|
Log-Analyse und Auswertung: Windows 8.1: PC lädt ständig Daten ins InternetWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
25.01.2014, 12:03 | #1 |
| Windows 8.1: PC lädt ständig Daten ins Internet Hallo, mein Laptop, Windows 8.1, lädt dauerhaft Daten ins Internet. Laut Antivirenprogramm zirka 5 MB und das alle 5-10 Minuten. Antivirenprogramm (ESET) bereits den PC durchsuchen lassen, gefundene Dateien löschen. Auch Malewarebyte hat eine Datei gefunden, die ich ebenfalls gelöscht habe. Das Problem konnte allerdings nicht gelöst werden. Ich hoffe jetzt, dass mir hier jemand helfen kann. Gruß |
25.01.2014, 12:52 | #2 |
/// the machine /// TB-Ausbilder | Windows 8.1: PC lädt ständig Daten ins Internet HI,
__________________Logfiles von MBAM und ESET? Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
25.01.2014, 13:14 | #3 |
| Windows 8.1: PC lädt ständig Daten ins Internet Log ESET (gibts nur mit XML-Struktur):
__________________Code:
ATTFilter <?xml version="1.0" encoding="utf-8" ?> <ESET> <LOG> <RECORD> <COLUMN NAME="Log">Log</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">Version der Signaturdatenbank: 9335 (20140124)</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">Datum: 24.01.2014 Uhrzeit: 22:07:06</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">Geprüfte Laufwerke, Ordner und Dateien: Arbeitsspeicher;C:\Bootsektor;D:\Bootsektor;C:\;D:\</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">C:\Users\Sven\AppData\Local\Temp\AskPIP_FF_.exe - Variante von Win32/Bundled.Toolbar.Ask.D potenziell unsichere Anwendung - Aktionsauswahl aufgeschoben bis zum Abschluss des Scans</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">C:\Users\Sven\AppData\Local\Temp\is961225091\wajam_validate.exe - Win32/Wajam.F evtl. unerwünschte Anwendung - Aktionsauswahl aufgeschoben bis zum Abschluss des Scans</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">C:\Users\Sven\AppData\Local\Temp\NERO1005880\Toolbar.exe - Variante von Win32/Bundled.Toolbar.Ask.A potenziell unsichere Anwendung - Aktionsauswahl aufgeschoben bis zum Abschluss des Scans</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">Geprüfte Objekte: 767866</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">Erkannte Bedrohungen: 3</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">Anzahl gesäuberter Objekte: 0</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">Abgeschlossen: 23:20:09 Benötigte Zeit: 4383 Sek. (01:13:03)</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log"></COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">Hinweise:</COLUMN> </RECORD> <RECORD> <COLUMN NAME="Log">[4] Objekt kann nicht geöffnet werden. Möglicherweise in Benutzung durch eine andere Anwendung oder das Betriebssystem.</COLUMN> </RECORD> </LOG> </ESET> Log FRST: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-01-2014 Ran by Sven (administrator) on SVEN-PC on 25-01-2014 13:11:30 Running from C:\Users\Sven\Desktop Windows 8.1 Pro (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Microsoft Corp.) C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe (Nero AG) C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Prolific Technology Inc.) C:\Windows\SysWOW64\IoctlSvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation) C:\Windows\System32\vmms.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\livecomm.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe (Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe (Microsoft Corp.) C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9600.16422_x64__8wekyb3d8bbwe\glcnd.exe (Microsoft Corp.) C:\Program Files (x86)\Microsoft\BingDesktop\BDExtHost.exe (Microsoft Corp.) C:\Program Files (x86)\Microsoft\BingDesktop\BDAppHost.exe (Microsoft Corp.) C:\Program Files (x86)\Microsoft\BingDesktop\BDRuntimeHost.exe (hxxp://tortoisesvn.net) C:\Program Files\TortoiseSVN\bin\TSVNCache.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Windows\WinStore\WSHost.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Windows\System32\MRT.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Don HO don.h@free.fr) C:\Program Files (x86)\Notepad++\notepad++.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ESET) C:\Program Files\ESET\ESET Smart Security\eeclnt.exe (Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicator.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-14] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2531624 2010-12-17] (Synaptics Incorporated) HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [5618456 2013-09-12] (ESET) HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech, Inc.) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1212560 2012-06-13] (Realtek Semiconductor) HKLM\...\Run: [QuickSet] - C:\Program Files\Dell\QuickSet\QuickSet.exe [4146848 2012-08-16] (Dell Inc.) HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [7818040 2013-09-19] (Motorola Solutions, Inc.) HKLM\...\Run: [Zune Launcher] - C:\Program Files (x86)\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [444904 2012-09-20] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [BlueStacks Agent] - C:\Program Files (x86)\BlueStacks\HD-Agent.exe [601928 2013-06-19] (BlueStack Systems, Inc.) HKLM-x32\...\Run: [BingDesktop] - C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe [2258056 2013-09-22] (Microsoft Corp.) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [AirPort Base Station Agent] - C:\Program Files (x86)\AirPort\APAgent.exe [771360 2009-11-11] (Apple Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3478392 2013-12-21] (Adobe Systems Inc.) HKLM-x32\...\Run: [NBKeyScan] - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2221352 2008-12-02] (Nero AG) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd) HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1815464 2014-01-07] (Valve Corporation) HKCU\...\Run: [HP Officejet Pro 8600 (NET)] - C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.) HKCU\...\Run: [GarminExpressTrayApp] - C:\Program Files (x86)\Garmin\Garmin\Express Tray\ExpressTray.exe [1095000 2013-12-13] (Garmin Ltd or its subsidiaries) HKCU\...\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe [1840424 2009-03-25] (Nero AG) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-12-19] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [141336 2013-12-19] (NVIDIA Corporation) Startup: C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tintenwarnungen überwachen - .lnk ShortcutTarget: Tintenwarnungen überwachen - .lnk -> C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPStatusBL.dll (Hewlett-Packard Co.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://german-roleplay.net/index.php?page=Index HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://sapdonline.de/?content=home hxxp://142161.vs.webtropia.com/?content=home hxxp://mantis.142161.vs.webtropia.com/my_view_page.php hxxp://www.bvg.de/index.php/de/index.html hxxp://www.s-bahn-berlin.de/ hxxp://www.vbb.de/de/index.html hxxp://www.vmz-info.de/web/guest/2?p_p_id=simaps_WAR_simapsportlet_INSTANCE_ovXy&p_p_lifecycle=0&p_p_state=normal&p_p_mode=view&p_p_col_id=column-1&p_p_col_count=1&_simaps_WAR_simapsportlet_INSTANCE_ovXy_cmd=traffic&_simaps_WAR_simapsportlet_INSTANCE_ovXy_submenu=traffic_webcams BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO: Adobe Acrobat Create PDF from Selection - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft Web Test Recorder 10.0 Helper - {876d9f09-c6d6-4324-a2cc-04dd9a4de12f} - C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation) BHO-x32: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Adobe Acrobat Create PDF from Selection - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default FF user.js: detected! => C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\user.js FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @garmin.com/GpsControl - C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.1.0 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.1 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll () FF Plugin-x32: @garmin.com/GpsControl - C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems) FF SearchPlugin: C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\searchplugins\safesearch.xml FF Extension: Flagfox - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} [2013-12-15] FF Extension: Garmin Communicator - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} [2013-12-17] FF Extension: WOT - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2013-11-28] FF Extension: SearchPreview - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\{EF522540-89F5-46b9-B6FE-1829E2B572C6} [2013-11-18] FF Extension: Firebug - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\firebug@software.joehewitt.com.xpi [2013-11-10] FF Extension: XML Viewer - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\xmlviewer@outlook.com.xpi [2013-11-10] FF Extension: NoScript - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-11-10] FF Extension: Adblock Plus - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-11-10] FF Extension: Disable Anti-Adblock - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\{d49a148e-817e-4025-bee3-5d541376de3b}.xpi [2013-11-10] FF Extension: Extended Statusbar - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\{daf44bf7-a45e-4450-979c-91cf07434c3d}.xpi [2013-11-10] FF Extension: Tab Mix Plus - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2013-11-10] FF Extension: User Agent Switcher - C:\Users\Sven\AppData\Roaming\Mozilla\Firefox\Profiles\j79gffy6.default\Extensions\{e968fc70-8f95-4ab9-9e79-304de2a71ee1}.xpi [2013-11-10] FF HKLM-x32\...\Firefox\Extensions: [PHPEditXdebugExtension@waterproof.fr] - C:\Program Files (x86)\WaterProof\PHPEdit\3.4.2\Tools\FirefoxExtension\unpacked FF Extension: PHPEdit Xdebug Extension - C:\Program Files (x86)\WaterProof\PHPEdit\3.4.2\Tools\FirefoxExtension\unpacked [2013-11-10] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2014-01-15] FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2013-11-10] FF HKCU\...\Firefox\Extensions: [PHPEditXdebugExtension@waterproof.fr] - C:\Program Files (x86)\WaterProof\PHPEdit\3.4.2\Tools\FirefoxExtension\unpacked FF Extension: PHPEdit Xdebug Extension - C:\Program Files (x86)\WaterProof\PHPEdit\3.4.2\Tools\FirefoxExtension\unpacked [2013-11-10] FF StartMenuInternet: FIREFOX.EXE - C:\Program Files\Nightly\firefox.exe Chrome: ======= CHR HomePage: CHR Extension: (Google Docs) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-16] CHR Extension: (Google Drive) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-16] CHR Extension: (WOT) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2014-01-16] CHR Extension: (YouTube) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-16] CHR Extension: (Adblock Plus) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-01-16] CHR Extension: (Google-Suche) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-16] CHR Extension: (User-Agent Switcher for Chrome) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg [2014-01-16] CHR Extension: (Adobe Acrobat – PDF-Datei erstellen) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2014-01-16] CHR Extension: (AdBlock) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-01-16] CHR Extension: (SearchPreview) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcjdanpjacpeeppdjkppebobilhaglfo [2014-01-16] CHR Extension: (Google Wallet) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-16] CHR Extension: (NotScripts) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\odjhifogjcknibkahlpidmdajjpkkcfn [2014-01-16] CHR Extension: (Google Mail) - C:\Users\Sven\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-16] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2013-12-21] ==================== Services (Whitelisted) ================= U2 BingDesktopUpdate; C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe [173192 2013-09-22] (Microsoft Corp.) U2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [393032 2013-06-19] (BlueStack Systems, Inc.) U2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384840 2013-06-19] (BlueStack Systems, Inc.) U3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [321024 2013-08-22] (Microsoft Corporation) U2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1337752 2013-09-12] (ESET) U3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) U2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [250712 2013-12-13] (Garmin Ltd or its subsidiaries) U2 