|
Plagegeister aller Art und deren Bekämpfung: dllhost.exe in C:\Benutzer\xxx\...\Temp\ (Was ist das?)Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
04.01.2014, 17:36 | #1 |
| dllhost.exe in C:\Benutzer\xxx\...\Temp\ (Was ist das?) Hallo liebes Trojaner-Board Ich bin EdiTzZ und bin neu hier. Ich habe mich hier angemeldet, weil ich Hilfe brauche. Ich benutze Windows 7 Nun zum Problem: Ich habe eine .exe Datei gestartet worin ein Virus oder "Miner" versteckt war. Nach einer weile nachdem ich die .exe Datei gestartet habe, wurde mein PC plötzlich laut (Lüfter). Weil dies im Leerlauf passierte machte ich mir Gedanken und schaute in den Task-Manager. Dort fand ich einen Prozess namens "dllhost.exe", der viele Ressourcen brauchte. Da ich diesen Prozess noch nie im TM gesehen habe, suchte ich im Internet, was diese Datei genau macht. Nachdem ich wusste was sie macht, wusste ich dass das nicht normal ist. Also versuchte ich sie aus dem TM zu werfen. Das funktionierte nicht, da sie sich neustartete. Nun öffnete ich den Ordner und löschte alle Dateien die dort waren. Nun konnte ich den Prozess "dllhost.exe" beenden. Ich entfernte sie außerdem aus dem Autostart. Nun habe ich das Programm (wo der Virus drinnen war) Decompiled. Ich habe nun den Quellcode! (Vielleicht nicht vollständig) Ich weiß nur dass er Informationen über meine Hardware sammelt und sie belastet. Aber vielleicht hat der Virus ja noch etwas anderes gemacht. Es währe nett, wenn jemand mit mehr Erfahrung mal über den Quellcode gucken könnte und mir genau erklären könnte was das war. Quellcode: hxxp://pastebin.com/UAVRsYVv Vielen Dank EdiTzZ Geändert von EdiTzZ (04.01.2014 um 17:50 Uhr) |
04.01.2014, 20:14 | #2 |
/// the machine /// TB-Ausbilder | dllhost.exe in C:\Benutzer\xxx\...\Temp\ (Was ist das?) hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
04.01.2014, 20:29 | #3 |
| dllhost.exe in C:\Benutzer\xxx\...\Temp\ (Was ist das?) FRST.txt
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-01-2014 Ran by troete (administrator) on TROETE-PC on 04-01-2014 20:26:29 Running from C:\Users\troete\Desktop Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe () C:\Windows\SysWOW64\PnkBstrA.exe (ElmüSoft) C:\Program Files (x86)\PTBSync\PTBSync.exe (Sony Computer Entertainment Inc.) C:\Program Files (x86)\SCE\Common\File System Driver\bin\pfs_mounter.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE () C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe (ElmüSoft) C:\Program Files (x86)\PTBSync\PTBSync.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winamp.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7509096 2011-10-18] (Realtek Semiconductor) HKLM\...\Run: [Start WingMan Profiler] - C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.) HKLM\...\Run: [EvtMgr6] - C:\Program Files\Logitech\SetPointP\SetPoint.exe [1744152 2011-10-07] (Logitech, Inc.) HKLM\...\Run: [Launch LCore] - C:\Program Files\Logitech Gaming Software\LCore.exe [7406392 2012-11-29] (Logitech Inc.) HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [PTBSync] - C:\Program Files (x86)\PTBSync\PTBSync.exe [1581568 2012-07-14] (ElmüSoft) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [BCSSync] - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) Winlogon\Notify\LBTWlgn: C:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.) HKLM\...\Policies\Explorer\Run: [Policies] - C:\Windows\system32\install\explorer.exe No File HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKCU\...\Winlogon: [Shell] explorer.exe [2871808 2011-02-25] (Microsoft Corporation) <==== ATTENTION HKCU\...\Policies\Explorer\Run: [Policies] - C:\Windows\system32\install\explorer.exe No File MountPoints2: {634a2130-a2ca-11e2-b557-9e97e8c43090} - G:\Startme.exe MountPoints2: {af77c278-1d3f-11e1-8031-806e6f6e6963} - Z:\Install.exe AppInit_DLLs: C:\Windows\System32\acaptuser64.dll [119160 2008-06-11] (Adobe Systems, Inc.) AppInit_DLLs-x32: acaptuser32.dll [111992 2008-06-11] (Adobe Systems, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x583574FC02A4CD01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ URLSearchHook: HKCU - (No Name) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - No File SearchScopes: HKCU - DefaultScope {E4A64E3E-FF79-424E-83C8-6E6FA48C6A0E} URL = hxxp://www.google.de/search?q={searchTerms} SearchScopes: HKCU - {D3B473A9-8CBA-44E2-9AE4-DC915E701104} URL = hxxp://de.search.yahoo.com/search?fr=mcafee&p={SearchTerms} SearchScopes: HKCU - {E4A64E3E-FF79-424E-83C8-6E6FA48C6A0E} URL = hxxp://www.google.de/search?q={searchTerms} BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: No Name - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - No File BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO: No Name - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No File BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Microsoft Web Test Recorder 12.0 Helper - {432dd630-7e03-4c97-9d62-b99f52df4fc2} - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: No Name - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - No File BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File DPF: HKLM {F14E5118-342E-45E8-B99F-B5786E4F4DCA} hxxp://www.logitech.com/devicedetector/bin/LogitechDeviceDetection64.cab DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File Tcpip\..\Interfaces\{3D509185-0817-428E-8A4D-EDE5E5C5C3DF}: [NameServer]192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\troete\AppData\Roaming\Mozilla\Firefox\Profiles\mr1owndh.default FF Homepage: chrome://fvd.speeddial/content/fvd_about_blank.html FF Keyword.URL: hxxp://de.search.yahoo.com/search?fr=mcafee&p= FF NetworkProxy: "http", "152.26.53.4" FF NetworkProxy: "http_port", 80 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.7.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.7.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL No File FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 - C:\Program Files (x86)\Winamp Detect\npwachk.dll (Nullsoft, Inc.) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\troete\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\troete\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\troete\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF SearchPlugin: C:\Users\troete\AppData\Roaming\Mozilla\Firefox\Profiles\mr1owndh.default\searchplugins\askcom.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\McSiteAdvisor.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: FVD Speed Dial - New Tab Page - C:\Users\troete\AppData\Roaming\Mozilla\Firefox\Profiles\mr1owndh.default\Extensions\pavel.sherbakov@gmail.com FF Extension: ProxTube - Unblock YouTube - C:\Users\troete\AppData\Roaming\Mozilla\Firefox\Profiles\mr1owndh.default\Extensions\{2541D29A-DB9E-4c1e-949A-31EFB4AEF4E7} FF Extension: Adblock Plus Pop-up Addon - C:\Users\troete\AppData\Roaming\Mozilla\Firefox\Profiles\mr1owndh.default\Extensions\adblockpopups@jessehakanen.net.xpi FF Extension: Firebug - C:\Users\troete\AppData\Roaming\Mozilla\Firefox\Profiles\mr1owndh.default\Extensions\firebug@software.joehewitt.com.xpi FF Extension: NASA Night Launch - C:\Users\troete\AppData\Roaming\Mozilla\Firefox\Profiles\mr1owndh.default\Extensions\nasanightlaunch@example.com.xpi FF Extension: Tamper Data - C:\Users\troete\AppData\Roaming\Mozilla\Firefox\Profiles\mr1owndh.default\Extensions\{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}.xpi FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\troete\AppData\Roaming\Mozilla\Firefox\Profiles\mr1owndh.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi FF Extension: SoundCloud Downloader - Technowise - C:\Users\troete\AppData\Roaming\Mozilla\Firefox\Profiles\mr1owndh.default\Extensions\{c8d3bc80-0810-4d21-a2c2-be5f2b2832ac}.xpi FF Extension: Adblock Plus - C:\Users\troete\AppData\Roaming\Mozilla\Firefox\Profiles\mr1owndh.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF HKLM-x32\...\Firefox\Extensions: [fiddlerhook@fiddler2.com] - C:\Program Files (x86)\Fiddler2\FiddlerHook FF Extension: FiddlerHook - C:\Program Files (x86)\Fiddler2\FiddlerHook FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com Chrome: ======= CHR HomePage: CHR RestoreOnStartup: "hxxp://www.google.de/" CHR DefaultSearchKeyword: mcafee CHR DefaultSearchProvider: McAfee CHR DefaultSearchURL: hxxp://de.search.yahoo.com/search?fr=mcafee&p={searchTerms} CHR Plugin: (Shockwave Flash) - C:\Users\troete\AppData\Local\Google\Chrome\Application\21.0.1180.77\PepperFlash\pepflashplayer.dll No File CHR Plugin: (Shockwave Flash) - C:\Users\troete\AppData\Local\Google\Chrome\Application\30.0.1599.101\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_270.dll No File CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\troete\AppData\Local\Google\Chrome\Application\30.0.1599.101\ppGoogleNaClPluginChrome.dll No File CHR Plugin: (Chrome PDF Viewer) - C:\Users\troete\AppData\Local\Google\Chrome\Application\30.0.1599.101\pdf.