|
Plagegeister aller Art und deren Bekämpfung: Offermosquito und Weiße Popups in ChromeWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
16.12.2013, 17:48 | #1 |
| Offermosquito und Weiße Popups in Chrome Hallo, liebe Forumgemeinschaft. Ich hoffe das ihr mir mit meinem Problem weiterhelfen könnt. Wie man dem Titel entnehmen kann hab ich ein Problem im Google Chrome Browser und zwar ist eine Erweiterung ,die ich nicht installiert habe, vorhanden und die nach dem entfernen sich selbst wieder installiert, diese ist OfferMosquito. Zudem hab ich oft das Problem, dass mein Browser Weiße Popup Fenster, ohne Inhalt, erstellt. Ich hoffe ihr könnt mir helfen diese Probleme zu beheben und ich bedanke mich schonmal im Vorraus für jegliche Art von Hilfe . |
16.12.2013, 18:51 | #2 |
/// the machine /// TB-Ausbilder | Offermosquito und Weiße Popups in Chrome hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
16.12.2013, 19:35 | #3 |
| Offermosquito und Weiße Popups in Chrome Erstmal schonmal ein Danke schruber :3
__________________Hier sind die Logfiles: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-12-2013 02 Ran by Fabio (administrator) on FABIO-PC on 16-12-2013 19:23:18 Running from C:\Users\Fabio\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Dropbox, Inc.) C:\Users\Fabio\AppData\Roaming\Dropbox\bin\Dropbox.exe (Hauppauge Computer Works, Inc.) C:\Program Files (x86)\Hauppauge\DeviceCentral\HcwDCTrayTool.exe (Hauppauge Computer Works, Inc.) C:\Program Files (x86)\Hauppauge\DeviceCentral\HcwDevCentralService.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe (Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe () C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe (Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDClock.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDPOP3.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDCountdown.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Launch LCore] - C:\Program Files\Logitech Gaming Software\LCore.exe [7468784 2013-02-28] (Logitech Inc.) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation) HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1823656 2013-12-11] (Valve Corporation) HKCU\...\Run: [SSync] - C:\Users\Fabio\AppData\Roaming\SSync\SSync.exe [36864 2013-04-09] () HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) HKCU\...\Run: [EADM] - C:\Program Files (x86)\Origin\Origin.exe [3551576 2013-11-22] (Electronic Arts) HKCU\...\Run: [OMESupervisor] - C:\Users\Fabio\AppData\Local\omesuperv.exe [2225152 2013-12-06] () HKCU\...\Run: [SandboxieControl] - C:\Program Files\Sandboxie\SbieCtrl.exe [759496 2013-10-16] (Sandboxie Holdings, LLC) HKCU\...\Run: [SCheck] - C:\Users\Fabio\AppData\Roaming\SCheck\SCheck.exe [36864 2013-04-09] () HKCU\...\Run: [Snoozer] - C:\Users\Fabio\AppData\Roaming\Snz\Snz.exe [1226901 2013-12-06] () HKCU\...\Run: [Intermediate] - C:\Users\Fabio\AppData\Roaming\Intermediate\Intermediate.exe [36864 2013-04-09] () HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe [54840 2007-05-08] (Hewlett-Packard) HKLM-x32\...\Run: [ArcSoft Connection Service] - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe HKLM-x32\...\Run: [Aeria Ignite] - "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent HKLM-x32\...\Run: [LWS] - C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [204136 2012-09-12] (Logitech Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3806544 2013-11-29] (LogMeIn Inc.) Startup: C:\Users\Fabio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Fabio\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Fabio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Hauppauge Device Properties.lnk ShortcutTarget: Hauppauge Device Properties.lnk -> C:\Program Files (x86)\Hauppauge\DeviceCentral\HcwDCTrayTool.exe (Hauppauge Computer Works, Inc.) Startup: C:\Users\Fabio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Produktregistrierung.lnk ShortcutTarget: Logitech . Produktregistrierung.lnk -> C:\Program Files (x86)\Logitech\Ereg\eReg.exe (Leader Technologies/Logitech) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x64BDD92DF1E2CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.fbdownloader.com/?channel=sfde203fbdgy21 SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://search.fbdownloader.com/search.php?channel=sfde203fbdgy21&q={searchTerms} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com.anonymize-me.de/?anonymto=687474703A2F2F7777772E62696E672E636F6D2F7365617263683F713D7B7365617263685465726D737D26723D363439&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&k=0 SearchScopes: HKCU - {5510C1BC-D425-400F-BEA4-DAA0D9DBBAA1} URL = hxxp://de.wikipedia.org.anonymize-me.de/?to=64652E77696B6970656469612E6F7267&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://search.fbdownloader.com/search.php?channel=sfde203fbdgy21&q={searchTerms} SearchScopes: HKCU - {AEFF98F7-6107-437E-8189-5BF176D79CD5} URL = hxxp://www.myvideo.de.anonymize-me.de/?to=6D79766964656F2E6465&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 SearchScopes: HKCU - {C21949E4-FF99-4721-9E7B-D79ACF72B247} URL = hxxp://search.ebay.de.anonymize-me.de/?to=656261792E6465&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 SearchScopes: HKCU - {DD54D9B5-6928-43EB-B164-321F13322A31} URL = hxxp://www.otto.de.anonymize-me.de/?to=6F74746F2E6465&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 SearchScopes: HKCU - {EED5A400-ED06-4F8D-ABB5-F562532DF3D9} URL = hxxp://www.amazon.de.anonymize-me.de/?to=616D617A6F6E2E6465&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 SearchScopes: HKCU - {F552348E-D10E-4CE7-9A06-DC56FE7FBB14} URL = hxxp://www.pricerunner.de.anonymize-me.de/?to=707269636572756E6E65722E6465&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE_64.dll No File BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files (x86)\Perfect World Entertainment\Arc\plugins\ArcPluginIE.dll (Perfect World Entertainment Inc) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: ChromeFrame BHO - {ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7} - C:\Program Files (x86)\Google\Chrome Frame\Application\31.0.1650.57\npchrome_frame.dll (Google Inc.) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) Handler: gcf - {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - No File Handler-x32: gcf - {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - C:\Program Files (x86)\Google\Chrome Frame\Application\31.0.1650.57\npchrome_frame.dll (Google Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default FF user.js: detected! => C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\user.js FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.40.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.40.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: LyricsContainer - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\Extensions\125 FF Extension: check4change-owner - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\Extensions\check4change-owner@mozdev.org.xpi FF Extension: om - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\Extensions\om@offermosquito.com.xpi FF Extension: snt - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\Extensions\snt@dotlabs.co.xpi FF Extension: Adblock Plus - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: No Name - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\profiles\extensions\extensions FF Extension: No Name - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\profiles\extensions\searchplugins FF Extension: No Name - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\profiles\extensions\prefs.js FF Extension: No Name - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\profiles\extensions\search.sqlite FF Extension: No Name - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\profiles\extensions\user.js FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKCU\...\Firefox\Extensions: [Lyrics@LyricsContainer.co] - C:\Program Files (x86)\LyricsContainer\125.xpi Chrome: ======= CHR HomePage: hxxp://search.fbdownloader.com/?channel=sfde203fbdgy21 CHR DefaultSearchKeyword: google.de CHR DefaultSearchProvider: Google CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultNewTabURL: {google:baseURL}_/chrome/newtab?{google:RLZ}{google:instantExtendedEnabledParameter}{google:ntpIsThemedParameter}ie={inputEncoding} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll (Apple Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll No File CHR Extension: (FlashFree) - C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Extensions\ebmieckllmmifjjbipnppinpiohpfahm\2.1.1_0 CHR Extension: (OfferMosquito) - C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbmdkmlcnbapgegninelmjbfibaghdmk\1.1.1_0 CHR Extension: (AdBlock) - C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.16_0 CHR Extension: (Linkclump) - C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfpjkncokllnfokkgpkobnkbkmelfefj\2.7.2_0 CHR Extension: (Google Wallet) - C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 ==================== Services (Whitelisted) ================= S3 ArcService; C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe [88424 2013-10-10] (Perfect World Entertainment Inc) R3 HcwDevCentralService; C:\Program Files (x86)\Hauppauge\DeviceCentral\HcwDevCentralService.exe [401232 2013-02-07] (Hauppauge Computer Works, Inc.) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15125280 2013-11-08] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-08-16] () R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [186056 2013-10-16] (Sandboxie Holdings, LLC) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.) S2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [x] ==================== Drivers (Whitelisted) ==================== R3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31968 2012-10-08] (Wondershare) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] () S3 hcwE5bda; C:\Windows\System32\drivers\hcwE5bda.sys [945136 2013-02-12] (Hauppauge Computer Work, Inc.) R3 LGSHidFilt; C:\Windows\System32\DRIVERS\LGSHidFilt.Sys [66800 2013-01-17] (Logitech Inc.) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] () R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [200552 2013-10-16] (Sandboxie Holdings, LLC) R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-06-21] (Anchorfree Inc.) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [x] S3 X6va013; \??\C:\Windows\SysWOW64\Drivers\X6va013 [x] S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-16 19:23 - 2013-12-16 19:24 - 00023458 _____ C:\Users\Fabio\Desktop\FRST.txt 2013-12-16 19:23 - 2013-12-16 19:23 - 00000000 ____D C:\FRST 2013-12-16 19:19 - 2013-12-16 19:19 - 01927940 _____ (Farbar) C:\Users\Fabio\Desktop\FRST64.exe 2013-12-16 16:46 - 2013-12-16 16:46 - 00003164 _____ C:\Windows\System32\Tasks\{E2A23A20-E507-4860-8710-B7354F8F385A} 2013-12-16 16:44 - 2013-12-16 16:47 - 00000000 ____D C:\Users\Fabio\Desktop\HiJackThis 2013-12-16 16:44 - 2013-12-16 16:44 - 00388608 _____ (Trend Micro Inc.) C:\Users\Fabio\Downloads\HijackThis.exe 2013-12-13 23:03 - 2013-12-13 23:03 - 00262144 ____N C:\Windows\Minidump\121313-26239-01.dmp 2013-12-12 23:34 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-12 23:34 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-12 23:34 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-12 23:34 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-12 23:33 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-12 23:33 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-12 23:33 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-12 23:33 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-12 23:33 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-12 23:33 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-12 23:33 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-12 23:33 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-12 23:33 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-12 23:33 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-12 23:33 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-12 23:33 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-12 23:33 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-12 23:33 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-12 23:33 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-12 23:33 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-12 23:33 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-12 23:33 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-12 23:33 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-12 23:33 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-12 23:33 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-12 23:33 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-12 23:33 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-12 23:33 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-12 23:33 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-12 23:32 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-12 23:32 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-12 23:32 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-12 23:32 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-12 23:32 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-12 23:32 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-12 18:27 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-12 18:27 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-12 18:27 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-12 18:27 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-12 18:27 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-12 18:27 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-12 18:27 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-12 18:26 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-12 18:26 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-12 18:26 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-12 18:26 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-12 18:26 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-12 18:26 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-12 18:26 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-12 18:26 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-12 18:26 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-12 18:26 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-12 18:26 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-12 18:26 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-12 12:03 - 2013-12-12 12:04 - 98633040 _____ (Apple Inc.) C:\Users\Fabio\Downloads\iTunesSetup.exe 2013-12-11 21:44 - 2013-12-14 00:37 - 00009446 _____ C:\Users\Fabio\Desktop\Gilde.ods 2013-12-10 20:01 - 2013-12-10 20:01 - 00003906 _____ C:\Windows\System32\Tasks\Wettbewerbsanmeldung und Prüfung 2013-12-08 13:57 - 2013-12-08 13:57 - 00000000 ____D C:\Users\Fabio\Desktop\Plattformer 2013-12-08 11:40 - 2013-12-08 11:40 - 00000894 _____ C:\Users\Fabio\AppData\Local\recently-used.xbel 2013-12-08 11:11 - 2013-12-08 11:12 - 00000000 ____D C:\Users\Fabio\Desktop\Fabis neues spiel 2013-12-08 00:38 - 2013-12-08 00:38 - 00000000 ____D C:\Users\Fabio\AppData\Local\Macromedia 2013-12-08 00:26 - 2013-12-08 00:26 - 00262144 ____N C:\Windows\Minidump\120813-24835-01.dmp 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\Documents\Shiner 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\Documents\Robot Entertainment 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\AppData\Local\Robot Entertainment 2013-12-07 22:50 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-12-07 22:50 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-12-07 22:50 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-12-07 22:50 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-12-07 22:50 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-12-07 22:50 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-12-07 22:28 - 2013-12-07 22:28 - 01108256 _____ ( ) C:\Users\Fabio\Application.exe 2013-12-07 22:20 - 2013-12-07 22:34 - 01556776 _____ C:\Users\Fabio\Application.mfa 2013-12-07 22:20 - 2013-12-07 22:20 - 01550241 _____ C:\Users\Fabio\Application.001 2013-12-07 20:03 - 2013-12-07 21:30 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Clickteam 2013-12-07 20:02 - 2013-12-07 20:02 - 00001060 _____ C:\Users\Public\Desktop\Multimedia Fusion 2.lnk 2013-12-07 20:02 - 2013-12-07 20:02 - 00000000 ____D C:\Program Files (x86)\Multimedia Fusion 2 2013-12-07 19:52 - 2013-12-07 19:59 - 00000000 ____D C:\Users\Fabio\Desktop\Multimedia Fusion 2 2013-12-07 17:17 - 2013-12-07 17:17 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Snz 2013-12-07 00:00 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-12-07 00:00 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-12-07 00:00 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-12-07 00:00 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-12-07 00:00 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-12-06 23:59 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-12-06 23:59 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-12-06 23:59 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-12-06 23:59 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-12-06 23:59 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-12-06 23:59 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-12-06 23:59 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-12-06 23:59 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-12-06 23:59 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-12-06 23:59 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-12-06 23:59 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-12-06 23:59 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-12-06 23:59 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-12-06 23:59 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-12-06 23:59 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-12-06 23:59 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-12-06 23:59 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-12-06 23:59 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-12-06 23:59 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-12-06 23:59 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-12-06 23:59 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-12-06 23:59 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-12-06 23:59 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-12-06 23:59 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-12-06 23:59 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-12-06 23:59 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-12-06 23:59 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-12-06 23:59 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-12-06 23:59 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-12-06 23:59 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-12-06 23:59 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-12-06 23:59 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-12-06 23:59 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-12-06 23:59 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-12-06 23:59 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-12-06 23:59 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-12-06 23:59 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-12-06 23:59 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-12-06 23:59 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-12-06 23:59 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-12-06 23:59 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-12-06 23:59 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-12-06 23:59 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-12-06 23:59 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-12-06 23:59 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-12-06 23:59 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-12-06 23:59 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-12-06 23:59 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-12-06 23:59 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-12-06 23:59 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-12-06 23:59 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-12-06 23:59 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-12-06 23:59 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-12-06 23:59 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-12-06 23:59 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-12-06 23:59 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-12-06 23:59 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-12-06 23:59 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-12-06 23:59 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-12-06 23:59 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-12-06 23:59 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-12-06 23:59 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-12-06 23:59 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-12-06 23:59 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-12-06 23:59 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-12-06 23:59 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-12-06 23:59 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-12-06 23:59 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2013-12-06 23:59 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2013-12-06 23:59 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-12-06 23:59 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-12-06 23:59 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-12-06 23:59 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-12-06 23:59 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-12-06 23:59 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-12-06 23:59 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-12-06 23:59 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-12-06 23:59 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-12-06 23:59 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-12-06 23:59 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-12-06 23:59 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-12-06 23:59 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-12-06 23:59 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-12-06 23:59 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-12-06 23:58 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-12-06 23:58 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-12-06 23:58 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-12-06 23:58 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-12-06 23:58 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-12-06 23:58 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-12-06 23:58 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-12-06 23:58 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-12-06 23:58 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-12-06 23:58 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-12-06 23:58 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-12-06 23:58 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-12-06 23:58 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-12-06 23:58 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-12-06 23:58 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-12-06 23:58 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-12-06 23:58 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-12-06 23:58 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-12-06 23:57 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-12-06 23:57 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-12-06 23:57 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-12-06 23:57 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-12-06 23:57 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-12-06 20:31 - 2013-12-06 20:31 - 00000222 _____ C:\Users\Fabio\Desktop\Orcs Must Die! 2.url 2013-12-06 20:30 - 2013-12-06 20:30 - 00000220 _____ C:\Users\Fabio\Desktop\Garry's Mod.url 2013-12-06 20:30 - 2013-12-06 20:30 - 00000199 _____ C:\Users\Fabio\Desktop\Natural Selection 2.url 2013-12-06 20:29 - 2013-12-06 20:29 - 00000221 _____ C:\Users\Fabio\Desktop\Magicka.url 2013-12-06 18:38 - 2013-12-06 18:38 - 00262144 ____N C:\Windows\Minidump\120613-21325-01.dmp 2013-12-06 18:29 - 2013-12-06 18:30 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\FiestaOnline 2013-12-06 14:58 - 2013-12-06 14:58 - 02225152 _____ C:\Users\Fabio\AppData\Local\omesuperv.exe 2013-12-04 19:55 - 2012-05-26 13:03 - 00000000 ____D C:\Users\Fabio\Desktop\Monster Rancher [German OST] 2013-12-03 23:35 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-03 23:32 - 2013-12-03 23:32 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-03 23:32 - 2013-12-03 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-03 23:32 - 2013-12-03 23:32 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-03 23:32 - 2013-12-03 23:32 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-03 23:32 - 2013-12-03 23:32 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-03 23:32 - 2013-12-03 23:32 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-03 23:32 - 2013-12-03 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-03 23:30 - 2013-12-03 23:35 - 00010277 _____ C:\Windows\IE11_main.log 2013-12-03 17:11 - 2013-12-03 17:11 - 00000997 _____ C:\Users\Fabio\Desktop\YGOPro.lnk 2013-12-03 17:03 - 2013-12-03 19:10 - 00000000 ____D C:\Program Files (x86)\DevPro 2013-12-03 15:53 - 2013-12-03 15:53 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-11-30 00:02 - 2013-11-30 00:02 - 00000000 ____D C:\Users\Fabio\Documents\Square Enix 2013-11-27 19:02 - 2013-11-27 19:02 - 00262144 ____N C:\Windows\Minidump\112713-23462-01.dmp 2013-11-24 00:51 - 2013-11-24 00:51 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-11-24 00:46 - 2013-11-14 12:57 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll 2013-11-24 00:46 - 2013-11-14 12:57 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2013-11-24 00:46 - 2013-11-14 12:57 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 18293608 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-24 00:46 - 2013-11-14 12:56 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-24 00:44 - 2013-11-24 00:44 - 00000000 ____D C:\Users\Fabio\AppData\Local\NVIDIA Corporation 2013-11-24 00:35 - 2013-11-24 00:35 - 499088494 _____ C:\Windows\MEMORY.DMP 2013-11-24 00:35 - 2013-11-24 00:35 - 00291664 _____ C:\Windows\Minidump\112413-20701-01.dmp 2013-11-22 23:56 - 2013-12-14 19:27 - 00001702 _____ C:\Windows\Sandboxie.ini 2013-11-22 23:56 - 2013-11-24 18:45 - 00001020 _____ C:\Users\Fabio\Desktop\Sandboxed Web Browser.lnk 2013-11-22 23:55 - 2013-11-22 23:55 - 00000000 ____D C:\Program Files\Sandboxie 2013-11-21 15:56 - 2013-12-10 15:38 - 00029675 _____ C:\Users\Fabio\Desktop\Buch ohne Namen.odt 2013-11-17 20:42 - 2013-11-17 21:02 - 00000000 ____D C:\Users\Fabio\Desktop\Ein Tiger auf Abwegen Yuubi und Lio Edition Demo 2013-11-16 16:58 - 2013-12-06 20:49 - 00000000 ____D C:\Users\Fabio\Desktop\Pkmn-Ptc 2013-11-16 16:43 - 2013-11-16 18:58 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-11-16 16:43 - 2013-11-16 16:43 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-11-16 16:42 - 2013-11-16 16:45 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2013-11-16 16:42 - 2009-01-25 13:14 - 00017272 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2013-11-16 15:52 - 2013-11-16 16:36 - 00000000 ____D C:\ProgramData\SecTaskMan ==================== One Month Modified Files and Folders ======= 2013-12-16 19:25 - 2013-04-23 16:58 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Skype 2013-12-16 19:24 - 2013-12-16 19:23 - 00023458 _____ C:\Users\Fabio\Desktop\FRST.txt 2013-12-16 19:23 - 2013-12-16 19:23 - 00000000 ____D C:\FRST 2013-12-16 19:19 - 2013-12-16 19:19 - 01927940 _____ (Farbar) C:\Users\Fabio\Desktop\FRST64.exe 2013-12-16 19:17 - 2013-04-23 16:47 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-12-16 19:00 - 2013-04-23 18:16 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-16 17:49 - 2013-04-23 16:27 - 01869627 _____ C:\Windows\WindowsUpdate.log 2013-12-16 17:21 - 2011-04-12 08:43 - 00699416 _____ C:\Windows\system32\perfh007.dat 2013-12-16 17:21 - 2011-04-12 08:43 - 00149556 _____ C:\Windows\system32\perfc007.dat 2013-12-16 17:21 - 2009-07-14 06:13 - 01641494 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-16 17:20 - 2013-06-18 21:42 - 01593956 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-12-16 17:13 - 2013-06-07 14:08 - 00039049 _____ C:\Windows\setupact.log 2013-12-16 16:49 - 2013-10-08 17:14 - 00000000 ____D C:\Program Files (x86)\PSPad editor 2013-12-16 16:47 - 2013-12-16 16:44 - 00000000 ____D C:\Users\Fabio\Desktop\HiJackThis 2013-12-16 16:46 - 2013-12-16 16:46 - 00003164 _____ C:\Windows\System32\Tasks\{E2A23A20-E507-4860-8710-B7354F8F385A} 2013-12-16 16:44 - 2013-12-16 16:44 - 00388608 _____ (Trend Micro Inc.) C:\Users\Fabio\Downloads\HijackThis.exe 2013-12-16 16:43 - 2009-07-14 05:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-16 16:43 - 2009-07-14 05:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-16 16:32 - 2013-05-19 20:55 - 00000000 ___RD C:\Users\Fabio\Dropbox 2013-12-16 16:32 - 2013-05-19 20:50 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Dropbox 2013-12-16 16:32 - 2013-04-26 15:37 - 00000000 ____D C:\Program Files (x86)\Steam 2013-12-16 16:31 - 2013-04-23 19:45 - 00000000 ____D C:\Users\Fabio\AppData\Local\LogMeIn Hamachi 2013-12-16 16:30 - 2013-08-15 17:02 - 00000000 ____D C:\Program Files (x86)\Origin 2013-12-16 16:30 - 2013-04-23 17:27 - 00000000 ____D C:\ProgramData\NVIDIA 2013-12-16 16:30 - 2013-04-23 16:47 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-12-16 16:30 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-15 21:52 - 2013-08-26 21:45 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\.minecraft 2013-12-14 19:27 - 2013-11-22 23:56 - 00001702 _____ C:\Windows\Sandboxie.ini 2013-12-14 19:27 - 2013-04-23 16:27 - 00000000 ___RD C:\Users\Fabio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-12-14 17:19 - 2013-08-15 01:08 - 00000000 ____D C:\Windows\system32\MRT 2013-12-14 17:18 - 2013-04-28 17:30 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-14 13:46 - 2013-10-29 18:07 - 00000000 ____D C:\Users\Fabio\AppData\Local\Daedalic Entertainment 2013-12-14 00:37 - 2013-12-11 21:44 - 00009446 _____ C:\Users\Fabio\Desktop\Gilde.ods 2013-12-13 23:42 - 2013-07-16 19:05 - 00000000 ____D C:\Program Files (x86)\osu! 2013-12-13 23:04 - 2013-06-23 22:03 - 00000000 ____D C:\Windows\Minidump 2013-12-13 23:03 - 2013-12-13 23:03 - 00262144 ____N C:\Windows\Minidump\121313-26239-01.dmp 2013-12-13 16:25 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-13 14:49 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-13 14:48 - 2009-07-14 05:45 - 00297024 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-12 12:04 - 2013-12-12 12:03 - 98633040 _____ (Apple Inc.) C:\Users\Fabio\Downloads\iTunesSetup.exe 2013-12-11 17:00 - 2013-04-23 18:16 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 17:00 - 2013-04-23 18:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-11 17:00 - 2013-04-23 18:16 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-10 20:01 - 2013-12-10 20:01 - 00003906 _____ C:\Windows\System32\Tasks\Wettbewerbsanmeldung und Prüfung 2013-12-10 18:48 - 2013-10-31 14:27 - 00013024 _____ C:\Users\Fabio\Desktop\Buchhaltung.ods 2013-12-10 15:38 - 2013-11-21 15:56 - 00029675 _____ C:\Users\Fabio\Desktop\Buch ohne Namen.odt 2013-12-10 13:27 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-12-08 22:02 - 2013-04-23 18:58 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\TS3Client 2013-12-08 19:26 - 2013-04-23 18:58 - 00000000 ____D C:\Users\Fabio\AppData\Local\TeamSpeak 3 Client 2013-12-08 13:57 - 2013-12-08 13:57 - 00000000 ____D C:\Users\Fabio\Desktop\Plattformer 2013-12-08 11:52 - 2013-06-13 16:28 - 00000000 ____D C:\Users\Fabio\.gimp-2.8 2013-12-08 11:40 - 2013-12-08 11:40 - 00000894 _____ C:\Users\Fabio\AppData\Local\recently-used.xbel 2013-12-08 11:12 - 2013-12-08 11:11 - 00000000 ____D C:\Users\Fabio\Desktop\Fabis neues spiel 2013-12-08 00:38 - 2013-12-08 00:38 - 00000000 ____D C:\Users\Fabio\AppData\Local\Macromedia 2013-12-08 00:36 - 2013-05-17 14:28 - 00000000 ____D C:\Users\Fabio\AppData\Local\Adobe 2013-12-08 00:26 - 2013-12-08 00:26 - 00262144 ____N C:\Windows\Minidump\120813-24835-01.dmp 2013-12-08 00:00 - 2013-05-25 14:04 - 00000000 ____D C:\Program Files (x86)\SpeedFan 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\Documents\Shiner 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\Documents\Robot Entertainment 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\AppData\Local\Robot Entertainment 2013-12-07 22:49 - 2013-06-15 01:04 - 00336444 _____ C:\Windows\DirectX.log 2013-12-07 22:34 - 2013-12-07 22:20 - 01556776 _____ C:\Users\Fabio\Application.mfa 2013-12-07 22:34 - 2013-04-23 16:27 - 00000000 ____D C:\Users\Fabio 2013-12-07 22:28 - 2013-12-07 22:28 - 01108256 _____ ( ) C:\Users\Fabio\Application.exe 2013-12-07 22:20 - 2013-12-07 22:20 - 01550241 _____ C:\Users\Fabio\Application.001 2013-12-07 21:30 - 2013-12-07 20:03 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Clickteam 2013-12-07 20:02 - 2013-12-07 20:02 - 00001060 _____ C:\Users\Public\Desktop\Multimedia Fusion 2.lnk 2013-12-07 20:02 - 2013-12-07 20:02 - 00000000 ____D C:\Program Files (x86)\Multimedia Fusion 2 2013-12-07 19:59 - 2013-12-07 19:52 - 00000000 ____D C:\Users\Fabio\Desktop\Multimedia Fusion 2 2013-12-07 17:18 - 2013-07-11 23:33 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Intermediate 2013-12-07 17:17 - 2013-12-07 17:17 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Snz 2013-12-07 17:17 - 2013-07-11 23:33 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\SCheck 2013-12-06 20:49 - 2013-11-16 16:58 - 00000000 ____D C:\Users\Fabio\Desktop\Pkmn-Ptc 2013-12-06 20:31 - 2013-12-06 20:31 - 00000222 _____ C:\Users\Fabio\Desktop\Orcs Must Die! 2.url 2013-12-06 20:30 - 2013-12-06 20:30 - 00000220 _____ C:\Users\Fabio\Desktop\Garry's Mod.url 2013-12-06 20:30 - 2013-12-06 20:30 - 00000199 _____ C:\Users\Fabio\Desktop\Natural Selection 2.url 2013-12-06 20:29 - 2013-12-06 20:29 - 00000221 _____ C:\Users\Fabio\Desktop\Magicka.url 2013-12-06 18:38 - 2013-12-06 18:38 - 00262144 ____N C:\Windows\Minidump\120613-21325-01.dmp 2013-12-06 18:30 - 2013-12-06 18:29 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\FiestaOnline 2013-12-06 14:58 - 2013-12-06 14:58 - 02225152 _____ C:\Users\Fabio\AppData\Local\omesuperv.exe 2013-12-04 19:58 - 2013-05-03 16:18 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Audacity 2013-12-04 15:29 - 2013-04-23 16:27 - 00001421 _____ C:\Users\Fabio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-04 15:27 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-03 23:35 - 2013-12-03 23:30 - 00010277 _____ C:\Windows\IE11_main.log 2013-12-03 23:32 - 2013-12-03 23:32 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-03 23:32 - 2013-12-03 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-03 23:32 - 2013-12-03 23:32 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-03 23:32 - 2013-12-03 23:32 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-03 23:32 - 2013-12-03 23:32 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-03 23:32 - 2013-12-03 23:32 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-03 23:32 - 2013-12-03 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-03 19:27 - 2013-08-22 20:36 - 00000000 ____D C:\Users\Fabio\Downloads\YGOPRO Dawn of a New Era 2.9.12.2242 2013-12-03 19:10 - 2013-12-03 17:03 - 00000000 ____D C:\Program Files (x86)\DevPro 2013-12-03 17:11 - 2013-12-03 17:11 - 00000997 _____ C:\Users\Fabio\Desktop\YGOPro.lnk 2013-12-03 15:55 - 2013-05-08 19:18 - 00000000 ____D C:\Users\Fabio\AppData\Local\CrashDumps 2013-12-03 15:53 - 2013-12-03 15:53 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-12-03 11:12 - 2013-04-23 16:47 - 00004104 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-12-03 11:12 - 2013-04-23 16:47 - 00003852 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-12-03 10:39 - 2013-07-10 14:28 - 00000000 ____D C:\Users\Fabio\AppData\Local\Paint.NET 2013-11-30 00:02 - 2013-11-30 00:02 - 00000000 ____D C:\Users\Fabio\Documents\Square Enix 2013-11-27 19:02 - 2013-11-27 19:02 - 00262144 ____N C:\Windows\Minidump\112713-23462-01.dmp 2013-11-26 20:42 - 2013-04-23 16:58 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-11-26 20:42 - 2013-04-23 16:58 - 00000000 ____D C:\ProgramData\Skype 2013-11-26 12:54 - 2013-12-12 23:33 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-26 11:19 - 2013-12-12 23:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-26 11:18 - 2013-12-12 23:33 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-26 11:11 - 2013-12-12 23:32 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-26 10:48 - 2013-12-12 23:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-26 10:46 - 2013-12-12 23:33 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-26 10:41 - 2013-12-12 23:33 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-26 10:29 - 2013-12-12 23:33 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-26 10:27 - 2013-12-12 23:33 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-26 10:23 - 2013-12-12 23:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-26 10:21 - 2013-12-12 23:33 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-26 10:18 - 2013-12-12 23:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-26 10:18 - 2013-12-12 23:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-26 10:16 - 2013-12-12 23:33 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-26 09:57 - 2013-12-12 23:33 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-26 09:38 - 2013-12-12 23:33 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-26 09:38 - 2013-12-12 23:33 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-26 09:35 - 2013-12-12 23:32 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-26 09:32 - 2013-12-12 23:33 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-26 09:28 - 2013-12-12 23:33 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-26 09:16 - 2013-12-12 23:32 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-26 09:02 - 2013-12-12 23:32 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-26 08:48 - 2013-12-12 23:32 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-26 08:32 - 2013-12-12 23:33 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-26 08:26 - 2013-12-12 23:32 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-26 08:07 - 2013-12-12 23:33 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-26 07:40 - 2013-12-12 23:33 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-26 07:34 - 2013-12-12 23:33 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-26 07:34 - 2013-12-12 23:33 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-26 07:33 - 2013-12-12 23:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-26 07:27 - 2013-12-12 23:33 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-24 18:45 - 2013-11-22 23:56 - 00001020 _____ C:\Users\Fabio\Desktop\Sandboxed Web Browser.lnk 2013-11-24 00:51 - 2013-11-24 00:51 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-11-24 00:51 - 2013-04-23 17:33 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-11-24 00:50 - 2013-04-23 17:33 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-11-24 00:44 - 2013-11-24 00:44 - 00000000 ____D C:\Users\Fabio\AppData\Local\NVIDIA Corporation 2013-11-24 00:35 - 2013-11-24 00:35 - 499088494 _____ C:\Windows\MEMORY.DMP 2013-11-24 00:35 - 2013-11-24 00:35 - 00291664 _____ C:\Windows\Minidump\112413-20701-01.dmp 2013-11-23 19:26 - 2013-12-12 18:27 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-11-23 18:47 - 2013-12-12 18:27 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-11-22 23:55 - 2013-11-22 23:55 - 00000000 ____D C:\Program Files\Sandboxie 2013-11-19 11:32 - 2013-08-10 13:39 - 00001912 _____ C:\Windows\epplauncher.mif 2013-11-19 11:32 - 2013-08-10 13:38 - 00000000 ____D C:\Program Files\Microsoft Security Client 2013-11-19 11:32 - 2013-08-10 13:38 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client 2013-11-19 11:21 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-11-18 14:44 - 2013-06-24 09:23 - 00000000 ____D C:\Users\Fabio\Desktop\Let´s Play 2013-11-17 21:02 - 2013-11-17 20:42 - 00000000 ____D C:\Users\Fabio\Desktop\Ein Tiger auf Abwegen Yuubi und Lio Edition Demo 2013-11-17 11:44 - 2013-06-07 14:08 - 00019900 _____ C:\Windows\PFRO.log 2013-11-16 21:26 - 2013-04-23 16:48 - 00002210 _____ C:\Users\Fabio\Desktop\Google Chrome.lnk 2013-11-16 18:58 - 2013-11-16 16:43 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-11-16 16:45 - 2013-11-16 16:42 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2013-11-16 16:43 - 2013-11-16 16:43 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-11-16 16:36 - 2013-11-16 15:52 - 00000000 ____D C:\ProgramData\SecTaskMan Files to move or delete: ==================== C:\Users\Fabio\Application.exe Some content of TEMP: ==================== C:\Users\Fabio\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Fabio\AppData\Local\Temp\nvStInst.exe C:\Users\Fabio\AppData\Local\Temp\sfamcc00001.dll C:\Users\Fabio\AppData\Local\Temp\sfamcc00002.dll C:\Users\Fabio\AppData\Local\Temp\sfamcc00003.dll C:\Users\Fabio\AppData\Local\Temp\sfareca00001.dll C:\Users\Fabio\AppData\Local\Temp\sfareca00002.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-10 12:05 ==================== End Of Log ============================ --- --- --- --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-12-2013 02 Ran by Fabio at 2013-12-16 19:26:21 Running from C:\Users\Fabio\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} ==================== Installed Programs ====================== 4500_G510gm_Help (x32 Version: 000.0.440.000) 4500G510gm (x32 Version: 000.0.423.000) 4500G510gm_Software_Min (x32 Version: 000.0.423.000) 64 Bit HP CIO Components Installer (Version: 6.2.1) A New Beginning - Final Cut (x32) Ace of Spades (x32) Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170) Adobe Reader XI (11.0.05) - Deutsch (x32 Version: 11.0.05) Aeria Ignite (x32 Version: 1.12.2732) Akamai NetSession Interface (HKCU) Apple Software Update (x32 Version: 2.0.2.92) Arc (x32 Version: 1.0.0.5510) ArcSoft ShowBiz (x32 Version: ) Asmedia ASM104x USB 3.0 Host Controller Driver (x32 Version: 1.14.3.0) ATI Catalyst Install Manager (Version: 3.0.762.0) Audacity 2.0.3 (x32 Version: 2.0.3) Battlefield 3™ (x32 Version: 1.6.0.0) Battlelog Web Plugins (x32 Version: 2.1.7) BlueJ (x32 Version: 3.1.0) BufferChm (x32 Version: 130.0.331.000) CameraHelperMsi (x32 Version: 13.51.815.0) Camtasia Studio 8 (x32 Version: 8.1.2.1327) Crysis 2 Maximum Edition (x32) Cube World version 0.0.1 (x32 Version: 0.0.1) D3DX10 (x32 Version: 15.4.2368.0902) Deponia (x32) Destinations (x32 Version: 130.0.0.0) DeviceDiscovery (x32 Version: 130.0.372.000) Die Sims™ 3 (x32 Version: 1.55.4) Die Sims™ 3 Late Night (x32 Version: 6.5.1) Die Sims™ 3 Luxus-Accessoires (x32 Version: 3.0.38) DocMgr (x32 Version: 130.0.000.000) DocProc (x32 Version: 13.0.0.0) Don't Starve (x32) Dropbox (HKCU Version: 2.0.22) Edna & Harvey: Harvey's New Eyes (x32) EPU-4 Engine (x32 Version: 1.02.01) erLT (x32 Version: 1.20.138.34) ESN Sonar (x32 Version: 0.70.4) Fax (x32 Version: 130.0.418.000) Fiesta Online DE 1.04.113 (x32 Version: 1.04.113) FINAL FANTASY VII (x32) Fotogalerie (x32 Version: 16.4.3508.0205) Fraps (remove only) (x32) Garry's Mod (x32) GeForce Experience NvStream Client Components (Version: 1.6.28) GIMP 2.8.4 (Version: 2.8.4) Google Chrome (x32 Version: 31.0.1650.63) Google Chrome Frame (x32 Version: 65.119.71) Google Update Helper (x32 Version: 1.3.22.3) GPBaseService2 (x32 Version: 130.0.371.000) Hauppauge Device Central (x32 Version: 1.1.31038) HP Customer Participation Program 13.0 (Version: 13.0) HP Document Manager 2.0 (Version: 2.0) HP Imaging Device Functions 13.0 (Version: 13.0) HP Officejet 4500 G510g-m (Version: 13.0) HP Smart Web Printing 4.5 (Version: 4.5) HP Solution Center 13.0 (Version: 13.0) HP Update (x32 Version: 4.000.011.006) HPProductAssistant (x32 Version: 130.0.371.000) HPSSupply (x32 Version: 130.0.371.000) Java 7 Update 40 (64-bit) (Version: 7.0.400) Java 7 Update 45 (x32 Version: 7.0.450) Java Auto Updater (x32 Version: 2.1.9.8) Java SE Development Kit 7 Update 40 (64-bit) (Version: 1.7.0.400) Journey of a Roach (x32) LAME v3.99.3 (for Windows) (x32) Left 4 Dead 2 (x32) Logitech Gaming Software (Version: 8.45.88) Logitech Gaming Software 8.45 (Version: 8.45.88) Logitech Webcam-Software (x32 Version: 2.51) LogMeIn Hamachi (x32 Version: 2.2.0.109) LWS Facebook (x32 Version: 13.50.854.0) LWS Gallery (x32 Version: 13.51.827.0) LWS Help_main (x32 Version: 13.51.828.0) LWS Launcher (x32 Version: 13.51.828.0) LWS Motion Detection (x32 Version: 13.51.815.0) LWS Pictures And Video (x32 Version: 13.51.815.0) LWS Twitter (x32 Version: 13.30.1346.0) LWS Webcam Software (x32 Version: 13.51.815.0) LWS WLM Plugin (x32 Version: 1.30.1201.0) LWS YouTube Plugin (x32 Version: 13.31.1038.0) Magicka (x32) MarketResearch (x32 Version: 130.0.374.000) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Security Client (Version: 4.4.0304.0) Microsoft Security Essentials (Version: 4.4.304.0) Microsoft Silverlight (Version: 5.1.20913.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (x32 Version: 11.0.51106.1) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106) Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0) Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0) Mirror's Edge (x32) Movie Maker (x32 Version: 16.4.3508.0205) Mozilla Firefox 23.0.1 (x86 de) (x32 Version: 23.0.1) Mozilla Maintenance Service (x32 Version: 23.0.1) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT Redists (Version: 1.0) MSVCRT110 (x32 Version: 16.4.1108.0727) MSVCRT110_amd64 (Version: 16.4.1109.0912) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) Multimedia Fusion 2 (x32) Natural Selection 2 (x32) Network64 (Version: 130.0.550.000) Notepad++ (x32 Version: 6.3.2) NVIDIA 3D Vision Controller-Treiber 331.82 (Version: 331.82) NVIDIA 3D Vision Treiber 331.82 (Version: 331.82) NVIDIA GeForce Experience 1.7.1 (Version: 1.7.1) NVIDIA Grafiktreiber 331.82 (Version: 331.82) NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4) NVIDIA Install Application (Version: 2.1002.141.953) NVIDIA LED Visualizer 1.0 (Version: 1.0) NVIDIA PhysX (x32 Version: 9.13.0725) NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725) NVIDIA ShadowPlay 9.3.21 (Version: 9.3.21) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3182) NVIDIA Systemsteuerung 331.82 (Version: 331.82) NVIDIA Update 9.3.21 (Version: 9.3.21) NVIDIA Update Components (Version: 9.3.21) NVIDIA Virtual Audio 1.2.9 (Version: 1.2.9) OCR Software by I.R.I.S. 13.0 (Version: 13.0) OpenOffice.org 3.4.1 (x32 Version: 3.41.9593) Orcs Must Die! 2 (x32) Origin (x32 Version: 9.3.1.4482) osu! (x32 Version: 0.0.0.0) Paint.NET v3.5.10 (Version: 3.60.0) Path of Exile (x32) Photo Common (x32 Version: 16.4.3508.0205) Photo Gallery (x32 Version: 16.4.3508.0205) Portal 2 (x32) PSPad editor (x32 Version: 4.5.7.2450) PunkBuster Services (x32 Version: 0.991) QuickTime (x32 Version: 7.4.1.14) Realtek Ethernet Controller Driver (x32 Version: 7.52.203.2012) RGSS-RTP Standard (x32 Version: 1.0.0) RPGXP (x32 Version: 1.0.0) S4 League_EU (x32 Version: 1.00.0000) Sandboxie 4.06 (64-bit) (Version: 4.06) Scan (x32 Version: 13.0.0.0) Serious Sam 3: BFE (x32) SHIELD Streaming (Version: 1.6.53) Shop for HP Supplies (Version: 13.0) Skype™ 6.11 (x32 Version: 6.11.102) SmartWebPrinting (x32 Version: 130.0.373.000) SolutionCenter (x32 Version: 130.0.373.000) Sonic Generations (x32) SpeedFan (remove only) (x32) Spybot - Search & Destroy (x32 Version: 2.1.21) Status (x32 Version: 130.0.373.000) Steam (x32 Version: 1.0.0.0) Steam Trading Card Beta Access (x32) Streaming Video Recorder V4.3.4 (Version: 4.3.4) Synthesia (x32 Version: 8.5) Team Fortress 2 (x32) TeamSpeak 3 Client (HKCU Version: 3.0.13.1) TeamViewer 8 (x32 Version: 8.0.19617) Terraria (x32) The Binding of Isaac (x32) The Dark Eye: Chains of Satinav (x32) Tiled - Tiled Map Editor (x32) Tinypic 3.18 (x32 Version: Tinypic 3.18) Toolbox (x32 Version: 130.0.648.000) TrayApp (x32 Version: 130.0.376.000) Vegas Pro 12.0 (64-bit) (Version: 12.0.670) WebReg (x32 Version: 130.0.132.017) Windows Live Communications Platform (x32 Version: 16.4.3508.0205) Windows Live Essentials (x32 Version: 16.4.3508.0205) Windows Live ID Sign-in Assistant (Version: 7.250.4311.0) Windows Live Installer (x32 Version: 16.4.3508.0205) Windows Live Photo Common (x32 Version: 16.4.3508.0205) Windows Live PIMT Platform (x32 Version: 16.4.3508.0205) Windows Live SOXE (x32 Version: 16.4.3508.0205) Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205) Windows Live UX Platform (x32 Version: 16.4.3508.0205) Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205) WinRAR 4.20 (64-Bit) (Version: 4.20.0) YGOPro DevPro Version 1.9.7 r2 (x32 Version: 1.9.7 r2) ==================== Restore Points ========================= 11-12-2013 14:39:11 Windows Update 12-12-2013 22:31:55 Windows Update 14-12-2013 16:17:30 Windows Update 16-12-2013 16:09:18 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {088482FA-65B8-4E17-9ABF-1DCD48E8D373} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 => Rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem Task: {09F06BFE-A3C8-40E3-846A-6E6F4000C238} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 => Rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem Task: {0D6EA92C-3C2A-4300-AE9A-F37058E14B17} - System32\Tasks\{7F948C6B-FCF2-430E-A2A3-B5F5CB5A20BA} => C:\Program Files (x86)\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe [2013-07-19] (TechSmith Corporation) Task: {15BDB095-144C-40F5-83A8-4FFCCADBB0B8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11] (Adobe Systems Incorporated) Task: {1785CAD4-18EA-444A-ABB8-D0664DD336AB} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Task: {5D4C1132-3678-4FF9-81DE-9E1C567B9491} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {780F1D87-FAF8-4EAA-B374-3A14CB8A981D} - System32\Tasks\{EFD1FA81-6965-438F-902B-EAAD4B237947} => C:\Program Files (x86)\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe [2013-07-19] (TechSmith Corporation) Task: {8F170027-CE36-4D2B-97DB-398C7EFD8CC6} - System32\Tasks\Wettbewerbsanmeldung und Prüfung Task: {994C86AD-A929-4B2C-88A0-4E25A107A029} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => Rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation Task: {9A88D21E-4F6A-4E81-8710-C9E49D2E3510} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector => Rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART Task: {A7C73732-9F11-4281-8D19-764D4EC9D94D} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe aepdu.dll,AePduRunUpdate Task: {CA4E05B6-820C-4901-A5BB-DE13E6AFE5F7} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {CC12DB1D-1064-41E9-BB1A-0CD84C11313C} - System32\Tasks\ASUS\ASUS SIX Engine => C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe [2010-02-03] (ASUSTeK Computer Inc.) Task: {D7B6E81D-3CF4-432C-84D2-24213F4316E6} - System32\Tasks\Microsoft\Windows\Autochk\Proxy => Rundll32.exe /d acproxy.dll,PerformAutochkOperations Task: {E22A8667-F75B-4BA9-BA46-067ED4429DE8} - System32\Tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange => Rundll32.exe bfe.dll,BfeOnServiceStartTypeChange Task: {E4B5F108-63B7-409C-9270-45CE49D96207} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe Task: {F6765F7D-EBD0-4876-8641-9778590355A0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-23] (Google Inc.) Task: {F70C37A9-B3BF-4FC1-93DD-A21BF126ACE7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-23] (Google Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-11-16 16:42 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2013-11-16 16:42 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2013-11-16 16:42 - 2013-05-16 10:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2013-11-16 16:42 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2013-11-16 16:42 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2013-04-24 16:58 - 2009-03-19 21:35 - 00208896 _____ () C:\Program Files (x86)\ASUS\EPU-4 Engine\AiNap.dll 2013-04-24 16:58 - 2009-03-19 21:35 - 00008704 _____ () C:\Program Files (x86)\ASUS\EPU-4 Engine\vvc.dll 2013-04-24 16:58 - 2009-01-15 13:55 - 00565248 _____ () C:\Program Files (x86)\ASUS\EPU-4 Engine\pngio.dll 2013-04-24 16:58 - 2009-03-25 15:53 - 00053248 _____ () C:\Program Files (x86)\ASUS\EPU-4 Engine\AsSpindownTimeout.dll 2013-03-25 13:23 - 2013-11-06 22:48 - 00691200 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2013-04-19 12:10 - 2013-12-11 20:40 - 01135016 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2013-03-26 15:16 - 2013-11-06 22:48 - 20625832 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2012-12-11 08:51 - 2013-06-15 00:49 - 01100800 _____ () C:\Program Files (x86)\Steam\bin\avcodec-53.dll 2012-12-11 08:51 - 2013-06-15 00:49 - 00124416 _____ () C:\Program Files (x86)\Steam\bin\avutil-51.dll 2012-12-11 08:51 - 2013-06-15 00:49 - 00192000 _____ () C:\Program Files (x86)\Steam\bin\avformat-53.dll 2013-03-13 21:48 - 2013-03-13 21:48 - 24978944 _____ () C:\Users\Fabio\AppData\Roaming\Dropbox\bin\libcef.dll 2012-09-12 23:38 - 2012-09-12 23:38 - 02144104 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtCore4.dll 2012-09-12 