|
Plagegeister aller Art und deren Bekämpfung: Laptop niedrige FPS ohne Datenträgerüberprüfung beim StartWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
02.01.2014, 13:41 | #1 |
| Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Hallo, ich hoffe ich bin hier richtig. Mein Problem ist folgendes: Wenn ich meinen Laptop (Win 7 64 bit) normal starte, dann fängt dieser noch 5-10 Minuten extrem an zu laggen. Man kann kaum was machen und klicken, alles ist verdammt langsam. Also starte ich den Laptop neu aber diesmal mit der Einstellung, dass ich eine Datenträgerüberprüfung beim Starten mache... Nun geht alles super und die Spiele und Videos laufen flüssig. Ich weiß nicht was es sein könnte und ich hoffe man kann mir hier helfen. Ich habe FRST Logs, MBAM, Adwcleaner und JRT. Ich poste erstmal die FRST Logs, wenn die anderen benötigt werden bescheid geben FRST: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-01-2014 01 Ran by Lukas (administrator) on LUKAS-PC on 02-01-2014 13:24:38 Running from C:\Users\Lukas\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\System32\PnkBstrA.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiMiniService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiResumeSrv.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe (ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe (ASUS) C:\Program Files\P4G\BatteryLife.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (ASUS) C:\Windows\AsScrPro.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [VizorHtmlDialog.exe] - C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe [1123664 2010-10-08] (Trend Micro Inc.) HKLM\...\Run: [Trend Micro Client Framework] - C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiWatchDog.exe [192520 2010-10-12] (Trend Micro Inc.) HKLM\...\Run: [Trend Micro Titanium] - C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe [322384 2010-09-17] (Trend Micro Inc.) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2189416 2011-03-01] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2589992 2011-04-13] (ELAN Microelectronics Corp.) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1012000 2013-05-16] (NVIDIA Corporation) HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] () HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-01] (AVAST Software) AppInit_DLLs: C:\ProgramData\System Booster\SystemBooster_x64.dll [4173824 2013-12-27] () AppInit_DLLs-x32: c:\progra~3\system~1\system~1.dll [4312064 2013-12-27] () BootExecute: autocheck autochk /p ߾섰հ ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.bing.com SearchScopes: HKLM-x32 - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUT SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = BHO: ExstrraCOaupon - {0467C77D-BE4D-B0E2-2151-DCF1D79AE4F7} - C:\ProgramData\ExstrraCOaupon\N96.x64.dll No File BHO: DigiSaveeRe - {2C399EDA-A430-14F9-354E-4BA5F400C919} - C:\ProgramData\DigiSaveeRe\rM.x64.dll No File BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\6.5.1234\6.5.1234\TmBpIe64.dll (Trend Micro Inc.) Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1381\6.5.1234\TmIEPlg.dll (Trend Micro Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\6.5.1234\6.5.1234\TmBpIe32.dll (Trend Micro Inc.) Handler-x32: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll (Trend Micro Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{59A03F8B-E885-4DBC-86DC-7B1482DC4C8E}: [NameServer]8.8.8.8,8.8.4.4 FireFox: ======== FF ProfilePath: C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4wrah7kf.default FF NewTab: hxxp://www.google.com/firefox FF SearchEngineOrder.1: Google FF SelectedSearchEngine: StartWeb FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.5.0 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: ZEON/PDF,version=2.0 - C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml FF HKLM-x32\...\Firefox\Extensions: [{22C7F6C6-8D67-4534-92B5-529A0EC09405}] - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension\ FF Extension: Trend Micro NSC Firefox Extension - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension\ FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF Chrome: ======= CHR HomePage: hxxp://www.google.com CHR RestoreOnStartup: "hxxp://www.google.com" CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll () CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\\npsitesafety.dll No File CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U21) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Zeon Plus) - C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) CHR Plugin: (Windows Live? Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () CHR Plugin: (Shockwave for Director) - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll (Adobe Systems, Inc.) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll No File CHR Extension: (AdBlock) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.10_0 CHR Extension: (ExstrraCOaupon) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\iakkomkefpkcjnncgfiodeihpochnjbi\4.3 CHR Extension: (Chrome In-App Payments service) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0 CHR Extension: (Auto Refresh Plus) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\oilipfekkmncanaajkapbpancpelijih\1.8.9.22_0 CHR HKLM-x32\...\Chrome\Extension: [hkoahcaobjbihehldfimhblmhgalcipm] - C:\Users\Lukas\AppData\Local\CRE\hkoahcaobjbihehldfimhblmhgalcipm.crx CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= S2 a1851772; C:\Windows\system32\rundll32.exe [45568 2009-07-14] (Microsoft Corporation) S2 a1851772; C:\Windows\SysWow64\rundll32.exe [44544 2009-07-14] (Microsoft Corporation) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-01] (AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-06-22] () R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2013-10-06] () S4 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [97552 2012-02-06] (SANDBOXIE L.T.D) R2 TiMiniService; C:\Program Files\Trend Micro\Titanium\TiMiniService.exe [241488 2010-09-17] (Trend Micro Inc.) S3 Amsp; "C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe" coreFrameworkHost.exe -m=rb -dt=60000 [x] ==================== Drivers (Whitelisted) ==================== R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-01] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2014-01-01] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-01-01] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1034464 2014-01-01] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422216 2014-01-01] (AVAST Software) R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [79672 2014-01-01] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-12-19] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-01] () R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) S3 KoneFltr; C:\Windows\System32\drivers\Kone.sys [15488 2008-12-11] (ROCCAT Ltd) S3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [161432 2012-02-06] (SANDBOXIE L.T.D) R2 tmactmon; C:\Windows\System32\DRIVERS\tmactmon.sys [90704 2010-09-17] (Trend Micro Inc.) R2 tmcomm; C:\Windows\System32\DRIVERS\tmcomm.sys [144464 2010-09-17] (Trend Micro Inc.) R2 tmevtmgr; C:\Windows\System32\DRIVERS\tmevtmgr.sys [67664 2010-09-17] (Trend Micro Inc.) R1 tmtdi; C:\Windows\System32\DRIVERS\tmtdi.sys [105552 2010-09-17] (Trend Micro Inc.) S3 cpuz133; \??\C:\Users\Lukas\AppData\Local\Temp\cpuz133\cpuz133_x64.sys [x] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-02 13:23 - 2014-01-02 13:25 - 00016675 _____ C:\Users\Lukas\Downloads\FRST.txt 2014-01-02 12:36 - 2014-01-02 12:38 - 00001175 _____ C:\Users\Lukas\Desktop\AdwCleaner[R2].txt 2014-01-02 12:29 - 2014-01-02 12:29 - 01931426 _____ (Farbar) C:\Users\Lukas\Downloads\FRST64.exe 2014-01-02 12:29 - 2014-01-02 12:29 - 00000000 ____D C:\FRST 2014-01-02 12:24 - 2014-01-02 12:24 - 00002374 _____ C:\Users\Lukas\Desktop\JRT.txt 2014-01-02 12:02 - 2014-01-02 12:02 - 01036305 _____ (Thisisu) C:\Users\Lukas\Downloads\JRT.exe 2014-01-02 12:02 - 2014-01-02 12:02 - 00000000 ____D C:\Windows\ERUNT 2014-01-01 23:01 - 2014-01-01 23:01 - 02347384 _____ (ESET) C:\Users\Lukas\Downloads\esetsmartinstaller_enu.exe 2014-01-01 21:03 - 2014-01-01 21:03 - 00001726 _____ C:\Users\Public\Desktop\Defraggler.lnk 2014-01-01 21:03 - 2014-01-01 21:03 - 00000000 ____D C:\Program Files\Defraggler 2014-01-01 21:02 - 2014-01-01 21:02 - 04208656 _____ (Piriform Ltd) C:\Users\Lukas\Downloads\dfsetup216.exe 2014-01-01 20:57 - 2014-01-01 21:09 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\AllDup 2014-01-01 20:57 - 2014-01-01 20:57 - 00000000 ____D C:\ProgramData\AllDup 2014-01-01 20:57 - 2014-01-01 20:57 - 00000000 ____D C:\Program Files (x86)\AllDup 2014-01-01 20:57 - 2010-10-13 06:42 - 02369456 _____ (Codejock Software) C:\Windows\SysWOW64\Codejock.CommandBars.v13.4.2.ocx 2014-01-01 20:57 - 2010-08-20 21:53 - 00086016 _____ (Michael Thummerer Software Design) C:\Windows\SysWOW64\mtSplitter.ocx 2014-01-01 20:57 - 2010-06-11 10:50 - 00089888 _____ (Michael Thummerer Software Design) C:\Windows\SysWOW64\mtFrame.ocx 2014-01-01 20:57 - 2010-06-01 14:45 - 01005088 _____ (Bennet-Tec Information Systems, Inc) C:\Windows\SysWOW64\TList8.ocx 2014-01-01 20:57 - 2010-03-25 10:33 - 00171752 _____ (Michael Thummerer Software Design) C:\Windows\SysWOW64\mtRTF2.ocx 2014-01-01 20:57 - 2009-10-13 00:02 - 00044736 _____ (Michael Thummerer Software Design) C:\Windows\SysWOW64\mtSubclass.dll 2014-01-01 20:57 - 2009-10-13 00:01 - 00077504 _____ (Michael Thummerer Software Design) C:\Windows\SysWOW64\mtScrollContainer.ocx 2014-01-01 20:57 - 2008-01-29 07:57 - 00450560 _____ (LogicNP Software (hxxp://www.ssware.com)) C:\Windows\SysWOW64\fldrvw90.ocx 2014-01-01 20:56 - 2014-01-01 20:56 - 03503200 _____ (Michael Thummerer Software Design ) C:\Users\Lukas\Downloads\alldup_3.4.24.exe 2014-01-01 20:26 - 2014-01-01 20:26 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\AVAST Software 2014-01-01 20:22 - 2014-01-01 21:07 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-01-01 20:18 - 2014-01-01 20:22 - 00207904 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-01 20:18 - 2014-01-01 20:22 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys 2014-01-01 19:56 - 2014-01-02 12:39 - 00000000 ____D C:\AdwCleaner 2014-01-01 19:56 - 2014-01-01 19:56 - 01233962 _____ C:\Users\Lukas\Downloads\adwcleaner.exe 2014-01-01 19:18 - 2014-01-01 19:18 - 00001111 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Malwarebytes 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-01 19:18 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-01-01 19:17 - 2014-01-01 19:17 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Lukas\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-01 19:17 - 2014-01-01 19:17 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Lukas\Downloads\mbam-setup-1.75.0.1300 (1).exe 2014-01-01 15:01 - 2014-01-01 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{EBC7CC9F-E327-4DCB-9D9B-26703C2D328A} 2014-01-01 14:21 - 2014-01-01 14:21 - 00003088 _____ C:\Windows\System32\Tasks\{4C5D98D2-752C-4356-B8B9-DF934338DE81} 2013-12-31 20:59 - 2014-01-01 19:46 - 00000000 ____D C:\ProgramData\DigiSaveeRe 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\Users\Lukas\AppData\Local\Packages 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\ProgramData\kgladbfpiccckdamgjambjmjffcaldgg 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\ProgramData\fa244bcb520a9ef5 2013-12-31 15:01 - 2013-12-31 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8DCF181F-4B54-497E-BAA7-987076253F2F} 2013-12-30 15:00 - 2013-12-30 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{C2250512-FAEC-43CE-B543-3CB0D8EDC733} 2013-12-29 15:02 - 2013-12-29 15:02 - 00003088 _____ C:\Windows\System32\Tasks\{8C03A2A2-F47B-42E5-A855-2ACA849099B6} 2013-12-28 15:01 - 2013-12-28 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{1F0B2D4B-6E3F-4F00-913E-4C831E42508D} 2013-12-27 18:33 - 2013-12-27 18:33 - 00000000 ____D C:\ProgramData\System Booster 2013-12-27 15:01 - 2013-12-27 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{E515B00A-20E3-4AA3-BEAC-A3EBCD12C396} 2013-12-26 15:01 - 2013-12-26 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{608FC186-BE24-45D5-97FB-10E066197B1F} 2013-12-25 15:01 - 2013-12-25 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8C8D8310-EEC1-49EA-8972-B688685309B8} 2013-12-24 15:01 - 2013-12-24 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{183F115B-9B0D-4D20-A1B8-9B00177E2D31} 2013-12-23 15:01 - 2013-12-23 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{BAB0D4A5-95EB-4E29-9384-6F5FFA74E6E7} 2013-12-22 15:01 - 2013-12-22 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{BFE98320-E6D5-4520-8E4F-25A071F6DE13} 2013-12-21 15:02 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-21 15:02 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-21 15:02 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-21 15:02 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-21 15:02 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-21 15:02 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-21 15:02 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-21 15:02 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-21 15:02 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-21 15:02 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-21 15:02 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-21 15:02 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-21 15:02 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-21 15:02 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-21 15:02 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-21 15:02 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-21 15:02 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-21 15:02 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-21 15:02 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-21 15:02 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-21 15:02 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-21 15:02 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-21 15:02 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-21 15:02 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-21 15:02 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-21 15:02 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-21 15:02 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-21 15:02 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-21 15:02 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-21 15:02 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-21 15:02 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-21 15:01 - 2013-12-21 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{455A8F68-61C2-4F86-9B34-11383681CC38} 2013-12-20 20:25 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-20 20:19 - 2013-12-20 20:19 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-20 20:19 - 2013-12-20 20:19 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-20 20:19 - 2013-12-20 20:19 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-20 20:19 - 2013-12-20 20:19 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-20 20:19 - 2013-12-20 20:19 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-20 20:19 - 2013-12-20 20:19 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-20 20:19 - 2013-12-20 20:19 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-20 20:16 - 2013-12-20 20:16 - 00003088 _____ C:\Windows\System32\Tasks\{EFAC24BD-59FD-4AB5-8BE5-B2CE564C5FF5} 2013-12-19 15:01 - 2013-12-19 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{FEEF7C98-755B-4628-98F6-D70BFA7C22E3} 2013-12-18 18:00 - 2013-12-18 18:00 - 00003088 _____ C:\Windows\System32\Tasks\{8BB093DE-A975-4F04-8772-BBDDAC9E939C} 2013-12-17 21:06 - 2013-12-17 