|
Plagegeister aller Art und deren Bekämpfung: Blue Screen / Unerwartetes Herunterfahren des SystemsWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
30.01.2014, 12:18 | #16 |
| Blue Screen / Unerwartetes Herunterfahren des Systems Oups, habe ich überlesen... Bitteschön FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 29-01-2014 01 Ran by rapjap (administrator) on RAPJAP-RECEP on 30-01-2014 12:16:25 Running from C:\Users\rapjap\Desktop Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: 041F Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (AMD) C:\Windows\System32\atiesrxx.exe (SurfRight B.V.) C:\Program Files\HitmanPro.Alert\hmpalert.exe (AMD) C:\Windows\System32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Sony Corporation) C:\Program Files\Sony\Network Utility\NSUService.exe () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\Update\realsched.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe (Sony Corporation) C:\Program Files\Sony\Network Utility\LANUtil.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApMsgFwd.exe (BillP Studios) C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApntEx.exe (Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE (ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-12] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [TkBellExe] - C:\Program Files\Real\RealPlayer\update\realsched.exe [295512 2013-12-15] (RealNetworks, Inc.) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM\...\Run: [GrooveMonitor] - C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2008-01-21] (Advanced Micro Devices, Inc.) HKLM\...\Run: [Apoint] - C:\Program Files\Apoint\Apoint.exe [122880 2008-07-28] (Alps Electric Co., Ltd.) Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll (Sony Corporation) HKCU\...\Run: [NSUFloatingUI] - C:\Program Files\Sony\Network Utility\LANUtil.exe [262144 2008-05-29] (Sony Corporation) HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd) HKCU\...\Run: [WinPatrol] - C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe [429120 2014-01-24] (BillP Studios) HKU\Default\...\Run: [NSUFloatingUI] - C:\Program Files\Sony\Network Utility\LANUtil.exe [ 2008-05-29] (Sony Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x25EFF6DDE6F5CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = tr-TR SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {758B870D-DF78-4A6A-9955-DEDDCACF94DC} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} SearchScopes: HKCU - {758B870D-DF78-4A6A-9955-DEDDCACF94DC} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Chrome: ======= CHR HomePage: hxxp://google.de/ CHR Extension: (Google Docs) - C:\Users\rapjap\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-10] CHR Extension: (Google Drive) - C:\Users\rapjap\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-10] CHR Extension: (WOT) - C:\Users\rapjap\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2014-01-10] CHR Extension: (YouTube) - C:\Users\rapjap\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-10] CHR Extension: (Adblock for Youtube™) - C:\Users\rapjap\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2013-12-10] CHR Extension: (Google-Suche) - C:\Users\rapjap\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-10] CHR Extension: (AdBlock) - C:\Users\rapjap\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-12-10] CHR Extension: (RealDownloader) - C:\Users\rapjap\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2013-12-15] CHR Extension: (Google Wallet) - C:\Users\rapjap\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-10] CHR Extension: (Google Mail) - C:\Users\rapjap\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-10] CHR HKLM\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14] CHR HKLM\...\Chrome\Extension: [pkndmigholgfjlniaohblojbhgjbkakn] - C:\Users\rapjap\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx [2014-01-23] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440376 2013-12-12] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-26] (Avira Operations GmbH & Co. KG) S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-12] (Avira Operations GmbH & Co. KG) R2 hmpalertsvc; C:\Program Files\HitmanPro.Alert\hmpalert.exe [1830768 2014-01-27] (SurfRight B.V.) R2 NSUService; C:\Program Files\Sony\Network Utility\NSUService.exe [229376 2008-05-29] (Sony Corporation) R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] () R2 VAIO Power Management; C:\Program Files\Sony\VAIO Power Management\SPMService.exe [415592 2008-12-19] (Sony Corporation) R3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1020976 2013-08-01] (Sony Corporation) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2013-12-12] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135648 2013-12-12] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-11-26] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [69240 2013-12-12] (Avira Operations GmbH & Co. KG) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-01-14] (Disc Soft Ltd) R2 hmpalert; C:\Windows\system32\drivers\hmpalert.sys [14376 2014-01-27] () R3 RTHDMIAzAudService; C:\Windows\System32\drivers\RtHDMI.sys [3688064 2008-07-24] (Realtek Semiconductor Corp.) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-11-26] (Avira GmbH) S3 catchme; \??\C:\Users\rapjap\AppData\Local\Temp\catchme.sys [x] S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] S3 VGPU; System32\drivers\rdvgkmd.sys [x] U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [48128 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-30 12:16 - 2014-01-30 12:16 - 00010937 _____ C:\Users\rapjap\Desktop\FRST.txt 2014-01-30 12:16 - 2014-01-30 12:16 - 00000000 ____D C:\Users\rapjap\Desktop\FRST-OlderVersion 2014-01-29 13:46 - 2014-01-29 13:46 - 00987425 _____ C:\Users\rapjap\Downloads\SecurityCheck.exe 2014-01-29 12:42 - 2014-01-29 12:42 - 02347384 _____ (ESET) C:\Users\rapjap\Downloads\esetsmartinstaller_enu (1).exe 2014-01-29 12:27 - 2014-01-29 12:27 - 00148840 _____ C:\Windows\Minidump\012914-25880-01.dmp 2014-01-29 12:22 - 2014-01-29 12:22 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\rapjap\Downloads\revosetup95.exe 2014-01-29 12:22 - 2014-01-29 12:22 - 00001222 _____ C:\Users\rapjap\Desktop\Revo Uninstaller.lnk 2014-01-29 12:22 - 2014-01-29 12:22 - 00000000 ____D C:\Program Files\VS Revo Group 2014-01-28 13:20 - 2014-01-28 13:20 - 00148840 _____ C:\Windows\Minidump\012814-20748-01.dmp 2014-01-27 13:56 - 2014-01-28 13:01 - 00000000 ____D C:\Program Files\HitmanPro.Alert 2014-01-27 13:56 - 2014-01-27 15:18 - 00564312 _____ (SurfRight) C:\Windows\system32\hmpalert.dll 2014-01-27 13:56 - 2014-01-27 15:18 - 00014376 _____ C:\Windows\system32\Drivers\hmpalert.sys 2014-01-27 13:56 - 2014-01-27 13:56 - 00000000 ____D C:\ProgramData\HitmanPro.Alert 2014-01-27 13:55 - 2014-01-27 13:55 - 01752488 _____ (SurfRight B.V.) C:\Users\rapjap\Downloads\hmpalert.exe 2014-01-27 13:24 - 2014-01-27 13:24 - 00148840 _____ C:\Windows\Minidump\012714-27362-01.dmp 2014-01-27 13:12 - 2014-01-27 13:12 - 02347384 _____ (ESET) C:\Users\rapjap\Downloads\esetsmartinstaller_enu.exe 2014-01-26 15:01 - 2014-01-26 15:01 - 01037068 _____ (Thisisu) C:\Users\rapjap\Downloads\JRT.exe 2014-01-26 14:56 - 2014-01-26 14:56 - 01236282 _____ C:\Users\rapjap\Downloads\adwcleaner.exe 2014-01-25 17:22 - 2014-01-25 17:22 - 01543208 _____ (BillP Studios) C:\Users\rapjap\Downloads\wpsetup.exe 2014-01-25 17:18 - 2014-01-25 17:18 - 00021008 _____ C:\ComboFix.txt 2014-01-25 17:07 - 2014-01-25 17:18 - 00000000 ____D C:\Qoobox 2014-01-25 17:07 - 2014-01-25 17:17 - 00000000 ____D C:\Windows\erdnt 2014-01-25 17:07 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe 2014-01-25 17:07 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe 2014-01-25 17:07 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-01-25 17:07 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-01-25 17:07 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-01-25 17:07 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe 2014-01-25 17:07 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe 2014-01-25 17:07 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe 2014-01-25 17:06 - 2014-01-25 17:06 - 05175240 ____R (Swearware) C:\Users\rapjap\Downloads\ComboFix.exe 2014-01-23 21:28 - 2014-01-23 21:28 - 00148840 _____ C:\Windows\Minidump\012314-28891-01.dmp 2014-01-23 21:19 - 2014-01-23 21:21 - 160298064 _____ (Advanced Micro Devices, Inc.) C:\Users\rapjap\Downloads\13-12_win7_win8_32_dd_ccc_whql.exe 2014-01-23 20:37 - 2014-01-23 20:37 - 00148840 _____ C:\Windows\Minidump\012314-16146-01.dmp 2014-01-23 20:18 - 2014-01-23 20:18 - 00614784 _____ (Chip Digital GmbH) C:\Users\rapjap\Downloads\AdwCleaner - CHIP-Downloader.exe 2014-01-23 20:15 - 2014-01-23 20:49 - 00000000 ____D C:\Windows\455F074C814E4520B69B5584BD90400C.TMP 2014-01-23 20:11 - 2014-01-23 20:12 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\rapjap\Downloads\SpyHunter-Installer.exe 2014-01-23 17:03 - 2014-01-23 17:03 - 00148840 _____ C:\Windows\Minidump\012314-21949-01.dmp 2014-01-23 03:47 - 2014-01-23 03:48 - 00000000 ____D C:\ProgramData\IePluginService 2014-01-23 03:45 - 2014-01-23 03:45 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop 2014-01-16 23:28 - 2014-01-16 23:28 - 00148840 _____ C:\Windows\Minidump\011614-20748-01.dmp 2014-01-16 17:50 - 2014-01-17 19:45 - 00000588 _____ C:\Users\rapjap\Desktop\Neues Textdokument.txt 2014-01-16 13:22 - 2014-01-16 13:25 - 109291464 _____ (Advanced Micro