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\plugin/npABPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.477_0\plugin/npUrlAdvisor.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.477_0\plugin/npVKPlugin.dll No File CHR Plugin: (Wajam) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp\1.24_0\plugins/PriamNPAPI.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File CHR Plugin: (Java Deployment Toolkit 6.0.290.11) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll No File CHR Plugin: (Java(TM) Platform SE 6 U29) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll No File CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Google Update) - C:\Users\troete\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File CHR Extension: (Adblock Plus) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.5.5_0 CHR Extension: (Kaspersky URL Advisor) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190_0 CHR Extension: (Google Analytics Opt-out Add-on (by Google)) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\fllaojicojecljbmefodhfapmkghcbnh\1_0 CHR Extension: (Safe Money) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\13.0.1.4190_0 CHR Extension: (Content Blocker) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail\13.0.1.4190_0 CHR Extension: (Virtual Keyboard) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4292_0 CHR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa\4.2.0_0 CHR Extension: (DVDVideoSoft Browser Extension) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.0_0 CHR Extension: (Chrome In-App Payments service) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0 CHR Extension: (Better Pop Up Blocker) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmpeeekfhbmikbdhlpjbfmnpgcbeggic\2.1.6_0 CHR Extension: (Anti-Banner) - C:\Users\troete\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.1.4190_0 CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\urladvisor.crx CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\online_banking_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\content_blocker_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\virtkbd.crx CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\ab.crx ==================== Services (Whitelisted) ================= R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [214512 2013-10-17] (Kaspersky Lab ZAO) S3 c2wts; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [15768 2010-02-03] (Microsoft Corporation) S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2013-08-22] (Microsoft Corporation) S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [14848 2011-04-26] () R2 OS Selector; C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe [2155848 2011-11-15] () R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [75136 2012-08-08] () R2 PTBSync; C:\Program Files (x86)\PTBSync\PTBSync.exe [1581568 2012-07-14] (ElmüSoft) S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.) R2 SCEFSMounter; C:\Program Files (x86)\SCE\Common\File System Driver\bin\pfs_mounter.exe [79872 2012-06-20] (Sony Computer Entertainment Inc.) S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) S3 VsEtwService120; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87728 2013-10-04] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R3 ElgatoGC658Y; C:\Windows\System32\Drivers\ElgatoGC658.sys [50288 2012-11-12] (UB658) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197264 2012-05-28] (McAfee, Inc.) R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [41704 2012-08-01] (AnchorFree Inc.) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-11-15] (Kaspersky Lab ZAO) S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [112224 2013-06-08] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [620640 2013-12-19] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2013-10-17] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-17] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-17] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55904 2013-05-14] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178272 2013-12-19] (Kaspersky Lab ZAO) R3 LGSHidFilt; C:\Windows\System32\DRIVERS\LGSHidFilt.Sys [66360 2012-10-02] (Logitech Inc.) S3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [337120 2013-02-18] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [95856 2013-02-18] (McAfee, Inc.) S3 MSI_MSIBIOS_010507; C:\Program Files (x86)\MSI\Live Update 5\msibios64_100507.sys [33592 2010-05-10] (Your Corporation) R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.) S3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (MSI) R1 pfs_dokan; C:\Windows\System32\DRIVERS\pfs_dokan.sys [56496 2012-06-20] (Sony Computer Entertainment Inc.) S2 TVicPort; C:\Windows\SysWow64\Drivers\TVicPort.sys [14544 2005-03-30] (EnTech Taiwan) S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [117080 2012-09-07] (Oracle Corporation) R0 vidsflt58; C:\Windows\System32\DRIVERS\vsflt58.sys [142944 2011-12-03] (Acronis) R2 WinRing0_1_2_0; C:\Windows\system32\Drivers\ptbring0.sys [14544 2012-07-14] (OpenLibSys.org) S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\1.3\temp\FairplayKD.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-04 20:25 - 2014-01-04 20:26 - 00027102 _____ C:\Users\troete\Desktop\FRST.txt 2014-01-04 20:25 - 2014-01-04 20:25 - 01931368 _____ (Farbar) C:\Users\troete\Desktop\FRST64.exe 2014-01-04 20:10 - 2014-01-04 20:10 - 00705485 _____ C:\Users\troete\Desktop\Ghosts Menu Base [By Shark].rar 2014-01-04 17:52 - 2014-01-04 17:52 - 00000000 ____D C:\FRST 2014-01-04 16:21 - 2014-01-04 16:21 - 06621886 _____ C:\Users\troete\Desktop\DayZ Keygen.zip 2014-01-04 15:59 - 2014-01-04 15:59 - 00000112 _____ C:\Windows\setupact.log 2014-01-04 15:59 - 2014-01-04 15:59 - 00000000 _____ C:\Windows\setuperr.log 2013-12-30 14:12 - 2013-12-30 14:15 - 00000000 ____D C:\Users\troete\AppData\Local\DayZ 2013-12-30 14:12 - 2013-12-30 14:12 - 00000000 ____D C:\Users\troete\Documents\DayZ 2013-12-28 02:43 - 2013-12-28 02:43 - 00000000 ____D C:\Users\troete\AppData\Roaming\com.adobe.amp 2013-12-22 17:30 - 2013-12-22 17:30 - 00000000 ____D C:\Users\troete\AppData\Roaming\www.cheat-reactor.org 2013-12-22 17:22 - 2013-12-22 17:22 - 00002974 _____ C:\Windows\System32\Tasks\{9347A6A9-C357-4BA6-8CD4-F854ABAFD4F9} 2013-12-22 17:22 - 2013-12-22 17:22 - 00000017 _____ C:\Windows\SysWOW64\iw4m.ini 2013-12-22 01:30 - 2013-12-22 01:30 - 00000000 ____D C:\Users\troete\AppData\Local\TeknoGods 2013-12-22 00:22 - 2013-12-22 00:23 - 00000000 ____D C:\Users\troete\AppData\Roaming\JustDecompile 2013-12-22 00:20 - 2013-12-22 00:20 - 00000000 ____D C:\Program Files (x86)\Telerik 2013-12-22 00:10 - 2013-12-22 00:10 - 00000000 ____D C:\ProgramData\Telerik 2013-12-22 00:09 - 2013-12-22 00:09 - 00000000 ____D C:\Users\troete\AppData\Roaming\Telerik 2013-12-22 00:09 - 2013-12-22 00:09 - 00000000 ____D C:\Users\troete\AppData\Local\Telerik_AD 2013-12-18 16:13 - 2013-12-18 16:13 - 00000000 ____D C:\Users\troete\AppData\Local\CrashRpt 2013-12-11 22:10 - 2013-12-29 20:34 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-11 14:27 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-11 14:27 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-11 14:27 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-11 14:27 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-11 14:26 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-11 14:26 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-11 14:26 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-11 14:26 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-11 14:26 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-11 14:26 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-11 14:26 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-11 14:26 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-11 14:26 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-11 14:26 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-11 14:26 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-11 14:26 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-11 14:26 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-11 14:26 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-11 14:26 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-11 14:26 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-11 