21:06 - 00003088 _____ C:\Windows\System32\Tasks\{1F54A357-F851-410F-9256-03D5AB4319CC} 2013-12-16 22:35 - 2013-12-16 22:35 - 02687875 _____ C:\Users\Lukas\Downloads\MA2000.zip 2013-12-16 16:51 - 2013-12-16 16:51 - 00003088 _____ C:\Windows\System32\Tasks\{23FDAE0A-23AA-422F-B7D9-AD5EA15F1F73} 2013-12-15 15:01 - 2013-12-15 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8FE9103D-E469-499F-92F6-C2E4354D0789} 2013-12-13 20:46 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-13 20:46 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-13 20:46 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-13 20:46 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-12 16:03 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-12 16:03 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-12 16:03 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-12 16:03 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-12 16:03 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-12 16:03 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-12 16:03 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-12 16:03 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-12 16:03 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-12 16:03 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-12 16:03 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-12 16:03 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-12 16:03 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-12 16:03 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-12 16:03 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-12 16:03 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-12 16:03 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-12 16:03 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-12 16:03 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-12 15:37 - 2013-12-12 15:37 - 00003088 _____ C:\Windows\System32\Tasks\{B5BD9B74-107A-4F08-898E-798727C012AB} 2013-12-11 19:26 - 2013-12-11 19:26 - 00000000 __SHD C:\found.005 2013-12-11 18:53 - 2013-12-11 18:53 - 09293192 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2013-12-10 17:32 - 2013-12-10 17:32 - 08098768 _____ C:\Users\Lukas\Downloads\teeworlds-0.6.2-win64.zip 2013-12-10 17:11 - 2013-12-10 17:11 - 00003088 _____ C:\Windows\System32\Tasks\{1CE2E33D-9B31-423C-B0DB-41DF2AEA8EC8} 2013-12-09 20:19 - 2013-12-09 20:19 - 00003088 _____ C:\Windows\System32\Tasks\{C1F8CB5B-2B25-4441-919D-F75C9EDF612E} 2013-12-09 00:09 - 2013-12-09 00:09 - 00016413 _____ C:\Users\Lukas\Downloads\CzickiPresentation (1).odt 2013-12-08 23:13 - 2013-12-08 23:13 - 00015263 _____ C:\Users\Lukas\Downloads\CzickiPresentation.odt 2013-12-08 15:00 - 2013-12-08 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{E1EE22D1-01EF-403F-BF32-508C297CD17A} 2013-12-07 21:12 - 2014-01-01 20:08 - 00000000 ____D C:\Users\Lukas\Desktop\Schule 2013-12-07 15:00 - 2013-12-07 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{EB351D6F-D363-4668-B6BF-521033422CE2} 2013-12-06 15:00 - 2013-12-06 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{738BC984-8AE8-4EB3-8B41-E2791D6048BA} 2013-12-05 21:25 - 2013-12-05 21:25 - 00003088 _____ C:\Windows\System32\Tasks\{CA493F92-35B8-4030-8E5C-83CE3AD35D2D} 2013-12-04 15:54 - 2013-12-04 15:54 - 00003088 _____ C:\Windows\System32\Tasks\{629CFABA-9D9D-432B-B194-44443CDD3E07} 2013-12-03 22:39 - 2013-12-03 22:39 - 02091008 _____ () C:\Users\Lukas\Downloads\ebt.exe 2013-12-03 22:39 - 2013-12-03 22:39 - 00001493 _____ C:\Users\Lukas\Downloads\_options.ini 2013-12-03 22:39 - 2013-12-03 22:39 - 00000558 _____ C:\Users\Lukas\Downloads\_layout.css 2013-12-03 22:39 - 2013-12-03 22:39 - 00000113 _____ C:\Users\Lukas\Downloads\_blank.html 2013-12-03 22:39 - 2013-12-03 22:39 - 00000000 _____ C:\Users\Lukas\Downloads\_locationsbackup.dat 2013-12-03 22:39 - 2013-12-03 22:39 - 00000000 _____ C:\Users\Lukas\Downloads\_locations.dat 2013-12-03 22:39 - 2013-12-03 22:39 - 00000000 _____ C:\Users\Lukas\Downloads\_comments.dat 2013-12-03 22:39 - 2013-12-03 22:39 - 00000000 _____ C:\Users\Lukas\Downloads\_$1.tmp 2013-12-03 22:39 - 2013-12-03 22:39 - 00000000 _____ C:\Users\Lukas\Documents\mynotes.csv 2013-12-03 15:00 - 2013-12-03 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{36B70DAF-2172-44BF-9ABC-3CE8D5036B7E} ==================== One Month Modified Files and Folders ======= 2014-01-02 13:25 - 2014-01-02 13:23 - 00016675 _____ C:\Users\Lukas\Downloads\FRST.txt 2014-01-02 13:23 - 2013-04-05 00:55 - 00000000 ____D C:\Stormblade 2014-01-02 13:22 - 2013-05-10 10:37 - 00000000 ____D C:\ProgramData\EPS 2014-01-02 13:18 - 2012-11-30 22:05 - 00000000 ____D C:\Program Files (x86)\MyVideoConverter 2014-01-02 13:17 - 2013-01-06 02:52 - 00000000 ____D C:\Program Files\Just4Story 2014-01-02 13:13 - 2012-03-16 05:51 - 01294246 _____ C:\Windows\WindowsUpdate.log 2014-01-02 12:53 - 2012-07-20 23:09 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-02 12:47 - 2011-01-12 16:50 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-02 12:39 - 2014-01-01 19:56 - 00000000 ____D C:\AdwCleaner 2014-01-02 12:38 - 2014-01-02 12:36 - 00001175 _____ C:\Users\Lukas\Desktop\AdwCleaner[R2].txt 2014-01-02 12:29 - 2014-01-02 12:29 - 01931426 _____ (Farbar) C:\Users\Lukas\Downloads\FRST64.exe 2014-01-02 12:29 - 2014-01-02 12:29 - 00000000 ____D C:\FRST 2014-01-02 12:24 - 2014-01-02 12:24 - 00002374 _____ C:\Users\Lukas\Desktop\JRT.txt 2014-01-02 12:07 - 2009-07-14 05:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-02 12:07 - 2009-07-14 05:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-02 12:02 - 2014-01-02 12:02 - 01036305 _____ (Thisisu) C:\Users\Lukas\Downloads\JRT.exe 2014-01-02 12:02 - 2014-01-02 12:02 - 00000000 ____D C:\Windows\ERUNT 2014-01-02 11:59 - 2013-07-07 11:38 - 00372746 _____ C:\Windows\PFRO.log 2014-01-02 11:59 - 2013-06-22 18:33 - 00036488 _____ C:\Windows\setupact.log 2014-01-02 11:59 - 2012-12-09 22:08 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-02 11:59 - 2012-03-16 06:20 - 00045056 _____ C:\Windows\system32\acovcnt.exe 2014-01-02 11:59 - 2011-01-12 16:50 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-02 11:59 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-01 23:01 - 2014-01-01 23:01 - 02347384 _____ (ESET) C:\Users\Lukas\Downloads\esetsmartinstaller_enu.exe 2014-01-01 23:01 - 2013-10-11 23:25 - 00000000 ____D C:\Users\Lukas\AppData\Local\Battle.net 2014-01-01 21:30 - 2013-10-02 18:14 - 00000000 ____D C:\Users\Lukas\Downloads\PAC-MAN Championship Edition DX+ 2014-01-01 21:09 - 2014-01-01 20:57 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\AllDup 2014-01-01 21:07 - 2014-01-01 20:22 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-01-01 21:03 - 2014-01-01 21:03 - 00001726 _____ C:\Users\Public\Desktop\Defraggler.lnk 2014-01-01 21:03 - 2014-01-01 21:03 - 00000000 ____D C:\Program Files\Defraggler 2014-01-01 21:02 - 2014-01-01 21:02 - 04208656 _____ (Piriform Ltd) C:\Users\Lukas\Downloads\dfsetup216.exe 2014-01-01 20:57 - 2014-01-01 20:57 - 00000000 ____D C:\ProgramData\AllDup 2014-01-01 20:57 - 2014-01-01 20:57 - 00000000 ____D C:\Program Files (x86)\AllDup 2014-01-01 20:56 - 2014-01-01 20:56 - 03503200 _____ (Michael Thummerer Software Design ) C:\Users\Lukas\Downloads\alldup_3.4.24.exe 2014-01-01 20:26 - 2014-01-01 20:26 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\AVAST Software 2014-01-01 20:25 - 2012-03-16 06:20 - 00002400 _____ C:\Windows\system32\AutoRunFilter.ini 2014-01-01 20:22 - 2014-01-01 20:18 - 00207904 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-01 20:22 - 2014-01-01 20:18 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys 2014-01-01 20:22 - 2012-11-23 23:44 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-01 20:22 - 2012-03-15 23:03 - 01034464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-01 20:22 - 2012-03-15 23:03 - 00422216 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-01-01 20:22 - 2012-03-15 23:03 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-01 20:22 - 2012-03-15 23:03 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-01-01 20:22 - 2012-03-15 23:03 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-01 20:22 - 2012-03-15 23:03 - 00001968 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-01 20:22 - 2012-03-15 23:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-01 20:18 - 2012-03-15 23:03 - 00000000 _____ C:\Windows\SysWOW64\config.nt 2014-01-01 20:18 - 2012-03-15 23:01 - 00000000 ____D C:\ProgramData\AVAST Software 2014-01-01 20:08 - 2013-12-07 21:12 - 00000000 ____D C:\Users\Lukas\Desktop\Schule 2014-01-01 20:06 - 2013-04-03 16:28 - 00000000 ____D C:\Users\Lukas\Desktop\MUUUSIK 2014-01-01 19:56 - 2014-01-01 19:56 - 01233962 _____ C:\Users\Lukas\Downloads\adwcleaner.exe 2014-01-01 19:46 - 2013-12-31 20:59 - 00000000 ____D C:\ProgramData\DigiSaveeRe 2014-01-01 19:18 - 2014-01-01 19:18 - 00001111 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Malwarebytes 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-01 19:17 - 2014-01-01 19:17 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Lukas\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-01 19:17 - 2014-01-01 19:17 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Lukas\Downloads\mbam-setup-1.75.0.1300 (1).exe 2014-01-01 15:14 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2014-01-01 15:01 - 2014-01-01 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{EBC7CC9F-E327-4DCB-9D9B-26703C2D328A} 2014-01-01 15:00 - 2012-03-24 14:44 - 00000000 ____D C:\ProgramData\Skype 2014-01-01 14:21 - 2014-01-01 14:21 - 00003088 _____ C:\Windows\System32\Tasks\{4C5D98D2-752C-4356-B8B9-DF934338DE81} 2014-01-01 14:17 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\Users\Lukas\AppData\Local\Packages 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\ProgramData\kgladbfpiccckdamgjambjmjffcaldgg 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\ProgramData\fa244bcb520a9ef5 2013-12-31 15:01 - 2013-12-31 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8DCF181F-4B54-497E-BAA7-987076253F2F} 2013-12-31 12:43 - 2009-08-04 10:51 - 07087192 _____ C:\Windows\system32\perfh007.dat 2013-12-31 12:43 - 2009-08-04 10:51 - 02199800 _____ C:\Windows\system32\perfc007.dat 2013-12-31 12:43 - 2009-07-14 06:13 - 00006672 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-31 01:45 - 2012-04-26 17:01 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\TS3Client 2013-12-30 15:00 - 2013-12-30 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{C2250512-FAEC-43CE-B543-3CB0D8EDC733} 2013-12-29 19:07 - 2013-07-19 03:39 - 00000000 ____D C:\Program Files (x86)\Steam 2013-12-29 15:02 - 2013-12-29 15:02 - 00003088 _____ C:\Windows\System32\Tasks\{8C03A2A2-F47B-42E5-A855-2ACA849099B6} 2013-12-28 15:01 - 2013-12-28 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{1F0B2D4B-6E3F-4F00-913E-4C831E42508D} 2013-12-27 18:33 - 2013-12-27 18:33 - 00000000 ____D C:\ProgramData\System Booster 2013-12-27 15:01 - 2013-12-27 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{E515B00A-20E3-4AA3-BEAC-A3EBCD12C396} 2013-12-26 15:01 - 2013-12-26 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{608FC186-BE24-45D5-97FB-10E066197B1F} 2013-12-25 23:10 - 2013-10-11 23:29 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2013-12-25 23:05 - 2013-10-11 23:25 - 00000000 ____D C:\Program Files (x86)\Battle.net 2013-12-25 15:01 - 2013-12-25 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8C8D8310-EEC1-49EA-8972-B688685309B8} 2013-12-24 15:01 - 2013-12-24 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{183F115B-9B0D-4D20-A1B8-9B00177E2D31} 2013-12-23 15:01 - 2013-12-23 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{BAB0D4A5-95EB-4E29-9384-6F5FFA74E6E7} 2013-12-22 15:01 - 2013-12-22 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{BFE98320-E6D5-4520-8E4F-25A071F6DE13} 2013-12-21 15:01 - 2013-12-21 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{455A8F68-61C2-4F86-9B34-11383681CC38} 2013-12-21 00:58 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-20 20:38 - 2012-03-15 07:56 - 00001423 _____ C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-20 20:36 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-20 20:25 - 2013-11-16 23:39 - 00068224 _____ C:\Windows\IE11_main.log 2013-12-20 20:19 - 2013-12-20 20:19 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-20 20:19 - 2013-12-20 20:19 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-20 20:19 - 2013-12-20 20:19 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-20 20:19 - 2013-12-20 20:19 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-20 20:19 - 2013-12-20 20:19 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-20 20:19 - 2013-12-20 20:19 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-20 20:19 - 2013-12-20 20:19 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-20 20:16 - 2013-12-20 20:16 - 00003088 _____ C:\Windows\System32\Tasks\{EFAC24BD-59FD-4AB5-8BE5-B2CE564C5FF5} 2013-12-19 15:01 - 2013-12-19 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{FEEF7C98-755B-4628-98F6-D70BFA7C22E3} 2013-12-19 14:11 - 2012-03-15 23:03 - 00064288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys 2013-12-18 18:00 - 2013-12-18 18:00 - 00003088 _____ C:\Windows\System32\Tasks\{8BB093DE-A975-4F04-8772-BBDDAC9E939C} 2013-12-17 21:06 - 2013-12-17 21:06 - 00003088 _____ C:\Windows\System32\Tasks\{1F54A357-F851-410F-9256-03D5AB4319CC} 2013-12-16 22:35 - 2013-12-16 22:35 - 02687875 _____ C:\Users\Lukas\Downloads\MA2000.zip 2013-12-16 16:51 - 2013-12-16 16:51 - 00003088 _____ C:\Windows\System32\Tasks\{23FDAE0A-23AA-422F-B7D9-AD5EA15F1F73} 2013-12-15 15:01 - 2013-12-15 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8FE9103D-E469-499F-92F6-C2E4354D0789} 2013-12-13 21:06 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-13 21:03 - 2009-07-14 05:45 - 00314936 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-12 15:37 - 2013-12-12 15:37 - 00003088 _____ C:\Windows\System32\Tasks\{B5BD9B74-107A-4F08-898E-798727C012AB} 2013-12-11 22:25 - 2012-10-18 22:08 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\mIRC 2013-12-11 19:32 - 2013-10-16 14:58 - 00000000 ____D C:\Program Files (x86)\mIRC 2013-12-11 19:26 - 2013-12-11 19:26 - 00000000 __SHD C:\found.005 2013-12-11 18:53 - 2013-12-11 18:53 - 09293192 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2013-12-11 18:53 - 2012-07-20 23:09 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 18:53 - 2012-07-20 23:09 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-11 18:53 - 2012-03-16 12:48 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-10 17:32 - 2013-12-10 17:32 - 08098768 _____ C:\Users\Lukas\Downloads\teeworlds-0.6.2-win64.zip 2013-12-10 17:11 - 2013-12-10 17:11 - 00003088 _____ C:\Windows\System32\Tasks\{1CE2E33D-9B31-423C-B0DB-41DF2AEA8EC8} 2013-12-09 22:11 - 2013-09-22 18:44 - 00000000 ____D C:\Users\Lukas\Desktop\Bio 2013-12-09 20:19 - 2013-12-09 20:19 - 00003088 _____ C:\Windows\System32\Tasks\{C1F8CB5B-2B25-4441-919D-F75C9EDF612E} 2013-12-09 00:09 - 2013-12-09 00:09 - 00016413 _____ C:\Users\Lukas\Downloads\CzickiPresentation (1).odt 2013-12-08 23:13 - 2013-12-08 23:13 - 00015263 _____ C:\Users\Lukas\Downloads\CzickiPresentation.odt 2013-12-08 15:00 - 2013-12-08 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{E1EE22D1-01EF-403F-BF32-508C297CD17A} 2013-12-07 19:37 - 2012-08-08 00:14 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\.minecraft 2013-12-07 15:00 - 2013-12-07 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{EB351D6F-D363-4668-B6BF-521033422CE2} 2013-12-06 15:00 - 2013-12-06 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{738BC984-8AE8-4EB3-8B41-E2791D6048BA} 2013-12-05 21:25 - 2013-12-05 21:25 - 00003088 _____ C:\Windows\System32\Tasks\{CA493F92-35B8-4030-8E5C-83CE3AD35D2D} 2013-12-04 16:09 - 2013-08-11 03:16 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-12-04 15:54 - 2013-12-04 15:54 - 00003088 _____ C:\Windows\System32\Tasks\{629CFABA-9D9D-432B-B194-44443CDD3E07} 2013-12-03 22:39 - 2013-12-03 22:39 - 02091008 _____ () C:\Users\Lukas\Downloads\ebt.exe 2013-12-03 22:39 - 2013-12-03 22:39 - 00001493 _____ C:\Users\Lukas\Downloads\_options.ini 2013-12-03 22:39 - 2013-12-03 22:39 - 00000558 _____ C:\Users\Lukas\Downloads\_layout.css 2013-12-03 22:39 - 2013-12-03 22:39 - 00000113 _____ C:\Users\Lukas\Downloads\_blank.html 2013-12-03 22:39 - 2013-12-03 22:39 - 00000000 _____ C:\Users\Lukas\Downloads\_locationsbackup.dat 2013-12-03 22:39 - 2013-12-03 22:39 - 00000000 _____ C:\Users\Lukas\Downloads\_locations.dat 2013-12-03 22:39 - 2013-12-03 22:39 - 00000000 _____ C:\Users\Lukas\Downloads\_comments.dat 2013-12-03 22:39 - 2013-12-03 22:39 - 00000000 _____ C:\Users\Lukas\Downloads\_$1.tmp 2013-12-03 22:39 - 2013-12-03 22:39 - 00000000 _____ C:\Users\Lukas\Documents\mynotes.csv 2013-12-03 18:26 - 2012-03-24 14:44 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Skype 2013-12-03 15:00 - 2013-12-03 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{36B70DAF-2172-44BF-9ABC-3CE8D5036B7E} Some content of TEMP: ==================== C:\Users\Lukas\AppData\Local\Temp\mirc732.exe C:\Users\Lukas\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Lukas\AppData\Local\Temp\nvStInst.exe C:\Users\Lukas\AppData\Local\Temp\sonarinst.exe C:\Users\Lukas\AppData\Local\Temp\su-setup.exe C:\Users\Lukas\AppData\Local\Temp\uninst1.exe C:\Users\Lukas\AppData\Local\Temp\_is7347.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-30 00:19 ==================== End Of Log ============================ Liebe Grüße, Lukas |
