|
Log-Analyse und Auswertung: Windows 7 Chrome unterstrichene Wörter pop ups und adsWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
25.01.2014, 20:07 | #1 |
| Windows 7 Chrome unterstrichene Wörter pop ups und ads Hallo! Habe seit kurzem in meinem Browser immer wieder diese Grün unterstrichenen Wörter die dann auf irgend eine Seite verweisen. "YourSoftSite.com". Des weiteren Werbeanzeigen darunter "Ads not by this Site" und pop ups. Hab schon AdwCleaner drüber laufen lassen, dann noch Spybot Search&Destroy aber wird nicht besser, wobei die pop ups wohl weg sind. Habe AdBlock aktiviert also normalerweise keinerlei Werbung, deshalb ist es mir auch sofort aufgefallen. Könnt ihr mir bitte helfen, diese Maleware oder Spyware was auch immer das ist, loszuwerden? MFG Chickenblue Geändert von chickenblue (25.01.2014 um 20:58 Uhr) |
25.01.2014, 21:15 | #2 |
/// the machine /// TB-Ausbilder | Windows 7 Chrome unterstrichene Wörter pop ups und ads Hi,
__________________Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
25.01.2014, 22:40 | #3 |
| Windows 7 Chrome unterstrichene Wörter pop ups und ads defogger.log:
__________________Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 20:11 on 25/01/2014 (Chicken) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. HKCU:DAEMON Tools Lite -> Removed Checking for services/drivers... SPTD -> Disabled (Service running -> reboot required) -=E.O.F=- FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-01-2014 01 Ran by Chicken (administrator) on KILLER7 on 25-01-2014 20:25:24 Running from C:\Users\Chicken\Desktop\Trojaner-Board Scans Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (H.D.S. Hungary) C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Microsoft Corporation) C:\Windows\System32\CISVC.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (ICQ, LLC.) C:\Program Files (x86)\ICQ7M\ICQ.exe (Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe (Realtime Soft Ltd) C:\Program Files\UltraMon\UltraMon.exe (Stardock) C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe (Realtime Soft Ltd) C:\Program Files\UltraMon\UltraMonTaskbar.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (Stardock) C:\Program Files (x86)\Stardock\ObjectDock Plus\Dock64.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Sony DADC Austria AG.) C:\Windows\SysWOW64\UAService7.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe (Realtime Soft Ltd) C:\Program Files (x86)\Common Files\Realtime Soft\RTSHookInterop\x32\RTSHookInterop.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\inetsrv\w3wp.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [CmPCIaudio] - C:\Windows\Syswow64\CMICNFG3.dll [8765440 2011-04-01] (C-Media Corporation) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11905128 2011-06-28] (Realtek Semiconductor) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1096480 2013-11-29] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2273056 2013-11-29] (NVIDIA Corporation) HKLM-x32\...\Run: [amd_dc_opt] - C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-02] (AVAST Software) HKLM-x32\...\Run: [Driver Genius] - [x] HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-12-11] (Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKCU\...\Run: [Nexus] - [x] HKCU\...\Run: [icq] - C:\Program Files (x86)\ICQ7M\ICQ.exe [127040 2013-11-23] (ICQ, LLC.) HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-12-11] (Samsung) HKCU\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup HKCU\...\Run: [Overwolf] - C:\Program Files (x86)\Overwolf\Overwolf.exe -silent MountPoints2: {bbf4de40-cf95-11e2-9356-806e6f6e6963} - E:\SETUP.EXE MountPoints2: {e2ce8b61-d52c-11e2-8e6d-14dae9e2cd19} - L:\Autorun.exe AppInit_DLLs: C:\PROGRA~2\GSSUPP~1\ASSIST~2.DLL => C:\Program Files (x86)\GS Supporter\Assistant_x64.dll [4229120 2014-01-24] () Startup: C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk ShortcutTarget: Stardock ObjectDock.lnk -> C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe (Stardock) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.us.com/?guid={427796A6-672A-469E-85E9-3530C42D21C2}&serpv=5 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.vcm-gruppe.de HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://syb.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://syb.msn.com SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {1F2BFC22-475B-475D-A3C4-0AA85133A1B2} URL = SearchScopes: HKCU - {5FE17BAD-CC6D-47E5-9551-049BAD16E287} URL = hxxp://search.us.com/serp?guid={427796A6-672A-469E-85E9-3530C42D21C2}&action=default_search&serpv=5&k={searchTerms} SearchScopes: HKCU - {C3E29473-0C5A-47B7-A9A3-E1BD700910DF} URL = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=10447 BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Chicken\AppData\Roaming\Mozilla\Firefox\Profiles\utsdst8q.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1206147.dll (Adobe Systems, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: greatuSaavero - C:\Users\Chicken\AppData\Roaming\Mozilla\Firefox\Profiles\utsdst8q.default\Extensions\mgweq6i@lltomoeuuiue.net [2014-01-25] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-06-07] Chrome: ======= CHR HomePage: hxxp://www.google.de/ig?bav=on.2,or.r_gc.r_pw.r_cp.r_qf.,cf.osb&ech=1&psi=32YVUKz2FIag4gT14YCYDg.1343589972213.3&emsg=NCSR&noj=1&ei=32YVUKz2FIag4gT14YCYDg&hl=de&source=iglk#t_0 CHR Extension: (ProxTube) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-01-08] CHR Extension: (Google Translate) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2013-12-02] CHR Extension: (Google Docs) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-02] CHR Extension: (Google Drive) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-02] CHR Extension: (YouTube) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-02] CHR Extension: (Adblock Plus) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-12-02] CHR Extension: (Webseiten-Screenshot - Webpage Screenshot) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki [2013-12-02] CHR Extension: (Google-Suche) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-02] CHR Extension: (Fade to Black Skin Aero (by Skarv)) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\cpamdpfecojdedkeoghbgfbhmlcmomlj [2013-12-02] CHR Extension: (Stylish) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2013-12-02] CHR Extension: (greatuSaavero) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\gahpacgeennmdjdhdgppaaeinmnkcjmc [2014-01-24] CHR Extension: (AdBlock) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-12-02] CHR Extension: (Eingabe-Test - KeyHero) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkcieoaeooeidmpaopkpjpjfakidlabm [2013-12-02] CHR Extension: (Lock Tab) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnikalcnjojfkpleicbncjmnieimjlfe [2013-12-02] CHR Extension: (Gestures for Google Chrome™) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkfjicglakibpenojifdiepckckakgk [2013-12-02] CHR Extension: (Auto Replay for YouTube™) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\kanbnempkjnhadplbfgdaagijdbdbjeb [2013-12-02] CHR Extension: (FVD Downloader) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmhcpmkbdkbgbmkjoiopeeegenkdikp [2013-12-02] CHR Extension: (Download Master) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcceagdollnkjlogmdckgjakjapmkdjf [2013-12-02] CHR Extension: (DSL speedtest) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\mibbfkdeofpfmkclkgjfnjppdblhpddj [2013-12-02] CHR Extension: (Google Wallet) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-02] CHR Extension: (Feed Intent Viewer) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\oceapojkdgeophkjdijkpbjifdnfimdh [2013-12-02] CHR Extension: (Skipper) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogelglhkekbnacdpabpajccajmdpnpbe [2013-12-02] CHR Extension: (Google Mail) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-02] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-02] (AVAST Software) S2 e9f32388; C:\Program Files (x86)\GS Supporter\AssistantSvc.dll [183632 2014-01-24] () R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1370912 2013-11-29] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15128352 2013-11-29] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-06-08] () S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc.) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [106472 2013-09-18] (Razer Inc.) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S4 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [746392 2013-03-20] (Tunngle.net GmbH) S4 TVersityMediaServer; C:\ProgramData\TVersity\Media Server\MediaServer.exe [5283624 2013-03-13] () R2 UserAccess7; C:\Windows\SysWOW64\UAService7.exe [143360 2013-07-17] (Sony DADC Austria AG.) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [13368 2009-07-06] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-02] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-12-04] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-12-04] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1034464 2014-01-02] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422216 2014-01-02] (AVAST Software) R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [79672 2014-01-02] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-02] () R3 cmuda3; C:\Windows\System32\drivers\cmudax3.sys [2491392 2011-03-30] (C-Media Inc) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-06-08] (DT Soft Ltd) R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [128200 2013-04-26] (Qualcomm Atheros Co., Ltd.) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] () R2 NPF; C:\Windows\System32\drivers\npf.sys [35344 2010-06-25] (CACE Technologies, Inc.) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-10-30] (NVIDIA Corporation) S4 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-06-07] (Duplex Secure Ltd.) R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) S3 VASDeviceDrm; C:\Windows\System32\drivers\vasdDev.sys [1454896 2012-03-19] (ShiningMorning Inc.) R2 VBoxDrv; C:\Program Files (x86)\YouWave Android\vb\VBoxDrv.sys [202592 2011-11-20] (Oracle Corporation) S3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [35344 2013-08-31] () S3 AmUStor; system32\drivers\AmUStor.SYS [x] S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-25 20:24 - 2014-01-25 20:24 - 00000000 ____D C:\FRST 2014-01-25 20:11 - 2014-01-25 20:11 - 00000188 _____ C:\Users\Chicken\defogger_reenable 2014-01-25 20:10 - 2014-01-25 20:26 - 00000000 ____D C:\Users\Chicken\Desktop\Trojaner-Board Scans 2014-01-25 19:51 - 2014-01-25 19:51 - 00000000 ____D C:\Users\Chicken\Documents\ProcAlyzer Dumps 2014-01-25 19:50 - 2013-11-21 15:56 - 00000895 _____ C:\Windows\system32\Drivers\etc\hosts.20140125-195027.backup 2014-01-25 18:41 - 2014-01-25 18:41 - 00001379 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-25 18:41 - 2014-01-25 18:41 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2014-01-25 18:41 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2014-01-25 18:40 - 2014-01-25 19:54 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2014-01-25 18:40 - 2014-01-25 18:49 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-25 18:13 - 2014-01-25 18:13 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-24 20:06 - 2014-01-25 17:47 - 00000000 ____D C:\Users\Chicken\AppData\Local\Overwolf 2014-01-24 19:11 - 2014-01-24 19:11 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Day 1 Studios 2014-01-24 17:09 - 2014-01-24 17:08 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-24 17:09 - 2014-01-24 17:08 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-24 17:09 - 2014-01-24 17:08 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-24 17:09 - 2014-01-24 17:08 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-24 17:08 - 2014-01-24 17:08 - 00000000 ____D C:\Program Files\Java 2014-01-24 13:02 - 2014-01-24 17:05 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\.minecraft 2014-01-24 13:01 - 2014-01-24 20:05 - 00000000 ____D C:\Users\Chicken\Downloads\Mincraft Downlad 2014-01-24 12:41 - 2014-01-25 19:40 - 00000000 ____D C:\Program Files (x86)\GS Supporter 2014-01-24 12:41 - 2014-01-24 12:41 - 00000000 ____D C:\ProgramData\House Of Soft 2014-01-24 12:40 - 2014-01-24 12:40 - 00320776 _____ (House Of Soft) C:\Users\Chicken\Downloads\minecraftdl_2621.exe 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$ 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Chicken\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\ProgramData\5f3e18278c63fa7b 2014-01-24 12:37 - 2014-01-24 12:37 - 00795225 _____ C:\Users\Chicken\Downloads\OptiFine_1.7.2_HD_U_C2.jar 2014-01-24 12:26 - 2014-01-24 12:26 - 00386383 _____ (hxxp://magiclauncher.com) C:\Users\Chicken\Downloads\MagicLauncher_1.2.5.exe 2014-01-24 12:10 - 2014-01-24 12:10 - 00675988 _____ C:\Users\Chicken\Desktop\Minecraft.exe 2014-01-23 19:53 - 2014-01-23 19:53 - 00110274 _____ C:\Users\Chicken\Downloads\TooManyItems2014_01_13_1.7.4.zip 2014-01-23 19:37 - 2014-01-23 19:37 - 02276799 _____ C:\Users\Chicken\Downloads\mcpatcher-4.3.1_01.exe 2014-01-23 19:30 - 2014-01-23 19:30 - 00000000 ____D C:\Users\Chicken\Downloads\recipebook_1.6.2 2014-01-23 19:29 - 2014-01-23 19:29 - 00007877 _____ C:\Users\Chicken\Downloads\recipebook_1.6.2.zip 2014-01-23 19:28 - 2014-01-23 19:28 - 00375581 _____ C:\Users\Chicken\Downloads\Minecraft-Modder_v2.8.4_de.exe 2014-01-23 19:25 - 2014-01-23 19:25 - 00182824 _____ C:\Users\Chicken\Downloads\modloader_1.6.2.zip 2014-01-23 19:18 - 2014-01-23 19:46 - 00000000 ____D C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010 2014-01-23 19:17 - 2014-01-23 19:17 - 02778587 _____ C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010.7z 2014-01-22 23:08 - 2014-01-22 23:08 - 00282775 _____ C:\Users\Chicken\Downloads\YouTube-Unblocker-055.crx 2014-01-22 19:07 - 2014-01-22 19:07 - 01083237 _____ C:\Users\Chicken\Downloads\Darsider II v2.rar 2014-01-21 21:28 - 2014-01-21 21:28 - 27977728 _____ (Coma) C:\Users\Chicken\Downloads\360Revolution.exe 2014-01-21 21:16 - 2014-01-22 18:50 - 00000000 ____D C:\Users\Chicken\Downloads\Darsider II v2 2014-01-21 21:16 - 2014-01-21 21:16 - 00001131 _____ C:\Users\Chicken\Desktop\Ellipse.lnk 2014-01-21 21:16 - 2014-01-21 21:16 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ellipse 2014-01-21 21:11 - 2014-01-21 21:11 - 12619064 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.7.exe 2014-01-20 19:25 - 2014-01-20 19:25 - 03123926 _____ C:\Users\Chicken\Downloads\HOMEFRONT_1.0.0.1_+_11_Trainer.rar 2014-01-20 19:22 - 2014-01-20 19:22 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1 (1).rar 2014-01-20 19:22 - 2011-04-22 17:01 - 00183808 _____ C:\Users\Chicken\Desktop\rzr-hfu1.exe 2014-01-20 19:09 - 2014-01-20 19:09 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1.rar 2014-01-20 12:08 - 2014-01-20 12:08 - 00000230 _____ C:\Windows\setup.log 2014-01-20 12:08 - 1998-11-17 13:44 - 00328704 _____ (InstallShield Software Corporation ) C:\Windows\IsUn0407.exe 2014-01-20 12:07 - 2014-01-20 12:07 - 18232168 _____ (AVM Berlin ) C:\Users\Chicken\Downloads\FRITZ!fax_3.07.04.exe 2014-01-20 00:19 - 2014-01-20 00:19 - 00001234 _____ C:\Users\Chicken\Desktop\HOMEFRONT.exe - Verknüpfung.lnk 2014-01-19 23:45 - 2014-01-19 23:50 - 82616123 _____ C:\Users\Chicken\Downloads\Homefront---Update-1-od-SKiDROW.rar 2014-01-19 23:45 - 2014-01-19 23:45 - 00001709 _____ C:\Users\Public\Desktop\Homefront.lnk 2014-01-19 20:35 - 2014-01-19 20:36 - 00017589 _____ C:\Windows\DirectX.log 2014-01-19 12:50 - 2014-01-19 12:50 - 00001813 _____ C:\Users\Public\Desktop\Starbound.lnk 2014-01-19 11:26 - 2013-12-23 22:56 - 00000000 ____D C:\Users\Chicken\Downloads\Starbound.Early.Access-SANTA 2014-01-19 09:15 - 2014-01-19 09:33 - 940623891 _____ C:\Users\Chicken\Downloads\651324152457-sastarbnd.rar 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ___RD C:\32788R22FWJFW 