14:26 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-11 14:26 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-11 14:26 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-11 14:26 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-11 14:26 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-11 14:26 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-11 14:26 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-11 14:26 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-11 14:26 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-11 14:26 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-11 14:26 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-11 14:26 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-11 14:26 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-11 14:26 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-11 14:26 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-11 14:05 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-11 14:05 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-11 14:05 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-11 14:05 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-11 14:05 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-11 14:05 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-11 14:05 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-11 14:05 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-11 14:05 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-11 14:05 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-11 14:05 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-11 14:05 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-11 14:05 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-11 14:05 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-11 14:05 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-11 14:05 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-11 14:05 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-11 14:05 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-11 14:05 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-10 23:27 - 2013-12-10 23:27 - 00000000 ____D C:\Users\troete\AppData\Roaming\stetic 2013-12-10 23:27 - 2013-12-10 23:27 - 00000000 ____D C:\Users\troete\AppData\Roaming\MonoDevelop-Unity-2.8 2013-12-10 23:27 - 2013-12-10 23:27 - 00000000 ____D C:\Users\troete\AppData\Local\MonoDevelop-Unity-2.8 2013-12-10 18:12 - 2013-12-10 18:19 - 00000611 _____ C:\Users\Public\Desktop\Steam.lnk 2013-12-10 18:11 - 2013-12-10 18:11 - 00002918 _____ C:\Windows\System32\Tasks\{D9AAAEC3-94EC-4C6F-9605-984FE448DB22} 2013-12-06 14:05 - 2013-12-06 14:05 - 00000000 ____D C:\Program Files (x86)\PS3XploderPro ==================== One Month Modified Files and Folders ======= 2049-08-08 11:29 - 2012-01-15 12:00 - 00000812 _____ C:\Users\troete\Documents\PTBSync-DeletedEvents-Troete.txt 2014-01-04 20:26 - 2014-01-04 20:25 - 00027102 _____ C:\Users\troete\Desktop\FRST.txt 2014-01-04 20:26 - 2011-12-04 12:26 - 00000000 ____D C:\Users\troete\AppData\Roaming\Skype 2014-01-04 20:25 - 2014-01-04 20:25 - 01931368 _____ (Farbar) C:\Users\troete\Desktop\FRST64.exe 2014-01-04 20:10 - 2014-01-04 20:10 - 00705485 _____ C:\Users\troete\Desktop\Ghosts Menu Base [By Shark].rar 2014-01-04 20:00 - 2011-12-25 17:10 - 00000836 _____ C:\Users\troete\Documents\PTBSync-AutoExport-Troete.ini 2014-01-04 19:48 - 2012-08-13 20:30 - 00001072 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-148159804-2144952690-408461592-1000Core.job 2014-01-04 19:41 - 2012-03-30 18:20 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-04 19:35 - 2012-08-13 20:30 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-148159804-2144952690-408461592-1000UA.job 2014-01-04 18:49 - 2011-12-02 18:02 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2014-01-04 18:35 - 2010-11-21 07:50 - 00714278 _____ C:\Windows\system32\perfh007.dat 2014-01-04 18:35 - 2010-11-21 07:50 - 00157760 _____ C:\Windows\system32\perfc007.dat 2014-01-04 18:35 - 2009-07-14 06:13 - 01665078 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-04 17:52 - 2014-01-04 17:52 - 00000000 ____D C:\FRST 2014-01-04 16:21 - 2014-01-04 16:21 - 06621886 _____ C:\Users\troete\Desktop\DayZ Keygen.zip 2014-01-04 16:20 - 2011-12-24 19:45 - 00000000 ____D C:\Users\troete\AppData\Roaming\Winamp 2014-01-04 16:07 - 2009-07-14 05:45 - 00021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-04 16:07 - 2009-07-14 05:45 - 00021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-04 16:03 - 2013-09-13 14:48 - 01154373 _____ C:\Windows\WindowsUpdate.log 2014-01-04 15:59 - 2014-01-04 15:59 - 00000112 _____ C:\Windows\setupact.log 2014-01-04 15:59 - 2014-01-04 15:59 - 00000000 _____ C:\Windows\setuperr.log 2014-01-04 15:59 - 2011-12-02 18:30 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-04 15:59 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-04 02:59 - 2013-11-15 16:07 - 00000000 ____D C:\Users\troete\Documents\Visual Studio 2013 2014-01-03 19:55 - 2011-12-24 13:13 - 00000000 ____D C:\Users\troete\AppData\Roaming\FileZilla 2014-01-03 19:14 - 2013-07-13 13:30 - 00000000 ____D C:\Users\troete\AppData\Roaming\.minecraft 2014-01-01 15:04 - 2012-01-25 17:35 - 00000000 ____D C:\Users\troete\AppData\Roaming\TS3Client 2013-12-30 14:15 - 2013-12-30 14:12 - 00000000 ____D C:\Users\troete\AppData\Local\DayZ 2013-12-30 14:12 - 2013-12-30 14:12 - 00000000 ____D C:\Users\troete\Documents\DayZ 2013-12-30 00:52 - 2013-03-02 01:41 - 00000000 ___RD C:\Users\troete\Desktop\Spiele 2013-12-29 20:34 - 2013-12-11 22:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-28 02:43 - 2013-12-28 02:43 - 00000000 ____D C:\Users\troete\AppData\Roaming\com.adobe.amp 2013-12-23 19:55 - 2011-12-04 13:11 - 00007594 _____ C:\Users\troete\AppData\Local\Resmon.ResmonCfg 2013-12-23 00:31 - 2013-01-05 02:10 - 00000132 _____ C:\Users\troete\AppData\Roaming\Adobe CS6-PNG-Format - Voreinstellungen 2013-12-22 17:30 - 2013-12-22 17:30 - 00000000 ____D C:\Users\troete\AppData\Roaming\www.cheat-reactor.org 2013-12-22 17:22 - 2013-12-22 17:22 - 00002974 _____ C:\Windows\System32\Tasks\{9347A6A9-C357-4BA6-8CD4-F854ABAFD4F9} 2013-12-22 17:22 - 2013-12-22 17:22 - 00000017 _____ C:\Windows\SysWOW64\iw4m.ini 2013-12-22 16:35 - 2013-03-02 01:42 - 00000000 ___RD C:\Users\troete\Desktop\Bildbearbeitung 2013-12-22 01:30 - 2013-12-22 01:30 - 00000000 ____D C:\Users\troete\AppData\Local\TeknoGods 2013-12-22 00:49 - 2013-03-02 01:49 - 00000000 ___RD C:\Users\troete\Desktop\Helfer 2013-12-22 00:23 - 2013-12-22 00:22 - 00000000 ____D C:\Users\troete\AppData\Roaming\JustDecompile 2013-12-22 00:20 - 2013-12-22 00:20 - 00000000 ____D C:\Program Files (x86)\Telerik 2013-12-22 00:10 - 2013-12-22 00:10 - 00000000 ____D C:\ProgramData\Telerik 2013-12-22 00:09 - 2013-12-22 00:09 - 00000000 ____D C:\Users\troete\AppData\Roaming\Telerik 2013-12-22 00:09 - 2013-12-22 00:09 - 00000000 ____D C:\Users\troete\AppData\Local\Telerik_AD 2013-12-20 21:56 - 2013-08-10 06:53 - 00000000 ____D C:\Users\troete\Documents\New Unity Project 2013-12-20 18:12 - 2013-04-13 14:43 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-12-20 18:12 - 2013-03-02 01:46 - 00000000 ___RD C:\Users\troete\Desktop\Programme 2013-12-20 18:12 - 2011-12-24 20:19 - 00000000 ____D C:\Users\troete\AppData\Roaming\DVDVideoSoft 2013-12-19 17:15 - 2013-11-15 15:21 - 00620640 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys 2013-12-19 17:15 - 2013-06-06 17:38 - 00178272 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kneps.sys 2013-12-19 13:45 - 2009-07-14 05:45 - 05154624 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-18 19:40 - 2013-02-12 14:34 - 00000000 ____D C:\Users\troete\AppData\Roaming\HP 2013-12-18 19:40 - 2013-02-12 14:31 - 00000000 ____D C:\ProgramData\HP 2013-12-18 19:40 - 2011-12-02 19:28 - 00130040 _____ C:\Users\troete\AppData\Local\GDIPFONTCACHEV1.DAT 2013-12-18 19:39 - 2013-02-12 14:31 - 00000705 _____ C:\ProgramData\hpzinstall.log 2013-12-18 16:13 - 2013-12-18 16:13 - 00000000 ____D C:\Users\troete\AppData\Local\CrashRpt 2013-12-18 16:13 - 2012-11-01 15:00 - 00000000 ____D C:\ProgramData\Package Cache 2013-12-13 23:58 - 2012-05-16 20:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-12-12 16:20 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-11 14:27 - 2013-03-14 17:11 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-12-11 14:26 - 2013-08-15 02:00 - 00000000 ____D C:\Windows\system32\MRT 2013-12-11 14:25 - 2011-12-02 19:37 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-10 23:27 - 2013-12-10 23:27 - 00000000 ____D