Devices, Inc.) C:\Users\rapjap\Downloads\13-9-legacy_vista_win7_32_dd_ccc_whql.exe 2014-01-16 13:22 - 2014-01-16 13:23 - 26667268 _____ (Advanced Micro Devices, Inc.) C:\Users\rapjap\Downloads\13-1-legacy_vista_win7_win8_32-64_hydravision.exe 2014-01-15 16:39 - 2014-01-15 16:39 - 00000000 ____D C:\287b6fbad0beae6a9d 2014-01-15 13:08 - 2013-11-27 02:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-15 13:08 - 2013-11-27 02:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-15 13:08 - 2013-11-27 02:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-15 13:08 - 2013-11-27 02:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-15 13:08 - 2013-11-27 02:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-15 13:08 - 2013-11-27 02:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-15 13:08 - 2013-11-27 02:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-15 13:08 - 2013-11-26 12:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-15 13:08 - 2013-11-26 11:10 - 02349056 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-14 19:46 - 2009-06-17 13:35 - 00000000 ____D C:\Users\rapjap\Downloads\VAIO_Power_Management_3.3_092Q_3.3.0.12190 2014-01-14 19:46 - 2009-05-08 14:36 - 00000000 ____D C:\Users\rapjap\Downloads\VAIO Smart Network 2.3(092Q) - 2.3.0.12210 2014-01-14 19:41 - 2010-09-14 16:19 - 00000000 ____D C:\Users\rapjap\Downloads\Sony_Firmware_Extension_Parser_Device_Driver_8.0.1.2 2014-01-14 19:37 - 2014-01-29 14:00 - 00000000 ____D C:\Users\rapjap\Desktop\Sony_Firmware_Extension_Parser_Device_Driver_8.0.1.2 2014-01-14 19:30 - 2011-05-27 17:34 - 00000000 ____D C:\Users\rapjap\Downloads\SFEP_Driver_8.0.1.2 2014-01-14 19:24 - 2009-05-08 16:14 - 00000000 ____D C:\Users\rapjap\Downloads\VAIO Event Service 4.3 (092Q) - 4.3.0.13190 2014-01-14 19:16 - 2009-05-08 15:47 - 00000000 ____D C:\Users\rapjap\Downloads\VAIO_Control_Center_3.3_092Q_3.3.0.12240 2014-01-14 19:07 - 2009-05-08 16:08 - 00000000 ____D C:\Users\rapjap\Downloads\Setting Utility Series 4.3(092Q) - 4.3.0.14120 2014-01-14 18:59 - 2009-05-08 13:43 - 00000000 ____D C:\Users\rapjap\Downloads\Sony Shared Library 5.3 - 5.3.0.11240 2014-01-14 18:59 - 2008-11-24 23:41 - 00010216 _____ (Sony Corporation) C:\Windows\system32\Drivers\DMICall.sys 2014-01-14 18:57 - 2014-01-14 18:57 - 01910104 _____ C:\Users\rapjap\Downloads\CHIPSET_DRIVER_INTEL_9.0C_9.0.0.1011.ZIP 2014-01-14 18:48 - 2014-01-14 18:48 - 00942761 _____ (DriverIdentifier ) C:\Users\rapjap\Downloads\driveridentifier_setup.exe 2014-01-14 18:48 - 2014-01-14 18:48 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\driveridentifier 2014-01-14 18:48 - 2014-01-14 18:48 - 00000000 ____D C:\Program Files\Driver Identifier 2014-01-14 17:41 - 2014-01-14 18:45 - 00000021 _____ C:\Windows\Model.txt 2014-01-14 17:41 - 2014-01-14 18:45 - 00000000 _____ C:\Windows\Model.log 2014-01-14 17:29 - 2014-01-14 17:29 - 00000000 ____D C:\Program Files\DIFX 2014-01-14 17:28 - 2010-09-14 16:19 - 00000000 ____D C:\Users\rapjap\Documents\Sony_Firmware_Extension_Parser_Device_Driver_8.0.1.2 2014-01-14 17:28 - 2010-08-16 13:54 - 00009344 _____ (Sony Corporation) C:\Windows\system32\Drivers\SFEP.sys 2014-01-14 17:09 - 2014-01-14 17:13 - 00001908 _____ C:\Windows\diagwrn.xml 2014-01-14 17:09 - 2014-01-14 17:13 - 00001908 _____ C:\Windows\diagerr.xml 2014-01-14 17:09 - 2014-01-14 17:09 - 00001896 _____ C:\Users\rapjap\Desktop\DAEMON Tools Lite.lnk 2014-01-14 17:08 - 2014-01-14 17:08 - 00243128 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-01-14 17:07 - 2014-01-14 17:09 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\DAEMON Tools Lite 2014-01-14 17:07 - 2014-01-14 17:09 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2014-01-14 17:07 - 2014-01-14 17:08 - 00000000 ____D C:\Program Files\DAEMON Tools Lite 2014-01-14 13:23 - 2014-01-14 17:36 - 00000000 ____D C:\Users\rapjap\Documents\Vaio Original Treiber 2014-01-13 03:38 - 2014-01-13 03:38 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\Sony Corporation 2014-01-13 03:36 - 2008-11-24 23:41 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\msvcr80.dll 2014-01-13 03:29 - 2014-01-14 19:25 - 00000000 ____D C:\Program Files\Common Files\Sony Shared 2014-01-13 03:29 - 2008-07-10 22:10 - 00098304 ____N (Sony Corporation) C:\Windows\system32\VESWinlogon.dll 2014-01-13 03:24 - 2014-01-13 03:24 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Apfiltr_01001.Wdf 2014-01-13 03:24 - 2014-01-13 03:24 - 00000000 ____D C:\Program Files\Apoint 2014-01-13 03:22 - 2014-01-13 03:22 - 00000000 ____D C:\Windows\system32\sda 2014-01-13 03:11 - 2014-01-13 03:11 - 00000000 ____D C:\Update 2014-01-13 03:07 - 2008-07-28 09:52 - 01418720 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoinstaller01001.dll 2014-01-13 03:07 - 2008-07-28 09:51 - 00100542 _____ (Alps Electric Co., Ltd.) C:\Windows\system32\Vxdif.dll 2014-01-13 03:07 - 2008-07-28 09:50 - 00164400 _____ (Alps Electric Co., Ltd.) C:\Windows\system32\Drivers\Apfiltr.sys 2014-01-13 03:02 - 2014-01-13 03:02 - 00319456 _____ (Microsoft Corporation) C:\Windows\DIFxAPI.dll 2014-01-13 03:02 - 2014-01-13 03:02 - 00000000 ____D C:\Program Files\Realtek 2014-01-13 03:02 - 2008-07-24 15:07 - 00000553 _____ C:\Windows\USetup.iss 2014-01-13 03:02 - 2008-07-24 15:06 - 03688064 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtHDMI.sys 2014-01-13 03:02 - 2008-07-24 15:06 - 01196032 _____ (Realtek Semiconductor Corp.) C:\Windows\RtkUpd.exe 2014-01-13 03:02 - 2008-07-24 15:04 - 00049152 _____ C:\Windows\system32\ChCfg.exe 2014-01-13 03:01 - 2014-01-13 03:01 - 00315392 _____ (Realtek Semiconductor Corp.) C:\Windows\HideWin.exe 2014-01-13 03:01 - 2014-01-13 03:01 - 00000000 ____D C:\Program Files\Common Files\InstallShield 2014-01-13 03:01 - 2008-07-24 15:07 - 00520192 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-01-13 02:58 - 2014-01-13 02:58 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\ATI 2014-01-13 02:58 - 2014-01-13 02:58 - 00000000 ____D C:\Users\rapjap\AppData\Local\ATI 2014-01-13 02:58 - 2014-01-13 02:58 - 00000000 ____D C:\ProgramData\ATI 2014-01-13 02:51 - 2014-01-13 02:51 - 00000000 ____D C:\Users\rapjap\Documents\Bluetooth-Exchange-Ordner 2014-01-13 02:51 - 2014-01-13 02:51 - 00000000 ____D C:\Users\rapjap\Bluetooth Software 2014-01-13 02:50 - 2014-01-13 02:50 - 00000000 ____D C:\Windows\system32\es-MX 2014-01-13 02:50 - 2014-01-13 02:50 - 00000000 ____D C:\Windows\system32\es-AR 2014-01-13 02:50 - 2014-01-13 02:50 - 00000000 ____D C:\Program Files\WIDCOMM 2014-01-13 02:50 - 2008-07-24 11:03 - 00099880 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwavdt.sys 2014-01-13 02:50 - 2008-07-24 11:03 - 00081448 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwaudio.sys 2014-01-13 02:50 - 2008-07-24 11:03 - 00017448 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwrchid.sys 2014-01-13 02:50 - 2008-07-24 10:56 - 00233472 _____ (Broadcom Corporation.) C:\Windows\system32\BtwRSupport.dll 2014-01-13 02:50 - 2008-07-24 10:52 - 00028464 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwl2cap.sys 2014-01-13 02:49 - 2014-01-14 19:45 - 00026576 _____ C:\Windows\DPINST.LOG 2014-01-13 02:39 - 2014-01-13 02:41 - 00000000 ____D C:\Program Files\ATI Technologies 2014-01-13 02:39 - 2014-01-13 02:39 - 00000000 ____D C:\Program Files\ATI 2014-01-13 02:38 - 2009-08-18 01:37 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll 2014-01-13 02:38 - 2009-08-18 01:34 - 00356352 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdlxx.dll 2014-01-13 02:38 - 2009-08-18 01:34 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\system32\ati2edxx.dll 2014-01-13 02:38 - 2008-07-24 14:57 - 03107788 _____ C:\Windows\system32\atiumdva.dat 2014-01-13 02:38 - 2008-07-24 14:54 - 00663552 ____N (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe 2014-01-13 02:38 - 2008-07-24 14:54 - 00253952 ____N (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.dll 2014-01-13 02:38 - 2008-07-24 14:54 - 00090112 _____ C:\Windows\system32\atibrtmon.exe 2014-01-13 02:35 - 2014-01-13 02:35 - 00000000 ____D C:\Program Files\intel 2014-01-13 02:22 - 2014-01-14 19:47 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2014-01-13 02:21 - 2014-01-14 19:50 - 00000000 ____D C:\ProgramData\Sony Corporation 2014-01-13 02:21 - 2014-01-14 19:47 - 00000000 ____D C:\Program Files\Sony 2014-01-12 23:18 - 2014-01-12 23:18 - 00148744 _____ C:\Windows\Minidump\011214-17316-01.dmp 2014-01-10 18:24 - 2014-01-10 18:25 - 00148744 _____ C:\Windows\Minidump\011014-16567-01.dmp 2014-01-10 16:18 - 2014-01-10 16:18 - 00001021 _____ C:\Users\Public\Desktop\GhostMouse Free.lnk 2014-01-10 16:18 - 2014-01-10 16:18 - 00000000 ____D C:\Users\rapjap\Documents\AutomaticSolution Software 2014-01-10 16:18 - 2014-01-10 16:18 - 00000000 ____D C:\Program Files\GhostMouse 2014-01-10 02:27 - 2014-01-10 02:29 - 00000000 ____D C:\Program Files\SpywareBlaster 2014-01-10 02:27 - 2014-01-10 02:27 - 00001037 _____ C:\Users\Public\Desktop\SpywareBlaster.lnk 2014-01-10 02:27 - 2014-01-10 02:27 - 00000000 ____D C:\ProgramData\Licenses 2014-01-10 02:24 - 2014-01-25 17:23 - 00000000 ____D C:\ProgramData\InstallMate 2014-01-10 02:24 - 2014-01-10 02:24 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\WinPatrol 2014-01-10 02:24 - 2014-01-10 02:24 - 00000000 ____D C:\Program Files\BillP Studios 2014-01-10 00:39 - 2014-01-10 00:39 - 00000000 ____D C:\Windows\ERUNT 2014-01-10 00:28 - 2014-01-26 14:58 - 00000000 ____D C:\AdwCleaner 2014-01-09 15:59 - 2014-01-09 15:59 - 00148744 _____ C:\Windows\Minidump\010914-22339-01.dmp 2014-01-09 