02.01.2014, 16:37 | #2 | |
/// the machine /// TB-Ausbilder | Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start hi,
__________________Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ |
02.01.2014, 17:30 | #3 |
| Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Hallo,
__________________es gab kein Neustart. Willst du die anderen Logs sehen? Hier ist schon mal Combofix: Code:
ATTFilter ComboFix 14-01-01.01 - Lukas 02.01.2014 17:01:30.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.4074.2843 [GMT 1:00] ausgeführt von:: c:\users\Lukas\Desktop\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B} AV: Trend Micro Titanium Internet Security *Disabled/Updated* {68F968AC-2AA0-091D-848C-803E83E35902} SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} SP: Trend Micro Titanium Internet Security *Disabled/Updated* {D3988948-0C9A-0693-BE3C-BB4CF86413BF} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((( Dateien erstellt von 2013-12-02 bis 2014-01-02 )))))))))))))))))))))))))))))) . . 2014-01-02 16:23 . 2014-01-02 16:23 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2014-01-02 16:23 . 2014-01-02 16:23 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-01-02 15:55 . 2014-01-02 15:55 -------- d-----w- c:\programdata\Oracle 2014-01-02 15:27 . 2014-01-02 15:26 312744 ----a-w- c:\windows\system32\javaws.exe 2014-01-02 15:27 . 2014-01-02 15:27 108968 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll 2014-01-02 15:27 . 2014-01-02 15:26 189352 ----a-w- c:\windows\system32\javaw.exe 2014-01-02 15:27 . 2014-01-02 15:26 189352 ----a-w- c:\windows\system32\java.exe 2014-01-02 15:26 . 2014-01-02 15:26 -------- d-----w- c:\program files\Java 2014-01-02 11:29 . 2014-01-02 11:29 -------- d-----w- C:\FRST 2014-01-02 11:02 . 2014-01-02 11:02 -------- d-----w- c:\windows\ERUNT 2014-01-01 20:03 . 2014-01-01 20:03 -------- d-----w- c:\program files\Defraggler 2014-01-01 19:57 . 2010-06-01 13:45 1005088 ----a-w- c:\windows\SysWow64\TList8.ocx 2014-01-01 19:57 . 2008-01-29 06:57 450560 ----a-w- c:\windows\SysWow64\fldrvw90.ocx 2014-01-01 19:57 . 2010-10-13 05:42 2369456 ----a-w- c:\windows\SysWow64\Codejock.CommandBars.v13.4.2.ocx 2014-01-01 19:57 . 2010-08-20 20:53 86016 ----a-w- c:\windows\SysWow64\mtSplitter.ocx 2014-01-01 19:57 . 2010-06-11 09:50 89888 ----a-w- c:\windows\SysWow64\mtFrame.ocx 2014-01-01 19:57 . 2010-03-25 09:33 171752 ----a-w- c:\windows\SysWow64\mtRTF2.ocx 2014-01-01 19:57 . 2009-10-12 23:02 44736 ----a-w- c:\windows\SysWow64\mtSubclass.dll 2014-01-01 19:57 . 2009-10-12 23:01 77504 ----a-w- c:\windows\SysWow64\mtScrollContainer.ocx 2014-01-01 19:57 . 2014-01-01 20:09 -------- d-----w- c:\users\Lukas\AppData\Roaming\AllDup 2014-01-01 19:57 . 2014-01-01 19:57 -------- d-----w- c:\programdata\AllDup 2014-01-01 19:57 . 2014-01-01 19:57 -------- d-----w- c:\program files (x86)\AllDup 2014-01-01 19:26 . 2014-01-01 19:26 -------- d-----w- c:\users\Lukas\AppData\Roaming\AVAST Software 2014-01-01 19:22 . 2014-01-01 20:07 79672 ----a-w- c:\windows\system32\drivers\aswstm.sys 2014-01-01 19:18 . 2014-01-01 19:22 207904 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2014-01-01 19:18 . 2014-01-01 19:22 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2014-01-01 18:56 . 2014-01-02 11:39 -------- d-----w- C:\AdwCleaner 2014-01-01 18:18 . 2014-01-01 18:18 -------- d-----w- c:\users\Lukas\AppData\Roaming\Malwarebytes 2014-01-01 18:18 . 2014-01-01 18:18 -------- d-----w- c:\programdata\Malwarebytes 2014-01-01 18:18 . 2013-04-04 13:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys 2014-01-01 18:18 . 2014-01-01 18:18 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2014-01-01 12:50 . 2014-01-01 12:50 -------- d-----w- C:\Temp 2013-12-31 19:59 . 2014-01-01 18:46 -------- d-----w- c:\programdata\DigiSaveeRe 2013-12-31 19:59 . 2013-12-31 19:59 -------- d-----w- c:\programdata\kgladbfpiccckdamgjambjmjffcaldgg 2013-12-31 19:59 . 2013-12-31 19:59 -------- d-----w- c:\users\Lukas\AppData\Local\Packages 2013-12-31 19:59 . 2013-12-31 19:59 -------- d-----w- c:\programdata\fa244bcb520a9ef5 2013-12-27 17:33 . 2013-12-27 17:33 -------- d-----w- c:\programdata\System Booster 2013-12-20 19:25 . 2013-10-14 17:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE 2013-12-13 19:46 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe 2013-12-13 19:46 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe 2013-12-13 19:46 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL 2013-12-13 19:46 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL 2013-12-13 19:46 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll 2013-12-11 18:26 . 2013-12-11 18:26 -------- d-----w- C:\found.005 2013-12-11 17:53 . 2013-12-11 17:53 9293192 ----a-w- c:\windows\SysWow64\FlashPlayerInstaller.exe . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-01-02 10:59 . 2012-03-16 05:20 45056 ----a-w- c:\windows\system32\acovcnt.exe 2014-01-01 19:22 . 2012-03-15 22:03 422216 ----a-w- c:\windows\system32\drivers\aswSP.sys 2014-01-01 19:22 . 2012-03-15 22:03 92544 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2014-01-01 19:22 . 2012-03-15 22:03 78648 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2014-01-01 19:22 . 2012-03-15 22:03 334136 ----a-w- c:\windows\system32\aswBoot.exe 2014-01-01 19:22 . 2012-03-15 22:03 1034464 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2014-01-01 19:22 . 2012-03-15 22:02 43152 ----a-w- c:\windows\avastSS.scr 2013-12-19 13:11 . 2012-03-15 22:03 64288 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2013-12-11 17:53 . 2012-07-20 22:09 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-12-11 17:53 . 2012-03-16 11:48 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-10-12 02:30 . 2013-11-14 11:01 830464 ----a-w- c:\windows\system32\nshwfp.dll 2013-10-12 02:29 . 2013-11-14 11:01 859648 ----a-w- c:\windows\system32\IKEEXT.DLL 2013-10-12 02:29 . 2013-11-14 11:01 324096 ----a-w- c:\windows\system32\FWPUCLNT.DLL 2013-10-12 02:03 . 2013-11-14 11:01 656896 ----a-w- c:\windows\SysWow64\nshwfp.dll 2013-10-12 02:01 . 2013-11-14 11:01 216576 ----a-w- c:\windows\SysWow64\FWPUCLNT.DLL 2013-10-06 15:29 . 2013-10-06 15:30 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2013-10-06 15:29 . 2013-10-06 15:29 76888 ----a-w- c:\windows\system32\PnkBstrA.exe 2013-10-05 20:25 . 2013-11-14 11:01 1474048 ----a-w- c:\windows\system32\crypt32.dll 2013-10-05 19:57 . 2013-11-14 11:01 1168384 ----a-w- c:\windows\SysWow64\crypt32.dll 2013-01-06 01:49 . 2013-01-05 23:24 1232650573 ----a-w- c:\program files\Just4Story.exe . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Wireless Console 3"="c:\program files (x86)\ASUS\Wireless Console 3\wcourier.exe" [2010-09-23 1601536] "AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-01-01 3764024] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk /p \0?\0?? . R2 a1851772;System Booster;c:\windows\system32\rundll32.exe;c:\windows\SYSNATIVE\rundll32.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R3 Amsp;Trend Micro Solution Platform;c:\program files\Trend Micro\AMSP\coreServiceShell.exe coreFrameworkHost.exe;c:\program files\Trend Micro\AMSP\coreServiceShell.exe coreFrameworkHost.exe [x] R3 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x] R3 BEService;BattlEye Service;c:\program files (x86)\Common Files\BattlEye\BEService.exe;c:\program files (x86)\Common Files\BattlEye\BEService.exe [x] R3 cpuz133;cpuz133;c:\users\Lukas\AppData\Local\Temp\cpuz133\cpuz133_x64.sys;c:\users\Lukas\AppData\Local\Temp\cpuz133\cpuz133_x64.sys [x] R3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\system32\DRIVERS\dc3d.sys;c:\windows\SYSNATIVE\DRIVERS\dc3d.sys [x] R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 KoneFltr;ROCCAT Kone;c:\windows\system32\drivers\Kone.sys;c:\windows\SYSNATIVE\drivers\Kone.sys [x] R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl64.sys;c:\windows\SYSNATIVE\DRIVERS\netaapl64.sys [x] R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUVStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUVStor.sys [x] S0 aswRvrt;avast! Revert; [x] S0 aswVmm;avast! VM Monitor; [x] S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x] S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x] S1 ATKWMIACPIIO;ATKWMIACPI Driver;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [x] S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe;c:\windows\SYSNATIVE\FBAgent.exe [x] S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x] S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2013-12-06 15:49 1210320 ----a-w- c:\program files (x86)\Google\Chrome\Application\31.0.1650.63\Installer\chrmstp.exe . Inhalt des "geplante Tasks" Ordners . 2014-01-02 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-20 17:53] . 2014-01-02 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-12 15:50] . 2014-01-02 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-12 15:50] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2014-01-01 19:22 287280 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_B] @="{6D4133E5-0742-4ADC-8A8C-9303440F7190}" [HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}] 2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_O] @="{64174815-8D98-4CE6-8646-4C039977D808}" [HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}] 2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "VizorHtmlDialog.exe"="c:\program files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe" [2010-10-08 1123664] "Trend Micro Client Framework"="c:\program files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe" [2010-10-12 192520] "Trend Micro Titanium"="c:\program files\Trend Micro\Titanium\VizorShortCut.exe" [2010-09-17 322384] "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-03-01 2189416] "Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-05-16 1012000] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.google.com mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local IE: Free YouTube to MP3 Converter - c:\users\Lukas\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm TCP: DhcpNameServer = 192.168.178.1 TCP: Interfaces\{0F201C6F-8B18-47DB-A33F-AF8B258B964B}\34F6E6E656364796F6E605F696E647: NameServer = 8.8.8.8,8.8.4.4 TCP: Interfaces\{0F201C6F-8B18-47DB-A33F-AF8B258B964B}\8445340205F627471626C6560284F6473707F647: NameServer = 8.8.8.8,8.8.4.4 TCP: Interfaces\{59A03F8B-E885-4DBC-86DC-7B1482DC4C8E}: NameServer = 8.8.8.8,8.8.4.4 FF - ProfilePath - c:\users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4wrah7kf.default\ FF - prefs.js: browser.search.selectedEngine - StartWeb . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start BHO-{0467C77D-BE4D-B0E2-2151-DCF1D79AE4F7} - c:\programdata\ExstrraCOaupon\N96.x64.dll BHO-{2C399EDA-A430-14F9-354E-4BA5F400C919} - c:\programdata\DigiSaveeRe\rM.x64.dll HKLM-Run-ETDCtrl - c:\program files (x86)\Elantech\ETDCtrl.exe AddRemove-Adobe Flash Player ActiveX - c:\windows\SysWOW64\Macromed\Flash\FlashUtil32_11_9_900_170_ActiveX.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_170_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_170_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Nico Mak Computing\WinZip] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2014-01-02 17:27:58 ComboFix-quarantined-files.txt 2014-01-02 16:27 . Vor Suchlauf: 29 Verzeichnis(se), 199.106.105.344 Bytes frei Nach Suchlauf: 41 Verzeichnis(se), 199.283.138.560 Bytes frei . - - End Of File - - B7C7518B490F8C7AE9B6CFC0A692C939 |
03.01.2014, 12:29 | #4 |
/// the machine /// TB-Ausbilder | Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Nö. Lass MBAM und Adw nochmal laufen. ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
03.01.2014, 20:35 | #5 |
| Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Hey, ESET hat 5,5 Stunden gebraucht. Problem besteht 1 zu 1 weiter... Ich meine wie kann es denn sein, dass nach einer Datenträgerüberprüfung der Laptop einfach besser und schneller läuft... Ich versteh das einach nicht. Adw: Code:
ATTFilter # AdwCleaner v3.016 - Bericht erstellt am 03/01/2014 um 13:13:25 # Aktualisiert 23/12/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Lukas - LUKAS-PC # Gestartet von : C:\Users\Lukas\Downloads\adwcleaner.exe # Option : Suchen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16428 -\\ Mozilla Firefox v20.0.1 (de) [ Datei : C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4wrah7kf.default\prefs.js ] -\\ Google Chrome v31.0.1650.63 [ Datei : C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [21079 octets] - [01/01/2014 19:56:35] AdwCleaner[R1].txt - [1054 octets] - [02/01/2014 11:52:14] AdwCleaner[R3].txt - [915 octets] - [03/01/2014 13:13:25] AdwCleaner[S0].txt - [20538 octets] - [01/01/2014 19:58:10] AdwCleaner[S1].txt - [1116 octets] - [02/01/2014 11:57:45] ########## EOF - C:\AdwCleaner\AdwCleaner[R3].txt - [1095 octets] ########## Die beiden Funde tauchen IMMER wieder auf.... egal wie häufig man sie löscht. MBAM: Code:
ATTFilter Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.01.02.01 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16476 Lukas :: LUKAS-PC [Administrator] 03.01.2014 13:03:30 mbam-log-2014-01-03 (13-03-30).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 246638 Laufzeit: 8 Minute(n), 42 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) ESET: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=560a65f451255b4ebc7e037d85f9ba5f # engine=16502 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-01-03 01:13:37 # local_time=2014-01-03 02:13:37 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=774 16777213 85 77 94469 154308 0 0 # compatibility_mode=5893 16776574 66 85 15122169 140384667 0 0 # scanned=22399 # found=4 # cleaned=0 # scan_time=3358 sh=984CDAA7C03EDAA48660D6F8231E233AA9AD6857 ft=1 fh=223ae04b43908e86 vn="a variant of Win32/Adware.Yontoo.A application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Yontoo\YontooIEClient.dll.vir" sh=B1F3418F5627E3FFD413F99F1E563E038ECAA17C ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Yontoo\YontooLayers.crx.vir" sh=410B32FD3FE4642644AD91AC60C69B86EC2762DD ft=1 fh=0e378a435beab91a vn="a variant of Win32/Adware.Yontoo.B application" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setupx.dll.vir" sh=D6CF7460A4F696A0E053E042B09C92A7970F30BD ft=1 fh=3da28455addb719c vn="a variant of Win32/Adware.Yontoo.B application" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setupx.dll.vir" ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=560a65f451255b4ebc7e037d85f9ba5f # engine=16502 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-01-03 07:02:47 # local_time=2014-01-03 08:02:47 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=774 16777213 85 77 119019 175258 0 0 # compatibility_mode=5893 16776574 66 85 15143119 140405617 0 0 # scanned=287980 # found=5 # cleaned=0 # scan_time=20576 sh=984CDAA7C03EDAA48660D6F8231E233AA9AD6857 ft=1 fh=223ae04b43908e86 vn="a variant of Win32/Adware.Yontoo.A application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Yontoo\YontooIEClient.dll.vir" sh=B1F3418F5627E3FFD413F99F1E563E038ECAA17C ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Yontoo\YontooLayers.crx.vir" sh=410B32FD3FE4642644AD91AC60C69B86EC2762DD ft=1 fh=0e378a435beab91a vn="a variant of Win32/Adware.Yontoo.B application" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setupx.dll.vir" sh=D6CF7460A4F696A0E053E042B09C92A7970F30BD ft=1 fh=3da28455addb719c vn="a variant of Win32/Adware.Yontoo.B application" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setupx.dll.vir" sh=846BB0A69DA39286F9DFE71EDE56C4C1E56DD4D2 ft=0 fh=0000000000000000 vn="Win32/FakeTool.H trojan" ac=I fn="C:\Users\Lukas\Downloads\TrackMania United Forever [PCDVD - English] [www.TMasGames.com]\tmuf-dtn.iso" FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-01-2014 Ran by Lukas (administrator) on LUKAS-PC on 03-01-2014 20:19:37 Running from C:\Users\Lukas\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\System32\PnkBstrA.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiMiniService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiResumeSrv.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe (ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe (ASUS) C:\Program Files\P4G\BatteryLife.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (ASUS) C:\Windows\AsScrPro.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [VizorHtmlDialog.exe] - C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe [1123664 2010-10-08] (Trend Micro Inc.) HKLM\...\Run: [Trend Micro Client Framework] - C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiWatchDog.exe [192520 2010-10-12] (Trend Micro Inc.) HKLM\...\Run: [Trend Micro Titanium] - C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe [322384 2010-09-17] (Trend Micro Inc.) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2189416 2011-03-01] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2589992 2011-04-13] (ELAN Microelectronics Corp.) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1012000 2013-05-16] (NVIDIA Corporation) HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] () HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-01] (AVAST Software) BootExecute: autocheck autochk /p ??? ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM-x32 - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUT SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = BHO: ExstrraCOaupon - {0467C77D-BE4D-B0E2-2151-DCF1D79AE4F7} - C:\ProgramData\ExstrraCOaupon\N96.x64.dll No File BHO: DigiSaveeRe - {2C399EDA-A430-14F9-354E-4BA5F400C919} - C:\ProgramData\DigiSaveeRe\rM.x64.dll No File BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\6.5.1234\6.5.1234\TmBpIe64.dll (Trend Micro Inc.) Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1381\6.5.1234\TmIEPlg.dll (Trend Micro Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\6.5.1234\6.5.1234\TmBpIe32.dll (Trend Micro Inc.) Handler-x32: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll (Trend Micro Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{59A03F8B-E885-4DBC-86DC-7B1482DC4C8E}: [NameServer]8.8.8.8,8.8.4.4 FireFox: ======== FF ProfilePath: C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4wrah7kf.default FF NewTab: hxxp://www.google.com/firefox FF SearchEngineOrder.1: Google FF SelectedSearchEngine: StartWeb FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: ZEON/PDF,version=2.0 - C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml FF HKLM-x32\...\Firefox\Extensions: [{22C7F6C6-8D67-4534-92B5-529A0EC09405}] - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension\ FF Extension: Trend Micro NSC Firefox Extension - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension\ FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF Chrome: ======= CHR HomePage: hxxp://www.google.com CHR RestoreOnStartup: "hxxp://www.google.com" CHR Extension: (BetterTTV) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped\6.6_0 CHR Extension: (AdBlock) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.10_0 CHR Extension: (ExstrraCOaupon) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\iakkomkefpkcjnncgfiodeihpochnjbi\4.3 CHR Extension: (Chrome In-App Payments service) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0 CHR Extension: (Auto Refresh Plus) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\oilipfekkmncanaajkapbpancpelijih\1.8.9.22_0 CHR HKLM-x32\...\Chrome\Extension: [hkoahcaobjbihehldfimhblmhgalcipm] - C:\Users\Lukas\AppData\Local\CRE\hkoahcaobjbihehldfimhblmhgalcipm.crx CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= S2 a1851772; C:\Windows\system32\rundll32.exe [45568 2009-07-14] (Microsoft Corporation) S2 a1851772; C:\Windows\SysWow64\rundll32.exe [44544 2009-07-14] (Microsoft Corporation) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-01] (AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-06-22] () R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2013-10-06] () S4 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [97552 2012-02-06] (SANDBOXIE L.T.D) R2 TiMiniService; C:\Program Files\Trend Micro\Titanium\TiMiniService.exe [241488 2010-09-17] (Trend Micro Inc.) S3 Amsp; "C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe" coreFrameworkHost.exe -m=rb -dt=60000 [x] ==================== Drivers (Whitelisted) ==================== R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-01] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2014-01-01] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-01-01] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1034464 2014-01-01] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422216 2014-01-01] (AVAST Software) S3 aswStm; C:\Windows\system32\drivers\aswStm.sys [79672 2014-01-01] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-12-19] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-01] () R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) S3 KoneFltr; C:\Windows\System32\drivers\Kone.sys [15488 2008-12-11] (ROCCAT Ltd) S3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [161432 2012-02-06] (SANDBOXIE L.T.D) R2 tmactmon; C:\Windows\System32\DRIVERS\tmactmon.sys [90704 2010-09-17] (Trend Micro Inc.) R2 tmcomm; C:\Windows\System32\DRIVERS\tmcomm.sys [144464 2010-09-17] (Trend Micro Inc.) R2 tmevtmgr; C:\Windows\System32\DRIVERS\tmevtmgr.sys [67664 2010-09-17] (Trend Micro Inc.) R1 tmtdi; C:\Windows\System32\DRIVERS\tmtdi.sys [105552 2010-09-17] (Trend Micro Inc.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 cpuz133; \??\C:\Users\Lukas\AppData\Local\Temp\cpuz133\cpuz133_x64.sys [x] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-03 20:19 - 2014-01-03 20:20 - 00015249 _____ C:\Users\Lukas\Downloads\FRST.txt 2014-01-03 20:19 - 2014-01-03 20:19 - 00000000 ____D C:\Users\Lukas\Downloads\FRST-OlderVersion 2014-01-03 20:16 - 2014-01-03 20:16 - 00001173 _____ C:\Users\Lukas\Desktop\checkup.txt 2014-01-03 20:06 - 2014-01-03 20:06 - 00987410 _____ C:\Users\Lukas\Desktop\SecurityCheck.exe 2014-01-03 15:01 - 2014-01-03 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{6F6BA94F-8D8C-42B3-B192-306A9108D838} 2014-01-03 13:16 - 2014-01-03 13:16 - 02347384 _____ (ESET) C:\Users\Lukas\Downloads\esetsmartinstaller_enu (1).exe 2014-01-03 13:16 - 2014-01-03 13:16 - 00000000 ____D C:\Program Files (x86)\ESET 2014-01-03 13:15 - 2014-01-03 13:15 - 00001175 _____ C:\Users\Lukas\Desktop\AdwCleaner[R3].txt 2014-01-03 01:10 - 2014-01-03 01:10 - 00006457 _____ C:\Users\Lukas\Downloads\hijackthis.log 2014-01-02 17:27 - 2014-01-02 17:27 - 00019614 _____ C:\ComboFix.txt 2014-01-02 16:58 - 2014-01-02 17:28 - 00000000 ____D C:\Qoobox 2014-01-02 16:58 - 2014-01-02 17:28 - 00000000 ____D C:\ComboFix 2014-01-02 16:58 - 2014-01-02 17:25 - 00000000 ____D C:\Windows\erdnt 2014-01-02 16:58 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe 2014-01-02 16:58 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe 2014-01-02 16:58 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-01-02 16:58 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-01-02 16:58 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-01-02 16:58 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe 2014-01-02 16:58 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe 2014-01-02 16:58 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe 2014-01-02 16:56 - 2014-01-02 16:56 - 05160282 ____R (Swearware) C:\Users\Lukas\Desktop\ComboFix.exe 2014-01-02 16:55 - 2014-01-02 16:55 - 00000000 ____D C:\ProgramData\Oracle 2014-01-02 16:27 - 2014-01-02 16:27 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-02 16:27 - 2014-01-02 16:26 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-02 16:27 - 2014-01-02 16:26 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-02 16:27 - 2014-01-02 16:26 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-02 16:26 - 2014-01-02 16:26 - 00000000 ____D C:\Program Files\Java 2014-01-02 16:21 - 2014-01-02 16:21 - 30694824 _____ (Oracle Corporation) C:\Users\Lukas\Downloads\jre-7u45-windows-x64.exe 2014-01-02 15:02 - 2014-01-02 15:02 - 00003088 _____ C:\Windows\System32\Tasks\{B5C83C37-82C0-4D47-9D3F-C50EBAB2901F} 2014-01-02 12:29 - 2014-01-03 20:19 - 01931750 _____ (Farbar) C:\Users\Lukas\Downloads\FRST64.exe 2014-01-02 12:29 - 2014-01-03 20:19 - 00000000 ____D C:\FRST 2014-01-02 12:24 - 2014-01-02 12:24 - 00002374 _____ C:\Users\Lukas\Desktop\JRT.txt 2014-01-02 12:02 - 2014-01-02 12:02 - 01036305 _____ (Thisisu) C:\Users\Lukas\Downloads\JRT.exe 2014-01-02 12:02 - 2014-01-02 12:02 - 00000000 ____D C:\Windows\ERUNT 2014-01-01 23:01 - 2014-01-01 23:01 - 02347384 _____ (ESET) C:\Users\Lukas\Downloads\esetsmartinstaller_enu.exe 2014-01-01 21:03 - 2014-01-01 21:03 - 00001726 _____ C:\Users\Public\Desktop\Defraggler.lnk 2014-01-01 21:03 - 2014-01-01 21:03 - 00000000 ____D C:\Program Files\Defraggler 2014-01-01 21:02 - 2014-01-01 21:02 - 04208656 _____ (Piriform Ltd) C:\Users\Lukas\Downloads\dfsetup216.exe 2014-01-01 20:57 - 2014-01-01 21:09 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\AllDup 2014-01-01 20:57 - 2014-01-01 20:57 - 00000000 ____D C:\ProgramData\AllDup 2014-01-01 20:57 - 2014-01-01 20:57 - 00000000 ____D C:\Program Files (x86)\AllDup 2014-01-01 20:57 - 2010-10-13 06:42 - 02369456 _____ (Codejock Software) C:\Windows\SysWOW64\Codejock.CommandBars.v13.4.2.ocx 2014-01-01 20:57 - 2010-08-20 21:53 - 00086016 _____ (Michael Thummerer Software Design) C:\Windows\SysWOW64\mtSplitter.ocx 2014-01-01 20:57 - 2010-06-11 10:50 - 00089888 _____ (Michael Thummerer Software Design) C:\Windows\SysWOW64\mtFrame.ocx 2014-01-01 20:57 - 2010-06-01 14:45 - 01005088 _____ (Bennet-Tec Information Systems, Inc) C:\Windows\SysWOW64\TList8.ocx 2014-01-01 20:57 - 2010-03-25 10:33 - 00171752 _____ (Michael Thummerer Software Design) C:\Windows\SysWOW64\mtRTF2.ocx 2014-01-01 20:57 - 2009-10-13 00:02 - 00044736 _____ (Michael Thummerer Software Design) C:\Windows\SysWOW64\mtSubclass.dll 2014-01-01 20:57 - 2009-10-13 00:01 - 00077504 _____ (Michael Thummerer Software Design) C:\Windows\SysWOW64\mtScrollContainer.ocx 2014-01-01 20:57 - 2008-01-29 07:57 - 00450560 _____ (LogicNP Software (hxxp://www.ssware.com)) C:\Windows\SysWOW64\fldrvw90.ocx 2014-01-01 20:56 - 2014-01-01 20:56 - 03503200 _____ (Michael Thummerer Software Design ) C:\Users\Lukas\Downloads\alldup_3.4.24.exe 2014-01-01 20:26 - 2014-01-01 20:26 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\AVAST Software 2014-01-01 20:22 - 2014-01-01 21:07 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-01-01 20:18 - 2014-01-01 20:22 - 00207904 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-01 20:18 - 2014-01-01 20:22 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys 2014-01-01 19:56 - 2014-01-03 13:14 - 00000000 ____D C:\AdwCleaner 2014-01-01 19:56 - 2014-01-01 19:56 - 01233962 _____ C:\Users\Lukas\Downloads\adwcleaner.exe 2014-01-01 19:18 - 2014-01-01 19:18 - 00001111 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Malwarebytes 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-01 19:18 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-01-01 19:17 - 2014-01-01 19:17 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Lukas\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-01 19:17 - 2014-01-01 19:17 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Lukas\Downloads\mbam-setup-1.75.0.1300 (1).exe 2014-01-01 15:01 - 2014-01-01 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{EBC7CC9F-E327-4DCB-9D9B-26703C2D328A} 2014-01-01 14:21 - 2014-01-01 14:21 - 00003088 _____ C:\Windows\System32\Tasks\{4C5D98D2-752C-4356-B8B9-DF934338DE81} 2013-12-31 20:59 - 2014-01-01 19:46 - 00000000 ____D C:\ProgramData\DigiSaveeRe 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\Users\Lukas\AppData\Local\Packages 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\ProgramData\kgladbfpiccckdamgjambjmjffcaldgg 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\ProgramData\fa244bcb520a9ef5 2013-12-31 15:01 - 2013-12-31 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8DCF181F-4B54-497E-BAA7-987076253F2F} 2013-12-30 15:00 - 2013-12-30 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{C2250512-FAEC-43CE-B543-3CB0D8EDC733} 2013-12-29 15:02 - 2013-12-29 15:02 - 00003088 _____ C:\Windows\System32\Tasks\{8C03A2A2-F47B-42E5-A855-2ACA849099B6} 2013-12-28 15:01 - 2013-12-28 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{1F0B2D4B-6E3F-4F00-913E-4C831E42508D} 2013-12-27 18:33 - 2013-12-27 18:33 - 00000000 ____D C:\ProgramData\System Booster 2013-12-27 15:01 - 2013-12-27 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{E515B00A-20E3-4AA3-BEAC-A3EBCD12C396} 2013-12-26 15:01 - 2013-12-26 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{608FC186-BE24-45D5-97FB-10E066197B1F} 2013-12-25 15:01 - 2013-12-25 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8C8D8310-EEC1-49EA-8972-B688685309B8} 2013-12-24 15:01 - 2013-12-24 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{183F115B-9B0D-4D20-A1B8-9B00177E2D31} 2013-12-23 15:01 - 2013-12-23 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{BAB0D4A5-95EB-4E29-9384-6F5FFA74E6E7} 2013-12-22 15:01 - 2013-12-22 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{BFE98320-E6D5-4520-8E4F-25A071F6DE13} 2013-12-21 15:02 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-21 15:02 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-21 15:02 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-21 15:02 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-21 15:02 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-21 15:02 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-21 15:02 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-21 15:02 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-21 15:02 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-21 15:02 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-21 15:02 