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ____D C:\Qoobox 2014-01-18 08:35 - 2014-01-18 08:35 - 05744392 _____ (Auslogics Labs Pty Ltd ) C:\Users\Chicken\Downloads\disk-defrag442-setup.exe 2014-01-18 08:35 - 2014-01-18 08:35 - 00001169 _____ C:\Users\Chicken\Desktop\Auslogics DiskDefrag.lnk 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\ProgramData\Auslogics 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\Program Files (x86)\Auslogics 2014-01-17 16:45 - 2014-01-23 15:35 - 00011229 _____ C:\Users\Chicken\Documents\protokoll AT Januar.xlsx 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\ProgramData\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\Common Files\7-PDF 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\7-PDF 2014-01-17 16:27 - 2013-09-26 14:35 - 00147456 _____ (7-PDF, Germany - Th. Hodes) C:\Windows\SysWOW64\bzpdfc.dll 2014-01-17 16:27 - 2013-09-01 11:59 - 01103872 _____ C:\Windows\SysWOW64\CBLCtlsU.ocx 2014-01-17 16:27 - 2013-07-13 11:15 - 00805376 _____ C:\Windows\SysWOW64\EditCtlsU.ocx 2014-01-17 16:27 - 2013-07-12 21:57 - 00539648 _____ C:\Windows\SysWOW64\LblCtlsU.ocx 2014-01-17 16:27 - 2013-04-05 12:55 - 00476160 _____ C:\Windows\SysWOW64\TabStripCtlU.ocx 2014-01-17 16:27 - 2013-03-28 22:13 - 00645632 _____ C:\Windows\SysWOW64\BtnCtlsU.ocx 2014-01-17 16:27 - 2013-03-03 13:37 - 01061888 _____ C:\Windows\SysWOW64\ExLvwU.ocx 2014-01-17 16:27 - 2008-10-30 14:35 - 00227840 _____ (Bullzip) C:\Windows\SysWOW64\bzFlRdr.dll 2014-01-17 16:27 - 2008-07-09 14:35 - 00103424 _____ (Bullzip) C:\Windows\SysWOW64\bzDCT.dll 2014-01-17 16:26 - 2014-01-17 16:26 - 07794171 _____ C:\Users\Chicken\Downloads\7PDF_10_0_0_1840.zip 2014-01-16 20:25 - 2014-01-16 20:25 - 00000976 _____ C:\Users\Chicken\Desktop\Assassin's Creed Liberation HD.lnk 2014-01-16 00:26 - 2014-01-16 00:26 - 00000000 ____D C:\Saves 2014-01-16 00:25 - 2014-01-16 00:25 - 00004009 _____ C:\Users\Chicken\Downloads\ACLHD.SKIDROW.Crack.Only.rar 2014-01-16 00:03 - 2014-01-16 00:03 - 00000000 ____D C:\Users\Chicken\Documents\Assassin's Creed Liberation HD 2014-01-15 23:00 - 2014-01-15 23:00 - 00205093 _____ C:\Users\Chicken\Downloads\SC-41571547477.rar 2014-01-15 21:07 - 2014-01-15 21:07 - 00001712 _____ C:\Users\Chicken\Downloads\liberation HD.dlc 2014-01-14 21:40 - 2014-01-14 21:40 - 00000000 ____D C:\Users\Chicken\Downloads\checkdisk130 2014-01-14 21:39 - 2014-01-14 21:39 - 00395487 _____ C:\Users\Chicken\Downloads\checkdisk130.zip 2014-01-14 21:25 - 2014-01-14 21:26 - 03610101 _____ C:\Users\Chicken\Downloads\FORCED Trainer +2 V4.2.1.1.77223.rar 2014-01-14 20:55 - 2014-01-14 20:55 - 00000000 ____D C:\Users\Chicken\AppData\Local\UWebKit 2014-01-14 20:41 - 2014-01-14 20:41 - 00000684 _____ C:\Users\Public\Desktop\FORCED.lnk 2014-01-14 19:38 - 2014-01-14 19:45 - 00000000 ____D C:\Users\Chicken\Downloads\Neuer Ordner 2014-01-13 12:06 - 2014-01-13 12:06 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Samsung 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Local\Samsung 2014-01-13 12:03 - 2014-01-13 12:03 - 00000000 ____D C:\Users\Chicken\Documents\samsung 2014-01-13 12:02 - 2014-01-13 12:02 - 00002002 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk 2014-01-13 12:02 - 2014-01-13 12:02 - 00001992 _____ C:\Users\Public\Desktop\Samsung Kies.lnk 2014-01-13 11:57 - 2013-08-21 05:31 - 00204568 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys 2014-01-13 11:57 - 2013-08-21 05:31 - 00103576 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys 2014-01-13 11:55 - 2013-10-30 12:13 - 04659712 _____ (Dmitry Streblechenko) C:\Windows\SysWOW64\Redemption.dll 2014-01-13 11:54 - 2013-10-30 12:06 - 00821824 _____ (Devguru Co., Ltd.) C:\Windows\SysWOW64\dgderapi.dll 2014-01-13 11:53 - 2014-01-13 11:57 - 00000000 ____D C:\Program Files (x86)\Samsung 2014-01-13 11:53 - 2014-01-13 11:56 - 00000000 ____D C:\ProgramData\Samsung 2014-01-13 11:47 - 2014-01-13 11:48 - 70015304 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Chicken\Downloads\KiesSetup.exe 2014-01-12 18:50 - 2014-01-12 18:50 - 02403707 _____ C:\Users\Chicken\Downloads\HTC_DesireX_User_Guide_DEU.zip 2014-01-11 18:24 - 2014-01-11 18:24 - 03585976 _____ C:\Users\Chicken\Downloads\Crack.rar 2014-01-10 16:37 - 2014-01-10 16:37 - 07886712 _____ (Microsoft Corporation) C:\Users\Chicken\Downloads\Xbox360_64Deu.exe 2014-01-10 16:28 - 2014-01-10 16:28 - 00175593 _____ C:\Users\Chicken\Documents\Unbenannt.wma 2014-01-09 21:05 - 2014-01-09 21:05 - 04700503 _____ C:\Users\Chicken\Downloads\uncutfix the darkness 2.rar 2014-01-09 19:11 - 2014-01-09 19:11 - 04571480 _____ (TeamViewer) C:\Users\Chicken\Downloads\TeamViewerQS_de.exe 2014-01-09 09:47 - 2013-12-19 08:57 - 1968460229 _____ C:\Users\Chicken\Downloads\main.2.com.rockstargames.gtasa.obb 2014-01-08 21:06 - 2014-01-09 17:05 - 00000000 ____D C:\Users\Chicken\Documents\Screenshots 2014-01-08 12:16 - 2014-01-08 12:16 - 00161276 _____ C:\Users\Chicken\Downloads\proxtube_1.2.7.crx 2014-01-08 12:08 - 2014-01-08 12:08 - 00000750 _____ C:\Users\Chicken\Downloads\Digitally Imported - Dubstep.pls 2014-01-08 12:04 - 2014-01-08 12:04 - 00000470 _____ C:\Users\Chicken\Downloads\listen-dsl.asx 2014-01-05 14:56 - 2014-01-05 14:56 - 00001447 _____ C:\Users\Chicken\Desktop\condemned.exe - Verknüpfung.lnk 2014-01-05 13:06 - 2014-01-05 13:06 - 00000000 ____D C:\Users\Public\Documents\Monolith Productions 2014-01-05 10:09 - 2014-01-05 10:10 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Chicken\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-04 22:06 - 2014-01-04 22:06 - 00454259 _____ C:\Users\Chicken\Downloads\biohaz hd.7z 2014-01-04 22:05 - 2014-01-04 22:05 - 00864725 _____ C:\Users\Chicken\Downloads\RESIDENT EVIL HD MOD.7z 2014-01-04 21:26 - 2014-01-04 21:43 - 00000000 ____D C:\Users\Chicken\AppData\Local\cache 2014-01-04 21:26 - 2014-01-04 21:26 - 00000000 _____ C:\Users\Chicken\daemonprocess.txt 2014-01-04 21:25 - 2014-01-04 21:25 - 00165736 _____ () C:\Users\Chicken\Downloads\FreeZipSetup-33H02kO.exe 2014-01-04 21:25 - 2014-01-04 21:25 - 00003254 _____ C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart 2014-01-04 21:24 - 2014-01-04 21:24 - 00167528 _____ () C:\Users\Chicken\Downloads\Game_Setup.exe 2014-01-04 16:05 - 2014-01-08 21:51 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\GameCompanion 2014-01-04 16:05 - 2014-01-04 16:05 - 00309797 _____ C:\Users\Chicken\Downloads\GameCompanion_2_4-16478-2-4.zip 2014-01-04 16:05 - 2014-01-04 16:05 - 00001116 _____ C:\Users\Chicken\Desktop\Game Companion.lnk 2014-01-04 16:05 - 2014-01-04 16:05 - 00001102 _____ C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameCompanion.lnk 2014-01-04 16:01 - 2014-01-04 16:01 - 00352787 _____ C:\Users\Chicken\Downloads\FalloutFullscreenNV_2_2-16001-2-2.7z 2014-01-04 10:12 - 2014-01-04 10:12 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-03 19:07 - 2014-01-03 19:07 - 12016434 _____ C:\Users\Chicken\Downloads\Sydney Follower 2_0 with Latest Fixes-9320.rar 2014-01-02 20:19 - 2014-01-25 19:40 - 00068810 _____ C:\Windows\PFRO.log 2014-01-02 19:46 - 2012-09-24 17:29 - 06556672 _____ (Demon) C:\Users\Chicken\Desktop\Sleeping Dogs 2.exe 2014-01-02 19:46 - 2012-08-13 17:09 - 00945664 _____ (Jappi88) C:\Users\Chicken\Desktop\Sleeping Dogs.exe 2014-01-02 18:53 - 2014-01-02 18:53 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-01-02 18:53 - 2014-01-02 18:53 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-01 22:23 - 2014-01-01 22:23 - 02673327 _____ C:\Users\Chicken\Downloads\Sleeping Dogs v2 Update.zip 2014-01-01 22:18 - 2014-01-01 22:18 - 00533166 _____ C:\Users\Chicken\Downloads\Sleeping_Dogs_V1.0.2.0.rar 2014-01-01 01:07 - 2014-01-01 01:07 - 13159264 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.3.exe 2013-12-30 21:01 - 2014-01-25 20:19 - 00004225 _____ C:\Windows\setupact.log 2013-12-30 21:01 - 2013-12-30 21:01 - 00000000 _____ C:\Windows\setuperr.log 2013-12-30 17:52 - 2013-12-30 19:17 - 00010156 _____ C:\Users\Chicken\Desktop\Batman Fahrzeuge.xlsx 2013-12-30 10:05 - 2013-12-30 10:05 - 00322640 _____ (Xiph.Org Foundation) C:\Windows\SysWOW64\vorbis.dll 2013-12-30 10:02 - 2013-12-30 16:53 - 00000000 ____D C:\Program Files (x86)\Dll-Files.com Fixer 2013-12-30 09:52 - 2013-09-24 12:14 - 00028952 _____ (Xiph.Org Foundation) C:\Windows\SysWOW64\vorbisfile.dll 2013-12-30 09:52 - 2013-09-24 12:14 - 00028952 _____ (Xiph.Org Foundation) C:\Windows\system32\vorbisfile.dll 2013-12-29 10:14 - 2013-12-29 10:15 - 07478509 _____ C:\Users\Chicken\Downloads\Miley Cyrus - Wrecking Ball Chatroulette - Fun-Video auf Chilloutzone.mp4 2013-12-28 23:34 - 2014-01-10 21:44 - 00000000 ____D C:\Users\Chicken\Documents\Steam Screenshots 2013-12-28 18:55 - 2013-12-28 18:55 - 00000000 ___RD C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geräte und Drucker - Verknüpfung 2013-12-28 18:46 - 2010-02-26 10:38 - 00120248 _____ (Xiph.org Foundation) C:\Windows\system32\libvorbisfile.dll 2013-12-28 18:45 - 2010-02-26 10:38 - 00120248 _____ (Xiph.org Foundation) C:\Windows\SysWOW64\libvorbisfile.dll 2013-12-28 18:43 - 2013-12-28 18:43 - 00000000 ____D C:\Program Files (x86)\Bethesda Softworks 2013-12-26 18:40 - 2013-12-26 18:40 - 00000951 _____ C:\Users\Chicken\Desktop\Fallout Mod Manager.lnk 2013-12-26 18:40 - 2013-12-26 18:40 - 00000000 ____D C:\Users\Chicken\AppData\Local\FOMM 2013-12-26 18:40 - 2013-12-26 18:40 - 00000000 ____D C:\Program Files (x86)\GeMM 2013-12-26 16:50 - 2013-12-26 16:50 - 00000000 ____D C:\ProgramData\NexusDB3 ==================== One Month Modified Files and Folders ======= 2021-10-31 17:57 - 2013-06-07 20:46 - 00689664 _____ (AdminSystem Software Limited) C:\Windows\system32\ANPOP.dll 2014-01-25 20:26 - 2014-01-25 20:10 - 00000000 ____D C:\Users\Chicken\Desktop\Trojaner-Board Scans 2014-01-25 20:26 - 2013-06-07 15:18 - 01112052 _____ C:\Windows\WindowsUpdate.log 2014-01-25 20:26 - 2009-07-14 05:45 - 00021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-25 20:26 - 2009-07-14 05:45 - 00021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-25 20:24 - 2014-01-25 20:24 - 00000000 ____D C:\FRST 2014-01-25 20:23 - 2013-10-23 16:36 - 00003510 _____ C:\Windows\System32\Tasks\AutoKMS 2014-01-25 20:19 - 2013-12-30 21:01 - 00004225 _____ C:\Windows\setupact.log 2014-01-25 20:19 - 2013-12-02 15:16 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-25 20:18 - 2013-11-24 17:49 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-25 20:18 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-25 20:15 - 2013-06-07 15:35 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-25 20:11 - 2014-01-25 20:11 - 00000188 _____ C:\Users\Chicken\defogger_reenable 2014-01-25 20:11 - 2013-06-07 15:18 - 00000000 ____D C:\Users\Chicken 2014-01-25 19:58 - 2013-11-21 23:11 - 00000000 ____D C:\AdwCleaner 2014-01-25 19:54 - 2014-01-25 18:40 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2014-01-25 19:51 - 2014-01-25 19:51 - 00000000 ____D C:\Users\Chicken\Documents\ProcAlyzer Dumps 2014-01-25 19:48 - 2013-08-05 23:16 - 00000000 ____D C:\Users\DefaultAppPool 2014-01-25 19:44 - 2013-11-23 20:33 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\ICQ 2014-01-25 19:40 - 2014-01-24 12:41 - 00000000 ____D C:\Program Files (x86)\GS Supporter 2014-01-25 19:40 - 2014-01-02 20:19 - 00068810 _____ C:\Windows\PFRO.log 2014-01-25 19:34 - 2013-12-02 15:16 - 00001112 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-25 19:18 - 2013-10-21 22:10 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-25 18:49 - 2014-01-25 18:40 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-25 18:41 - 2014-01-25 18:41 - 00001379 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-25 18:41 - 2014-01-25 18:41 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2014-01-25 18:13 - 2014-01-25 18:13 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-25 18:13 - 2013-10-16 10:05 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-25 17:48 - 2013-06-08 19:25 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Notepad++ 2014-01-25 17:48 - 2013-06-08 19:25 - 00000000 ____D C:\Program Files (x86)\Notepad++ 2014-01-25 17:47 - 2014-01-24 20:06 - 00000000 ____D C:\Users\Chicken\AppData\Local\Overwolf 2014-01-25 17:03 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2014-01-25 07:15 - 2013-11-16 13:41 - 00003934 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{5C497AA6-8DA4-4F51-9231-255D2BE41896} 2014-01-24 22:16 - 2013-06-16 07:04 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Skype 2014-01-24 21:45 - 2013-06-07 15:58 - 00000000 ____D C:\Program Files (x86)\Steam 2014-01-24 20:05 - 2014-01-24 13:01 - 00000000 ____D C:\Users\Chicken\Downloads\Mincraft Downlad 2014-01-24 19:11 - 2014-01-24 19:11 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Day 1 Studios 2014-01-24 17:08 - 2014-01-24 17:09 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-24 17:08 - 2014-01-24 17:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-24 17:08 - 2014-01-24 17:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-24 17:08 - 2014-01-24 17:09 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-24 17:08 - 2014-01-24 17:08 - 00000000 ____D C:\Program Files\Java 2014-01-24 17:05 - 2014-01-24 13:02 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\.minecraft 2014-01-24 12:41 - 2014-01-24 12:41 - 00000000 ____D C:\ProgramData\House Of Soft 2014-01-24 12:41 - 2013-08-08 06:15 - 00000000 ____D C:\ProgramData\InstallMate 2014-01-24 12:40 - 2014-01-24 12:40 - 00320776 _____ (House Of Soft) C:\Users\Chicken\Downloads\minecraftdl_2621.exe 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$ 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Chicken\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\ProgramData\5f3e18278c63fa7b 2014-01-24 12:40 - 2013-06-07 15:24 - 00000000 ____D C:\Users\Chicken\AppData\Local\Google 2014-01-24 12:37 - 2014-01-24 12:37 - 00795225 _____ C:\Users\Chicken\Downloads\OptiFine_1.7.2_HD_U_C2.jar 2014-01-24 12:26 - 2014-01-24 12:26 - 00386383 _____ (hxxp://magiclauncher.com) C:\Users\Chicken\Downloads\MagicLauncher_1.2.5.exe 2014-01-24 12:10 - 2014-01-24 12:10 - 00675988 _____ C:\Users\Chicken\Desktop\Minecraft.exe 2014-01-24 00:28 - 2013-06-08 13:19 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\BitTorrent 2014-01-24 00:26 - 2013-06-07 16:52 - 00000000 ____D C:\Users\Chicken\Downloads\BitTorrent 2014-01-23 22:41 - 2013-07-17 17:59 - 00000000 ____D C:\Program Files (x86)\Hard Disk Sentinel 2014-01-23 19:53 - 2014-01-23 19:53 - 00110274 _____ C:\Users\Chicken\Downloads\TooManyItems2014_01_13_1.7.4.zip 2014-01-23 19:46 - 2014-01-23 19:18 - 00000000 ____D C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010 2014-01-23 19:37 - 2014-01-23 19:37 - 02276799 _____ C:\Users\Chicken\Downloads\mcpatcher-4.3.1_01.exe 2014-01-23 19:30 - 2014-01-23 19:30 - 00000000 ____D C:\Users\Chicken\Downloads\recipebook_1.6.2 2014-01-23 19:29 - 2014-01-23 19:29 - 00007877 _____ C:\Users\Chicken\Downloads\recipebook_1.6.2.zip 2014-01-23 19:28 - 2014-01-23 19:28 - 00375581 _____ C:\Users\Chicken\Downloads\Minecraft-Modder_v2.8.4_de.exe 2014-01-23 19:25 - 2014-01-23 19:25 - 00182824 _____ C:\Users\Chicken\Downloads\modloader_1.6.2.zip 2014-01-23 19:17 - 2014-01-23 19:17 - 02778587 _____ C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010.7z 2014-01-23 15:35 - 2014-01-17 16:45 - 00011229 _____ C:\Users\Chicken\Documents\protokoll AT Januar.xlsx 2014-01-22 23:08 - 2014-01-22 23:08 - 00282775 _____ C:\Users\Chicken\Downloads\YouTube-Unblocker-055.crx 2014-01-22 19:07 - 2014-01-22 19:07 - 01083237 _____ C:\Users\Chicken\Downloads\Darsider II v2.rar 2014-01-22 18:50 - 2014-01-21 21:16 - 00000000 ____D C:\Users\Chicken\Downloads\Darsider II v2 2014-01-21 21:28 - 2014-01-21 21:28 - 27977728 _____ (Coma) C:\Users\Chicken\Downloads\360Revolution.exe 2014-01-21 21:16 - 2014-01-21 21:16 - 00001131 _____ C:\Users\Chicken\Desktop\Ellipse.lnk 2014-01-21 21:16 - 2014-01-21 21:16 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ellipse 