HPSLPSVC; C:\Users\Sven\AppData\Local\Temp\7zS08FC\hpslpsvc64.dll [1039360 2013-07-19] (Hewlett-Packard Co.) U2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [157128 2013-09-18] (Intel Corporation) U2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe [14760 2013-03-03] (Microsoft Corporation) U2 Nero BackItUp Scheduler 3; C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe [877864 2008-12-02] (Nero AG) U3 NMIndexingService; C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe [537896 2009-03-25] (Nero AG) U2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) U2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) U2 PLFlash DeviceIoControl Service; C:\Windows\SysWOW64\IoctlSvc.exe [81920 2006-12-19] (Prolific Technology Inc.) U2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75064 2014-01-08] () U3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) U2 vmms; C:\Windows\system32\vmms.exe [13368832 2013-11-17] (Microsoft Corporation) U3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) U3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) U3 WMZuneComm; C:\Program Files (x86)\Zune\WMZuneComm.exe [306400 2011-08-05] (Microsoft Corporation) U3 ZuneNetworkSvc; C:\Program Files (x86)\Zune\ZuneNss.exe [8277728 2011-08-05] (Microsoft Corporation) U3 ZuneWlanCfgSvc; C:\Program Files (x86)\Zune\ZuneWlanCfgSvc.exe [467680 2011-08-05] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== U0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) U3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) U2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [70984 2013-06-19] (BlueStack Systems) U3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [131584 2013-08-22] (Microsoft Corporation) U3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [32640 2013-08-22] (Microsoft Corporation) U3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2013-07-22] (Motorola Solutions, Inc.) U3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1390904 2013-10-15] (Motorola Solutions, Inc.) U1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2013-11-11] (DT Soft Ltd) U1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [239320 2013-09-17] (ESET) U0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [239296 2013-09-17] (ESET) U1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [168256 2013-09-17] (ESET) U2 epfw; C:\Windows\system32\DRIVERS\epfw.sys [220232 2013-09-17] (ESET) U1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [44120 2013-09-17] (ESET) U0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [62136 2013-09-17] (ESET) U1 hvservice; C:\Windows\System32\drivers\hvservice.sys [68960 2013-11-17] (Microsoft Corporation) U3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) U3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) U0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) U0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) U3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-08-23] (Microsoft Corporation) U0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) U3 lunparser; C:\Windows\System32\drivers\lunparser.sys [19456 2013-11-17] (Microsoft Corporation) U3 NdisImPlatformMp; C:\Windows\system32\DRIVERS\NdisImPlatform.sys [124928 2013-08-22] (Microsoft Corporation) U3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) U3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) U1 nvkflt; C:\Windows\system32\DRIVERS\nvkflt.sys [300320 2013-12-19] (NVIDIA Corporation) U3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) U3 passthruparser; C:\Windows\System32\drivers\passthruparser.sys [22016 2013-11-17] (Microsoft Corporation) U3 pvhdparser; C:\Windows\System32\drivers\pvhdparser.sys [27136 2013-11-17] (Microsoft Corporation) U3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) U3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation) U3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) U0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) U3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) U3 vhdparser; C:\Windows\System32\drivers\vhdparser.sys [19456 2013-11-17] (Microsoft Corporation) U3 VMSMP; C:\Windows\system32\DRIVERS\vmswitch.sys [686080 2013-10-08] (Microsoft Corporation) U3 VMSP; C:\Windows\system32\DRIVERS\vmswitch.sys [686080 2013-10-08] (Microsoft Corporation) U3 VMSVSF; C:\Windows\system32\DRIVERS\vmswitch.sys [686080 2013-10-08] (Microsoft Corporation) U3 VMSVSP; C:\Windows\system32\DRIVERS\vmswitch.sys [686080 2013-10-08] (Microsoft Corporation) U3 VSPerfDrv110; C:\Program Files (x86)\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\x64\VSPerfDrv110.sys [70264 2012-07-26] (Microsoft Corporation) U3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-25 13:11 - 2014-01-25 13:11 - 00028145 _____ C:\Users\Sven\Desktop\FRST.txt 2014-01-25 13:11 - 2014-01-25 13:11 - 00000000 ____D C:\FRST 2014-01-25 13:09 - 2014-01-25 13:09 - 02077696 _____ (Farbar) C:\Users\Sven\Desktop\FRST64.exe 2014-01-25 13:07 - 2014-01-25 13:08 - 00001966 _____ C:\Users\Sven\Desktop\Log.xml 2014-01-25 10:21 - 2014-01-25 10:23 - 12022572 _____ C:\Users\Sven\Downloads\sa-mp-0.3z-RC3-install.exe 2014-01-24 20:39 - 2014-01-24 20:41 - 02338824 _____ C:\Users\Sven\Downloads\hppiw.exe 2014-01-24 19:51 - 2014-01-24 19:51 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Malwarebytes 2014-01-24 19:51 - 2014-01-24 19:51 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-24 19:50 - 2014-01-24 19:51 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-24 19:50 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-01-24 19:49 - 2014-01-24 19:50 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Sven\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-20 22:23 - 2014-01-20 22:23 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Marc 2014-01-20 22:22 - 2014-01-23 19:33 - 00000000 ____D C:\Users\Sven\AppData\Local\Deployment 2014-01-20 22:22 - 2014-01-20 22:22 - 00460224 _____ () C:\Users\Sven\Downloads\setup.exe 2014-01-20 22:22 - 2014-01-20 22:22 - 00000000 ____D C:\Users\Sven\AppData\Local\Apps\2.0 2014-01-20 13:23 - 2014-01-20 13:24 - 01806677 _____ (fincs) C:\Users\Sven\Downloads\SciTE4AHK300401_Install.exe 2014-01-16 13:57 - 2014-01-25 13:07 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-16 13:57 - 2014-01-25 10:18 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-16 13:57 - 2014-01-16 14:02 - 00004094 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-01-16 13:57 - 2014-01-16 14:02 - 00003858 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-01-16 13:55 - 2014-01-16 13:55 - 00819176 _____ (Google Inc.) C:\Users\Sven\Downloads\ChromeSetup.exe 2014-01-16 13:45 - 2014-01-16 13:45 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Nero 2014-01-16 13:40 - 2014-01-16 13:40 - 00000000 ____D C:\Users\Sven\AppData\Local\Ahead 2014-01-16 13:30 - 2014-01-16 13:30 - 00000026 _____ C:\Windows\Irremote.ini 2014-01-16 13:29 - 2014-01-16 13:40 - 00000358 _____ C:\Windows\SysWOW64\MsiExec.exe.log 2014-01-16 13:29 - 2014-01-16 13:29 - 00001024 _____ C:\Users\Sven\.rnd 2014-01-16 13:28 - 2014-01-16 13:28 - 00000000 ____D C:\ProgramData\Nero 2014-01-16 13:28 - 2014-01-16 13:28 - 00000000 ____D C:\Program Files (x86)\Nero 2014-01-16 13:22 - 2014-01-16 13:22 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory 2014-01-16 13:21 - 2014-01-16 13:22 - 00000000 ____D C:\Program Files (x86)\FormatFactory 2014-01-16 13:16 - 2014-01-16 13:16 - 00000904 _____ C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nightly.lnk 2014-01-16 11:01 - 2014-01-16 11:54 - 00000000 ____D C:\Program Files (x86)\Windows Live 2014-01-16 10:57 - 2014-01-16 11:02 - 00000000 ____D C:\Users\Sven\AppData\Local\Windows Live 2014-01-16 10:53 - 2014-01-16 10:53 - 01245168 _____ (Microsoft Corporation) C:\Users\Sven\Downloads\wlsetup-web.exe 2014-01-15 10:48 - 2013-12-09 01:15 - 00787968 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2014-01-15 10:29 - 2014-01-16 10:10 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2014-01-14 21:37 - 2014-01-13 10:25 - 64388053 _____ C:\Users\Sven\Desktop\Steve Ballmer - One Microsoft.mp4 2014-01-12 22:48 - 2014-01-12 22:48 - 00058249 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2014-01-12 22_48_10.627359.dmp 2014-01-08 11:23 - 2014-01-08 17:15 - 00000000 ____D C:\Windows\SysWOW64\NV 2014-01-08 11:23 - 2014-01-08 17:15 - 00000000 ____D C:\Windows\system32\NV 2014-01-08 11:20 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 18310112 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-08 11:20 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00300320 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvkflt.sys 2014-01-08 11:20 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00032544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2014-01-08 11:20 - 2013-12-05 09:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-01-08 11:20 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-01-08 07:50 - 2014-01-08 07:54 - 00000000 ____D C:\Users\Sven\Documents\Battlefield 2 2014-01-08 07:50 - 2014-01-08 07:50 - 00794408 _____ C:\Windows\SysWOW64\Pbsvc.exe 2014-01-08 07:50 - 2014-01-08 07:50 - 00111928 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2014-01-08 07:50 - 2014-01-08 07:50 - 00075064 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2014-01-08 07:49 - 2014-01-08 07:49 - 00000000 ____D C:\Program Files (x86)\GameSpy 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptHelper.txt.lck 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptHelper.txt 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptException.txt.lck 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptException.txt 2014-01-05 21:41 - 2014-01-05 21:41 - 00062265 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2014-01-05 21_41_33.323819.dmp 2014-01-02 16:57 - 2014-01-02 16:57 - 00000000 ____D C:\Program Files (x86)\Shark007 2014-01-02 16:55 - 2014-01-02 17:05 - 00000000 ____D C:\ProgramData\Standard 2014-01-02 12:20 - 2014-01-02 12:20 - 00000000 ____D C:\Users\Sven\Desktop\Omsi-Helpmaker 2013-12-30 16:57 - 2013-12-30 16:57 - 00000000 ____D C:\Users\Sven\AppData\Roaming\MiKTeX 2013-12-30 16:57 - 2013-12-30 16:57 - 00000000 ____D C:\Users\Sven\AppData\Local\MiKTeX 2013-12-30 16:56 - 2013-12-30 16:56 - 00000000 ____D C:\ProgramData\MiKTeX 2013-12-30 16:54 - 2013-12-30 16:55 - 00000000 ____D C:\Program Files (x86)\MiKTeX 2.9 2013-12-30 13:55 - 2013-12-30 13:55 - 00000000 ____D C:\Users\Sven\Desktop\Bachelor 2013-12-30 13:51 - 2013-12-30 13:51 - 00000000 ____D C:\Users\Sven\Documents\Meine empfangenen Dateien 2013-12-29 17:25 - 2013-12-29 17:27 - 00000000 ____D C:\Users\Sven\Desktop\Radio 2013-12-27 23:59 - 2013-12-27 23:59 - 00060721 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2013-12-27 23_59_05.283104.dmp 2013-12-27 18:17 - 2013-12-27 18:18 - 00000000 ____D C:\Users\Sven\AppData\Local\Razer 2013-12-27 18:17 - 2013-12-27 18:18 - 00000000 ____D C:\ProgramData\Razer 2013-12-27 18:12 - 2013-12-27 18:16 - 41363400 _____ (Razer Inc. ) C:\Users\Sven\Downloads\RazerGameBoosterSetup_4.1.59.0_1.exe 2013-12-27 18:12 - 2013-12-27 18:12 - 00021464 _____ C:\Users\Sven\Downloads\4gb_patch.zip 2013-12-27 14:14 - 2013-12-27 14:14 - 00000000 ____D C:\Users\Public\Documents\Explorer Suite Signatures 2013-12-27 14:14 - 2013-12-27 14:14 - 00000000 ____D C:\Program Files\Explorer Suite 2013-12-27 11:32 - 2014-01-16 11:00 - 00213912 _____ C:\Windows\DirectX.log 2013-12-27 11:32 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-12-27 11:32 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-12-27 11:32 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-12-27 11:32 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-12-27 11:32 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-12-27 11:32 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-12-27 11:32 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-12-27 11:32 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-12-27 11:32 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2013-12-27 11:32 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-12-27 11:32 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-12-27 11:32 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-12-27 11:32 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-12-27 11:32 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-12-27 11:32 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-12-27 11:32 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-12-27 11:32 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-12-27 11:32 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-12-27 11:32 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-12-27 11:32 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-12-27 11:32 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-12-27 11:32 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-12-27 11:32 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-12-27 11:32 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-12-27 11:32 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-12-27 11:32 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-12-27 11:32 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-12-27 11:32 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-12-27 11:32 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-12-27 11:32 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-12-27 11:32 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-12-27 11:32 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-12-27 11:32 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-12-27 11:32 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-12-27 11:32 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-12-27 11:32 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-12-27 11:32 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-12-27 11:32 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-12-27 11:32 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-12-27 11:32 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-12-27 11:32 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-12-27 11:32 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-12-27 11:32 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-12-27 11:32 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-12-27 11:32 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-12-27 11:32 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-12-27 11:32 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-12-27 11:32 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-12-27 11:32 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-12-27 11:32 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-12-27 11:32 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-12-27 11:32 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-12-27 11:32 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-12-27 11:32 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-12-27 11:32 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-12-27 11:32 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-12-27 11:32 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-12-27 11:32 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-12-27 11:32 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-12-27 11:32 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-12-27 11:32 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-12-27 11:32 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-12-27 11:32 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-12-27 11:32 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-12-27 11:32 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-12-27 11:32 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-12-27 11:32 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-12-27 11:32 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-12-27 11:32 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-12-27 11:32 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-12-27 11:32 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-12-27 11:32 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-12-27 11:32 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-12-27 11:32 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-12-27 11:32 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-12-27 11:32 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-12-27 11:32 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-12-27 11:32 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-12-27 11:32 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-12-27 11:32 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-12-27 11:32 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-12-27 11:32 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-12-27 11:32 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-12-27 11:32 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-12-27 11:32 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-12-27 11:32 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-12-27 11:32 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-12-27 11:32 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-12-27 11:32 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-12-27 11:32 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-12-27 11:32 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-12-27 11:32 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-12-27 11:32 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-12-27 11:32 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-12-27 11:32 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-12-27 11:32 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-12-27 11:32 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-12-27 11:32 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-12-27 11:32 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-12-27 11:32 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-12-27 11:32 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-12-27 11:32 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-12-27 11:32 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-12-27 11:32 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-12-27 11:32 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-12-27 11:32 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-12-27 11:32 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-12-27 11:32 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-12-27 11:32 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-12-27 11:32 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-12-27 11:32 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-12-27 11:32 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-12-27 11:32 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-12-27 11:32 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-12-27 11:32 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-12-27 11:32 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-12-27 11:32 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-12-27 11:32 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-12-27 11:32 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-12-27 11:32 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-12-27 11:32 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-12-27 11:32 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-12-27 11:32 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-12-27 11:32 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-12-27 11:32 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-12-27 11:32 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-12-27 11:32 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-12-27 11:32 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-12-27 11:32 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-12-27 11:32 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-12-27 11:32 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-12-27 11:32 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-12-27 11:32 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-12-27 11:32 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-12-27 11:32 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2013-12-27 11:32 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2013-12-27 11:32 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-12-27 11:32 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-12-27 11:32 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-12-27 11:32 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-12-27 11:32 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-12-27 11:32 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-12-27 11:32 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-12-27 11:32 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-12-27 11:32 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-12-27 11:32 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-12-27 11:32 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-12-27 11:32 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-12-27 11:32 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-12-27 11:32 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-12-27 11:32 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-12-27 11:32 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-12-27 11:32 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-12-27 11:32 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-12-27 11:32 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-12-27 11:32 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-12-27 11:32 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-12-27 11:32 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-12-27 11:32 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-12-27 11:32 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-12-27 11:32 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-12-27 11:32 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-12-27 11:32 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-12-27 11:32 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-12-27 11:32 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-12-27 11:32 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-12-27 11:32 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-12-27 11:32 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-12-27 11:32 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll ==================== One Month Modified Files and Folders ======= 2014-01-25 13:11 - 2014-01-25 13:11 - 00028145 _____ C:\Users\Sven\Desktop\FRST.txt 2014-01-25 13:11 - 2014-01-25 13:11 - 00000000 ____D C:\FRST 2014-01-25 13:09 - 2014-01-25 13:09 - 02077696 _____ (Farbar) C:\Users\Sven\Desktop\FRST64.exe 2014-01-25 13:08 - 2014-01-25 13:07 - 00001966 _____ C:\Users\Sven\Desktop\Log.xml 2014-01-25 13:07 - 2014-01-16 13:57 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-25 13:00 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\sru 2014-01-25 10:52 - 2013-11-10 12:55 - 01198175 _____ C:\Windows\WindowsUpdate.log 2014-01-25 10:37 - 2013-11-10 13:03 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2919117846-4085097920-1780530210-1001 2014-01-25 10:37 - 2013-11-10 12:59 - 00000000 __RDO C:\Users\Sven\SkyDrive 2014-01-25 10:23 - 2014-01-25 10:21 - 12022572 _____ C:\Users\Sven\Downloads\sa-mp-0.3z-RC3-install.exe 2014-01-25 10:19 - 2013-11-10 14:25 - 00000000 ____D C:\Users\Sven\AppData\Roaming\TS3Client 2014-01-25 10:18 - 2014-01-16 13:57 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-25 10:18 - 2013-11-17 17:50 - 00000000 ____D C:\Users\Sven\AppData\Local\TSVNCache 2014-01-25 10:17 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness 2014-01-24 21:59 - 2013-11-10 12:58 - 01886824 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-24 21:59 - 2013-08-23 00:24 - 00808988 _____ C:\Windows\system32\perfh007.dat 2014-01-24 21:59 - 2013-08-23 00:24 - 00177442 _____ C:\Windows\system32\perfc007.dat 2014-01-24 21:57 - 2013-11-17 15:03 - 27590656 _____ C:\Windows\system32\vmguest.iso 2014-01-24 21:54 - 2013-11-10 13:14 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-24 21:54 - 2013-11-10 12:48 - 00003528 _____ C:\Windows\PFRO.log 2014-01-24 21:54 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-24 21:53 - 2013-08-22 14:25 - 01048576 ___SH C:\Windows\system32\config\BBI 2014-01-24 20:43 - 2013-08-22 16:36 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2014-01-24 20:43 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy 2014-01-24 20:42 - 2013-11-14 11:33 - 00000000 ____D C:\ProgramData\HP 2014-01-24 20:41 - 2014-01-24 20:39 - 02338824 _____ C:\Users\Sven\Downloads\hppiw.exe 2014-01-24 19:51 - 2014-01-24 19:51 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Malwarebytes 2014-01-24 19:51 - 2014-01-24 19:51 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-24 19:51 - 2014-01-24 19:50 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-24 19:50 - 2014-01-24 19:49 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Sven\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-24 15:17 - 2013-11-11 15:49 - 00000000 ____D C:\Program Files (x86)\Steam 2014-01-23 22:45 - 2013-11-12 13:35 - 00000000 ____D C:\Users\Sven\AppData\Roaming\vlc 2014-01-23 19:33 - 2014-01-20 22:22 - 00000000 ____D C:\Users\Sven\AppData\Local\Deployment 2014-01-23 13:00 - 2013-11-11 15:53 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-01-22 22:51 - 2013-11-11 16:02 - 00000290 _____ C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job 2014-01-21 16:39 - 2013-11-10 15:54 - 00000000 ____D C:\ProgramData\Adobe 2014-01-21 11:20 - 2013-11-10 12:55 - 00000000 ____D C:\Users\Sven\AppData\Local\Packages 2014-01-21 11:01 - 2013-11-10 15:56 - 00000000 ____D C:\Users\Sven\AppData\Roaming\FileZilla 2014-01-20 22:23 - 2014-01-20 22:23 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Marc 2014-01-20 22:22 - 2014-01-20 22:22 - 00460224 _____ () C:\Users\Sven\Downloads\setup.exe 2014-01-20 22:22 - 2014-01-20 22:22 - 00000000 ____D C:\Users\Sven\AppData\Local\Apps\2.0 2014-01-20 13:24 - 2014-01-20 13:23 - 01806677 _____ (fincs) C:\Users\Sven\Downloads\SciTE4AHK300401_Install.exe 2014-01-20 10:55 - 2013-11-10 15:52 - 00000000 ____D C:\Users\Sven\AppData\Local\Adobe 2014-01-19 00:38 - 2013-11-12 22:14 - 00000000 ____D C:\Users\Sven\AppData\Roaming\dvdcss 2014-01-17 10:20 - 2013-11-17 15:16 - 00000000 ____D C:\Users\Sven\Documents\Hochschule 2014-01-16 14:14 - 2013-11-13 13:20 - 00000000 ____D C:\Users\Sven\AppData\Local\NVIDIA 2014-01-16 14:02 - 2014-01-16 13:57 - 00004094 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-01-16 14:02 - 2014-01-16 13:57 - 00003858 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-01-16 14:01 - 2013-11-10 14:09 - 00000000 ____D C:\Users\Sven\AppData\Local\Google 2014-01-16 13:57 - 2013-11-10 14:09 - 00000000 ____D C:\Program Files (x86)\Google 2014-01-16 13:55 - 2014-01-16 13:55 - 00819176 _____ (Google Inc.) C:\Users\Sven\Downloads\ChromeSetup.exe 2014-01-16 13:45 - 2014-01-16 13:45 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Nero 2014-01-16 13:40 - 2014-01-16 13:40 - 00000000 ____D C:\Users\Sven\AppData\Local\Ahead 2014-01-16 13:40 - 2014-01-16 13:29 - 00000358 _____ C:\Windows\SysWOW64\MsiExec.exe.log 2014-01-16 13:30 - 2014-01-16 13:30 - 00000026 _____ C:\Windows\Irremote.ini 2014-01-16 13:29 - 2014-01-16 13:29 - 00001024 _____ C:\Users\Sven\.rnd 2014-01-16 13:29 - 2013-11-10 12:55 - 00000000 ____D C:\Users\Sven 2014-01-16 13:28 - 2014-01-16 13:28 - 00000000 ____D C:\ProgramData\Nero 2014-01-16 13:28 - 2014-01-16 13:28 - 00000000 ____D C:\Program Files (x86)\Nero 2014-01-16 13:28 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\Cursors 2014-01-16 13:22 - 2014-01-16 13:22 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory 2014-01-16 13:22 - 2014-01-16 13:21 - 00000000 ____D C:\Program Files (x86)\FormatFactory 2014-01-16 13:16 - 2014-01-16 13:16 - 00000904 _____ C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nightly.lnk 2014-01-16 11:54 - 2014-01-16 11:01 - 00000000 ____D C:\Program Files (x86)\Windows Live 2014-01-16 11:35 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\registration 2014-01-16 11:02 - 2014-01-16 10:57 - 00000000 ____D C:\Users\Sven\AppData\Local\Windows Live 2014-01-16 11:00 - 2013-12-27 11:32 - 00213912 _____ C:\Windows\DirectX.log 2014-01-16 10:53 - 2014-01-16 10:53 - 01245168 _____ (Microsoft Corporation) C:\Users\Sven\Downloads\wlsetup-web.exe 2014-01-16 10:10 - 2014-01-15 10:29 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2014-01-16 10:10 - 2013-11-10 12:55 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Adobe 2014-01-15 14:49 - 2013-11-15 17:39 - 00000000 ____D C:\Windows\system32\MRT 2014-01-15 10:50 - 2013-11-15 17:39 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-15 10:34 - 2013-08-22 15:44 - 00533328 _____ C:\Windows\system32\FNTCACHE.DAT 2014-01-15 10:27 - 2013-11-10 15:54 - 00000000 ____D C:\Program Files (x86)\Adobe 2014-01-15 10:19 - 2013-11-17 17:08 - 00000000 ____D C:\Users\Sven\AppData\Local\JDownloader v2.0 2014-01-14 21:39 - 2013-08-22 15:46 - 00044862 _____ C:\Windows\setupact.log 2014-01-13 10:25 - 2014-01-14 21:37 - 64388053 _____ C:\Users\Sven\Desktop\Steve Ballmer - One Microsoft.mp4 2014-01-12 22:48 - 2014-01-12 22:48 - 00058249 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2014-01-12 22_48_10.627359.dmp 2014-01-09 15:48 - 2013-11-11 15:59 - 00000000 ____D C:\Users\Sven\Desktop\Hochbahn Berlin GmbH 2014-01-08 17:15 - 2014-01-08 11:23 - 00000000 ____D C:\Windows\SysWOW64\NV 2014-01-08 17:15 - 2014-01-08 11:23 - 00000000 ____D C:\Windows\system32\NV 2014-01-08 16:32 - 2013-11-20 17:40 - 00000000 ____D C:\Users\Sven\AppData\Local\NVIDIA Corporation 2014-01-08 11:28 - 2013-11-10 13:13 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2014-01-08 11:24 - 2013-11-10 13:13 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2014-01-08 11:24 - 2013-11-10 13:12 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2014-01-08 07:54 - 2014-01-08 07:50 - 00000000 ____D C:\Users\Sven\Documents\Battlefield 2 2014-01-08 07:50 - 2014-01-08 07:50 - 00794408 _____ C:\Windows\SysWOW64\Pbsvc.exe 2014-01-08 07:50 - 2014-01-08 07:50 - 00111928 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2014-01-08 07:50 - 2014-01-08 07:50 - 00075064 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2014-01-08 07:49 - 2014-01-08 07:49 - 00000000 ____D C:\Program Files (x86)\GameSpy 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptHelper.txt.lck 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptHelper.txt 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptException.txt.lck 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptException.txt 2014-01-07 12:55 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\LiveKernelReports 2014-01-06 23:31 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-06 23:31 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-05 21:41 - 2014-01-05 21:41 - 00062265 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2014-01-05 21_41_33.323819.dmp 2014-01-02 17:05 - 2014-01-02 16:55 - 00000000 ____D C:\ProgramData\Standard 2014-01-02 16:57 - 2014-01-02 16:57 - 00000000 ____D C:\Program Files (x86)\Shark007 2014-01-02 12:20 - 2014-01-02 12:20 - 00000000 ____D C:\Users\Sven\Desktop\Omsi-Helpmaker 2013-12-30 16:57 - 2013-12-30 16:57 - 00000000 ____D C:\Users\Sven\AppData\Roaming\MiKTeX 2013-12-30 16:57 - 2013-12-30 16:57 - 00000000 ____D C:\Users\Sven\AppData\Local\MiKTeX 2013-12-30 16:56 - 2013-12-30 16:56 - 00000000 ____D C:\ProgramData\MiKTeX 2013-12-30 16:55 - 2013-12-30 16:54 - 00000000 ____D C:\Program Files (x86)\MiKTeX 2.9 2013-12-30 13:55 - 2013-12-30 13:55 - 00000000 ____D C:\Users\Sven\Desktop\Bachelor 2013-12-30 13:51 - 2013-12-30 13:51 - 00000000 ____D C:\Users\Sven\Documents\Meine empfangenen Dateien 2013-12-29 17:27 - 2013-12-29 17:25 - 00000000 ____D C:\Users\Sven\Desktop\Radio 2013-12-29 15:36 - 2013-11-11 15:57 - 00000000 ____D C:\Users\Sven\Desktop\German Roleplay 2013-12-27 23:59 - 2013-12-27 23:59 - 00060721 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2013-12-27 23_59_05.283104.dmp 2013-12-27 18:18 - 2013-12-27 18:17 - 00000000 ____D C:\Users\Sven\AppData\Local\Razer 2013-12-27 18:18 - 2013-12-27 18:17 - 00000000 ____D C:\ProgramData\Razer 2013-12-27 18:16 - 2013-12-27 18:12 - 41363400 _____ (Razer Inc. ) C:\Users\Sven\Downloads\RazerGameBoosterSetup_4.1.59.0_1.exe 2013-12-27 18:12 - 2013-12-27 18:12 - 00021464 _____ C:\Users\Sven\Downloads\4gb_patch.zip 2013-12-27 14:14 - 2013-12-27 14:14 - 00000000 ____D C:\Users\Public\Documents\Explorer Suite Signatures 2013-12-27 14:14 - 2013-12-27 14:14 - 00000000 ____D C:\Program Files\Explorer Suite ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-20 12:20 ==================== End Of Log ============================ Log Addition: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-01-2014 Ran by Sven at 2014-01-25 13:12:20 Running from C:\Users\Sven\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: ESET Smart Security 7.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ESET Smart Security 7.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} FW: ESET Personal Firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2} ==================== Installed Programs ====================== Tools for .Net 3.5 - DEU Lang Pack (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden Tools for .Net 3.5 (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden Adobe Acrobat XI Pro (x32 Version: 11.0.06 - Adobe Systems) Adobe AIR (x32 Version: 4.0.0.1390 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 4.0.0.1390 - Adobe Systems Incorporated) Hidden Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.43 - Adobe Systems Incorporated) AirPort (x32 Version: 5.6.1.2 - Apple Inc.) Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.) AutoHotkey 1.1.13.00 (x32 Version: 1.1.13.00 - Lexikos) Battlefield 2 (x32 Version: - DICE) Bing-Desktop (x32 Version: 1.3.322.0 - Microsoft Corporation) Blend for Visual Studio 2012 (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden Blend for Visual Studio 2012 DEU resources (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden Blend for Visual Studio Add-in for Adobe FXG Import (x32 Version: 1.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for Silverlight 5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for Windows Phone 8.0 (x32 Version: 3.0.30924.0 - Microsoft Corporation) Hidden BlueStacks App Player (x32 Version: 0.7.14.901 - BlueStack Systems, Inc.) BlueStacks Notification Center (x32 Version: 0.7.14.901 - BlueStack Systems, Inc.) Bonjour (Version: 3.0.0.10 - Apple Inc.) Counter-Strike: Global Offensive (x32 Version: - Valve) Counter-Strike: Source (x32 Version: - Valve) DAEMON Tools Lite (x32 Version: 4.46.1.0327 - DT Soft Ltd) Devenv-Ressourcen für Microsoft Visual Studio 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Dll-Files Fixer (x32 Version: 1.0 - Dll-Files.com) Dotfuscator and Analytics Community Edition (x32 Version: 5.5.4521.29298 - PreEmptive Solutions) Hidden Dotfuscator and Analytics Community Edition Language Pack (x32 Version: 5.5.4521.29298 - PreEmptive Solutions) Hidden Elevated Installer (x32 Version: 2.3.17.0 - Garmin Ltd or its subsidiaries) Hidden Entity Framework Designer für Visual Studio 2012 - DEU (x32 Version: 11.1.30729.00 - Microsoft Corporation) Erforderliche Komponenten für SSDT (x32 Version: 11.0.2100.60 - Microsoft Corporation) ESET Smart Security (Version: 7.0.302.26 - ESET, spol s r. o.) Explorer Suite IV (Version: - ) FileZilla Client 3.7.3 (x32 Version: 3.7.3 - Tim Kosse) FormatFactory 3.0.1 (x32 Version: 3.0.1 - Free Time) GameSpy Comrade (x32 Version: 2.1.1.214 - GameSpy) Garmin Communicator Plugin (x32 Version: 4.1.0 - Garmin Ltd or its subsidiaries) Garmin Communicator Plugin x64 (Version: 4.1.0 - Garmin Ltd or its subsidiaries) Garmin Express (x32 Version: 2.3.17.0 - Garmin Ltd or its subsidiaries) Hidden Garmin Express Tray (x32 Version: 2.3.17.0 - Garmin Ltd or its subsidiaries) Hidden GeForce Experience NvStream Client Components (Version: 1.6.28 - NVIDIA Corporation) Hidden Google Chrome (x32 Version: 32.0.1700.76 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden GTA San Andreas (x32 Version: 1.00.00001 - Rockstar Games) HP Officejet Pro 8600 - Grundlegende Software für das Gerät (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Officejet Pro 8600 Hilfe (x32 Version: 28.0.0 - Hewlett Packard) HP Update (x32 Version: 5.003.003.001 - Hewlett-Packard) I.R.I.S. OCR (x32 Version: 12.3.4.0 - HP) IIS 8.0 Express (Version: 8.0.1557 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (Version: - ) IIS Express Application Compatibility Database for x86 (Version: - ) Intel(R) Processor Graphics (x32 Version: 9.17.10.2932 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: 3.1.1309.0390 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 2.0.0.37149 - Intel Corporation) Java 7 Update 45 (x32 Version: 7.0.450 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden JavaScript Tooling (Version: 11.0.60315 - Microsoft Corporation) Hidden JavaScript Tooling (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden JDownloader 2 (Version: 2.0 - AppWork GmbH) LetsWatch Tool (HKCU Version: 1.1.0.46 - Marc) LocalESPC (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden LocalESPCui for de-de (x32 Version: 8.59.25584 - Microsoft) Hidden Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (x32 Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (x32 Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (x32 Version: 4.5.50709 - Microsoft Corporation) Microsoft Advertising SDK for Windows Phone - DEU (x32 Version: 6.2.923.0 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft ASP.NET and Web Tools 2012.3 - Visual Studio 2012 - deu (x32 Version: 1.4.41009.0 - Microsoft Corporation) Hidden Microsoft ASP.NET and Web Tools 2012.3 - Visual Studio 2012 (x32 Version: 1.4.41009.