 16:49 - 2013-12-15 16:49 - 00000000 _____ C:\Windows\setuperr.log 2013-12-15 16:36 - 2013-12-15 16:36 - 00000000 ____D C:\Windows\ERUNT 2013-12-15 16:01 - 2013-12-15 16:01 - 00000000 ____D C:\Users\PC\AppData\Roaming\Malwarebytes 2013-12-15 16:01 - 2013-12-15 16:01 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\Users\PC\AppData\Roaming\IObit 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\ProgramData\IObit 2013-12-15 15:58 - 2013-12-15 15:58 - 00000000 ____D C:\Program Files (x86)\IObit 2013-12-15 15:37 - 2013-12-15 15:37 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-12-15 15:37 - 2013-12-15 15:37 - 00000000 _____ C:\autoexec.bat 2013-12-15 15:31 - 2013-10-01 19:27 - 00000000 ____D C:\Windows\Minidump 2013-12-15 15:31 - 2013-08-12 15:36 - 00000000 ____D C:\Windows\Panther 2013-12-15 07:48 - 2013-08-12 14:57 - 00001425 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-15 07:47 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-14 23:32 - 2013-12-14 23:32 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-14 23:32 - 2013-12-14 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-14 23:32 - 2013-12-14 23:32 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-14 23:32 - 2013-12-14 23:32 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-14 23:32 - 2013-12-14 23:32 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-14 23:32 - 2013-12-14 23:32 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-14 23:32 - 2013-12-14 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-14 23:32 - 2013-12-14 23:32 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-14 23:32 - 2013-12-14 23:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-14 23:32 - 2013-08-15 14:08 - 00000000 ____D C:\Windows\system32\MRT 2013-12-14 23:31 - 2013-08-12 16:14 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-13 19:48 - 2013-09-17 11:12 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-13 14:08 - 2013-12-13 14:08 - 00536133 _____ C:\Users\PC\Desktop\Dead.Space.3.v1.0-v1.0.0.1.Plus.9.Trainer-FLiNG.rar 2013-12-13 14:05 - 2013-12-13 14:05 - 00000000 ____D C:\Users\PC\Documents\FLiNGTrainer 2013-12-13 14:04 - 2013-09-17 11:12 - 00003824 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-13 14:04 - 2013-08-12 15:30 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-13 14:04 - 2013-08-12 15:30 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-12 13:34 - 2009-07-14 05:45 - 00413600 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-11 22:16 - 2013-09-07 17:28 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-12-11 22:04 - 2013-12-09 18:41 - 00000000 ____D C:\Users\PC\Documents\Assassin's Creed IV Black Flag 2013-12-11 22:01 - 2013-08-27 13:38 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-12-11 22:00 - 2013-08-28 16:41 - 00000000 ____D C:\Users\PC\AppData\Local\PunkBuster 2013-12-11 20:07 - 2013-08-12 16:34 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-12-10 21:24 - 2013-12-10 21:23 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-10 03:13 - 2013-10-28 15:38 - 01100248 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2013-12-10 03:13 - 2013-10-28 15:38 - 00982232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2013-12-09 20:59 - 2013-12-09 20:59 - 07600226 _____ C:\Users\PC\Downloads\ACBF_THEME.ZIP 2013-12-09 18:30 - 2013-12-09 18:30 - 00000141 _____ C:\Users\PC\Desktop\Assassin's Creed IV Black Flag.url 2013-12-09 18:30 - 2013-08-12 14:57 - 00000000 ____D C:\Users\PC 2013-12-09 18:06 - 2013-12-09 18:06 - 13486329 _____ C:\Users\PC\Downloads\FC3_THEME.ZIP 2013-12-09 17:54 - 2013-08-28 11:29 - 00000000 ____D C:\Program Files (x86)\Ubisoft Some content of TEMP: ==================== C:\Users\PC\AppData\Local\Temp\drm_dyndata_7380007.dll C:\Users\PC\AppData\Local\Temp\nv3DVStreaming.dll C:\Users\PC\AppData\Local\Temp\nvSCPAPI.dll C:\Users\PC\AppData\Local\Temp\nvStereoApiI.dll C:\Users\PC\AppData\Local\Temp\nvStInst.exe C:\Users\PC\AppData\Local\Temp\Quarantine.exe C:\Users\PC\AppData\Local\Temp\sfamcc00001.dll C:\Users\PC\AppData\Local\Temp\sfextra.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-02 19:46 ==================== End Of Log ============================ Vielen Dank für die Hilfe. Und nochmals Entschuldigung für die lange wartezeit. |
07.01.2014, 09:41 | #8 |
/// the machine /// TB-Ausbilder | Internet Trojaner (rvzr-a.akamaihd.net) Kein Problem Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] C:\Program Files\Enigma Software Group Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
09.01.2014, 14:01 | #9 |
| Internet Trojaner (rvzr-a.akamaihd.net) Fixlog: Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 08-01-2014 01 Ran by PC at 2014-01-09 13:59:05 Run:1 Running from C:\Users\PC\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] C:\Program Files\Enigma Software Group ***************** esgiguard => Service deleted successfully. C:\Program Files\Enigma Software Group => Moved successfully. ==== End of Fixlog ==== |
10.01.2014, 09:46 | #10 |
/// the machine /// TB-Ausbilder | Internet Trojaner (rvzr-a.akamaihd.net) Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |