|
Plagegeister aller Art und deren Bekämpfung: RUNDLL Fehler nach SystemstartWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
21.01.2014, 13:02 | #1 |
| RUNDLL Fehler nach Systemstart Guten Tag liebe Mitglieder des Trojaner Boards! Da ich nirgendwo eine Lösung für mein kleines Problem gefunden habe, entschied ich mich hier um Hilfe zu bitten. Vorgeschichte: Ich habe meine Treiber aktualisiert und ein Programm namens "Advanced System Care" von iObit upgedated. Zu meinem Problem: Nach Systemstart bekomme ich folgende Fehlermeldung: "Problem beim Starten von c:\windows\system32\thxcfg64.dll Das angegebene Modul wurde nicht gefunden.". Nachdem ich auf OK geklickt habe läuft alles jedoch wie sonst. Was ich (leider) bereits versucht habe: Ich habe mich über Google informiert was diese thxcfg64.dll ist und herausgefunden dass diese zu der Firma THX gehört. Das einzige Programm von dieser Firma auf meinem Laptop war jedoch nur das TruStudioPro. Also habe ich dieses Deinstalliert. Dies Löste mein Problem leider nicht. Bei Neuinstallation des Programmes erhalte ich jedoch ab ca. 45% einen Bluescreen. Mein System: Ich benutze einen Laptop von MSI (MSI GE70 0NC). CPU: IntelCore i7 3630QM VGA: Nvidia GeForce GTX 660M RAM: DDR3 8GB OS: Windows 8 64 Bit Vielen Dank schon einmal für die Hilfe! |
21.01.2014, 13:17 | #2 |
/// the machine /// TB-Ausbilder | RUNDLL Fehler nach Systemstart hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
21.01.2014, 13:27 | #3 |
| RUNDLL Fehler nach Systemstart Danke für die rasche Antwort!
__________________Hier die FRST.txt FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-01-2014 Ran by Otaku Attacks (administrator) on NOTROY on 21-01-2014 13:23:56 Running from C:\Users\0TAKU\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe () C:\Program Files (x86)\IObit\Advanced SystemCare 7\RealTimeProtector.exe (LOL Replay) D:\Program Files (x86)\LOLReplay\LOLRecorder.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (MSI) C:\Program Files (x86)\SCM\SCM.exe (Nullsoft, Inc.) D:\Program Files (x86)\Winamp\winamp.exe () D:\Program Files\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe () D:\Program Files\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.198\deploy\LoLLauncher.exe () D:\Program Files\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.68\deploy\LolClient.exe (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe (CoBoltDK) D:\Useless Crap\LoLPing.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2859344 2012-11-27] (ELAN Microelectronics Corp.) HKLM\...\Run: [SCM] - C:\Program Files (x86)\SCM\SCM.exe [410016 2013-06-28] (MSI) HKLM\...\Run: [XboxStat] - c:\program files\microsoft xbox 360 accessories\xboxstat.exe [825184 2009-10-01] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2014-01-08] (Realtek Semiconductor) HKLM\...\Run: [Radio Manager] - C:\Program Files (x86)\SCM\Radio Manager.exe [406920 2013-06-28] (MSI) HKLM-x32\...\Run: [IObit Malware Fighter] - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1549120 2013-08-16] (IObit) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2013-12-18] (AVAST Software) HKLM-x32\...\Run: [THX Audio Control Panel] - "C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe" /r Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKCU\...\Run: [SteelSeries Engine] - D:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [242688 2013-07-12] (SteelSeries ApS) HKCU\...\Run: [Spybot-S&D Cleaning] - D:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3642312 2013-05-16] (Safer-Networking Ltd.) HKCU\...\Run: [Advanced SystemCare 7] - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2285344 2013-12-18] (IObit) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [250504 2013-03-15] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [205184 2013-03-15] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.search.yahoo.com?type=198484&fr=spigot-yhp-ie HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://msi13.msn.com URLSearchHook: HKCU - (No Name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - No File SearchScopes: HKLM - DefaultScope {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKLM - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKLM-x32 - DefaultScope {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKLM-x32 - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKCU - DefaultScope {6D4F2856-4F09-4A46-B4FB-F194BDD97156} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms} SearchScopes: HKCU - {6D4F2856-4F09-4A46-B4FB-F194BDD97156} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms} SearchScopes: HKCU - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit) BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - No Name - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - No File Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GmbH) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) DPF: HKLM-x32 {6C269571-C6D7-4818-BCA4-32A035E8C884} hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Chrome: ======= CHR HomePage: hxxp://de.search.yahoo.com?type=198484&fr=spigot-yhp-ch CHR DefaultNewTabURL: CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll () CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Extension: (YouTube Options) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdokagampppgbnjfdlkfpphniapiiifn [2014-01-21] CHR Extension: (YouTube) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-05-11] CHR Extension: (Asuka x Rias Gremory) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdnnbapaoldhkfbbfcdjehpgpffoofom [2013-09-04] CHR Extension: (Adblock Plus) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-05-11] CHR Extension: (Google-Suche) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-05-11] CHR Extension: (Youtube Centering) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\efdnjcbindpoicliicokpmioefjljglm [2013-12-19] CHR Extension: (Silver Bird) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\encaiiljifbdbjlphpgpiimidegddhic [2013-09-20] CHR Extension: (FrankerFaceZ) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2013-11-04] CHR Extension: (Center that Youtube!) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcapbmkcbgmkafafecgbmbjlcmbomkki [2013-12-19] CHR Extension: (Stylish) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2013-12-19] CHR Extension: (avast! Ad Blocker) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\fplhdcjmbpfkejbhngmlngaecbjmoimd [2013-05-12] CHR Extension: (Ads Removal) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkcefkcdkepgkpbgncjchhbjgoanleod [2014-01-20] CHR Extension: (avast! Online Security) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-05-12] CHR Extension: (Twitch.tv Europe Lag Fix) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkoehmlkhjgaboegkondkciclminpjof [2013-12-01] CHR Extension: (Looper for YouTube) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\iggpfpnahkgpnindfkdncknoldgnccdg [2013-06-16] CHR Extension: (League of Legends Events) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfnfkjennojjkajjmghdgkibohcnefdk [2013-05-14] CHR Extension: (Center'd - Center the new YT) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkgjcknlnbcciacdklmnafmfcfjnpcja [2013-12-19] CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd [2014-01-21] CHR Extension: (Google Wallet) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-21] CHR HKLM-x32\...\Chrome\Extension: [fplhdcjmbpfkejbhngmlngaecbjmoimd] - C:\Program Files\AVAST Software\Avast\AdBlocker\Chrome\avast-adblocker-chrome.crx [2013-05-12] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2013-12-18] CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx [2014-01-21] CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= U2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [881440 2013-12-09] (IObit) U2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-12-18] (AVAST Software) U2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [335168 2013-04-25] (IObit) U2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-11-27] (Intel Corporation) U2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit) U2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.) U2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2013-06-28] (Micro-Star International Co., Ltd.) U4 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [142904 2012-05-23] (MSI) U2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) U2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) U2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2013-08-16] () U2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [340480 2013-09-20] (Qualcomm Atheros) U2 SDScannerService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.) U2 SDUpdateService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.) U2 SDWSCService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.) U4 StartMenuService; C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe [75584 2013-09-29] (IObit) U3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) U4 AdvancedSystemCareService6; ==================== Drivers (Whitelisted) ==================== U2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2013-12-18] (AVAST Software) U1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-10-27] (AVAST Software) U0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-10-27] () U1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1034464 2013-12-18] (AVAST Software) U1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422216 2013-12-18] (AVAST Software) U3 aswStm; C:\Windows\system32\drivers\aswStm.sys [79672 2013-12-20] (AVAST Software) U0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2013-12-18] () U1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [75056 2013-02-13] (Qualcomm Atheros, Inc.) U3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) U3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [121728 2012-08-27] (Motorola Solutions, Inc.) U3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [857472 2012-08-29] (Motorola Solutions, Inc.) U3 EagleX64; No ImagePath U4 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit) U3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2013-11-29] (LogMeIn Inc.) U3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [163536 2013-03-20] (Qualcomm Atheros, Inc.) U3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2014-01-21] (Intel Corporation) U3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3343840 2014-01-21] (Intel Corporation) U3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [14136 2010-01-18] (MSI) U3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34336 2013-03-26] (IObit.com) U3 SAlphamHid; C:\Windows\System32\drivers\SAlpham64.sys [38016 2013-08-11] (SteelSeries Corporation) U0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [17720 2013-05-22] () U3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [32496 2014-01-08] (Synaptics Incorporated) U3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-03-26] (IObit.com) U3 xusb22; C:\Windows\System32\drivers\xusb22.sys [89088 2012-07-26] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-21 13:23 - 2014-01-21 13:24 - 00020003 _____ C:\Users\0TAKU\Downloads\FRST.txt 2014-01-21 13:23 - 2014-01-21 13:23 - 02077184 _____ (Farbar) C:\Users\0TAKU\Downloads\FRST64.exe 2014-01-21 13:23 - 2014-01-21 13:23 - 00000000 ____D C:\FRST 2014-01-21 12:34 - 2014-01-21 12:34 - 00292632 _____ C:\Windows\Minidump\012114-24968-01.dmp 2014-01-21 12:32 - 2014-01-21 12:32 - 00000000 ____D C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8 2014-01-21 12:30 - 2014-01-21 12:31 - 13474267 _____ C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8.zip 2014-01-21 12:05 - 2014-01-21 12:16 - 00012792 _____ C:\Windows\WindowsUpdate.log 2014-01-21 12:01 - 2014-01-21 12:01 - 00006066 _____ C:\Windows\PFRO.log 2014-01-21 12:00 - 2014-01-21 12:00 - 72159232 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00069632 _____ C:\Windows\system32\config\SAM.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00028672 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00000000 _____ C:\asc_rdflag 2014-01-21 11:53 - 2014-01-21 11:53 - 00000000 ____D C:\Users\0TAKU\Downloads\thx bckup 2014-01-21 11:39 - 2014-01-21 12:33 - 599682025 _____ C:\Windows\MEMORY.DMP 2014-01-21 11:29 - 2014-01-21 11:29 - 00165236 _____ C:\Users\0TAKU\Downloads\Extras.Txt 2014-01-21 11:28 - 2014-01-21 11:28 - 00154666 _____ C:\Users\0TAKU\Downloads\OTL.Txt 2014-01-21 11:18 - 2014-01-21 11:18 - 00602112 _____ (OldTimer Tools) C:\Users\0TAKU\Downloads\OTL.exe 2014-01-21 10:56 - 2003-06-12 23:25 - 00007062 _____ C:\Windows\SysWOW64\audiopid.vxd 2014-01-21 10:39 - 2014-01-21 10:39 - 00000000 ____D C:\Program Files (x86)\SCM 2014-01-21 10:32 - 2014-01-21 10:27 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-21 10:32 - 2014-01-21 10:27 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-21 10:28 - 2014-01-21 10:28 - 00000000 ____D C:\Users\0TAKU\Downloads\scm_10.013.06287 2014-01-21 10:28 - 2013-12-07 07:37 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2014-01-21 10:28 - 2013-12-07 07:37 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-21 10:28 - 2013-12-07 06:15 - 00562688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-01-21 10:28 - 2013-12-07 06:15 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-21 10:27 - 2014-01-21 10:27 - 02232664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-01-21 10:27 - 2014-01-21 10:27 - 00385614 _____ C:\Windows\system32\ApnDatabase.xml 2014-01-21 10:27 - 2014-01-21 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-01-21 10:19 - 2014-01-21 10:28 - 00000272 _____ C:\Windows\Tasks\ASC7_SkipUac_Otaku Attacks.job 2014-01-21 10:19 - 2014-01-21 10:19 - 00003110 _____ C:\Windows\System32\Tasks\ASC7_PerformanceMonitor 2014-01-21 10:19 - 2014-01-21 10:19 - 00002388 _____ C:\Windows\System32\Tasks\ASC7_SkipUac_Otaku Attacks 2014-01-21 10:18 - 2014-01-21 12:34 - 00000314 _____ C:\Windows\Tasks\Driver Booster Update.job 2014-01-21 10:18 - 2014-01-21 11:10 - 00003232 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2014-01-21 10:13 - 2014-01-21 10:15 - 15309848 _____ (IObit ) C:\Users\0TAKU\Downloads\driver_booster_setup.exe 2014-01-21 10:07 - 2014-01-21 10:07 - 06186128 _____ C:\Windows\system32\Drivers\Netwfw00.dat 2014-01-21 10:07 - 2014-01-21 10:07 - 03343840 _____ (Intel Corporation) C:\Windows\system32\Drivers\NETwew00.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-01-21 10:07 - 2014-01-21 10:07 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-01-21 09:58 - 2014-01-21 09:58 - 00002406 _____ C:\Windows\System32\Tasks\ASC7U_SkipUac_Otaku Attacks 2014-01-21 09:58 - 2014-01-21 09:58 - 00000290 _____ C:\Windows\Tasks\ASC7U_SkipUac_Otaku Attacks.job 2014-01-21 09:49 - 2014-01-21 09:49 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit 2014-01-20 23:09 - 2014-01-20 23:14 - 24842080 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-arm.msu 2014-01-20 22:57 - 2014-01-20 23:00 - 45609763 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-x64.msu 2014-01-20 22:06 - 2014-01-21 09:40 - 00000000 ____D C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424} 2014-01-20 22:06 - 2014-01-20 22:06 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled 2014-01-20 21:43 - 2014-01-21 12:02 - 00000000 ____D C:\ProgramData\ProductData 2014-01-20 21:05 - 2014-01-20 21:06 - 03565421 _____ C:\Users\0TAKU\Downloads\scm_10.013.06287.zip 2014-01-20 20:58 - 2014-01-20 20:58 - 00000000 ____D C:\Users\0TAKU\Downloads\sbar20_21012_04278 2014-01-20 20:53 - 2014-01-20 20:57 - 13301679 _____ C:\Users\0TAKU\Downloads\sbar20_21012_04278.zip 2014-01-15 15:43 - 2014-01-15 15:48 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\TeamViewer 2014-01-15 15:17 - 2014-01-15 15:17 - 00000000 ____H C:\Users\0TAKU\Documents\Default.rdp 2014-01-13 18:00 - 2014-01-13 18:00 - 00017920 ___SH C:\Users\0TAKU\Documents\Thumbs.db 2014-01-11 00:06 - 2014-01-12 00:29 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Awesomium 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\Users\0TAKU\Documents\Elder Scrolls Online 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\ProgramData\Elder Scrolls Online 2014-01-08 20:11 - 2014-01-08 20:11 - 00000000 __SHD C:\ProgramData\DSS 2014-01-08 20:08 - 2014-01-08 20:08 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2014-01-08 13:32 - 2014-01-08 13:32 - 00000000 ____D C:\Windows\amlog 2014-01-08 13:21 - 2014-01-08 14:21 - 00001318 _____ C:\Windows\ampa.ini 2014-01-08 13:17 - 2014-01-08 13:17 - 00001024 ____H C:\AMTAG.BIN 2014-01-08 13:16 - 2014-01-08 13:17 - 08027680 _____ (AOMEI Technology Co., Ltd. ) C:\Users\0TAKU\Downloads\PAssist_Std_5.5.exe 2014-01-08 11:36 - 2014-01-08 11:36 - 00001088 _____ C:\Users\0TAKU\Desktop\The Elder Scrolls Online Beta.lnk 2014-01-08 11:31 - 2014-01-08 11:35 - 55903624 _____ ( ) C:\Users\0TAKU\Downloads\Install_ESO_Beta.exe 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____D C:\Program Files\Synaptics 2014-01-08 10:14 - 2014-01-08 10:14 - 03760344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-08 10:14 - 2014-01-08 10:14 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02588888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-08 10:14 - 2014-01-08 10:14 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01013504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00693329 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-08 10:14 - 2014-01-08 10:14 - 00628504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00618200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00563992 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00397080 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00154840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00032496 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 09888912 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsPStorIcon.dll 2014-01-08 10:13 - 2014-01-08 10:13 - 00347280 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsPStor.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 00064624 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2014-01-07 15:23 - 2014-01-21 12:36 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn Hamachi 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\ProgramData\LogMeIn 2014-01-07 15:10 - 2014-01-07 15:10 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2014-01-04 04:17 - 2014-01-04 04:17 - 71483392 _____ C:\Windows\system32\config\SOFTWARE.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00069632 _____ C:\Windows\system32\config\SAM.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00028672 _____ C:\Windows\system32\config\SECURITY.iobit 2014-01-02 17:19 - 2014-01-05 17:18 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Valdis_Story_AC 2014-01-02 16:08 - 2014-01-02 16:08 - 00000000 ____D C:\Users\0TAKU\Documents\VVVVVV 2013-12-25 23:06 - 2013-12-28 00:10 - 00000000 ____D C:\Users\0TAKU\Documents\LOLReplay 2013-12-25 13:00 - 2013-12-25 13:00 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Unity 2013-12-25 12:51 - 2013-12-25 12:51 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Unity ==================== One Month Modified Files and Folders ======= 2014-01-21 13:24 - 2014-01-21 13:23 - 00020003 _____ C:\Users\0TAKU\Downloads\FRST.txt 2014-01-21 13:23 - 2014-01-21 13:23 - 02077184 _____ (Farbar) C:\Users\0TAKU\Downloads\FRST64.exe 2014-01-21 13:23 - 2014-01-21 13:23 - 00000000 ____D C:\FRST 2014-01-21 13:03 - 2013-05-11 17:35 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-21 13:00 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\sru 2014-01-21 12:45 - 2013-05-11 17:48 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Winamp 2014-01-21 12:36 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn Hamachi 2014-01-21 12:34 - 2014-01-21 12:34 - 00292632 _____ C:\Windows\Minidump\012114-24968-01.dmp 2014-01-21 12:34 - 2014-01-21 10:18 - 00000314 _____ C:\Windows\Tasks\Driver Booster Update.job 2014-01-21 12:34 - 2013-05-25 18:37 - 00000000 ____D C:\Windows\Minidump 2014-01-21 12:34 - 2013-05-11 17:35 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-21 12:34 - 2012-07-26 08:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-21 12:33 - 2014-01-21 11:39 - 599682025 _____ C:\Windows\MEMORY.DMP 2014-01-21 12:32 - 2014-01-21 12:32 - 00000000 ____D C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8 2014-01-21 12:31 - 2014-01-21 12:30 - 13474267 _____ C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8.zip 2014-01-21 12:28 - 2013-05-11 23:17 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Skype 2014-01-21 12:16 - 2014-01-21 12:05 - 00012792 _____ C:\Windows\WindowsUpdate.log 2014-01-21 12:07 - 2013-05-11 13:59 - 00003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3692658341-3007664735-862192700-1002 2014-01-21 12:02 - 2014-01-20 21:43 - 00000000 ____D C:\ProgramData\ProductData 2014-01-21 12:01 - 2014-01-21 12:01 - 00006066 _____ C:\Windows\PFRO.log 2014-01-21 12:00 - 2014-01-21 12:00 - 72159232 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00069632 _____ C:\Windows\system32\config\SAM.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00028672 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00000000 _____ C:\asc_rdflag 2014-01-21 12:00 - 2013-05-11 13:44 - 00000000 ____D C:\Users\0TAKU 2014-01-21 11:53 - 2014-01-21 11:53 - 00000000 ____D C:\Users\0TAKU\Downloads\thx bckup 2014-01-21 11:37 - 2012-11-30 06:59 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-21 11:29 - 2014-01-21 11:29 - 00165236 _____ C:\Users\0TAKU\Downloads\Extras.Txt 2014-01-21 11:28 - 2014-01-21 11:28 - 00154666 _____ C:\Users\0TAKU\Downloads\OTL.Txt 2014-01-21 11:18 - 2014-01-21 11:18 - 00602112 _____ (OldTimer Tools) C:\Users\0TAKU\Downloads\OTL.exe 2014-01-21 11:10 - 2014-01-21 10:18 - 00003232 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2014-01-21 10:42 - 2013-08-14 15:06 - 00000000 ____D C:\Windows\system32\MRT 2014-01-21 10:40 - 2013-05-11 15:47 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-21 10:40 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\WinStore 2014-01-21 10:39 - 2014-01-21 10:39 - 00000000 ____D C:\Program Files (x86)\SCM 2014-01-21 10:28 - 2014-01-21 10:28 - 00000000 ____D C:\Users\0TAKU\Downloads\scm_10.013.06287 2014-01-21 10:28 - 2014-01-21 10:19 - 00000272 _____ C:\Windows\Tasks\ASC7_SkipUac_Otaku Attacks.job 2014-01-21 10:27 - 2014-01-21 10:32 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-21 10:27 - 2014-01-21 10:32 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-21 10:27 - 2014-01-21 10:27 - 02232664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-01-21 10:27 - 2014-01-21 10:27 - 00385614 _____ C:\Windows\system32\ApnDatabase.xml 2014-01-21 10:27 - 2014-01-21 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-01-21 10:19 - 2014-01-21 10:19 - 00003110 _____ C:\Windows\System32\Tasks\ASC7_PerformanceMonitor 2014-01-21 10:19 - 2014-01-21 10:19 - 00002388 _____ C:\Windows\System32\Tasks\ASC7_SkipUac_Otaku Attacks 2014-01-21 10:19 - 2013-05-12 10:13 - 00000000 ____D C:\Program Files (x86)\IObit 2014-01-21 10:15 - 2014-01-21 10:13 - 15309848 _____ (IObit ) C:\Users\0TAKU\Downloads\driver_booster_setup.exe 2014-01-21 10:08 - 2012-07-26 06:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2014-01-21 10:07 - 2014-01-21 10:07 - 06186128 _____ C:\Windows\system32\Drivers\Netwfw00.dat 2014-01-21 10:07 - 2014-01-21 10:07 - 03343840 _____ (Intel Corporation) C:\Windows\system32\Drivers\NETwew00.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-01-21 10:07 - 2014-01-21 10:07 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-01-21 09:58 - 2014-01-21 09:58 - 00002406 _____ C:\Windows\System32\Tasks\ASC7U_SkipUac_Otaku Attacks 2014-01-21 09:58 - 2014-01-21 09:58 - 00000290 _____ C:\Windows\Tasks\ASC7U_SkipUac_Otaku Attacks.job 2014-01-21 09:50 - 2013-12-05 02:17 - 00001976 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-21 09:49 - 2014-01-21 09:49 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-21 09:43 - 2013-11-07 08:48 - 00000000 ____D C:\Users\Gast 2014-01-21 09:43 - 2013-11-04 16:49 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo 2014-01-21 09:43 - 2013-10-09 18:27 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Battle.net 2014-01-21 09:43 - 2012-07-26 09:12 - 00000000 __RHD C:\Users\Public\Libraries 2014-01-21 09:41 - 2013-05-12 10:14 - 00000000 ____D C:\ProgramData\IObit 2014-01-21 09:41 - 2013-05-12 10:13 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\IObit 2014-01-21 09:41 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2014-01-21 09:41 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\Macromed 2014-01-21 09:41 - 2012-07-26 06:38 - 00000000 ____D C:\Windows\system32\Sysprep 2014-01-21 09:40 - 2014-01-20 22:06 - 00000000 ____D C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424} 2014-01-21 09:39 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\registration 2014-01-21 09:36 - 2013-05-11 17:35 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Google 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit 2014-01-20 23:14 - 2014-01-20 23:09 - 24842080 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-arm.msu 2014-01-20 23:00 - 2014-01-20 22:57 - 45609763 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-x64.msu 2014-01-20 22:32 - 2012-11-22 07:59 - 00000000 ____D C:\Windows\Panther 2014-01-20 22:15 - 2013-10-09 18:27 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Battle.net 2014-01-20 22:06 - 2014-01-20 22:06 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled 2014-01-20 21:06 - 2014-01-20 21:05 - 03565421 _____ C:\Users\0TAKU\Downloads\scm_10.013.06287.zip 2014-01-20 20:58 - 2014-01-20 20:58 - 00000000 ____D C:\Users\0TAKU\Downloads\sbar20_21012_04278 2014-01-20 20:57 - 2014-01-20 20:53 - 13301679 _____ C:\Users\0TAKU\Downloads\sbar20_21012_04278.zip 2014-01-19 21:29 - 2013-11-14 16:25 - 00000015 _____ C:\Users\0TAKU\AppData\Roaming\A.c199807a9ba5ab306db172f530f9b9e01.resizer_settings 2014-01-15 15:48 - 2014-01-15 15:43 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\TeamViewer 2014-01-15 15:17 - 2014-01-15 15:17 - 00000000 ____H C:\Users\0TAKU\Documents\Default.rdp 2014-01-13 21:25 - 2013-05-12 20:36 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\.minecraft 2014-01-13 18:00 - 2014-01-13 18:00 - 00017920 ___SH C:\Users\0TAKU\Documents\Thumbs.db 2014-01-13 13:53 - 2013-05-14 13:19 - 00485714 _____ C:\Windows\system32\perfh011.dat 2014-01-13 13:53 - 2013-05-14 13:19 - 00133088 _____ C:\Windows\system32\perfc011.dat 2014-01-13 13:53 - 2012-11-22 09:13 - 00754172 _____ C:\Windows\system32\perfh007.dat 2014-01-13 13:53 - 2012-11-22 09:13 - 00156362 _____ C:\Windows\system32\perfc007.dat 2014-01-13 13:53 - 2012-07-26 08:28 - 02367698 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-12 20:17 - 2013-05-11 18:50 - 00000000 ____D C:\Users\0TAKU\Documents\DragonNest 2014-01-12 00:29 - 2014-01-11 00:06 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Awesomium 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\Users\0TAKU\Documents\Elder Scrolls Online 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\ProgramData\Elder Scrolls Online 2014-01-10 12:15 - 2013-05-12 19:50 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\vlc 2014-01-09 17:59 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\NDF 2014-01-09 17:31 - 2013-08-31 14:06 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Game Dev Tycoon - Steam 2014-01-08 20:11 - 2014-01-08 20:11 - 00000000 __SHD C:\ProgramData\DSS 2014-01-08 20:11 - 2013-08-31 15:33 - 00000000 ____D C:\Users\0TAKU\Documents\EA Games 2014-01-08 20:11 - 2013-07-06 12:53 - 00000000 ____D C:\ProgramData\Electronic Arts 2014-01-08 20:08 - 2014-01-08 20:08 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2014-01-08 14:21 - 2014-01-08 13:21 - 00001318 _____ C:\Windows\ampa.ini 2014-01-08 13:32 - 2014-01-08 13:32 - 00000000 ____D C:\Windows\amlog 2014-01-08 13:17 - 2014-01-08 13:17 - 00001024 ____H C:\AMTAG.BIN 2014-01-08 13:17 - 2014-01-08 13:16 - 08027680 _____ (AOMEI Technology Co., Ltd. ) C:\Users\0TAKU\Downloads\PAssist_Std_5.5.exe 2014-01-08 11:36 - 2014-01-08 11:36 - 00001088 _____ C:\Users\0TAKU\Desktop\The Elder Scrolls Online Beta.lnk 2014-01-08 11:35 - 2014-01-08 11:31 - 55903624 _____ ( ) C:\Users\0TAKU\Downloads\Install_ESO_Beta.exe 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____D C:\Program Files\Synaptics 2014-01-08 10:14 - 2014-01-08 10:14 - 03760344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-08 10:14 - 2014-01-08 10:14 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02588888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-08 10:14 - 2014-01-08 10:14 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01013504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00693329 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-08 10:14 - 2014-01-08 10:14 - 00628504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00618200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00563992 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00397080 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00154840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00032496 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys 2014-01-08 10:14 - 2012-11-30 07:08 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2014-01-08 10:13 - 2014-01-08 10:13 - 09888912 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsPStorIcon.dll 2014-01-08 10:13 - 2014-01-08 10:13 - 00347280 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsPStor.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 00064624 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2014-01-07 22:35 - 2013-11-27 18:29 - 00000000 ____D C:\Users\0TAKU\Documents\LoL Guides and stuff 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\ProgramData\LogMeIn 2014-01-07 15:10 - 2014-01-07 15:10 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2014-01-05 17:18 - 2014-01-02 17:19 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Valdis_Story_AC 2014-01-04 14:11 - 2013-05-14 05:36 - 00000000 ____D C:\Users\0TAKU\Documents\my games 2014-01-04 04:17 - 2014-01-04 04:17 - 71483392 _____ C:\Windows\system32\config\SOFTWARE.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00069632 _____ C:\Windows\system32\config\SAM.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00028672 _____ C:\Windows\system32\config\SECURITY.iobit 2014-01-02 16:08 - 2014-01-02 16:08 - 00000000 ____D C:\Users\0TAKU\Documents\VVVVVV 2013-12-30 15:27 - 2013-11-08 22:31 - 00018944 _____ C:\Users\0TAKU\Documents\League of legends pool.xls 2013-12-28 13:04 - 2013-07-03 17:18 - 00000000 ____D C:\Users\0TAKU\Desktop\Games 2013-12-28 00:10 - 2013-12-25 23:06 - 00000000 ____D C:\Users\0TAKU\Documents\LOLReplay 2013-12-25 13:00 - 2013-12-25 13:00 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Unity 2013-12-25 12:51 - 2013-12-25 12:51 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Unity 2013-12-24 10:26 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\AUInstallAgent ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-17 13:23 ==================== End Of Log ============================ --- --- --- und hier die Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-01-2014 Ran by Otaku Attacks at 2014-01-21 13:24:20 Running from C:\Users\0TAKU\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: IObit Malware Fighter (Disabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== „Windows Live Essentials“ (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden „Windows Live Mail“ (x32 Version: 16.4.3503.0728 - „Microsoft Corporation“) Hidden „Windows Live Messenger“ (x32 Version: 16.4.3503.0728 - „Microsoft Corporation“) Hidden Adbuck (x32 Version: 2.2.0.2 - Media Revolution GmbH) Adobe Reader XI (11.0.05) - Deutsch (x32 Version: 11.0.05 - Adobe Systems Incorporated) Advanced SystemCare 6 (x32 Version: 6.4 - IObit) Advanced SystemCare 7 (x32 Version: 7.1.0 - IObit) Age of Empires II: HD Edition (x32 Version: - Hidden Path Entertainment, Ensemble Studios) avast! Free Antivirus (x32 Version: 9.0.2011 - Avast Software) Battery Calibration (x32 Version: 1.0.1208.0301 - Micro-Star International Co., Ltd.) Battle.net (x32 Version: - Blizzard Entertainment) Battlefield 3™ (x32 Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (x32 Version: 2.1.7 - EA Digital Illusions CE AB) Beat Hazard (x32 Version: - ) BioShock Infinite (x32 Version: - Irrational Games) BurnRecovery (x32 Version: 4.0.1211.2101 - Micro-Star International Co., Ltd.) Cave Story Deluxe (x32 Version: - ) CCleaner (Version: 4.08 - Piriform) Chivalry: Medieval Warfare (x32 Version: - Torn Banner Studios) ClassicPro© v2.01 (x32 Version: 2.01 - Skin Consortium) Compatibility Pack für 2007 Office System (x32 Version: 12.0.6021.5000 - Microsoft Corporation) Crysis 2 Maximum Edition (x32 Version: - Crytek Studios) CrystalDiskInfo 6.0.1 (x32 Version: 6.0.1 - Crystal Dew World) Cube World version 0.0.1 (x32 Version: 0.0.1 - Picroma) CyberLink PowerDVD 10 (x32 Version: 10.0.4126.52 - CyberLink Corp.) CyberLink PowerDVD 10 (x32 Version: 10.0.4126.52 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dark Souls: Prepare to Die Edition (x32 Version: - FromSoftware) Darksiders (x32 Version: - Vigil Games) Darksiders II (x32 Version: - Vigil Games) Die Sims™ 3 (x32 Version: 1.57.62 - Electronic Arts) Die Sims™ 3 Late Night (x32 Version: 6.5.1 - Electronic Arts) Die Sims™ 3 Luxus-Accessoires (x32 Version: 3.0.38 - Electronic Arts) Dragon Nest Europe (x32 Version: - ) Driver Booster (x32 Version: 1.2 - IObit) ESN Sonar (x32 Version: 0.70.4 - ESN Social Software AB) ETDWare PS/2-X64 11.13.0.2_WHQL (Version: 11.13.0.2 - ELAN Microelectronic Corp.) Evoland (x32 Version: - Shiro Games) Fotoattēlu galerija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogaléria (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogalerie (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogalerii (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogalerija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Foto-galerija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogalleri (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogalleriet (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotoğraf Galerisi (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotótár (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Free YouTube Download version 3.2.2.430 (x32 Version: 3.2.2.430 - DVDVideoSoft Ltd.) Galeria de Fotografias (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galeria de Fotos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galería de fotos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galeria fotografii (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galerie de photos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galerie foto (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galerija fotografija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Game Booster 3 (x32 Version: 3.4 - IObit) Game Dev Tycoon (x32 Version: - Greenheart Games) Game Dev Tycoon version 1.3.13 (x32 Version: 1.3.13 - Greenheart Games Pty. Ltd.) Google Chrome (x32 Version: 31.0.1650.63 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden Hearthstone (x32 Version: - Blizzard Entertainment) Intel(R) Control Center (x32 Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (x32 Version: 8.1.0.1281 - Intel Corporation) Intel(R) Processor Graphics (x32 Version: 9.17.10.2849 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: 2.6.1209.0268 - Motorola Solutions, Inc.) Intel(R) Rapid Storage Technology (x32 Version: 11.6.0.1030 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 2.0.0.37149 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.738.1 - Intel Corporation) Hidden IObit Malware Fighter (x32 Version: 2.1 - IObit) IObit Uninstaller (x32 Version: 3.0.5.1228 - IObit) Java 7 Update 25 (x32 Version: 7.0.250 - Oracle) Java Auto Updater (x32 Version: 2.1.9.5 - Sun Microsystems, Inc.) Hidden Junk Mail filter update (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden KB9X Radio Switch Driver (Version: 1.0.7112.20593 - ENE TECHNOLOGY INC.) Kingdoms of Amalur: Reckoning (x32 Version: 1.0.0.0 - Electronic Arts) League of Legends (x32 Version: 1.3 - Riot Games) LogMeIn Hamachi (x32 Version: 2.2.0.109 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.109 - LogMeIn, Inc.) Hidden LOLReplay (x32 Version: 0.8.5.2 - www.leaguereplays.com) Medal of Honor(TM) Single Player (x32 Version: - Electronic Arts) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (x32 Version: 3.5.67.0 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (x32 Version: 11.0.5614.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual Basic PowerPacks 10.0 (x32 Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Xbox 360 Accessories 1.2 (Version: 1.20.146.0 - Microsoft) Microsoft XNA Framework Redistributable 4.0 Refresh (x32 Version: 4.0.30901.0 - Microsoft Corporation) Mirror's Edge (x32 Version: - DICE) Movie Maker (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Mozilla Maintenance Service (x32 Version: 17.0.5 - Mozilla) Mozilla Thunderbird 17.0.5 (x86 de) (x32 Version: 17.0.5 - Mozilla) Mozilla Thunderbird 24.2.0 (x86 de) (HKCU Version: 24.2.0 - Mozilla) MSI Remind Manager (x32 Version: 2.12.1003 - MSI) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1108.0727 - Microsoft) Hidden Nexus Mod Manager (Version: 0.45.2 - Black Tree Gaming) NVIDIA Grafiktreiber 314.22 (Version: 314.22 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.115.743 - NVIDIA Corporation) Hidden NVIDIA Optimus 1.12.12 (Version: 1.12.12 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.12.1031 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.12.1031 (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Systemsteuerung 314.22 (Version: 314.22 - NVIDIA Corporation) Hidden NVIDIA Update 1.12.12 (Version: 1.12.12 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.12.12 - NVIDIA Corporation) Hidden Open Broadcaster Software (x32 Version: - ) Origin (x32 Version: 9.2.1.4399 - Electronic Arts, Inc.) PDF Architect (x32 Version: 1.1.83.9982 - pdfforge GmbH) PDFCreator (x32 Version: 1.7.1 - pdfforge) Photo Common (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Pinnacle Video Treiber (Version: 12.1.0.029 - Pinnacle Systems) Poczta usługi Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Pošta Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden POSTAL 2 Complete (x32 Version: - Running With Scissors) PunkBuster Services (x32 Version: 0.991 - Even Balance, Inc.) Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.0.35.1273 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer E220x Drivers (Version: 1.0.35.1273 - Qualcomm Atheros) Hidden Qualcomm Atheros Network Manager (Version: 1.0.35.1273 - Qualcomm Atheros) Hidden Qualcomm Atheros Performance Suite (x32 Version: 1.0.35.1273 - Qualcomm Atheros) Raccolta foto (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Ragnarok Online - Free to Play - European Version (x32 Version: - Gravity Europe SAS) Realtek High Definition Audio Driver (x32 Version: 6.0.1.7106 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (x32 Version: 6.2.8400.28123 - Realtek Semiconductor Corp.) Remember Me (x32 Version: - DONTNOD Entertainment) Saints Row: The Third (x32 Version: - Volition) SCM (Version: 10.013.06287 - Application) Scoregasm (x32 Version: - RC Knight) Skype™ 6.3 (x32 Version: 6.3.105 - Skype Technologies S.A.) Smart Defrag 2 (x32 Version: 2.9 - IObit) Spybot - Search & Destroy (x32 Version: 2.1.21 - Safer-Networking Ltd.) Start Menu 8 (x32 Version: 1.3.0.0 - IObit) Steam (x32 Version: 1.0.0.0 - Valve Corporation) SteelSeries Engine (Version: 2.8.59.30483 - SteelSeries) Super-Charger (x32 Version: 1.2.010 - MSI) Surfing Protection (x32 Version: 1.0 - IObit) TeamSpeak 3 Client (Version: 3.0.13 - TeamSpeak Systems GmbH) The Binding of Isaac (x32 Version: - ) The Elder Scrolls Online Beta (x32 Version: 0.3.4 - ) Trine 2 (x32 Version: - Frozenbyte) Tyranid Mod 0.5b2 for Soulstorm (x32 Version: - ) Ubisoft Game Launcher (x32 Version: 1.0.0.0 - UBISOFT) Unity Web Player (HKCU Version: - Unity Technologies ApS) Update for Japanese Microsoft IME Postal Code Dictionary (x32 Version: 15.0.1157 - Microsoft Corporation) Update for Japanese Microsoft IME Standard Dictionary (x32 Version: 15.0.1080 - Microsoft Corporation) Update for Japanese Microsoft IME Standard Extended Dictionary (x32 Version: 15.0.1080 - Microsoft Corporation) Valdis Story: Abyssal City (x32 Version: - ) Valokuvavalikoima (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden VLC media player 2.1.1 (x32 Version: 2.1.1 - VideoLAN) VVVVVV (x32 Version: - Terry Cavanagh) Warhammer 40,000: Dawn of War – Dark Crusade (x32 Version: - Relic Entertainment) Warhammer 40,000: Dawn of War - Game of the Year Edition (x32 Version: - Relic Entertainment) Warhammer 40,000: Dawn of War – Soulstorm (x32 Version: - Relic Entertainment) Warhammer 40,000: Dawn of War – Winter Assault (x32 Version: - Relic Entertainment) Winamp (x32 Version: 5.63 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1 - Nullsoft, Inc) Windows Driver Package - Intel (NETwNe64) net (09/12/2012 15.5.4.45) (Version: 09/12/2012 15.5.4.45 - Intel) Windows Live Communications Platform (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3503.0728 - společnost Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3503.0728 - Корпорація Майкрософт) Hidden Windows Live Messenger (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3503.0728 - společnost Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3503.0728 - Корпорация Майкрософт) Hidden Windows Live Messenger (x32 Version: 16.4.3503.0728 - Корпорація Майкрософт) Hidden Windows Live MIME IFilter (Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Pošta (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Temel Parçalar (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live メール (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live 메일 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live 필수 패키지 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live 程式集 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live 软件包 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Liven peruspaketti (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Liven sähköposti (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH) XSplit Broadcaster (x32 Version: 1.3.1306.2101 - SplitMediaLabs) Συλλογή φωτογραφιών (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Основи Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 16.4.3503.0728 - Корпорация Майкрософт) Hidden Фотоальбом (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Фотогалерия (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Фотографии (общедоступная версия) (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Фотоколекція (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden フォト ギャラリー (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden גלריית התמונות (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden بريد Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden معرض الصور (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden 사진 갤러리 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden 影像中心 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden 照片库 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden ==================== Restore Points ========================= 04-01-2014 13:09:15 DirectX wurde installiert 07-01-2014 14:09:51 Installed LogMeIn Hamachi 08-01-2014 09:12:23 Driver Booster : Intel(R) 7 Series Chipset Family SATA AHCI Controller 15-01-2014 10:45:52 Windows Modules Installer 20-01-2014 19:59:26 Installed S-Bar 20-01-2014 21:41:58 Driver Booster : Intel(R) 7 Series/C216 Chipset Family SATA AHCI Controller - 1E03 21-01-2014 08:31:40 Wiederherstellungsvorgang 21-01-2014 09:06:09 Driver Booster : Intel(R) 7 Series/C216 Chipset Family SATA AHCI Controller - 1E03 ==================== Hosts content: ========================== 2012-07-26 06:26 - 2012-07-26 06:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {052D7F59-C74F-4251-A284-8E2C8E7B5D8A} - System32\Tasks\ASC7_SkipUac_Otaku Attacks => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe [2013-12-16] (IObit) Task: {12A45333-4AC0-49B6-BDF6-72CABB6DB42A} - System32\Tasks\StartMenuAutoupdate => C:\Program Files (x86)\IObit\Start Menu 8\AutoUpdate.exe [2013-09-29] (IObit) Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {24118F9D-95B6-44AC-86C0-5397D96CFDB8} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {2821218D-B9D4-460F-B69F-846F189248DB} - System32\Tasks\StartMenu8Start => C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe [2013-09-29] (IObit) Task: {447C462E-96D8-4F23-8939-F68FC55CE435} - System32\Tasks\ASC6_AutoClean => D:\Program Files (x86)\IObit\Advanced SystemCare 6\AutoSweep.exe Task: {6A64BDB1-A88D-4B03-864D-5E9C400B5638} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => D:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Task: {6FB07D63-40E0-483D-B98A-F9D822CC5B43} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\system32\NotificationUI.exe [2013-08-16] (Microsoft Corporation) Task: {77B0A97F-E116-4172-A0DC-B9B391F367B9} - System32\Tasks\Driver Booster Scan => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2014-01-10] (IObit) Task: {7D40F173-063D-4857-B52B-2DF5A6E09A3A} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-12-18] (AVAST Software) Task: {8211C1E2-9B56-4C70-85A6-1C725695A4F1} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => D:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {83FC5BC0-2050-48BC-8623-F78FA45CF3B3} - System32\Tasks\ASC7U_SkipUac_Otaku Attacks => D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASC.exe [2013-12-02] (IObit) Task: {8840CC6E-7E5D-4C75-9E81-27D900DEFCC0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-11] (Google Inc.) Task: {8D89D572-69AC-4B41-AD04-4530110E8853} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-11-22] (Piriform Ltd) Task: {9D3103D7-7D04-49F1-974B-2A965936BC00} - System32\Tasks\ASC7_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe [2013-12-03] (IObit) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {ABBE6DCC-8957-43E7-A6AF-0EFB8071C52E} - System32\Tasks\{9FB6F3D7-66EE-4E1B-A8A3-BAAEC1D3595B} => Chrome.exe hxxp://ui.skype.com/ui/0/6.3.0.105/de/abandoninstall?source=lightinstaller&page=tsInstall Task: {C5669427-07F5-434E-93DB-2B2CC173B6AA} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [2013-06-08] () Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {CC088A56-64B9-4A10-9CAB-8F25655AA6D4} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2014-01-07] (IObit) Task: {E90BD8DF-A0FB-418D-B35D-B8C5D0CDF888} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-11] (Google Inc.) Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {FE49ED7A-DD26-4133-A192-23B2B312F75E} - System32\Tasks\ASC6_PerformanceMonitor => D:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe Task: C:\Windows\Tasks\ASC7U_SkipUac_Otaku Attacks.job => D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASC.exe Task: C:\Windows\Tasks\ASC7_SkipUac_Otaku Attacks.job => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe Task: C:\Windows\Tasks\Driver Booster Update.job => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-01-21 10:19 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\sqlite3.dll 2014-01-21 09:53 - 2014-01-20 18:52 - 02155520 _____ () C:\Program Files\AVAST Software\Avast\defs\14012001\algo.dll 2013-09-25 05:46 - 2013-05-16 09:55 - 00113496 _____ () D:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2013-09-25 05:46 - 2013-05-16 09:55 - 00161112 _____ () D:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2013-09-25 05:46 - 2013-05-16 09:55 - 00416600 _____ () D:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2013-09-25 05:46 - 2012-08-23 09:38 - 00574840 _____ () D:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2013-09-25 05:46 - 2012-04-03 16:06 - 00565640 _____ () D:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2014-01-21 10:19 - 2013-01-15 18:48 - 00348992 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madExcept_.bpl 2014-01-21 10:19 - 2013-01-15 18:48 - 00183616 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madBasic_.bpl 2014-01-21 10:19 - 2013-01-15 18:48 - 00051008 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madDisAsm_.bpl 2014-01-21 10:19 - 2013-01-15 18:47 - 00893248 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\webres.dll 2013-12-11 05:22 - 2013-12-11 05:22 - 00378368 _____ () D:\Program Files (x86)\LOLReplay\LOLUtils.dll 2012-11-30 07:02 - 2012-11-27 18:01 - 00004096 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll 2012-11-30 06:58 - 2012-11-27 17:59 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2013-09-25 05:46 - 2013-05-16 09:55 - 00113496 _____ () D:\PROGRAM FILES (X86)\SPYBOT - SEARCH & DESTROY 2\snlThirdParty150.bpl 2013-09-25 05:46 - 2013-05-16 09:55 - 00416600 _____ () D:\PROGRAM FILES (X86)\SPYBOT - SEARCH & DESTROY 2\DEC150.bpl 2013-10-27 01:32 - 2013-10-27 01:32 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00417280 _____ () D:\Program Files (x86)\Winamp\nsutil.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00078848 _____ () D:\Program Files (x86)\Winamp\nde.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00064512 _____ () D:\Program Files (x86)\Winamp\zlib.dll 2014-01-21 12:45 - 2014-01-21 12:45 - 00010752 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\auth.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00069120 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\burnlib.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00013824 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\dsp_sps.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00006656 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\enc_fhgaac.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00004096 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\enc_flac.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00005632 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\enc_lame.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00004096 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\enc_vorbis.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00004096 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\enc_wav.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00006144 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\enc_wma.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00023552 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_classicart.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00007168 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_crasher.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00023040 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_ff.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00004096 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_find_on_disk.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00011776 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_hotkeys.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00041984 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_jumpex.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00041984 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_jumpex_original.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00021504 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_ml.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00009728 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_nopro.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00007168 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_orgler.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00014848 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_play_remove.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00011776 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_skinmanager.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00010240 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_timerestore.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00008192 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_tray.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00010752 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\gen_undo.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00005120 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_avi.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00014336 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_cdda.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00006656 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_dshow.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00005632 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_flac.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00003584 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_flv.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00003584 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_linein.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00020480 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_midi.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00004608 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_mkv.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00018944 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_mod.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00023040 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_mp3.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00005120 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_mp4.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00011776 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_nsv.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00003584 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_swf.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00011264 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_vorbis.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00006656 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_wav.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00005632 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_wave.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00015360 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_wm.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00004608 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\in_wv.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00003584 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_addons.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00006656 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_autotag.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00005120 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_bookmarks.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00008704 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_devices.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00047616 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_disc.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00009728 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_downloads.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00004608 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_enqplay.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00008704 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_history.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00005120 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_impex.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00056320 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_local.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00003584 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_nowplaying.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00014336 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_online.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00004096 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_orb.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00012800 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_playlists.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00034816 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_plg.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00047104 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_pmp.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00005120 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_rg.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00008192 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_transcode.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00014848 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ml_wire.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00036352 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\ombrowser.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00006144 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\out_disk.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00016384 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\out_ds.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00007680 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\out_wave.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00003072 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\playlist.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00004608 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\pmp_activesync.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00020480 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\pmp_android.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00036864 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\pmp_ipod.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00003584 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\pmp_njb.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00004096 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\pmp_p4s.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00011776 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\pmp_usb.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00039424 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\pmp_wifi.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00006144 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\tagz.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00088064 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\vis_avs.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00156160 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\vis_milk2.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00007680 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\vis_nsfs.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00206336 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\winamp.lng 2014-01-21 12:45 - 2014-01-21 12:45 - 00004096 _____ () C:\Users\0TAKU\AppData\Local\Temp\WLZ2B9.tmp\winampa.lng 2012-06-28 16:42 - 2013-05-11 17:49 - 00023552 _____ () D:\Program Files (x86)\Winamp\System\albumart.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00174080 _____ () D:\Program Files (x86)\Winamp\System\auth.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00019456 _____ () D:\Program Files (x86)\Winamp\System\bmp.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00044544 _____ () D:\Program Files (x86)\Winamp\System\devices.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00016896 _____ () D:\Program Files (x86)\Winamp\System\dlmgr.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00014336 _____ () D:\Program Files (x86)\Winamp\System\filereader.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00019456 _____ () D:\Program Files (x86)\Winamp\System\gif.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00016384 _____ () D:\Program Files (x86)\Winamp\System\gracenote.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00623616 _____ () D:\Program Files (x86)\Winamp\System\jnetlib.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00154624 _____ () D:\Program Files (x86)\Winamp\System\jpeg.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00084480 _____ () D:\Program Files (x86)\Winamp\System\playlist.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00087552 _____ () D:\Program Files (x86)\Winamp\System\png.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00013824 _____ () D:\Program Files (x86)\Winamp\System\primo.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00021504 _____ () D:\Program Files (x86)\Winamp\System\tagz.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00035328 _____ () D:\Program Files (x86)\Winamp\System\timer.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00091136 _____ () D:\Program Files (x86)\Winamp\System\xml.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00068608 _____ () D:\Program Files (x86)\Winamp\Plugins\in_avi.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00102400 _____ () D:\Program Files (x86)\Winamp\Plugins\in_cdda.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00072192 _____ () D:\Program Files (x86)\Winamp\Plugins\in_dshow.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00061440 _____ () D:\Program Files (x86)\Winamp\Plugins\in_flac.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00043008 _____ () D:\Program Files (x86)\Winamp\Plugins\in_flv.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00007168 _____ () D:\Program Files (x86)\Winamp\Plugins\in_linein.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00109568 _____ () D:\Program Files (x86)\Winamp\Plugins\in_midi.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00049152 _____ () D:\Program Files (x86)\Winamp\Plugins\in_mkv.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00164864 _____ () D:\Program Files (x86)\Winamp\Plugins\in_mod.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00290816 _____ () D:\Program Files (x86)\Winamp\Plugins\in_mp3.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00052736 _____ () D:\Program Files (x86)\Winamp\Plugins\in_mp4.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00075264 _____ () D:\Program Files (x86)\Winamp\Plugins\in_nsv.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00023552 _____ () D:\Program Files (x86)\Winamp\Plugins\in_swf.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00253440 _____ () D:\Program Files (x86)\Winamp\Plugins\in_vorbis.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00016896 _____ () D:\Program Files (x86)\Winamp\Plugins\in_wave.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00253440 _____ () D:\Program Files (x86)\Winamp\libsndfile.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00313344 _____ () D:\Program Files (x86)\Winamp\Plugins\in_wm.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00022528 _____ () D:\Program Files (x86)\Winamp\Plugins\out_disk.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00052224 _____ () D:\Program Files (x86)\Winamp\Plugins\out_ds.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00018432 _____ () D:\Program Files (x86)\Winamp\Plugins\out_wave.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 01737728 _____ () D:\Program Files (x86)\Winamp\Plugins\gen_ff.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00083968 _____ () D:\Program Files (x86)\Winamp\tataki.dll 2013-02-26 10:27 - 2013-02-26 10:27 - 00129536 _____ () D:\Program Files (x86)\Winamp\System\ClassicPro.w5s 2012-06-28 16:42 - 2013-05-11 17:49 - 00340992 _____ () D:\Program Files (x86)\Winamp\Plugins\freeform\wacs\freetype\freetype.wac 2012-06-28 16:42 - 2013-05-11 17:49 - 00028160 _____ () D:\Program Files (x86)\Winamp\Plugins\gen_hotkeys.dll 2011-11-10 23:10 - 2013-05-11 17:49 - 00185344 _____ () D:\Program Files (x86)\Winamp\Plugins\gen_jumpex.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00318976 _____ () D:\Program Files (x86)\Winamp\Plugins\gen_ml.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00294912 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_local.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00084480 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_playlists.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00124928 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_online.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00249856 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_devices.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00201728 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_disc.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00240640 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_pmp.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00060928 _____ () D:\Program Files (x86)\Winamp\Plugins\pmp_android.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00170496 _____ () D:\Program Files (x86)\Winamp\Plugins\pmp_ipod.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00020480 _____ () D:\Program Files (x86)\Winamp\Plugins\pmp_njb.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00118272 _____ () D:\Program Files (x86)\Winamp\Plugins\pmp_p4s.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00053760 _____ () D:\Program Files (x86)\Winamp\Plugins\pmp_usb.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00113664 _____ () D:\Program Files (x86)\Winamp\Plugins\pmp_wifi.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00028672 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_bookmarks.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00052224 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_history.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00028672 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_autotag.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00057344 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_impex.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00083456 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_plg.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00033792 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_rg.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00032256 _____ () D:\Program Files (x86)\Winamp\Plugins\ml_transcode.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00057344 _____ () D:\Program Files (x86)\Winamp\Plugins\gen_orgler.dll 2012-06-28 16:42 - 2013-05-11 17:49 - 00025600 _____ () D:\Program Files (x86)\Winamp\Plugins\gen_tray.dll 2013-09-05 10:47 - 2014-01-17 11:30 - 00126816 _____ () D:\Program Files\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.198\deploy\RiotLauncher.dll 2013-11-07 09:10 - 2013-11-07 09:10 - 00052224 _____ () D:\Program Files (x86)\LOLReplay\Launcher.dll 2013-11-07 10:08 - 2013-11-07 10:08 - 00160768 _____ () D:\Program Files (x86)\LOLReplay\Air.dll 2013-07-15 04:55 - 2013-07-15 04:55 - 04774248 _____ () D:\Program Files\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.68\deploy\Adobe AIR\Versions\1.0\Resources\WebKit.dll 2013-12-05 20:05 - 2013-12-04 03:47 - 00702416 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libglesv2.dll 2013-12-05 20:05 - 2013-12-04 03:47 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libegl.dll 2013-12-05 20:05 - 2013-12-04 03:48 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll 2013-12-05 20:05 - 2013-12-04 03:48 - 00399312 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll 2013-12-05 20:05 - 2013-12-04 03:47 - 01619408 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Faulty Device Manager Devices ============= Name: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Description: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Intel Corporation Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Could not start eventlog service, could not read events. Der angeforderte Dienst wurde bereits gestartet. Sie erhalten weitere Hilfe, wenn Sie NET HELPMSG 2182 eingeben. ==================== Memory info =========================== Percentage of memory in use: 27% Total physical RAM: 8080.57 MB Available physical RAM: 5866.96 MB Total Pagefile: 16272.57 MB Available Pagefile: 13512.38 MB Total Virtual: 8192 MB Available Virtual: 8191.76 MB ==================== Drives ================================ Drive c: (OS_Install) (Fixed) (Total:100 GB) (Free:37.53 GB) NTFS Drive d: (Volume) (Fixed) (Total:344.01 GB) (Free:103.93 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: ECCEC66C) Partition: GPT Partition Type ==================== End Of Log ============================ |
22.01.2014, 09:39 | #4 |
/// the machine /// TB-Ausbilder | RUNDLL Fehler nach Systemstart Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.01.2014, 12:05 | #5 |
| RUNDLL Fehler nach Systemstart Hier die Logs: Malwarebytes: Code:
ATTFilter Malwarebytes Anti-Malware (Test) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.01.22.06 Windows 8 x64 NTFS Internet Explorer 10.0.9200.16750 Otaku Attacks :: NOTROY [Administrator] Schutz: Aktiviert 22-Jan-14 11:41:14 mbam-log-2014-01-22 (11-41-14).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 258460 Laufzeit: 6 Minute(n), Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 1 C:\Windows\Installer\ebe30.msi (PUP.Optional.Spigot.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) Code:
ATTFilter # AdwCleaner v3.017 - Bericht erstellt am 22/01/2014 um 11:50:17 # Aktualisiert 12/01/2014 von Xplode # Betriebssystem : Windows 8 (64 bits) # Benutzername : Otaku Attacks - NOTROY # Gestartet von : C:\Users\0TAKU\Downloads\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\ParetoLogic Ordner Gelöscht : C:\Program Files (x86)\IObit Apps Toolbar Ordner Gelöscht : C:\Users\0TAKU\AppData\LocalLow\Search Settings Ordner Gelöscht : C:\Users\0TAKU\AppData\Roaming\DriverCure Ordner Gelöscht : C:\Users\0TAKU\AppData\Roaming\ParetoLogic Ordner Gelöscht : C:\Users\0TAKU\AppData\Roaming\pdfforge ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}] Schlüssel Gelöscht : HKCU\Software\ParetoLogic Schlüssel Gelöscht : HKCU\Software\Search Settings Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Search Settings Schlüssel Gelöscht : HKLM\Software\Application Updater Schlüssel Gelöscht : HKLM\Software\ParetoLogic Schlüssel Gelöscht : HKLM\Software\Search Settings ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.16537 -\\ Google Chrome v32.0.1700.76 [ Datei : C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\preferences ] [ Datei : C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [3437 octets] - [22/01/2014 11:49:25] AdwCleaner[S0].txt - [2686 octets] - [22/01/2014 11:50:17] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2746 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.0 (01.07.2014:1) OS: Windows 8 x64 Ran by Otaku Attacks on 22-Jan-14 at 11:57:39.98 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\caphyon Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\caphyon ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin" ~~~ Chrome Failed to delete: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 22-Jan-14 at 12:01:09.19 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-01-2014 Ran by Otaku Attacks (administrator) on NOTROY on 22-01-2014 12:04:51 Running from C:\Users\0TAKU\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe () C:\Program Files (x86)\IObit\Advanced SystemCare 7\RealTimeProtector.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (MSI) C:\Program Files (x86)\SCM\SCM.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (SteelSeries ApS) D:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (LOL Replay) D:\Program Files (x86)\LOLReplay\LOLRecorder.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2859344 2012-11-27] (ELAN Microelectronics Corp.) HKLM\...\Run: [SCM] - C:\Program Files (x86)\SCM\SCM.exe [410016 2013-06-28] (MSI) HKLM\...\Run: [XboxStat] - c:\program files\microsoft xbox 360 accessories\xboxstat.exe [825184 2009-10-01] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2014-01-08] (Realtek Semiconductor) HKLM\...\Run: [Radio Manager] - C:\Program Files (x86)\SCM\Radio Manager.exe [406920 2013-06-28] (MSI) HKLM-x32\...\Run: [IObit Malware Fighter] - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1549120 2013-08-16] (IObit) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2013-12-18] (AVAST Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKCU\...\Run: [SteelSeries Engine] - D:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [242688 2013-07-12] (SteelSeries ApS) HKCU\...\Run: [Spybot-S&D Cleaning] - D:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3642312 2013-05-16] (Safer-Networking Ltd.) HKCU\...\Run: [Advanced SystemCare 7] - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2285344 2013-12-18] (IObit) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [250504 2013-03-15] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [205184 2013-03-15] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.search.yahoo.com?type=198484&fr=spigot-yhp-ie HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://msi13.msn.com SearchScopes: HKLM - DefaultScope {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKLM - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKLM-x32 - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKCU - DefaultScope {6D4F2856-4F09-4A46-B4FB-F194BDD97156} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms} SearchScopes: HKCU - {6D4F2856-4F09-4A46-B4FB-F194BDD97156} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms} SearchScopes: HKCU - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit) BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) DPF: HKLM-x32 {6C269571-C6D7-4818-BCA4-32A035E8C884} hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Chrome: ======= CHR DefaultNewTabURL: CHR Extension: (Google Docs) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-22] CHR Extension: (Google Drive) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-22] CHR Extension: (YouTube) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-05-11] CHR Extension: (Google-Suche) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-05-11] CHR Extension: (avast! Ad Blocker) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\fplhdcjmbpfkejbhngmlngaecbjmoimd [2013-05-12] CHR Extension: (avast! Online Security) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-05-12] CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd [2014-01-21] CHR Extension: (Google Wallet) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-21] CHR Extension: (Google Mail) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-22] CHR HKLM-x32\...\Chrome\Extension: [fplhdcjmbpfkejbhngmlngaecbjmoimd] - C:\Program Files\AVAST Software\Avast\AdBlocker\Chrome\avast-adblocker-chrome.crx [2013-05-12] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2013-12-18] CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx [2014-01-21] CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= U2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [881440 2013-12-09] (IObit) U2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-12-18] (AVAST Software) U2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [335168 2013-04-25] (IObit) U2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-11-27] (Intel Corporation) U2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit) U2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.) U2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) U2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) U2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2013-06-28] (Micro-Star International Co., Ltd.) U4 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [142904 2012-05-23] (MSI) U2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) U2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) U2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2013-08-16] () U2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [340480 2013-09-20] (Qualcomm Atheros) U2 SDScannerService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.) U2 SDUpdateService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.) U2 SDWSCService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.) U4 StartMenuService; C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe [75584 2013-09-29] (IObit) U3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) U4 AdvancedSystemCareService6; ==================== Drivers (Whitelisted) ==================== U2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2013-12-18] (AVAST Software) U1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-10-27] (AVAST Software) U0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-10-27] () U1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1034464 2013-12-18] (AVAST Software) U1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422216 2013-12-18] (AVAST Software) U3 aswStm; C:\Windows\system32\drivers\aswStm.sys [79672 2013-12-20] (AVAST Software) U0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2013-12-18] () U1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [75056 2013-02-13] (Qualcomm Atheros, Inc.) U3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) U3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [121728 2012-08-27] (Motorola Solutions, Inc.) U3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [857472 2012-08-29] (Motorola Solutions, Inc.) U3 EagleX64; No ImagePath U4 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit) U3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2013-11-29] (LogMeIn Inc.) U3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [163536 2013-03-20] (Qualcomm Atheros, Inc.) U3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) U3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2014-01-21] (Intel Corporation) U3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3343840 2014-01-21] (Intel Corporation) U3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [14136 2010-01-18] (MSI) U3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34336 2013-03-26] (IObit.com) U3 SAlphamHid; C:\Windows\System32\drivers\SAlpham64.sys [38016 2013-08-11] (SteelSeries Corporation) U0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [17720 2013-05-22] () U3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [32496 2014-01-08] (Synaptics Incorporated) U3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-03-26] (IObit.com) U3 xusb22; C:\Windows\System32\drivers\xusb22.sys [89088 2012-07-26] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-22 12:04 - 2014-01-22 12:04 - 00016566 _____ C:\Users\0TAKU\Downloads\FRST.txt 2014-01-22 12:01 - 2014-01-22 12:01 - 00000960 _____ C:\Users\0TAKU\Desktop\JRT.txt 2014-01-22 11:57 - 2014-01-22 11:57 - 00000000 ____D C:\Windows\ERUNT 2014-01-22 11:51 - 2014-01-22 11:51 - 00000838 _____ C:\Windows\PFRO.log 2014-01-22 11:48 - 2014-01-22 11:50 - 00000000 ____D C:\AdwCleaner 2014-01-22 11:38 - 2014-01-22 11:38 - 00001137 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Malwarebytes 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-22 11:37 - 2014-01-22 11:38 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-22 11:37 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-01-22 10:52 - 2014-01-22 10:52 - 01236282 _____ C:\Users\0TAKU\Downloads\adwcleaner.exe 2014-01-22 10:52 - 2014-01-22 10:52 - 01037068 _____ (Thisisu) C:\Users\0TAKU\Downloads\JRT.exe 2014-01-22 10:51 - 2014-01-22 10:52 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\0TAKU\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-21 13:24 - 2014-01-21 13:24 - 00044851 _____ C:\Users\0TAKU\Downloads\Addition.txt 2014-01-21 13:23 - 2014-01-21 13:23 - 02077184 _____ (Farbar) C:\Users\0TAKU\Downloads\FRST64.exe 2014-01-21 13:23 - 2014-01-21 13:23 - 00000000 ____D C:\FRST 2014-01-21 12:32 - 2014-01-21 12:32 - 00000000 ____D C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8 2014-01-21 12:30 - 2014-01-21 12:31 - 13474267 _____ C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8.zip 2014-01-21 12:05 - 2014-01-22 06:03 - 00032360 _____ C:\Windows\WindowsUpdate.log 2014-01-21 12:00 - 2014-01-21 12:00 - 72159232 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00069632 _____ C:\Windows\system32\config\SAM.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00028672 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00000000 _____ C:\asc_rdflag 2014-01-21 11:53 - 2014-01-21 11:53 - 00000000 ____D C:\Users\0TAKU\Downloads\thx bckup 2014-01-21 11:29 - 2014-01-21 11:29 - 00165236 _____ C:\Users\0TAKU\Downloads\Extras.Txt 2014-01-21 11:28 - 2014-01-21 11:28 - 00154666 _____ C:\Users\0TAKU\Downloads\OTL.Txt 2014-01-21 11:18 - 2014-01-21 11:18 - 00602112 _____ (OldTimer Tools) C:\Users\0TAKU\Downloads\OTL.exe 2014-01-21 10:56 - 2003-06-12 23:25 - 00007062 _____ C:\Windows\SysWOW64\audiopid.vxd 2014-01-21 10:39 - 2014-01-21 10:39 - 00000000 ____D C:\Program Files (x86)\SCM 2014-01-21 10:32 - 2014-01-21 10:27 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-21 10:32 - 2014-01-21 10:27 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-21 10:28 - 2014-01-21 10:28 - 00000000 ____D C:\Users\0TAKU\Downloads\scm_10.013.06287 2014-01-21 10:28 - 2013-12-07 07:37 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2014-01-21 10:28 - 2013-12-07 07:37 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-21 10:28 - 2013-12-07 06:15 - 00562688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-01-21 10:28 - 2013-12-07 06:15 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-21 10:27 - 2014-01-21 10:27 - 02232664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-01-21 10:27 - 2014-01-21 10:27 - 00385614 _____ C:\Windows\system32\ApnDatabase.xml 2014-01-21 10:27 - 2014-01-21 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-01-21 10:19 - 2014-01-21 10:28 - 00000272 _____ C:\Windows\Tasks\ASC7_SkipUac_Otaku Attacks.job 2014-01-21 10:19 - 2014-01-21 10:19 - 00003110 _____ C:\Windows\System32\Tasks\ASC7_PerformanceMonitor 2014-01-21 10:19 - 2014-01-21 10:19 - 00002388 _____ C:\Windows\System32\Tasks\ASC7_SkipUac_Otaku Attacks 2014-01-21 10:18 - 2014-01-22 11:52 - 00000314 _____ C:\Windows\Tasks\Driver Booster Update.job 2014-01-21 10:18 - 2014-01-21 11:10 - 00003232 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2014-01-21 10:13 - 2014-01-21 10:15 - 15309848 _____ (IObit ) C:\Users\0TAKU\Downloads\driver_booster_setup.exe 2014-01-21 10:07 - 2014-01-21 10:07 - 06186128 _____ C:\Windows\system32\Drivers\Netwfw00.dat 2014-01-21 10:07 - 2014-01-21 10:07 - 03343840 _____ (Intel Corporation) C:\Windows\system32\Drivers\NETwew00.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-01-21 10:07 - 2014-01-21 10:07 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-01-21 09:58 - 2014-01-21 09:58 - 00002406 _____ C:\Windows\System32\Tasks\ASC7U_SkipUac_Otaku Attacks 2014-01-21 09:58 - 2014-01-21 09:58 - 00000290 _____ C:\Windows\Tasks\ASC7U_SkipUac_Otaku Attacks.job 2014-01-21 09:49 - 2014-01-21 09:49 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit 2014-01-20 23:09 - 2014-01-20 23:14 - 24842080 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-arm.msu 2014-01-20 22:57 - 2014-01-20 23:00 - 45609763 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-x64.msu 2014-01-20 22:06 - 2014-01-21 09:40 - 00000000 ____D C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424} 2014-01-20 22:06 - 2014-01-20 22:06 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled 2014-01-20 21:43 - 2014-01-22 11:53 - 00000000 ____D C:\ProgramData\ProductData 2014-01-20 21:05 - 2014-01-20 21:06 - 03565421 _____ C:\Users\0TAKU\Downloads\scm_10.013.06287.zip 2014-01-20 20:58 - 2014-01-20 20:58 - 00000000 ____D C:\Users\0TAKU\Downloads\sbar20_21012_04278 2014-01-20 20:53 - 2014-01-20 20:57 - 13301679 _____ C:\Users\0TAKU\Downloads\sbar20_21012_04278.zip 2014-01-15 15:43 - 2014-01-15 15:48 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\TeamViewer 2014-01-15 15:17 - 2014-01-15 15:17 - 00000000 ____H C:\Users\0TAKU\Documents\Default.rdp 2014-01-13 18:00 - 2014-01-13 18:00 - 00017920 ___SH C:\Users\0TAKU\Documents\Thumbs.db 2014-01-11 00:06 - 2014-01-12 00:29 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Awesomium 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\Users\0TAKU\Documents\Elder Scrolls Online 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\ProgramData\Elder Scrolls Online 2014-01-08 20:11 - 2014-01-08 20:11 - 00000000 __SHD C:\ProgramData\DSS 2014-01-08 20:08 - 2014-01-08 20:08 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2014-01-08 13:32 - 2014-01-08 13:32 - 00000000 ____D C:\Windows\amlog 2014-01-08 13:21 - 2014-01-08 14:21 - 00001318 _____ C:\Windows\ampa.ini 2014-01-08 13:17 - 2014-01-08 13:17 - 00001024 ____H C:\AMTAG.BIN 2014-01-08 13:16 - 2014-01-08 13:17 - 08027680 _____ (AOMEI Technology Co., Ltd. ) C:\Users\0TAKU\Downloads\PAssist_Std_5.5.exe 2014-01-08 11:36 - 2014-01-08 11:36 - 00001088 _____ C:\Users\0TAKU\Desktop\The Elder Scrolls Online Beta.lnk 2014-01-08 11:31 - 2014-01-08 11:35 - 55903624 _____ ( ) C:\Users\0TAKU\Downloads\Install_ESO_Beta.exe 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____D C:\Program Files\Synaptics 2014-01-08 10:14 - 2014-01-08 10:14 - 03760344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-08 10:14 - 2014-01-08 10:14 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02588888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-08 10:14 - 2014-01-08 10:14 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01013504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00693329 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-08 10:14 - 2014-01-08 10:14 - 00628504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00618200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00563992 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00397080 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00154840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00032496 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 09888912 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsPStorIcon.dll 2014-01-08 10:13 - 2014-01-08 10:13 - 00347280 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsPStor.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 00064624 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2014-01-07 15:23 - 2014-01-22 11:56 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn Hamachi 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\ProgramData\LogMeIn 2014-01-07 15:10 - 2014-01-07 15:10 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2014-01-04 04:17 - 2014-01-04 04:17 - 71483392 _____ C:\Windows\system32\config\SOFTWARE.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00069632 _____ C:\Windows\system32\config\SAM.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00028672 _____ C:\Windows\system32\config\SECURITY.iobit 2014-01-02 17:19 - 2014-01-05 17:18 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Valdis_Story_AC 2014-01-02 16:08 - 2014-01-02 16:08 - 00000000 ____D C:\Users\0TAKU\Documents\VVVVVV 2013-12-25 23:06 - 2013-12-28 00:10 - 00000000 ____D C:\Users\0TAKU\Documents\LOLReplay 2013-12-25 13:00 - 2013-12-25 13:00 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Unity 2013-12-25 12:51 - 2013-12-25 12:51 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Unity ==================== One Month Modified Files and Folders ======= 2014-01-22 12:04 - 2014-01-22 12:04 - 00016566 _____ C:\Users\0TAKU\Downloads\FRST.txt 2014-01-22 12:03 - 2013-05-11 17:35 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-22 12:01 - 2014-01-22 12:01 - 00000960 _____ C:\Users\0TAKU\Desktop\JRT.txt 2014-01-22 12:00 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\sru 2014-01-22 11:57 - 2014-01-22 11:57 - 00000000 ____D C:\Windows\ERUNT 2014-01-22 11:56 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn Hamachi 2014-01-22 11:53 - 2014-01-20 21:43 - 00000000 ____D C:\ProgramData\ProductData 2014-01-22 11:52 - 2014-01-21 10:18 - 00000314 _____ C:\Windows\Tasks\Driver Booster Update.job 2014-01-22 11:52 - 2013-05-11 17:35 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-22 11:51 - 2014-01-22 11:51 - 00000838 _____ C:\Windows\PFRO.log 2014-01-22 11:51 - 2012-07-26 08:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-22 11:50 - 2014-01-22 11:48 - 00000000 ____D C:\AdwCleaner 2014-01-22 11:48 - 2013-05-11 17:48 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Winamp 2014-01-22 11:46 - 2013-05-11 23:17 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Skype 2014-01-22 11:38 - 2014-01-22 11:38 - 00001137 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Malwarebytes 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-22 11:38 - 2014-01-22 11:37 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-22 10:52 - 2014-01-22 10:52 - 01236282 _____ C:\Users\0TAKU\Downloads\adwcleaner.exe 2014-01-22 10:52 - 2014-01-22 10:52 - 01037068 _____ (Thisisu) C:\Users\0TAKU\Downloads\JRT.exe 2014-01-22 10:52 - 2014-01-22 10:51 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\0TAKU\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-22 06:03 - 2014-01-21 12:05 - 00032360 _____ C:\Windows\WindowsUpdate.log 2014-01-22 05:58 - 2013-05-25 18:37 - 00000000 ____D C:\Windows\Minidump 2014-01-21 21:06 - 2013-05-12 20:36 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\.minecraft 2014-01-21 13:59 - 2013-05-11 13:59 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3692658341-3007664735-862192700-1002 2014-01-21 13:24 - 2014-01-21 13:24 - 00044851 _____ C:\Users\0TAKU\Downloads\Addition.txt 2014-01-21 13:23 - 2014-01-21 13:23 - 02077184 _____ (Farbar) C:\Users\0TAKU\Downloads\FRST64.exe 2014-01-21 13:23 - 2014-01-21 13:23 - 00000000 ____D C:\FRST 2014-01-21 12:32 - 2014-01-21 12:32 - 00000000 ____D C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8 2014-01-21 12:31 - 2014-01-21 12:30 - 13474267 _____ C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8.zip 2014-01-21 12:00 - 2014-01-21 12:00 - 72159232 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00069632 _____ C:\Windows\system32\config\SAM.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00028672 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00000000 _____ C:\asc_rdflag 2014-01-21 12:00 - 2013-05-11 13:44 - 00000000 ____D C:\Users\0TAKU 2014-01-21 11:53 - 2014-01-21 11:53 - 00000000 ____D C:\Users\0TAKU\Downloads\thx bckup 2014-01-21 11:37 - 2012-11-30 06:59 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-21 11:29 - 2014-01-21 11:29 - 00165236 _____ C:\Users\0TAKU\Downloads\Extras.Txt 2014-01-21 11:28 - 2014-01-21 11:28 - 00154666 _____ C:\Users\0TAKU\Downloads\OTL.Txt 2014-01-21 11:18 - 2014-01-21 11:18 - 00602112 _____ (OldTimer Tools) C:\Users\0TAKU\Downloads\OTL.exe 2014-01-21 11:10 - 2014-01-21 10:18 - 00003232 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2014-01-21 10:42 - 2013-08-14 15:06 - 00000000 ____D C:\Windows\system32\MRT 2014-01-21 10:40 - 2013-05-11 15:47 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-21 10:40 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\WinStore 2014-01-21 10:39 - 2014-01-21 10:39 - 00000000 ____D C:\Program Files (x86)\SCM 2014-01-21 10:28 - 2014-01-21 10:28 - 00000000 ____D C:\Users\0TAKU\Downloads\scm_10.013.06287 2014-01-21 10:28 - 2014-01-21 10:19 - 00000272 _____ C:\Windows\Tasks\ASC7_SkipUac_Otaku Attacks.job 2014-01-21 10:27 - 2014-01-21 10:32 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-21 10:27 - 2014-01-21 10:32 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-21 10:27 - 2014-01-21 10:27 - 02232664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-01-21 10:27 - 2014-01-21 10:27 - 00385614 _____ C:\Windows\system32\ApnDatabase.xml 2014-01-21 10:27 - 2014-01-21 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-01-21 10:19 - 2014-01-21 10:19 - 00003110 _____ C:\Windows\System32\Tasks\ASC7_PerformanceMonitor 2014-01-21 10:19 - 2014-01-21 10:19 - 00002388 _____ C:\Windows\System32\Tasks\ASC7_SkipUac_Otaku Attacks 2014-01-21 10:19 - 2013-05-12 10:13 - 00000000 ____D C:\Program Files (x86)\IObit 2014-01-21 10:15 - 2014-01-21 10:13 - 15309848 _____ (IObit ) C:\Users\0TAKU\Downloads\driver_booster_setup.exe 2014-01-21 10:08 - 2012-07-26 06:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2014-01-21 10:07 - 2014-01-21 10:07 - 06186128 _____ C:\Windows\system32\Drivers\Netwfw00.dat 2014-01-21 10:07 - 2014-01-21 10:07 - 03343840 _____ (Intel Corporation) C:\Windows\system32\Drivers\NETwew00.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-01-21 10:07 - 2014-01-21 10:07 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-01-21 09:58 - 2014-01-21 09:58 - 00002406 _____ C:\Windows\System32\Tasks\ASC7U_SkipUac_Otaku Attacks 2014-01-21 09:58 - 2014-01-21 09:58 - 00000290 _____ C:\Windows\Tasks\ASC7U_SkipUac_Otaku Attacks.job 2014-01-21 09:50 - 2013-12-05 02:17 - 00001976 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-21 09:49 - 2014-01-21 09:49 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-21 09:43 - 2013-11-07 08:48 - 00000000 ____D C:\Users\Gast 2014-01-21 09:43 - 2013-11-04 16:49 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo 2014-01-21 09:43 - 2013-10-09 18:27 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Battle.net 2014-01-21 09:43 - 2012-07-26 09:12 - 00000000 __RHD C:\Users\Public\Libraries 2014-01-21 09:41 - 2013-05-12 10:14 - 00000000 ____D C:\ProgramData\IObit 2014-01-21 09:41 - 2013-05-12 10:13 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\IObit 2014-01-21 09:41 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2014-01-21 09:41 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\Macromed 2014-01-21 09:41 - 2012-07-26 06:38 - 00000000 ____D C:\Windows\system32\Sysprep 2014-01-21 09:40 - 2014-01-20 22:06 - 00000000 ____D C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424} 2014-01-21 09:39 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\registration 2014-01-21 09:36 - 2013-05-11 17:35 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Google 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit 2014-01-20 23:14 - 2014-01-20 23:09 - 24842080 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-arm.msu 2014-01-20 23:00 - 2014-01-20 22:57 - 45609763 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-x64.msu 2014-01-20 22:32 - 2012-11-22 07:59 - 00000000 ____D C:\Windows\Panther 2014-01-20 22:15 - 2013-10-09 18:27 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Battle.net 2014-01-20 22:06 - 2014-01-20 22:06 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled 2014-01-20 21:06 - 2014-01-20 21:05 - 03565421 _____ C:\Users\0TAKU\Downloads\scm_10.013.06287.zip 2014-01-20 20:58 - 2014-01-20 20:58 - 00000000 ____D C:\Users\0TAKU\Downloads\sbar20_21012_04278 2014-01-20 20:57 - 2014-01-20 20:53 - 13301679 _____ C:\Users\0TAKU\Downloads\sbar20_21012_04278.zip 2014-01-19 21:29 - 2013-11-14 16:25 - 00000015 _____ C:\Users\0TAKU\AppData\Roaming\A.c199807a9ba5ab306db172f530f9b9e01.resizer_settings 2014-01-15 15:48 - 2014-01-15 15:43 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\TeamViewer 2014-01-15 15:17 - 2014-01-15 15:17 - 00000000 ____H C:\Users\0TAKU\Documents\Default.rdp 2014-01-13 18:00 - 2014-01-13 18:00 - 00017920 ___SH C:\Users\0TAKU\Documents\Thumbs.db 2014-01-13 13:53 - 2013-05-14 13:19 - 00485714 _____ C:\Windows\system32\perfh011.dat 2014-01-13 13:53 - 2013-05-14 13:19 - 00133088 _____ C:\Windows\system32\perfc011.dat 2014-01-13 13:53 - 2012-11-22 09:13 - 00754172 _____ C:\Windows\system32\perfh007.dat 2014-01-13 13:53 - 2012-11-22 09:13 - 00156362 _____ C:\Windows\system32\perfc007.dat 2014-01-13 13:53 - 2012-07-26 08:28 - 02367698 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-12 20:17 - 2013-05-11 18:50 - 00000000 ____D C:\Users\0TAKU\Documents\DragonNest 2014-01-12 00:29 - 2014-01-11 00:06 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Awesomium 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\Users\0TAKU\Documents\Elder Scrolls Online 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\ProgramData\Elder Scrolls Online 2014-01-10 12:15 - 2013-05-12 19:50 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\vlc 2014-01-09 17:59 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\NDF 2014-01-09 17:31 - 2013-08-31 14:06 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Game Dev Tycoon - Steam 2014-01-08 20:11 - 2014-01-08 20:11 - 00000000 __SHD C:\ProgramData\DSS 2014-01-08 20:11 - 2013-08-31 15:33 - 00000000 ____D C:\Users\0TAKU\Documents\EA Games 2014-01-08 20:11 - 2013-07-06 12:53 - 00000000 ____D C:\ProgramData\Electronic Arts 2014-01-08 20:08 - 2014-01-08 20:08 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2014-01-08 14:21 - 2014-01-08 13:21 - 00001318 _____ C:\Windows\ampa.ini 2014-01-08 13:32 - 2014-01-08 13:32 - 00000000 ____D C:\Windows\amlog 2014-01-08 13:17 - 2014-01-08 13:17 - 00001024 ____H C:\AMTAG.BIN 2014-01-08 13:17 - 2014-01-08 13:16 - 08027680 _____ (AOMEI Technology Co., Ltd. ) C:\Users\0TAKU\Downloads\PAssist_Std_5.5.exe 2014-01-08 11:36 - 2014-01-08 11:36 - 00001088 _____ C:\Users\0TAKU\Desktop\The Elder Scrolls Online Beta.lnk 2014-01-08 11:35 - 2014-01-08 11:31 - 55903624 _____ ( ) C:\Users\0TAKU\Downloads\Install_ESO_Beta.exe 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____D C:\Program Files\Synaptics 2014-01-08 10:14 - 2014-01-08 10:14 - 03760344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-08 10:14 - 2014-01-08 10:14 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02588888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-08 10:14 - 2014-01-08 10:14 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01013504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00693329 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-08 10:14 - 2014-01-08 10:14 - 00628504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00618200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00563992 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00397080 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00154840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00032496 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys 2014-01-08 10:14 - 2012-11-30 07:08 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2014-01-08 10:13 - 2014-01-08 10:13 - 09888912 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsPStorIcon.dll 2014-01-08 10:13 - 2014-01-08 10:13 - 00347280 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsPStor.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 00064624 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2014-01-07 22:35 - 2013-11-27 18:29 - 00000000 ____D C:\Users\0TAKU\Documents\LoL Guides and stuff 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\ProgramData\LogMeIn 2014-01-07 15:10 - 2014-01-07 15:10 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2014-01-05 17:18 - 2014-01-02 17:19 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Valdis_Story_AC 2014-01-04 14:11 - 2013-05-14 05:36 - 00000000 ____D C:\Users\0TAKU\Documents\my games 2014-01-04 04:17 - 2014-01-04 04:17 - 71483392 _____ C:\Windows\system32\config\SOFTWARE.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00069632 _____ C:\Windows\system32\config\SAM.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00028672 _____ C:\Windows\system32\config\SECURITY.iobit 2014-01-02 16:08 - 2014-01-02 16:08 - 00000000 ____D C:\Users\0TAKU\Documents\VVVVVV 2013-12-30 15:27 - 2013-11-08 22:31 - 00018944 _____ C:\Users\0TAKU\Documents\League of legends pool.xls 2013-12-28 13:04 - 2013-07-03 17:18 - 00000000 ____D C:\Users\0TAKU\Desktop\Games 2013-12-28 00:10 - 2013-12-25 23:06 - 00000000 ____D C:\Users\0TAKU\Documents\LOLReplay 2013-12-25 13:00 - 2013-12-25 13:00 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Unity 2013-12-25 12:51 - 2013-12-25 12:51 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Unity 2013-12-24 10:26 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\AUInstallAgent Some content of TEMP: ==================== C:\Users\0TAKU\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-17 13:23 ==================== End Of Log ============================ |
22.01.2014, 22:31 | #6 |
/// the machine /// TB-Ausbilder | RUNDLL Fehler nach SystemstartESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ --> RUNDLL Fehler nach Systemstart |
23.01.2014, 14:51 | #7 |
| RUNDLL Fehler nach Systemstart Hallo! Hier der ESET Log Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=2b525b1d88393a438a131a6736d5b34a # engine=16757 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-01-22 11:13:56 # local_time=2014-01-23 12:13:56 (+0100, Mitteleuropäische Zeit) # country="United States" # lang=1033 # osver=6.2.9200 NT # compatibility_mode=774 16777213 85 77 138167 3084209 0 0 # compatibility_mode=5893 16776574 100 94 13943021 49938547 0 0 # scanned=118992 # found=0 # cleaned=0 # scan_time=3145 ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=2b525b1d88393a438a131a6736d5b34a # engine=16763 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-01-23 01:30:10 # local_time=2014-01-23 02:30:10 (+0100, Mitteleuropäische Zeit) # country="United States" # lang=1033 # osver=6.2.9200 NT # compatibility_mode=774 16777213 85 77 193141 3135583 0 0 # compatibility_mode=5893 16776574 100 94 13994395 49989921 0 0 # scanned=280647 # found=0 # cleaned=0 # scan_time=8543 Code:
ATTFilter Results of screen317's Security Check version 0.99.79 x64 (UAC is enabled) Internet Explorer 10 Out of date! ``````````````Antivirus/Firewall Check:`````````````` avast! Antivirus Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Spybot - Search & Destroy Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 25 Java version out of Date! Adobe Reader XI Mozilla Thunderbird (17.0.5) Google Chrome 31.0.1650.63 Google Chrome 32.0.1700.76 ````````Process Check: objlist.exe by Laurent```````` Spybot Teatimer.exe is disabled! IObit IObit Malware Fighter IMFsrv.exe Malwarebytes' Anti-Malware mbamscheduler.exe AVAST Software Avast AvastSvc.exe AVAST Software Avast AvastUI.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-01-2014 Ran by Otaku Attacks (administrator) on NOTROY on 23-01-2014 14:40:29 Running from C:\Users\0TAKU\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (MSI) C:\Program Files (x86)\SCM\SCM.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (SteelSeries ApS) D:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (LOL Replay) D:\Program Files (x86)\LOLReplay\LOLRecorder.exe (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (CoBoltDK) D:\Useless Crap\LoLPing.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2859344 2012-11-27] (ELAN Microelectronics Corp.) HKLM\...\Run: [SCM] - C:\Program Files (x86)\SCM\SCM.exe [410016 2013-06-28] (MSI) HKLM\...\Run: [XboxStat] - c:\program files\microsoft xbox 360 accessories\xboxstat.exe [825184 2009-10-01] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2014-01-08] (Realtek Semiconductor) HKLM\...\Run: [Radio Manager] - C:\Program Files (x86)\SCM\Radio Manager.exe [406920 2013-06-28] (MSI) HKLM-x32\...\Run: [IObit Malware Fighter] - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1549120 2013-08-16] (IObit) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2013-12-18] (AVAST Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKCU\...\Run: [SteelSeries Engine] - D:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [242688 2013-07-12] (SteelSeries ApS) HKCU\...\Run: [Spybot-S&D Cleaning] - D:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3642312 2013-05-16] (Safer-Networking Ltd.) HKCU\...\Run: [Advanced SystemCare 7] - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2285344 2013-12-18] (IObit) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [250504 2013-03-15] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [205184 2013-03-15] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.search.yahoo.com?type=198484&fr=spigot-yhp-ie HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://msi13.msn.com SearchScopes: HKLM - DefaultScope {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKLM - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKLM-x32 - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKCU - DefaultScope {6D4F2856-4F09-4A46-B4FB-F194BDD97156} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms} SearchScopes: HKCU - {6D4F2856-4F09-4A46-B4FB-F194BDD97156} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms} SearchScopes: HKCU - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit) BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) DPF: HKLM-x32 {6C269571-C6D7-4818-BCA4-32A035E8C884} hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Chrome: ======= CHR DefaultNewTabURL: CHR Extension: (Google Docs) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-22] CHR Extension: (Google Drive) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-22] CHR Extension: (YouTube Options) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdokagampppgbnjfdlkfpphniapiiifn [2014-01-22] CHR Extension: (Center new YouTube layout) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkgfcdpklghkffldenccpbdhhofcbbgo [2014-01-22] CHR Extension: (YouTube) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-05-11] CHR Extension: (Asuka x Rias Gremory) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdnnbapaoldhkfbbfcdjehpgpffoofom [2014-01-22] CHR Extension: (Adblock Plus) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-01-22] CHR Extension: (Google-Suche) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-05-11] CHR Extension: (Silver Bird) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\encaiiljifbdbjlphpgpiimidegddhic [2014-01-22] CHR Extension: (Stylish) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2014-01-22] CHR Extension: (avast! Ad Blocker) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\fplhdcjmbpfkejbhngmlngaecbjmoimd [2013-05-12] CHR Extension: (AdBlock) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-01-22] CHR Extension: (avast! Online Security) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-05-12] CHR Extension: (League of Legends Events) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfnfkjennojjkajjmghdgkibohcnefdk [2014-01-22] CHR Extension: (Center'd - Center the new YT) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkgjcknlnbcciacdklmnafmfcfjnpcja [2014-01-22] CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd [2014-01-21] CHR Extension: (Google Wallet) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-21] CHR Extension: (Google Mail) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-22] CHR HKLM-x32\...\Chrome\Extension: [fplhdcjmbpfkejbhngmlngaecbjmoimd] - C:\Program Files\AVAST Software\Avast\AdBlocker\Chrome\avast-adblocker-chrome.crx [2013-05-12] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2013-12-18] CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx [2014-01-21] CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= U2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [881440 2013-12-09] (IObit) U2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-12-18] (AVAST Software) U2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [335168 2013-04-25] (IObit) U2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-11-27] (Intel Corporation) U2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit) U2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.) U2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) U2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) U2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2013-06-28] (Micro-Star International Co., Ltd.) U4 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [142904 2012-05-23] (MSI) U2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) U2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) U2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2013-08-16] () U2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [340480 2013-09-20] (Qualcomm Atheros) U2 SDScannerService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.) U2 SDUpdateService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.) U2 SDWSCService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.) U4 StartMenuService; C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe [75584 2013-09-29] (IObit) U3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) U4 AdvancedSystemCareService6; ==================== Drivers (Whitelisted) ==================== U2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2013-12-18] (AVAST Software) U1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-10-27] (AVAST Software) U0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-10-27] () U1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1034464 2013-12-18] (AVAST Software) U1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422216 2013-12-18] (AVAST Software) U3 aswStm; C:\Windows\system32\drivers\aswStm.sys [79672 2013-12-20] (AVAST Software) U0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2013-12-18] () U1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [75056 2013-02-13] (Qualcomm Atheros, Inc.) U3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) U3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [121728 2012-08-27] (Motorola Solutions, Inc.) U3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [857472 2012-08-29] (Motorola Solutions, Inc.) U3 EagleX64; No ImagePath U4 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit) U3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2013-11-29] (LogMeIn Inc.) U3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [163536 2013-03-20] (Qualcomm Atheros, Inc.) U3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) U3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2014-01-21] (Intel Corporation) U3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3343840 2014-01-21] (Intel Corporation) U3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [14136 2010-01-18] (MSI) U3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34336 2013-03-26] (IObit.com) U3 SAlphamHid; C:\Windows\System32\drivers\SAlpham64.sys [38016 2013-08-11] (SteelSeries Corporation) U0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [17720 2013-05-22] () U3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [32496 2014-01-08] (Synaptics Incorporated) U3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-03-26] (IObit.com) U3 xusb22; C:\Windows\System32\drivers\xusb22.sys [89088 2012-07-26] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-23 14:40 - 2014-01-23 14:40 - 00018682 _____ C:\Users\0TAKU\Downloads\FRST.txt 2014-01-23 14:40 - 2014-01-23 14:40 - 00001083 _____ C:\Users\0TAKU\Desktop\checkup.txt 2014-01-23 14:38 - 2014-01-23 14:38 - 00987425 _____ C:\Users\0TAKU\Downloads\SecurityCheck.exe 2014-01-22 23:15 - 2014-01-22 23:15 - 02347384 _____ (ESET) C:\Users\0TAKU\Downloads\esetsmartinstaller_enu.exe 2014-01-22 12:01 - 2014-01-22 12:01 - 00000960 _____ C:\Users\0TAKU\Desktop\JRT.txt 2014-01-22 11:57 - 2014-01-22 11:57 - 00000000 ____D C:\Windows\ERUNT 2014-01-22 11:48 - 2014-01-22 11:50 - 00000000 ____D C:\AdwCleaner 2014-01-22 11:38 - 2014-01-22 11:38 - 00001137 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Malwarebytes 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-22 11:37 - 2014-01-22 11:38 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-22 11:37 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-01-22 10:52 - 2014-01-22 10:52 - 01236282 _____ C:\Users\0TAKU\Downloads\adwcleaner.exe 2014-01-22 10:52 - 2014-01-22 10:52 - 01037068 _____ (Thisisu) C:\Users\0TAKU\Downloads\JRT.exe 2014-01-22 10:51 - 2014-01-22 10:52 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\0TAKU\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-21 13:24 - 2014-01-21 13:24 - 00044851 _____ C:\Users\0TAKU\Downloads\Addition.txt 2014-01-21 13:23 - 2014-01-21 13:23 - 02077184 _____ (Farbar) C:\Users\0TAKU\Downloads\FRST64.exe 2014-01-21 13:23 - 2014-01-21 13:23 - 00000000 ____D C:\FRST 2014-01-21 12:32 - 2014-01-21 12:32 - 00000000 ____D C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8 2014-01-21 12:30 - 2014-01-21 12:31 - 13474267 _____ C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8.zip 2014-01-21 12:05 - 2014-01-23 12:20 - 00072813 _____ C:\Windows\WindowsUpdate.log 2014-01-21 12:00 - 2014-01-21 12:00 - 72159232 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00069632 _____ C:\Windows\system32\config\SAM.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00028672 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00000000 _____ C:\asc_rdflag 2014-01-21 11:53 - 2014-01-21 11:53 - 00000000 ____D C:\Users\0TAKU\Downloads\thx bckup 2014-01-21 11:29 - 2014-01-21 11:29 - 00165236 _____ C:\Users\0TAKU\Downloads\Extras.Txt 2014-01-21 11:28 - 2014-01-21 11:28 - 00154666 _____ C:\Users\0TAKU\Downloads\OTL.Txt 2014-01-21 11:18 - 2014-01-21 11:18 - 00602112 _____ (OldTimer Tools) C:\Users\0TAKU\Downloads\OTL.exe 2014-01-21 10:56 - 2003-06-12 23:25 - 00007062 _____ C:\Windows\SysWOW64\audiopid.vxd 2014-01-21 10:39 - 2014-01-21 10:39 - 00000000 ____D C:\Program Files (x86)\SCM 2014-01-21 10:32 - 2014-01-21 10:27 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-21 10:32 - 2014-01-21 10:27 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-21 10:28 - 2014-01-21 10:28 - 00000000 ____D C:\Users\0TAKU\Downloads\scm_10.013.06287 2014-01-21 10:28 - 2013-12-07 07:37 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2014-01-21 10:28 - 2013-12-07 07:37 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-21 10:28 - 2013-12-07 06:15 - 00562688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-01-21 10:28 - 2013-12-07 06:15 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-21 10:27 - 2014-01-21 10:27 - 02232664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-01-21 10:27 - 2014-01-21 10:27 - 00385614 _____ C:\Windows\system32\ApnDatabase.xml 2014-01-21 10:27 - 2014-01-21 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-01-21 10:19 - 2014-01-21 10:28 - 00000272 _____ C:\Windows\Tasks\ASC7_SkipUac_Otaku Attacks.job 2014-01-21 10:19 - 2014-01-21 10:19 - 00003110 _____ C:\Windows\System32\Tasks\ASC7_PerformanceMonitor 2014-01-21 10:19 - 2014-01-21 10:19 - 00002388 _____ C:\Windows\System32\Tasks\ASC7_SkipUac_Otaku Attacks 2014-01-21 10:18 - 2014-01-23 12:01 - 00000314 _____ C:\Windows\Tasks\Driver Booster Update.job 2014-01-21 10:18 - 2014-01-21 11:10 - 00003232 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2014-01-21 10:13 - 2014-01-21 10:15 - 15309848 _____ (IObit ) C:\Users\0TAKU\Downloads\driver_booster_setup.exe 2014-01-21 10:07 - 2014-01-21 10:07 - 06186128 _____ C:\Windows\system32\Drivers\Netwfw00.dat 2014-01-21 10:07 - 2014-01-21 10:07 - 03343840 _____ (Intel Corporation) C:\Windows\system32\Drivers\NETwew00.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-01-21 10:07 - 2014-01-21 10:07 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-01-21 09:58 - 2014-01-21 09:58 - 00002406 _____ C:\Windows\System32\Tasks\ASC7U_SkipUac_Otaku Attacks 2014-01-21 09:58 - 2014-01-21 09:58 - 00000290 _____ C:\Windows\Tasks\ASC7U_SkipUac_Otaku Attacks.job 2014-01-21 09:49 - 2014-01-21 09:49 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit 2014-01-20 23:09 - 2014-01-20 23:14 - 24842080 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-arm.msu 2014-01-20 22:57 - 2014-01-20 23:00 - 45609763 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-x64.msu 2014-01-20 22:06 - 2014-01-21 09:40 - 00000000 ____D C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424} 2014-01-20 22:06 - 2014-01-20 22:06 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled 2014-01-20 21:43 - 2014-01-22 11:53 - 00000000 ____D C:\ProgramData\ProductData 2014-01-20 21:05 - 2014-01-20 21:06 - 03565421 _____ C:\Users\0TAKU\Downloads\scm_10.013.06287.zip 2014-01-20 20:58 - 2014-01-20 20:58 - 00000000 ____D C:\Users\0TAKU\Downloads\sbar20_21012_04278 2014-01-20 20:53 - 2014-01-20 20:57 - 13301679 _____ C:\Users\0TAKU\Downloads\sbar20_21012_04278.zip 2014-01-15 15:43 - 2014-01-15 15:48 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\TeamViewer 2014-01-15 15:17 - 2014-01-15 15:17 - 00000000 ____H C:\Users\0TAKU\Documents\Default.rdp 2014-01-13 18:00 - 2014-01-13 18:00 - 00017920 ___SH C:\Users\0TAKU\Documents\Thumbs.db 2014-01-11 00:06 - 2014-01-12 00:29 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Awesomium 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\Users\0TAKU\Documents\Elder Scrolls Online 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\ProgramData\Elder Scrolls Online 2014-01-08 20:11 - 2014-01-08 20:11 - 00000000 __SHD C:\ProgramData\DSS 2014-01-08 20:08 - 2014-01-08 20:08 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2014-01-08 13:32 - 2014-01-08 13:32 - 00000000 ____D C:\Windows\amlog 2014-01-08 13:21 - 2014-01-08 14:21 - 00001318 _____ C:\Windows\ampa.ini 2014-01-08 13:17 - 2014-01-08 13:17 - 00001024 ____H C:\AMTAG.BIN 2014-01-08 13:16 - 2014-01-08 13:17 - 08027680 _____ (AOMEI Technology Co., Ltd. ) C:\Users\0TAKU\Downloads\PAssist_Std_5.5.exe 2014-01-08 11:36 - 2014-01-08 11:36 - 00001088 _____ C:\Users\0TAKU\Desktop\The Elder Scrolls Online Beta.lnk 2014-01-08 11:31 - 2014-01-08 11:35 - 55903624 _____ ( ) C:\Users\0TAKU\Downloads\Install_ESO_Beta.exe 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____D C:\Program Files\Synaptics 2014-01-08 10:14 - 2014-01-08 10:14 - 03760344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-08 10:14 - 2014-01-08 10:14 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02588888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-08 10:14 - 2014-01-08 10:14 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01013504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00693329 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-08 10:14 - 2014-01-08 10:14 - 00628504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00618200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00563992 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00397080 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00154840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00032496 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 09888912 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsPStorIcon.dll 2014-01-08 10:13 - 2014-01-08 10:13 - 00347280 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsPStor.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 00064624 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2014-01-07 15:23 - 2014-01-22 18:18 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn Hamachi 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\ProgramData\LogMeIn 2014-01-07 15:10 - 2014-01-07 15:10 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2014-01-04 04:17 - 2014-01-04 04:17 - 71483392 _____ C:\Windows\system32\config\SOFTWARE.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00069632 _____ C:\Windows\system32\config\SAM.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00028672 _____ C:\Windows\system32\config\SECURITY.iobit 2014-01-02 17:19 - 2014-01-05 17:18 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Valdis_Story_AC 2014-01-02 16:08 - 2014-01-02 16:08 - 00000000 ____D C:\Users\0TAKU\Documents\VVVVVV 2013-12-25 23:06 - 2013-12-28 00:10 - 00000000 ____D C:\Users\0TAKU\Documents\LOLReplay 2013-12-25 13:00 - 2013-12-25 13:00 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Unity 2013-12-25 12:51 - 2013-12-25 12:51 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Unity ==================== One Month Modified Files and Folders ======= 2014-01-23 14:40 - 2014-01-23 14:40 - 00018682 _____ C:\Users\0TAKU\Downloads\FRST.txt 2014-01-23 14:40 - 2014-01-23 14:40 - 00001083 _____ C:\Users\0TAKU\Desktop\checkup.txt 2014-01-23 14:39 - 2013-05-11 23:17 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Skype 2014-01-23 14:38 - 2014-01-23 14:38 - 00987425 _____ C:\Users\0TAKU\Downloads\SecurityCheck.exe 2014-01-23 14:10 - 2013-05-11 17:48 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Winamp 2014-01-23 14:03 - 2013-05-11 17:35 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-23 14:00 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\sru 2014-01-23 12:20 - 2014-01-21 12:05 - 00072813 _____ C:\Windows\WindowsUpdate.log 2014-01-23 12:01 - 2014-01-21 10:18 - 00000314 _____ C:\Windows\Tasks\Driver Booster Update.job 2014-01-23 12:01 - 2013-05-11 17:35 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-22 23:20 - 2013-05-14 13:19 - 00485714 _____ C:\Windows\system32\perfh011.dat 2014-01-22 23:20 - 2013-05-14 13:19 - 00133088 _____ C:\Windows\system32\perfc011.dat 2014-01-22 23:20 - 2012-11-22 09:13 - 00754172 _____ C:\Windows\system32\perfh007.dat 2014-01-22 23:20 - 2012-11-22 09:13 - 00156362 _____ C:\Windows\system32\perfc007.dat 2014-01-22 23:20 - 2012-07-26 08:28 - 02367698 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-22 23:15 - 2014-01-22 23:15 - 02347384 _____ (ESET) C:\Users\0TAKU\Downloads\esetsmartinstaller_enu.exe 2014-01-22 18:18 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn Hamachi 2014-01-22 12:01 - 2014-01-22 12:01 - 00000960 _____ C:\Users\0TAKU\Desktop\JRT.txt 2014-01-22 11:57 - 2014-01-22 11:57 - 00000000 ____D C:\Windows\ERUNT 2014-01-22 11:53 - 2014-01-20 21:43 - 00000000 ____D C:\ProgramData\ProductData 2014-01-22 11:51 - 2012-07-26 08:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-22 11:50 - 2014-01-22 11:48 - 00000000 ____D C:\AdwCleaner 2014-01-22 11:38 - 2014-01-22 11:38 - 00001137 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Malwarebytes 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-22 11:38 - 2014-01-22 11:37 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-22 10:52 - 2014-01-22 10:52 - 01236282 _____ C:\Users\0TAKU\Downloads\adwcleaner.exe 2014-01-22 10:52 - 2014-01-22 10:52 - 01037068 _____ (Thisisu) C:\Users\0TAKU\Downloads\JRT.exe 2014-01-22 10:52 - 2014-01-22 10:51 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\0TAKU\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-22 05:58 - 2013-05-25 18:37 - 00000000 ____D C:\Windows\Minidump 2014-01-21 21:06 - 2013-05-12 20:36 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\.minecraft 2014-01-21 13:59 - 2013-05-11 13:59 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3692658341-3007664735-862192700-1002 2014-01-21 13:24 - 2014-01-21 13:24 - 00044851 _____ C:\Users\0TAKU\Downloads\Addition.txt 2014-01-21 13:23 - 2014-01-21 13:23 - 02077184 _____ (Farbar) C:\Users\0TAKU\Downloads\FRST64.exe 2014-01-21 13:23 - 2014-01-21 13:23 - 00000000 ____D C:\FRST 2014-01-21 12:32 - 2014-01-21 12:32 - 00000000 ____D C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8 2014-01-21 12:31 - 2014-01-21 12:30 - 13474267 _____ C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8.zip 2014-01-21 12:00 - 2014-01-21 12:00 - 72159232 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00069632 _____ C:\Windows\system32\config\SAM.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00028672 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-01-21 12:00 - 2014-01-21 12:00 - 00000000 _____ C:\asc_rdflag 2014-01-21 12:00 - 2013-05-11 13:44 - 00000000 ____D C:\Users\0TAKU 2014-01-21 11:53 - 2014-01-21 11:53 - 00000000 ____D C:\Users\0TAKU\Downloads\thx bckup 2014-01-21 11:37 - 2012-11-30 06:59 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-21 11:29 - 2014-01-21 11:29 - 00165236 _____ C:\Users\0TAKU\Downloads\Extras.Txt 2014-01-21 11:28 - 2014-01-21 11:28 - 00154666 _____ C:\Users\0TAKU\Downloads\OTL.Txt 2014-01-21 11:18 - 2014-01-21 11:18 - 00602112 _____ (OldTimer Tools) C:\Users\0TAKU\Downloads\OTL.exe 2014-01-21 11:10 - 2014-01-21 10:18 - 00003232 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2014-01-21 10:42 - 2013-08-14 15:06 - 00000000 ____D C:\Windows\system32\MRT 2014-01-21 10:40 - 2013-05-11 15:47 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-21 10:40 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\WinStore 2014-01-21 10:39 - 2014-01-21 10:39 - 00000000 ____D C:\Program Files (x86)\SCM 2014-01-21 10:28 - 2014-01-21 10:28 - 00000000 ____D C:\Users\0TAKU\Downloads\scm_10.013.06287 2014-01-21 10:28 - 2014-01-21 10:19 - 00000272 _____ C:\Windows\Tasks\ASC7_SkipUac_Otaku Attacks.job 2014-01-21 10:27 - 2014-01-21 10:32 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-21 10:27 - 2014-01-21 10:32 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-21 10:27 - 2014-01-21 10:27 - 02232664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-01-21 10:27 - 2014-01-21 10:27 - 00385614 _____ C:\Windows\system32\ApnDatabase.xml 2014-01-21 10:27 - 2014-01-21 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-01-21 10:19 - 2014-01-21 10:19 - 00003110 _____ C:\Windows\System32\Tasks\ASC7_PerformanceMonitor 2014-01-21 10:19 - 2014-01-21 10:19 - 00002388 _____ C:\Windows\System32\Tasks\ASC7_SkipUac_Otaku Attacks 2014-01-21 10:19 - 2013-05-12 10:13 - 00000000 ____D C:\Program Files (x86)\IObit 2014-01-21 10:15 - 2014-01-21 10:13 - 15309848 _____ (IObit ) C:\Users\0TAKU\Downloads\driver_booster_setup.exe 2014-01-21 10:08 - 2012-07-26 06:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2014-01-21 10:07 - 2014-01-21 10:07 - 06186128 _____ C:\Windows\system32\Drivers\Netwfw00.dat 2014-01-21 10:07 - 2014-01-21 10:07 - 03343840 _____ (Intel Corporation) C:\Windows\system32\Drivers\NETwew00.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-01-21 10:07 - 2014-01-21 10:07 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-01-21 09:58 - 2014-01-21 09:58 - 00002406 _____ C:\Windows\System32\Tasks\ASC7U_SkipUac_Otaku Attacks 2014-01-21 09:58 - 2014-01-21 09:58 - 00000290 _____ C:\Windows\Tasks\ASC7U_SkipUac_Otaku Attacks.job 2014-01-21 09:50 - 2013-12-05 02:17 - 00001976 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-21 09:49 - 2014-01-21 09:49 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-21 09:43 - 2013-11-07 08:48 - 00000000 ____D C:\Users\Gast 2014-01-21 09:43 - 2013-11-04 16:49 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo 2014-01-21 09:43 - 2013-10-09 18:27 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Battle.net 2014-01-21 09:43 - 2012-07-26 09:12 - 00000000 __RHD C:\Users\Public\Libraries 2014-01-21 09:41 - 2013-05-12 10:14 - 00000000 ____D C:\ProgramData\IObit 2014-01-21 09:41 - 2013-05-12 10:13 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\IObit 2014-01-21 09:41 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2014-01-21 09:41 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\Macromed 2014-01-21 09:41 - 2012-07-26 06:38 - 00000000 ____D C:\Windows\system32\Sysprep 2014-01-21 09:40 - 2014-01-20 22:06 - 00000000 ____D C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424} 2014-01-21 09:39 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\registration 2014-01-21 09:36 - 2013-05-11 17:35 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Google 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit 2014-01-20 23:14 - 2014-01-20 23:09 - 24842080 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-arm.msu 2014-01-20 23:00 - 2014-01-20 22:57 - 45609763 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-x64.msu 2014-01-20 22:32 - 2012-11-22 07:59 - 00000000 ____D C:\Windows\Panther 2014-01-20 22:15 - 2013-10-09 18:27 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Battle.net 2014-01-20 22:06 - 2014-01-20 22:06 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled 2014-01-20 21:06 - 2014-01-20 21:05 - 03565421 _____ C:\Users\0TAKU\Downloads\scm_10.013.06287.zip 2014-01-20 20:58 - 2014-01-20 20:58 - 00000000 ____D C:\Users\0TAKU\Downloads\sbar20_21012_04278 2014-01-20 20:57 - 2014-01-20 20:53 - 13301679 _____ C:\Users\0TAKU\Downloads\sbar20_21012_04278.zip 2014-01-19 21:29 - 2013-11-14 16:25 - 00000015 _____ C:\Users\0TAKU\AppData\Roaming\A.c199807a9ba5ab306db172f530f9b9e01.resizer_settings 2014-01-15 15:48 - 2014-01-15 15:43 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\TeamViewer 2014-01-15 15:17 - 2014-01-15 15:17 - 00000000 ____H C:\Users\0TAKU\Documents\Default.rdp 2014-01-13 18:00 - 2014-01-13 18:00 - 00017920 ___SH C:\Users\0TAKU\Documents\Thumbs.db 2014-01-12 20:17 - 2013-05-11 18:50 - 00000000 ____D C:\Users\0TAKU\Documents\DragonNest 2014-01-12 00:29 - 2014-01-11 00:06 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Awesomium 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\Users\0TAKU\Documents\Elder Scrolls Online 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\ProgramData\Elder Scrolls Online 2014-01-10 12:15 - 2013-05-12 19:50 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\vlc 2014-01-09 17:59 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\NDF 2014-01-09 17:31 - 2013-08-31 14:06 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Game Dev Tycoon - Steam 2014-01-08 20:11 - 2014-01-08 20:11 - 00000000 __SHD C:\ProgramData\DSS 2014-01-08 20:11 - 2013-08-31 15:33 - 00000000 ____D C:\Users\0TAKU\Documents\EA Games 2014-01-08 20:11 - 2013-07-06 12:53 - 00000000 ____D C:\ProgramData\Electronic Arts 2014-01-08 20:08 - 2014-01-08 20:08 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2014-01-08 14:21 - 2014-01-08 13:21 - 00001318 _____ C:\Windows\ampa.ini 2014-01-08 13:32 - 2014-01-08 13:32 - 00000000 ____D C:\Windows\amlog 2014-01-08 13:17 - 2014-01-08 13:17 - 00001024 ____H C:\AMTAG.BIN 2014-01-08 13:17 - 2014-01-08 13:16 - 08027680 _____ (AOMEI Technology Co., Ltd. ) C:\Users\0TAKU\Downloads\PAssist_Std_5.5.exe 2014-01-08 11:36 - 2014-01-08 11:36 - 00001088 _____ C:\Users\0TAKU\Desktop\The Elder Scrolls Online Beta.lnk 2014-01-08 11:35 - 2014-01-08 11:31 - 55903624 _____ ( ) C:\Users\0TAKU\Downloads\Install_ESO_Beta.exe 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____D C:\Program Files\Synaptics 2014-01-08 10:14 - 2014-01-08 10:14 - 03760344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-08 10:14 - 2014-01-08 10:14 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02588888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-08 10:14 - 2014-01-08 10:14 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01013504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00693329 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-08 10:14 - 2014-01-08 10:14 - 00628504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00618200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00563992 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00397080 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00154840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00032496 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys 2014-01-08 10:14 - 2012-11-30 07:08 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2014-01-08 10:13 - 2014-01-08 10:13 - 09888912 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsPStorIcon.dll 2014-01-08 10:13 - 2014-01-08 10:13 - 00347280 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsPStor.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 00064624 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2014-01-07 22:35 - 2013-11-27 18:29 - 00000000 ____D C:\Users\0TAKU\Documents\LoL Guides and stuff 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\ProgramData\LogMeIn 2014-01-07 15:10 - 2014-01-07 15:10 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2014-01-05 17:18 - 2014-01-02 17:19 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Valdis_Story_AC 2014-01-04 14:11 - 2013-05-14 05:36 - 00000000 ____D C:\Users\0TAKU\Documents\my games 2014-01-04 04:17 - 2014-01-04 04:17 - 71483392 _____ C:\Windows\system32\config\SOFTWARE.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00069632 _____ C:\Windows\system32\config\SAM.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00028672 _____ C:\Windows\system32\config\SECURITY.iobit 2014-01-02 16:08 - 2014-01-02 16:08 - 00000000 ____D C:\Users\0TAKU\Documents\VVVVVV 2013-12-30 15:27 - 2013-11-08 22:31 - 00018944 _____ C:\Users\0TAKU\Documents\League of legends pool.xls 2013-12-28 13:04 - 2013-07-03 17:18 - 00000000 ____D C:\Users\0TAKU\Desktop\Games 2013-12-28 00:10 - 2013-12-25 23:06 - 00000000 ____D C:\Users\0TAKU\Documents\LOLReplay 2013-12-25 13:00 - 2013-12-25 13:00 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Unity 2013-12-25 12:51 - 2013-12-25 12:51 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Unity 2013-12-24 10:26 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\AUInstallAgent ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-17 13:23 ==================== End Of Log ============================ das Problem taucht nach einem Neustart erneut auf, jedoch wenn ich den Laptop Herunter fahre und wieder Hochfahre taucht die Meldung nicht auf. Nurnoch bei einem Neustart. |
24.01.2014, 09:29 | #8 |
/// the machine /// TB-Ausbilder | RUNDLL Fehler nach Systemstart Java updaten. Ist da irgendwas mit Creative Sound Blaster oder so installiert? Treiber mal erneuern bzw Software.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
27.01.2014, 10:05 | #9 |
| RUNDLL Fehler nach Systemstart Java habe ich nun aktualisiert. Nein. Wie erwähnt das einzige was installiert war, war THX ProStudio. Ein Creative Sound Blaster war nicht installiert. |
28.01.2014, 09:42 | #10 |
/// the machine /// TB-Ausbilder | RUNDLL Fehler nach Systemstart Davon sind Treiber und Software aktuell? FRST bitte mal öffnen, alle Haken raus unter Whitelist, Haken setzen bei Additional, und scannen. Poste bitte beide Logfiles.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
28.01.2014, 23:27 | #11 |
| RUNDLL Fehler nach Systemstart Treiber sind alle aktuell. Der Fehler trat nach der Aktualisierung der Treiber und dem Programm Advanced Systemcare von iObit auf. Ich muss leider einen Doppelpost machen, da beide Logs nicht in einem Post passen. FRST Log: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-01-2014 02 Ran by Otaku Attacks (administrator) on NOTROY on 28-01-2014 23:20:23 Running from C:\Users\0TAKU\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (All) ========================= (Microsoft Corporation) C:\Windows\System32\csrss.exe (Microsoft Corporation) C:\Windows\System32\wininit.exe (Microsoft Corporation) C:\Windows\System32\csrss.exe (Microsoft Corporation) C:\Windows\System32\winlogon.exe (Microsoft Corporation) C:\Windows\System32\services.exe (Microsoft Corporation) C:\Windows\System32\lsass.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Microsoft Corporation) C:\Windows\System32\dwm.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\spoolsv.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe (Microsoft Corporation) C:\Windows\System32\taskhostex.exe (Microsoft Corporation) C:\Windows\explorer.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (MSI) C:\Program Files (x86)\SCM\SCM.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (SteelSeries ApS) D:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (LOL Replay) D:\Program Files (x86)\LOLReplay\LOLRecorder.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe () C:\Program Files (x86)\IObit\Advanced SystemCare 7\RealTimeProtector.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Microsoft Corporation) C:\Windows\System32\WUDFHost.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Microsoft Corporation) C:\Windows\System32\SearchIndexer.exe (Microsoft Corporation) C:\Windows\System32\wbem\WmiPrvSE.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (CoBoltDK) D:\Useless Crap\LoLPing.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnetwk.exe (Safer-Networking Ltd.) D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Valve Corporation) D:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Microsoft Corporation) C:\Windows\System32\taskhost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\SearchProtocolHost.exe (Microsoft Corporation) C:\Windows\System32\SearchFilterHost.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Farbar) C:\Users\0TAKU\Downloads\FRST64.exe (Microsoft Corporation) C:\Windows\System32\wbem\WmiPrvSE.exe ==================== Registry (All) =========================== HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2859344 2012-11-27] (ELAN Microelectronics Corp.) HKLM\...\Run: [SCM] - C:\Program Files (x86)\SCM\SCM.exe [410016 2013-06-28] (MSI) HKLM\...\Run: [XboxStat] - c:\program files\microsoft xbox 360 accessories\xboxstat.exe [825184 2009-10-01] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2014-01-08] (Realtek Semiconductor) HKLM\...\Run: [Radio Manager] - C:\Program Files (x86)\SCM\Radio Manager.exe [406920 2013-06-28] (MSI) HKLM-x32\...\Run: [IObit Malware Fighter] - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1573184 2013-12-13] (IObit) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-01-25] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe, [25088 2012-07-26] (Microsoft Corporation) HKLM-x32\...\Winlogon: [Userinit] C:\Windows\sysWOW64\userinit.exe [21504 2012-07-26] (Microsoft Corporation) HKLM\...\Winlogon: [Shell] explorer.exe [2391280 2013-07-16] (Microsoft Corporation) HKLM-x32\...\Winlogon: [Shell] explorer.exe [2106176 2013-07-16] (Microsoft Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKLM\...\Policies\Explorer: [ForceActiveDesktopOn] 0 HKLM\...\Policies\Explorer: [NoActiveDesktopChanges] 1 HKLM\...\Policies\Explorer: [NoActiveDesktop] 1 HKCU\...\Run: [SteelSeries Engine] - D:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [242688 2013-07-12] (SteelSeries ApS) HKCU\...\Run: [Spybot-S&D Cleaning] - D:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3642312 2013-05-16] (Safer-Networking Ltd.) HKCU\...\Run: [Advanced SystemCare 7] - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2285344 2013-12-18] (IObit) HKCU\...\Run: [AdBuck.exe] - C:\Program Files (x86)\AdBuck\AdBuck.exe AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [250504 2013-03-15] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [205184 2013-03-15] (NVIDIA Corporation) Lsa: [Authentication Packages] msv1_0 Lsa: [Notification Packages] scecli SecurityProviders: credssp.dll SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No File SSODL-x32: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No File ==================== Internet (All) =========================== HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.search.yahoo.com?type=198484&fr=spigot-yhp-ie HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://msi13.msn.com HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 URLSearchHook: HKCU - Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation) URLSearchHook: HKCU - Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKLM - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC SearchScopes: HKLM-x32 - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAMIJS; SearchScopes: HKCU - DefaultScope {6D4F2856-4F09-4A46-B4FB-F194BDD97156} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms} SearchScopes: HKCU - {6D4F2856-4F09-4A46-B4FB-F194BDD97156} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms} SearchScopes: HKCU - {AD17079E-C48D-484B-8173-51E9589A9DA9} URL = BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit) BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) DPF: HKLM-x32 {6C269571-C6D7-4818-BCA4-32A035E8C884} hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\msvidctl.dll (Microsoft Corporation) Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - No File Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - No File Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - No File Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - No File Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation) Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - No File Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation) Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - No File Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - No File Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - No File Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - No File Handler: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - No File Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\msvidctl.dll (Microsoft Corporation) Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - No File Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - No File Handler-x32: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) Handler-x32: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll (Microsoft Corporation) Handler-x32: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation) Handler-x32: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation) Handler-x32: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) Handler-x32: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll (Microsoft Corporation) Handler-x32: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation) Handler-x32: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation) Handler-x32: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files (x86)\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation) Handler-x32: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Handler-x32: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\msvidctl.dll (Microsoft Corporation) Handler-x32: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) Handler-x32: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) Handler-x32: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation) Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation) Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation) Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Filter-x32: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) Filter-x32: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) Filter-x32: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) Filter-x32: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation) Winsock: Catalog5 01 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation) Winsock: Catalog5 02 C:\Windows\SysWOW64\pnrpnsp.dll [67584] (Microsoft Corporation) Winsock: Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [67584] (Microsoft Corporation) Winsock: Catalog5 04 C:\Windows\SysWOW64\NLAapi.dll [55296] (Microsoft Corporation) Winsock: Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [21504] (Microsoft Corporation) Winsock: Catalog5 07 C:\Windows\SysWOW64\wshbth.dll [50688] (Microsoft Corporation) Winsock: Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [289280] (Microsoft Corporation) Winsock: Catalog5-x64 01 %SystemRoot%\system32\napinsp.dll [66560] (Microsoft Corporation) Winsock: Catalog5-x64 02 %SystemRoot%\system32\pnrpnsp.dll [85504] (Microsoft Corporation) Winsock: Catalog5-x64 03 %SystemRoot%\system32\pnrpnsp.dll [85504] (Microsoft Corporation) Winsock: Catalog5-x64 04 %SystemRoot%\system32\NLAapi.dll [72192] (Microsoft Corporation) Winsock: Catalog5-x64 05 %SystemRoot%\System32\mswsock.dll [355328] (Microsoft Corporation) Winsock: Catalog5-x64 06 %SystemRoot%\System32\winrnr.dll [53760] (Microsoft Corporation) Winsock: Catalog5-x64 07 %SystemRoot%\system32\wshbth.dll [64000] (Microsoft Corporation) Winsock: Catalog9-x64 01 %SystemRoot%\system32\mswsock.dll [355328] (Microsoft Corporation) Winsock: Catalog9-x64 02 %SystemRoot%\system32\mswsock.dll [355328] (Microsoft Corporation) Winsock: Catalog9-x64 03 %SystemRoot%\system32\mswsock.dll [355328] (Microsoft Corporation) Winsock: Catalog9-x64 04 %SystemRoot%\system32\mswsock.dll [355328] (Microsoft Corporation) Winsock: Catalog9-x64 05 %SystemRoot%\system32\mswsock.dll [355328] (Microsoft Corporation) Winsock: Catalog9-x64 06 %SystemRoot%\system32\mswsock.dll [355328] (Microsoft Corporation) Winsock: Catalog9-x64 07 %SystemRoot%\system32\mswsock.dll [355328] (Microsoft Corporation) Winsock: Catalog9-x64 08 %SystemRoot%\system32\mswsock.dll [355328] (Microsoft Corporation) Winsock: Catalog9-x64 09 %SystemRoot%\system32\mswsock.dll [355328] (Microsoft Corporation) Winsock: Catalog9-x64 10 %SystemRoot%\system32\mswsock.dll [355328] (Microsoft Corporation) Winsock: Catalog9-x64 11 %SystemRoot%\system32\mswsock.dll [355328] (Microsoft Corporation) Chrome: ======= CHR DefaultSearchKeyword: google.de CHR DefaultSearchProvider: Google CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultNewTabURL: CHR Extension: (YouTube Options) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdokagampppgbnjfdlkfpphniapiiifn [2014-01-25] CHR Extension: (Center new YouTube layout) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkgfcdpklghkffldenccpbdhhofcbbgo [2014-01-25] CHR Extension: (Asuka x Rias Gremory) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdnnbapaoldhkfbbfcdjehpgpffoofom [2014-01-25] CHR Extension: (Adblock Plus) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-01-25] CHR Extension: (Youtube Centering) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\efdnjcbindpoicliicokpmioefjljglm [2014-01-25] CHR Extension: (Silver Bird) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\encaiiljifbdbjlphpgpiimidegddhic [2014-01-25] CHR Extension: (Stylish) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2014-01-25] CHR Extension: (avast! Ad Blocker) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\fplhdcjmbpfkejbhngmlngaecbjmoimd [2013-05-12] CHR Extension: (avast! Online Security) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-05-12] CHR Extension: (YouTube Alignment Fix By Venoxcide) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdelcndikbnidponajcecbcgchmpoiog [2014-01-25] CHR Extension: (League of Legends Events) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfnfkjennojjkajjmghdgkibohcnefdk [2014-01-25] CHR Extension: (Center'd - Center the new YT) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkgjcknlnbcciacdklmnafmfcfjnpcja [2014-01-25] CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd [2014-01-26] CHR Extension: (Google Wallet) - C:\Users\0TAKU\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-21] CHR HKLM-x32\...\Chrome\Extension: [fplhdcjmbpfkejbhngmlngaecbjmoimd] - C:\Program Files\AVAST Software\Avast\AdBlocker\Chrome\avast-adblocker-chrome.crx [2013-05-12] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-01-25] CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx [2014-01-21] CHR StartMenuInternet: Google Chrome - "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (All) ======================== U2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65432 2013-12-21] (Adobe Systems Incorporated) U2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [881440 2013-12-09] (IObit) U3 AeLookupSvc; C:\Windows\System32\aelupsvc.dll [190976 2012-11-30] (Microsoft Corporation) U3 ALG; C:\Windows\System32\alg.exe [94208 2012-07-26] (Microsoft Corporation) U3 AllUserInstallAgent; C:\Windows\system32\AUInstallAgent.dll [122368 2012-07-26] (Microsoft Corporation) U3 AppIDSvc; C:\Windows\System32\appidsvc.dll [37888 2012-07-26] (Microsoft Corporation) U3 Appinfo; C:\Windows\System32\appinfo.dll [70144 2013-03-06] (Microsoft Corporation) U2 AudioEndpointBuilder; C:\Windows\System32\AudioEndpointBuilder.dll [169472 2013-04-09] (Microsoft Corporation) U2 Audiosrv; C:\Windows\System32\Audiosrv.dll [785408 2013-07-16] (Microsoft Corporation) U2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-25] (AVAST Software) U3 AxInstSV; C:\Windows\System32\AxInstSV.dll [112128 2012-07-26] (Microsoft Corporation) U3 BDESVC; C:\Windows\System32\bdesvc.dll [190976 2012-11-30] (Microsoft Corporation) U2 BFE; C:\Windows\System32\bfe.dll [723968 2013-11-13] (Microsoft Corporation) U3 BITS; C:\Windows\System32\qmgr.dll [826368 2012-07-26] (Microsoft Corporation) U2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [1112000 2012-08-27] (Motorola Solutions, Inc.) U2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [1124288 2012-09-06] (Motorola Solutions, Inc.) U2 BrokerInfrastructure; C:\Windows\System32\bisrv.dll [179712 2013-05-04] (Microsoft Corporation) U3 Browser; C:\Windows\System32\browser.dll [134144 2012-07-26] (Microsoft Corporation) U3 bthserv; C:\Windows\system32\bthserv.dll [89088 2012-07-26] (Microsoft Corporation) U4 CertPropSvc; C:\Windows\System32\certprop.dll [149504 2012-07-26] (Microsoft Corporation) U3 COMSysApp; C:\Windows\system32\dllhost.exe [10752 2012-07-26] (Microsoft Corporation) U3 COMSysApp; C:\Windows\SysWOW64\dllhost.exe [8704 2012-07-26] (Microsoft Corporation) U3 cphs; C:\Windows\SysWow64\IntelCpHeciSvc.exe [276288 2012-11-27] (Intel Corporation) U2 CryptSvc; C:\Windows\system32\cryptsvc.dll [68096 2013-07-13] (Microsoft Corporation) U2 DcomLaunch; C:\Windows\system32\rpcss.dll [817152 2012-07-26] (Microsoft Corporation) U3 defragsvc; C:\Windows\System32\defragsvc.dll [340480 2012-07-26] (Microsoft Corporation) U2 DeviceAssociationService; C:\Windows\system32\das.dll [342016 2012-07-26] (Microsoft Corporation) U3 DeviceInstall; C:\Windows\system32\umpnpmgr.dll [107008 2012-11-30] (Microsoft Corporation) U2 Dhcp; C:\Windows\system32\dhcpcore.dll [331776 2012-11-30] (Microsoft Corporation) U2 Dnscache; C:\Windows\System32\dnsrslvr.dll [210432 2012-11-30] (Microsoft Corporation) U3 dot3svc; C:\Windows\System32\dot3svc.dll [252928 2012-07-26] (Microsoft Corporation) U2 DPS; C:\Windows\system32\dps.dll [197120 2012-07-26] (Microsoft Corporation) U3 DsmSvc; C:\Windows\System32\DeviceSetupManager.dll [207872 2013-07-16] (Microsoft Corporation) U3 Eaphost; C:\Windows\System32\eapsvc.dll [105472 2012-07-26] (Microsoft Corporation) U3 EFS; C:\Windows\system32\efssvc.dll [37376 2012-07-26] (Microsoft Corporation) U2 EventLog; C:\Windows\System32\wevtsvc.dll [1731584 2012-07-26] (Microsoft Corporation) U2 EventSystem; C:\Windows\system32\es.dll [507904 2012-07-26] (Microsoft Corporation) U3 Fax; C:\Windows\system32\fxssvc.exe [669696 2012-07-26] (Microsoft Corporation) U3 fdPHost; C:\Windows\system32\fdPHost.dll [21504 2012-07-26] (Microsoft Corporation) U2 FDResPub; C:\Windows\system32\fdrespub.dll [33280 2012-07-26] (Microsoft Corporation) U3 fhsvc; C:\Windows\system32\fhsvc.dll [116736 2012-11-30] (Microsoft Corporation) U3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1045256 2014-01-21] (Acresso Software Inc.) U2 FontCache; C:\Windows\system32\FntCache.dll [1280000 2012-11-30] (Microsoft Corporation) U3 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [43616 2012-07-26] (Microsoft Corporation) U2 gpsvc; C:\Windows\System32\gpsvc.dll [1366016 2012-07-26] (Microsoft Corporation) U2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648 2013-05-11] (Google Inc.) U3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648 2013-05-11] (Google Inc.) U2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2210640 2013-11-29] (LogMeIn Inc.) U3 hidserv; C:\Windows\system32\hidserv.dll [36352 2012-07-26] (Microsoft Corporation) U3 hkmsvc; C:\Windows\system32\kmsvc.dll [97792 2012-07-26] (Microsoft Corporation) U3 HomeGroupListener; C:\Windows\system32\ListSvc.dll [264704 2012-11-30] (Microsoft Corporation) U3 HomeGroupProvider; C:\Windows\system32\provsvc.dll [394752 2012-07-26] (Microsoft Corporation) U2 IAStorDataMgrSvc; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [14904 2012-09-02] (Intel Corporation) U2 IKEEXT; C:\Windows\System32\ikeext.dll [1160192 2013-11-13] (Microsoft Corporation) U2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [341824 2013-11-11] (IObit) U2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [634632 2012-06-20] (Intel(R) Corporation) U4 iphlpsvc; C:\Windows\System32\iphlpsvc.dll [894464 2013-01-10] (Microsoft Corporation) U2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-11-27] (Intel Corporation) U3 KeyIso; C:\Windows\system32\keyiso.dll [59904 2012-07-26] (Microsoft Corporation) U3 KtmRm; C:\Windows\system32\msdtckrm.dll [358912 2012-07-26] (Microsoft Corporation) U2 LanmanServer; C:\Windows\system32\srvsvc.dll [309248 2012-07-26] (Microsoft Corporation) U2 LanmanWorkstation; C:\Windows\System32\wkssvc.dll [191488 2012-07-26] (Microsoft Corporation) U2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit) U3 lltdsvc; C:\Windows\System32\lltdsvc.dll [274944 2012-07-26] (Microsoft Corporation) U2 lmhosts; C:\Windows\System32\lmhsvc.dll [23040 2012-07-26] (Microsoft Corporation) U2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.) U2 LMS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [276864 2012-11-27] (Intel Corporation) U2 LSM; C:\Windows\System32\lsm.dll [438272 2013-01-10] (Microsoft Corporation) U2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) U2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) U2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2013-06-28] (Micro-Star International Co., Ltd.) U2 MMCSS; C:\Windows\system32\mmcss.dll [80896 2012-11-30] (Microsoft Corporation) U4 MozillaMaintenance; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [116120 2013-03-28] (Mozilla Foundation) U2 MpsSvc; C:\Windows\system32\mpssvc.dll [915968 2013-12-12] (Microsoft Corporation) U3 MSDTC; C:\Windows\System32\msdtc.exe [144384 2012-07-26] (Microsoft Corporation) U4 MSiSCSI; C:\Windows\system32\iscsiexe.dll [151552 2012-07-26] (Microsoft Corporation) U3 msiserver; C:\Windows\System32\msiexec.exe [124416 2012-07-26] (Microsoft Corporation) U3 msiserver; C:\Windows\SysWOW64\msiexec.exe [62976 2012-07-26] (Microsoft Corporation) U4 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [142904 2012-05-23] (MSI) U4 napagent; C:\Windows\system32\qagentRT.dll [428544 2012-07-26] (Microsoft Corporation) U3 NcaSvc; C:\Windows\System32\ncasvc.dll [161792 2012-07-26] (Microsoft Corporation) U3 NcdAutoSetup; C:\Windows\System32\NcdAutoSetup.dll [73728 2012-07-26] (Microsoft Corporation) U4 Netlogon; C:\Windows\system32\netlogon.dll [743936 2012-07-26] (Microsoft Corporation) U3 Netman; C:\Windows\System32\netman.dll [255488 2012-07-26] (Microsoft Corporation) U3 netprofm; C:\Windows\System32\netprofmsvc.dll [470528 2013-05-04] (Microsoft Corporation) U4 NetTcpPortSharing; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [139696 2012-07-12] (Microsoft Corporation) U2 NlaSvc; C:\Windows\System32\nlasvc.dll [356352 2012-11-30] (Microsoft Corporation) U2 nsi; C:\Windows\system32\nsisvc.dll [25600 2012-07-26] (Microsoft Corporation) U4 nvsvc; C:\Windows\system32\nvvsvc.exe [877856 2013-03-15] (NVIDIA Corporation) U4 nvUpdatusService; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1266464 2013-03-15] (NVIDIA Corporation) U3 ose; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [89136 2003-07-28] (Microsoft Corporation) U3 p2pimsvc; C:\Windows\system32\pnrpsvc.dll [329728 2012-07-26] (Microsoft Corporation) U3 p2psvc; C:\Windows\system32\p2psvc.dll [435712 2012-07-26] (Microsoft Corporation) U2 PcaSvc; C:\Windows\System32\pcasvc.dll [405504 2012-10-24] (Microsoft Corporation) U2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) U2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) U3 PerfHost; C:\Windows\SysWow64\perfhost.exe [20992 2012-07-26] (Microsoft Corporation) U3 pla; C:\Windows\system32\pla.dll [1379840 2012-07-26] (Microsoft Corporation) U3 PlugPlay; C:\Windows\system32\umpnpmgr.dll [107008 2012-11-30] (Microsoft Corporation) U2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2013-08-16] () U3 PNRPAutoReg; C:\Windows\system32\pnrpauto.dll [26624 2012-07-26] (Microsoft Corporation) U3 PNRPsvc; C:\Windows\system32\pnrpsvc.dll [329728 2012-07-26] (Microsoft Corporation) U3 PolicyAgent; C:\Windows\System32\ipsecsvc.dll [474624 2012-07-26] (Microsoft Corporation) U2 Power; C:\Windows\system32\umpo.dll [89600 2012-11-30] (Microsoft Corporation) U3 PrintNotify; C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll [2675712 2012-11-30] (Microsoft Corporation) U2 ProfSvc; C:\Windows\system32\profsvc.dll [209920 2012-07-26] (Microsoft Corporation) U2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [340480 2013-09-20] (Qualcomm Atheros) U3 QWAVE; C:\Windows\system32\qwave.dll [268800 2012-07-26] (Microsoft Corporation) U3 RasAuto; C:\Windows\System32\rasauto.dll [99840 2012-07-26] (Microsoft Corporation) U3 RasMan; C:\Windows\System32\rasmans.dll [358400 2012-07-26] (Microsoft Corporation) U4 RemoteAccess; C:\Windows\System32\mprdim.dll [107520 2012-07-26] (Microsoft Corporation) U4 RemoteAccess; C:\Windows\SysWOW64\mprdim.dll [81920 2012-07-26] (Microsoft Corporation) U4 RemoteRegistry; C:\Windows\system32\regsvc.dll [159744 2012-07-26] (Microsoft Corporation) U2 RpcEptMapper; C:\Windows\System32\RpcEpMap.dll [76288 2012-11-30] (Microsoft Corporation) U3 RpcLocator; C:\Windows\system32\locator.exe [9728 2012-07-26] (Microsoft Corporation) U2 RpcSs; C:\Windows\system32\rpcss.dll [817152 2012-07-26] (Microsoft Corporation) U2 SamSs; C:\Windows\system32\lsass.exe [35840 2012-11-30] (Microsoft Corporation) U4 SCardSvr; C:\Windows\System32\SCardSvr.dll [196608 2012-07-26] (Microsoft Corporation) U2 Schedule; C:\Windows\system32\schedsvc.dll [1285632 2013-04-09] (Microsoft Corporation) U3 SCPolicySvc; C:\Windows\System32\certprop.dll [149504 2012-07-26] (Microsoft Corporation) U3 SDRSVC; C:\Windows\System32\SDRSVC.dll [148480 2012-07-26] (Microsoft Corporation) U2 SDScannerService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.) U2 SDUpdateService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.) U2 SDWSCService; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.) U3 seclogon; C:\Windows\system32\seclogon.dll [30720 2012-07-26] (Microsoft Corporation) U2 SENS; C:\Windows\System32\sens.dll [62976 2012-07-26] (Microsoft Corporation) U3 SensrSvc; C:\Windows\system32\sensrsvc.dll [161792 2012-07-26] (Microsoft Corporation) U3 SessionEnv; C:\Windows\system32\sessenv.dll [291328 2012-07-26] (Microsoft Corporation) U3 SessionEnv; C:\Windows\SysWOW64\sessenv.dll [249344 2012-07-26] (Microsoft Corporation) U4 SharedAccess; C:\Windows\System32\ipnathlp.dll [438784 2012-07-26] (Microsoft Corporation) U2 ShellHWDetection; C:\Windows\System32\shsvcs.dll [565760 2012-07-26] (Microsoft Corporation) U2 ShellHWDetection; C:\Windows\SysWOW64\shsvcs.dll [506368 2012-07-26] (Microsoft Corporation) U4 SkypeUpdate; C:\Program Files (x86)\Skype\Updater\Updater.exe [161384 2013-02-28] (Skype Technologies) U4 SNMPTRAP; C:\Windows\System32\snmptrap.exe [14848 2012-07-26] (Microsoft Corporation) U2 Spooler; C:\Windows\System32\spoolsv.exe [769024 2012-07-26] (Microsoft Corporation) U2 sppsvc; C:\Windows\system32\sppsvc.exe [4917760 2013-08-16] (Microsoft Corporation) U3 SSDPSRV; C:\Windows\System32\ssdpsrv.dll [266240 2012-07-26] (Microsoft Corporation) U3 SstpSvc; C:\Windows\system32\sstpsvc.dll [81920 2012-07-26] (Microsoft Corporation) U4 StartMenuService; C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe [75584 2013-09-29] (IObit) U3 Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [569768 2014-01-07] (Valve Corporation) U3 stisvc; C:\Windows\System32\wiaservc.dll [570880 2012-07-26] (Microsoft Corporation) U3 StorSvc; C:\Windows\system32\storsvc.dll [20992 2012-07-26] (Microsoft Corporation) U3 svsvc; C:\Windows\system32\svsvc.dll [12800 2012-07-26] (Microsoft Corporation) U3 swprv; C:\Windows\System32\swprv.dll [502784 2012-07-26] (Microsoft Corporation) U2 SysMain; C:\Windows\system32\sysmain.dll [1332736 2013-05-04] (Microsoft Corporation) U3 SystemEventsBroker; C:\Windows\System32\SystemEventsBrokerServer.dll [180224 2013-03-02] (Microsoft Corporation) U3 TabletInputService; C:\Windows\System32\TabSvc.dll [84480 2012-07-26] (Microsoft Corporation) U3 TapiSrv; C:\Windows\System32\tapisrv.dll [305664 2012-07-26] (Microsoft Corporation) U3 TapiSrv; C:\Windows\SysWOW64\tapisrv.dll [245760 2012-07-26] (Microsoft Corporation) U3 TermService; C:\Windows\System32\termsrv.dll [723968 2012-07-26] (Microsoft Corporation) U2 Themes; C:\Windows\system32\themeservice.dll [47104 2012-07-26] (Microsoft Corporation) U3 THREADORDER; C:\Windows\system32\mmcss.dll [80896 2012-11-30] (Microsoft Corporation) U3 TimeBroker; C:\Windows\System32\TimeBrokerServer.dll [171008 2013-03-02] (Microsoft Corporation) U2 TrkWks; C:\Windows\System32\trkwks.dll [119808 2012-07-26] (Microsoft Corporation) U3 TrustedInstaller; C:\Windows\servicing\TrustedInstaller.exe [98304 2013-06-19] (Microsoft Corporation) U3 UI0Detect; C:\Windows\system32\UI0Detect.exe [40960 2012-07-26] (Microsoft Corporation) U3 UmRdpService; C:\Windows\System32\umrdp.dll [250880 2012-07-26] (Microsoft Corporation) U2 UNS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [364416 2012-11-27] (Intel Corporation) U4 upnphost; C:\Windows\System32\upnphost.dll [520704 2012-07-26] (Microsoft Corporation) U3 VaultSvc; C:\Windows\System32\vaultsvc.dll [283648 2012-07-26] (Microsoft Corporation) U3 vds; C:\Windows\System32\vds.exe [680960 2013-07-16] (Microsoft Corporation) U3 vmicheartbeat; C:\Windows\System32\ICSvc.dll [336384 2012-07-26] (Microsoft Corporation) U3 vmickvpexchange; C:\Windows\System32\ICSvc.dll [336384 2012-07-26] (Microsoft Corporation) U3 vmicrdv; C:\Windows\System32\ICSvc.dll [336384 2012-07-26] (Microsoft Corporation) U3 vmicshutdown; C:\Windows\System32\ICSvc.dll [336384 2012-07-26] (Microsoft Corporation) U3 vmictimesync; C:\Windows\System32\ICSvc.dll [336384 2012-07-26] (Microsoft Corporation) U3 vmicvss; C:\Windows\System32\ICSvc.dll [336384 2012-07-26] (Microsoft Corporation) U3 VSS; C:\Windows\system32\vssvc.exe [1483776 2013-05-04] (Microsoft Corporation) U3 W32Time; C:\Windows\system32\w32time.dll [358400 2012-07-26] (Microsoft Corporation) U3 wbengine; C:\Windows\system32\wbengine.exe [1616896 2012-07-26] (Microsoft Corporation) U3 WbioSrvc; C:\Windows\System32\wbiosrvc.dll [335872 2012-07-26] (Microsoft Corporation) U2 Wcmsvc; C:\Windows\System32\wcmsvc.dll [263680 2013-08-14] (Microsoft Corporation) U3 wcncsvc; C:\Windows\System32\wcncsvc.dll [466944 2013-05-12] (Microsoft Corporation) U3 WcsPlugInService; C:\Windows\System32\WcsPlugInService.dll [41472 2012-07-26] (Microsoft Corporation) U3 WdiServiceHost; C:\Windows\system32\wdi.dll [109568 2012-07-26] (Microsoft Corporation) U3 WdiSystemHost; C:\Windows\system32\wdi.dll [109568 2012-07-26] (Microsoft Corporation) U3 WebClient; C:\Windows\System32\webclnt.dll [227840 2013-12-12] (Microsoft Corporation) U3 Wecsvc; C:\Windows\system32\wecsvc.dll [218112 2012-07-26] (Microsoft Corporation) U3 wercplsupport; C:\Windows\System32\wercplsupport.dll [84992 2012-07-26] (Microsoft Corporation) U3 WerSvc; C:\Windows\System32\WerSvc.dll [87552 2013-02-02] (Microsoft Corporation) U3 WiaRpc; C:\Windows\System32\wiarpc.dll [65536 2012-07-26] (Microsoft Corporation) U3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) U3 WinHttpAutoProxySvc; C:\Windows\system32\winhttp.dll [710656 2013-05-12] (Microsoft Corporation) U2 Winmgmt; C:\Windows\system32\wbem\WMIsvc.dll [219648 2012-07-26] (Microsoft Corporation) U3 WinRM; C:\Windows\system32\WsmSvc.dll [2836992 2012-07-26] (Microsoft Corporation) U2 WlanSvc; C:\Windows\System32\wlansvc.dll [1386496 2013-05-12] (Microsoft Corporation) U3 wlidsvc; C:\Windows\system32\wlidsvc.dll [1964544 2013-01-10] (Microsoft Corporation) U3 wmiApSrv; C:\Windows\system32\wbem\WmiApSrv.exe [198144 2012-07-26] (Microsoft Corporation) U2 WMPNetworkSvc; C:\Program Files\Windows Media Player\wmpnetwk.exe [1314816 2012-11-30] (Microsoft Corporation) U3 WPCSvc; C:\Windows\System32\wpcsvc.dll [11776 2012-07-26] (Microsoft Corporation) U3 WPDBusEnum; C:\Windows\system32\wpdbusenum.dll [103936 2013-03-02] (Microsoft Corporation) U2 wscsvc; C:\Windows\System32\wscsvc.dll [99840 2013-04-09] (Microsoft Corporation) U2 WSearch; C:\Windows\system32\SearchIndexer.exe [816128 2013-04-09] (Microsoft Corporation) U2 WSearch; C:\Windows\SysWOW64\SearchIndexer.exe [670208 2013-04-08] (Microsoft Corporation) U3 WSService; C:\Windows\System32\WSService.dll [2371728 2013-08-16] (Microsoft Corporation) U3 wuauserv; C:\Windows\system32\wuaueng.dll [3279872 2013-11-13] (Microsoft Corporation) U3 wudfsvc; C:\Windows\System32\WUDFSvc.dll [84992 2012-07-26] (Microsoft Corporation) U3 WwanSvc; C:\Windows\System32\wwansvc.dll [447488 2013-08-14] (Microsoft Corporation) U4 AdvancedSystemCareService6; No ImagePath ==================== Drivers (All) ========================== U3 1394ohci; C:\Windows\System32\drivers\1394ohci.sys [226304 2012-07-26] (Microsoft Corporation) U0 3ware; C:\Windows\System32\drivers\3ware.sys [106736 2012-07-26] (LSI) U0 ACPI; C:\Windows\System32\drivers\ACPI.sys [425192 2012-11-30] (Microsoft Corporation) U0 acpiex; C:\Windows\System32\Drivers\acpiex.sys [77040 2012-07-26] (Microsoft Corporation) U3 acpipagr; C:\Windows\System32\drivers\acpipagr.sys [10240 2012-07-26] (Microsoft Corporation) U3 AcpiPmi; C:\Windows\System32\drivers\acpipmi.sys [12288 2012-07-26] (Microsoft Corporation) U3 acpitime; C:\Windows\System32\drivers\acpitime.sys [10752 2012-07-26] (Microsoft Corporation) U0 adp94xx; C:\Windows\System32\drivers\adp94xx.sys [492272 2012-07-26] (Adaptec, Inc.) U0 adpahci; C:\Windows\System32\drivers\adpahci.sys [340720 2012-07-26] (Adaptec, Inc.) U0 adpu320; C:\Windows\System32\drivers\adpu320.sys [184048 2012-07-26] (Adaptec, Inc.) U1 AFD; C:\Windows\system32\drivers\afd.sys [576512 2013-11-13] (Microsoft Corporation) U0 agp440; C:\Windows\System32\drivers\agp440.sys [63216 2012-07-26] (Microsoft Corporation) U3 AmdK8; C:\Windows\System32\drivers\amdk8.sys [90624 2013-05-12] (Microsoft Corporation) U3 AmdPPM; C:\Windows\System32\drivers\amdppm.sys [88064 2013-05-12] (Microsoft Corporation) U0 amdsata; C:\Windows\System32\drivers\amdsata.sys [76016 2012-07-26] (Advanced Micro Devices) U0 amdsbs; C:\Windows\System32\drivers\amdsbs.sys [258288 2012-07-26] (AMD Technologies Inc.) U0 amdxata; C:\Windows\System32\drivers\amdxata.sys [26352 2012-07-26] (Advanced Micro Devices) U3 AppID; C:\Windows\system32\drivers\appid.sys [79360 2012-07-26] (Microsoft Corporation) U0 arc; C:\Windows\System32\drivers\arc.sys [104688 2012-07-26] (PMC-Sierra, Inc.) U0 arcsas; C:\Windows\System32\drivers\arcsas.sys [108272 2012-07-26] (PMC-Sierra, Inc.) U2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-25] (AVAST Software) U1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-10-27] (AVAST Software) U0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-10-27] () U1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1038072 2014-01-25] (AVAST Software) U1 aswSP; C:\Windows\system32\drivers\aswSP.sys [421704 2014-01-25] (AVAST Software) U3 aswStm; C:\Windows\system32\drivers\aswStm.sys [80184 2014-01-25] (AVAST Software) U0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2013-12-18] () U3 AsyncMac; C:\Windows\system32\DRIVERS\asyncmac.sys [26624 2012-07-26] (Microsoft Corporation) U0 atapi; C:\Windows\System32\drivers\atapi.sys [25840 2012-07-26] (Microsoft Corporation) U0 b06bdrv; C:\Windows\System32\drivers\bxvbda.sys [533224 2012-11-30] (Broadcom Corporation) U1 BasicDisplay; C:\Windows\System32\drivers\BasicDisplay.sys [48640 2012-07-26] (Microsoft Corporation) U1 BasicRender; C:\Windows\System32\drivers\BasicRender.sys [29696 2012-07-26] (Microsoft Corporation) U1 Beep; C:\Windows\System32\Drivers\Beep.sys [7680 2012-07-26] (Microsoft Corporation) U1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [75056 2013-02-13] (Qualcomm Atheros, Inc.) U3 bowser; C:\Windows\System32\DRIVERS\bowser.sys [101888 2012-07-26] (Microsoft Corporation) U3 BthAvrcpTg; C:\Windows\System32\drivers\BthAvrcpTg.sys [37632 2013-07-16] (Microsoft Corporation) U3 BthEnum; C:\Windows\System32\drivers\BthEnum.sys [51712 2013-01-09] (Microsoft Corporation) U3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [51200 2012-07-26] (Microsoft Corporation) U3 bthhfhid; C:\Windows\System32\drivers\BthHFHid.sys [29952 2012-11-27] (Microsoft Corporation) U3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) U3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [65536 2012-07-26] (Microsoft Corporation) U3 BthPan; C:\Windows\system32\DRIVERS\bthpan.sys [119808 2012-07-26] (Microsoft Corporation) U3 BTHPORT; C:\Windows\System32\Drivers\BTHport.sys [1175040 2013-03-01] (Microsoft Corporation) U3 BTHUSB; C:\Windows\System32\Drivers\BTHUSB.sys [74752 2013-01-09] (Microsoft Corporation) U3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [121728 2012-08-27] (Motorola Solutions, Inc.) U3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [857472 2012-08-29] (Motorola Solutions, Inc.) U3 busenum; C:\Windows\System32\drivers\SteelBus64.sys [134656 2013-06-25] (SteelSeries Corporation) U4 cdfs; C:\Windows\System32\DRIVERS\cdfs.sys [108544 2012-07-26] (Microsoft Corporation) U1 cdrom; C:\Windows\System32\drivers\cdrom.sys [174080 2012-07-26] (Microsoft Corporation) U3 circlass; C:\Windows\System32\drivers\circlass.sys [45056 2012-07-26] (Microsoft Corporation) U0 CLFS; C:\Windows\System32\drivers\CLFS.sys [361200 2012-07-26] (Microsoft Corporation) U3 CmBatt; C:\Windows\System32\drivers\CmBatt.sys [25600 2012-07-26] (Microsoft Corporation) U0 CNG; C:\Windows\System32\Drivers\cng.sys [562392 2012-11-30] (Microsoft Corporation) U3 CompositeBus; C:\Windows\System32\drivers\CompositeBus.sys [36352 2012-07-26] (Microsoft Corporation) U3 condrv; C:\Windows\System32\drivers\condrv.sys [33792 2012-07-26] (Microsoft Corporation) U1 dam; C:\Windows\System32\drivers\dam.sys [58200 2013-08-16] (Microsoft Corporation) U3 DCamUSBEMPIA; C:\Windows\system32\DRIVERS\emDevice64.sys [215808 2007-06-21] (eMPIA Technology, Inc.) U1 Dfsc; C:\Windows\System32\Drivers\dfsc.sys [118784 2012-07-26] (Microsoft Corporation) U1 discache; C:\Windows\System32\drivers\discache.sys [50688 2012-07-26] (Microsoft Corporation) U0 disk; C:\Windows\System32\drivers\disk.sys [100696 2013-12-12] (Microsoft Corporation) U3 dmvsc; C:\Windows\System32\drivers\dmvsc.sys [33280 2012-07-26] (Microsoft Corporation) U3 drmkaud; C:\Windows\system32\drivers\drmkaud.sys [5632 2012-11-30] (Microsoft Corporation) U3 DXGKrnl; C:\Windows\System32\drivers\dxgkrnl.sys [1455448 2013-11-13] (Microsoft Corporation) U0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3265256 2012-11-30] (Broadcom Corporation) U0 EhStorClass; C:\Windows\System32\drivers\EhStorClass.sys [81136 2012-07-26] (Microsoft Corporation) U0 EhStorTcgDrv; C:\Windows\System32\drivers\EhStorTcgDrv.sys [113904 2012-07-26] (Microsoft Corporation) U3 emAudio; C:\Windows\system32\drivers\emAudio64.sys [79872 2007-08-31] (eMPIA Technology, Inc.) U3 ErrDev; C:\Windows\System32\drivers\errdev.sys [10240 2012-07-26] (Microsoft Corporation) U3 ETD; C:\Windows\system32\DRIVERS\ETD.sys [295760 2012-11-27] (ELAN Microelectronics Corp.) U3 exfat; C:\Windows\System32\Drivers\exfat.sys [194560 2012-07-26] (Microsoft Corporation) U3 fastfat; C:\Windows\System32\Drivers\fastfat.sys [210672 2012-07-26] (Microsoft Corporation) U3 fdc; C:\Windows\System32\drivers\fdc.sys [30720 2012-07-26] (Microsoft Corporation) U0 FileInfo; C:\Windows\System32\drivers\fileinfo.sys [71920 2012-07-26] (Microsoft Corporation) U4 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit) U3 Filetrace; C:\Windows\System32\drivers\filetrace.sys [34816 2012-07-26] (Microsoft Corporation) U3 FiltUSBEMPIA; C:\Windows\system32\DRIVERS\emFilter64.sys [6400 2007-06-21] (eMPIA Technology, Inc.) U3 flpydisk; C:\Windows\System32\drivers\flpydisk.sys [24576 2012-07-26] (Microsoft Corporation) U0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [374512 2012-07-26] (Microsoft Corporation) U3 FsDepends; C:\Windows\System32\drivers\FsDepends.sys [57584 2012-07-26] (Microsoft Corporation) U0 Fs_Rec; C:\Windows\System32\Drivers\Fs_Rec.sys [25328 2012-07-26] (Microsoft Corporation) U0 fvevol; C:\Windows\System32\DRIVERS\fvevol.sys [465240 2013-10-18] (Microsoft Corporation) U3 FxPPM; C:\Windows\System32\drivers\fxppm.sys [22528 2013-05-12] (Microsoft Corporation) U0 gagp30kx; C:\Windows\System32\drivers\gagp30kx.sys [66800 2012-07-26] (Microsoft Corporation) U3 gencounter; C:\Windows\System32\drivers\vmgencounter.sys [12288 2012-07-26] (Microsoft Corporation) U3 GPIOClx0101; C:\Windows\System32\Drivers\msgpioclx.sys [120144 2013-08-14] (Microsoft Corporation) U3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2013-11-29] (LogMeIn Inc.) U3 HdAudAddService; C:\Windows\system32\drivers\HdAudio.sys [341504 2013-08-14] (Microsoft Corporation) U3 HDAudBus; C:\Windows\System32\drivers\HDAudBus.sys [71168 2012-11-30] (Microsoft Corporation) U3 HidBatt; C:\Windows\System32\drivers\HidBatt.sys [27136 2012-07-26] (Microsoft Corporation) U3 HidBth; C:\Windows\System32\drivers\hidbth.sys [95744 2013-04-09] (Microsoft Corporation) U3 hidi2c; C:\Windows\System32\drivers\hidi2c.sys [39936 2012-11-20] (Microsoft Corporation) U3 HidIr; C:\Windows\System32\drivers\hidir.sys [46080 2012-07-26] (Microsoft Corporation) U3 HidUsb; C:\Windows\System32\drivers\hidusb.sys [27648 2013-05-04] (Microsoft Corporation) U0 HpSAMD; C:\Windows\System32\drivers\HpSAMD.sys [64752 2012-07-26] (Hewlett-Packard Company) U3 HTTP; C:\Windows\System32\drivers\HTTP.sys [861184 2013-03-15] (Microsoft Corporation) U0 hwpolicy; C:\Windows\System32\drivers\hwpolicy.sys [24816 2012-07-26] (Microsoft Corporation) U3 hyperkbd; C:\Windows\System32\drivers\hyperkbd.sys [11776 2012-07-26] (Microsoft Corporation) U3 HyperVideo; C:\Windows\system32\DRIVERS\HyperVideo.sys [24576 2012-07-26] (Microsoft Corporation) U3 i8042prt; C:\Windows\System32\drivers\i8042prt.sys [112640 2012-07-26] (Microsoft Corporation) U0 iaStorA; C:\Windows\System32\drivers\iaStorA.sys [647736 2012-09-02] (Intel Corporation) U0 iaStorV; C:\Windows\System32\drivers\iaStorV.sys [411888 2012-07-26] (Intel Corporation) U3 ibtfltcoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [68136 2012-08-06] (Intel Corporation) U3 igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [9004384 2012-11-27] (Intel Corporation) U0 iirsp; C:\Windows\System32\drivers\iirsp.sys [45296 2012-07-26] (Intel Corp./ICP vortex GmbH) U3 IntcAzAudAddService; C:\Windows\system32\drivers\RTKVHD64.sys [3760344 2014-01-08] (Realtek Semiconductor Corp.) U3 IntcDAud; C:\Windows\system32\DRIVERS\IntcDAud.sys [342528 2012-11-27] (Intel(R) Corporation) U0 intelide; C:\Windows\System32\drivers\intelide.sys [18672 2012-07-26] (Microsoft Corporation) U3 intelppm; C:\Windows\System32\drivers\intelppm.sys [89088 2013-05-12] (Microsoft Corporation) U3 IpFilterDriver; C:\Windows\System32\DRIVERS\ipfltdrv.sys [89088 2012-07-26] (Microsoft Corporation) U3 IPMIDRV; C:\Windows\System32\drivers\IPMIDrv.sys [78336 2012-07-26] (Microsoft Corporation) U3 IPNAT; C:\Windows\System32\drivers\ipnat.sys [145920 2012-07-26] (Microsoft Corporation) U3 IRENUM; C:\Windows\System32\drivers\irenum.sys [17920 2012-07-26] (Microsoft Corporation) U0 isapnp; C:\Windows\System32\drivers\isapnp.sys [22256 2012-07-26] (Microsoft Corporation) U3 iScsiPrt; C:\Windows\System32\drivers\msiscsi.sys [277736 2013-05-12] (Microsoft Corporation) U3 kbdclass; C:\Windows\System32\drivers\kbdclass.sys [48368 2012-07-26] (Microsoft Corporation) U3 kbdhid; C:\Windows\System32\drivers\kbdhid.sys [29184 2012-07-26] (Microsoft Corporation) U3 kdnic; C:\Windows\system32\DRIVERS\kdnic.sys [18432 2012-07-26] (Microsoft Corporation) U3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [163536 2013-03-20] (Qualcomm Atheros, Inc.) U0 KSecDD; C:\Windows\System32\Drivers\ksecdd.sys [100072 2012-11-30] (Microsoft Corporation) U0 KSecPkg; C:\Windows\System32\Drivers\ksecpkg.sys [172264 2012-11-30] (Microsoft Corporation) U3 ksthunk; C:\Windows\system32\drivers\ksthunk.sys [21376 2012-07-26] (Microsoft Corporation) U2 lltdio; C:\Windows\system32\DRIVERS\lltdio.sys [60416 2012-07-26] (Microsoft Corporation) U0 LSI_SAS; C:\Windows\System32\drivers\lsi_sas.sys [108784 2012-07-26] (LSI Corporation) U0 LSI_SAS2; C:\Windows\System32\drivers\lsi_sas2.sys [92400 2012-07-26] (LSI Corporation) U0 LSI_SCSI; C:\Windows\System32\drivers\lsi_scsi.sys [116976 2012-07-26] (LSI Corporation) U0 LSI_SSS; C:\Windows\System32\drivers\lsi_sss.sys [81136 2012-07-26] (LSI Corporation) U2 luafv; C:\Windows\system32\drivers\luafv.sys [134144 2012-07-26] (Microsoft Corporation) U3 MarvinBus; C:\Windows\System32\drivers\MarvinBus64.sys [261120 2005-09-23] (Pinnacle Systems GmbH) U3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) U3 MBfilt; C:\Windows\system32\drivers\MBfilt64.sys [32344 2012-11-27] (Creative Technology Ltd.) U0 megasas; C:\Windows\System32\drivers\megasas.sys [51952 2012-07-26] (LSI Corporation) U0 MegaSR; C:\Windows\System32\drivers\MegaSR.sys [353008 2012-07-26] (LSI Corporation, Inc.) U3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2014-01-21] (Intel Corporation) U3 Modem; C:\Windows\System32\drivers\modem.sys [40448 2012-07-26] (Microsoft Corporation) U3 monitor; C:\Windows\System32\drivers\monitor.sys [30720 2013-03-01] (Microsoft Corporation) U3 mouclass; C:\Windows\System32\drivers\mouclass.sys [45808 2012-07-26] (Microsoft Corporation) U3 mouhid; C:\Windows\System32\drivers\mouhid.sys [26112 2013-03-02] (Microsoft Corporation) U0 mountmgr; C:\Windows\System32\drivers\mountmgr.sys [93936 2012-07-26] (Microsoft Corporation) U3 mpsdrv; C:\Windows\System32\drivers\mpsdrv.sys [74752 2013-12-12] (Microsoft Corporation) U3 MRxDAV; C:\Windows\system32\drivers\mrxdav.sys [141312 2012-07-26] (Microsoft Corporation) U3 mrxsmb; C:\Windows\System32\DRIVERS\mrxsmb.sys [370688 2013-02-05] (Microsoft Corporation) U3 mrxsmb10; C:\Windows\System32\DRIVERS\mrxsmb10.sys [279552 2012-07-26] (Microsoft Corporation) U3 mrxsmb20; C:\Windows\System32\DRIVERS\mrxsmb20.sys [215552 2013-02-05] (Microsoft Corporation) U3 MsBridge; C:\Windows\system32\DRIVERS\bridge.sys [129536 2012-07-26] (Microsoft Corporation) U1 Msfs; C:\Windows\System32\Drivers\Msfs.sys [26112 2012-07-26] (Microsoft Corporation) U3 msgpiowin32; C:\Windows\System32\drivers\msgpiowin32.sys [28904 2013-01-10] (Microsoft Corporation) U3 mshidkmdf; C:\Windows\System32\drivers\mshidkmdf.sys [8704 2012-07-26] (Microsoft Corporation) U3 mshidumdf; C:\Windows\System32\drivers\mshidumdf.sys [10752 2012-07-26] (Microsoft Corporation) U0 msisadrv; C:\Windows\System32\drivers\msisadrv.sys [17136 2012-07-26] (Microsoft Corporation) U3 MSKSSRV; C:\Windows\system32\drivers\MSKSSRV.sys [11008 2012-07-26] (Microsoft Corporation) U3 MsLldp; C:\Windows\system32\DRIVERS\mslldp.sys [68608 2012-07-26] (Microsoft Corporation) U3 MSPCLOCK; C:\Windows\system32\drivers\MSPCLOCK.sys [7168 2012-07-26] (Microsoft Corporation) U3 MSPQM; C:\Windows\system32\drivers\MSPQM.sys [6912 2012-07-26] (Microsoft Corporation) U3 MsRPC; C:\Windows\System32\Drivers\MsRPC.sys [390896 2012-07-26] (Microsoft Corporation) U1 mssmbios; C:\Windows\System32\drivers\mssmbios.sys [37616 2012-07-26] (Microsoft Corporation) U3 MSTEE; C:\Windows\system32\drivers\MSTEE.sys [8192 2012-07-26] (Microsoft Corporation) U3 MTConfig; C:\Windows\System32\drivers\MTConfig.sys [14848 2012-07-26] (Microsoft Corporation) U0 Mup; C:\Windows\System32\Drivers\mup.sys [83696 2012-07-26] (Microsoft Corporation) U0 mvumis; C:\Windows\System32\drivers\mvumis.sys [64240 2012-07-26] (Marvell Semiconductor, Inc.) U3 NativeWifiP; C:\Windows\system32\DRIVERS\nwifi.sys [427520 2012-07-26] (Microsoft Corporation) U0 NDIS; C:\Windows\System32\drivers\ndis.sys [997632 2013-06-16] (Microsoft Corporation) U3 NdisCap; C:\Windows\system32\DRIVERS\ndiscap.sys [46592 2012-07-26] (Microsoft Corporation) U3 NdisImPlatform; C:\Windows\system32\DRIVERS\NdisImPlatform.sys [126464 2012-07-26] (Microsoft Corporation) U3 NdisTapi; C:\Windows\system32\DRIVERS\ndistapi.sys [25088 2012-11-30] (Microsoft Corporation) U3 Ndisuio; C:\Windows\system32\DRIVERS\ndisuio.sys [58880 2012-07-26] (Microsoft Corporation) U3 NdisWan; C:\Windows\system32\DRIVERS\ndiswan.sys [174080 2012-07-26] (Microsoft Corporation) U3 NDISWANLEGACY; C:\Windows\system32\DRIVERS\ndiswan.sys [174080 2012-07-26] (Microsoft Corporation) U3 NDProxy; C:\Windows\System32\Drivers\NDProxy.sys [60416 2013-04-09] (Microsoft Corporation) U2 Ndu; C:\Windows\System32\drivers\Ndu.sys [97792 2012-07-26] (Microsoft Corporation) U1 NetBIOS; C:\Windows\System32\DRIVERS\netbios.sys [46080 2012-07-26] (Microsoft Corporation) U1 NetBT; C:\Windows\System32\DRIVERS\netbt.sys [331776 2012-07-26] (Microsoft Corporation) U3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3343840 2014-01-21] (Intel Corporation) U0 nfrd960; C:\Windows\System32\drivers\nfrd960.sys [52464 2012-07-26] (IBM Corporation) U1 Npfs; C:\Windows\System32\Drivers\Npfs.sys [49152 2012-07-26] (Microsoft Corporation) U1 npsvctrig; C:\Windows\System32\drivers\npsvctrig.sys [23552 2012-07-26] (Microsoft Corporation) U1 nsiproxy; C:\Windows\System32\drivers\nsiproxy.sys [34304 2012-07-26] (Microsoft Corporation) U3 Ntfs; C:\Windows\System32\Drivers\Ntfs.sys [1933544 2013-02-02] (Microsoft Corporation) U3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [14136 2010-01-18] (MSI) U1 Null; C:\Windows\System32\Drivers\Null.sys [5632 2012-07-26] (Microsoft Corporation) U3 nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [11048736 2013-03-15] (NVIDIA Corporation) U0 nvpciflt; C:\Windows\System32\DRIVERS\nvpciflt.sys [30496 2013-03-15] (NVIDIA Corporation) U0 nvraid; C:\Windows\System32\drivers\nvraid.sys [150256 2012-07-26] (NVIDIA Corporation) U0 nvstor; C:\Windows\System32\drivers\nvstor.sys [168176 2012-07-26] (NVIDIA Corporation) U0 nv_agp; C:\Windows\System32\drivers\nv_agp.sys [125168 2012-07-26] (Microsoft Corporation) U3 Parport; C:\Windows\System32\drivers\parport.sys [105984 2012-07-26] (Microsoft Corporation) U0 partmgr; C:\Windows\System32\drivers\partmgr.sys [91880 2013-01-10] (Microsoft Corporation) U0 pci; C:\Windows\System32\drivers\pci.sys [234224 2012-07-26] (Microsoft Corporation) U0 pciide; C:\Windows\System32\drivers\pciide.sys [14064 2012-07-26] (Microsoft Corporation) U0 pcmcia; C:\Windows\System32\drivers\pcmcia.sys [237808 2012-07-26] (Microsoft Corporation) U0 pcw; C:\Windows\System32\drivers\pcw.sys [52464 2012-07-26] (Microsoft Corporation) U0 pdc; C:\Windows\System32\drivers\pdc.sys [69864 2013-03-02] (Microsoft Corporation) U2 PEAUTH; C:\Windows\System32\drivers\peauth.sys [805376 2013-04-09] (Microsoft Corporation) U3 PptpMiniport; C:\Windows\system32\DRIVERS\raspptp.sys [114176 2012-07-26] (Microsoft Corporation) U3 Processor; C:\Windows\System32\drivers\processr.sys [87552 2013-05-12] (Microsoft Corporation) U1 Psched; C:\Windows\system32\DRIVERS\pacer.sys [145408 2012-07-26] (Microsoft Corporation) U3 QWAVEdrv; C:\Windows\system32\drivers\qwavedrv.sys [46592 2012-07-26] (Microsoft Corporation) U3 RasAcd; C:\Windows\System32\DRIVERS\rasacd.sys [16384 2012-07-26] (Microsoft Corporation) U3 RasAgileVpn; C:\Windows\system32\DRIVERS\AgileVpn.sys [68608 2012-07-26] (Microsoft Corporation) U3 Rasl2tp; C:\Windows\system32\DRIVERS\rasl2tp.sys [124928 2012-07-26] (Microsoft Corporation) U3 RasPppoe; C:\Windows\system32\DRIVERS\raspppoe.sys [81920 2012-07-26] (Microsoft Corporation) U3 RasSstp; C:\Windows\system32\DRIVERS\rassstp.sys [92672 2012-07-26] (Microsoft Corporation) U1 rdbss; C:\Windows\System32\DRIVERS\rdbss.sys [427520 2013-05-04] (Microsoft Corporation) U3 rdpbus; C:\Windows\System32\drivers\rdpbus.sys [22528 2012-07-26] (Microsoft Corporation) U3 RDPDR; C:\Windows\System32\drivers\rdpdr.sys [179712 2012-07-26] (Microsoft Corporation) U3 RdpVideoMiniport; C:\Windows\System32\drivers\rdpvideominiport.sys [27880 2012-11-30] (Microsoft Corporation) U3 RDPWD; C:\Windows\System32\Drivers\RDPWD.sys [208384 2012-07-26] (Microsoft Corporation) U0 rdyboost; C:\Windows\System32\drivers\rdyboost.sys [217328 2012-07-26] (Microsoft Corporation) U3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2013-11-19] (IObit.com) U3 RFCOMM; C:\Windows\System32\drivers\rfcomm.sys [156672 2013-03-01] (Microsoft Corporation) U3 RSPCIESTOR; C:\Windows\system32\DRIVERS\RtsPStor.sys [347280 2014-01-08] (Realtek Semiconductor Corp.) U2 rspndr; C:\Windows\system32\DRIVERS\rspndr.sys [78848 2012-07-26] (Microsoft Corporation) U3 RTL8168; C:\Windows\system32\DRIVERS\Rt630x64.sys [589824 2012-06-02] (Realtek ) U3 s3cap; C:\Windows\System32\drivers\vms3cap.sys [7168 2012-07-26] (Microsoft Corporation) U3 SAlphamHid; C:\Windows\System32\drivers\SAlpham64.sys [38016 2013-08-11] (SteelSeries Corporation) U0 sbp2port; C:\Windows\System32\drivers\sbp2port.sys [107760 2012-07-26] (Microsoft Corporation) U3 ScanUSBEMPIA; C:\Windows\system32\DRIVERS\emScan64.sys [6144 2007-06-21] (eMPIA Technology, Inc.) U3 scfilter; C:\Windows\System32\DRIVERS\scfilter.sys [36864 2012-07-26] (Microsoft Corporation) U3 sdbus; C:\Windows\System32\drivers\sdbus.sys [195416 2013-08-14] (Microsoft Corporation) U3 sdstor; C:\Windows\System32\drivers\sdstor.sys [56552 2012-11-30] (Microsoft Corporation) U2 secdrv; C:\Windows\System32\Drivers\secdrv.sys [23040 2012-07-26] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) U3 SerCx; C:\Windows\System32\drivers\SerCx.sys [62976 2012-07-26] (Microsoft Corporation) U3 Serenum; C:\Windows\System32\drivers\serenum.sys [23040 2012-07-26] (Microsoft Corporation) U3 Serial; C:\Windows\System32\drivers\serial.sys [76800 2012-07-26] (Microsoft Corporation) U3 sermouse; C:\Windows\System32\drivers\sermouse.sys [27136 2012-07-26] (Microsoft Corporation) U3 sfloppy; C:\Windows\System32\drivers\sfloppy.sys [16896 2012-07-26] (Microsoft Corporation) U0 SiSRaid2; C:\Windows\System32\drivers\SiSRaid2.sys [44784 2012-07-26] (Silicon Integrated Systems Corp.) U0 SiSRaid4; C:\Windows\System32\drivers\sisraid4.sys [81648 2012-07-26] (Silicon Integrated Systems) U0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [17720 2013-05-22] () U3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [32496 2014-01-08] (Synaptics Incorporated) U0 spaceport; C:\Windows\System32\drivers\spaceport.sys [285016 2013-11-13] (Microsoft Corporation) U3 SpbCx; C:\Windows\System32\drivers\SpbCx.sys [59392 2012-07-26] (Microsoft Corporation) U3 srv; C:\Windows\System32\DRIVERS\srv.sys [416768 2012-07-26] (Microsoft Corporation) U3 srv2; C:\Windows\System32\DRIVERS\srv2.sys [623104 2013-04-09] (Microsoft Corporation) U3 srvnet; C:\Windows\System32\DRIVERS\srvnet.sys [247808 2013-04-09] (Microsoft Corporation) U0 stexstor; C:\Windows\System32\drivers\stexstor.sys [30960 2012-07-26] (Promise Technology, Inc.) U0 storahci; C:\Windows\System32\drivers\storahci.sys [77544 2013-03-02] (Microsoft Corporation) U0 storflt; C:\Windows\System32\DRIVERS\vmstorfl.sys [45160 2012-07-26] (Microsoft Corporation) U0 storvsc; C:\Windows\System32\drivers\storvsc.sys [37992 2012-07-26] (Microsoft Corporation) U3 swenum; C:\Windows\System32\drivers\swenum.sys [13680 2012-07-26] (Microsoft Corporation) U0 Tcpip; C:\Windows\System32\drivers\tcpip.sys [2232664 2014-01-21] (Microsoft Corporation) U3 TCPIP6; C:\Windows\system32\DRIVERS\tcpip.sys [2232664 2014-01-21] (Microsoft Corporation) U2 tcpipreg; C:\Windows\System32\drivers\tcpipreg.sys [45056 2012-07-26] (Microsoft Corporation) U1 tdx; C:\Windows\system32\DRIVERS\tdx.sys [117248 2012-07-26] (Microsoft Corporation) U3 terminpt; C:\Windows\System32\drivers\terminpt.sys [36592 2012-07-26] (Microsoft Corporation) U3 TPM; C:\Windows\system32\drivers\tpm.sys [151896 2013-10-18] (Microsoft Corporation) U3 TsUsbFlt; C:\Windows\System32\drivers\tsusbflt.sys [57344 2012-07-26] (Microsoft Corporation) U3 TsUsbGD; C:\Windows\System32\drivers\TsUsbGD.sys [30208 2012-07-26] (Microsoft Corporation) U3 tunnel; C:\Windows\system32\DRIVERS\tunnel.sys [149504 2012-07-26] (Microsoft Corporation) U0 uagp35; C:\Windows\System32\drivers\uagp35.sys [65776 2012-07-26] (Microsoft Corporation) U3 UASPStor; C:\Windows\System32\drivers\uaspstor.sys [97008 2012-07-26] (Microsoft Corporation) U3 UCX01000; C:\Windows\System32\drivers\ucx01000.sys [213336 2013-07-02] (Microsoft Corporation) U4 udfs; C:\Windows\System32\DRIVERS\udfs.sys [321536 2013-08-14] (Microsoft Corporation) U0 uliagpkx; C:\Windows\System32\drivers\uliagpkx.sys [66800 2012-07-26] (Microsoft Corporation) U3 umbus; C:\Windows\System32\drivers\umbus.sys [48128 2012-07-26] (Microsoft Corporation) U3 UmPass; C:\Windows\System32\drivers\umpass.sys [11776 2012-07-26] (Microsoft Corporation) U3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-11-19] (IObit.com) U3 usbaudio; C:\Windows\system32\drivers\usbaudio.sys [121984 2013-07-05] (Microsoft Corporation) U3 usbccgp; C:\Windows\System32\drivers\usbccgp.sys [120832 2013-06-29] (Microsoft Corporation) U3 usbcir; C:\Windows\System32\drivers\usbcir.sys [99328 2013-07-05] (Microsoft Corporation) U3 usbehci; C:\Windows\System32\drivers\usbehci.sys [79192 2013-07-01] (Microsoft Corporation) U3 usbhub; C:\Windows\System32\drivers\usbhub.sys [623448 2013-07-01] (Microsoft Corporation) U3 USBHUB3; C:\Windows\System32\drivers\UsbHub3.sys [447320 2013-11-13] (Microsoft Corporation) U3 usbohci; C:\Windows\System32\drivers\usbohci.sys [27136 2012-11-20] (Microsoft Corporation) U3 usbprint; C:\Windows\System32\drivers\usbprint.sys [25600 2013-07-01] (Microsoft Corporation) U3 USBSTOR; C:\Windows\System32\drivers\USBSTOR.SYS [119040 2013-08-14] (Microsoft Corporation) U3 usbuhci; C:\Windows\System32\drivers\usbuhci.sys [32256 2013-06-29] (Microsoft Corporation) U3 usbvideo; C:\Windows\System32\Drivers\usbvideo.sys [210560 2013-07-05] (Microsoft Corporation) U3 USBXHCI; C:\Windows\System32\drivers\USBXHCI.SYS [337752 2013-07-02] (Microsoft Corporation) U0 vdrvroot; C:\Windows\System32\drivers\vdrvroot.sys [36080 2012-07-26] (Microsoft Corporation) U3 VerifierExt; C:\Windows\System32\drivers\VerifierExt.sys [106224 2012-07-26] (Microsoft Corporation) U3 vhdmp; C:\Windows\System32\drivers\vhdmp.sys [495336 2013-03-02] (Microsoft Corporation) U0 viaide; C:\Windows\System32\drivers\viaide.sys [19184 2012-07-26] (VIA Technologies, Inc.) U0 vmbus; C:\Windows\System32\drivers\vmbus.sys [137832 2012-07-26] (Microsoft Corporation) U3 VMBusHID; C:\Windows\System32\drivers\VMBusHID.sys [22144 2012-07-26] (Microsoft Corporation) U0 volmgr; C:\Windows\System32\drivers\volmgr.sys [83184 2012-07-26] (Microsoft Corporation) U0 volmgrx; C:\Windows\System32\drivers\volmgrx.sys [378608 2012-07-26] (Microsoft Corporation) U0 volsnap; C:\Windows\System32\drivers\volsnap.sys [327936 2013-07-16] (Microsoft Corporation) U3 vpci; C:\Windows\System32\drivers\vpci.sys [67824 2012-07-26] (Microsoft Corporation) U0 vsmraid; C:\Windows\System32\drivers\vsmraid.sys [164080 2012-07-26] (VIA Technologies Inc.,Ltd) U0 VSTXRAID; C:\Windows\System32\drivers\vstxraid.sys [322800 2012-07-26] (VIA Corporation) U3 vwifibus; C:\Windows\System32\drivers\vwifibus.sys [24064 2012-07-26] (Microsoft Corporation) U1 vwififlt; C:\Windows\system32\DRIVERS\vwififlt.sys [64000 2012-07-26] (Microsoft Corporation) U3 vwifimp; C:\Windows\system32\DRIVERS\vwifimp.sys [17920 2012-07-26] (Microsoft Corporation) U3 WacomPen; C:\Windows\System32\drivers\wacompen.sys [27008 2012-07-26] (Microsoft Corporation) U3 Wanarp; C:\Windows\system32\DRIVERS\wanarp.sys [83456 2013-04-09] (Microsoft Corporation) U1 Wanarpv6; C:\Windows\system32\DRIVERS\wanarp.sys [83456 2013-04-09] (Microsoft Corporation) U0 Wd; C:\Windows\System32\drivers\wd.sys [23792 2012-07-26] (Microsoft Corporation) U3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [36288 2013-07-02] (Microsoft Corporation) U0 Wdf01000; C:\Windows\System32\drivers\Wdf01000.sys [785624 2013-06-22] (Microsoft Corporation) U3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [247216 2013-07-01] (Microsoft Corporation) U0 WFPLWFS; C:\Windows\System32\DRIVERS\wfplwfs.sys [96600 2013-11-13] (Microsoft Corporation) U3 WIMMount; C:\Windows\System32\drivers\wimmount.sys [33520 2012-07-26] (Microsoft Corporation) U3 WmiAcpi; C:\Windows\System32\drivers\wmiacpi.sys [17408 2012-07-26] (Microsoft Corporation) U3 wpcfltr; C:\Windows\System32\DRIVERS\wpcfltr.sys [45056 2012-07-26] (Microsoft Corporation) U3 WpdUpFltr; C:\Windows\System32\drivers\WpdUpFltr.sys [19968 2012-07-26] (Microsoft Corporation) U4 ws2ifsl; C:\Windows\system32\drivers\ws2ifsl.sys [22528 2012-11-30] (Microsoft Corporation) U3 WudfPf; C:\Windows\System32\drivers\WudfPf.sys [87040 2012-07-26] (Microsoft Corporation) U3 WUDFRd; C:\Windows\System32\drivers\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation) U3 WUDFWpdFs; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation) U3 xusb22; C:\Windows\System32\drivers\xusb22.sys [89088 2012-07-26] (Microsoft Corporation) U5 BattC; C:\Windows\System32\Drivers\BattC.sys [33512 2012-11-30] (Microsoft Corporation) U3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-28 23:20 - 2014-01-28 23:20 - 02079232 _____ (Farbar) C:\Users\0TAKU\Downloads\FRST64.exe 2014-01-28 23:20 - 2014-01-28 23:20 - 00077186 _____ C:\Users\0TAKU\Downloads\FRST.txt 2014-01-28 23:20 - 2014-01-28 23:20 - 00000000 ____D C:\Users\0TAKU\Downloads\FRST-OlderVersion 2014-01-26 11:27 - 2014-01-26 11:27 - 04956160 _____ C:\Windows\system32\config\drivers.iodefrag.bak 2014-01-26 11:27 - 2014-01-26 11:27 - 00000000 _____ C:\asc_rdflag 2014-01-25 21:13 - 2014-01-28 21:23 - 00165575 _____ C:\Windows\WindowsUpdate.log 2014-01-25 21:11 - 2012-12-07 00:17 - 00000278 _____ C:\Users\0TAKU\Downloads\YouTube Alignment Fix By Venoxcide.user.js 2014-01-25 21:10 - 2014-01-25 21:10 - 00000280 _____ C:\Users\0TAKU\Downloads\YouTube Alignment Fix By Venoxcide.rar 2014-01-25 20:54 - 2014-01-25 20:54 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Spoon 2014-01-25 20:52 - 2014-01-28 13:00 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-25 20:51 - 2014-01-25 20:51 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.005 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.004 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.003 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.002 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.001 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.000 2014-01-24 11:22 - 2014-01-24 11:23 - 00000000 ____D C:\ProgramData\Oracle 2014-01-24 11:22 - 2014-01-24 11:22 - 00005933 _____ C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-24 11:22 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-24 11:22 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-24 11:22 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-24 11:22 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-24 11:20 - 2014-01-24 11:20 - 00921000 _____ (Oracle Corporation) C:\Users\0TAKU\Downloads\chromeinstall-7u51.exe 2014-01-23 14:38 - 2014-01-23 14:38 - 00987425 _____ C:\Users\0TAKU\Downloads\SecurityCheck.exe 2014-01-22 23:15 - 2014-01-22 23:15 - 02347384 _____ (ESET) C:\Users\0TAKU\Downloads\esetsmartinstaller_enu.exe 2014-01-22 11:57 - 2014-01-22 11:57 - 00000000 ____D C:\Windows\ERUNT 2014-01-22 11:48 - 2014-01-22 11:50 - 00000000 ____D C:\AdwCleaner 2014-01-22 11:38 - 2014-01-22 11:38 - 00001137 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Malwarebytes 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-22 11:37 - 2014-01-22 11:38 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-22 11:37 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-01-22 10:52 - 2014-01-22 10:52 - 01236282 _____ C:\Users\0TAKU\Downloads\adwcleaner.exe 2014-01-22 10:52 - 2014-01-22 10:52 - 01037068 _____ (Thisisu) C:\Users\0TAKU\Downloads\JRT.exe 2014-01-22 10:51 - 2014-01-22 10:52 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\0TAKU\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-21 13:23 - 2014-01-28 23:20 - 00000000 ____D C:\FRST 2014-01-21 12:32 - 2014-01-21 12:32 - 00000000 ____D C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8 2014-01-21 12:30 - 2014-01-21 12:31 - 13474267 _____ C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8.zip 2014-01-21 12:00 - 2014-01-26 11:27 - 72179712 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-01-21 12:00 - 2014-01-26 11:27 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-01-21 12:00 - 2014-01-26 11:27 - 00069632 _____ C:\Windows\system32\config\SAM.iodefrag.bak 2014-01-21 12:00 - 2014-01-26 11:27 - 00028672 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-01-21 11:53 - 2014-01-21 11:53 - 00000000 ____D C:\Users\0TAKU\Downloads\thx bckup 2014-01-21 11:29 - 2014-01-21 11:29 - 00165236 _____ C:\Users\0TAKU\Downloads\Extras.Txt 2014-01-21 11:28 - 2014-01-21 11:28 - 00154666 _____ C:\Users\0TAKU\Downloads\OTL.Txt 2014-01-21 11:18 - 2014-01-21 11:18 - 00602112 _____ (OldTimer Tools) C:\Users\0TAKU\Downloads\OTL.exe 2014-01-21 10:56 - 2003-06-12 23:25 - 00007062 _____ C:\Windows\SysWOW64\audiopid.vxd 2014-01-21 10:39 - 2014-01-21 10:39 - 00000000 ____D C:\Program Files (x86)\SCM 2014-01-21 10:32 - 2014-01-21 10:27 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-21 10:32 - 2014-01-21 10:27 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-21 10:28 - 2014-01-21 10:28 - 00000000 ____D C:\Users\0TAKU\Downloads\scm_10.013.06287 2014-01-21 10:28 - 2013-12-07 07:37 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2014-01-21 10:28 - 2013-12-07 07:37 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-21 10:28 - 2013-12-07 06:15 - 00562688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-01-21 10:28 - 2013-12-07 06:15 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-21 10:27 - 2014-01-21 10:27 - 02232664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-01-21 10:27 - 2014-01-21 10:27 - 00385614 _____ C:\Windows\system32\ApnDatabase.xml 2014-01-21 10:27 - 2014-01-21 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-01-21 10:19 - 2014-01-27 07:09 - 00000272 _____ C:\Windows\Tasks\ASC7_SkipUac_Otaku Attacks.job 2014-01-21 10:19 - 2014-01-21 10:19 - 00003110 _____ C:\Windows\System32\Tasks\ASC7_PerformanceMonitor 2014-01-21 10:19 - 2014-01-21 10:19 - 00002388 _____ C:\Windows\System32\Tasks\ASC7_SkipUac_Otaku Attacks 2014-01-21 10:18 - 2014-01-28 12:59 - 00000314 _____ C:\Windows\Tasks\Driver Booster Update.job 2014-01-21 10:18 - 2014-01-21 11:10 - 00003232 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2014-01-21 10:13 - 2014-01-21 10:15 - 15309848 _____ (IObit ) C:\Users\0TAKU\Downloads\driver_booster_setup.exe 2014-01-21 10:07 - 2014-01-21 10:07 - 06186128 _____ C:\Windows\system32\Drivers\Netwfw00.dat 2014-01-21 10:07 - 2014-01-21 10:07 - 03343840 _____ (Intel Corporation) C:\Windows\system32\Drivers\NETwew00.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-01-21 10:07 - 2014-01-21 10:07 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-01-21 09:58 - 2014-01-21 09:58 - 00002406 _____ C:\Windows\System32\Tasks\ASC7U_SkipUac_Otaku Attacks 2014-01-21 09:58 - 2014-01-21 09:58 - 00000290 _____ C:\Windows\Tasks\ASC7U_SkipUac_Otaku Attacks.job 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit 2014-01-20 23:09 - 2014-01-20 23:14 - 24842080 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-arm.msu 2014-01-20 22:57 - 2014-01-20 23:00 - 45609763 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-x64.msu 2014-01-20 22:06 - 2014-01-21 09:40 - 00000000 ____D C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424} 2014-01-20 22:06 - 2014-01-20 22:06 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled 2014-01-20 21:43 - 2014-01-22 11:53 - 00000000 ____D C:\ProgramData\ProductData 2014-01-20 21:05 - 2014-01-20 21:06 - 03565421 _____ C:\Users\0TAKU\Downloads\scm_10.013.06287.zip 2014-01-20 20:58 - 2014-01-28 23:19 - 00000000 ____D C:\Users\0TAKU\Downloads\sbar20_21012_04278 2014-01-20 20:53 - 2014-01-20 20:57 - 13301679 _____ C:\Users\0TAKU\Downloads\sbar20_21012_04278.zip 2014-01-15 15:43 - 2014-01-15 15:48 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\TeamViewer 2014-01-15 15:17 - 2014-01-15 15:17 - 00000000 ____H C:\Users\0TAKU\Documents\Default.rdp 2014-01-13 18:00 - 2014-01-13 18:00 - 00017920 ___SH C:\Users\0TAKU\Documents\Thumbs.db 2014-01-11 00:06 - 2014-01-12 00:29 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Awesomium 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\Users\0TAKU\Documents\Elder Scrolls Online 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\ProgramData\Elder Scrolls Online 2014-01-08 20:11 - 2014-01-08 20:11 - 00000000 __SHD C:\ProgramData\DSS 2014-01-08 20:08 - 2014-01-08 20:08 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2014-01-08 13:32 - 2014-01-08 13:32 - 00000000 ____D C:\Windows\amlog 2014-01-08 13:21 - 2014-01-08 14:21 - 00001318 _____ C:\Windows\ampa.ini 2014-01-08 13:17 - 2014-01-08 13:17 - 00001024 ____H C:\AMTAG.BIN 2014-01-08 13:16 - 2014-01-08 13:17 - 08027680 _____ (AOMEI Technology Co., Ltd. ) C:\Users\0TAKU\Downloads\PAssist_Std_5.5.exe 2014-01-08 11:36 - 2014-01-08 11:36 - 00001088 _____ C:\Users\0TAKU\Desktop\The Elder Scrolls Online Beta.lnk 2014-01-08 11:31 - 2014-01-08 11:35 - 55903624 _____ ( ) C:\Users\0TAKU\Downloads\Install_ESO_Beta.exe 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____D C:\Program Files\Synaptics 2014-01-08 10:14 - 2014-01-08 10:14 - 03760344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-08 10:14 - 2014-01-08 10:14 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02588888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-08 10:14 - 2014-01-08 10:14 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01013504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00693329 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-08 10:14 - 2014-01-08 10:14 - 00628504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00618200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00563992 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00397080 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00154840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00032496 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 09888912 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsPStorIcon.dll 2014-01-08 10:13 - 2014-01-08 10:13 - 00347280 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsPStor.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 00064624 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2014-01-07 15:23 - 2014-01-28 13:54 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn Hamachi 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\ProgramData\LogMeIn 2014-01-07 15:10 - 2014-01-07 15:10 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2014-01-04 04:17 - 2014-01-04 04:17 - 71483392 _____ C:\Windows\system32\config\SOFTWARE.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00069632 _____ C:\Windows\system32\config\SAM.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00028672 _____ C:\Windows\system32\config\SECURITY.iobit 2014-01-02 17:19 - 2014-01-05 17:18 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Valdis_Story_AC 2014-01-02 16:08 - 2014-01-02 16:08 - 00000000 ____D C:\Users\0TAKU\Documents\VVVVVV ==================== One Month Modified Files and Folders ======= 2014-01-28 23:20 - 2014-01-28 23:20 - 02079232 _____ (Farbar) C:\Users\0TAKU\Downloads\FRST64.exe 2014-01-28 23:20 - 2014-01-28 23:20 - 00077186 _____ C:\Users\0TAKU\Downloads\FRST.txt 2014-01-28 23:20 - 2014-01-28 23:20 - 00000000 ____D C:\Users\0TAKU\Downloads\FRST-OlderVersion 2014-01-28 23:20 - 2014-01-21 13:23 - 00000000 ____D C:\FRST 2014-01-28 23:19 - 2014-01-20 20:58 - 00000000 ____D C:\Users\0TAKU\Downloads\sbar20_21012_04278 2014-01-28 23:19 - 2013-05-11 23:17 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Skype 2014-01-28 23:03 - 2013-05-11 17:35 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-28 23:00 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\sru 2014-01-28 21:47 - 2013-11-14 16:25 - 00000015 _____ C:\Users\0TAKU\AppData\Roaming\A.c199807a9ba5ab306db172f530f9b9e01.resizer_settings 2014-01-28 21:23 - 2014-01-25 21:13 - 00165575 _____ C:\Windows\WindowsUpdate.log 2014-01-28 14:12 - 2013-11-27 18:29 - 00000000 ____D C:\Users\0TAKU\Documents\LoL Guides and stuff 2014-01-28 13:54 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn Hamachi 2014-01-28 13:54 - 2013-05-11 17:48 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Winamp 2014-01-28 13:45 - 2013-05-11 13:50 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Adobe 2014-01-28 13:00 - 2014-01-25 20:52 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-28 12:59 - 2014-01-21 10:18 - 00000314 _____ C:\Windows\Tasks\Driver Booster Update.job 2014-01-28 12:59 - 2013-05-11 17:35 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-28 12:59 - 2012-07-26 08:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-27 23:40 - 2013-10-09 18:27 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Battle.net 2014-01-27 13:40 - 2013-05-14 13:19 - 00485714 _____ C:\Windows\system32\perfh011.dat 2014-01-27 13:40 - 2013-05-14 13:19 - 00133088 _____ C:\Windows\system32\perfc011.dat 2014-01-27 13:40 - 2012-11-22 09:13 - 00754172 _____ C:\Windows\system32\perfh007.dat 2014-01-27 13:40 - 2012-11-22 09:13 - 00156362 _____ C:\Windows\system32\perfc007.dat 2014-01-27 13:40 - 2012-07-26 08:28 - 02367698 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-27 09:41 - 2013-05-11 13:59 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3692658341-3007664735-862192700-1002 2014-01-27 08:23 - 2013-07-03 17:18 - 00000000 ____D C:\Users\0TAKU\Desktop\Games 2014-01-27 07:16 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\NDF 2014-01-27 07:09 - 2014-01-21 10:19 - 00000272 _____ C:\Windows\Tasks\ASC7_SkipUac_Otaku Attacks.job 2014-01-26 13:26 - 2013-05-11 18:50 - 00000000 ____D C:\Users\0TAKU\Documents\DragonNest 2014-01-26 11:27 - 2014-01-26 11:27 - 04956160 _____ C:\Windows\system32\config\drivers.iodefrag.bak 2014-01-26 11:27 - 2014-01-26 11:27 - 00000000 _____ C:\asc_rdflag 2014-01-26 11:27 - 2014-01-21 12:00 - 72179712 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-01-26 11:27 - 2014-01-21 12:00 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-01-26 11:27 - 2014-01-21 12:00 - 00069632 _____ C:\Windows\system32\config\SAM.iodefrag.bak 2014-01-26 11:27 - 2014-01-21 12:00 - 00028672 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-01-26 11:27 - 2013-05-11 13:44 - 00000000 ____D C:\Users\0TAKU 2014-01-25 21:10 - 2014-01-25 21:10 - 00000280 _____ C:\Users\0TAKU\Downloads\YouTube Alignment Fix By Venoxcide.rar 2014-01-25 20:54 - 2014-01-25 20:54 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Spoon 2014-01-25 20:52 - 2013-12-05 02:17 - 00001976 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-25 20:51 - 2014-01-25 20:51 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-25 20:51 - 2013-12-20 18:04 - 00080184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-01-25 20:51 - 2013-11-06 16:38 - 00421704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2014-01-25 20:51 - 2013-05-12 09:24 - 01038072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-25 20:51 - 2013-05-12 09:24 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-25 20:51 - 2013-05-12 09:24 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.005 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.004 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.003 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.002 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.001 2014-01-25 19:04 - 2014-01-25 19:04 - 00000000 __SHD C:\found.000 2014-01-24 11:23 - 2014-01-24 11:22 - 00000000 ____D C:\ProgramData\Oracle 2014-01-24 11:22 - 2014-01-24 11:22 - 00005933 _____ C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-24 11:22 - 2013-05-12 20:35 - 00000000 ____D C:\Program Files (x86)\Java 2014-01-24 11:20 - 2014-01-24 11:20 - 00921000 _____ (Oracle Corporation) C:\Users\0TAKU\Downloads\chromeinstall-7u51.exe 2014-01-23 14:38 - 2014-01-23 14:38 - 00987425 _____ C:\Users\0TAKU\Downloads\SecurityCheck.exe 2014-01-22 23:15 - 2014-01-22 23:15 - 02347384 _____ (ESET) C:\Users\0TAKU\Downloads\esetsmartinstaller_enu.exe 2014-01-22 11:57 - 2014-01-22 11:57 - 00000000 ____D C:\Windows\ERUNT 2014-01-22 11:53 - 2014-01-20 21:43 - 00000000 ____D C:\ProgramData\ProductData 2014-01-22 11:50 - 2014-01-22 11:48 - 00000000 ____D C:\AdwCleaner 2014-01-22 11:38 - 2014-01-22 11:38 - 00001137 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Malwarebytes 2014-01-22 11:38 - 2014-01-22 11:38 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-22 11:38 - 2014-01-22 11:37 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-22 10:52 - 2014-01-22 10:52 - 01236282 _____ C:\Users\0TAKU\Downloads\adwcleaner.exe 2014-01-22 10:52 - 2014-01-22 10:52 - 01037068 _____ (Thisisu) C:\Users\0TAKU\Downloads\JRT.exe 2014-01-22 10:52 - 2014-01-22 10:51 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\0TAKU\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-22 05:58 - 2013-05-25 18:37 - 00000000 ____D C:\Windows\Minidump 2014-01-21 21:06 - 2013-05-12 20:36 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\.minecraft 2014-01-21 12:32 - 2014-01-21 12:32 - 00000000 ____D C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8 2014-01-21 12:31 - 2014-01-21 12:30 - 13474267 _____ C:\Users\0TAKU\Downloads\THX_TruStudioPRO_MSI_Ref3_win8.zip 2014-01-21 11:53 - 2014-01-21 11:53 - 00000000 ____D C:\Users\0TAKU\Downloads\thx bckup 2014-01-21 11:37 - 2012-11-30 06:59 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-21 11:29 - 2014-01-21 11:29 - 00165236 _____ C:\Users\0TAKU\Downloads\Extras.Txt 2014-01-21 11:28 - 2014-01-21 11:28 - 00154666 _____ C:\Users\0TAKU\Downloads\OTL.Txt 2014-01-21 11:18 - 2014-01-21 11:18 - 00602112 _____ (OldTimer Tools) C:\Users\0TAKU\Downloads\OTL.exe 2014-01-21 11:10 - 2014-01-21 10:18 - 00003232 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2014-01-21 10:42 - 2013-08-14 15:06 - 00000000 ____D C:\Windows\system32\MRT 2014-01-21 10:40 - 2013-05-11 15:47 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-21 10:40 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\WinStore 2014-01-21 10:39 - 2014-01-21 10:39 - 00000000 ____D C:\Program Files (x86)\SCM 2014-01-21 10:28 - 2014-01-21 10:28 - 00000000 ____D C:\Users\0TAKU\Downloads\scm_10.013.06287 2014-01-21 10:27 - 2014-01-21 10:32 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-21 10:27 - 2014-01-21 10:32 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-21 10:27 - 2014-01-21 10:27 - 02232664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-01-21 10:27 - 2014-01-21 10:27 - 00385614 _____ C:\Windows\system32\ApnDatabase.xml 2014-01-21 10:27 - 2014-01-21 10:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-01-21 10:19 - 2014-01-21 10:19 - 00003110 _____ C:\Windows\System32\Tasks\ASC7_PerformanceMonitor 2014-01-21 10:19 - 2014-01-21 10:19 - 00002388 _____ C:\Windows\System32\Tasks\ASC7_SkipUac_Otaku Attacks 2014-01-21 10:19 - 2013-05-12 10:13 - 00000000 ____D C:\Program Files (x86)\IObit 2014-01-21 10:15 - 2014-01-21 10:13 - 15309848 _____ (IObit ) C:\Users\0TAKU\Downloads\driver_booster_setup.exe 2014-01-21 10:08 - 2012-07-26 06:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2014-01-21 10:07 - 2014-01-21 10:07 - 06186128 _____ C:\Windows\system32\Drivers\Netwfw00.dat 2014-01-21 10:07 - 2014-01-21 10:07 - 03343840 _____ (Intel Corporation) C:\Windows\system32\Drivers\NETwew00.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-01-21 10:07 - 2014-01-21 10:07 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-01-21 10:07 - 2014-01-21 10:07 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-01-21 09:58 - 2014-01-21 09:58 - 00002406 _____ C:\Windows\System32\Tasks\ASC7U_SkipUac_Otaku Attacks 2014-01-21 09:58 - 2014-01-21 09:58 - 00000290 _____ C:\Windows\Tasks\ASC7U_SkipUac_Otaku Attacks.job 2014-01-21 09:43 - 2013-11-07 08:48 - 00000000 ____D C:\Users\Gast 2014-01-21 09:43 - 2013-11-04 16:49 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo 2014-01-21 09:43 - 2013-10-09 18:27 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Battle.net 2014-01-21 09:43 - 2012-07-26 09:12 - 00000000 __RHD C:\Users\Public\Libraries 2014-01-21 09:41 - 2013-05-12 10:14 - 00000000 ____D C:\ProgramData\IObit 2014-01-21 09:41 - 2013-05-12 10:13 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\IObit 2014-01-21 09:41 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2014-01-21 09:41 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\Macromed 2014-01-21 09:41 - 2012-07-26 06:38 - 00000000 ____D C:\Windows\system32\Sysprep 2014-01-21 09:40 - 2014-01-20 22:06 - 00000000 ____D C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424} 2014-01-21 09:39 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\registration 2014-01-21 09:36 - 2013-05-11 17:35 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Google 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit 2014-01-21 07:39 - 2014-01-21 07:39 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit 2014-01-20 23:14 - 2014-01-20 23:09 - 24842080 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-arm.msu 2014-01-20 23:00 - 2014-01-20 22:57 - 45609763 _____ C:\Users\0TAKU\Downloads\Windows8-RT-KB2750149-x64.msu 2014-01-20 22:32 - 2012-11-22 07:59 - 00000000 ____D C:\Windows\Panther 2014-01-20 22:06 - 2014-01-20 22:06 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled 2014-01-20 21:06 - 2014-01-20 21:05 - 03565421 _____ C:\Users\0TAKU\Downloads\scm_10.013.06287.zip 2014-01-20 20:57 - 2014-01-20 20:53 - 13301679 _____ C:\Users\0TAKU\Downloads\sbar20_21012_04278.zip 2014-01-15 15:48 - 2014-01-15 15:43 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\TeamViewer 2014-01-15 15:17 - 2014-01-15 15:17 - 00000000 ____H C:\Users\0TAKU\Documents\Default.rdp 2014-01-13 18:00 - 2014-01-13 18:00 - 00017920 ___SH C:\Users\0TAKU\Documents\Thumbs.db 2014-01-12 00:29 - 2014-01-11 00:06 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\Awesomium 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\Users\0TAKU\Documents\Elder Scrolls Online 2014-01-10 14:17 - 2014-01-10 14:17 - 00000000 ____D C:\ProgramData\Elder Scrolls Online 2014-01-10 12:15 - 2013-05-12 19:50 - 00000000 ____D C:\Users\0TAKU\AppData\Roaming\vlc 2014-01-09 17:31 - 2013-08-31 14:06 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Game Dev Tycoon - Steam 2014-01-08 20:11 - 2014-01-08 20:11 - 00000000 __SHD C:\ProgramData\DSS 2014-01-08 20:11 - 2013-08-31 15:33 - 00000000 ____D C:\Users\0TAKU\Documents\EA Games 2014-01-08 20:11 - 2013-07-06 12:53 - 00000000 ____D C:\ProgramData\Electronic Arts 2014-01-08 20:08 - 2014-01-08 20:08 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2014-01-08 14:21 - 2014-01-08 13:21 - 00001318 _____ C:\Windows\ampa.ini 2014-01-08 13:32 - 2014-01-08 13:32 - 00000000 ____D C:\Windows\amlog 2014-01-08 13:17 - 2014-01-08 13:17 - 00001024 ____H C:\AMTAG.BIN 2014-01-08 13:17 - 2014-01-08 13:16 - 08027680 _____ (AOMEI Technology Co., Ltd. ) C:\Users\0TAKU\Downloads\PAssist_Std_5.5.exe 2014-01-08 11:36 - 2014-01-08 11:36 - 00001088 _____ C:\Users\0TAKU\Desktop\The Elder Scrolls Online Beta.lnk 2014-01-08 11:35 - 2014-01-08 11:31 - 55903624 _____ ( ) C:\Users\0TAKU\Downloads\Install_ESO_Beta.exe 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf 2014-01-08 10:15 - 2014-01-08 10:15 - 00000000 ____D C:\Program Files\Synaptics 2014-01-08 10:14 - 2014-01-08 10:14 - 03760344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-08 10:14 - 2014-01-08 10:14 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02588888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-08 10:14 - 2014-01-08 10:14 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 01013504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00693329 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-08 10:14 - 2014-01-08 10:14 - 00628504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00618200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00563992 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00397080 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00154840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-08 10:14 - 2014-01-08 10:14 - 00032496 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys 2014-01-08 10:14 - 2012-11-30 07:08 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2014-01-08 10:13 - 2014-01-08 10:13 - 09888912 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsPStorIcon.dll 2014-01-08 10:13 - 2014-01-08 10:13 - 00347280 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsPStor.sys 2014-01-08 10:13 - 2014-01-08 10:13 - 00064624 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\Users\0TAKU\AppData\Local\LogMeIn 2014-01-07 15:23 - 2014-01-07 15:23 - 00000000 ____D C:\ProgramData\LogMeIn 2014-01-07 15:10 - 2014-01-07 15:10 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2014-01-05 17:18 - 2014-01-02 17:19 - 00000000 ____D C:\Users\0TAKU\AppData\Local\Valdis_Story_AC 2014-01-04 14:11 - 2013-05-14 05:36 - 00000000 ____D C:\Users\0TAKU\Documents\my games 2014-01-04 04:17 - 2014-01-04 04:17 - 71483392 _____ C:\Windows\system32\config\SOFTWARE.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00319488 _____ C:\Windows\system32\config\DEFAULT.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00069632 _____ C:\Windows\system32\config\SAM.iobit 2014-01-04 04:17 - 2014-01-04 04:17 - 00028672 _____ C:\Windows\system32\config\SECURITY.iobit 2014-01-02 16:08 - 2014-01-02 16:08 - 00000000 ____D C:\Users\0TAKU\Documents\VVVVVV 2013-12-30 15:27 - 2013-11-08 22:31 - 00018944 _____ C:\Users\0TAKU\Documents\League of legends pool.xls ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-27 09:42 ==================== End Of Log ============================ |
28.01.2014, 23:28 | #12 |
| RUNDLL Fehler nach Systemstart Hier die Addition Logdatei: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-01-2014 02 Ran by Otaku Attacks at 2014-01-28 23:20:56 Running from C:\Users\0TAKU\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: IObit Malware Fighter (Disabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== „Windows Live Essentials“ (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden „Windows Live Mail“ (x32 Version: 16.4.3503.0728 - „Microsoft Corporation“) Hidden „Windows Live Messenger“ (x32 Version: 16.4.3503.0728 - „Microsoft Corporation“) Hidden Adbuck (x32 Version: 2.2.0.2 - Media Revolution GmbH) Adobe Reader XI (11.0.06) - Deutsch (x32 Version: 11.0.06 - Adobe Systems Incorporated) ADSRemoval (x32 Version: 1.0 - ADSRemoval) Advanced SystemCare 6 (x32 Version: 6.4 - IObit) Advanced SystemCare 7 (x32 Version: 7.1.0 - IObit) Age of Empires II: HD Edition (x32 Version: - Hidden Path Entertainment, Ensemble Studios) avast! Free Antivirus (x32 Version: 9.0.2013 - Avast Software) Battery Calibration (x32 Version: 1.0.1208.0301 - Micro-Star International Co., Ltd.) Battle.net (x32 Version: - Blizzard Entertainment) Battlefield 3™ (x32 Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (x32 Version: 2.1.7 - EA Digital Illusions CE AB) Beat Hazard (x32 Version: - ) BioShock Infinite (x32 Version: - Irrational Games) BurnRecovery (x32 Version: 4.0.1211.2101 - Micro-Star International Co., Ltd.) Cave Story Deluxe (x32 Version: - ) CCleaner (Version: 4.08 - Piriform) Chivalry: Medieval Warfare (x32 Version: - Torn Banner Studios) ClassicPro© v2.01 (x32 Version: 2.01 - Skin Consortium) Compatibility Pack für 2007 Office System (x32 Version: 12.0.6021.5000 - Microsoft Corporation) Crysis 2 Maximum Edition (x32 Version: - Crytek Studios) CrystalDiskInfo 6.0.1 (x32 Version: 6.0.1 - Crystal Dew World) Cube World version 0.0.1 (x32 Version: 0.0.1 - Picroma) CyberLink PowerDVD 10 (x32 Version: 10.0.4126.52 - CyberLink Corp.) CyberLink PowerDVD 10 (x32 Version: 10.0.4126.52 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dark Souls: Prepare to Die Edition (x32 Version: - FromSoftware) Darksiders (x32 Version: - Vigil Games) Darksiders II (x32 Version: - Vigil Games) Die Sims™ 3 (x32 Version: 1.57.62 - Electronic Arts) Die Sims™ 3 Late Night (x32 Version: 6.5.1 - Electronic Arts) Die Sims™ 3 Luxus-Accessoires (x32 Version: 3.0.38 - Electronic Arts) Dragon Nest Europe (x32 Version: - ) Driver Booster (x32 Version: 1.2 - IObit) ESN Sonar (x32 Version: 0.70.4 - ESN Social Software AB) ETDWare PS/2-X64 11.13.0.2_WHQL (Version: 11.13.0.2 - ELAN Microelectronic Corp.) Evoland (x32 Version: - Shiro Games) Fotoattēlu galerija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogaléria (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogalerie (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogalerii (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogalerija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Foto-galerija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogalleri (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotogalleriet (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotoğraf Galerisi (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotótár (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Free YouTube Download version 3.2.2.430 (x32 Version: 3.2.2.430 - DVDVideoSoft Ltd.) Galeria de Fotografias (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galeria de Fotos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galería de fotos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galeria fotografii (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galerie de photos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galerie foto (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galerija fotografija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Game Booster 3 (x32 Version: 3.4 - IObit) Game Dev Tycoon (x32 Version: - Greenheart Games) Game Dev Tycoon version 1.3.13 (x32 Version: 1.3.13 - Greenheart Games Pty. Ltd.) Google Chrome (x32 Version: 32.0.1700.76 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden Hearthstone (x32 Version: - Blizzard Entertainment) Intel(R) Control Center (x32 Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (x32 Version: 8.1.0.1281 - Intel Corporation) Intel(R) Processor Graphics (x32 Version: 9.17.10.2849 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: 2.6.1209.0268 - Motorola Solutions, Inc.) Intel(R) Rapid Storage Technology (x32 Version: 11.6.0.1030 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 2.0.0.37149 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.738.1 - Intel Corporation) Hidden IObit Malware Fighter (x32 Version: 2.1 - IObit) IObit Uninstaller (x32 Version: 3.0.5.1228 - IObit) Java 7 Update 51 (x32 Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Junk Mail filter update (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden KB9X Radio Switch Driver (Version: 1.0.7112.20593 - ENE TECHNOLOGY INC.) Kingdoms of Amalur: Reckoning (x32 Version: 1.0.0.0 - Electronic Arts) League of Legends (x32 Version: 1.3 - Riot Games) LogMeIn Hamachi (x32 Version: 2.2.0.109 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.109 - LogMeIn, Inc.) Hidden LOLReplay (x32 Version: 0.8.5.2 - www.leaguereplays.com) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) Medal of Honor(TM) Single Player (x32 Version: - Electronic Arts) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (x32 Version: 3.5.67.0 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (x32 Version: 11.0.5614.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual Basic PowerPacks 10.0 (x32 Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Xbox 360 Accessories 1.2 (Version: 1.20.146.0 - Microsoft) Microsoft XNA Framework Redistributable 4.0 Refresh (x32 Version: 4.0.30901.0 - Microsoft Corporation) Mirror's Edge (x32 Version: - DICE) Movie Maker (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Mozilla Maintenance Service (x32 Version: 17.0.5 - Mozilla) Mozilla Thunderbird 17.0.5 (x86 de) (x32 Version: 17.0.5 - Mozilla) Mozilla Thunderbird 24.2.0 (x86 de) (HKCU Version: 24.2.0 - Mozilla) MSI Remind Manager (x32 Version: 2.12.1003 - MSI) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1108.0727 - Microsoft) Hidden Nexus Mod Manager (Version: 0.45.2 - Black Tree Gaming) NVIDIA Grafiktreiber 314.22 (Version: 314.22 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.115.743 - NVIDIA Corporation) Hidden NVIDIA Optimus 1.12.12 (Version: 1.12.12 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.12.1031 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.12.1031 (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Systemsteuerung 314.22 (Version: 314.22 - NVIDIA Corporation) Hidden NVIDIA Update 1.12.12 (Version: 1.12.12 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.12.12 - NVIDIA Corporation) Hidden Open Broadcaster Software (x32 Version: - ) Origin (x32 Version: 9.2.1.4399 - Electronic Arts, Inc.) PDF Architect (x32 Version: 1.1.83.9982 - pdfforge GmbH) PDFCreator (x32 Version: 1.7.1 - pdfforge) Photo Common (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Pinnacle Video Treiber (Version: 12.1.0.029 - Pinnacle Systems) Poczta usługi Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Pošta Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden POSTAL 2 Complete (x32 Version: - Running With Scissors) PunkBuster Services (x32 Version: 0.991 - Even Balance, Inc.) Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.0.35.1273 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer E220x Drivers (Version: 1.0.35.1273 - Qualcomm Atheros) Hidden Qualcomm Atheros Network Manager (Version: 1.0.35.1273 - Qualcomm Atheros) Hidden Qualcomm Atheros Performance Suite (x32 Version: 1.0.35.1273 - Qualcomm Atheros) Raccolta foto (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Ragnarok Online - Free to Play - European Version (x32 Version: - Gravity Europe SAS) Realtek High Definition Audio Driver (x32 Version: 6.0.1.7106 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (x32 Version: 6.2.8400.28123 - Realtek Semiconductor Corp.) Remember Me (x32 Version: - DONTNOD Entertainment) Saints Row: The Third (x32 Version: - Volition) SCM (Version: 10.013.06287 - Application) Scoregasm (x32 Version: - RC Knight) Skype™ 6.3 (x32 Version: 6.3.105 - Skype Technologies S.A.) Smart Defrag 2 (x32 Version: 2.9 - IObit) Spybot - Search & Destroy (x32 Version: 2.1.21 - Safer-Networking Ltd.) Start Menu 8 (x32 Version: 1.3.0.0 - IObit) Steam (x32 Version: 1.0.0.0 - Valve Corporation) SteelSeries Engine (Version: 2.8.59.30483 - SteelSeries) Super-Charger (x32 Version: 1.2.010 - MSI) Surfing Protection (x32 Version: 1.0 - IObit) TeamSpeak 3 Client (Version: 3.0.13 - TeamSpeak Systems GmbH) The Binding of Isaac (x32 Version: - ) The Elder Scrolls Online Beta (x32 Version: 0.3.4 - ) Trine 2 (x32 Version: - Frozenbyte) Tyranid Mod 0.5b2 for Soulstorm (x32 Version: - ) Ubisoft Game Launcher (x32 Version: 1.0.0.0 - UBISOFT) Unity Web Player (HKCU Version: - Unity Technologies ApS) Update for Japanese Microsoft IME Postal Code Dictionary (x32 Version: 15.0.1157 - Microsoft Corporation) Update for Japanese Microsoft IME Standard Dictionary (x32 Version: 15.0.1080 - Microsoft Corporation) Update for Japanese Microsoft IME Standard Extended Dictionary (x32 Version: 15.0.1080 - Microsoft Corporation) Valdis Story: Abyssal City (x32 Version: - ) Valokuvavalikoima (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden VLC media player 2.1.1 (x32 Version: 2.1.1 - VideoLAN) VVVVVV (x32 Version: - Terry Cavanagh) Warhammer 40,000: Dawn of War – Dark Crusade (x32 Version: - Relic Entertainment) Warhammer 40,000: Dawn of War - Game of the Year Edition (x32 Version: - Relic Entertainment) Warhammer 40,000: Dawn of War – Soulstorm (x32 Version: - Relic Entertainment) Warhammer 40,000: Dawn of War – Winter Assault (x32 Version: - Relic Entertainment) Winamp (x32 Version: 5.63 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1 - Nullsoft, Inc) Windows Driver Package - Intel (NETwNe64) net (09/12/2012 15.5.4.45) (Version: 09/12/2012 15.5.4.45 - Intel) Windows Live Communications Platform (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3503.0728 - společnost Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3503.0728 - Корпорація Майкрософт) Hidden Windows Live Messenger (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3503.0728 - společnost Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3503.0728 - Корпорация Майкрософт) Hidden Windows Live Messenger (x32 Version: 16.4.3503.0728 - Корпорація Майкрософт) Hidden Windows Live MIME IFilter (Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Pošta (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Temel Parçalar (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live メール (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live 메일 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live 필수 패키지 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live 程式集 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live 软件包 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Liven peruspaketti (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Liven sähköposti (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH) XSplit Broadcaster (x32 Version: 1.3.1306.2101 - SplitMediaLabs) Συλλογή φωτογραφιών (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Основи Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 16.4.3503.0728 - Корпорация Майкрософт) Hidden Фотоальбом (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Фотогалерия (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Фотографии (общедоступная версия) (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Фотоколекція (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden フォト ギャラリー (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden גלריית התמונות (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden بريد Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden معرض الصور (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden 사진 갤러리 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden 影像中心 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden 照片库 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden ==================== Restore Points ========================= 24-01-2014 10:21:20 Installed Java 7 Update 51 25-01-2014 19:49:05 avast! antivirus system restore point 28-01-2014 18:03:49 Microsoft Visual C++ 2005 Redistributable wird installiert ==================== Hosts content: ========================== 2012-07-26 06:26 - 2012-07-26 06:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {052D7F59-C74F-4251-A284-8E2C8E7B5D8A} - System32\Tasks\ASC7_SkipUac_Otaku Attacks => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe [2013-12-16] (IObit) Task: {12A45333-4AC0-49B6-BDF6-72CABB6DB42A} - System32\Tasks\StartMenuAutoupdate => C:\Program Files (x86)\IObit\Start Menu 8\AutoUpdate.exe [2013-09-29] (IObit) Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {24118F9D-95B6-44AC-86C0-5397D96CFDB8} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {2821218D-B9D4-460F-B69F-846F189248DB} - System32\Tasks\StartMenu8Start => C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe [2013-09-29] (IObit) Task: {447C462E-96D8-4F23-8939-F68FC55CE435} - System32\Tasks\ASC6_AutoClean => D:\Program Files (x86)\IObit\Advanced SystemCare 6\AutoSweep.exe Task: {6A64BDB1-A88D-4B03-864D-5E9C400B5638} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => D:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Task: {6FB07D63-40E0-483D-B98A-F9D822CC5B43} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\system32\NotificationUI.exe [2013-08-16] (Microsoft Corporation) Task: {77B0A97F-E116-4172-A0DC-B9B391F367B9} - System32\Tasks\Driver Booster Scan => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2014-01-10] (IObit) Task: {8211C1E2-9B56-4C70-85A6-1C725695A4F1} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => D:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {83FC5BC0-2050-48BC-8623-F78FA45CF3B3} - System32\Tasks\ASC7U_SkipUac_Otaku Attacks => D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASC.exe [2013-12-02] (IObit) Task: {8840CC6E-7E5D-4C75-9E81-27D900DEFCC0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-11] (Google Inc.) Task: {8D89D572-69AC-4B41-AD04-4530110E8853} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-11-22] (Piriform Ltd) Task: {9D3103D7-7D04-49F1-974B-2A965936BC00} - System32\Tasks\ASC7_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe [2013-12-03] (IObit) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {ABBE6DCC-8957-43E7-A6AF-0EFB8071C52E} - System32\Tasks\{9FB6F3D7-66EE-4E1B-A8A3-BAAEC1D3595B} => Chrome.exe hxxp://ui.skype.com/ui/0/6.3.0.105/de/abandoninstall?source=lightinstaller&page=tsInstall Task: {C5669427-07F5-434E-93DB-2B2CC173B6AA} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [2013-06-08] () Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {CC088A56-64B9-4A10-9CAB-8F25655AA6D4} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2014-01-07] (IObit) Task: {E90BD8DF-A0FB-418D-B35D-B8C5D0CDF888} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-11] (Google Inc.) Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {FE49ED7A-DD26-4133-A192-23B2B312F75E} - System32\Tasks\ASC6_PerformanceMonitor => D:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe Task: {FEC3847B-1678-42A7-9EC3-3BC180F10C0B} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-01-25] (AVAST Software) Task: C:\Windows\Tasks\ASC7U_SkipUac_Otaku Attacks.job => D:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASC.exe Task: C:\Windows\Tasks\ASC7_SkipUac_Otaku Attacks.job => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe Task: C:\Windows\Tasks\Driver Booster Update.job => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-07-12 15:57 - 2013-07-12 15:57 - 00665088 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\SSEngineLib.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00175104 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\DBUtils.dll 2014-01-21 10:34 - 2014-01-21 10:34 - 00089915 ____N () C:\Users\0TAKU\AppData\Local\Temp\70aeaca4-098f-4bcc-b0fa-e2544fb40678\CliSecureRT64.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00278528 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\DriverCommunication.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00139776 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\ISSPlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00148480 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\Localization.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00145408 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\Utilities.dll 2013-01-10 06:46 - 2013-01-10 06:46 - 00047616 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesDrivers\x2api.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 09519104 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\SSEngineWinGui.dll 2013-01-10 06:46 - 2013-01-10 06:46 - 01102336 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\System.Data.SQLite.dll 2012-11-30 07:02 - 2012-11-27 18:01 - 00004096 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00209408 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\CustomWPFColorPicker.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00349696 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\MousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00171008 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\D3MousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00173568 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\KKMousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00171008 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\SRawPlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00307200 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\MLGSenseiPlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00154624 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\WoWGoldPlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00170496 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\GW2MousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00169472 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\CSGOMousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00169984 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\DOTA2MousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00157184 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\WoWWirelessPlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00170496 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\CODMousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00169984 _____ () D:\Program Files\SteelSeries\SteelSeries Engine\WoTMousePlugin.dll 2014-01-21 10:19 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\sqlite3.dll 2014-01-27 21:10 - 2014-01-27 17:58 - 02166272 _____ () C:\Program Files\AVAST Software\Avast\defs\14012701\algo.dll 2014-01-28 21:03 - 2014-01-28 17:44 - 02166272 _____ () C:\Program Files\AVAST Software\Avast\defs\14012801\algo.dll 2014-01-21 10:19 - 2013-01-15 18:48 - 00348992 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madExcept_.bpl 2014-01-21 10:19 - 2013-01-15 18:48 - 00183616 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madBasic_.bpl 2014-01-21 10:19 - 2013-01-15 18:48 - 00051008 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\madDisAsm_.bpl 2014-01-21 10:19 - 2013-01-15 18:47 - 00893248 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\webres.dll 2013-10-27 01:32 - 2013-10-27 01:32 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2013-12-11 05:22 - 2013-12-11 05:22 - 00378368 _____ () D:\Program Files (x86)\LOLReplay\LOLUtils.dll 2012-11-30 07:02 - 2012-11-27 18:01 - 00004096 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll 2013-09-06 17:12 - 2013-09-06 17:12 - 00040448 _____ () D:\Program Files (x86)\LOLReplay\Compression.dll 2013-09-25 05:46 - 2013-05-16 09:55 - 00113496 _____ () D:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2013-09-25 05:46 - 2013-05-16 09:55 - 00161112 _____ () D:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2013-09-25 05:46 - 2013-05-16 09:55 - 00416600 _____ () D:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2013-03-08 06:17 - 2013-03-08 06:17 - 07816192 _____ () D:\Program Files (x86)\SplitMediaLabs\XSplit\avcodec-54.dll 2013-03-08 06:17 - 2013-03-08 06:17 - 01425920 _____ () D:\Program Files (x86)\SplitMediaLabs\XSplit\avformat-54.dll 2013-03-08 06:17 - 2013-03-08 06:17 - 00188416 _____ () D:\Program Files (x86)\SplitMediaLabs\XSplit\avutil-52.dll 2013-03-08 06:17 - 2013-03-08 06:17 - 00336896 _____ () D:\Program Files (x86)\SplitMediaLabs\XSplit\swscale-2.dll 2013-03-08 06:17 - 2013-03-08 06:17 - 00096256 _____ () D:\Program Files (x86)\SplitMediaLabs\XSplit\swresample-0.dll 2013-09-25 05:46 - 2012-08-23 09:38 - 00574840 _____ () D:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2013-09-25 05:46 - 2012-04-03 16:06 - 00565640 _____ () D:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2012-11-30 06:58 - 2012-11-27 17:59 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2013-09-25 05:46 - 2013-05-16 09:55 - 00113496 _____ () D:\PROGRAM FILES (X86)\SPYBOT - SEARCH & DESTROY 2\snlThirdParty150.bpl 2013-09-25 05:46 - 2013-05-16 09:55 - 00416600 _____ () D:\PROGRAM FILES (X86)\SPYBOT - SEARCH & DESTROY 2\DEC150.bpl 2014-01-21 20:04 - 2014-01-11 11:28 - 00715544 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\libglesv2.dll 2014-01-21 20:04 - 2014-01-11 11:28 - 00100120 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\libegl.dll 2014-01-21 20:04 - 2014-01-11 11:29 - 04055320 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\pdf.dll 2014-01-21 20:04 - 2014-01-11 11:29 - 00399640 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\ppGoogleNaClPluginChrome.dll 2014-01-21 20:04 - 2014-01-11 11:28 - 01634584 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\ffmpegsumo.dll 2014-01-21 20:04 - 2014-01-11 11:29 - 13615896 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\PepperFlash\pepflashplayer.dll 2014-01-08 19:58 - 2013-12-12 23:19 - 00142848 _____ () D:\Program Files (x86)\Steam\libavresample-1.dll 2014-01-08 19:58 - 2013-11-05 02:12 - 00890592 _____ () D:\Program Files (x86)\Steam\libavutil-52.dll 2014-01-08 19:58 - 2013-12-12 23:04 - 00716800 _____ () D:\Program Files (x86)\Steam\SDL2.dll 2014-01-08 19:58 - 2014-01-07 22:00 - 01138088 _____ () D:\Program Files (x86)\Steam\bin\chromehtml.DLL 2014-01-08 19:58 - 2013-12-12 23:04 - 20625832 _____ () D:\Program Files (x86)\Steam\bin\libcef.dll 2013-07-10 08:55 - 2013-06-15 00:49 - 01100800 _____ () D:\Program Files (x86)\Steam\bin\avcodec-53.dll 2013-07-10 08:55 - 2013-06-15 00:49 - 00124416 _____ () D:\Program Files (x86)\Steam\bin\avutil-51.dll 2013-07-10 08:55 - 2013-06-15 00:49 - 00192000 _____ () D:\Program Files (x86)\Steam\bin\avformat-53.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Faulty Device Manager Devices ============= Name: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Description: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Intel Corporation Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Could not start eventlog service, could not read events. Der angeforderte Dienst wurde bereits gestartet. Sie erhalten weitere Hilfe, wenn Sie NET HELPMSG 2182 eingeben. ==================== Memory info =========================== Percentage of memory in use: 53% Total physical RAM: 8080.57 MB Available physical RAM: 3787.61 MB Total Pagefile: 16272.57 MB Available Pagefile: 10634.2 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: (OS_Install) (Fixed) (Total:100 GB) (Free:39.03 GB) NTFS Drive d: (Volume) (Fixed) (Total:344.01 GB) (Free:104.75 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: ECCEC66C) Partition: GPT Partition Type ==================== End Of Log ============================ |
29.01.2014, 17:00 | #13 | |
/// the machine /// TB-Ausbilder | RUNDLL Fehler nach Systemstart Dann deinstalliere den Treiber bitte komplett, installiere ihn neu. Wenn es nicht geht bitte einen älteren Treiber installieren. Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
29.01.2014, 21:46 | #14 |
| RUNDLL Fehler nach Systemstart Gur habe alle Treiber erneuert und alles von iObit deinstalliert. Der Fehler ist nach einem Neustart nicht mehr aufgetreten. Haben Sie vielleicht irgendwelche Tipps oder Programm Vorschläge, womit ich die Leistung und Lebenszeit des Laptops erhöhen kann? Oder womit ich Junk-Dateien entfernen kann, so etwas wie den CCleaner? Ich möchte nicht, dass mein Gerät nach ein paar Monaten mit Dingen zugemüllt ist und dadurch längere Ladezeiten oder höheren Ramverbrauch hat. Habe auch gelesen dass durch den Diensthost von Windows 8 eine ziemlich hohe CPU oder RAM Auslastung entsteht. Haben Sie damit Erfahrung? Entschuldigung, wenn dies zu sehr ausweitet. Gegebenenfalls erstelle ich dazu einen neuen Thread bzw. suche ich ob so etwas schon hier existiert. Vielen Dank für Ihre Hilfe! |
30.01.2014, 16:36 | #15 |
/// the machine /// TB-Ausbilder | RUNDLL Fehler nach Systemstart Zu dem Dienst bei Win8 kann ich nix sagen. Ccleaner kannste nutzen für Temp-Dateien, aber Finger weg von der Registry. Fertig Falls Du Lob oder Kritik loswerden möchtest kannst Du das hier tun Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu RUNDLL Fehler nach Systemstart |
.dll, beim starten, cpu, dll, fehler, fehlermeldung, folge, geforce, google, hilfe!, laptop, lösung, modul, neuinstallation, nvidia, problem, programm, rundll, starten, system, system care, system32, systemstart, treiber, trojaner, windows |