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-21 15:02 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-21 15:02 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-21 15:02 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-21 15:02 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-21 15:02 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-21 15:02 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-21 15:02 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-21 15:02 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-21 15:02 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-21 15:02 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-21 15:02 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-21 15:02 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-21 15:02 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-21 15:02 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-21 15:02 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-21 15:02 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-21 15:02 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-21 15:02 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-21 15:02 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-21 15:02 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-21 15:01 - 2013-12-21 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{455A8F68-61C2-4F86-9B34-11383681CC38} 2013-12-20 20:25 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-20 20:19 - 2013-12-20 20:19 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-20 20:19 - 2013-12-20 20:19 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-20 20:19 - 2013-12-20 20:19 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-20 20:19 - 2013-12-20 20:19 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-20 20:19 - 2013-12-20 20:19 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-20 20:19 - 2013-12-20 20:19 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-20 20:19 - 2013-12-20 20:19 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-20 20:16 - 2013-12-20 20:16 - 00003088 _____ C:\Windows\System32\Tasks\{EFAC24BD-59FD-4AB5-8BE5-B2CE564C5FF5} 2013-12-19 15:01 - 2013-12-19 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{FEEF7C98-755B-4628-98F6-D70BFA7C22E3} 2013-12-18 18:00 - 2013-12-18 18:00 - 00003088 _____ C:\Windows\System32\Tasks\{8BB093DE-A975-4F04-8772-BBDDAC9E939C} 2013-12-17 21:06 - 2013-12-17 21:06 - 00003088 _____ C:\Windows\System32\Tasks\{1F54A357-F851-410F-9256-03D5AB4319CC} 2013-12-16 22:35 - 2013-12-16 22:35 - 02687875 _____ C:\Users\Lukas\Downloads\MA2000.zip 2013-12-16 16:51 - 2013-12-16 16:51 - 00003088 _____ C:\Windows\System32\Tasks\{23FDAE0A-23AA-422F-B7D9-AD5EA15F1F73} 2013-12-15 15:01 - 2013-12-15 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8FE9103D-E469-499F-92F6-C2E4354D0789} 2013-12-13 20:46 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-13 20:46 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-13 20:46 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-13 20:46 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-12 16:03 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-12 16:03 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-12 16:03 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-12 16:03 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-12 16:03 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-12 16:03 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-12 16:03 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-12 16:03 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-12 16:03 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-12 16:03 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-12 16:03 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-12 16:03 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-12 16:03 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-12 16:03 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-12 16:03 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-12 16:03 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-12 16:03 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-12 16:03 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-12 16:03 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-12 15:37 - 2013-12-12 15:37 - 00003088 _____ C:\Windows\System32\Tasks\{B5BD9B74-107A-4F08-898E-798727C012AB} 2013-12-11 19:26 - 2013-12-11 19:26 - 00000000 ____D C:\found.005 2013-12-11 18:53 - 2013-12-11 18:53 - 09293192 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2013-12-10 17:32 - 2013-12-10 17:32 - 08098768 _____ C:\Users\Lukas\Downloads\teeworlds-0.6.2-win64.zip 2013-12-10 17:11 - 2013-12-10 17:11 - 00003088 _____ C:\Windows\System32\Tasks\{1CE2E33D-9B31-423C-B0DB-41DF2AEA8EC8} 2013-12-09 20:19 - 2013-12-09 20:19 - 00003088 _____ C:\Windows\System32\Tasks\{C1F8CB5B-2B25-4441-919D-F75C9EDF612E} 2013-12-09 00:09 - 2013-12-09 00:09 - 00016413 _____ C:\Users\Lukas\Downloads\CzickiPresentation (1).odt 2013-12-08 23:13 - 2013-12-08 23:13 - 00015263 _____ C:\Users\Lukas\Downloads\CzickiPresentation.odt 2013-12-08 15:00 - 2013-12-08 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{E1EE22D1-01EF-403F-BF32-508C297CD17A} 2013-12-07 21:12 - 2014-01-01 20:08 - 00000000 ____D C:\Users\Lukas\Desktop\Schule 2013-12-07 15:00 - 2013-12-07 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{EB351D6F-D363-4668-B6BF-521033422CE2} 2013-12-06 15:00 - 2013-12-06 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{738BC984-8AE8-4EB3-8B41-E2791D6048BA} 2013-12-05 21:25 - 2013-12-05 21:25 - 00003088 _____ C:\Windows\System32\Tasks\{CA493F92-35B8-4030-8E5C-83CE3AD35D2D} 2013-12-04 15:54 - 2013-12-04 15:54 - 00003088 _____ C:\Windows\System32\Tasks\{629CFABA-9D9D-432B-B194-44443CDD3E07} ==================== One Month Modified Files and Folders ======= 2014-01-03 20:20 - 2014-01-03 20:19 - 00015249 _____ C:\Users\Lukas\Downloads\FRST.txt 2014-01-03 20:19 - 2014-01-03 20:19 - 00000000 ____D C:\Users\Lukas\Downloads\FRST-OlderVersion 2014-01-03 20:19 - 2014-01-02 12:29 - 01931750 _____ (Farbar) C:\Users\Lukas\Downloads\FRST64.exe 2014-01-03 20:19 - 2014-01-02 12:29 - 00000000 ____D C:\FRST 2014-01-03 20:19 - 2012-03-16 05:51 - 01438116 _____ C:\Windows\WindowsUpdate.log 2014-01-03 20:16 - 2014-01-03 20:16 - 00001173 _____ C:\Users\Lukas\Desktop\checkup.txt 2014-01-03 20:06 - 2014-01-03 20:06 - 00987410 _____ C:\Users\Lukas\Desktop\SecurityCheck.exe 2014-01-03 19:53 - 2012-07-20 23:09 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-03 19:47 - 2011-01-12 16:50 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-03 15:01 - 2014-01-03 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{6F6BA94F-8D8C-42B3-B192-306A9108D838} 2014-01-03 15:01 - 2012-03-24 14:44 - 00000000 ____D C:\ProgramData\Skype 2014-01-03 13:16 - 2014-01-03 13:16 - 02347384 _____ (ESET) C:\Users\Lukas\Downloads\esetsmartinstaller_enu (1).exe 2014-01-03 13:16 - 2014-01-03 13:16 - 00000000 ____D C:\Program Files (x86)\ESET 2014-01-03 13:15 - 2014-01-03 13:15 - 00001175 _____ C:\Users\Lukas\Desktop\AdwCleaner[R3].txt 2014-01-03 13:14 - 2014-01-01 19:56 - 00000000 ____D C:\AdwCleaner 2014-01-03 13:04 - 2009-08-04 10:51 - 07101984 _____ C:\Windows\system32\perfh007.dat 2014-01-03 13:04 - 2009-08-04 10:51 - 02204536 _____ C:\Windows\system32\perfc007.dat 2014-01-03 13:04 - 2009-07-14 06:13 - 00006672 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-03 13:01 - 2011-01-12 16:50 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-03 01:37 - 2013-10-11 23:25 - 00000000 ____D C:\Users\Lukas\AppData\Local\Battle.net 2014-01-03 01:10 - 2014-01-03 01:10 - 00006457 _____ C:\Users\Lukas\Downloads\hijackthis.log 2014-01-03 01:10 - 2012-04-26 17:01 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\TS3Client 2014-01-02 17:28 - 2014-01-02 16:58 - 00000000 ____D C:\Qoobox 2014-01-02 17:28 - 2014-01-02 16:58 - 00000000 ____D C:\ComboFix 2014-01-02 17:28 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default 2014-01-02 17:27 - 2014-01-02 17:27 - 00019614 _____ C:\ComboFix.txt 2014-01-02 17:25 - 2014-01-02 16:58 - 00000000 ____D C:\Windows\erdnt 2014-01-02 17:23 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini 2014-01-02 16:56 - 2014-01-02 16:56 - 05160282 ____R (Swearware) C:\Users\Lukas\Desktop\ComboFix.exe 2014-01-02 16:55 - 2014-01-02 16:55 - 00000000 ____D C:\ProgramData\Oracle 2014-01-02 16:27 - 2014-01-02 16:27 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-02 16:26 - 2014-01-02 16:27 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-02 16:26 - 2014-01-02 16:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-02 16:26 - 2014-01-02 16:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-02 16:26 - 2014-01-02 16:26 - 00000000 ____D C:\Program Files\Java 2014-01-02 16:21 - 2014-01-02 16:21 - 30694824 _____ (Oracle Corporation) C:\Users\Lukas\Downloads\jre-7u45-windows-x64.exe 2014-01-02 15:02 - 2014-01-02 15:02 - 00003088 _____ C:\Windows\System32\Tasks\{B5C83C37-82C0-4D47-9D3F-C50EBAB2901F} 2014-01-02 13:23 - 2013-04-05 00:55 - 00000000 ____D C:\Stormblade 2014-01-02 13:22 - 2013-05-10 10:37 - 00000000 ____D C:\ProgramData\EPS 2014-01-02 13:18 - 2012-11-30 22:05 - 00000000 ____D C:\Program Files (x86)\MyVideoConverter 2014-01-02 13:17 - 2013-01-06 02:52 - 00000000 ____D C:\Program Files\Just4Story 2014-01-02 12:24 - 2014-01-02 12:24 - 00002374 _____ C:\Users\Lukas\Desktop\JRT.txt 2014-01-02 12:07 - 2009-07-14 05:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-02 12:07 - 2009-07-14 05:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-02 12:02 - 2014-01-02 12:02 - 01036305 _____ (Thisisu) C:\Users\Lukas\Downloads\JRT.exe 2014-01-02 12:02 - 2014-01-02 12:02 - 00000000 ____D C:\Windows\ERUNT 2014-01-02 11:59 - 2013-07-07 11:38 - 00372746 _____ C:\Windows\PFRO.log 2014-01-02 11:59 - 2013-06-22 18:33 - 00036488 _____ C:\Windows\setupact.log 2014-01-02 11:59 - 2012-12-09 22:08 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-02 11:59 - 2012-03-16 06:20 - 00045056 _____ C:\Windows\system32\acovcnt.exe 2014-01-02 11:59 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-01 23:01 - 2014-01-01 23:01 - 02347384 _____ (ESET) C:\Users\Lukas\Downloads\esetsmartinstaller_enu.exe 2014-01-01 21:30 - 2013-10-02 18:14 - 00000000 ____D C:\Users\Lukas\Downloads\PAC-MAN Championship Edition DX+ 2014-01-01 21:09 - 2014-01-01 20:57 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\AllDup 2014-01-01 21:07 - 2014-01-01 20:22 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-01-01 21:03 - 2014-01-01 21:03 - 00001726 _____ C:\Users\Public\Desktop\Defraggler.lnk 2014-01-01 21:03 - 2014-01-01 21:03 - 00000000 ____D C:\Program Files\Defraggler 2014-01-01 21:02 - 2014-01-01 21:02 - 04208656 _____ (Piriform Ltd) C:\Users\Lukas\Downloads\dfsetup216.exe 2014-01-01 20:57 - 2014-01-01 20:57 - 00000000 ____D C:\ProgramData\AllDup 2014-01-01 20:57 - 2014-01-01 20:57 - 00000000 ____D C:\Program Files (x86)\AllDup 2014-01-01 20:56 - 2014-01-01 20:56 - 03503200 _____ (Michael Thummerer Software Design ) C:\Users\Lukas\Downloads\alldup_3.4.24.exe 2014-01-01 20:26 - 2014-01-01 20:26 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\AVAST Software 2014-01-01 20:25 - 2012-03-16 06:20 - 00002400 _____ C:\Windows\system32\AutoRunFilter.ini 2014-01-01 20:22 - 2014-01-01 20:18 - 00207904 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-01 20:22 - 2014-01-01 20:18 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys 2014-01-01 20:22 - 2012-11-23 23:44 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-01 20:22 - 2012-03-15 23:03 - 01034464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-01 20:22 - 2012-03-15 23:03 - 00422216 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-01-01 20:22 - 2012-03-15 23:03 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-01 20:22 - 2012-03-15 23:03 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-01-01 20:22 - 2012-03-15 23:03 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-01 20:22 - 2012-03-15 23:03 - 00001968 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-01 20:22 - 2012-03-15 23:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-01 20:18 - 2012-03-15 23:03 - 00000000 _____ C:\Windows\SysWOW64\config.nt 2014-01-01 20:18 - 2012-03-15 23:01 - 00000000 ____D C:\ProgramData\AVAST Software 2014-01-01 20:08 - 2013-12-07 21:12 - 00000000 ____D C:\Users\Lukas\Desktop\Schule 2014-01-01 20:06 - 2013-04-03 16:28 - 00000000 ____D C:\Users\Lukas\Desktop\MUUUSIK 2014-01-01 19:56 - 2014-01-01 19:56 - 01233962 _____ C:\Users\Lukas\Downloads\adwcleaner.exe 2014-01-01 19:46 - 2013-12-31 20:59 - 00000000 ____D C:\ProgramData\DigiSaveeRe 2014-01-01 19:18 - 2014-01-01 19:18 - 00001111 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Malwarebytes 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-01 19:18 - 2014-01-01 19:18 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-01 19:17 - 2014-01-01 19:17 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Lukas\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-01 19:17 - 2014-01-01 19:17 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Lukas\Downloads\mbam-setup-1.75.0.1300 (1).exe 2014-01-01 15:14 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2014-01-01 15:01 - 2014-01-01 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{EBC7CC9F-E327-4DCB-9D9B-26703C2D328A} 2014-01-01 14:21 - 2014-01-01 14:21 - 00003088 _____ C:\Windows\System32\Tasks\{4C5D98D2-752C-4356-B8B9-DF934338DE81} 2014-01-01 14:17 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\Users\Lukas\AppData\Local\Packages 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\ProgramData\kgladbfpiccckdamgjambjmjffcaldgg 2013-12-31 20:59 - 2013-12-31 20:59 - 00000000 ____D C:\ProgramData\fa244bcb520a9ef5 2013-12-31 15:01 - 2013-12-31 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8DCF181F-4B54-497E-BAA7-987076253F2F} 2013-12-30 15:00 - 2013-12-30 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{C2250512-FAEC-43CE-B543-3CB0D8EDC733} 2013-12-29 19:07 - 2013-07-19 03:39 - 00000000 ____D C:\Program Files (x86)\Steam 2013-12-29 15:02 - 2013-12-29 15:02 - 00003088 _____ C:\Windows\System32\Tasks\{8C03A2A2-F47B-42E5-A855-2ACA849099B6} 2013-12-28 15:01 - 2013-12-28 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{1F0B2D4B-6E3F-4F00-913E-4C831E42508D} 2013-12-27 18:33 - 2013-12-27 18:33 - 00000000 ____D C:\ProgramData\System Booster 2013-12-27 15:01 - 2013-12-27 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{E515B00A-20E3-4AA3-BEAC-A3EBCD12C396} 2013-12-26 15:01 - 2013-12-26 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{608FC186-BE24-45D5-97FB-10E066197B1F} 2013-12-25 23:10 - 2013-10-11 23:29 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2013-12-25 23:05 - 2013-10-11 23:25 - 00000000 ____D C:\Program Files (x86)\Battle.net 2013-12-25 15:01 - 2013-12-25 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8C8D8310-EEC1-49EA-8972-B688685309B8} 2013-12-24 15:01 - 2013-12-24 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{183F115B-9B0D-4D20-A1B8-9B00177E2D31} 2013-12-23 15:01 - 2013-12-23 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{BAB0D4A5-95EB-4E29-9384-6F5FFA74E6E7} 2013-12-22 15:01 - 2013-12-22 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{BFE98320-E6D5-4520-8E4F-25A071F6DE13} 2013-12-21 15:01 - 2013-12-21 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{455A8F68-61C2-4F86-9B34-11383681CC38} 2013-12-21 00:58 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-20 20:38 - 2012-03-15 07:56 - 00001423 _____ C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-20 20:36 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-20 20:25 - 2013-11-16 23:39 - 00068224 _____ C:\Windows\IE11_main.log 2013-12-20 20:19 - 