2014-01-21 21:16 - 2013-11-21 19:45 - 00000000 ____D C:\Program Files (x86)\MxS Elite 2014-01-21 21:16 - 2013-06-07 16:52 - 00688128 ___SH C:\Users\Chicken\Downloads\Thumbs.db 2014-01-21 21:11 - 2014-01-21 21:11 - 12619064 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.7.exe 2014-01-20 19:25 - 2014-01-20 19:25 - 03123926 _____ C:\Users\Chicken\Downloads\HOMEFRONT_1.0.0.1_+_11_Trainer.rar 2014-01-20 19:22 - 2014-01-20 19:22 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1 (1).rar 2014-01-20 19:09 - 2014-01-20 19:09 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1.rar 2014-01-20 12:08 - 2014-01-20 12:08 - 00000230 _____ C:\Windows\setup.log 2014-01-20 12:07 - 2014-01-20 12:07 - 18232168 _____ (AVM Berlin ) C:\Users\Chicken\Downloads\FRITZ!fax_3.07.04.exe 2014-01-20 00:19 - 2014-01-20 00:19 - 00001234 _____ C:\Users\Chicken\Desktop\HOMEFRONT.exe - Verknüpfung.lnk 2014-01-19 23:54 - 2013-08-08 18:27 - 00000000 ____D C:\Users\Chicken\AppData\Local\SKIDROW 2014-01-19 23:54 - 2013-06-07 16:12 - 00000000 ____D C:\Users\Chicken\Documents\My Games 2014-01-19 23:50 - 2014-01-19 23:45 - 82616123 _____ C:\Users\Chicken\Downloads\Homefront---Update-1-od-SKiDROW.rar 2014-01-19 23:45 - 2014-01-19 23:45 - 00001709 _____ C:\Users\Public\Desktop\Homefront.lnk 2014-01-19 23:27 - 2013-06-07 16:11 - 00000000 ____D C:\Games 2014-01-19 20:36 - 2014-01-19 20:35 - 00017589 _____ C:\Windows\DirectX.log 2014-01-19 19:18 - 2013-06-08 06:34 - 00000000 ____D C:\Users\Chicken\AppData\Local\Skyrim 2014-01-19 19:17 - 2013-06-07 16:12 - 00000000 ____D C:\Users\Chicken\Documents\Nexus Mod Manager 2014-01-19 12:50 - 2014-01-19 12:50 - 00001813 _____ C:\Users\Public\Desktop\Starbound.lnk 2014-01-19 09:33 - 2014-01-19 09:15 - 940623891 _____ C:\Users\Chicken\Downloads\651324152457-sastarbnd.rar 2014-01-19 01:37 - 2013-06-07 16:36 - 00035840 ___SH C:\Users\Chicken\Thumbs.db 2014-01-18 14:27 - 2013-06-07 17:05 - 00000000 ____D C:\Users\Chicken\Downloads\Programme und Anwendungen 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ___RD C:\32788R22FWJFW 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ____D C:\Qoobox 2014-01-18 08:35 - 2014-01-18 08:35 - 05744392 _____ (Auslogics Labs Pty Ltd ) C:\Users\Chicken\Downloads\disk-defrag442-setup.exe 2014-01-18 08:35 - 2014-01-18 08:35 - 00001169 _____ C:\Users\Chicken\Desktop\Auslogics DiskDefrag.lnk 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\ProgramData\Auslogics 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\Program Files (x86)\Auslogics 2014-01-17 16:36 - 2013-11-25 12:10 - 00010809 _____ C:\Users\Chicken\Documents\protokoll AT.xlsx 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\ProgramData\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\Common Files\7-PDF 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\7-PDF 2014-01-17 16:26 - 2014-01-17 16:26 - 07794171 _____ C:\Users\Chicken\Downloads\7PDF_10_0_0_1840.zip 2014-01-16 20:25 - 2014-01-16 20:25 - 00000976 _____ C:\Users\Chicken\Desktop\Assassin's Creed Liberation HD.lnk 2014-01-16 12:58 - 2013-06-16 18:18 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\vlc 2014-01-16 00:26 - 2014-01-16 00:26 - 00000000 ____D C:\Saves 2014-01-16 00:25 - 2014-01-16 00:25 - 00004009 _____ C:\Users\Chicken\Downloads\ACLHD.SKIDROW.Crack.Only.rar 2014-01-16 00:03 - 2014-01-16 00:03 - 00000000 ____D C:\Users\Chicken\Documents\Assassin's Creed Liberation HD 2014-01-15 23:00 - 2014-01-15 23:00 - 00205093 _____ C:\Users\Chicken\Downloads\SC-41571547477.rar 2014-01-15 21:08 - 2013-06-13 20:23 - 00000000 ____D C:\Program Files (x86)\JDownloader 2014-01-15 21:07 - 2014-01-15 21:07 - 00001712 _____ C:\Users\Chicken\Downloads\liberation HD.dlc 2014-01-14 21:40 - 2014-01-14 21:40 - 00000000 ____D C:\Users\Chicken\Downloads\checkdisk130 2014-01-14 21:39 - 2014-01-14 21:39 - 00395487 _____ C:\Users\Chicken\Downloads\checkdisk130.zip 2014-01-14 21:26 - 2014-01-14 21:25 - 03610101 _____ C:\Users\Chicken\Downloads\FORCED Trainer +2 V4.2.1.1.77223.rar 2014-01-14 20:55 - 2014-01-14 20:55 - 00000000 ____D C:\Users\Chicken\AppData\Local\UWebKit 2014-01-14 20:41 - 2014-01-14 20:41 - 00000684 _____ C:\Users\Public\Desktop\FORCED.lnk 2014-01-14 19:45 - 2014-01-14 19:38 - 00000000 ____D C:\Users\Chicken\Downloads\Neuer Ordner 2014-01-13 19:26 - 2013-06-10 12:10 - 00000000 ____D C:\Users\Chicken\AppData\Local\Paint.NET 2014-01-13 12:06 - 2014-01-13 12:06 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Samsung 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Local\Samsung 2014-01-13 12:03 - 2014-01-13 12:03 - 00000000 ____D C:\Users\Chicken\Documents\samsung 2014-01-13 12:02 - 2014-01-13 12:02 - 00002002 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk 2014-01-13 12:02 - 2014-01-13 12:02 - 00001992 _____ C:\Users\Public\Desktop\Samsung Kies.lnk 2014-01-13 11:57 - 2014-01-13 11:53 - 00000000 ____D C:\Program Files (x86)\Samsung 2014-01-13 11:56 - 2014-01-13 11:53 - 00000000 ____D C:\ProgramData\Samsung 2014-01-13 11:54 - 2013-06-07 16:06 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-13 11:50 - 2013-06-07 20:11 - 00000000 ____D C:\Users\Chicken\AppData\Local\Downloaded Installations 2014-01-13 11:48 - 2014-01-13 11:47 - 70015304 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Chicken\Downloads\KiesSetup.exe 2014-01-12 18:50 - 2014-01-12 18:50 - 02403707 _____ C:\Users\Chicken\Downloads\HTC_DesireX_User_Guide_DEU.zip 2014-01-11 20:12 - 2013-06-10 12:08 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Winamp 2014-01-11 18:28 - 2013-06-07 15:19 - 00000000 ____D C:\ProgramData\DriverGenius 2014-01-11 18:24 - 2014-01-11 18:24 - 03585976 _____ C:\Users\Chicken\Downloads\Crack.rar 2014-01-10 21:44 - 2013-12-28 23:34 - 00000000 ____D C:\Users\Chicken\Documents\Steam Screenshots 2014-01-10 16:47 - 2013-06-16 07:04 - 00000000 ____D C:\ProgramData\Skype 2014-01-10 16:46 - 2013-06-16 07:04 - 00000000 ___RD C:\Program Files (x86)\Skype 2014-01-10 16:37 - 2014-01-10 16:37 - 07886712 _____ (Microsoft Corporation) C:\Users\Chicken\Downloads\Xbox360_64Deu.exe 2014-01-10 16:35 - 2013-06-07 15:59 - 00000910 _____ C:\Windows\Cmicnfg3.ini.imi 2014-01-10 16:28 - 2014-01-10 16:28 - 00175593 _____ C:\Users\Chicken\Documents\Unbenannt.wma 2014-01-09 21:05 - 2014-01-09 21:05 - 04700503 _____ C:\Users\Chicken\Downloads\uncutfix the darkness 2.rar 2014-01-09 20:29 - 2013-06-07 15:18 - 00086736 _____ C:\Users\Chicken\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-09 20:27 - 2009-07-14 05:45 - 00344816 _____ C:\Windows\system32\FNTCACHE.DAT 2014-01-09 19:13 - 2013-06-19 06:54 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2014-01-09 19:12 - 2013-06-25 16:34 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\TeamViewer 2014-01-09 19:11 - 2014-01-09 19:11 - 04571480 _____ (TeamViewer) C:\Users\Chicken\Downloads\TeamViewerQS_de.exe 2014-01-09 17:05 - 2014-01-08 21:06 - 00000000 ____D C:\Users\Chicken\Documents\Screenshots 2014-01-08 21:51 - 2014-01-04 16:05 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\GameCompanion 2014-01-08 12:16 - 2014-01-08 12:16 - 00161276 _____ C:\Users\Chicken\Downloads\proxtube_1.2.7.crx 2014-01-08 12:08 - 2014-01-08 12:08 - 00000750 _____ C:\Users\Chicken\Downloads\Digitally Imported - Dubstep.pls 2014-01-08 12:04 - 2014-01-08 12:04 - 00000470 _____ C:\Users\Chicken\Downloads\listen-dsl.asx 2014-01-05 14:56 - 2014-01-05 14:56 - 00001447 _____ C:\Users\Chicken\Desktop\condemned.exe - Verknüpfung.lnk 2014-01-05 13:06 - 2014-01-05 13:06 - 00000000 ____D C:\Users\Public\Documents\Monolith Productions 2014-01-05 10:10 - 2014-01-05 10:09 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Chicken\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-04 22:06 - 2014-01-04 22:06 - 00454259 _____ C:\Users\Chicken\Downloads\biohaz hd.7z 2014-01-04 22:05 - 2014-01-04 22:05 - 00864725 _____ C:\Users\Chicken\Downloads\RESIDENT EVIL HD MOD.7z 2014-01-04 21:43 - 2014-01-04 21:26 - 00000000 ____D