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 - DEU (x32 Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update - DEU (x32 Version: 3.0.30710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update (x32 Version: 3.0.30710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 (x32 Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools - DEU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools - ENU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime - DEU (x32 Version: 4.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime (x32 Version: 4.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages - DEU (x32 Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools - DEU (x32 Version: 1.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools (x32 Version: 1.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages (x32 Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools - DEU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools - ENU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 Runtime - DEU (x32 Version: 2.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 Runtime (x32 Version: 2.0.20715.0 - Microsoft Corporation) Hidden Microsoft Expression Blend SDK for .NET 4 (x32 Version: 2.0.20525.0 - Microsoft Corporation) Hidden Microsoft Expression Blend SDK for Silverlight 4 (x32 Version: 2.0.20525.0 - Microsoft Corporation) Hidden Microsoft Expression Blend SDK for Windows Phone 7 (x32 Version: 2.0.20901.0 - Microsoft Corporation) Hidden Microsoft Expression Blend SDK for Windows Phone OS 7.1 (x32 Version: 2.0.30816.0 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.0 (x32 Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.0 Language Pack - DEU (x32 Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 Language Pack - DEU (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2012 Core (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2012 v3.0 Core (x32 Version: 11.0.61011 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2012 v3.0 CoreRes - DEU (x32 Version: 11.0.61011 - Microsoft Corporation) Hidden Microsoft LightSwitch für Visual Studio 2012 CoreRes - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft NuGet - Visual Studio 2012 (x32 Version: 2.6.40627.9000 - Microsoft Corporation) Hidden Microsoft NuGet - Visual Studio 2012 Express for Windows Phone (x32 Version: 2.6.40627.9000 - Microsoft Corporation) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Groove MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack (x32 Version: 11.0.60418.17931 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - deu (x32 Version: 11.0.50816.00 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On for Visual Studio 2012 (x32 Version: 11.1.2802.16 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On für Visual Studio 2012 (x32 Version: 11.1.2802.16 - Microsoft Corporation) Hidden Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft Silverlight 4 SDK - Deutsch (x32 Version: 4.0.60310.0 - Microsoft Corporation) Microsoft Silverlight 5 SDK - DEU (x32 Version: 5.0.61118.0 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (Version: 11.0.2316.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x32 Version: 11.0.2316.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x32 Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL Compiler Service (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL Language Service (x32 Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (11.1.20627.00) (x32 Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (11.1.20627.00) (x32 Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x32 Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Designtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 32bit Compilers - DEU Resources (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers - DEU Resources (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers For Windows Phone - DEU Resources (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers For Windows Phone (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Core Libraries (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Core Libraries For Windows Phone (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Extended Libraries (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Microsoft Foundation Class Libraries (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Debug Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86-x64 Compilers (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Office Developer Tools (x64) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Office Developer Tools (x64) Language Pack - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.40303 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.40308 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU (Version: 10.0.40303 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (Version: 10.0.40303 - Microsoft Corporation) Microsoft Visual Studio 2012 Add-in for Windows Phone (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Devenv (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Express Prerequisites x64 - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTrace Core amd64 (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTrace Core x86 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTrace Front End x86 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTraceFrontEndLoc (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTraceLoc (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTraceLoc (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 SharePoint Developer Tools (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 SharePoint Developer Tools DEU Language Pack (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell (Minimum) (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell (Minimum) Interop Assemblies (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell-(Mindest)-Ressourcen (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Tools für SQL Server Compact 4.0 SP1 DEU (x32 Version: 4.0.8876.1 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Add-In für Windows Phone - DEU Language Pack (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Leistungserfassungstools - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Leistungserfassungstools (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Vorbereitung (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Express 2012 for Windows Phone (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Express 2012 für Windows Phone - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Premium 2012 - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Premium 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2012 - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Object Model (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Object Model Language Pack - DEU (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Storyboarding (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Storyboarding Language Pack - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Team Explorer (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Team Explorer Language Pack - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 (x32 Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual Studio Ultimate 2012 XAML UI Designer Core (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 XAML UI Designer deu Resources (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Web Deploy 3.5 (Version: 3.1237.1762 - Microsoft Corporation) Microsoft Web Deploy dbSqlPackage Provider - DEU (x32 Version: 10.3.20225.0 - Microsoft Corporation) Microsoft Web Platform Installer 4.0 (Version: 4.0.1622 - Microsoft Corporation) Microsoft XNA Game Studio 4.0 Refresh Language Pack (de-DE) (x32 Version: 4.0.40917.0 - Microsoft Corporation) Hidden Microsoft-System-CLR-Typen für SQL Server 2012 (x32 Version: 11.0.2100.60 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (Version: 11.0.2100.60 - Microsoft Corporation) MiKTeX 2.9 (x32 Version: 2.9 - MiKTeX.org) Napster 5 Beta (x32 Version: 1.0.63 - Rhapsody International, Inc) Napster 5 Beta (x32 Version: 1.0.63 - Rhapsody International, Inc) Hidden Nero 8 Ultra Edition HD (x32 Version: 8.3.630 - Nero AG) neroxml (x32 Version: 1.0.0 - Nero AG) Hidden NetBeans IDE 7.3 (x32 Version: 7.3 - NetBeans.org) Nightly 28.0a1 (x64 en-US) (Version: 28.0a1 - Mozilla) Node.js (Version: 0.10.21 - Joyent, Inc. and other Node contributors) Notepad++ (x32 Version: 6.5.1 - Notepad++ Team) NVIDIA 3D Vision Treiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA GeForce Experience 1.8.1 (Version: 1.8.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.142.992 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Optimus Update 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.0725 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725 - NVIDIA Corporation) NVIDIA ShadowPlay 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3221 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 332.21 (Version: 332.21 - NVIDIA Corporation) Hidden NVIDIA Update 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 10.11.15 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.19 (Version: 1.2.19 - NVIDIA Corporation) OMSI 2 (x32 Version: - MR-Software GbR) PHPEdit 3.4.2 (x32 Version: 3.4.2 - WaterProof SARL) PreEmptive Analytics Client German Language Pack (x32 Version: 1.0.2180.1 - PreEmptive Solutions) Hidden PreEmptive Analytics Visual Studio Components (x32 Version: 1.0.2180.1 - PreEmptive Solutions) Hidden PremiumSoft Navicat Lite 10.0 (x32 Version: - PremiumSoft CyberTech Ltd.) PunkBuster Services (x32 Version: 0.987 - Even Balance, Inc.) Quickset64 (Version: 11.0.24 - Dell Inc.) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6662 - Realtek Semiconductor Corp.) SciTE4AutoHotkey v3.0.04.01 (x32 Version: v3.0.04.01 - fincs) SHIELD Streaming (Version: 1.6.85 - NVIDIA Corporation) Hidden Steam (x32 Version: 1.0.0.0 - Valve Corporation) Synaptics Pointing Device Driver (Version: 15.2.6.0 - Synaptics Incorporated) TeamSpeak 3 Client (Version: 3.0.13.1 - TeamSpeak Systems GmbH) TeXstudio 2.6.2 (x32 Version: 2.6.2 - Benito van der Zander) TortoiseSVN 1.8.3.24901 (64 bit) (Version: 1.8.24901 - TortoiseSVN) Update for (KB2504637) (x32 Version: 1 - Microsoft Corporation) Update for 2007 Microsoft Office System (KB967642) (x32 Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2850085) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Visual Studio 2012 (KB2781514) (x32 Version: 11.0.51219 - Microsoft Corporation) Update für Microsoft Office Excel 2007 Help (KB963678) (x32 Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (x32 Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (x32 Version: - Microsoft) VCRedistSetup (x32 Version: 1.0.0 - Nero AG) Hidden Visual Studio 2012 Prerequisites - DEU Language Pack (Version: 11.0.50727 - Microsoft Corporation) Hidden Visual Studio 2012 Prerequisites (Version: 11.0.50727 - Microsoft Corporation) Hidden Visual Studio 2012 Update 4 (KB2707250) (x32 Version: 11.0.61030 - Microsoft Corporation) Visual Studio Extensions for Windows Library for JavaScript (x32 Version: 1.0.9202.20789 - Microsoft Corporation) Hidden VisualSVN 4.0.2 (x32 Version: 4.0.2.0 - VisualSVN Ltd.) VLC media player 2.1.0 (Version: 2.1.0 - VideoLAN) WCF Data Services 5.0 (for OData v3) DEU Language Pack (x32 Version: 5.0.50628.0 - Microsoft Corporation) Hidden WCF Data Services 5.0 (for OData v3) Primary Components (x32 Version: 5.0.50628.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2012 (x32 Version: 5.0.50710.