2013-12-20 20:19 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-20 20:19 - 2013-12-20 20:19 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-20 20:19 - 2013-12-20 20:19 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-20 20:19 - 2013-12-20 20:19 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-20 20:19 - 2013-12-20 20:19 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-20 20:19 - 2013-12-20 20:19 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-20 20:19 - 2013-12-20 20:19 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-20 20:19 - 2013-12-20 20:19 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-20 20:19 - 2013-12-20 20:19 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-20 20:16 - 2013-12-20 20:16 - 00003088 _____ C:\Windows\System32\Tasks\{EFAC24BD-59FD-4AB5-8BE5-B2CE564C5FF5} 2013-12-19 15:01 - 2013-12-19 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{FEEF7C98-755B-4628-98F6-D70BFA7C22E3} 2013-12-19 14:11 - 2012-03-15 23:03 - 00064288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys 2013-12-18 18:00 - 2013-12-18 18:00 - 00003088 _____ C:\Windows\System32\Tasks\{8BB093DE-A975-4F04-8772-BBDDAC9E939C} 2013-12-17 21:06 - 2013-12-17 21:06 - 00003088 _____ C:\Windows\System32\Tasks\{1F54A357-F851-410F-9256-03D5AB4319CC} 2013-12-16 22:35 - 2013-12-16 22:35 - 02687875 _____ C:\Users\Lukas\Downloads\MA2000.zip 2013-12-16 16:51 - 2013-12-16 16:51 - 00003088 _____ C:\Windows\System32\Tasks\{23FDAE0A-23AA-422F-B7D9-AD5EA15F1F73} 2013-12-15 15:01 - 2013-12-15 15:01 - 00003088 _____ C:\Windows\System32\Tasks\{8FE9103D-E469-499F-92F6-C2E4354D0789} 2013-12-13 21:06 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-13 21:03 - 2009-07-14 05:45 - 00314936 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-12 15:37 - 2013-12-12 15:37 - 00003088 _____ C:\Windows\System32\Tasks\{B5BD9B74-107A-4F08-898E-798727C012AB} 2013-12-11 22:25 - 2012-10-18 22:08 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\mIRC 2013-12-11 19:32 - 2013-10-16 14:58 - 00000000 ____D C:\Program Files (x86)\mIRC 2013-12-11 19:26 - 2013-12-11 19:26 - 00000000 ____D C:\found.005 2013-12-11 18:53 - 2013-12-11 18:53 - 09293192 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2013-12-11 18:53 - 2012-07-20 23:09 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 18:53 - 2012-07-20 23:09 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-11 18:53 - 2012-03-16 12:48 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-10 17:32 - 2013-12-10 17:32 - 08098768 _____ C:\Users\Lukas\Downloads\teeworlds-0.6.2-win64.zip 2013-12-10 17:11 - 2013-12-10 17:11 - 00003088 _____ C:\Windows\System32\Tasks\{1CE2E33D-9B31-423C-B0DB-41DF2AEA8EC8} 2013-12-09 22:11 - 2013-09-22 18:44 - 00000000 ____D C:\Users\Lukas\Desktop\Bio 2013-12-09 20:19 - 2013-12-09 20:19 - 00003088 _____ C:\Windows\System32\Tasks\{C1F8CB5B-2B25-4441-919D-F75C9EDF612E} 2013-12-09 00:09 - 2013-12-09 00:09 - 00016413 _____ C:\Users\Lukas\Downloads\CzickiPresentation (1).odt 2013-12-08 23:13 - 2013-12-08 23:13 - 00015263 _____ C:\Users\Lukas\Downloads\CzickiPresentation.odt 2013-12-08 15:00 - 2013-12-08 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{E1EE22D1-01EF-403F-BF32-508C297CD17A} 2013-12-07 19:37 - 2012-08-08 00:14 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\.minecraft 2013-12-07 15:00 - 2013-12-07 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{EB351D6F-D363-4668-B6BF-521033422CE2} 2013-12-06 15:00 - 2013-12-06 15:00 - 00003088 _____ C:\Windows\System32\Tasks\{738BC984-8AE8-4EB3-8B41-E2791D6048BA} 2013-12-05 21:25 - 2013-12-05 21:25 - 00003088 _____ C:\Windows\System32\Tasks\{CA493F92-35B8-4030-8E5C-83CE3AD35D2D} 2013-12-04 16:09 - 2013-08-11 03:16 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-12-04 15:54 - 2013-12-04 15:54 - 00003088 _____ C:\Windows\System32\Tasks\{629CFABA-9D9D-432B-B194-44443CDD3E07} ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-30 00:19 ==================== End Of Log ============================ --- --- --- |
03.01.2014, 20:36 | #6 |
| Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Addition: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-01-2014 Ran by Lukas at 2014-01-03 20:20:46 Running from C:\Users\Lukas\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Trend Micro Titanium Internet Security (Disabled - Up to date) {68F968AC-2AA0-091D-848C-803E83E35902} AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Trend Micro Titanium Internet Security (Disabled - Up to date) {D3988948-0C9A-0693-BE3C-BB4CF86413BF} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== µTorrent (x32 Version: 3.2.0 - ) 4Story DE 4.0.167 (x32 Version: - ) Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (x32 Version: 11.6.8.638 - Adobe Systems, Inc.) AllDup 3.4.24 (x32 Version: 3.4.24 - Michael Thummerer Software Design) Apple Application Support (x32 Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (Version: 7.0.0.117 - Apple Inc.) Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.) ArtMoney SE v7.40.2 (x32 Version: 7.40.2 - System SoftLab) ASUS AI Recovery (x32 Version: 1.0.13 - ASUS) ASUS FancyStart (x32 Version: 1.0.8 - ASUSTeK Computer Inc.) ASUS K3 Series ScreenSaver (x32 Version: 1.0.0002 - ASUS) ASUS LifeFrame3 (x32 Version: 3.0.20 - ASUS) ASUS Live Update (x32 Version: 3.0.6 - ASUS) ASUS Power4Gear Hybrid (Version: 1.1.43 - ASUS) ASUS SmartLogon (x32 Version: 1.0.0011 - ASUS) ASUS Splendid Video Enhancement Technology (x32 Version: 1.02.0030 - ASUS) ASUS Virtual Camera (x32 Version: 1.0.21 - asus) ASUS WebStorage (x32 Version: 2.0.46.1429 - eCareme Technologies, Inc.) AsusVibe2.0 (x32 Version: 2.0.3.585 - ASUSTEK) ATK Package (x32 Version: 1.0.0008 - ASUS) avast! Free Antivirus (x32 Version: 9.0.2011 - Avast Software) Battle.net (x32 Version: - Blizzard Entertainment) Battlefield 4™ Beta (x32 Version: 1.0.0.0 - Electronic Arts) Battlelog Web Plugins (x32 Version: 2.3.0 - EA Digital Illusions CE AB) BattlEye for OA Uninstall (x32 Version: - ) Bing Rewards Client Installer (x32 Version: 16.0.345.0 - Microsoft Corporation) Hidden Bonjour (Version: 3.0.0.10 - Apple Inc.) Bookworm Deluxe (x32 Version: - Oberon Media Inc.) Canon iP2700 series Printer Driver (Version: - ) Canon My Printer (x32 Version: 3.0.0 - Canon Inc.) CleanMem (x32 Version: v2.4.3 - PcWinTech.com) Complément Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Complemento Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Control ActiveX de Windows Live Mesh para conexiones remotas (x32 Version: 15.4.5722.2 - Microsoft Corporation) Contrôle ActiveX Windows Live Mesh pour connexions à distance (x32 Version: 15.4.5722.2 - Microsoft Corporation) Controlo ActiveX do Windows Live Mesh para Ligações Remotas (x32 Version: 15.4.5722.2 - Microsoft Corporation) Cooking Dash (x32 Version: - Oberon Media Inc.) CyberLink Power2Go (x32 Version: 6.1.3602c - CyberLink Corp.) CyberLink Power2Go (x32 Version: 6.1.3602c - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DayZ Commander (x32 Version: 0.92.83 - Dotjosh Studios) Defraggler (Version: 2.16 - Piriform) Diablo III (x32 Version: - Blizzard Entertainment) Dragon's Prophet (x32 Version: 1.0.1087.10 - Infernum Productions AG) Duel of Champions (x32 Version: - Ubisoft) Dungeon Defenders (x32 Version: - Trendy Entertainment) eMule (x32 Version: - ) ESET Online Scanner v3 (x32 Version: - ) ESN Sonar (x32 Version: 0.70.4 - ESN Social Software AB) ETDWare PS/2-X64 8.0.5.3_WHQL (Version: 8.0.5.3 - ELAN Microelectronic Corp.) EVEREST Home Edition v2.20 (x32 Version: 2.20 - Lavalys Inc) Fast Boot (Version: 1.0.9 - ASUS) Forged By Chaos (x32 Version: - ) Fraps (remove only) (x32 Version: - ) Free YouTube to MP3 Converter version 3.11.34.1015 (x32 Version: 3.11.34.1015 - DVDVideoSoft Ltd.) Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Game Park Console (x32 Version: 6.2.1.1 - Oberon Media, Inc.) Gameforge Live 1.0 "Legend" (x32 Version: 1.1.1724 - Gameforge) GOM Player (x32 Version: 2.1.43.5119 - Gretech Corporation) GOMTV Streamer (x32 Version: 1.0.0.26 - Gretech Corporation) Google Chrome (x32 Version: 31.0.1650.63 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden Governor of Poker (x32 Version: - Oberon Media Inc.) Hearthstone (x32 Version: - Blizzard Entertainment) Hotel Dash Suite Success (x32 Version: - Oberon Media Inc.) iCloud (Version: 3.0.2.163 - Apple Inc.) iTunes (Version: 11.1.2.32 - Apple Inc.) Java 7 Update 21 (x32 Version: 7.0.210 - Oracle) Java 7 Update 45 (64-bit) (Version: 7.0.450 - Oracle) Java Auto Updater (x32 Version: 2.1.9.5 - Sun Microsystems, Inc.) Hidden JavaFX 2.1.1 (x32 Version: 2.1.1 - Oracle Corporation) Jewel Quest 3 (x32 Version: - Oberon Media Inc.) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden League of Legends (x32 Version: 1.3 - Riot Games) Luxor 3 (x32 Version: - Oberon Media Inc.) Mahjongg dimensions (x32 Version: - Oberon Media Inc.) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Messenger 分享元件 (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft PowerPoint Viewer (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden mIRC (x32 Version: 7.32 - mIRC Co. Ltd.) Mozilla Firefox 20.0.1 (x86 de) (x32 Version: 20.0.1 - Mozilla) Mozilla Maintenance Service (x32 Version: 20.0.1 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (x32 Version: 4.30.2107.0 - Microsoft Corporation) MySQL Connector/ODBC 5.1 (x32 Version: 5.1.5 - MySQL AB) Need For Speed™ World (x32 Version: 1.0.0.993 - Electronic Arts) Notepad++ (x32 Version: 6.3.2 - Notepad++ Team) Nuance PDF Reader (x32 Version: 6.00.0041 - Nuance Communications, Inc.) NVIDIA 3D Vision Treiber 320.49 (Version: 320.49 - NVIDIA Corporation) NVIDIA GeForce Experience 1.5 (Version: 1.5 - NVIDIA Corporation) NVIDIA Grafiktreiber 320.49 (Version: 320.49 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.24.2 (Version: 1.3.24.2 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.124.810 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.0604 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0604 (Version: 9.13.0604 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.2049 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 320.49 (Version: 320.49 - NVIDIA Corporation) Hidden NVIDIA Update 4.11.9 (Version: 4.11.9 - NVIDIA Corporation) Hidden NVIDIA Update Components (Version: 4.11.9 - NVIDIA Corporation) Hidden Open Broadcaster Software (x32 Version: - ) OpenOffice 4.0.0 (x32 Version: 4.00.9702 - Apache Software Foundation) OpenOffice.org 3.4.1 (x32 Version: 3.41.9593 - Apache Software Foundation) Origin (x32 Version: 9.3.7.2735 - Electronic Arts, Inc.) osu! (x32 Version: 0.0.0.0 - peppy) PAC-MAN Championship Edition DX+ (x32 Version: - Mine Loader Software Co., Ltd.) Pando Media Booster (x32 Version: 2.6.0.9 - Pando Networks Inc.) Panzar (x32 Version: 1.0 - Panzar) Plants vs Zombies (x32 Version: - Oberon Media Inc.) Play withSIX (x32 Version: 1.30.0472 - SIX Networks) PlayChess (x32 Version: - ChessBase GmbH) Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Realtek Ethernet Controller Driver (x32 Version: 7.38.113.2011 - Realtek) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6318 - Realtek Semiconductor Corp.) Realtek USB 2.0 Reader Driver (x32 Version: 6.1.7600.10001 - Realtek Semiconductor Corp.) Rybka 3 Aquarium Demo (x32 Version: - ) Sandboxie 3.64 (64-bit) (Version: 3.64 - SANDBOXIE L.T.D) Six Updater (x32 Version: 2.09.7038 - Six Projects) Skype™ 5.8 (x32 Version: 5.8.158 - Skype Technologies S.A.) Sonic Focus (x32 Version: 1.00.0000 - Virage Logic, Corp.) StarCraft II (x32 Version: - Blizzard Entertainment) StarCraft II Beta (x32 Version: 2.0.0.24247 - Blizzard Entertainment) Steam (x32 Version: 1.0.0.0 - Valve Corporation) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden syncables desktop SE (x32 Version: 5.5.746.11492 - syncables) System Booster (x32 Version: - Goingo) Team Fortress 2 (x32 Version: - Valve) TeamSpeak 3 Client (HKCU Version: 3.0.11.1 - TeamSpeak Systems GmbH) TmNationsForever (x32 Version: - Nadeo) TmUnitedForever Update 2010-03-15 (x32 Version: - Nadeo) Trend Micro Titanium Internet Security (Version: 3.0 - Trend Micro Inc.) Trend Micro Titanium Internet Security (Version: 3.00 - Trend Micro Inc.) Hidden Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Family Safety (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (x32 Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live 影像中心 (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live 程式集 (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8 - Microsoft Corp) Windows-Treiberpaket - Qualcomm Atheros Communications Inc. (athr) Net (03/11/2013 10.0.0.234) (Version: 03/11/2013 10.0.0.234 - Qualcomm Atheros Communications Inc.) Windows-Treiberpaket - Qualcomm Atheros Communications Inc. Net (03/11/2013 10.0.0.234) (Version: 03/11/2013 10.0.0.234 - Qualcomm Atheros Communications Inc.) WinFlash (x32 Version: 2.31.0 - ASUS) WinRAR 4.11 (64-Bit) (Version: 4.11.0 - win.rar GmbH) WinZip 16.0 (Version: 16.0.9715 - WinZip Computing, S.L. ) Wireless Console 3 (x32 Version: 3.0.19 - ASUS) World of Goo (x32 Version: - Oberon Media Inc.) XChat 2 (remove only) (x32 Version: - ) XZONE REACTOR Application (x32 Version: - ) Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (x32 Version: 15.4.5722.2 - Microsoft Corporation) Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden מסייע Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (x32 Version: 15.4.5722.2 - Microsoft Corporation) 適用遠端連線的 Windows Live Mesh ActiveX 控制項 (x32 Version: 15.4.5722.2 - Microsoft Corporation) ==================== Restore Points ========================= 02-01-2014 12:19:29 Removed Sonic Focus. 