23:38 - 2012-09-12 23:38 - 07955304 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtGui4.dll 2012-09-12 23:38 - 2012-09-12 23:38 - 00341352 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtXml4.dll 2012-09-12 23:38 - 2012-09-12 23:38 - 00028008 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QGif4.dll 2012-09-12 23:38 - 2012-09-12 23:38 - 00127336 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll 2012-09-12 23:39 - 2012-09-12 23:39 - 00336232 _____ () C:\Program Files (x86)\Common Files\logishrd\LWSPlugins\LWS\Applets\CameraHelper\DevManagerCore.dll 2013-12-05 14:24 - 2013-12-04 03:47 - 00702416 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libglesv2.dll 2013-12-05 14:24 - 2013-12-04 03:47 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libegl.dll 2013-12-05 14:24 - 2013-12-04 03:48 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll 2013-12-05 14:24 - 2013-12-04 03:48 - 00399312 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll 2013-12-05 14:24 - 2013-12-04 03:47 - 01619408 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/16/2013 04:30:39 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/15/2013 01:37:49 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/14/2013 07:19:48 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/14/2013 01:05:00 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/13/2013 11:04:40 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/13/2013 02:48:51 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/13/2013 02:46:02 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2013 06:19:01 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2013 11:49:28 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/11/2013 03:28:15 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (12/16/2013 04:35:41 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Update" wurde nicht richtig gestartet. Error: (12/15/2013 05:04:49 AM) (Source: DCOM) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (12/14/2013 10:56:26 PM) (Source: bowser) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "DESTHROIA-PC", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{F4DB1782-AC3C-433C-A01F-B4E6EF3FCA52}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (12/13/2013 11:04:43 PM) (Source: Microsoft-Windows-WHEA-Logger) (User: NT-AUTORITÄT) Description: Schwerwiegender Hardwarefehler. Komponente: AMD Northbridge Fehlerquelle: 3 Fehlertyp: 7 Prozessor-ID: 0 Die Detailansicht dieses Eintrags beinhaltet weitere Informationen. Error: (12/13/2013 11:04:07 PM) (Source: BugCheck) (User: ) Description: 0x00000124 (0x0000000000000000, 0xfffffa8004f50748, 0x0000000000000000, 0x0000000000000000)C:\Windows\Minidump\121313-26239-01.dmp121313-26239-01 Error: (12/13/2013 11:04:05 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 13.12.2013 um 23:02:55 unerwartet heruntergefahren. Error: (12/12/2013 04:53:14 PM) (Source: DCOM) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (12/12/2013 11:51:34 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (12/12/2013 11:51:34 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (12/11/2013 03:33:56 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Update" wurde nicht richtig gestartet. Microsoft Office Sessions: ========================= Error: (12/16/2013 04:30:39 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/15/2013 01:37:49 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/14/2013 07:19:48 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/14/2013 01:05:00 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/13/2013 11:04:40 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/13/2013 02:48:51 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/13/2013 02:46:02 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2013 06:19:01 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/12/2013 11:49:28 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/11/2013 03:28:15 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Percentage of memory in use: 56% Total physical RAM: 4094.12 MB Available physical RAM: 1789.18 MB Total Pagefile: 8186.41 MB Available Pagefile: 5359.97 MB Total Virtual: 8192 MB Available Virtual: 8191.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.66 GB) (Free:100.21 GB) NTFS Drive d: (POKEMON) (CDROM) (Total:2.88 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 7DFA34C8) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
17.12.2013, 10:33 | #4 |
/// the machine /// TB-Ausbilder | Offermosquito und Weiße Popups in Chrome Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
17.12.2013, 16:04 | #5 |
| Offermosquito und Weiße Popups in Chrome Ehm hab ein kleines Problem bei Schritt 3, und zwar sagt mir "Junkware Removal Tool" folgendes: "A bad module has been detected! A reboot is required to remove modules. Press ´y´ to reboot now Press ´n´ to reboot later Reboot now? [y/n]" Was soll ich jetzt machen? Liebe Grüße, Lionight |
18.12.2013, 09:56 | #6 |
/// the machine /// TB-Ausbilder | Offermosquito und Weiße Popups in Chrome rebooten, also y
__________________ --> Offermosquito und Weiße Popups in Chrome |
18.12.2013, 15:58 | #7 |
| Offermosquito und Weiße Popups in Chrome So hab jetzt alle Schritte abgearbeitet (bzw. die Software ) Code:
ATTFilter Malwarebytes Anti-Malware (Test) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.12.17.04 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16476 Fabio :: FABIO-PC [Administrator] Schutz: Aktiviert 17.12.2013 15:06:04 mbam-log-2013-12-17 (15-06-04).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 260322 Laufzeit: 13 Minute(n), 59 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 5 HKCR\CLSID\{DA3D98A6-868D-4E1B-BB78-0887230DA405} (PUP.OPtional.LyricsAd) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\TypeLib\{FBF72542-A0FE-45EB-BADF-8C27823C965C} (PUP.OPtional.LyricsAd) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Interface\{D61714EE-9BCC-45AD-8807-E5A71923E134} (PUP.OPtional.LyricsAd) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{DA3D98A6-868D-4E1B-BB78-0887230DA405} (PUP.OPtional.LyricsAd) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{DA3D98A6-868D-4E1B-BB78-0887230DA405} (PUP.OPtional.LyricsAd) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Registrierungswerte: 1 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|OMESupervisor (PUP.Optional.OfferMosquito.A) -> Daten: C:\Users\Fabio\AppData\Local\omesuperv.exe -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 3 C:\Users\Fabio\AppData\Local\Temp\mt_ffx\Delta (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Fabio\AppData\Local\Temp\mt_ffx\Delta\delta (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Fabio\AppData\Local\Temp\mt_ffx\Delta\delta\1.8.21.5 (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateien: 1 C:\Users\Fabio\AppData\Local\omesuperv.exe (PUP.Optional.OfferMosquito.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) Code:
ATTFilter # AdwCleaner v3.015 - Bericht erstellt am 17/12/2013 um 15:43:22 # Updated 10/12/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Fabio - FABIO-PC # Gestartet von : C:\Users\Fabio\Downloads\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\apn Ordner Gelöscht : C:\Users\Fabio\AppData\Local\Temp\apn Ordner Gelöscht : C:\Users\Fabio\AppData\Local\Temp\hotspot shield Ordner Gelöscht : C:\Users\Fabio\AppData\Roaming\Common\LuaRT Ordner Gelöscht : C:\Users\Fabio\AppData\Roaming\Intermediate Ordner Gelöscht : C:\Users\Fabio\AppData\Roaming\SCheck Ordner Gelöscht : C:\Users\Fabio\AppData\Roaming\Snz Ordner Gelöscht : C:\Users\Fabio\AppData\Roaming\SSync Ordner Gelöscht : C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\Extensions\125 Ordner Gelöscht : C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbmdkmlcnbapgegninelmjbfibaghdmk Datei Gelöscht : C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\Extensions\om@offermosquito.com.xpi Datei Gelöscht : C:\Windows\System32\roboot64.exe Datei Gelöscht : C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\invalidprefs.js Datei Gelöscht : C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\searchplugins\fbdownloader_search.xml Datei Gelöscht : C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\user.js Datei Gelöscht : C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\user.js Datei Gelöscht : C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.babylon.com_0.localstorage Datei Gelöscht : C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.babylon.com_0.localstorage-journal Datei Gelöscht : C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.wajam.com_0.localstorage Datei Gelöscht : C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.wajam.com_0.localstorage-journal ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Wert Gelöscht : HKCU\Software\Mozilla\Firefox\Extensions [Lyrics@LyricsContainer.co] Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\gbmdkmlcnbapgegninelmjbfibaghdmk Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Intermediate] Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [scheck] Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Snoozer] Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [ssync] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs [bProtectTabs] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_fl-studio_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_fl-studio_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E69D4A59-73DE-4E38-9FB3-740EC4D9060D} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Schlüssel Gelöscht : HKCU\Software\APN PIP Schlüssel Gelöscht : HKCU\Software\Ciuvo Schlüssel Gelöscht : HKCU\Software\httogroup Schlüssel Gelöscht : HKCU\Software\OfferMosquito Schlüssel Gelöscht : HKCU\Software\piccshare Schlüssel Gelöscht : HKCU\Software\Protector Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Speedchecker Limited ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16428 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] -\\ Mozilla Firefox v23.0.1 (de) [ Datei : C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js ] Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://search.fbdownloader.com/?channel=sfde203fbdgy21"); Zeile gelöscht : user_pref("simplenewtab.url", "hxxp://wisersearch.com/?channel=de_nt"); Zeile gelöscht : user_pref("browser.search.selectedEngine", "FBDownloader Search"); Zeile gelöscht : user_pref("browser.search.defaultenginename", "FBDownloader Search"); Zeile gelöscht : user_pref("browser.search.defaulturl", "hxxp://search.fbdownloader.com/search.php?channel=sfde203fbdgy21&q="); Zeile gelöscht : user_pref("keyword.URL", "hxxp://search.fbdownloader.com/search.php?channel=sfde203fbdgy21&q="); [ Datei : C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\prefs.js ] Zeile gelöscht : user_pref("extensions.LinkSwift.aul", "1383776693330"); Zeile gelöscht : user_pref("extensions.LinkSwift.irl", true); Zeile gelöscht : user_pref("extensions.LinkSwift.is", "IM27lsDE"); Zeile gelöscht : user_pref("extensions.LinkSwift.ug", "87C1F7DB-9D56-4EA9-8B44-C53F9568959F"); Zeile gelöscht : user_pref("extensions.firefox@linkswift.co.install-event-fired", true); Zeile gelöscht : user_pref("om.config", "{\"active\":true,\"name\":\"twde\",\"id\":25,\"dispId\":\"CH-25\",\"aboutLink\":\"\",\"trackingGeneral\":false,\"xhrDomains\":[\"become\",\"shopzilla\",\"twenga\",\"bizrate\"],[...] -\\ Google Chrome v31.0.1650.63 [ Datei : C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht : homepage ************************* AdwCleaner[R0].txt - [6972 octets] - [17/12/2013 15:40:03] AdwCleaner[S0].txt - [6366 octets] - [17/12/2013 15:43:22] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6426 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.0.8 (11.05.2013:1) OS: Windows 7 Home Premium x64 Ran by Fabio on 18.12.2013 at 15:38:22,49 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2285020276-803935226-2415039821-1000\Software\sweetim ~~~ Files Successfully deleted: [File] "C:\Users\Fabio\appdata\locallow\microsoft\silverlight\outofbrowser\index\portal.qtrax.com" ~~~ Folders Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin" Successfully deleted: [Empty Folder] C:\Users\Fabio\appdata\local\{59715875-C336-4D60-ADB7-694B9BBA865C} ~~~ FireFox Emptied folder: C:\Users\Fabio\AppData\Roaming\mozilla\firefox\profiles\q3r8j6nq.default\minidumps [1 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 18.12.2013 at 15:45:09,25 Computer was rebooted End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-12-2013 03 Ran by Fabio (administrator) on FABIO-PC on 18-12-2013 15:53:14 Running from C:\Users\Fabio\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Dropbox, Inc.) C:\Users\Fabio\AppData\Roaming\Dropbox\bin\Dropbox.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe (Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Hauppauge Computer Works, Inc.) C:\Program Files (x86)\Hauppauge\DeviceCentral\HcwDCTrayTool.exe () C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe (Hauppauge Computer Works, Inc.) C:\Program Files (x86)\Hauppauge\DeviceCentral\HcwDevCentralService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDClock.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDPOP3.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDCountdown.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Launch LCore] - C:\Program Files\Logitech Gaming Software\LCore.exe [7468784 2013-02-28] (Logitech Inc.) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation) HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1823656 2013-12-11] (Valve Corporation) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) HKCU\...\Run: [EADM] - C:\Program Files (x86)\Origin\Origin.exe [3551576 2013-11-22] (Electronic Arts) HKCU\...\Run: [SandboxieControl] - C:\Program Files\Sandboxie\SbieCtrl.exe [759496 2013-10-16] (Sandboxie Holdings, LLC) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe [54840 2007-05-08] (Hewlett-Packard) HKLM-x32\...\Run: [ArcSoft Connection Service] - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe HKLM-x32\...\Run: [Aeria Ignite] - "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent HKLM-x32\...\Run: [LWS] - C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [204136 2012-09-12] (Logitech Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3806544 2013-11-29] (LogMeIn Inc.) Startup: C:\Users\Fabio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Fabio\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Fabio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Hauppauge Device Properties.lnk ShortcutTarget: Hauppauge Device Properties.lnk -> C:\Program Files (x86)\Hauppauge\DeviceCentral\HcwDCTrayTool.exe (Hauppauge Computer Works, Inc.) Startup: C:\Users\Fabio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Produktregistrierung.lnk ShortcutTarget: Logitech . Produktregistrierung.lnk -> C:\Program Files (x86)\Logitech\Ereg\eReg.exe (Leader Technologies/Logitech) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x64BDD92DF1E2CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com.anonymize-me.de/?anonymto=687474703A2F2F7777772E62696E672E636F6D2F7365617263683F713D7B7365617263685465726D737D26723D363439&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&k=0 SearchScopes: HKCU - {5510C1BC-D425-400F-BEA4-DAA0D9DBBAA1} URL = hxxp://de.wikipedia.org.anonymize-me.de/?to=64652E77696B6970656469612E6F7267&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 SearchScopes: HKCU - {AEFF98F7-6107-437E-8189-5BF176D79CD5} URL = hxxp://www.myvideo.de.anonymize-me.de/?to=6D79766964656F2E6465&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 SearchScopes: HKCU - {C21949E4-FF99-4721-9E7B-D79ACF72B247} URL = hxxp://search.ebay.de.anonymize-me.de/?to=656261792E6465&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 SearchScopes: HKCU - {DD54D9B5-6928-43EB-B164-321F13322A31} URL = hxxp://www.otto.de.anonymize-me.de/?to=6F74746F2E6465&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 SearchScopes: HKCU - {EED5A400-ED06-4F8D-ABB5-F562532DF3D9} URL = hxxp://www.amazon.de.anonymize-me.de/?to=616D617A6F6E2E6465&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 SearchScopes: HKCU - {F552348E-D10E-4CE7-9A06-DC56FE7FBB14} URL = hxxp://www.pricerunner.de.anonymize-me.de/?to=707269636572756E6E65722E6465&st={searchTerms}&clid=7c2dcca5-0b05-4a50-b86c-56f336dfad42&pid=chipde&mode=bounce&k=0 BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files (x86)\Perfect World Entertainment\Arc\plugins\ArcPluginIE.dll (Perfect World Entertainment Inc) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: ChromeFrame BHO - {ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7} - C:\Program Files (x86)\Google\Chrome Frame\Application\31.0.1650.57\npchrome_frame.dll (Google Inc.) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) Handler: gcf - {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - No File Handler-x32: gcf - {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - C:\Program Files (x86)\Google\Chrome Frame\Application\31.0.1650.57\npchrome_frame.dll (Google Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.40.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.40.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: check4change-owner - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\Extensions\check4change-owner@mozdev.org.xpi FF Extension: snt - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\Extensions\snt@dotlabs.co.xpi FF Extension: Adblock Plus - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\Profiles\q3r8j6nq.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: No Name - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\profiles\extensions\extensions FF Extension: No Name - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\profiles\extensions\searchplugins FF Extension: No Name - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\profiles\extensions\prefs.js FF Extension: No Name - C:\Users\Fabio\AppData\Roaming\Mozilla\Firefox\profiles\extensions\search.sqlite FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 Chrome: ======= CHR HomePage: hxxp://www.google.com CHR DefaultSearchKeyword: google.de CHR DefaultSearchProvider: Google CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultNewTabURL: {google:baseURL}_/chrome/newtab?{google:RLZ}{google:instantExtendedEnabledParameter}{google:ntpIsThemedParameter}ie={inputEncoding} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.4.1) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll (Apple Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll No File CHR Extension: (FlashFree) - C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Extensions\ebmieckllmmifjjbipnppinpiohpfahm\2.1.1_0 CHR Extension: (AdBlock) - C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.16_0 CHR Extension: (Linkclump) - C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfpjkncokllnfokkgpkobnkbkmelfefj\2.7.2_0 CHR Extension: (Google Wallet) - C:\Users\Fabio\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 ==================== Services (Whitelisted) ================= S3 ArcService; C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe [88424 2013-10-10] (Perfect World Entertainment Inc) R3 HcwDevCentralService; C:\Program Files (x86)\Hauppauge\DeviceCentral\HcwDevCentralService.exe [401232 2013-02-07] (Hauppauge Computer Works, Inc.) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15125280 2013-11-08] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-08-16] () R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [186056 2013-10-16] (Sandboxie Holdings, LLC) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.) S2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [x] ==================== Drivers (Whitelisted) ==================== R3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31968 2012-10-08] (Wondershare) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] () S3 hcwE5bda; C:\Windows\System32\drivers\hcwE5bda.sys [945136 2013-02-12] (Hauppauge Computer Work, Inc.) R3 LGSHidFilt; C:\Windows\System32\DRIVERS\LGSHidFilt.Sys [66800 2013-01-17] (Logitech Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] () R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [200552 2013-10-16] (Sandboxie Holdings, LLC) R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-06-21] (Anchorfree Inc.) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [x] S3 X6va013; \??\C:\Windows\SysWOW64\Drivers\X6va013 [x] S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-18 15:53 - 2013-12-18 15:53 - 00000000 ____D C:\Users\Fabio\Desktop\FRST-OlderVersion 2013-12-18 15:45 - 2013-12-18 15:45 - 00001268 _____ C:\Users\Fabio\Desktop\JRT.txt 2013-12-17 15:52 - 2013-12-17 15:52 - 00000000 ____D C:\Windows\ERUNT 2013-12-17 15:49 - 2013-12-17 15:49 - 01034531 _____ (Thisisu) C:\Users\Fabio\Desktop\JRT.exe 2013-12-17 15:39 - 2013-12-17 15:43 - 00000000 ____D C:\AdwCleaner 2013-12-17 15:39 - 2013-12-17 15:39 - 01226750 _____ C:\Users\Fabio\Downloads\adwcleaner.exe 2013-12-17 15:02 - 2013-12-17 15:02 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-12-17 15:02 - 2013-12-17 15:02 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Malwarebytes 2013-12-17 15:02 - 2013-12-17 15:02 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-12-17 15:01 - 2013-12-17 15:02 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-12-17 15:01 - 2013-12-17 15:01 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fabio\Downloads\mbam-setup-1.75.0.1300.exe 2013-12-17 15:01 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-12-16 19:26 - 2013-12-16 19:29 - 00024791 _____ C:\Users\Fabio\Desktop\Addition.txt 2013-12-16 19:23 - 2013-12-18 15:53 - 00022271 _____ C:\Users\Fabio\Desktop\FRST.txt 2013-12-16 19:23 - 2013-12-18 15:53 - 00000000 ____D C:\FRST 2013-12-16 19:19 - 2013-12-18 15:53 - 01929306 _____ (Farbar) C:\Users\Fabio\Desktop\FRST64.exe 2013-12-16 16:46 - 2013-12-16 16:46 - 00003164 _____ C:\Windows\System32\Tasks\{E2A23A20-E507-4860-8710-B7354F8F385A} 2013-12-16 16:44 - 2013-12-16 16:47 - 00000000 ____D C:\Users\Fabio\Desktop\HiJackThis 2013-12-16 16:44 - 2013-12-16 16:44 - 00388608 _____ (Trend Micro Inc.) C:\Users\Fabio\Downloads\HijackThis.exe 2013-12-13 23:03 - 2013-12-13 23:03 - 00262144 ____N C:\Windows\Minidump\121313-26239-01.dmp 2013-12-12 23:34 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-12 23:34 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-12 23:34 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-12 23:34 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-12 23:33 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-12 23:33 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-12 23:33 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-12 23:33 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-12 23:33 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-12 23:33 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-12 23:33 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-12 23:33 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-12 23:33 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-12 23:33 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-12 23:33 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-12 23:33 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-12 23:33 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-12 23:33 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-12 23:33 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-12 23:33 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-12 23:33 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-12 23:33 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-12 23:33 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-12 23:33 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-12 23:33 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-12 23:33 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-12 23:33 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-12 23:33 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-12 23:33 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-12 23:32 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-12 23:32 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-12 23:32 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-12 23:32 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-12 23:32 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-12 23:32 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-12 18:27 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-12 18:27 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-12 18:27 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-12 18:27 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-12 18:27 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-12 18:27 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-12 18:27 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-12 18:26 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-12 18:26 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-12 18:26 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-12 18:26 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-12 18:26 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-12 18:26 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-12 18:26 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-12 18:26 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-12 18:26 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-12 18:26 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-12 18:26 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-12 18:26 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-12 12:03 - 2013-12-12 12:04 - 98633040 _____ (Apple Inc.) C:\Users\Fabio\Downloads\iTunesSetup.exe 2013-12-11 21:44 - 2013-12-14 00:37 - 00009446 _____ C:\Users\Fabio\Desktop\Gilde.ods 2013-12-10 20:01 - 2013-12-10 20:01 - 00003906 _____ C:\Windows\System32\Tasks\Wettbewerbsanmeldung und Prüfung 2013-12-08 13:57 - 2013-12-08 13:57 - 00000000 ____D C:\Users\Fabio\Desktop\Plattformer 2013-12-08 11:40 - 2013-12-08 11:40 - 00000894 _____ C:\Users\Fabio\AppData\Local\recently-used.xbel 2013-12-08 11:11 - 2013-12-08 11:12 - 00000000 ____D C:\Users\Fabio\Desktop\Fabis neues spiel 2013-12-08 00:38 - 2013-12-08 00:38 - 00000000 ____D C:\Users\Fabio\AppData\Local\Macromedia 2013-12-08 00:26 - 2013-12-08 00:26 - 00262144 ____N C:\Windows\Minidump\120813-24835-01.dmp 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\Documents\Shiner 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\Documents\Robot Entertainment 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\AppData\Local\Robot Entertainment 2013-12-07 22:50 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-12-07 22:50 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-12-07 22:50 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-12-07 