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Visual Studio 11 DEU Language Pack (x32 Version: 5.0.50710.0 - Microsoft Corporation) Hidden WCF RIA Services V1.0 SP2 (x32 Version: 4.1.61829.0 - Microsoft Corporation) Windows App Certification Kit Native Components (Version: 8.59.29736 - Microsoft Corporation) Hidden Windows App Certification Kit x64 (x32 Version: 8.59.29750 - Microsoft Corporation) Hidden Windows Azure Tools for LightSwitch HTML Client for Visual Studio 2012 (x32 Version: 1.8.60301.1601 - Microsoft) Hidden Windows Azure Tools für LightSwitch HTML Client für Visual Studio 2012 (DEU) (x32 Version: 1.8.60301.1601 - Microsoft) Hidden Windows Mobile Device Updater Component (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Windows Phone 8.0 Emulation Host (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Windows Phone 8.0 Managed SDK Profiler (ARM) (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Windows Phone 8.0 Managed SDK Profiler (X86) (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Windows Phone Emulator 8.0-Konfigurator - deu (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Windows Phone Emulator x64 - DEU (Version: 10.1.40219 - Microsoft Corporation) Hidden Windows Phone SDK 7.1 Assemblies - deu (x32 Version: 10.1.40219 - Microsoft Corporation) Hidden Windows Phone SDK 8.0 - DEU (x32 Version: 11.0.50727.61 - Microsoft Corporation) Windows Phone SDK 8.0 Extensions for XNA Game Studio 4.0 (x32 Version: 4.0.40906.0 - Microsoft Corporation) Hidden Windows Phone SDK 8.0-Assemblys - deu (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Windows Phone*8.0-Emulations-Images - deu (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Windows Phone-Tools-Finalizer - deu (Version: 11.0.50727 - Microsoft Corporation) Hidden Windows Phone-Tools-Finalizer - deu (Version: 11.0.60610 - Microsoft Corporation) Hidden Windows Runtime Intellisense Content - de-de (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x64 Remote (Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit Tools for Windows Store Apps (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows XP Targeting with C++ (Version: 11.0.51106 - Microsoft Corporation) Hidden Windows XP Targeting with C++ (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden WinRAR 5.00 (64-Bit) (Version: 5.00.0 - win.rar GmbH) XAMPP (x32 Version: 1.8.3-1 - BitNami) Zune (Version: 04.08.2345.00 - Microsoft Corporation) Zune (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (CHS) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (CHT) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (CSY) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (DAN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (DEU) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (ELL) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (ESP) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (FIN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (FRA) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (HUN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (IND) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (ITA) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (JPN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (KOR) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (MSL) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (NLD) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (NOR) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (PLK) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (PTB) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (PTG) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (RUS) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden Zune Language Pack (SVE) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden ==================== Restore Points ========================= 16-01-2014 12:27:35 Installed Nero 8 Trial. Available with Windows Installer version 1.2 and later. ==================== Hosts content: ========================== 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {2E364F24-C17A-474C-ACDC-B411655B0D94} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-16] (Google Inc.) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3889B3D5-E737-4775-8760-B60052103483} - System32\Tasks\DLL-Files.Com Fixer_Updates => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2013-02-28] (Dll-FIles.Com) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {5967D194-738D-4FDC-850E-4B8C652A4F85} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-16] (Google Inc.) Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {85700A46-1394-4D54-BE4A-2BE649CC88A6} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-01-15] (Microsoft Corporation) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {A0ECAC6E-92A7-4501-BD12-A71D8ECBAA1D} - System32\Tasks\DLL-Files.Com Fixer_MONTHLY => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2013-02-28] (Dll-FIles.Com) Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe Task: C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-11-10 13:13 - 2013-12-19 21:33 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 2013-10-27 18:52 - 2013-10-27 18:52 - 00075504 _____ () C:\Program Files\TortoiseSVN\bin\TortoiseStub.dll 2013-10-27 18:52 - 2013-10-27 18:52 - 00088304 _____ () C:\Program Files\TortoiseSVN\bin\libsasl.dll 2010-01-02 15:42 - 2010-01-02 15:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2013-11-19 13:02 - 2013-11-19 13:02 - 00183808 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\ErrorReporting.dll 2012-10-29 11:08 - 2012-10-29 11:08 - 00030208 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\_old_qgif4.dll 2012-10-29 11:08 - 2012-10-29 11:08 - 00236032 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\_old_qjpeg4.dll 2012-10-29 11:08 - 2013-11-10 14:27 - 00302056 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2012-10-29 11:08 - 2013-11-10 14:27 - 00320488 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2012-10-29 11:08 - 2013-11-10 14:27 - 00186344 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\appscanner_plugin.dll 2012-10-29 11:08 - 2013-11-10 14:27 - 00565224 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2013-11-10 14:27 - 2013-11-10 14:27 - 00700904 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2013-03-03 20:17 - 2013-03-03 20:17 - 00228264 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbPc.DLL 2013-11-10 13:13 - 2013-12-19 21:33 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll 2013-10-27 18:07 - 2013-10-27 18:07 - 00065264 _____ () C:\Program Files\TortoiseSVN\bin\TortoiseStub32.dll 2013-10-27 18:06 - 2013-10-27 18:06 - 00071408 _____ () C:\Program Files\TortoiseSVN\bin\libsasl32.dll 2014-01-16 14:01 - 2014-01-11 11:28 - 00715544 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\libglesv2.dll 2014-01-16 14:01 - 2014-01-11 11:28 - 00100120 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\libegl.dll 2014-01-16 14:01 - 2014-01-11 11:29 - 04055320 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\pdf.dll 2014-01-16 14:01 - 2014-01-11 11:29 - 00399640 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\ppGoogleNaClPluginChrome.dll 2014-01-16 14:01 - 2014-01-11 11:28 - 01634584 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\ffmpegsumo.dll 2014-01-16 14:01 - 2014-01-11 11:29 - 13615896 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\PepperFlash\pepflashplayer.dll 2011-07-18 22:07 - 2011-07-18 22:07 - 00014336 _____ () C:\Program Files (x86)\Notepad++\plugins\NppExport.dll 2011-09-21 21:46 - 2011-09-21 21:46 - 01673728 _____ () C:\Program Files (x86)\Notepad++\plugins\NppFTP.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Sven\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= Name: Officejet Pro 8600 Description: Officejet Pro 8600 Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318} Manufacturer: HP Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Could not start eventlog service, could not read events. Der angeforderte Dienst wurde bereits gestartet. Sie erhalten weitere Hilfe, wenn Sie NET HELPMSG 2182 eingeben. ==================== Memory info =========================== Percentage of memory in use: 44% Total physical RAM: 8086.16 MB Available physical RAM: 4488.73 MB Total Pagefile: 9366.16 MB Available Pagefile: 5443.54 MB Total Virtual: 131072 MB Available Virtual: 131071.75 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:249.66 GB) (Free:137.51 GB) NTFS Drive d: () (Fixed) (Total:448.63 GB) (Free:440.37 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: 66A73740) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=250 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=449 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
26.01.2014, 06:51 | #4 | |
/// the machine /// TB-Ausbilder | Windows 8.1: PC lädt ständig Daten ins InternetZitat:
MBAM öffnen, Reiter Logs anklicken, die Logs kopieren und hier posten.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
26.01.2014, 10:43 | #5 |
| Windows 8.1: PC lädt ständig Daten ins Internet Ok, das wusste ich nicht. MBAM: Code:
ATTFilter Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.01.24.06 Windows 8 x64 NTFS Internet Explorer 11.0.9600.16476 Sven :: SVEN-PC [Administrator] 24.01.2014 19:55:17 mbam-log-2014-01-24 (19-55-17).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 219609 Laufzeit: 8 Minute(n), 14 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 1 C:\Users\Sven\Downloads\DecryptHelper-0.5.3.exe (Trojan.FakeAlert) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) |
27.01.2014, 08:00 | #6 | |
/// the machine /// TB-Ausbilder | Windows 8.1: PC lädt ständig Daten ins Internet Logs sind sauber. Zitat:
__________________ --> Windows 8.1: PC lädt ständig Daten ins Internet |
27.01.2014, 10:06 | #7 | |
| Windows 8.1: PC lädt ständig Daten ins Internet Mmh. Das klingt erstmal gut. Zitat:
Das mit den alle 5-10 Minuten muss ich allerdings berichtigen, es ist nicht immer alle 5-10 Minuten, es kommt manchmal häufiger, manchmal aber auch in einem größeren Intervall vor. Allerdings auch nicht rund um die Uhr (solange wie der Laptop läuft), sondern hört zirka 20 / 21 Uhr auch wieder auf, manchmal aber auch später. Gruß |
28.01.2014, 09:53 | #8 |
/// the machine /// TB-Ausbilder | Windows 8.1: PC lädt ständig Daten ins Internet Kannst Du mir davon mal einen Screenshot machen, was ESET da anzeigt?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
28.01.2014, 10:48 | #9 |
| Windows 8.1: PC lädt ständig Daten ins Internet Hier ist er: hxxp://www.directupload.net/file/d/3516/rxh5a68d_png.htm In der Zwischenzeit hört es nicht mal mehr auf. Vorher waren immer mal Zeiten wo nichts war, jetzt aber kommt es andauernd. Geändert von Dario1991 (28.01.2014 um 10:54 Uhr) |
29.01.2014, 09:43 | #10 |
/// the machine /// TB-Ausbilder | Windows 8.1: PC lädt ständig Daten ins Internet Ich kann den Screen auf Arbeit nicht anschauen. Schick mir gegen 18 Uhr bitte mal ne PM als Erinnerung.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
29.01.2014, 20:00 | #11 |
/// the machine /// TB-Ausbilder | Windows 8.1: PC lädt ständig Daten ins Internet Sehr aussagekräftig Bemerkst Du auch was oder ist dir das per Zufall aufgefallen? How to perform a clean boot in Windows Bitte nen Clean Boot machen und schauen ob es dann immer noch so ist.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
29.01.2014, 20:43 | #12 |
| Windows 8.1: PC lädt ständig Daten ins Internet Problem besteht weiterhin. Habe die Deinste beendet und den Autostart aufgeräumt, bzw. den schon immer aufgeräumt gehabt. |
30.01.2014, 16:30 | #13 |
/// the machine /// TB-Ausbilder | Windows 8.1: PC lädt ständig Daten ins Internet Wenn alles aus ist ausser Microsoft sachen ist das schon sehr merkwürdig bzw sogar evtl total normal. schauen wir noch einmal von aussen: Scan mit Farbar's Recovery Scan Tool (Recovery Mode - Windows Vista, 7, 8) Hinweise für Windows 8-Nutzer: Anleitung 1 (FRST-Variante) und Anleitung 2 (zweiter Teil)
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
30.01.2014, 19:59 | #14 |