02-01-2014 14:00:12 Windows Update 02-01-2014 15:21:56 Installed Java 7 Update 45 (64-bit) 03-01-2014 14:00:14 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {01105F98-AF17-4F8E-BFCE-8377DDD5552A} - System32\Tasks\{8E19C84F-DBEE-4286-97DB-EF426D3683DC} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {01324497-CD04-4934-BE70-08FE7AF59D58} - System32\Tasks\{8C03A2A2-F47B-42E5-A855-2ACA849099B6} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {02606530-C775-4055-ACF2-37B54D1DFD7B} - System32\Tasks\{B5C83C37-82C0-4D47-9D3F-C50EBAB2901F} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {036E0D92-7A4A-4988-8476-463FA95B9C0A} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2010-11-15] (ASUS) Task: {039B1AB3-153C-485D-8008-2676119473F7} - System32\Tasks\{8CDA8C84-7ADC-467C-A026-E436CBBF1DCB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {04AB0558-A6F6-423F-B47B-A9AD930D32DE} - System32\Tasks\{46072ECF-B1C8-4C36-8889-5659E70D9EA6} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {098E0050-8703-4CC0-8B25-4958FE0EA9F9} - System32\Tasks\{0BFF444A-BC19-44F4-929C-A0ED4E0366DD} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0A29F97E-A907-4F0F-B08D-A18603E23E89} - System32\Tasks\{8670D438-015A-47B3-AAC3-B8DABEE09E17} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0A3BCF0A-CDD3-4835-BE69-85D31E707832} - System32\Tasks\{EDB0BF38-3175-4BF3-B9FE-05CD9B78E0B8} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0C34FB41-95BB-4F6C-BB1D-815A9F2A5C61} - System32\Tasks\{7B1C8E9C-F722-4D60-B28F-EB1893CC0894} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0E9A0134-807D-43D5-8DDF-6F8D9F75DC3D} - System32\Tasks\{C44C06CD-278F-4464-936B-AC31B2B464DC} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0F02BBF9-4EC5-4C5C-B691-C2627862E6B6} - System32\Tasks\{C7F4C41C-BAF0-4840-BDD0-F95BE4327D75} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {0F9D72FE-7E3E-47CB-8C5F-C5E3BA0BC243} - System32\Tasks\{9180B896-4C01-4838-9431-F9253EE20B66} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {10A887FD-B925-4F76-A6D0-89F90BA67626} - System32\Tasks\{FE21D002-6F9B-4B50-8654-CEF52DDE0E45} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {112F7DCD-8EC5-446A-A2C3-BB1C0D44C5D5} - System32\Tasks\{52D997E7-487F-4129-AB9F-E59DB61D6607} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {129ADC79-0A9C-49DA-91AC-D6E77276DABF} - System32\Tasks\{E515B00A-20E3-4AA3-BEAC-A3EBCD12C396} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {13D737EF-A75A-46A0-9C19-F301DEDDAE4A} - System32\Tasks\{73532679-28A1-4439-BD1C-CF1D0E418FF0} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {14610BD3-207D-463E-A0C3-10FBA52C194B} - System32\Tasks\{D3551248-6AB0-4B20-AE73-0E02F95E1760} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {15219BE6-7778-4AB6-842D-CB43763C7FEF} - \Express FilesUpdate No Task File Task: {152C56F6-C9A1-4A58-B51B-2637D64477BB} - System32\Tasks\{B6B5B26A-3E24-48AB-95DA-EDF5D70E6C79} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1622A46D-8752-42D1-A7CB-0AA33175DB76} - System32\Tasks\{F1D0697A-F52C-4BF4-BA60-83E222D05936} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {168A3393-3659-4590-AF2C-219607944F54} - System32\Tasks\{8DCF181F-4B54-497E-BAA7-987076253F2F} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1838191D-82C9-4649-9F7B-6798D68C363A} - System32\Tasks\{68A7ABAA-43C8-4F6A-B0E3-24D1855FEB7B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1A55A696-F580-484E-99C7-DD414F1C1E24} - System32\Tasks\{8C8D8310-EEC1-49EA-8972-B688685309B8} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {1E8DA346-EFFA-49B4-8BBA-2E976B727277} - System32\Tasks\{2DBD939B-7C78-49B9-80CC-CC78D0C4F96D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {21F7718A-A39A-43DC-95FE-ACEE0991CAE2} - System32\Tasks\{B5BD9B74-107A-4F08-898E-798727C012AB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {251926AF-0B1D-4C28-AAD4-F3747AE19043} - System32\Tasks\{E1EE22D1-01EF-403F-BF32-508C297CD17A} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {261A5DDD-0833-443B-AFF8-DC68853A629C} - System32\Tasks\{1D502F44-9612-4DD6-8E86-5787B9EFF077} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {261E411A-2572-4D58-A871-6870DC6FACD2} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2010-08-02] (ASUS) Task: {29DDB1C7-EE36-4BE1-88F9-B3B66EF31B93} - System32\Tasks\{23FDAE0A-23AA-422F-B7D9-AD5EA15F1F73} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2A4025EB-9CB2-496D-B839-B39DBAD10A0E} - System32\Tasks\{22291BFF-0D37-4A35-A313-CC9666682F2D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2CC4E3B9-01A6-4A61-9F87-34025BB3D503} - System32\Tasks\{781ED945-1259-45EA-A284-C38C5D4FE210} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2D955DCA-308D-4CB2-9393-F9E73E1FD270} - System32\Tasks\{798144B8-AE60-405D-8503-EAA5977121F1} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {2EC51815-1D7E-469E-9D39-580A4BFB715B} - System32\Tasks\{608FC186-BE24-45D5-97FB-10E066197B1F} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3077055B-E910-445A-ACE3-5F353C827E1F} - System32\Tasks\{36B70DAF-2172-44BF-9ABC-3CE8D5036B7E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {31AB5CEF-42F7-4B43-9C73-F9D63D238554} - System32\Tasks\{65F35B0C-5EF8-4B69-81FD-21D6691DAC12} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {324C8CD4-22DC-4A1A-BE88-B82DE891E53C} - System32\Tasks\{64D157FA-1C00-43FA-B322-824B3AF6A4B7} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {33739AEC-7CA6-4CE0-8997-EB0052C6C2BF} - System32\Tasks\{EBC7CC9F-E327-4DCB-9D9B-26703C2D328A} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {34E2F719-D45C-40F7-B925-B17C758D2DC5} - System32\Tasks\{1453BDAC-B9B9-43DD-9922-02D1403180C5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {384E61D9-EAF9-4815-8C03-AE7888B6C2DC} - System32\Tasks\{F470DBBA-B7D3-4984-8527-4662068434AB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {385682B5-D6A7-431B-A3CD-9B9D12831C2E} - System32\Tasks\{45E5FC5F-C770-42A2-849C-43361BE59946} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3A5A791B-B546-4C19-B7B1-249920F29701} - System32\Tasks\{BEDACD18-1424-4405-BA2C-0B876646036C} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3AC62454-C478-49ED-A46F-62AC9B21648E} - System32\Tasks\{2C456611-D08D-4FBC-82BF-A21C734D9509} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3C7F55CE-0367-460A-B776-8A05C24A9F95} - System32\Tasks\{CEA566DE-90BF-44EA-AEC1-7117660DBCB6} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3D24B03B-744A-4084-A016-C75015E75F96} - System32\Tasks\{DCD44A3B-7B7C-4698-894F-43EABB3D3FB6} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3DBF18AA-7560-4092-8632-72EEC0801A6B} - System32\Tasks\{CB420BF6-6B71-448A-82A8-8E372567D0DB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3DFAC45D-B29D-4697-BB22-EAD47E663C67} - System32\Tasks\{4493CDE8-DDE6-4151-8021-B3EED3EBB962} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {3E4274AC-3018-414B-A0E7-5B19E970E069} - System32\Tasks\{BAB0D4A5-95EB-4E29-9384-6F5FFA74E6E7} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {41A3D3D0-6C8F-44BE-96AD-9750EB0DDF77} - System32\Tasks\{6F6BA94F-8D8C-42B3-B192-306A9108D838} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4237D28F-9397-48A7-B25A-44BEE096FA6C} - System32\Tasks\{DBE95933-9C2D-490A-A428-E9C9DA5193CC} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {442F133F-3B46-4740-955F-238B69B2BB5F} - System32\Tasks\{DD51BCF7-B22B-4E15-AFB0-78C6B4938A91} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {48270B74-6530-4B59-8832-030C9AEBBE1C} - System32\Tasks\{629CFABA-9D9D-432B-B194-44443CDD3E07} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4A3600FC-C666-4C19-BC07-A72404856A0D} - System32\Tasks\{4C5D98D2-752C-4356-B8B9-DF934338DE81} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4BD9A68E-7DED-4BFE-BE1A-36084BC38A50} - System32\Tasks\{1AD0DFA2-4241-489F-990F-98706DB90E1C} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4C4352A5-01BD-4B71-8195-44C353BEC6BD} - System32\Tasks\{3FC0EE7A-3AAF-471E-967D-F1C6C83E0EFF} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4F0E8E56-D1DE-4B90-BA81-016F729868F8} - System32\Tasks\{FE32E279-50FB-42D4-A72E-D06914AB7F31} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {4FD0C0B2-4128-4F3F-BE1C-059B952D0733} - System32\Tasks\{386C1097-AE30-41A8-A8D4-A96DF48F5DF3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {501F5CCB-E7D0-4A16-B539-7B01883BE6A6} - System32\Tasks\{86995897-1C45-482A-81C3-B69268573E32} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {51ACCA4C-EFA2-44F6-B608-ACA414091086} - System32\Tasks\{D9D75ACC-3E05-4050-B2D0-5AD913F27968} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5360D541-66DC-45FD-8666-A723242870D5} - System32\Tasks\{FEEF7C98-755B-4628-98F6-D70BFA7C22E3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {55641ED1-3F6F-4B5B-95A9-777174E1F9DB} - System32\Tasks\{87C2CD0C-6A62-4158-9C4E-E84478374E79} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {57F51741-A1D2-49BE-9BBC-331DFBCE13FC} - System32\Tasks\{86EC35C6-D545-46D5-AC92-4FAE36591CBA} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {593B9001-FF27-4457-B025-E8B7AB33FB5E} - System32\Tasks\{E3E5103B-448B-4F06-BBD0-5871769002CD} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5B86A921-4A4F-43B5-B653-1C2C12346E7D} - System32\Tasks\{E7F02A97-1D31-4DD3-80C9-6AE3A5B7CC1B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5CF520D9-AEFD-4207-A10F-E62DCCF87B63} - System32\Tasks\{49ED9AA5-4409-4BFA-91E4-03D4BDFA6879} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5E8B3F5A-371E-4E05-B807-A635AD73B9E1} - System32\Tasks\{C1F8CB5B-2B25-4441-919D-F75C9EDF612E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5FCAB7A5-04AC-441F-BCA5-C6D8EBC95857} - System32\Tasks\{BF6B01F0-42F2-4069-AE31-3B287AB2C725} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {5FDBB40B-5E82-49AD-ADA3-0DAE81700073} - System32\Tasks\{738BC984-8AE8-4EB3-8B41-E2791D6048BA} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {62A2E539-0243-4F0E-873D-D2BB722180CF} - System32\Tasks\{622E83B8-9FCD-4226-A3D8-BBC01D7A3F8A} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {63C22969-FC2B-4B96-A5B8-D39801DF96AD} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2011-08-31] (ASUSTeK Computer Inc.) Task: {6454799E-A467-4F70-881E-4C5B66B78103} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-01-12] (Google Inc.) Task: {66C88BFE-D8C5-45D9-AAC4-38AF58EC1F70} - System32\Tasks\{455A8F68-61C2-4F86-9B34-11383681CC38} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6B4FB7FF-B429-4623-8DE7-E1279FF1CF65} - System32\Tasks\{4F0907AE-8C9A-4173-A198-9B59DD503FA5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6C18638A-B8ED-4F2A-A377-E5FD000B50C7} - System32\Tasks\{6F708414-B85D-4520-9203-756250070E76} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {6F5F81AB-F51D-4778-B8A1-E7BE6BA54573} - System32\Tasks\{ADFE5B52-B773-4F22-A39E-AEB904B46765} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {72EBE644-9314-423B-A9C5-7250EE07C47C} - System32\Tasks\{D137B0FE-07FA-473D-A80A-FDD183D6AEE4} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {72EEF114-9708-4B43-974A-1DEAEB7E2E2D} - System32\Tasks\{51E86EC2-1A64-418D-BA39-5B60EA0108D2} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {72F0AD5A-CF4F-45A1-8939-92E8C2B747E9} - System32\Tasks\{9524F4C8-2EF2-4F1C-B627-2BCDC6A1EC78} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {73672E38-6789-4A6C-AC34-B2AF1C863511} - System32\Tasks\{E08594EC-6972-42FC-A2EA-6A85706C1249} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7923AE55-DA52-4B94-8F19-297DDE4D0B87} - System32\Tasks\{AB34DCDF-F39B-4CD7-BD9E-D37877D67255} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7E0689D1-B0B9-4356-A864-B6396D754945} - System32\Tasks\Clean System Memory => C:\Windows\SysWOW64\CleanMem.exe [2012-09-20] (PcWinTech.com) Task: {7E9019D1-A1C1-4C92-BD62-9E61EEC7CDA1} - System32\Tasks\{6AFDE947-20FB-4905-BB21-10F48EE115B7} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7F083E84-0187-424F-AECE-D778DA4357A8} - System32\Tasks\{52793706-EAC0-429E-9960-E27C9D83C8A5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7F4C2E11-7B9E-4FFB-9FEB-09B05044799A} - System32\Tasks\{2C9B1640-BBC8-40AC-9DB8-EA36A524BB72} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {7FC5E977-08F7-4E47-AA7A-1646CB3A7CCD} - System32\Tasks\{1F54A357-F851-410F-9256-03D5AB4319CC} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {818661DC-C6EE-49CB-9065-1F1223F043D7} - System32\Tasks\{E11F26E3-FBFD-4B58-8B20-615D58EB3838} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {84984922-CAEA-41CC-8B9C-C18290F5A7E2} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-08-17] (ASUS) Task: {859F4853-B589-4569-B5EA-000788B98505} - System32\Tasks\{657A8D5F-3DB9-492D-80ED-1557193B863D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {85CA914D-D7B7-42CF-932A-52C6A7FD57F0} - System32\Tasks\{4D6E7E0F-CE2B-43E3-B4B6-B9D5F9787E27} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8630E0DA-F7DE-4704-95A4-3308F0106A06} - System32\Tasks\{71B27DAA-F288-4F53-BA6E-A0ACDC2036CB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {87C6389E-8E85-41E4-8C00-43C39B211910} - System32\Tasks\{9E730D64-E099-4E8C-8FE5-E6F96DB013B9} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8B90B6DE-B367-454C-9BB8-232251903341} - System32\Tasks\{6B5A6103-7655-481E-BB5B-25E9FDB763ED} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8C26D495-D2A7-4C84-AFDC-F3EE28DE0712} - System32\Tasks\{96B245C1-D522-498B-8F3B-AAF10341D57E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {8F8FBBF4-D033-4B14-91A3-01A86668F3D8} - System32\Tasks\{A9C97EF7-730A-42CF-B3E7-FF608A5EA4E3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {900D5BCA-EE87-449F-A403-5D11B084FDDC} - System32\Tasks\{D5DA5454-5A53-4E62-8265-68B8B16EF9C2} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {909D937A-525F-4277-AEC9-6E74BF9FFCBE} - System32\Tasks\{C2250512-FAEC-43CE-B543-3CB0D8EDC733} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {90D8C7E4-7710-464E-B371-B6167D14EF73} - System32\Tasks\{8FE9103D-E469-499F-92F6-C2E4354D0789} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {915DBE6E-197A-4756-BC66-16A90F67C76B} - System32\Tasks\{0A0A0944-FE2D-4896-A6E8-43CB8AEB2F40} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9196AB3E-6BF8-44C7-8CD7-15F4AD3F0260} - System32\Tasks\{1F0B2D4B-6E3F-4F00-913E-4C831E42508D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {93D424CF-4D82-41DE-9A5C-E3C431316346} - System32\Tasks\{9E9DE4FF-F183-4BC5-86E8-88C5298E9AA2} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {96A54E82-7612-4479-A77C-6ADE3E4943D6} - \BackgroundContainer Startup Task No Task File Task: {983CE4B1-193F-4A17-8F86-9FD8732DA59B} - System32\Tasks\{1CE2E33D-9B31-423C-B0DB-41DF2AEA8EC8} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {995D9D5A-D295-44A5-81A2-335C2EBB664B} - System32\Tasks\{BFE98320-E6D5-4520-8E4F-25A071F6DE13} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9B065292-6EE2-4C08-947B-A374B49A8EB0} - System32\Tasks\{04D08793-A4EC-4B58-B755-F388D00B2C3F} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {9DD6386A-3D42-4E97-BF49-CC6A61792C72} - System32\Tasks\{5DB93A86-4A6F-4F11-9B49-3BD62C4C3EC5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A05DE517-59DC-4E6E-B405-BC3216499739} - System32\Tasks\{7AD4D454-0CFC-4842-AAA5-08C68C2401A1} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A4140DC5-8640-4CF1-ABB9-155F5BA81C9C} - System32\Tasks\{08CF2F0D-0189-42E1-B1D5-F2B83DF8E7A6} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A41E8DC9-72A8-4A73-AAB2-1C867FCB4AD4} - System32\Tasks\{D34FB48B-58C9-4003-A2C4-BDDAC52FE0AC} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A4ACFE9A-DB02-4F6C-BE99-58B38420BED5} - System32\Tasks\{D5B89961-6D85-4866-BA6A-4C5E3E17CE35} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {A8D22F2E-011A-4A93-BF2B-5874628C0156} - System32\Tasks\{8C21E753-C6D6-4551-86F8-4344C2584C30} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {AD3E4CE3-D42B-4707-946D-0A6F0A55C7FC} - System32\Tasks\{C328F1FE-3C60-4399-B67A-0A8805662586} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {AE76D6A3-77E7-45E5-AC29-D29AAFB83F9F} - System32\Tasks\{90EFEBE9-DB53-497F-AD69-86A4820D7D9D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B2E4AA0C-5CB4-4713-973E-DCA4D58D13C7} - System32\Tasks\{1261585F-5D6F-4842-B463-C5E1D4BF4E58} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B329C2AF-B5F1-4666-B29F-1F3652D2A216} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {B44257BA-F43D-4120-A040-95BD9B7C566F} - System32\Tasks\{14BDF772-2121-4AC2-B551-ABB253215C05} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B47CF0E2-18D0-429B-8828-F57B46A03412} - System32\Tasks\{B948A242-44B7-4A47-905D-05EECB56E0B3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B55C6657-BB6F-45C5-B5DC-0939ABB6DD18} - System32\Tasks\{CF1F0C1B-7FAC-44E6-A4F0-5F9DCCF28124} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B591E623-E98E-480B-991F-659C9471E3C9} - System32\Tasks\{A01D39A8-F2C2-45DE-B59E-DEADA7060AD9} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {B60061F3-049E-4B8D-8E1C-FF1DF7EB4FE6} - System32\Tasks\{B4A49EDF-1824-4A01-AD0B-C3F95D338A66} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BA550896-34F8-445B-98DD-3F96A8D64132} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11] (Adobe Systems Incorporated) Task: {BB3BD9E1-E96E-4E96-A220-EC0DDA415F11} - System32\Tasks\{C08DC21C-DA78-4122-BC57-DCFF00E94AB3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BBEC2399-CAD4-40F0-BC3E-CF6EAF9AB16A} - System32\Tasks\{EA91DEE7-C001-415F-94AC-C9AE3F8893C3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BC3CCCB3-A0CF-413E-983F-C6D65CE10EEF} - System32\Tasks\{1788143F-4478-4A96-B4EF-F2C0338F4C65} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BCAB050B-A4AB-4EAA-A477-922C817F34D2} - System32\Tasks\{01F4EB92-CD54-4257-9AD1-D9637A588B8E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {BDBC767C-03CB-49A4-9E2C-FA4B07528C2E} - System32\Tasks\{75F6A1AF-FBD4-47ED-A5E9-35F2E2AF86B3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C12012C5-397F-4104-98C2-396321DCF603} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-01-12] (Google