00:07 - 2014-01-09 00:10 - 00000000 ____D C:\Program Files\PantsOff 2014-01-08 18:45 - 2014-01-29 12:27 - 00000000 ____D C:\Windows\Minidump 2014-01-08 18:45 - 2014-01-29 12:26 - 245892136 _____ C:\Windows\MEMORY.DMP 2014-01-08 18:45 - 2014-01-08 18:45 - 00144616 _____ C:\Windows\Minidump\010814-21528-01.dmp 2014-01-08 17:33 - 2014-01-08 17:33 - 00000000 ____D C:\Windows\de 2014-01-08 17:32 - 2014-01-08 17:32 - 00000020 _____ C:\Windows\Xö5 2014-01-08 17:32 - 2014-01-08 17:32 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition 2014-01-08 17:30 - 2014-01-08 17:32 - 00000000 ____D C:\Program Files\Windows Live 2014-01-08 17:29 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-01-08 17:29 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-01-08 17:29 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-01-08 17:29 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-01-08 17:29 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-01-08 17:28 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-01-08 17:26 - 2014-01-08 17:37 - 00000000 ____D C:\Users\rapjap\AppData\Local\Windows Live 2014-01-08 17:23 - 2014-01-08 17:23 - 00000000 ____D C:\Program Files\Common Files\Windows Live 2014-01-08 17:03 - 2014-01-08 17:23 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\vlc 2014-01-08 17:02 - 2014-01-08 17:02 - 00001024 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-08 17:02 - 2014-01-08 17:02 - 00000000 ____D C:\Program Files\VideoLAN 2014-01-07 23:30 - 2014-01-29 13:59 - 00000000 ____D C:\Users\rapjap\Desktop\Funny Pics 2014-01-07 23:28 - 2014-01-07 23:28 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\WinRAR 2014-01-07 23:28 - 2014-01-07 23:28 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-01-07 23:28 - 2014-01-07 23:28 - 00000000 ____D C:\Program Files\WinRAR 2014-01-07 23:28 - 2010-01-24 22:19 - 00000000 ____D C:\Users\rapjap\Downloads\Microsoft Office Professional Plus 2007 (x86) - CD (German) 2014-01-07 16:33 - 2014-01-30 12:16 - 01137152 _____ (Farbar) C:\Users\rapjap\Desktop\FRST.exe 2014-01-06 18:36 - 2009-02-27 03:42 - 00031640 _____ (Microsoft Corporation) C:\Windows\system32\msonpmon.dll 2014-01-06 18:31 - 2014-01-06 18:31 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 8 2014-01-03 20:46 - 2013-11-14 17:23 - 00000212 _____ C:\Users\rapjap\Desktop\Promo Profile FB.txt ==================== One Month Modified Files and Folders ======= 2014-01-30 12:17 - 2014-01-30 12:16 - 00010937 _____ C:\Users\rapjap\Desktop\FRST.txt 2014-01-30 12:16 - 2014-01-30 12:16 - 00000000 ____D C:\Users\rapjap\Desktop\FRST-OlderVersion 2014-01-30 12:16 - 2014-01-07 16:33 - 01137152 _____ (Farbar) C:\Users\rapjap\Desktop\FRST.exe 2014-01-30 12:16 - 2013-12-17 15:23 - 00000000 ____D C:\FRST 2014-01-30 12:13 - 2009-07-14 05:34 - 00026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-30 12:13 - 2009-07-14 05:34 - 00026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-30 12:12 - 2013-12-10 19:18 - 02039954 _____ C:\Windows\WindowsUpdate.log 2014-01-30 12:05 - 2013-12-10 21:19 - 00001094 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-30 12:05 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-30 12:05 - 2009-07-14 05:39 - 00004489 _____ C:\Windows\setupact.log 2014-01-30 04:30 - 2013-12-15 21:47 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-30 03:45 - 2013-12-10 21:19 - 00001098 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-29 18:49 - 2013-12-10 21:19 - 00002121 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2014-01-29 17:34 - 2010-11-20 22:48 - 00118598 _____ C:\Windows\PFRO.log 2014-01-29 14:00 - 2014-01-14 19:37 - 00000000 ____D C:\Users\rapjap\Desktop\Sony_Firmware_Extension_Parser_Device_Driver_8.0.1.2 2014-01-29 13:59 - 2014-01-07 23:30 - 00000000 ____D C:\Users\rapjap\Desktop\Funny Pics 2014-01-29 13:46 - 2014-01-29 13:46 - 00987425 _____ C:\Users\rapjap\Downloads\SecurityCheck.exe 2014-01-29 12:42 - 2014-01-29 12:42 - 02347384 _____ (ESET) C:\Users\rapjap\Downloads\esetsmartinstaller_enu (1).exe 2014-01-29 12:35 - 2013-12-23 02:14 - 00001989 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-01-29 12:35 - 2013-12-23 02:13 - 00000000 ____D C:\ProgramData\Adobe 2014-01-29 12:27 - 2014-01-29 12:27 - 00148840 _____ C:\Windows\Minidump\012914-25880-01.dmp 2014-01-29 12:27 - 2014-01-08 18:45 - 00000000 ____D C:\Windows\Minidump 2014-01-29 12:26 - 2014-01-08 18:45 - 245892136 _____ C:\Windows\MEMORY.DMP 2014-01-29 12:26 - 2013-12-10 19:27 - 00000000 ____D C:\Users\rapjap 2014-01-29 12:22 - 2014-01-29 12:22 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\rapjap\Downloads\revosetup95.exe 2014-01-29 12:22 - 2014-01-29 12:22 - 00001222 _____ C:\Users\rapjap\Desktop\Revo Uninstaller.lnk 2014-01-29 12:22 - 2014-01-29 12:22 - 00000000 ____D C:\Program Files\VS Revo Group 2014-01-28 13:20 - 2014-01-28 13:20 - 00148840 _____ C:\Windows\Minidump\012814-20748-01.dmp 2014-01-28 13:06 - 2010-11-21 03:31 - 00610202 _____ C:\Windows\system32\perfh01F.dat 2014-01-28 13:06 - 2010-11-21 03:31 - 00121526 _____ C:\Windows\system32\perfc01F.dat 2014-01-28 13:06 - 2010-11-20 22:01 - 02229048 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-28 13:01 - 2014-01-27 13:56 - 00000000 ____D C:\Program Files\HitmanPro.Alert 2014-01-27 15:18 - 2014-01-27 13:56 - 00564312 _____ (SurfRight) C:\Windows\system32\hmpalert.dll 2014-01-27 15:18 - 2014-01-27 13:56 - 00014376 _____ C:\Windows\system32\Drivers\hmpalert.sys 2014-01-27 13:56 - 2014-01-27 13:56 - 00000000 ____D C:\ProgramData\HitmanPro.Alert 2014-01-27 13:55 - 2014-01-27 13:55 - 01752488 _____ (SurfRight B.V.) C:\Users\rapjap\Downloads\hmpalert.exe 2014-01-27 13:24 - 2014-01-27 13:24 - 00148840 _____ C:\Windows\Minidump\012714-27362-01.dmp 2014-01-27 13:12 - 2014-01-27 13:12 - 02347384 _____ (ESET) C:\Users\rapjap\Downloads\esetsmartinstaller_enu.exe 2014-01-26 15:01 - 2014-01-26 15:01 - 01037068 _____ (Thisisu) C:\Users\rapjap\Downloads\JRT.exe 2014-01-26 14:58 - 2014-01-10 00:28 - 00000000 ____D C:\AdwCleaner 2014-01-26 14:56 - 2014-01-26 14:56 - 01236282 _____ C:\Users\rapjap\Downloads\adwcleaner.exe 2014-01-25 17:23 - 2014-01-10 02:24 - 00000000 ____D C:\ProgramData\InstallMate 2014-01-25 17:22 - 2014-01-25 17:22 - 01543208 _____ (BillP Studios) C:\Users\rapjap\Downloads\wpsetup.exe 2014-01-25 17:18 - 2014-01-25 17:18 - 00021008 _____ C:\ComboFix.txt 2014-01-25 17:18 - 2014-01-25 17:07 - 00000000 ____D C:\Qoobox 2014-01-25 17:18 - 2009-07-14 03:37 - 00000000 ___RD C:\Users\Public 2014-01-25 17:17 - 2014-01-25 17:07 - 00000000 ____D C:\Windows\erdnt 2014-01-25 17:16 - 2009-07-14 03:04 - 00000215 _____ C:\Windows\system.ini 2014-01-25 17:06 - 2014-01-25 17:06 - 05175240 ____R (Swearware) C:\Users\rapjap\Downloads\ComboFix.exe 2014-01-23 21:28 - 2014-01-23 21:28 - 00148840 _____ C:\Windows\Minidump\012314-28891-01.dmp 2014-01-23 21:21 - 2014-01-23 21:19 - 160298064 _____ (Advanced Micro Devices, Inc.) C:\Users\rapjap\Downloads\13-12_win7_win8_32_dd_ccc_whql.exe 2014-01-23 20:52 - 2013-12-10 19:29 - 00001150 _____ C:\Users\rapjap\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-23 20:49 - 2014-01-23 20:15 - 00000000 ____D C:\Windows\455F074C814E4520B69B5584BD90400C.TMP 2014-01-23 20:46 - 2009-07-14 05:53 - 00032582 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2014-01-23 20:37 - 2014-01-23 20:37 - 00148840 _____ C:\Windows\Minidump\012314-16146-01.dmp 2014-01-23 20:18 - 2014-01-23 20:18 - 00614784 _____ (Chip Digital GmbH) C:\Users\rapjap\Downloads\AdwCleaner - CHIP-Downloader.exe 2014-01-23 20:15 - 2013-12-10 01:03 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard 2014-01-23 20:12 - 2014-01-23 20:11 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\rapjap\Downloads\SpyHunter-Installer.exe 2014-01-23 20:06 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\Web 2014-01-23 17:03 - 2014-01-23 17:03 - 00148840 _____ C:\Windows\Minidump\012314-21949-01.dmp 2014-01-23 03:48 - 2014-01-23 03:47 - 00000000 ____D C:\ProgramData\IePluginService 2014-01-23 03:45 - 2014-01-23 03:45 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop 2014-01-17 19:45 - 2014-01-16 17:50 - 00000588 _____ C:\Users\rapjap\Desktop\Neues Textdokument.txt 2014-01-16 23:28 - 2014-01-16 23:28 - 00148840 _____ C:\Windows\Minidump\011614-20748-01.dmp 2014-01-16 13:25 - 2014-01-16 13:22 - 109291464 _____ (Advanced Micro Devices, Inc.) C:\Users\rapjap\Downloads\13-9-legacy_vista_win7_32_dd_ccc_whql.exe 2014-01-16 13:23 - 2014-01-16 13:22 - 26667268 _____ (Advanced Micro Devices, Inc.) C:\Users\rapjap\Downloads\13-1-legacy_vista_win7_win8_32-64_hydravision.exe 2014-01-15 21:05 - 2009-07-14 05:33 - 00410760 _____ C:\Windows\system32\FNTCACHE.DAT 2014-01-15 21:03 - 2013-12-22 21:00 - 00000000 ____D C:\ProgramData\Microsoft Help 2014-01-15 16:39 - 2014-01-15 16:39 - 00000000 ____D C:\287b6fbad0beae6a9d 2014-01-15 16:39 - 2013-12-11 17:53 - 83425928 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-15 16:39 - 2013-12-11 17:53 - 00000000 ____D C:\Windows\system32\MRT 2014-01-14 19:50 - 2014-01-13 02:21 - 00000000 ____D C:\ProgramData\Sony Corporation 2014-01-14 19:47 - 2014-01-13 02:22 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2014-01-14 19:47 - 2014-01-13 02:21 - 00000000 ____D C:\Program Files\Sony 2014-01-14 19:45 - 2014-01-13 02:49 - 00026576 _____ C:\Windows\DPINST.LOG 2014-01-14 19:25 - 2014-01-13 03:29 - 00000000 ____D C:\Program Files\Common Files\Sony Shared 2014-01-14 18:57 - 2014-01-14 18:57 - 01910104 _____ C:\Users\rapjap\Downloads\CHIPSET_DRIVER_INTEL_9.0C_9.0.0.1011.ZIP 