| Windows 8.1: PC lädt ständig Daten ins Internet Der Log von FRST: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-01-2014 Ran by SYSTEM on MININT-FKRQAIO on 30-01-2014 19:54:02 Running from D:\ Windows 8.1 Pro (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Recovery The current controlset is ControlSet001 ATTENTION!:=====> If the system is bootable FRST could be run from normal or Safe mode to create a complete log. ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-14] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2531624 2010-12-17] (Synaptics Incorporated) HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [5618456 2013-09-12] (ESET) HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech, Inc.) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1212560 2012-06-13] (Realtek Semiconductor) HKLM\...\Run: [QuickSet] - C:\Program Files\Dell\QuickSet\QuickSet.exe [4146848 2012-08-16] (Dell Inc.) HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [7818040 2013-09-19] (Motorola Solutions, Inc.) HKLM\...\Run: [Zune Launcher] - C:\Program Files (x86)\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [444904 2012-09-20] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [BlueStacks Agent] - C:\Program Files (x86)\BlueStacks\HD-Agent.exe [601928 2013-06-19] (BlueStack Systems, Inc.) HKLM-x32\...\Run: [BingDesktop] - C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe [2258056 2013-09-22] (Microsoft Corp.) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [AirPort Base Station Agent] - C:\Program Files (x86)\AirPort\APAgent.exe [771360 2009-11-11] (Apple Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3478392 2013-12-21] (Adobe Systems Inc.) HKLM-x32\...\Run: [NBKeyScan] - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2221352 2008-12-02] (Nero AG) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\Sven\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd) HKU\Sven\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1815976 2014-01-27] (Valve Corporation) HKU\Sven\...\Run: [HP Officejet Pro 8600 (NET)] - C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.) HKU\Sven\...\Run: [GarminExpressTrayApp] - C:\Program Files (x86)\Garmin\Garmin\Express Tray\ExpressTray.exe [1095000 2013-12-13] (Garmin Ltd or its subsidiaries) HKU\Sven\...\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe [1840424 2009-03-25] (Nero AG) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-12-19] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [141336 2013-12-19] (NVIDIA Corporation) Startup: C:\Users\Sven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tintenwarnungen überwachen - .lnk ShortcutTarget: Tintenwarnungen überwachen - .lnk -> C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPStatusBL.dll (Hewlett-Packard Co.) ==================== Services (Whitelisted) ================= S2 BingDesktopUpdate; C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe [173192 2013-09-22] (Microsoft Corp.) S4 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [393032 2013-06-19] (BlueStack Systems, Inc.) S4 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384840 2013-06-19] (BlueStack Systems, Inc.) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [321024 2013-08-22] (Microsoft Corporation) S2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1337752 2013-09-12] (ESET) S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) S4 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [250712 2013-12-13] (Garmin Ltd or its subsidiaries) S2 HPSLPSVC; C:\Users\Sven\AppData\Local\Temp\7zS08FC\hpslpsvc64.dll [1039360 2013-07-19] (Hewlett-Packard Co.) S2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [157128 2013-09-18] (Intel Corporation) S2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe [14760 2013-03-03] (Microsoft Corporation) S4 Nero BackItUp Scheduler 3; C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe [877864 2008-12-02] (Nero AG) S4 NMIndexingService; C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe [537896 2009-03-25] (Nero AG) S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) S4 PLFlash DeviceIoControl Service; C:\Windows\SysWOW64\IoctlSvc.exe [81920 2006-12-19] (Prolific Technology Inc.) S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75064 2014-01-08] () S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) S2 vmms; C:\Windows\system32\vmms.exe [13368832 2013-11-17] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) S3 WMZuneComm; C:\Program Files (x86)\Zune\WMZuneComm.exe [306400 2011-08-05] (Microsoft Corporation) S3 ZuneNetworkSvc; C:\Program Files (x86)\Zune\ZuneNss.exe [8277728 2011-08-05] (Microsoft Corporation) S3 ZuneWlanCfgSvc; C:\Program Files (x86)\Zune\ZuneWlanCfgSvc.exe [467680 2011-08-05] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [70984 2013-06-19] (BlueStack Systems) S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [131584 2013-08-22] (Microsoft Corporation) S3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [32640 2013-08-22] (Microsoft Corporation) S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2013-07-22] (Motorola Solutions, Inc.) S3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1390904 2013-10-15] (Motorola Solutions, Inc.) S1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2013-11-11] (DT Soft Ltd) S1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [239320 2013-09-17] (ESET) S0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [239296 2013-09-17] (ESET) S1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [168256 2013-09-17] (ESET) S2 epfw; C:\Windows\system32\DRIVERS\epfw.sys [220232 2013-09-17] (ESET) S1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [44120 2013-09-17] (ESET) S0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [62136 2013-09-17] (ESET) S1 hvservice; C:\Windows\System32\drivers\hvservice.sys [68960 2013-11-17] (Microsoft Corporation) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) S0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-08-23] (Microsoft Corporation) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) S3 lunparser; C:\Windows\System32\drivers\lunparser.sys [19456 2013-11-17] (Microsoft Corporation) S3 NdisImPlatformMp; C:\Windows\system32\DRIVERS\NdisImPlatform.sys [124928 2013-08-22] (Microsoft Corporation) S3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) S1 nvkflt; C:\Windows\system32\DRIVERS\nvkflt.sys [300320 2013-12-19] (NVIDIA Corporation) S3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) S3 passthruparser; C:\Windows\System32\drivers\passthruparser.sys [22016 2013-11-17] (Microsoft Corporation) S3 pvhdparser; C:\Windows\System32\drivers\pvhdparser.sys [27136 2013-11-17] (Microsoft Corporation) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) S3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) S3 vhdparser; C:\Windows\System32\drivers\vhdparser.sys [19456 2013-11-17] (Microsoft Corporation) S3 VMSMP; C:\Windows\system32\DRIVERS\vmswitch.sys [686080 2013-10-08] (Microsoft Corporation) S3 VMSP; C:\Windows\system32\DRIVERS\vmswitch.sys [686080 2013-10-08] (Microsoft Corporation) S3 VMSVSF; C:\Windows\system32\DRIVERS\vmswitch.sys [686080 2013-10-08] (Microsoft Corporation) S3 VMSVSP; C:\Windows\system32\DRIVERS\vmswitch.sys [686080 2013-10-08] (Microsoft Corporation) S3 VSPerfDrv110; C:\Program Files (x86)\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\x64\VSPerfDrv110.sys [70264 2012-07-26] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-30 19:46 - 2014-01-30 19:47 - 00000000 ____D C:\Users\Sven\Desktop\USB 2014-01-29 22:27 - 2014-01-29 22:27 - 00033258 _____ C:\Users\Sven\Desktop\fritzbox.export 2014-01-29 11:15 - 2014-01-29 11:15 - 00000000 ____D C:\Windows\System32\appmgmt 2014-01-28 23:25 - 2014-01-28 23:25 - 00000000 ____D C:\Users\Sven\Documents\Bandicam 2014-01-28 23:25 - 2014-01-28 23:25 - 00000000 ____D C:\Users\Sven\AppData\Roaming\BANDISOFT 2014-01-28 23:24 - 2014-01-28 23:25 - 00000000 ____D C:\Program Files (x86)\Bandicam 2014-01-28 23:24 - 2014-01-28 23:24 - 00000000 ____D C:\Program Files (x86)\BandiMPEG1 2014-01-28 22:23 - 2014-01-28 22:23 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2014-01-28 22:22 - 2014-01-28 22:23 - 06072408 _____ (TeamViewer GmbH) C:\Users\Sven\Downloads\TeamViewer_Setup_de.exe 2014-01-28 20:26 - 2014-01-28 20:28 - 11963481 _____ C:\Users\Sven\Downloads\sa-mp-0.3x-R2-install.exe 2014-01-28 11:57 - 2014-01-28 11:57 - 00285385 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2014-01-28 11_57_25.778723.dmp 2014-01-25 13:12 - 2014-01-25 13:12 - 00041135 _____ C:\Users\Sven\Desktop\Addition.txt 2014-01-25 13:11 - 2014-01-25 13:12 - 00068911 _____ C:\Users\Sven\Desktop\FRST.txt 2014-01-25 13:11 - 2014-01-25 13:11 - 00000000 ____D C:\FRST 2014-01-25 13:09 - 2014-01-25 13:09 - 02077696 _____ (Farbar) C:\Users\Sven\Desktop\FRST64.exe 2014-01-25 13:07 - 2014-01-25 13:08 - 00001966 _____ C:\Users\Sven\Desktop\Log.xml 2014-01-25 10:21 - 2014-01-25 10:23 - 12022572 _____ C:\Users\Sven\Downloads\sa-mp-0.3z-RC3-install.exe 2014-01-24 20:39 - 2014-01-24 20:41 - 02338824 _____ C:\Users\Sven\Downloads\hppiw.exe 2014-01-24 19:51 - 2014-01-24 19:51 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Malwarebytes 2014-01-24 19:51 - 2014-01-24 19:51 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-24 19:50 - 2014-01-24 19:51 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-24 19:50 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys 2014-01-24 19:49 - 2014-01-24 19:50 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Sven\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-20 22:22 - 2014-01-30 10:30 - 00000000 ____D C:\Users\Sven\AppData\Local\Deployment 2014-01-20 22:22 - 2014-01-20 22:22 - 00460224 _____ () C:\Users\Sven\Downloads\setup.exe 2014-01-20 22:22 - 2014-01-20 22:22 - 00000000 ____D C:\Users\Sven\AppData\Local\Apps\2.0 2014-01-20 13:23 - 2014-01-20 13:24 - 01806677 _____ (fincs) C:\Users\Sven\Downloads\SciTE4AHK300401_Install.exe 2014-01-16 13:57 - 2014-01-30 16:07 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-16 13:57 - 2014-01-30 14:07 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-16 13:57 - 2014-01-16 14:02 - 00004094 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-01-16 13:57 - 2014-01-16 14:02 - 00003858 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-01-16 13:55 - 2014-01-16 13:55 - 00819176 _____ (Google Inc.) C:\Users\Sven\Downloads\ChromeSetup.exe 2014-01-16 13:45 - 2014-01-16 13:45 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Nero 2014-01-16 13:40 - 2014-01-16 13:40 - 00000000 ____D C:\Users\Sven\AppData\Local\Ahead 2014-01-16 13:30 - 2014-01-16 13:30 - 00000026 _____ C:\Windows\Irremote.ini 2014-01-16 13:29 - 2014-01-16 13:40 - 00000358 _____ C:\Windows\SysWOW64\MsiExec.exe.log 2014-01-16 13:29 - 2014-01-16 13:29 - 00001024 _____ C:\Users\Sven\.rnd 2014-01-16 13:28 - 2014-01-16 13:28 - 00000000 ____D C:\ProgramData\Nero 2014-01-16 13:28 - 2014-01-16 13:28 - 00000000 ____D C:\Program Files (x86)\Nero 2014-01-16 13:21 - 2014-01-16 13:22 - 00000000 ____D C:\Program Files (x86)\FormatFactory 2014-01-16 11:01 - 2014-01-16 11:54 - 00000000 ____D C:\Program Files (x86)\Windows Live 2014-01-16 10:57 - 2014-01-16 11:02 - 00000000 ____D C:\Users\Sven\AppData\Local\Windows Live 2014-01-16 10:53 - 2014-01-16 10:53 - 01245168 _____ (Microsoft Corporation) C:\Users\Sven\Downloads\wlsetup-web.exe 2014-01-15 10:48 - 2013-12-09 01:15 - 00787968 _____ (Microsoft Corporation) C:\Windows\System32\uDWM.dll 2014-01-15 10:29 - 2014-01-16 10:10 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2014-01-14 21:37 - 2014-01-13 10:25 - 64388053 _____ C:\Users\Sven\Desktop\Steve Ballmer - One Microsoft.mp4 2014-01-12 22:48 - 2014-01-12 22:48 - 00058249 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2014-01-12 22_48_10.627359.dmp 2014-01-08 11:23 - 2014-01-08 17:15 - 00000000 ____D C:\Windows\SysWOW64\NV 2014-01-08 11:23 - 2014-01-08 17:15 - 00000000 ____D C:\Windows\System32\NV 2014-01-08 11:20 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 18310112 _____ (NVIDIA Corporation) C:\Windows\System32\nvwgf2umx.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2014-01-08 11:20 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispco6433221.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6433221.