22:50 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-12-07 22:50 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-12-07 22:50 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-12-07 22:50 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-12-07 22:28 - 2013-12-07 22:28 - 01108256 _____ ( ) C:\Users\Fabio\Application.exe 2013-12-07 22:20 - 2013-12-07 22:34 - 01556776 _____ C:\Users\Fabio\Application.mfa 2013-12-07 22:20 - 2013-12-07 22:20 - 01550241 _____ C:\Users\Fabio\Application.001 2013-12-07 20:03 - 2013-12-07 21:30 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Clickteam 2013-12-07 20:02 - 2013-12-07 20:02 - 00001060 _____ C:\Users\Public\Desktop\Multimedia Fusion 2.lnk 2013-12-07 20:02 - 2013-12-07 20:02 - 00000000 ____D C:\Program Files (x86)\Multimedia Fusion 2 2013-12-07 19:52 - 2013-12-07 19:59 - 00000000 ____D C:\Users\Fabio\Desktop\Multimedia Fusion 2 2013-12-07 00:00 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-12-07 00:00 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-12-07 00:00 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-12-07 00:00 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-12-07 00:00 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-12-07 00:00 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-12-07 00:00 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-12-06 23:59 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-12-06 23:59 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-12-06 23:59 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-12-06 23:59 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-12-06 23:59 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-12-06 23:59 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-12-06 23:59 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-12-06 23:59 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-12-06 23:59 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-12-06 23:59 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-12-06 23:59 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-12-06 23:59 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-12-06 23:59 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-12-06 23:59 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-12-06 23:59 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-12-06 23:59 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-12-06 23:59 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-12-06 23:59 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-12-06 23:59 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-12-06 23:59 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-12-06 23:59 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-12-06 23:59 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-12-06 23:59 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-12-06 23:59 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-12-06 23:59 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-12-06 23:59 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-12-06 23:59 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-12-06 23:59 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-12-06 23:59 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-12-06 23:59 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-12-06 23:59 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-12-06 23:59 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-12-06 23:59 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-12-06 23:59 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-12-06 23:59 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-12-06 23:59 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-12-06 23:59 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-12-06 23:59 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-12-06 23:59 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-12-06 23:59 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-12-06 23:59 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-12-06 23:59 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-12-06 23:59 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-12-06 23:59 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-12-06 23:59 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-12-06 23:59 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-12-06 23:59 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-12-06 23:59 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-12-06 23:59 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-12-06 23:59 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-12-06 23:59 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-12-06 23:59 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-12-06 23:59 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-12-06 23:59 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-12-06 23:59 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-12-06 23:59 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-12-06 23:59 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-12-06 23:59 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-12-06 23:59 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-12-06 23:59 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-12-06 23:59 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-12-06 23:59 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-12-06 23:59 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-12-06 23:59 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-12-06 23:59 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-12-06 23:59 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-12-06 23:59 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-12-06 23:59 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-12-06 23:59 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-12-06 23:59 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-12-06 23:59 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-12-06 23:59 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-12-06 23:59 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-12-06 23:59 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2013-12-06 23:59 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2013-12-06 23:59 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-12-06 23:59 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-12-06 23:59 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-12-06 23:59 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-12-06 23:59 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-12-06 23:59 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-12-06 23:59 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-12-06 23:59 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-12-06 23:59 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-12-06 23:59 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-12-06 23:59 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-12-06 23:59 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-12-06 23:59 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-12-06 23:59 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-12-06 23:59 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-12-06 23:58 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-12-06 23:58 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-12-06 23:58 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-12-06 23:58 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-12-06 23:58 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-12-06 23:58 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-12-06 23:58 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-12-06 23:58 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-12-06 23:58 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-12-06 23:58 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-12-06 23:58 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-12-06 23:58 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-12-06 23:58 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-12-06 23:58 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-12-06 23:58 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-12-06 23:58 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-12-06 23:58 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-12-06 23:58 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-12-06 23:57 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-12-06 23:57 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-12-06 23:57 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-12-06 23:57 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-12-06 23:57 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-12-06 20:31 - 2013-12-06 20:31 - 00000222 _____ C:\Users\Fabio\Desktop\Orcs Must Die! 2.url 2013-12-06 20:30 - 2013-12-06 20:30 - 00000220 _____ C:\Users\Fabio\Desktop\Garry's Mod.url 2013-12-06 20:30 - 2013-12-06 20:30 - 00000199 _____ C:\Users\Fabio\Desktop\Natural Selection 2.url 2013-12-06 20:29 - 2013-12-06 20:29 - 00000221 _____ C:\Users\Fabio\Desktop\Magicka.url 2013-12-06 18:38 - 2013-12-06 18:38 - 00262144 ____N C:\Windows\Minidump\120613-21325-01.dmp 2013-12-06 18:29 - 2013-12-06 18:30 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\FiestaOnline 2013-12-04 19:55 - 2012-05-26 13:03 - 00000000 ____D C:\Users\Fabio\Desktop\Monster Rancher [German OST] 2013-12-03 23:35 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-03 23:32 - 2013-12-03 23:32 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-03 23:32 - 2013-12-03 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-03 23:32 - 2013-12-03 23:32 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-03 23:32 - 2013-12-03 23:32 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-03 23:32 - 2013-12-03 23:32 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-03 23:32 - 2013-12-03 23:32 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-03 23:32 - 2013-12-03 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-03 23:30 - 2013-12-03 23:35 - 00010277 _____ C:\Windows\IE11_main.log 2013-12-03 17:11 - 2013-12-03 17:11 - 00000997 _____ C:\Users\Fabio\Desktop\YGOPro.lnk 2013-12-03 17:03 - 2013-12-03 19:10 - 00000000 ____D C:\Program Files (x86)\DevPro 2013-12-03 15:53 - 2013-12-03 15:53 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-11-30 00:02 - 2013-11-30 00:02 - 00000000 ____D C:\Users\Fabio\Documents\Square Enix 2013-11-27 19:02 - 2013-11-27 19:02 - 00262144 ____N C:\Windows\Minidump\112713-23462-01.dmp 2013-11-24 00:51 - 2013-11-24 00:51 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-11-24 00:46 - 2013-11-14 12:57 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll 2013-11-24 00:46 - 2013-11-14 12:57 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2013-11-24 00:46 - 2013-11-14 12:57 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 18293608 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-24 00:46 - 2013-11-14 12:56 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-11-24 00:46 - 2013-11-14 12:56 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-11-24 00:44 - 2013-11-24 00:44 - 00000000 ____D C:\Users\Fabio\AppData\Local\NVIDIA Corporation 2013-11-24 00:35 - 2013-11-24 00:35 - 499088494 _____ C:\Windows\MEMORY.DMP 2013-11-24 00:35 - 2013-11-24 00:35 - 00291664 _____ C:\Windows\Minidump\112413-20701-01.dmp 2013-11-22 23:56 - 2013-12-14 19:27 - 00001702 _____ C:\Windows\Sandboxie.ini 2013-11-22 23:56 - 2013-11-24 18:45 - 00001020 _____ C:\Users\Fabio\Desktop\Sandboxed Web Browser.lnk 2013-11-22 23:55 - 2013-11-22 23:55 - 00000000 ____D C:\Program Files\Sandboxie 2013-11-21 15:56 - 2013-12-17 16:43 - 00029674 _____ C:\Users\Fabio\Desktop\Buch ohne Namen.odt ==================== One Month Modified Files and Folders ======= 2013-12-18 15:54 - 2013-12-16 19:23 - 00022271 _____ C:\Users\Fabio\Desktop\FRST.txt 2013-12-18 15:53 - 2013-12-18 15:53 - 00000000 ____D C:\Users\Fabio\Desktop\FRST-OlderVersion 2013-12-18 15:53 - 2013-12-16 19:23 - 00000000 ____D C:\FRST 2013-12-18 15:53 - 2013-12-16 19:19 - 01929306 _____ (Farbar) C:\Users\Fabio\Desktop\FRST64.exe 2013-12-18 15:45 - 2013-12-18 15:45 - 00001268 _____ C:\Users\Fabio\Desktop\JRT.txt 2013-12-18 15:43 - 2009-07-14 05:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-18 15:43 - 2009-07-14 05:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-18 15:38 - 2013-05-19 20:55 - 00000000 ___RD C:\Users\Fabio\Dropbox 2013-12-18 15:38 - 2013-05-19 20:50 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Dropbox 2013-12-18 15:38 - 2013-04-26 15:37 - 00000000 ____D C:\Program Files (x86)\Steam 2013-12-18 15:38 - 2013-04-23 16:47 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-12-18 15:37 - 2013-08-15 17:02 - 00000000 ____D C:\Program Files (x86)\Origin 2013-12-18 15:37 - 2013-04-23 19:45 - 00000000 ____D C:\Users\Fabio\AppData\Local\LogMeIn Hamachi 2013-12-18 15:34 - 2013-06-07 14:08 - 00039889 _____ C:\Windows\setupact.log 2013-12-18 15:34 - 2013-04-23 17:27 - 00000000 ____D C:\ProgramData\NVIDIA 2013-12-18 15:34 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-18 15:33 - 2013-04-23 16:58 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Skype 2013-12-18 15:33 - 2013-04-23 16:27 - 01974297 _____ C:\Windows\WindowsUpdate.log 2013-12-18 15:17 - 2013-04-23 16:47 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-12-17 