2014-01-14 18:48 - 2014-01-14 18:48 - 00942761 _____ (DriverIdentifier ) C:\Users\rapjap\Downloads\driveridentifier_setup.exe 2014-01-14 18:48 - 2014-01-14 18:48 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\driveridentifier 2014-01-14 18:48 - 2014-01-14 18:48 - 00000000 ____D C:\Program Files\Driver Identifier 2014-01-14 18:45 - 2014-01-14 17:41 - 00000021 _____ C:\Windows\Model.txt 2014-01-14 18:45 - 2014-01-14 17:41 - 00000000 _____ C:\Windows\Model.log 2014-01-14 17:36 - 2014-01-14 13:23 - 00000000 ____D C:\Users\rapjap\Documents\Vaio Original Treiber 2014-01-14 17:29 - 2014-01-14 17:29 - 00000000 ____D C:\Program Files\DIFX 2014-01-14 17:13 - 2014-01-14 17:09 - 00001908 _____ C:\Windows\diagwrn.xml 2014-01-14 17:13 - 2014-01-14 17:09 - 00001908 _____ C:\Windows\diagerr.xml 2014-01-14 17:13 - 2009-07-14 05:39 - 00000000 _____ C:\Windows\setuperr.log 2014-01-14 17:09 - 2014-01-14 17:09 - 00001896 _____ C:\Users\rapjap\Desktop\DAEMON Tools Lite.lnk 2014-01-14 17:09 - 2014-01-14 17:07 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\DAEMON Tools Lite 2014-01-14 17:09 - 2014-01-14 17:07 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2014-01-14 17:08 - 2014-01-14 17:08 - 00243128 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-01-14 17:08 - 2014-01-14 17:07 - 00000000 ____D C:\Program Files\DAEMON Tools Lite 2014-01-13 03:38 - 2014-01-13 03:38 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\Sony Corporation 2014-01-13 03:24 - 2014-01-13 03:24 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Apfiltr_01001.Wdf 2014-01-13 03:24 - 2014-01-13 03:24 - 00000000 ____D C:\Program Files\Apoint 2014-01-13 03:22 - 2014-01-13 03:22 - 00000000 ____D C:\Windows\system32\sda 2014-01-13 03:11 - 2014-01-13 03:11 - 00000000 ____D C:\Update 2014-01-13 03:02 - 2014-01-13 03:02 - 00319456 _____ (Microsoft Corporation) C:\Windows\DIFxAPI.dll 2014-01-13 03:02 - 2014-01-13 03:02 - 00000000 ____D C:\Program Files\Realtek 2014-01-13 03:01 - 2014-01-13 03:01 - 00315392 _____ (Realtek Semiconductor Corp.) C:\Windows\HideWin.exe 2014-01-13 03:01 - 2014-01-13 03:01 - 00000000 ____D C:\Program Files\Common Files\InstallShield 2014-01-13 02:58 - 2014-01-13 02:58 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\ATI 2014-01-13 02:58 - 2014-01-13 02:58 - 00000000 ____D C:\Users\rapjap\AppData\Local\ATI 2014-01-13 02:58 - 2014-01-13 02:58 - 00000000 ____D C:\ProgramData\ATI 2014-01-13 02:51 - 2014-01-13 02:51 - 00000000 ____D C:\Users\rapjap\Documents\Bluetooth-Exchange-Ordner 2014-01-13 02:51 - 2014-01-13 02:51 - 00000000 ____D C:\Users\rapjap\Bluetooth Software 2014-01-13 02:50 - 2014-01-13 02:50 - 00000000 ____D C:\Windows\system32\es-MX 2014-01-13 02:50 - 2014-01-13 02:50 - 00000000 ____D C:\Windows\system32\es-AR 2014-01-13 02:50 - 2014-01-13 02:50 - 00000000 ____D C:\Program Files\WIDCOMM 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\zh-TW 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\zh-CN 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\sv-SE 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\ru-RU 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\pt-BR 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\pl-PL 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\nl-NL 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\nb-NO 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\ko-KR 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\ja-JP 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\it-IT 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\fr-FR 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\fi-FI 2014-01-13 02:50 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\de-DE 2014-01-13 02:41 - 2014-01-13 02:39 - 00000000 ____D C:\Program Files\ATI Technologies 2014-01-13 02:39 - 2014-01-13 02:39 - 00000000 ____D C:\Program Files\ATI 2014-01-13 02:35 - 2014-01-13 02:35 - 00000000 ____D C:\Program Files\intel 2014-01-12 23:18 - 2014-01-12 23:18 - 00148744 _____ C:\Windows\Minidump\011214-17316-01.dmp 2014-01-10 18:38 - 2013-12-22 21:00 - 00000000 ____D C:\Program Files\Microsoft Office 2014-01-10 18:25 - 2014-01-10 18:24 - 00148744 _____ C:\Windows\Minidump\011014-16567-01.dmp 2014-01-10 16:18 - 2014-01-10 16:18 - 00001021 _____ C:\Users\Public\Desktop\GhostMouse Free.lnk 2014-01-10 16:18 - 2014-01-10 16:18 - 00000000 ____D C:\Users\rapjap\Documents\AutomaticSolution Software 2014-01-10 16:18 - 2014-01-10 16:18 - 00000000 ____D C:\Program Files\GhostMouse 2014-01-10 02:29 - 2014-01-10 02:27 - 00000000 ____D C:\Program Files\SpywareBlaster 2014-01-10 02:27 - 2014-01-10 02:27 - 00001037 _____ C:\Users\Public\Desktop\SpywareBlaster.lnk 2014-01-10 02:27 - 2014-01-10 02:27 - 00000000 ____D C:\ProgramData\Licenses 