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00300320 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvkflt.sys 2014-01-08 11:20 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-08 11:20 - 2013-12-19 21:33 - 00032544 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvpciflt.sys 2014-01-08 11:20 - 2013-12-05 09:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvvad64v.sys 2014-01-08 11:20 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-01-08 07:50 - 2014-01-08 07:54 - 00000000 ____D C:\Users\Sven\Documents\Battlefield 2 2014-01-08 07:50 - 2014-01-08 07:50 - 00794408 _____ C:\Windows\SysWOW64\Pbsvc.exe 2014-01-08 07:50 - 2014-01-08 07:50 - 00111928 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2014-01-08 07:50 - 2014-01-08 07:50 - 00075064 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2014-01-08 07:49 - 2014-01-08 07:49 - 00000000 ____D C:\Program Files (x86)\GameSpy 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptHelper.txt.lck 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptHelper.txt 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptException.txt.lck 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptException.txt 2014-01-05 21:41 - 2014-01-05 21:41 - 00062265 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2014-01-05 21_41_33.323819.dmp 2014-01-02 16:57 - 2014-01-02 16:57 - 00000000 ____D C:\Program Files (x86)\Shark007 2014-01-02 16:55 - 2014-01-02 17:05 - 00000000 ____D C:\ProgramData\Standard 2014-01-02 12:20 - 2014-01-02 12:20 - 00000000 ____D C:\Users\Sven\Desktop\Omsi-Helpmaker ==================== One Month Modified Files and Folders ======= 2014-01-30 19:51 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-30 19:51 - 2013-08-22 14:25 - 01048576 ___SH C:\Windows\System32\config\BBI 2014-01-30 19:48 - 2013-11-10 12:58 - 01886824 _____ C:\Windows\System32\PerfStringBackup.INI 2014-01-30 19:48 - 2013-08-23 00:24 - 00808988 _____ C:\Windows\System32\perfh007.dat 2014-01-30 19:48 - 2013-08-23 00:24 - 00177442 _____ C:\Windows\System32\perfc007.dat 2014-01-30 19:47 - 2014-01-30 19:46 - 00000000 ____D C:\Users\Sven\Desktop\USB 2014-01-30 19:44 - 2013-11-10 13:03 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2919117846-4085097920-1780530210-1001 2014-01-30 19:40 - 2013-11-10 14:25 - 00000000 ____D C:\Users\Sven\AppData\Roaming\TS3Client 2014-01-30 19:38 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\System32\sru 2014-01-30 16:16 - 2013-11-10 12:55 - 01798612 _____ C:\Windows\WindowsUpdate.log 2014-01-30 16:07 - 2014-01-16 13:57 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-30 15:42 - 2013-11-11 15:49 - 00000000 ____D C:\Program Files (x86)\Steam 2014-01-30 14:07 - 2014-01-16 13:57 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-30 10:30 - 2014-01-20 22:22 - 00000000 ____D C:\Users\Sven\AppData\Local\Deployment 2014-01-30 09:46 - 2013-11-17 17:50 - 00000000 ____D C:\Users\Sven\AppData\Local\TSVNCache 2014-01-30 09:46 - 2013-11-10 12:59 - 00000000 __RDO C:\Users\Sven\SkyDrive 2014-01-29 22:33 - 2013-11-17 15:03 - 27590656 _____ C:\Windows\System32\vmguest.iso 2014-01-29 22:31 - 2013-11-10 13:14 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-29 22:27 - 2014-01-29 22:27 - 00033258 _____ C:\Users\Sven\Desktop\fritzbox.export 2014-01-29 20:36 - 2013-08-22 15:44 - 00533352 _____ C:\Windows\System32\FNTCACHE.DAT 2014-01-29 18:58 - 2013-11-12 13:35 - 00000000 ____D C:\Users\Sven\AppData\Roaming\vlc 2014-01-29 11:15 - 2014-01-29 11:15 - 00000000 ____D C:\Windows\System32\appmgmt 2014-01-28 23:25 - 2014-01-28 23:25 - 00000000 ____D C:\Users\Sven\Documents\Bandicam 2014-01-28 23:25 - 2014-01-28 23:25 - 00000000 ____D C:\Users\Sven\AppData\Roaming\BANDISOFT 2014-01-28 23:25 - 2014-01-28 23:24 - 00000000 ____D C:\Program Files (x86)\Bandicam 2014-01-28 23:24 - 2014-01-28 23:24 - 00000000 ____D C:\Program Files (x86)\BandiMPEG1 2014-01-28 22:35 - 2013-12-05 19:40 - 00000000 ____D C:\Users\Sven\AppData\Roaming\TeamViewer 2014-01-28 22:23 - 2014-01-28 22:23 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2014-01-28 22:23 - 2014-01-28 22:22 - 06072408 _____ (TeamViewer GmbH) C:\Users\Sven\Downloads\TeamViewer_Setup_de.exe 2014-01-28 20:28 - 2014-01-28 20:26 - 11963481 _____ C:\Users\Sven\Downloads\sa-mp-0.3x-R2-install.exe 2014-01-28 15:14 - 2013-11-10 15:56 - 00000000 ____D C:\Users\Sven\AppData\Roaming\FileZilla 2014-01-28 11:57 - 2014-01-28 11:57 - 00285385 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2014-01-28 11_57_25.778723.dmp 2014-01-28 10:48 - 2013-11-10 12:55 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Adobe 2014-01-26 20:19 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness 2014-01-26 18:51 - 2013-11-10 12:55 - 00000000 ____D C:\Users\Sven\AppData\Local\Packages 2014-01-25 20:42 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\LiveKernelReports 2014-01-25 13:12 - 2014-01-25 13:12 - 00041135 _____ C:\Users\Sven\Desktop\Addition.txt 2014-01-25 13:12 - 2014-01-25 13:11 - 00068911 _____ C:\Users\Sven\Desktop\FRST.txt 2014-01-25 13:11 - 2014-01-25 13:11 - 00000000 ____D C:\FRST 2014-01-25 13:09 - 2014-01-25 13:09 - 02077696 _____ (Farbar) C:\Users\Sven\Desktop\FRST64.exe 2014-01-25 13:08 - 2014-01-25 13:07 - 00001966 _____ C:\Users\Sven\Desktop\Log.xml 2014-01-25 10:23 - 2014-01-25 10:21 - 12022572 _____ C:\Users\Sven\Downloads\sa-mp-0.3z-RC3-install.exe 2014-01-24 21:54 - 2013-11-10 12:48 - 00003528 _____ C:\Windows\PFRO.log 2014-01-24 20:43 - 2013-08-22 16:36 - 00000000 ___HD C:\Windows\System32\GroupPolicy 2014-01-24 20:43 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy 2014-01-24 20:42 - 2013-11-14 11:33 - 00000000 ____D C:\ProgramData\HP 2014-01-24 20:41 - 2014-01-24 20:39 - 02338824 _____ C:\Users\Sven\Downloads\hppiw.exe 2014-01-24 19:51 - 2014-01-24 19:51 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Malwarebytes 2014-01-24 19:51 - 2014-01-24 19:51 - 00000000 ____D C:\ProgramData\Malwarebytes 2014-01-24 19:51 - 2014-01-24 19:50 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-24 19:50 - 2014-01-24 19:49 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Sven\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-22 22:51 - 2013-11-11 16:02 - 00000290 _____ C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job 2014-01-21 16:39 - 2013-11-10 15:54 - 00000000 ____D C:\ProgramData\Adobe 2014-01-20 22:22 - 2014-01-20 22:22 - 00460224 _____ () C:\Users\Sven\Downloads\setup.exe 2014-01-20 22:22 - 2014-01-20 22:22 - 00000000 ____D C:\Users\Sven\AppData\Local\Apps\2.0 2014-01-20 13:24 - 2014-01-20 13:23 - 01806677 _____ (fincs) C:\Users\Sven\Downloads\SciTE4AHK300401_Install.exe 2014-01-20 10:55 - 2013-11-10 15:52 - 00000000 ____D C:\Users\Sven\AppData\Local\Adobe 2014-01-19 00:38 - 2013-11-12 22:14 - 00000000 ____D C:\Users\Sven\AppData\Roaming\dvdcss 2014-01-17 10:20 - 2013-11-17 15:16 - 00000000 ____D C:\Users\Sven\Documents\Hochschule 2014-01-16 14:14 - 2013-11-13 13:20 - 00000000 ____D C:\Users\Sven\AppData\Local\NVIDIA 2014-01-16 14:02 - 2014-01-16 13:57 - 00004094 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-01-16 14:02 - 2014-01-16 13:57 - 00003858 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-01-16 14:01 - 2013-11-10 14:09 - 00000000 ____D C:\Users\Sven\AppData\Local\Google 2014-01-16 13:57 - 2013-11-10 14:09 - 00000000 ____D C:\Program Files (x86)\Google 2014-01-16 13:55 - 2014-01-16 13:55 - 00819176 _____ (Google Inc.) C:\Users\Sven\Downloads\ChromeSetup.exe 2014-01-16 13:45 - 2014-01-16 13:45 - 00000000 ____D C:\Users\Sven\AppData\Roaming\Nero 2014-01-16 13:40 - 2014-01-16 13:40 - 00000000 ____D C:\Users\Sven\AppData\Local\Ahead 2014-01-16 13:40 - 2014-01-16 13:29 - 00000358 _____ C:\Windows\SysWOW64\MsiExec.exe.log 2014-01-16 13:30 - 2014-01-16 13:30 - 00000026 _____ C:\Windows\Irremote.ini 2014-01-16 13:29 - 2014-01-16 13:29 - 00001024 _____ C:\Users\Sven\.rnd 2014-01-16 13:29 - 2013-11-10 12:55 - 00000000 ____D C:\users\Sven 2014-01-16 13:28 - 2014-01-16 13:28 - 00000000 ____D C:\ProgramData\Nero 2014-01-16 13:28 - 2014-01-16 13:28 - 00000000 ____D C:\Program Files (x86)\Nero 2014-01-16 13:28 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\Cursors 2014-01-16 13:22 - 2014-01-16 13:21 - 00000000 ____D C:\Program Files (x86)\FormatFactory 2014-01-16 11:54 - 2014-01-16 11:01 - 00000000 ____D C:\Program Files (x86)\Windows Live 2014-01-16 11:35 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\registration 2014-01-16 11:02 - 2014-01-16 10:57 - 00000000 ____D C:\Users\Sven\AppData\Local\Windows Live 2014-01-16 11:00 - 2013-12-27 11:32 - 00213912 _____ C:\Windows\DirectX.log 2014-01-16 10:53 - 2014-01-16 10:53 - 01245168 _____ (Microsoft Corporation) C:\Users\Sven\Downloads\wlsetup-web.exe 2014-01-16 10:10 - 2014-01-15 10:29 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2014-01-15 14:49 - 2013-11-15 17:39 - 00000000 ____D C:\Windows\System32\MRT 2014-01-15 10:50 - 2013-11-15 17:39 - 86054176 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe 2014-01-15 10:27 - 2013-11-10 15:54 - 00000000 ____D C:\Program Files (x86)\Adobe 2014-01-15 10:19 - 2013-11-17 17:08 - 00000000 ____D C:\Users\Sven\AppData\Local\JDownloader v2.0 2014-01-14 21:39 - 2013-08-22 15:46 - 00044862 _____ C:\Windows\setupact.log 2014-01-13 10:25 - 2014-01-14 21:37 - 64388053 _____ C:\Users\Sven\Desktop\Steve Ballmer - One Microsoft.mp4 2014-01-12 22:48 - 2014-01-12 22:48 - 00058249 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2014-01-12 22_48_10.627359.dmp 2014-01-09 15:48 - 2013-11-11 15:59 - 00000000 ____D C:\Users\Sven\Desktop\Hochbahn Berlin GmbH 2014-01-08 17:15 - 2014-01-08 11:23 - 00000000 ____D C:\Windows\SysWOW64\NV 2014-01-08 17:15 - 2014-01-08 11:23 - 00000000 ____D C:\Windows\System32\NV 2014-01-08 16:32 - 2013-11-20 17:40 - 00000000 ____D C:\Users\Sven\AppData\Local\NVIDIA Corporation 2014-01-08 11:28 - 2013-11-10 13:13 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2014-01-08 11:24 - 2013-11-10 13:13 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2014-01-08 11:24 - 2013-11-10 13:12 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2014-01-08 07:54 - 2014-01-08 07:50 - 00000000 ____D C:\Users\Sven\Documents\Battlefield 2 2014-01-08 07:50 - 2014-01-08 07:50 - 00794408 _____ C:\Windows\SysWOW64\Pbsvc.exe 2014-01-08 07:50 - 2014-01-08 07:50 - 00111928 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2014-01-08 07:50 - 2014-01-08 07:50 - 00075064 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2014-01-08 07:49 - 2014-01-08 07:49 - 00000000 ____D C:\Program Files (x86)\GameSpy 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptHelper.txt.lck 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptHelper.txt 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptException.txt.lck 2014-01-07 14:03 - 2014-01-07 14:03 - 00000000 _____ C:\Users\Sven\Downloads\DecryptException.txt 2014-01-06 23:31 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-06 23:31 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-05 21:41 - 2014-01-05 21:41 - 00062265 _____ C:\Users\Sven\Documents\ts3_clientui-win64-1382530211-2014-01-05 21_41_33.323819.dmp 2014-01-02 17:05 - 2014-01-02 16:55 - 00000000 ____D C:\ProgramData\Standard 2014-01-02 16:57 - 2014-01-02 16:57 - 00000000 ____D C:\Program Files (x86)\Shark007 2014-01-02 12:20 - 2014-01-02 12:20 - 00000000 ____D C:\Users\Sven\Desktop\Omsi-Helpmaker Some content of TEMP: ==================== C:\Users\Sven\AppData\Local\Temp\bdfilters.dll ==================== Known DLLs (Whitelisted) ================ ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== EXE ASSOCIATION ===================== HKLM\...\.exe: exefile => OK HKLM\...\exefile\DefaultIcon: %1 => OK HKLM\...\exefile\open\command: "%1" %* => OK ==================== Restore Points ========================= Restore point made on: 2014-01-16 13:27:49 Restore point made on: 2014-01-26 10:51:51 Restore point made on: 2014-01-29 11:13:52 ==================== Memory info =========================== Percentage of memory in use: 11% Total physical RAM: 8086.16 MB Available physical RAM: 7142.91 MB Total Pagefile: 8086.16 MB Available Pagefile: 7170.12 MB Total Virtual: 131072 MB Available Virtual: 131071.85 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:249.66 GB) (Free:131.54 GB) NTFS Drive d: (GCS900) (Removable) (Total:3.65 GB) (Free:3.65 GB) FAT32 Drive f: () (Fixed) (Total:448.63 GB) (Free:439.79 GB) NTFS Drive x: (Boot) (Fixed) (Total:0.5 GB) (Free:0.49 GB) NTFS Drive y: (System-reserviert) (Fixed) (Total:0.34 GB) (Free:0.09 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: 66A73740) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=250 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=449 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 4 GB) (Disk ID: 0DFF7265) No partition Table on disk 1. LastRegBack: 2014-01-29 19:38 ==================== End Of Log ============================ |
31.01.2014, 12:36 | #15 | |
/// the machine /// TB-Ausbilder | Windows 8.1: PC lädt ständig Daten ins Internet Immer noch alles gut. Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Windows 8.1: PC lädt ständig Daten ins Internet |
antivirenprogramm, dateien, daten, durchsuchen, ebenfalls, gefunde, gefundene, gelöst, hoffe, interne, internet, laptop, lädt, problem, programm, trojan.fakealert, win32/bundled.toolbar.ask.a, win32/bundled.toolbar.ask.d, win32/wajam.f, windows 8.1 |