22:00 - 2013-04-23 18:16 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-17 21:26 - 2013-08-26 21:45 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\.minecraft 2013-12-17 20:02 - 2013-04-23 18:58 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\TS3Client 2013-12-17 16:43 - 2013-11-21 15:56 - 00029674 _____ C:\Users\Fabio\Desktop\Buch ohne Namen.odt 2013-12-17 15:52 - 2013-12-17 15:52 - 00000000 ____D C:\Windows\ERUNT 2013-12-17 15:49 - 2013-12-17 15:49 - 01034531 _____ (Thisisu) C:\Users\Fabio\Desktop\JRT.exe 2013-12-17 15:43 - 2013-12-17 15:39 - 00000000 ____D C:\AdwCleaner 2013-12-17 15:43 - 2013-07-11 23:32 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Common 2013-12-17 15:39 - 2013-12-17 15:39 - 01226750 _____ C:\Users\Fabio\Downloads\adwcleaner.exe 2013-12-17 15:26 - 2013-06-07 14:08 - 00197160 _____ C:\Windows\PFRO.log 2013-12-17 15:02 - 2013-12-17 15:02 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-12-17 15:02 - 2013-12-17 15:02 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Malwarebytes 2013-12-17 15:02 - 2013-12-17 15:02 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-12-17 15:02 - 2013-12-17 15:01 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-12-17 15:01 - 2013-12-17 15:01 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Fabio\Downloads\mbam-setup-1.75.0.1300.exe 2013-12-16 19:29 - 2013-12-16 19:26 - 00024791 _____ C:\Users\Fabio\Desktop\Addition.txt 2013-12-16 17:21 - 2011-04-12 08:43 - 00699416 _____ C:\Windows\system32\perfh007.dat 2013-12-16 17:21 - 2011-04-12 08:43 - 00149556 _____ C:\Windows\system32\perfc007.dat 2013-12-16 17:21 - 2009-07-14 06:13 - 01641494 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-16 17:20 - 2013-06-18 21:42 - 01593956 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-12-16 16:49 - 2013-10-08 17:14 - 00000000 ____D C:\Program Files (x86)\PSPad editor 2013-12-16 16:47 - 2013-12-16 16:44 - 00000000 ____D C:\Users\Fabio\Desktop\HiJackThis 2013-12-16 16:46 - 2013-12-16 16:46 - 00003164 _____ C:\Windows\System32\Tasks\{E2A23A20-E507-4860-8710-B7354F8F385A} 2013-12-16 16:44 - 2013-12-16 16:44 - 00388608 _____ (Trend Micro Inc.) C:\Users\Fabio\Downloads\HijackThis.exe 2013-12-14 19:27 - 2013-11-22 23:56 - 00001702 _____ C:\Windows\Sandboxie.ini 2013-12-14 19:27 - 2013-04-23 16:27 - 00000000 ___RD C:\Users\Fabio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-12-14 17:19 - 2013-08-15 01:08 - 00000000 ____D C:\Windows\system32\MRT 2013-12-14 17:18 - 2013-04-28 17:30 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-14 13:46 - 2013-10-29 18:07 - 00000000 ____D C:\Users\Fabio\AppData\Local\Daedalic Entertainment 2013-12-14 00:37 - 2013-12-11 21:44 - 00009446 _____ C:\Users\Fabio\Desktop\Gilde.ods 2013-12-13 23:42 - 2013-07-16 19:05 - 00000000 ____D C:\Program Files (x86)\osu! 2013-12-13 23:04 - 2013-06-23 22:03 - 00000000 ____D C:\Windows\Minidump 2013-12-13 23:03 - 2013-12-13 23:03 - 00262144 ____N C:\Windows\Minidump\121313-26239-01.dmp 2013-12-13 16:25 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-13 14:49 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-13 14:48 - 2009-07-14 05:45 - 00297024 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-12 12:04 - 2013-12-12 12:03 - 98633040 _____ (Apple Inc.) C:\Users\Fabio\Downloads\iTunesSetup.exe 2013-12-11 17:00 - 2013-04-23 18:16 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 17:00 - 2013-04-23 18:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-11 17:00 - 2013-04-23 18:16 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-10 20:01 - 2013-12-10 20:01 - 00003906 _____ C:\Windows\System32\Tasks\Wettbewerbsanmeldung und Prüfung 2013-12-10 18:48 - 2013-10-31 14:27 - 00013024 _____ C:\Users\Fabio\Desktop\Buchhaltung.ods 2013-12-10 13:27 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-12-08 19:26 - 2013-04-23 18:58 - 00000000 ____D C:\Users\Fabio\AppData\Local\TeamSpeak 3 Client 2013-12-08 13:57 - 2013-12-08 13:57 - 00000000 ____D C:\Users\Fabio\Desktop\Plattformer 2013-12-08 11:52 - 2013-06-13 16:28 - 00000000 ____D C:\Users\Fabio\.gimp-2.8 2013-12-08 11:40 - 2013-12-08 11:40 - 00000894 _____ C:\Users\Fabio\AppData\Local\recently-used.xbel 2013-12-08 11:12 - 2013-12-08 11:11 - 00000000 ____D C:\Users\Fabio\Desktop\Fabis neues spiel 2013-12-08 00:38 - 2013-12-08 00:38 - 00000000 ____D C:\Users\Fabio\AppData\Local\Macromedia 2013-12-08 00:36 - 2013-05-17 14:28 - 00000000 ____D C:\Users\Fabio\AppData\Local\Adobe 2013-12-08 00:26 - 2013-12-08 00:26 - 00262144 ____N C:\Windows\Minidump\120813-24835-01.dmp 2013-12-08 00:00 - 2013-05-25 14:04 - 00000000 ____D C:\Program Files (x86)\SpeedFan 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\Documents\Shiner 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\Documents\Robot Entertainment 2013-12-07 22:50 - 2013-12-07 22:50 - 00000000 ____D C:\Users\Fabio\AppData\Local\Robot Entertainment 2013-12-07 22:49 - 2013-06-15 01:04 - 00336444 _____ C:\Windows\DirectX.log 2013-12-07 22:34 - 2013-12-07 22:20 - 01556776 _____ C:\Users\Fabio\Application.mfa 2013-12-07 22:34 - 2013-04-23 16:27 - 00000000 ____D C:\Users\Fabio 2013-12-07 22:28 - 2013-12-07 22:28 - 01108256 _____ ( ) C:\Users\Fabio\Application.exe 2013-12-07 22:20 - 2013-12-07 22:20 - 01550241 _____ C:\Users\Fabio\Application.001 2013-12-07 21:30 - 2013-12-07 20:03 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Clickteam 2013-12-07 20:02 - 2013-12-07 20:02 - 00001060 _____ C:\Users\Public\Desktop\Multimedia Fusion 2.lnk 2013-12-07 20:02 - 2013-12-07 20:02 - 00000000 ____D C:\Program Files (x86)\Multimedia Fusion 2 2013-12-07 19:59 - 2013-12-07 19:52 - 00000000 ____D C:\Users\Fabio\Desktop\Multimedia Fusion 2 2013-12-06 20:49 - 2013-11-16 16:58 - 00000000 ____D C:\Users\Fabio\Desktop\Pkmn-Ptc 2013-12-06 20:31 - 2013-12-06 20:31 - 00000222 _____ C:\Users\Fabio\Desktop\Orcs Must Die! 2.url 2013-12-06 20:30 - 2013-12-06 20:30 - 00000220 _____ C:\Users\Fabio\Desktop\Garry's Mod.url 2013-12-06 20:30 - 2013-12-06 20:30 - 00000199 _____ C:\Users\Fabio\Desktop\Natural Selection 2.url 2013-12-06 20:29 - 2013-12-06 20:29 - 00000221 _____ C:\Users\Fabio\Desktop\Magicka.url 2013-12-06 18:38 - 2013-12-06 18:38 - 00262144 ____N C:\Windows\Minidump\120613-21325-01.dmp 2013-12-06 18:30 - 2013-12-06 18:29 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\FiestaOnline 2013-12-04 19:58 - 2013-05-03 16:18 - 00000000 ____D C:\Users\Fabio\AppData\Roaming\Audacity 2013-12-04 15:29 - 2013-04-23 16:27 - 00001421 _____ C:\Users\Fabio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-04 15:27 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-03 23:35 - 2013-12-03 23:30 - 00010277 _____ C:\Windows\IE11_main.log 2013-12-03 23:32 - 2013-12-03 23:32 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-03 23:32 - 2013-12-03 23:32 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-03 23:32 - 2013-12-03 23:32 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-03 23:32 - 2013-12-03 23:32 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-03 23:32 - 2013-12-03 23:32 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-03 23:32 - 2013-12-03 23:32 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-03 23:32 - 2013-12-03 23:32 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-03 23:32 - 2013-12-03 23:32 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-03 23:32 - 2013-12-03 23:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-03 19:27 - 2013-08-22 20:36 - 00000000 ____D C:\Users\Fabio\Downloads\YGOPRO Dawn of a New Era 2.9.12.2242 2013-12-03 19:10 - 2013-12-03 17:03 - 00000000 ____D C:\Program Files (x86)\DevPro 2013-12-03 17:11 - 2013-12-03 17:11 - 00000997 _____ C:\Users\Fabio\Desktop\YGOPro.lnk 2013-12-03 15:55 - 2013-05-08 19:18 - 00000000 ____D C:\Users\Fabio\AppData\Local\CrashDumps 2013-12-03 15:53 - 2013-12-03 15:53 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-12-03 11:12 - 2013-04-23 16:47 - 00004104 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-12-03 11:12 - 2013-04-23 16:47 - 00003852 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-12-03 10:39 - 2013-07-10 14:28 - 00000000 ____D C:\Users\Fabio\AppData\Local\Paint.NET 2013-11-30 00:02 - 2013-11-30 00:02 - 00000000 ____D C:\Users\Fabio\Documents\Square Enix 2013-11-27 19:02 - 2013-11-27 19:02 - 00262144 ____N C:\Windows\Minidump\112713-23462-01.dmp 2013-11-26 20:42 - 2013-04-23 16:58 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-11-26 20:42 - 2013-04-23 16:58 - 00000000 ____D C:\ProgramData\Skype 2013-11-26 12:54 - 2013-12-12 23:33 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-26 11:19 - 2013-12-12 23:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-26 11:18 - 2013-12-12 23:33 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-26 11:11 - 2013-12-12 23:32 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-26 10:48 - 2013-12-12 23:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-26 10:46 - 2013-12-12 23:33 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-26 10:41 - 2013-12-12 23:33 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-26 10:29 - 2013-12-12 23:33 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-26 10:27 - 2013-12-12 23:33 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-26 10:23 - 2013-12-12 23:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-26 10:21 - 2013-12-12 23:33 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-26 10:18 - 2013-12-12 23:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-26 10:18 - 2013-12-12 23:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-26 10:16 - 2013-12-12 23:33 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-26 09:57 - 2013-12-12 23:33 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-26 09:38 - 2013-12-12 23:33 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-26 09:38 - 2013-12-12 23:33 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-26 09:35 - 2013-12-12 23:32 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-26 09:32 - 2013-12-12 23:33 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-26 09:28 - 2013-12-12 23:33 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-26 09:16 - 2013-12-12 23:32 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-26 09:02 - 2013-12-12 23:32 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-26 08:48 - 2013-12-12 23:32 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-26 08:32 - 2013-12-12 23:33 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-26 08:26 - 2013-12-12 23:32 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-26 08:07 - 2013-12-12 23:33 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-26 07:40 - 2013-12-12 23:33 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-26 07:34 - 2013-12-12 23:33 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-26 07:34 - 2013-12-12 23:33 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-26 07:33 - 2013-12-12 23:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-26 07:27 - 2013-12-12 23:33 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-24 18:45 - 2013-11-22 23:56 - 00001020 _____ C:\Users\Fabio\Desktop\Sandboxed Web Browser.lnk 2013-11-24 00:51 - 2013-11-24 00:51 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-11-24 00:51 - 2013-04-23 17:33 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-11-24 00:50 - 2013-04-23 17:33 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-11-24 00:44 - 2013-11-24 00:44 - 00000000 ____D C:\Users\Fabio\AppData\Local\NVIDIA Corporation 2013-11-24 00:35 - 2013-11-24 00:35 - 499088494 _____ C:\Windows\MEMORY.DMP 2013-11-24 00:35 - 2013-11-24 00:35 - 00291664 _____ C:\Windows\Minidump\112413-20701-01.dmp 2013-11-23 19:26 - 2013-12-12 18:27 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-11-23 18:47 - 2013-12-12 18:27 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-11-22 23:55 - 2013-11-22 23:55 - 00000000 ____D C:\Program Files\Sandboxie 2013-11-19 11:32 - 2013-08-10 13:39 - 00001912 _____ C:\Windows\epplauncher.mif 2013-11-19 11:32 - 2013-08-10 13:38 - 00000000 ____D C:\Program Files\Microsoft Security Client 2013-11-19 11:32 - 2013-08-10 13:38 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client 2013-11-19 11:21 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-11-18 14:44 - 2013-06-24 09:23 - 00000000 ____D C:\Users\Fabio\Desktop\Let´s Play Files to move or delete: ==================== C:\Users\Fabio\Application.exe Some content of TEMP: ==================== C:\Users\Fabio\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Fabio\AppData\Local\Temp\nvStInst.exe C:\Users\Fabio\AppData\Local\Temp\Quarantine.exe C:\Users\Fabio\AppData\Local\Temp\sfamcc00001.dll C:\Users\Fabio\AppData\Local\Temp\sfamcc00002.dll C:\Users\Fabio\AppData\Local\Temp\sfamcc00003.dll C:\Users\Fabio\AppData\Local\Temp\sfareca00001.dll C:\Users\Fabio\AppData\Local\Temp\sfareca00002.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-10 12:05 ==================== End Of Log ============================ --- --- --- |
19.12.2013, 11:51 | #8 |
/// the machine /// TB-Ausbilder | Offermosquito und Weiße Popups in ChromeESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Offermosquito und Weiße Popups in Chrome |
beheben, browser, entfernen, erweiterung, fenster, google, google chrome, installiert, jegliche, nicht installiert, offermosquito, pop up, popups, probleme, pup.optional.delta.a, pup.optional.lyricsad, pup.optional.offermosquito.a, schonmal, vorhanden, weiterhelfen |