2014-01-10 02:24 - 2014-01-10 02:24 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\WinPatrol 2014-01-10 02:24 - 2014-01-10 02:24 - 00000000 ____D C:\Program Files\BillP Studios 2014-01-10 00:39 - 2014-01-10 00:39 - 00000000 ____D C:\Windows\ERUNT 2014-01-09 15:59 - 2014-01-09 15:59 - 00148744 _____ C:\Windows\Minidump\010914-22339-01.dmp 2014-01-09 00:33 - 2009-07-14 03:04 - 00000478 _____ C:\Windows\win.ini 2014-01-09 00:10 - 2014-01-09 00:07 - 00000000 ____D C:\Program Files\PantsOff 2014-01-08 18:45 - 2014-01-08 18:45 - 00144616 _____ C:\Windows\Minidump\010814-21528-01.dmp 2014-01-08 17:37 - 2014-01-08 17:26 - 00000000 ____D C:\Users\rapjap\AppData\Local\Windows Live 2014-01-08 17:33 - 2014-01-08 17:33 - 00000000 ____D C:\Windows\de 2014-01-08 17:32 - 2014-01-08 17:32 - 00000020 _____ C:\Windows\Xö5 2014-01-08 17:32 - 2014-01-08 17:32 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition 2014-01-08 17:32 - 2014-01-08 17:30 - 00000000 ____D C:\Program Files\Windows Live 2014-01-08 17:30 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2014-01-08 17:23 - 2014-01-08 17:23 - 00000000 ____D C:\Program Files\Common Files\Windows Live 2014-01-08 17:23 - 2014-01-08 17:03 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\vlc 2014-01-08 17:02 - 2014-01-08 17:02 - 00001024 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-08 17:02 - 2014-01-08 17:02 - 00000000 ____D C:\Program Files\VideoLAN 2014-01-07 23:28 - 2014-01-07 23:28 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\WinRAR 2014-01-07 23:28 - 2014-01-07 23:28 - 00000000 ____D C:\Users\rapjap\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-01-07 23:28 - 2014-01-07 23:28 - 00000000 ____D C:\Program Files\WinRAR 2014-01-06 18:44 - 2013-12-10 19:28 - 00109280 _____ C:\Users\rapjap\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-06 18:35 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\MSBuild 2014-01-06 18:31 - 2014-01-06 18:31 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 8 2014-01-06 18:30 - 2010-11-21 03:40 - 00000000 ____D C:\Windows\ShellNew 2014-01-06 18:03 - 2013-12-23 19:44 - 00000000 ____D C:\Users\rapjap\Desktop\BWB Some content of TEMP: ==================== C:\Users\rapjap\AppData\Local\Temp\avgnt.exe C:\Users\rapjap\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2011-04-29 20:24] - [2011-04-28 13:15] - 2969600 ____A (Microsoft Corporation) 678B3206A8FBE8BF74621CB964342AC8 C:\Windows\system32\winlogon.exe => MD5 is legit C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-23 16:58 ==================== End Of Log ============================ |
31.01.2014, 08:39 | #17 |
/// the machine /// TB-Ausbilder | Blue Screen / Unerwartetes Herunterfahren des Systems Fertig
__________________Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ |
31.01.2014, 20:24 | #18 |
| Blue Screen / Unerwartetes Herunterfahren des Systems Habe alles soweit erledigt. Aber irgendwie stimmt immer noch etwas nicht mit meinem System. Wenn ich Avira nach Viren durchsuchen lasse, kriege ich dennoch einen Blue Screen. Ich wollte eben prüfen lassen, ob mein Rechner wirklichen virenfrei ist, aber kriege wieder diesen Blue Screen beim durchsuchen.
__________________Weiß jetzt nicht was sich im Gegensatz zu vorher geändert. Irgendwie habe ich das Problem immer noch wie vorher. Nur diesmal bleibt es in dem WindowsLive/Contact Ordner hängen. |
01.02.2014, 17:26 | #19 |
/// the machine /// TB-Ausbilder | Blue Screen / Unerwartetes Herunterfahren des Systems deinstalliere Avira und installier es mal neu, oder installier mal ein anderes AV Programm.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
06.02.2014, 16:06 | #20 |
| Blue Screen / Unerwartetes Herunterfahren des Systems Vielen Dank schrauber, es lag dann wirklich an den beschädigten Programm die installiert wurden. Habe die Programme gelöscht und bin dann weiter gekommen, Avira habe ich bereits auch erneut installiert. Ich hoffe dass diese "unterwarteten Systemneustarts" nicht noch mal vorkommen. Ich danke dir noch mal für deine mühe. Werde euer Forum auf jeden Fall supporten. Vielen vielen Dank. Wenn sich erneut was ergibt bezüglich der Probleme, melde ich mich bei euch |
07.02.2014, 09:53 | #21 |
/// the machine /// TB-Ausbilder | Blue Screen / Unerwartetes Herunterfahren des Systems Gern Geschehen
__________________ --> Blue Screen / Unerwartetes Herunterfahren des Systems |
Themen zu Blue Screen / Unerwartetes Herunterfahren des Systems |
adobe, aufgegeben, checken, desktop, einstellungen, exe, google, herunterfahren, malware, namen, nationzoom, nationzoom entfernen, neustart, notebook, pdf, programm, programme, pup.optional.4shared, scan, seite, spyhunter, spyhunter entfernen, system, trojan.downloader.ns, unerwartetem, windows |