C:\Users\troete\AppData\Roaming\stetic 2013-12-10 23:27 - 2013-12-10 23:27 - 00000000 ____D C:\Users\troete\AppData\Roaming\MonoDevelop-Unity-2.8 2013-12-10 23:27 - 2013-12-10 23:27 - 00000000 ____D C:\Users\troete\AppData\Local\MonoDevelop-Unity-2.8 2013-12-10 21:42 - 2012-03-30 18:20 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-10 21:42 - 2012-03-30 18:20 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-10 21:42 - 2011-12-02 18:10 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-10 18:19 - 2013-12-10 18:12 - 00000611 _____ C:\Users\Public\Desktop\Steam.lnk 2013-12-10 18:11 - 2013-12-10 18:11 - 00002918 _____ C:\Windows\System32\Tasks\{D9AAAEC3-94EC-4C6F-9605-984FE448DB22} 2013-12-06 14:36 - 2012-08-13 20:33 - 00002362 _____ C:\Users\troete\Desktop\Google Chrome.lnk 2013-12-06 14:05 - 2013-12-06 14:05 - 00000000 ____D C:\Program Files (x86)\PS3XploderPro ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-30 02:28 ==================== End Of Log ============================ Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-01-2014 Ran by troete at 2014-01-04 20:26:47 Running from C:\Users\troete\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installed Programs ====================== Tools for .Net 3.5 - DEU Lang Pack (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden Tools for .Net 3.5 (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden .NET Reflector Desktop (x32 Version: 8.0.2.313 - Red Gate Software Ltd) 64 Bit HP CIO Components Installer (Version: 8.2.4 - Hewlett-Packard) Hidden 7-Zip 9.20 (x64 edition) (Version: 9.20.00.0 - Igor Pavlov) Acronis*Disk*Director*11*Home (x32 Version: 11.0.2343 - Acronis) Acronis*True*Image*Home (x32 Version: 13.0.7160 - Acronis) Adobe Acrobat 9 Pro Extended - English, Français, Deutsch (x32 Version: 9.0.0 - Adobe Systems) Hidden Adobe Acrobat 9 Pro Extended 64-bit Add-On (Version: 9.0.0 - Adobe Systems Incorporated) Adobe After Effects CS6 (x32 Version: 11 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 3.9.0.1380 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 3.9.0.1380 - Adobe Systems Incorporated) Hidden Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Help Manager (x32 Version: 4.0.244 - Adobe Systems Incorporated) Adobe Help Manager (x32 Version: 4.0.244 - Adobe Systems Incorporated) Hidden Adobe Media Player (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Adobe Media Player (x32 Version: 1.1 - Adobe Systems Incorporated) Adobe Photoshop CS6 (x32 Version: 13.0 - Adobe Systems Incorporated) Adobe Reader XI (11.0.01) - Deutsch (x32 Version: 11.0.01 - Adobe Systems Incorporated) AdobeColorCommonSetRGB (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden AnyToISO (x32 Version: 3.3 - CrystalIdea Software, Inc.) Arma 2 (x32 Version: - Bohemia Interactive) ARMA 2 Army of The Czech Republic - Data cache removal (x32 Version: - ) ARMA 2: British Armed Forces - Data cache removal (x32 Version: - ) Arma 2: British Armed Forces (x32 Version: - Bohemia Interactive) Arma 2: DayZ Mod (x32 Version: - ) Arma 2: Operation Arrowhead (x32 Version: - Bohemia Interactive) ARMA 2: Private Military Company - Data cache removal (x32 Version: - ) Arma 2: Private Military Company (x32 Version: - Bohemia Interactive) AzureTools.Notifications (x32 Version: 2.1.10731.1602 - Microsoft Corporation) Hidden BASCOM-AVR (x32 Version: 2.0.5.0 - MCS Electronics) Batman: Arkham City™ (x32 Version: - Rocksteady) BattlEye for OA Uninstall (x32 Version: - ) Behaviors SDK (XAML) for Visual Studio (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio 2013 (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio 2013 DEU resources (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for Silverlight 5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Bruteforce Save Data (x32 Version: - ) BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden Build Tools - amd64 (Version: 12.0.21005 - Microsoft Corporation) Hidden Build Tools - x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Buildtools-Sprachressourcen - amd64 (Version: 12.0.21005 - Microsoft Corporation) Hidden Buildtools-Sprachressourcen - x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden Call of Duty: Modern Warfare 2 - Multiplayer (x32 Version: - Infinity Ward) Call of Duty: Modern Warfare 2 (x32 Version: - Infinity Ward) Call of Duty: Modern Warfare 3 - Dedicated Server (x32 Version: - Infinity Ward - Sledgehammer Games) Call of Duty: Modern Warfare 3 - Multiplayer (x32 Version: - Infinity Ward - Sledgehammer Games) Call of Duty: Modern Warfare 3 (x32 Version: - Infinity Ward - Sledgehammer Games) Camtasia Studio 7 (x32 Version: 7.0.1 - TechSmith Corporation) CCleaner (Version: 4.07 - Piriform) ClearProg 1.6.0 Final (x32 Version: 1.6.0 Final - Sven Hoffman) CL-Eye Driver (x32 Version: 5.3.0.0341 - Code Laboratories, Inc.) Compatibility Pack für 2007 Office System (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Counter-Strike (x32 Version: - Valve) Counter-Strike: Condition Zero (x32 Version: - Valve) Counter-Strike: Global Offensive (x32 Version: - Valve) Counter-Strike: Source (x32 Version: - Valve) CustoPackTools (Version: - neOceane) DayZ (x32 Version: - Bohemia Interactive) DayZ Commander (x32 Version: 0.92.79 - Dotjosh Studios) Dead Island Riptide DLC-Pack Plus RELOADED Crack 1.00 (x32 Version: 1.00 - .x.X.RIDDICK.X.x.) Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32 Version: - Microsoft) Desktop Restore (x32 Version: 1.6.1 - JOConnell) Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden Devenv-Ressourcen für Microsoft Visual Studio 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden DocProc (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden Dota 2 (x32 Version: - ) Dotfuscator and Analytics Community Edition (x32 Version: 5.5.4954.46574 - PreEmptive Solutions) Hidden Dotfuscator and Analytics Community Edition Language Pack (x32 Version: 5.5.4954.46574 - PreEmptive Solutions) Hidden Dual-Core Optimizer (x32 Version: 1.1.4.0169 - AMD) Elgato Game Capture HD (x32 Version: 1.42.9.524 - Elgato Systems GmbH) Entity Framework Designer for Visual Studio 2012 - enu (x32 Version: 11.1.21009.00 - Microsoft Corporation) Entity Framework Designer für Visual Studio 2012 - DEU (x32 Version: 11.1.21009.00 - Microsoft Corporation) Entity Framework Tools for Visual Studio 2013 (x32 Version: 12.0.20912.0 - Microsoft Corporation) eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden Erforderliche Komponenten für SSDT (x32 Version: 11.1.3000.0 - Microsoft Corporation) Fallout 3 (x32 Version: 1.00.0000 - Bethesda Softworks) Fallout: New Vegas (x32 Version: - Obsidian Entertainment) Fiddler (x32 Version: 4.4.5.3 - Telerik) FileZilla Client 3.7.3 (HKCU Version: 3.7.3 - Tim Kosse) Fraps (remove only) (x32 Version: - ) Free YouTube Download version 3.2.18.1128 (x32 Version: 3.2.18.1128 - DVDVideoSoft Ltd.) Free YouTube to MP3 Converter version 3.12.17.1127 (x32 Version: 3.12.17.1127 - DVDVideoSoft Ltd.) Game Capture HD v2.3.3.38 (x32 Version: 2.3.3.38 - Elgato Systems) Game Genie Save Editor for PS3 (US) (x32 Version: 1.1.0.0 - Game Genie) Garry's Mod (x32 Version: - Facepunch Studios) GeoGebra (x32 Version: 4.0.40.0 - International GeoGebra Institute) Google Chrome (HKCU Version: 31.0.1650.63 - Google Inc.) GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden Grand Theft Auto IV (x32 Version: 1.00.0000 - Rockstar Games) Grand Theft Auto San Andreas (x32 Version: 1.00.00001 - Rockstar Games) Grand Theft Auto: Episodes from Liberty City (x32 Version: 1.0.0003.135 - Rockstar Games Inc.) Hidden Grand Theft Auto: Episodes From Liberty City (x32 Version: 1.1.0.0 - Rockstar Games) GTAIII (x32 Version: - ) Gyazo 1.0.1 (x32 Version: - Nota Inc. & Toshiyuki Masui) High-Definition Video Playback (x32 Version: 7.1.13400.42.0 - Nero AG) Hidden HP Imaging Device Functions 13.0 (Version: 13.0 - HP) HP Photosmart Essential 3.5 (Version: 3.5 - HP) HP Solution Center 13.0 (Version: 13.0 - HP) HP Update (x32 Version: 4.000.011.006 - Hewlett-Packard) hpg5590 (x32 Version: 13.0.0.0 - Ihr Firmenname) Hidden HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden IIS 8.0 Express (Version: 8.0.1557 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (Version: - ) IIS Express Application Compatibility Database for x86 (Version: - ) ImgBurn (x32 Version: 2.5.5.0 - LIGHTNING UK!) Intel(R) Management Engine Components (x32 Version: 7.1.21.1134 - Intel Corporation) Java 7 Update 7 (64-bit) (Version: 7.0.70 - Oracle) JavaScript Tooling (Version: 12.0.21005 - Microsoft Corporation) Hidden JavaScript Tooling (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden JDownloader 0.9 (x32 Version: 0.9 - AppWork GmbH) Just Cause 2 (x32 Version: - Avalanche) Just Cause 2: Multiplayer Mod (x32 Version: - JC2-MP Team) Kaspersky Internet Security (x32 Version: 14.0.0.4651 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 14.0.0.4651 - Kaspersky Lab) Hidden Language Pack (DEU) für freigegebene Windows Azure-Komponenten für Microsoft Visual Studio 2013 - v1.0 (x32 Version: 1.0.10829.1601 - Microsoft Corporation) Hidden Left 4 Dead 2 (x32 Version: - Valve) Live Update 5 (x32 Version: 5.0.073 - MSI) LocalESPC Dev12 (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden LocalESPCui for de-de Dev12 (x32 Version: 8.100.25984 - Microsoft) Hidden Logitech Gaming Software (Version: 8.40.83 - Logitech Inc.) Hidden Logitech Gaming Software 5.10 (Version: 5.10.127 - Logitech) Logitech Gaming Software 8.40 (Version: 8.40.83 - Logitech Inc.) Logitech SetPoint 6.32 (Version: 6.32.20 - Logitech) Magic Bullet Looks 64-bit (Version: 1.4.3 - Red Giant Software) Hidden Magic Bullet Looks 64-bit (x32 Version: 1.4.3 - Red Giant Software) Metro: Last Light (x32 Version: - 4A Games) Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4.5 Multi-Targeting Pack (x32 Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (x32 Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (x32 Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (x32 Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 SDK (Deutsch) (x32 Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (x32 Version: 4.5.51641 - Microsoft Corporation) Microsoft Advertising SDK for Windows 8.1 - ENU (x32 Version: 8.1.30809.0 - Microsoft Corporation) Hidden Microsoft Advertising Service Extension for Visual Studio (x32 Version: 12.0.30809.0 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 - DEU (x32 Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 3 (x32 Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 - Visual Studio 2013 - DEU (x32 Version: 4.1.21001.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 - Visual Studio 2013 - ENU (x32 Version: 4.1.21001.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime - DEU (x32 Version: 4.0.20716.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime (x32 Version: 4.0.20716.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Frameworks and Tools - Visual Studio 2013 - DEU (x32 Version: 5.0.11001.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Frameworks and Tools - Visual Studio 2013 - ENU (x32 Version: 5.0.11001.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages - DEU (x32 Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages (x32 Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages 2 - Visual Studio 2013 - DEU (x32 Version: 4.1.21001.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 - Visual Studio 2013 - ENU (x32 Version: 4.1.21001.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 Runtime - DEU (x32 Version: 2.0.20716.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 Runtime (x32 Version: 2.0.20716.0 - Microsoft Corporation) Hidden Microsoft C++ REST SDK for Visual Studio 2013 (x32 Version: 1.0 - Microsoft Corporation) Hidden Microsoft Exchange Web Services Managed API 2.0 (x32 Version: 15.0.516.14 - Microsoft Corporation) Hidden Microsoft Expression Blend SDK for .NET 4 (x32 Version: 2.0.20621.0 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0 - Microsoft Corporation) Microsoft Help Viewer 1.0 Language Pack - DEU (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 Language Pack - DEU (Version: 1.0.30319 - Microsoft Corporation) Hidden Microsoft Help Viewer 1.1 (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 1.1 (Version: 1.1.40219 - Microsoft Corporation) Hidden Microsoft Help Viewer 1.1 Language Pack - DEU (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 1.1 Language Pack - DEU (Version: 1.1.40219 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.0 (x32 Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.0 Language Pack - DEU (x32 Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 Language Pack - DEU (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.1 (x32 Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 (x32 Version: 2.1.21005 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.1 Sprachpaket - DEU (x32 Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 Sprachpaket - DEU (x32 Version: 2.1.21005 - Microsoft Corporation) Hidden Microsoft Identity Extensions (Version: 2.0.1459.0 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2013 Core (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2013 v4.0 Tools (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2013 v4.0 ToolsRes - DEU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft LightSwitch für Visual Studio 2013 CoreRes - DEU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft LightSwitch v4.0 SDK (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft NuGet - Visual Studio 2013 (x32 Version: 2.7.40911.287 - Microsoft Corporation) Hidden Microsoft Office 2013 Developer Tools for Microsoft Visual Studio (x64) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Office 2013 Developer Tools für Microsoft Visual Studio (x64) - DEU Sprachpaket (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Groove MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack (x32 Version: 12.0.21005.01 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - deu (x32 Version: 12.0.21005.01 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On for Visual Studio 2013 (x32 Version: 11.1.3366.16 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On für Visual Studio 2013 (x32 Version: 11.1.3366.16 - Microsoft Corporation) Hidden Microsoft SharePoint 2013 Developer Tools for Visual Studio (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft SharePoint 2013 Developer Tools for Visual Studio 2012 Nuget Package (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft SharePoint 2013 Developer Tools für Visual Studio DEU Sprachpaket (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft Silverlight 4 SDK - Deutsch (x32 Version: 4.0.60310.0 - Microsoft Corporation) Microsoft Silverlight 5 SDK - DEU (x32 Version: 5.0.61118.0 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Management Objects (x32 Version: 10.50.1750.9 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x32 Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x64) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x32 Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL Compiler Service (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL-Sprachdienst (x32 Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 DEU (x32 Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 DEU (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (11.1.20627.00) (x32 Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (12.0.30919.1) (x32 Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (11.1.20627.00) (x32 Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (12.0.30919.1) (x32 Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x32 Version: 10.50.1750.9 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft Team Foundation Server 2013 Object Model (x64) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Team Foundation Server 2013-Objektmodell Sprachpaket (x64) - DEU (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ ARM Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64 Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64 Native Compilers - DEU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64 Native Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-arm Cross Compilers - DEU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-arm Cross Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-x86 Cross Compilers - DEU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-x86 Cross Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x86 Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Designtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 32bit Compilers - DEU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Compilers - DEU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Core Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Extended Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Microsoft Foundation Class Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Debug Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Debug Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86-x64 Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Express Prerequisites x64 - DEU (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Service Pack 1 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Service Pack 1 (x32 Version: 10.0.40219 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.40820 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.40825 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU (Version: 10.0.40820 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (Version: 10.0.40820 - Microsoft Corporation) Microsoft Visual Studio 2013 Devenv (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 IntelliTrace Core amd64 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 IntelliTrace Core x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 IntelliTrace Front End x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 IntelliTraceFrontEndLoc (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 IntelliTraceLoc (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 IntelliTraceLoc (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Profiling Tools (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell (Minimum) (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell (Minimum) Interop Assemblies (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell-(Mindest)-Ressourcen (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Team Explorer Sprachpaket - DEU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 VsGraphics Helper Dependencies (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013-Leistungserfassungstools - DEU (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013-Leistungserfassungstools (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013-Vorbereitung (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Premium 2013 - DEU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Premium 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2013 - DEU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Object Model (Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Object Model Language Pack - DEU (Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2013 Storyboarding (x64) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2013 Storyboarding Sprachpaket (x64) - DEU (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2013 - DEU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2013 (x32 Version: 12.0.21005.13 - Microsoft Corporation) Microsoft Visual Studio Ultimate 2013 XAML UI Designer Core (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2013 XAML UI Designer deu Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Web Deploy 3.5 (Version: 3.1237.1762 - Microsoft Corporation) Microsoft Web Deploy dbSqlPackage Provider - DEU (x32 Version: 10.3.20225.0 - Microsoft Corporation) Microsoft Web Developer Tools 2013 - Visual Studio 2013 - deu (x32 Version: 2.0.40926.0 - Microsoft Corporation) Hidden Microsoft Web Developer Tools 2013 - Visual Studio 2013 (x32 Version: 2.0.40926.0 - Microsoft Corporation) Hidden Microsoft Web Platform Installer 4.0 (Version: 4.0.1622 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0 - Microsoft Corporation) Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053 - Adobe) Hidden Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFCLOC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFCLOC_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Microsoft-System-CLR-Typen für SQL Server 2012 (x32 Version: 11.1.3366.16 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (Version: 11.1.3366.16 - Microsoft Corporation) Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla) MSI Afterburner 2.2.0 (x32 Version: 2.2.0 - MSI Co., LTD) MSI Kombustor 2.3.0 (x32 Version: - MSI Co., LTD) MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP2 Parser and SDK (x32 Version: 4.20.9818.0 - Microsoft Corporation) MTA:SA v1.3.1 (x32 Version: v1.3.1 - Multi Theft Auto) Need for Speed™ Most Wanted (x32 Version: - ) Nero 10 Menu TemplatePack Basic (x32 Version: 10.2.10000.0.0 - Nero AG) Hidden Nero 10 Movie ThemePack Basic (x32 Version: 10.2.10000.0.0 - Nero AG) Hidden Nero BackItUp 10 (x32 Version: 5.6.11000.11.100 - Nero AG) Nero BackItUp 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero Burning ROM 10 (x32 Version: 10.2.11000.12.100 - Nero AG) Nero BurningROM 10 Help (CHM) (x32 Version: 10.5.10100 - Nero AG) Hidden Nero BurnRights 10 (x32 Version: 4.2.10300.0.102 - Nero AG) Nero BurnRights 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero Control Center 10 (x32 Version: 10.2.10600.0.6 - Nero AG) Hidden Nero ControlCenter 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero Core Components 10 (x32 Version: 2.0.17400.8.2 - Nero AG) Hidden Nero CoverDesigner 10 (x32 Version: 5.2.10700.7.100 - Nero AG) Nero CoverDesigner 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero DiscSpeed 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero Dolby Files 10 (x32 Version: 2.0.12100.0.10 - Nero AG) Hidden Nero Express 10 Help (CHM) (x32 Version: 10.5.10100 - Nero AG) Hidden Nero InfoTool 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero MediaHub 10 (x32 Version: 1.2.12300.27.100 - Nero AG) Nero MediaHub 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero Multimedia Suite 10 (x32 Version: 10.5.10500 - Nero AG) Nero Recode 10 (x32 Version: 4.8.10400.3.100 - Nero AG) Nero Recode 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero RescueAgent 10 (x32 Version: 3.2.10600.7.100 - Nero AG) Nero RescueAgent 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero SoundTrax 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero StartSmart 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero Vision 10 (x32 Version: 7.2.14700.9.100 - Nero AG) Nero Vision 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Nero WaveEditor 10 (x32 Version: 5.8.10400.2.100 - Nero AG) Nero WaveEditor 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden Notepad++ (x32 Version: 5.9.6.2 - ) NVIDIA 3D Vision Controller-Treiber 310.90 (Version: 310.90 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 331.65 (Version: 331.65 - NVIDIA Corporation) NVIDIA Grafiktreiber 331.65 (Version: 331.65 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.141.953 - NVIDIA Corporation) Hidden NVIDIA Photoshop Plug-ins 64 bit (x32 Version: 8.50 - ) NVIDIA PhysX (x32 Version: 9.12.1031 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3165 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 331.65 (Version: 331.65 - NVIDIA Corporation) Hidden NVIDIA Update 1.15.2 (Version: 1.15.2 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.15.2 - NVIDIA Corporation) Hidden OCR Software by I.R.I.S. 13.0 (Version: 13.0 - HP) Open XML SDK 2.5 for Microsoft Office (x32 Version: 2.5.5631 - Microsoft Corporation) Hidden OpenVPN 2.2.0 (x32 Version: 2.2.0 - ) Oracle VM VirtualBox 4.1.22 (Version: 4.1.22 - Oracle Corporation) Paint Shop Pro 7 Try And Buy (x32 Version: 7.0.4.0000 - Jasc Software Inc) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (x32 Version: 4.5.50932 - Microsoft Corporation) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 RC für Windows Store-Apps (Deutsch) (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Phase 5 HTML-Editor (x32 Version: 5.6.2.3 - Systemberatung Schommer) PowerISO (x32 Version: 5.0 - Power Software Ltd) PreEmptive Analytics Client German Language Pack (x32 Version: 1.2.3197.1 - PreEmptive Solutions) Hidden PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.3197.1 - PreEmptive Solutions) Hidden Project Ghost D4tabase.com Edition (HKCU Version: 1.0.0.0 - Project Ghost D4tabase.com Edition) Prototype (x32 Version: - Radical Entertainment) PROTOTYPE 2 (x32 Version: - Radical Entertainment) PS3 Xploder Ultimate Edition (x32 Version: - ) PS3XploderPro (x32 Version: 1.0.6 - UNKNOWN) PS3XploderPro (x32 Version: 1.0.6 - UNKNOWN) Hidden PTBSync (Atomuhr Synchronisation & Terminkalender) (x32 Version: 5.6b - ElmueSoft) Python Tools - Umleitungsvorlage (x32 Version: 1.1 - Microsoft Corporation) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden Realtek Ethernet Controller Driver (x32 Version: 7.48.823.2011 - Realtek) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6482 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0 - Renesas Electronics Corporation) Hidden Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden Scanjet 5590 (Version: 13.0 - HP) SCE File System Driver v1.8.0.17 (Version: 1.8.0.17 - Sony Computer Entertainment Inc.) SCE ProDG Debugger Documentation for PlayStation®3 v420.1.0 (x32 Version: 4.20.1 - Sony Computer Entertainment Ltd. / SN Systems Ltd.) SCE ProDG Debugger for PlayStation®3 v420.1.0 (x32 Version: 4.20.1 - Sony Computer Entertainment Ltd. / SN Systems Ltd.) SCE ProDG Target Manager Documentation for PlayStation®3 v420.1.0 (x32 Version: 4.20.1 - Sony Computer Entertainment Ltd. / SN Systems Ltd.) SCE ProDG Target Manager for PlayStation®3 v420.1.0 (x32 Version: 4.20.1 - Sony Computer Entertainment Ltd. / SN Systems Ltd.) Secure Download Manager (x32 Version: 3.1.40 - Kivuto Solutions Inc.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version: - Microsoft) Hidden Shared C Run-time for x64 (Version: 10.0.0 - McAfee) SharePoint Client Components (Version: 15.0.4481.1505 - Microsoft Corporation) Hidden Simple Sudoku 4.2 (x32 Version: - ) Skype™ 6.11 (x32 Version: 6.11.102 - Skype Technologies S.A.) SlimDX Runtime .NET 4.0 x86 (January 2012) (x32 Version: 2.0.13.43 - SlimDX Group) SN Systems SN Launcher v1.0.7.1 (x32 Version: 1.0.7.1 - Sony Computer Entertainment Ltd. / SN Systems Ltd.) SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden Sony PC Companion 2.10.174 (x32 Version: 2.10.174 - Sony) Speccy (Version: 1.17 - Piriform) Steam (x32 Version: - Valve Corporation) Team Explorer for Microsoft Visual Studio 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden TeamSpeak 3 Client (Version: 3.0.13.1 - TeamSpeak Systems GmbH) TeamViewer 8 (x32 Version: 8.0.16642 - TeamViewer) Telerik JustDecompile Q3 2013 (x32 Version: 13.3.1029.0 - Telerik AD) The Bat! Professional v5.3.10 (x32 Version: 5.3.10.0 - Ritlabs) The Elder Scrolls V: Skyrim (x32 Version: - Bethesda Game Studios) Unity (x32 Version: - Unity Technologies ApS) Unity Web Player (HKCU Version: - Unity Technologies ApS) Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Word 2010 (KB2837593) 32-Bit Edition (x32 Version: - Microsoft) Vegas Pro 10.0 (64-bit) (Version: 10.0.738 - Sony) Virtual Audio Cable 4.10 (Version: - ) Visual F# 3.1 SDK (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Visual F# 3.1 SDK Language Pack - DEU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Visual F# 3.1 VS (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Visual F# 3.1 VS Language Pack - DEU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 DEU (x32 Version: 4.0.8080.0 - Microsoft Corporation) Visual Studio 2013 Prerequisites - DEU Language Pack (Version: 12.0.21005 - Microsoft Corporation) Hidden Visual Studio 2013 Prerequisites (Version: 12.0.21005 - Microsoft Corporation) Hidden Visual Studio Extensions for Windows Library for JavaScript (x32 Version: 1.0.9201.20602 - Microsoft Corporation) Hidden Visual Studio Extensions for Windows Library for JavaScript (x32 Version: 1.0.9600.16408 - Microsoft Corporation) Hidden WBFS Manager 3.0 (x32 Version: 3.0 - AlexDP) WCF Data Services 5.6.0 DEU Language Pack (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services 5.6.0 Runtime (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2013 (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2013 DEU Language Pack (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF RIA Services V1.0 SP2 (x32 Version: 4.1.62812.0 - Microsoft Corporation) WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden Winamp (x32 Version: 5.666 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1 - Nullsoft, Inc) Windows App Certification Kit Native Components (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows App Certification Kit x64 (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Azure Mobile Services SDK (x32 Version: 1.0.10815.0 - Microsoft Corporation) Hidden Windows Azure Mobile Services Tools for Visual Studio 2013 Preview - v1.0 (x32 Version: 1.0.60906.1602 - Microsoft Corporation) Hidden Windows Azure Mobile Services Tools für Visual Studio 2013 Preview Language Pack - v1.0 (x32 Version: 1.0.60906.1602 - Microsoft Corporation) Hidden Windows Azure Shared Components for Microsoft Visual Studio 2013 - v1.0 (x32 Version: 1.0.10829.1601 - Microsoft Corporation) Hidden Windows Azure Tools for LightSwitch for Visual Studio 2013 - v2.1 (x32 Version: 2.1.10909.1601 - Microsoft) Hidden Windows Azure Tools für LightSwitch für Visual Studio 2013 - $(var.OOBPublishVersion) (DEU) (x32 Version: 2.1.10909.1601 - Microsoft) Hidden Windows Live ID Sign-in Assistant (Version: 6.500.3165.0 - Microsoft Corporation) Windows Runtime Intellisense Content - de-de (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x64 Remote (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x64 Remote (Version: 8.59.29989 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows XP Targeting with C++ (Version: 11.0.51106 - Microsoft Corporation) Hidden Windows XP Targeting with C++ (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden WinHTTrack Website Copier 3.47-7 (x32 Version: 3.47.7 - HTTrack) WinImage (HKCU Version: - ) WinPcap 4.1.3 (x32 Version: 4.1.0.2980 - Riverbed Technology, Inc.) WinRAR 4.00 (64-Bit) (Version: 4.00.0 - win.rar GmbH) Wireshark 1.10.2 (32-bit) (x32 Version: 1.10.2 - The Wireshark developer community, hxxp://www.wireshark.org) Workflow Manager Client 1.0 (Version: 2.0.30813.2 - Microsoft Corporation) Hidden Workflow Manager Tools 1.0 for Visual Studio (Version: 2.0.30725.1 - Microsoft Corporation) Hidden X-Fonter 7.3.2 (x32 Version: 7.3.2 - Blacksun Software) ==================== Restore Points ========================= 12-12-2013 17:31:14 Removed LogMeIn Hamachi 12-12-2013 17:54:30 Installed Elgato Game Capture HD 17-12-2013 13:38:31 Windows Update 18-12-2013 15:13:02 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 18-12-2013 15:13:06 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 20-12-2013 14:50:52 Windows Update 22-12-2013 15:34:48 Installed Elgato Game Capture HD 24-12-2013 11:54:13 Windows Update 27-12-2013 21:55:23 Windows Update 30-12-2013 13:12:09 DirectX wurde installiert 31-12-2013 15:21:21 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2013-12-30 00:56 - 00000884 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0F3143B8-10DA-4F08-AC73-E729FB61A6C2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10] (Adobe Systems Incorporated) Task: {426D06D5-9FC5-4E57-BB36-26993DB5C43A} - System32\Tasks\{4AC4ECC8-85BD-4453-8C04-A5F2DBAC9A8E} => D:\Games\Dead Island Riptide\DeadIslandGame_x86_rwdi.exe [2013-04-23] (Techland) Task: {454BE82A-FF75-43FC-8202-FD074AC01A89} - System32\Tasks\{AD22FDEB-1F60-4FD4-8E25-7443B9A033F9} => E:\MW3\MW3 Mega Unlocker.exe [2012-12-10] (StikxX) Task: {49675D67-091C-41B9-845F-9F26772C0714} - System32\Tasks\{D9AAAEC3-94EC-4C6F-9605-984FE448DB22} => D:\Games\Steam\Steam.exe [2013-12-11] (Valve Corporation) Task: {56BAFE03-B27F-4362-B94B-BB324341E1E9} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-148159804-2144952690-408461592-1000UA => C:\Users\troete\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-13] (Google Inc.) Task: {632B42D7-3065-46CE-87EE-15FEA38232C9} - System32\Tasks\{24EDF64C-4297-464B-A995-C6EE270E7A2D} => D:\Games\Bethesda Softworks\Fallout 3\Fallout3.exe [2009-06-23] (Bethesda Softworks) Task: {8F39190A-7017-4C04-959C-A85866C795AE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-10-22] (Piriform Ltd) Task: {9A9B9B46-1227-46AD-916D-D5C86099601F} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-148159804-2144952690-408461592-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {A6AD0F8B-8FF6-41EF-9FC1-C0F1FB0F7B3D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-148159804-2144952690-408461592-1000Core => C:\Users\troete\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-13] (Google Inc.) Task: {ABDF133F-AF81-4892-B751-E3AEC18370DA} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-148159804-2144952690-408461592-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {B5C140E2-7B40-417E-9875-3C09C4DD27F4} - System32\Tasks\{269CC245-250F-4573-94D7-60C5258C9EB6} => Firefox.exe hxxp://ui.skype.com/ui/0/6.6.0.106/de/abandoninstall?page=tsMain Task: {B9255F6E-FFFD-46D5-8B11-D29F1023BFD2} - System32\Tasks\{9347A6A9-C357-4BA6-8CD4-F854ABAFD4F9} => F:\AlterIWNet\Call of Duty Modern Warfare 2\iw4m.exe [2013-12-22] () Task: {CCE15E79-2198-4D17-BDF0-E7DC4F1726C8} - System32\Tasks\{9D27C23C-D24F-48E9-A8F8-A183EFA780C1} => C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe Task: {EA17C4B4-CB4B-4936-BC4E-5B40C6C3B254} - System32\Tasks\{4DCDBF67-C85B-44B8-9571-2F9D80908F8A} => Firefox.exe hxxp://ui.skype.com/ui/0/6.6.0.106/de/go/help.faq.installer?LastError=1618 Task: {FE3FCF29-6EDB-4BD8-BEC6-049A1FEFF3B6} - System32\Tasks\{B7D3FC8C-B745-4AD3-B900-2D3889E1D156} => D:\Games\Dead Island Riptide\DeadIslandGame_x86_rwdi.exe [2013-04-23] (Techland) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-148159804-2144952690-408461592-1000Core.job => C:\Users\troete\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-148159804-2144952690-408461592-1000UA.job => C:\Users\troete\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2011-01-28 20:18 - 2011-01-28 20:18 - 01208560 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll 2011-12-03 08:44 - 2011-03-02 12:40 - 00164864 _____ () C:\Program Files\WinRAR\rarext.dll 2011-07-18 22:04 - 2011-07-18 22:04 - 00301568 _____ () C:\Program Files (x86)\Notepad++\NppShell_04.dll 2011-10-07 10:39 - 2011-10-07 10:39 - 01304856 _____ () C:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll 2013-06-17 12:35 - 2013-06-17 12:35 - 00478400 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\dblite.dll 2013-05-08 14:52 - 2013-05-08 14:52 - 01270464 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\kpcengine.2.3.