Inc.) Task: {C17C5BD1-83FA-493A-AAC0-1F68AB26C2BF} - System32\Tasks\{CA36F17B-B5B7-4112-90EE-C0FA13D7AFB9} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C1FD79B6-B434-4C9A-9D18-4A0DAD42DEDC} - System32\Tasks\{F043E983-186B-4AAD-8A1D-17D0F4E1EFB1} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C2F464CD-0606-49C1-A689-AAB838856A36} - System32\Tasks\{DEA0F8DA-3E33-4503-8EF4-BD75050C693F} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C32881AF-864A-4019-8F1E-25DD600312B8} - System32\Tasks\{41FEA9C1-44FF-4AE6-8672-E90DCB1BC6B5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C38AD1B6-6581-4E2A-9082-119784CD1FCA} - System32\Tasks\{A7834615-481B-4EBC-8B84-132602D6CB85} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C3987DB0-99CF-475C-8B7D-ABAF39BCD6BC} - System32\Tasks\{2ACBCF9C-91EC-416E-9711-E43256CBC0B7} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C4CAE776-DAC8-411B-A753-83E28658B2B8} - System32\Tasks\{183F115B-9B0D-4D20-A1B8-9B00177E2D31} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {C86FAC66-99E8-41BF-A927-E7CD0218736F} - System32\Tasks\{7291AA2B-DEF1-402C-9E19-E25A6F0C7709} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {CC581927-1866-461F-B6CD-D77648D1786E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-01-01] (AVAST Software) Task: {CC93ADD1-5F56-47C8-AC11-BFC7793B223C} - System32\Tasks\{BD021FDD-A1F8-422E-A45D-96DAE1046690} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D0337710-F8BD-4309-B4E7-52BD4BFF79FE} - System32\Tasks\{CA493F92-35B8-4030-8E5C-83CE3AD35D2D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D440A169-1A77-46A5-973B-0D828213180B} - System32\Tasks\{EFAC24BD-59FD-4AB5-8BE5-B2CE564C5FF5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D4410B79-3B1F-4E03-A08D-35C78A60BE0E} - System32\Tasks\{C225AFC7-44DE-4B1A-B8BD-58BEFBF5B184} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D4ABC157-6DB6-4491-9C8F-D83F6FF87460} - System32\Tasks\{608AC0FB-3252-4746-8EC2-E6C044D04196} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D4DDA161-37D0-4062-A381-C2B246009307} - System32\Tasks\{7C2A96B3-03BD-4559-8387-B91248033132} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {D613E1F2-7A6C-4BB1-9755-3D8C514BB1B3} - System32\Tasks\{B669320E-F3F3-4A26-9F72-63245E17BAE4} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DB684E46-8D3A-4C7C-9828-B4B7B1209FFE} - System32\Tasks\{D54E7030-A3A3-496E-B206-43101A10D9B5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DB6FBECB-D0F3-467E-9844-8B14605DAA7E} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2010-12-02] (ASUS) Task: {DBBB011A-F6EA-44DC-8712-1FAF3B900B3A} - System32\Tasks\{A3422796-F3CB-4E7F-9D75-9B28D3D3691B} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DD40B21A-E3C8-4D81-BCDD-D962C3DAEAB2} - System32\Tasks\{59D4150B-7374-460B-9E5D-3E2A9E310CF1} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DD7D285F-C459-4F26-8DF9-BC81DBE9251E} - System32\Tasks\{F4325056-53DF-4233-BA95-79FE29CD3A8A} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DDF5022F-20E7-461E-ADC5-23778E16B397} - System32\Tasks\{AA7B1220-6349-4AF5-86DC-0A1C97308949} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {DF80DFBA-EE60-416F-98A8-7D04D1B89F62} - System32\Tasks\{E74693FF-7D37-4544-B89D-6E473C4CDE6E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E49DE8E3-C287-4B4A-9DCD-0ADAEE75CE59} - System32\Tasks\{D1965D74-BBE2-4751-BC36-A2ED54C583ED} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E633BB4F-B133-40D0-9393-6D9E5F27D002} - System32\Tasks\{46207442-6801-4E71-86E5-AD69846115B1} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E74859FD-7656-4D02-AC38-FECB8BFA077B} - System32\Tasks\{F5A32A4A-46EE-4F32-98DB-F05366A23FAD} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E75EA4E7-E551-4AAB-AB56-3975706B4DE0} - System32\Tasks\{C974A4D7-C31A-4056-BF6A-6E95756A1E18} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E8AB32DC-10A5-479F-9445-E89EC22487C3} - System32\Tasks\{8D1F3222-17F7-40D6-AE29-0B47BD460180} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {E8AB3BBA-244F-4151-BA07-4641E7B8FDAA} - System32\Tasks\{EB351D6F-D363-4668-B6BF-521033422CE2} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EA8F80A5-475C-4760-B042-B3F3088EB295} - System32\Tasks\{5B24F606-0CCC-4B21-8EB2-6911751761CA} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EC88B894-7317-4BC1-ACD2-88B9A2DF3700} - System32\Tasks\{87B6E419-252A-4E09-B91F-F9E1D1AEF3D9} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EE76FDFA-1F87-4735-9721-AED33E707314} - System32\Tasks\{95619AF5-9568-4613-88CB-D667F4AEFBE4} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EF107AF0-3238-4C1C-A6C8-98F2DA9F633C} - System32\Tasks\{87F8C925-A820-402C-81EE-BDB390E9D24C} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {EFAE7154-FABB-42D4-BF9A-B7384556CEEB} - System32\Tasks\{F82AC57F-4DCF-4478-A11F-A27B99651F01} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F0F10E7E-DB2B-4B02-9739-29FC078A349D} - System32\Tasks\{27711093-6F8C-460B-B071-B518E85E4D8D} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F1CEFE7D-F5C1-4D77-801F-E285C6200587} - System32\Tasks\{8BB093DE-A975-4F04-8772-BBDDAC9E939C} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F2C240DA-B9D1-43E4-A288-00462BCD8B13} - System32\Tasks\{46CC66C4-AB34-47DF-840C-7FD5BD0754C3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F3B37FB5-0BA2-407D-BB31-48F11CCA5C69} - System32\Tasks\{99E828D9-2B0F-4DC2-8CAE-472C1B8CE8EB} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {F6DCD2ED-82F9-4EAF-9977-58F4204D41F6} - System32\Tasks\{299C3A02-5CBF-43B3-BE1F-4B4DC72E9CAE} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FBEB53AA-16DF-4427-828B-4C8AC6DAA1C0} - System32\Tasks\{0E9BF94B-2431-4F43-B063-4F1D3EB419F3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FD67AA6A-1956-4A88-996A-AD83FC62473E} - System32\Tasks\{609D2456-927D-4E1B-951D-203A00F36AA3} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FE8E337E-205E-422B-86F2-19E38D3FA17B} - System32\Tasks\{B5168B90-C598-4887-8C04-868DADC6F58F} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: {FECA6BA2-1921-4C12-A865-670D47610374} - System32\Tasks\{77EE3130-B5CE-4157-9017-897A83776C8E} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603 Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2010-04-03 03:21 - 2008-10-01 07:08 - 00011264 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll 2010-07-15 00:11 - 2010-07-15 00:11 - 00031360 _____ () C:\Program Files\P4G\DevMng.dll 2012-05-01 17:03 - 2012-02-17 19:55 - 00193536 _____ () C:\Program Files\WinRAR\rarext.dll 2010-03-16 02:48 - 2010-03-16 02:48 - 00148816 _____ () C:\Program Files (x86)\ASUS\ASUS WebStorage\EcaremeDLL.dll 2011-01-12 17:01 - 2011-01-12 17:01 - 00030032 _____ () C:\Windows\assembly\GAC_MSIL\SqliteShared\1.0.3726.20828__0d0f4b69e50e559b\SqliteShared.dll 2011-01-12 17:01 - 2011-01-12 17:01 - 00931840 _____ () C:\Windows\assembly\GAC_64\System.Data.SQLite\1.0.60.0__db937bc2d44ff139\System.Data.SQLite.dll 2014-01-02 20:03 - 2014-01-02 19:10 - 02152960 _____ () C:\Program Files\AVAST Software\Avast\defs\14010201\algo.dll 2012-02-20 21:29 - 2012-02-20 21:29 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2012-02-20 21:28 - 2012-02-20 21:28 - 01242472 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2011-08-31 14:33 - 2011-08-31 14:33 - 00208384 _____ () C:\Program Files (x86)\ASUS\ASUS Live Update\alvupdt.dll 2009-11-02 23:20 - 2009-11-02 23:20 - 00619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2009-11-02 23:23 - 2009-11-02 23:23 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2014-01-01 20:22 - 2014-01-01 20:22 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2013-12-06 16:52 - 2013-12-04 03:47 - 00702416 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libglesv2.dll 2013-12-06 16:52 - 2013-12-04 03:47 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libegl.dll 2013-12-06 16:52 - 2013-12-04 03:48 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll 2013-12-06 16:52 - 2013-12-04 03:48 - 00399312 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll 2013-12-06 16:52 - 2013-12-04 03:47 - 01619408 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll 2013-12-06 16:52 - 2013-12-04 03:48 - 13586896 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (01/03/2014 08:18:54 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (01/03/2014 04:55:48 PM) (Source: Application Hang) (User: ) Description: Programm iexplore.exe, Version 11.0.9600.16428 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1f48 Startzeit: 01cf088c583ac3d4 Endzeit: 125 Anwendungspfad: C:\Program Files\Internet Explorer\iexplore.exe Berichts-ID: 6b5aae03-748f-11e3-974d-f46d04bc3d4b Error: (01/03/2014 03:01:46 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Skype™ 5.10 -- Error 1316. A network error occurred while attempting to read from the file: C:\ProgramData\Skype\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeSetup_5.8.0.158.msi Error: (01/03/2014 03:00:28 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary SCDEmu. System Error: Das System kann die angegebene Datei nicht finden. . Error: (01/03/2014 02:19:25 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (01/03/2014 02:19:24 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (01/03/2014 01:04:09 PM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (01/03/2014 01:04:09 PM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (01/03/2014 01:04:09 PM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (01/02/2014 04:58:12 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00150fdf ID des fehlerhaften Prozesses: 0x948 Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0 Pfad der fehlerhaften Anwendung: iexplore.exe1 Pfad des fehlerhaften Moduls: iexplore.exe2 Berichtskennung: iexplore.exe3 System errors: ============= Error: (01/03/2014 03:03:03 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Skype 5.10 für Windows (KB2727727) Error: (01/02/2014 05:23:12 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (01/02/2014 05:11:34 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (01/02/2014 03:03:17 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Skype 5.10 für Windows (KB2727727) Microsoft Office Sessions: ========================= Error: (01/03/2014 08:18:54 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe Error: (01/03/2014 04:55:48 PM) (Source: Application Hang)(User: ) Description: iexplore.exe11.0.9600.164281f4801cf088c583ac3d4125C:\Program Files\Internet Explorer\iexplore.exe6b5aae03-748f-11e3-974d-f46d04bc3d4b Error: (01/03/2014 03:01:46 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Skype™ 5.10 -- Error 1316. A network error occurred while attempting to read from the file: C:\ProgramData\Skype\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeSetup_5.8.0.158.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/03/2014 03:00:28 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary SCDEmu. System Error: Das System kann die angegebene Datei nicht finden. Error: (01/03/2014 02:19:25 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Lukas\Downloads\esetsmartinstaller_enu (1).exe Error: (01/03/2014 02:19:24 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Lukas\Downloads\esetsmartinstaller_enu (1).exe Error: (01/03/2014 01:04:09 PM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: WmiApRplWmiApRpl8F20300004D070000 Error: (01/03/2014 01:04:09 PM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance1637070000000000000000000009030000 Error: (01/03/2014 01:04:09 PM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance1637070000000000000000000009030000 Error: (01/02/2014 04:58:12 PM) (Source: Application Error)(User: ) Description: iexplore.exe0.0.0.04e06cfe8unknown0.0.0.000000000c000000500150fdf94801cf07d36ed9d0baC:\32788R22FWJFW\License\iexplore.exeunknownae0ff736-73c6-11e3-974d-f46d04bc3d4b CodeIntegrity Errors: =================================== Date: 2013-06-22 18:42:52.891 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\Lukas\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-06-22 18:42:52.689 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\Lukas\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-06-22 18:42:52.423 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-06-22 18:42:52.205 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-06-16 15:15:34.399 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\Lukas\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-06-16 15:15:34.232 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\Lukas\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-06-16 15:15:34.014 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-06-16 15:15:33.848 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2012-05-26 16:04:52.225 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\Lukas\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2012-05-26 16:04:52.143 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\Lukas\AppData\Local\Temp\EverestDriver.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 42% Total physical RAM: 4073.85 MB Available physical RAM: 2336.38 MB Total Pagefile: 8145.88 MB Available Pagefile: 5640.71 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:440.76 GB) (Free:184.26 GB) NTFS ==>[Drive with boot components (obtained from BCD)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: B2088A36) Partition 1: (Not Active) - (Size=25 GB) - (Type=1C) Partition 2: (Active) - (Size=441 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
04.01.2014, 15:44 | #7 | |
/// the machine /// TB-Ausbilder | Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Das sind keine Funde, das ist lediglich eine Auflistng der Profildateien. Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
04.01.2014, 16:44 | #8 |
| Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Also es werden glaube immer nur 12 KB in fehlerhaften Sektoren gefunden. Es hält solange an, wie der Laptop an ist. Also wenn ich es über die Nacht laufen lasse geht der am nächsten Tag ohne Probleme. Das komische ist, dass er immer bei der 2. Phase nicht alle Bytes überprüft und dann direkt zu Phase 3 springt... Und der Scan läuft auch immer nur bis ca 60% und dann springt der auf 99% und dann ists fertig... Bis auf die 12 KB immer wieder wird da glaube nichts repariert oder gemacht. |
05.01.2014, 16:09 | #9 |
/// the machine /// TB-Ausbilder | Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Das dürfte alles nichts mit FPS zu tun haben. Ich steh leider auf dem Schlauch.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
05.01.2014, 16:37 | #10 |
| Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Ich leider auch... Habe nie davon irgendwo gelesen... Wie gehen wir weiter vor? |
06.01.2014, 15:59 | #11 |
/// the machine /// TB-Ausbilder | Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Ich würd Daten sichern, WIndows neu aufsetzen und direkt (ohne installierte Programme) testen.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
06.01.2014, 20:00 | #12 |
| Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Mhmm okay Ich glaub ich hol mir einfach nen Neuen. Trotzdem Danke |
07.01.2014, 10:22 | #13 |
/// the machine /// TB-Ausbilder | Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Laptop niedrige FPS ohne Datenträgerüberprüfung beim Start |
adblock, antivirus, computer, desktop, einstellung, explorer, flash player, homepage, launch, newtab, plug-in, problem, realtek, refresh, secure search, security, services.exe, software, starten, super, svchost.exe, system, systembooster, temp, win32/adware.yontoo.a, win32/adware.yontoo.b, win32/faketool.h |