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2014-01-04 16:20 - 2014-01-04 16:20 - 00037888 _____ () C:\Users\troete\AppData\Local\Temp\WDE65B4.tmp\ombrowser.lng 2013-11-26 16:40 - 2013-11-26 16:40 - 00333824 _____ () C:\Program Files (x86)\Winamp\Plugins\freeform\wacs\freetype\freetype.wac 2013-12-11 22:10 - 2013-12-11 22:10 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\troete\Anwendungsdaten:NT AlternateDataStreams: C:\Users\troete\AppData\Roaming:NT ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" ==================== Faulty Device Manager Devices ============= Name: TAP-Win32 Adapter V9 Description: TAP-Win32 Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 Service: tap0901 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: VirtualBox Host-Only Ethernet Adapter Description: VirtualBox Host-Only Ethernet Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Oracle Corporation Service: VBoxNetAdp Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: TeamViewer VPN Adapter Description: TeamViewer VPN Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TeamViewer GmbH Service: teamviewervpn Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (01/04/2014 04:01:42 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/04/2014 03:42:22 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service) (User: ) Description: Der Index kann nicht initialisiert werden. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service) (User: ) Description: Die Anwendung kann nicht initialisiert werden. Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service) (User: ) Description: Das Gatherer-Objekt kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service) (User: ) Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service) (User: ) Description: Plug-In in <Search.JetPropStore> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service) (User: ) Description: Die Eigenschaftenspeicherdaten können von Windows Search nicht geladen werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Die Inhaltsindexdatenbank ist fehlerhaft. (HRESULT : 0xc0041800) (0xc0041800) Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service) (User: ) Description: Windows Search wird aufgrund eines Problems bei der Indizierung The catalog is corrupt beendet. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service) (User: ) Description: Vom Suchdienst wurden beschädigte Datendateien im Index {id=4700} erkannt. Vom Dienst wird versucht, dieses Problem durch Neuerstellung des Indexes automatisch zu beheben. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) System errors: ============= Error: (01/04/2014 03:59:54 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "TVicPort" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (01/04/2014 03:59:54 PM) (Source: Application Popup) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\TVicPort.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (01/04/2014 03:40:44 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (01/04/2014 03:40:44 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde mit folgendem dienstspezifischem Fehler beendet: %%-1073473535. Error: (01/04/2014 03:40:33 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "TVicPort" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (01/04/2014 03:40:33 PM) (Source: Application Popup) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\TVicPort.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (01/04/2014 02:31:28 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (01/04/2014 02:31:28 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde mit folgendem dienstspezifischem Fehler beendet: %%-1073473535. Error: (01/04/2014 02:31:17 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "TVicPort" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (01/04/2014 02:31:17 PM) (Source: Application Popup) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\TVicPort.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Microsoft Office Sessions: ========================= Error: (01/04/2014 04:01:42 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/04/2014 03:42:22 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service)(User: ) Description: Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) Search.TripoliIndexer Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Search.JetPropStore Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Die Inhaltsindexdatenbank ist fehlerhaft. (HRESULT : 0xc0041800) (0xc0041800) Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service)(User: ) Description: Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) The catalog is corrupt Error: (01/04/2014 03:40:44 PM) (Source: Windows Search Service)(User: ) Description: Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) 4700 CodeIntegrity Errors: =================================== Date: 2013-06-13 10:21:51.982 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Common Files\McAfee\VSCore\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-05-16 18:01:40.796 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\shell32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-05-16 18:01:40.718 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\shell32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-05-16 17:46:29.446 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\shell32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-05-16 17:45:19.910 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\shell32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-05-16 17:41:06.883 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\shell32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-05-16 17:35:05.905 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\shell32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-05-16 17:35:05.840 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\shell32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-05-16 17:28:29.715 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\shell32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-05-16 17:28:25.675 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\shell32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 19% Total physical RAM: 16353.13 MB Available physical RAM: 13207.33 MB Total Pagefile: 32704.45 MB Available Pagefile: 29340.5 MB Total Virtual: 8192 MB Available Virtual: 8191.79 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:119.14 GB) (Free:37.14 GB) NTFS Drive d: (Games) (Fixed) (Total:258.79 GB) (Free:29.47 GB) NTFS Drive e: (Sammel) (Fixed) (Total:298.08 GB) (Free:138.03 GB) NTFS Drive f: (Verschiedenes) (Fixed) (Total:298.09 GB) (Free:121.74 GB) NTFS Drive m: (Windows 8) (Fixed) (Total:206.97 GB) (Free:148.95 GB) NTFS Drive x: (volume1) (Network) (Total:449.03 GB) (Free:124.86 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119 GB) (Disk ID: E9A59F71) Partition 1: (Active) - (Size=102 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=119 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: C81C7ACA) Partition 1: (Not Active) - (Size=259 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=207 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: AE951CD1) Partition 1: (Not Active) - (Size=298 GB) - (Type=07 NTFS) ======================================================== Disk: 3 (MBR Code: Windows 7 or Vista) (Size: 298 GB) (Disk ID: C5E1AADE) Partition 1: (Active) - (Size=298 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
05.01.2014, 16:27 | #4 | |
/// the machine /// TB-Ausbilder | dllhost.exe in C:\Benutzer\xxx\...\Temp\ (Was ist das?)Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu dllhost.exe in C:\Benutzer\xxx\...\Temp\ (Was ist das?) |
anderes, angemeldet, benutzer, datei, dateien, dllhost.exe, erfahrung, erklären, gestartet, hardware, interne, internet, lüfter, miner, namens, neu, ordner, plötzlich, problem, programm, prozess, quellcode, ressourcen, temp, virus, vollständig |