C:\Users\Chicken\AppData\Local\cache 2014-01-04 21:26 - 2014-01-04 21:26 - 00000000 _____ C:\Users\Chicken\daemonprocess.txt 2014-01-04 21:25 - 2014-01-04 21:25 - 00165736 _____ () C:\Users\Chicken\Downloads\FreeZipSetup-33H02kO.exe 2014-01-04 21:25 - 2014-01-04 21:25 - 00003254 _____ C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart 2014-01-04 21:24 - 2014-01-04 21:24 - 00167528 _____ () C:\Users\Chicken\Downloads\Game_Setup.exe 2014-01-04 16:05 - 2014-01-04 16:05 - 00309797 _____ C:\Users\Chicken\Downloads\GameCompanion_2_4-16478-2-4.zip 2014-01-04 16:05 - 2014-01-04 16:05 - 00001116 _____ C:\Users\Chicken\Desktop\Game Companion.lnk 2014-01-04 16:05 - 2014-01-04 16:05 - 00001102 _____ C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameCompanion.lnk 2014-01-04 16:01 - 2014-01-04 16:01 - 00352787 _____ C:\Users\Chicken\Downloads\FalloutFullscreenNV_2_2-16001-2-2.7z 2014-01-04 10:12 - 2014-01-04 10:12 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-04 10:10 - 2013-06-07 17:42 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\DAEMON Tools Lite 2014-01-04 10:08 - 2013-07-21 22:15 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\dvdcss 2014-01-03 19:07 - 2014-01-03 19:07 - 12016434 _____ C:\Users\Chicken\Downloads\Sydney Follower 2_0 with Latest Fixes-9320.rar 2014-01-03 08:16 - 2013-06-07 16:29 - 00000000 ____D C:\Users\Chicken\Bank 2014-01-02 18:53 - 2014-01-02 18:53 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-01-02 18:53 - 2014-01-02 18:53 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-02 18:52 - 2013-06-07 15:35 - 01034464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-02 18:52 - 2013-06-07 15:35 - 00422216 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-01-02 18:52 - 2013-06-07 15:35 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-02 18:52 - 2013-06-07 15:35 - 00207904 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-02 18:52 - 2013-06-07 15:35 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-02 18:52 - 2013-06-07 15:33 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-01 22:23 - 2014-01-01 22:23 - 02673327 _____ C:\Users\Chicken\Downloads\Sleeping Dogs v2 Update.zip 2014-01-01 22:18 - 2014-01-01 22:18 - 00533166 _____ C:\Users\Chicken\Downloads\Sleeping_Dogs_V1.0.2.0.rar 2014-01-01 01:07 - 2014-01-01 01:07 - 13159264 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.3.exe 2013-12-31 20:03 - 2010-11-21 07:50 - 00772998 _____ C:\Windows\system32\perfh007.dat 2013-12-31 20:03 - 2010-11-21 07:50 - 00175968 _____ C:\Windows\system32\perfc007.dat 2013-12-31 20:03 - 2009-07-14 06:13 - 01806938 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-31 11:51 - 2013-06-07 20:07 - 00000000 ____D C:\Users\Chicken\Documents\Games 2013-12-30 21:01 - 2013-12-30 21:01 - 00000000 _____ C:\Windows\setuperr.log 2013-12-30 19:17 - 2013-12-30 17:52 - 00010156 _____ C:\Users\Chicken\Desktop\Batman Fahrzeuge.xlsx 2013-12-30 17:40 - 2011-04-07 08:47 - 00000000 ____D C:\Windows\Panther 2013-12-30 16:53 - 2013-12-30 10:02 - 00000000 ____D C:\Program Files (x86)\Dll-Files.com Fixer 2013-12-30 16:52 - 2013-12-24 19:13 - 00000000 ____D C:\Program Files (x86)\DEUTSCHLAND SPIELT 2013-12-30 16:33 - 2013-06-07 16:14 - 00000000 ___RD C:\Users\Chicken\porn 2013-12-30 10:05 - 2013-12-30 10:05 - 00322640 _____ (Xiph.Org Foundation) C:\Windows\SysWOW64\vorbis.dll 2013-12-29 10:15 - 2013-12-29 10:14 - 07478509 _____ C:\Users\Chicken\Downloads\Miley Cyrus - Wrecking Ball Chatroulette - Fun-Video auf Chilloutzone.mp4 2013-12-28 18:55 - 2013-12-28 18:55 - 00000000 ___RD C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geräte und Drucker - Verknüpfung 2013-12-28 18:53 - 2013-08-12 13:12 - 00000000 ____D C:\Windows\System32\Tasks\NCH Swift Sound 2013-12-28 18:43 - 2013-12-28 18:43 - 00000000 ____D C:\Program Files (x86)\Bethesda Softworks 2013-12-26 18:40 - 2013-12-26 18:40 - 00000951 _____ C:\Users\Chicken\Desktop\Fallout Mod Manager.lnk 2013-12-26 18:40 - 2013-12-26 18:40 - 00000000 ____D C:\Users\Chicken\AppData\Local\FOMM 2013-12-26 18:40 - 2013-12-26 18:40 - 00000000 ____D C:\Program Files (x86)\GeMM 2013-12-26 16:52 - 2013-06-07 16:46 - 00000000 ____D C:\Users\Chicken\AppData\Local\Fallout3 2013-12-26 16:50 - 2013-12-26 16:50 - 00000000 ____D C:\ProgramData\NexusDB3 Some content of TEMP: ==================== C:\Users\Chicken\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-19 05:47 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- Addition.txt: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-01-2014 01 Ran by Chicken at 2014-01-25 20:28:04 Running from C:\Users\Chicken\Desktop\Trojaner-Board Scans Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== "FORCED" (x32 Version: 4.2.1.11687 - ) <==== ATTENTION 5star Game Copy (x32 Version: 1.0.5.124 - Engelmann Media) 7-PDF Printer 10.0.0.1840 (Version: 10.0.0.1840 - 7-PDF, Germany - Th. Hodes) 7-Zip 9.20 (x64 edition) (Version: 9.20.00.0 - Igor Pavlov) Activision(R) (x32 Version: 1.0 - Activision) Hidden Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.152 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Reader X (10.1.8) - Deutsch (x32 Version: 10.1.8 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (x32 Version: 12.0.6.147 - Adobe Systems, Inc.) AIDA64 Extreme Edition v2.85 (x32 Version: 2.85 - FinalWire Ltd.) Alcor Micro USB Card Reader (x32 Version: 1.2.517.35221 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 1.2.517.35221 - Alcor Micro Corp.) Hidden Alice Madness Returns The Complete Collection (x32 Version: v1.0 - Grosses_K) <==== ATTENTION Alien Swarm (x32 Version: - Valve) Amazing Adventures – The Lost Tomb (x32 Version: - ) AMIP (remove only) (x32 Version: - ) Assassins Creed IV Black Flag Freedom Cry (x32 Version: 1 - ) ASUSUpdate (x32 Version: 7.18.03 - ASUSTeK Computer Inc.) Audiograbber 1.83 SE (x32 Version: 1.83 SE - Audiograbber) Audiograbber MP3-Plugin (x32 Version: 1.0 - AG) Auslogics DiskDefrag (x32 Version: 4.4.2.0 - Auslogics Labs Pty Ltd) Auto Window Manager (x32 Version: - ) avast! Free Antivirus (x32 Version: 9.0.2011 - Avast Software) AviSynth 2.5 (x32 Version: - ) AVS Update Manager 1.0 (x32 Version: - Online Media Technologies Ltd.) AVS Video Converter 6 (x32 Version: - Online Media Technologies Ltd.) AVS4YOU Software Navigator 1.3 (x32 Version: - Online Media Technologies Ltd.) Batman: Arkham Asylum Game of the Year Edition (x32 Version: 1.0.0.0 - Square Enix Limited) Batman: Arkham City™ GOTY (x32 Version: 1.0.0000.133 - WB Games) Batman: Arkham City™ GOTY (x32 Version: 1.0.0000.133 - WB Games) Hidden Batman™: Arkham Origins (x32 Version: - WB Games Montreal) Battlefield 3™ (x32 Version: 1.0.0.0 - Electronic Arts) Battlefield 4 Update 1 (x32 Version: 1 - ) BioShock Infinite (x32 Version: - Irrational Games) BitTorrent (HKCU Version: 7.8.2.30332 - BitTorrent Inc.) Borderlands 2 (x32 Version: - Gearbox Software) Broken Sword 5 (x32 Version: - Release Date: 4 Dec 2013) Call of Juarez Gunslinger (c) Ubisoft version 1 (x32 Version: 1 - ) Captcha Brotherhood (x32 Version: 1.1.8 - Brotherhood Software) CCleaner (Version: 4.04 - Piriform) Cheat Engine 6.3 (x32 Version: - Cheat Engine) CLEO v3.0.950 (x32 Version: - Seemann (www.sannybuilder.com)) C-Media PCI Audio Device (Version: - ) <==== ATTENTION Cold Fear Language Switscher (x32 Version: - ) Contrast (x32 Version: - Focus Home Interactive) Counter-Strike: Source (x32 Version: - Valve) <==== ATTENTION Creation Kit (x32 Version: - bgs.bethsoft.com) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (x32 Version: 4.47.1.0333 - Disc Soft Ltd) Dead Horde (x32 Version: - ) Dead Island Riptide (c) Deep Silver version 1 (x32 Version: 1 - ) DEAD RISING 2 - Deutschpatch von schote.1a.to Version 1.0b (x32 Version: 1.0b - Sch0t3 + Torbex) Dead Space™ 3 (x32 Version: 1.0.0.0 - Electronic Arts, Inc.) <==== ATTENTION Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32 Version: - Microsoft) <==== ATTENTION DEUTSCHLAND SPIELT GAME CENTER (x32 Version: - ) <==== ATTENTION Die Sims™ 3 (x32 Version: 1.55.4 - Electronic Arts) Die Sims™ 3 Einfach tierisch (x32 Version: 10.0.96 - Electronic Arts) Die Sims™ 3 Late Night (x32 Version: 6.0.81 - Electronic Arts) Die Sims™ 3 Lebensfreude (x32 Version: 8.0.152 - Electronic Arts) Die Sims™ 3 Reiseabenteuer (x32 Version: 2.17.2 - Electronic Arts) Die Sims™ 3 Showtime (x32 Version: 12.0.273 - Electronic Arts) Die Sims™ 3 Supernatural (x32 Version: 15.0.135 - Electronic Arts) Die Sims™ 3 Traumkarrieren (x32 Version: 4.0.87 - Electronic Arts) Dishonored (x32 Version: 1.0 - Bethesda Softworks) Dishonored (x32 Version: 1.4 - Bethesda Softworks) DMC Devi May Cry (c) Capcom version 1 (x32 Version: 1 - ) Dolphin 4.0 (x32 Version: 4.0 - Dolphin Development Team) Doom 3 BFG Edition (x32 Version: - ) Dual-Core Optimizer (x32 Version: 1.1.4.0169 - AMD) Ellipse (x32 Version: 1.0.308 - MxS Elite) ENB Series v0.174f (x32 Version: - ) ENSLAVED: Odyssey to the West Premium Edition (x32 Version: - Namco Bandai Games) F.E.A.R. 3 (x32 Version: - Day 1 Studios) FAKEFACTORY Cinematic Mod 2013 (x32 Version: alpha1 - FAKEFACTORY) FAKEFACTORY Cinematic Mod V12 (x32 Version: V12.20FULL - FAKEFACTORY) Fallout 3 - Game of the Year Edition (x32 Version: - Bethesda Game Studios) Fallout 3 - The Garden of Eden Creation Kit (x32 Version: 1.00.0000 - Bethesda Softworks) Fallout Mod Manager 0.13.21 (x32 Version: - Q, Timeslip) Far Cry 3 (x32 Version: 1.05 - Ubisoft) Flashback (x32 Version: 1 - ) FormatFactory 3.2.0.1 (x32 Version: 3.2.0.1 - Free Time) Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fraps (remove only) (x32 Version: - ) Free YouTube Download version 3.2.9.725 (x32 Version: 3.2.9.725 - DVDVideoSoft Ltd.) Free YouTube to MP3 Converter version 3.12.17.1127 (x32 Version: 3.12.17.1127 - DVDVideoSoft Ltd.) Freemake Video Converter Version 4.1.0 (x32 Version: 4.1.0 - Ellora Assets Corporation) GeForce Experience NvStream Client Components (Version: 1.6.28 - NVIDIA Corporation) Hidden <==== ATTENTION Goodbye Deponia (x32 Version: 1 - ) Google Chrome (x32 Version: 32.0.1700.76 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden GoogleClean (x32 Version: 5.0.000 - Abelssoft) Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden Grand Theft Auto IV (x32 Version: 1.00.0000 - Rockstar Games) Grand Theft Auto San Andreas (x32 Version: 1.00.00001 - Rockstar Games) Grand Theft Auto: Episodes from Liberty City (x32 Version: 1.0.0002.135 - Rockstar Games Inc.) Hidden Grand Theft Auto: Episodes From Liberty City (x32 Version: 1.1.0.0 - Rockstar Games) GS Supporter 1.80 (x32 Version: - Verified Publisher) <==== ATTENTION GS.Enabler (x32 Version: 3.3.0.1011 - PremiumSoft) <==== ATTENTION Half-Life 2 (x32 Version: - Valve) Half-Life 2: Episode One (x32 Version: - Valve) Half-Life 2: Episode Two (x32 Version: - Valve) Hard Disk Sentinel (x32 Version: - HDS) Homefront (x32 Version: - ) Horizon v2.7.6.7 (x32 Version: 2.7.6.7 - Daring Development Inc.) IcoFX 2.0 (x32 Version: - ) icPlus (x32 Version: 0.0.3 - ThinkLabs) ICQ 8.2 (build 6870) (HKCU Version: 8.2.6870.0 - Mail.Ru) ICQ7M (x32 Version: 7.8 - ICQ) ICQSpamblocker (x32 Version: 1.00.01 (de) - ) Insaniquarium Deluxe (x32 Version: - ) IrfanView (remove only) (x32 Version: 4.36 - Irfan Skiljan) Java 7 Update 45 (x32 Version: 7.0.450 - Oracle) Java 7 Update 51 (64-bit) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden JDownloader 0.9 (x32 Version: 0.9 - AppWork GmbH) Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden K-Lite Codec Pack 9.9.0 (64-bit) (Version: 9.9.0 - ) K-Lite Mega Codec Pack 9.9.5 (x32 Version: 9.9.5 - ) LEGO MARVEL Super Heroes (x32 Version: - Warner Bros. Games) LEGO® Batman™ 2: DC Super Heroes (x32 Version: 1.0.0.0 - Warner Bros. Interactive Entertainment) LEGO® Indiana Jones™ (x32 Version: 1.00.0000 - LucasArts) LEGO® Indiana Jones™ (x32 Version: 1.00.0000 - LucasArts) Hidden LEGO® Indiana Jones™ 2 (x32 Version: 1.00.0000 - LucasArts) Hidden LEGO® Indiana Jones™ 2:*Die neuen Abenteuer (x32 Version: 1.00.0000 - LucasArts) LEGO® MARVEL Super Heroes DEMO (x32 Version: 1.0.0.0 - Warner Bros. Interactive Entertainment) LEGO® Pirates of the Caribbean Das Videospiel (x32 Version: 1.0.0.0 - Disney Interactive Studios) LEGO® Star Wars™ III: The Clone Wars™ (x32 Version: 1.0.0.0 - LucasArts) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) MegaTrainer eXperience V1.1.9.5 (x32 Version: - ) <==== ATTENTION Metro Last Light Version 1.0 (x32 Version: 1.0 - ZKY) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0 - Microsoft Corporation) <==== ATTENTION Microsoft Mouse and Keyboard Center (Version: 2.2.173.0 - Microsoft Corporation) <==== ATTENTION Microsoft Mouse and Keyboard Center (Version: 2.2.173.0 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) <==== ATTENTION Microsoft Office 2010 Language Pack Service Pack 1 (SP1) (x32 Version: - Microsoft) <==== ATTENTION Microsoft Office 2010 Language Pack Service Pack 1 (SP1) (x32 Version: - Microsoft) Hidden <==== ATTENTION Microsoft Office 2010 Service Pack 1 (SP1) (x32 Version: - Microsoft) Hidden <==== ATTENTION Microsoft Office Access MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Access Setup Metadata MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Excel MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Groove MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Groove MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office InfoPath MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office InfoPath MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Language Pack 2010 - German/Deutsch (x32 Version: 14.0.6029.1000 - Microsoft Corporation) <==== ATTENTION Microsoft Office O MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Office 64-bit Components 2010 (Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office OneNote MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Outlook MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office PowerPoint MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Professional Plus 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) <==== ATTENTION Microsoft Office Professional Plus 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Proof (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Proof (French) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Proof (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Proof (Spanish) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Proofing (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Publisher MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Shared MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Shared Setup Metadata MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office SharePoint Designer MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Word MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft Office X MUI (German) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden <==== ATTENTION Microsoft SharePoint Designer 2010 Service Pack 1 (SP1) (x32 Version: - Microsoft) Hidden <==== ATTENTION Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.) Microsoft Xbox 360 Accessories 1.2 (Version: 1.20.146.0 - Microsoft) <==== ATTENTION Microsoft XNA Framework Redistributable 4.0 Refresh (x32 Version: 4.0.30901.0 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 24.0 (x86 de) (x32 Version: 24.0 - Mozilla) Mp3tag v2.57 (x32 Version: v2.57 - Florian Heidenreich) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden Mystery P.I. – The Vegas Heist (x32 Version: - ) Nero Burning ROM (x32 Version: 12.0.20000 - Nero AG) Hidden Nero Burning ROM Help (CHM) (x32 Version: 12.0.3000 - Nero AG) Hidden Nero BurningROM 12 (x32 Version: 12.0.00300 - Nero AG) Nero ControlCenter (x32 Version: 11.0.15200 - Nero AG) Hidden <==== ATTENTION Nero ControlCenter Help (CHM) (x32 Version: 12.0.5000 - Nero AG) Hidden <==== ATTENTION Nero Core Components (x32 Version: 11.0.18100 - Nero AG) Hidden Nero SharedVideoCodecs (x32 Version: 1.0.12100.2.0 - Nero AG) Hidden Nexus Mod Manager (Version: 0.46.0 - Black Tree Gaming) Nexus Ultimate 12.2 (x32 Version: - ) Notepad++ (x32 Version: 6.5.2 - Notepad++ Team) NVIDIA 3D Vision Controller-Treiber 331.82 (Version: 331.82 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 331.82 (Version: 331.82 - NVIDIA Corporation) NVIDIA GeForce Experience 1.8 (Version: 1.8 - NVIDIA Corporation) <==== ATTENTION NVIDIA Grafiktreiber 331.82 (Version: 331.82 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.142.992 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden <==== ATTENTION NVIDIA PhysX (x32 Version: 9.13.0725 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725 - NVIDIA Corporation) NVIDIA ShadowPlay 10.10.5 (Version: 10.10.5 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3182 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 331.82 (Version: 331.82 - NVIDIA Corporation) Hidden NVIDIA Update 10.10.5 (Version: 10.10.5 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 10.10.5 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.12 (Version: 1.2.12 - NVIDIA Corporation) ObjectDock Plus (x32 Version: 2.01 - Stardock Corporation) OpenAL (x32 Version: - ) Origin (x32 Version: 9.2.1.4399 - Electronic Arts, Inc.) Outlast (x32 Version: - Red Barrels) Paint.NET v3.5.11 (Version: 3.61.0 - dotPDN LLC) Paranormal (Version: - Epic Games, Inc.) PDF reDirect (remove only) (x32 Version: v2.5.2 - EXP Systems LLC) Peggle Nights (x32 Version: - ) Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden PicPick (x32 Version: 3.2.6 - NTeWORKS) Pinball FX2 (x32 Version: - ) Prerequisite installer (x32 Version: 12.0.0002 - Nero AG) Hidden Project 64 version 2.1.0.1 (x32 Version: 2.1.0.1 - ) PunkBuster Services (x32 Version: 0.993 - Even Balance, Inc.) <==== ATTENTION Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (x32 Version: 2.1.0.17 - Qualcomm Atheros Inc.) QuickTime (x32 Version: 7.74.80.86 - Apple Inc.) Razer Game Booster (x32 Version: 4.0.68.0 - Razer Inc.) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6402 - Realtek Semiconductor Corp.) Republic Heroes (x32 Version: 1.00.0000 - LucasArts) RESIDENT EVIL (x32 Version: - ) Resident Evil Revelations (x32 Version: - Capcom) RollerCoaster Tycoon 3 Platinum (x32 Version: 1.00.000 - Atari) Saints Row IV (x32 Version: 1.0.5.0 - ) Saints Row IV Update 7 incl. DLC (x32 Version: 1 - ) Samsung Kies (x32 Version: 2.6.1.13105_7 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.6.1.13105_7 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (Version: 1.5.29.0 - SAMSUNG Electronics Co., Ltd.) Sanny Builder 3.08 (x32 Version: - ) Scribblenauts Unlimited (x32 Version: - ) Scribblenauts Unmasked A DC Comics Adventure (x32 Version: - ) Serious Sam 3: BFE (x32 Version: - Croteam) Serious Sam Double D XXL (x32 Version: - Mommy's Best Games) Shadow Warrior (x32 Version: 2.0.0.1 - GOG.com) SHIELD Streaming (Version: 1.6.75 - NVIDIA Corporation) Hidden Skype™ 6.11 (x32 Version: 6.11.102 - Skype Technologies S.A.) Skyrim NPC Editor (x32 Version: 0.75.1 - foretrenty) Sleeping Dogs™ (x32 Version: - Square Enix) SlimDX Runtime .NET 2.0 (January 2012) (x32 Version: 2.0.13.43 - SlimDX Group) Sniper Elite: Nazi Zombie Army 2 (x32 Version: 1.0 - Rebellion) Source SDK (x32 Version: - Valve) <==== ATTENTION Source SDK Base 2007 (x32 Version: - Valve) <==== ATTENTION Spider-Man(TM) - Dimensions (x32 Version: 1.0 - Activision) Spider-Man(TM) - Web of Shadows (x32 Version: 1.0 - Activision) Hidden Spider-Man(TM) - Web of Shadows-Spiel (x32 Version: 1.0 - Activision) Spybot - Search & Destroy (x32 Version: 2.2.25 - Safer-Networking Ltd.) Star Trek (x32 Version: - Namco Bandai) Starbound Early Access (x32 Version: - ) <==== ATTENTION Steam (x32 Version: 1.0.0.0 - Valve Corporation) Stick It To The Man! (x32 Version: - Ripstone) StreamTransport version: 1.0.2.2171 (x32 Version: - ) SweetFX Configurator (HKCU Version: 1.3.3.32 - SweetFX Configurator) Switch Sound File Converter (x32 Version: - NCH Software) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Syndicate (x32 Version: - ) System Requirements Lab CYRI (x32 Version: 6.0.3.0 - Husdawg, LLC) TeamViewer 9 (x32 Version: 9.0.24951 - TeamViewer) The Amazing Spider-Man (x32 Version: - ) The Elder Scrolls V: Skyrim (x32 Version: - Bethesda Game Studios) The Swapper (x32 Version: - Facepalm Games) <==== ATTENTION The Walking Dead (c) 3 version 1 (x32 Version: 1 - ) The Walking Dead Episode 2 - Starved for Help (x32 Version: - ) The Walking Dead Episode 3 (c) TellTale Games version 1 (x32 Version: 1 - ) The Walking Dead Episode 4 (c) Telltale Games version 1 (x32 Version: 1 - ) The Walking Dead: Season 2 (x32 Version: 1 - ) The Wolf Among Us (x32 Version: 1 - ) Torchlight 2 (x32 Version: - ) Tunngle beta (x32 Version: - Tunngle.net GmbH) TVersity Codec Pack 1.7 (x32 Version: 1.7 - TVersity Inc.) TVersity Media Server 2.3 (x32 Version: 2.3 - TVersity) TVersity Media Server Pro 2.4 (x32 Version: 2.4 - TVersity) UE3Redist (x32 Version: 1.00.0000 - Epic Games) UE3Redist (x32 Version: 1.00.0000 - Epic Games) Hidden UltraMon (Version: 3.2.0 - Realtime Soft Ltd) Unreal Development Kit: 2012-07 (Version: - Epic Games, Inc.) Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (x32 Version: - Microsoft) <==== ATTENTION Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32 Version: - Microsoft) <==== ATTENTION Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (x32 Version: - Microsoft) <==== ATTENTION Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (x32 Version: - Microsoft) <==== ATTENTION Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (x32 Version: - Microsoft) Uplay (x32 Version: 3.0 - Ubisoft) Viscera Cleanup Detail Santas Rampage (x32 Version: - ) <==== ATTENTION VLC media player 2.1.2 (x32 Version: 2.1.2 - VideoLAN) WebM Project Directshow Filters (HKCU Version: - ) Winamp (x32 Version: 5.63 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1 - Nullsoft, Inc) Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden <==== ATTENTION Windows Mail Recovery v.3.4.0 (Version: - Email Adept, Ltd.) WindowsAndroid version 4.0.3 (HKCU Version: 4.0.3 - SocketeQ, Inc.) WinImage (HKCU Version: - ) WinPcap 4.1.2 (x32 Version: 4.1.0.2001 - CACE Technologies) <==== ATTENTION WinRAR 4.01 (64-Bit) (Version: 4.01.0 - win.rar GmbH) X64 Debuggers And Tools (Version: 8.59.25584 - Microsoft Corporation) Xiph.Org Open Codecs 0.85.17777 (x32 Version: 0.85.17777 - Xiph.Org) Young Justice: Legacy (x32 Version: 1 - ) <==== ATTENTION YouWave for Android (x32 Version: - ) ==================== Restore Points ========================= 24-01-2014 16:07:34 Installed Java 7 Update 51 (64-bit) 25-01-2014 16:53:05 Removed Apple Application Support 25-01-2014 16:55:35 Removed Overwolf 25-01-2014 18:35:18 S ==================== Hosts content: ========================== 2009-07-14 03:34 - 2014-01-25 19:50 - 00450712 ____R C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 www.google-analytics.com 127.0.0.1 google-analytics.com 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 127.0.0.1 www.0scan.com 127.0.0.1 0scan.com 127.0.0.1 1000gratisproben.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com 127.0.0.1 www.100sexlinks.com 127.0.0.1 100sexlinks.com 127.0.0.1 10sek.com 127.0.0.1 www.10sek.com 127.0.0.1 www.1-2005-search.com 127.0.0.1 1-2005-search.com 127.0.0.1 123fporn.info 127.0.0.1 www.123fporn.info 127.0.0.1 123haustiereundmehr.com There are 1000 more lines. ==================== Scheduled Tasks (whitelisted) ============= Task: {1B3F41AE-113F-49D6-AC89-B4925004A6F9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-02] (Google Inc.) Task: {233E51CD-16A7-4DE0-AEB3-687FBC4F814F} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-05-13] (Microsoft) Task: {36B64122-A159-4263-B240-5A06348F8EE7} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {5C6437E5-BAA0-4838-9D4A-AB4EA9962638} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-07-22] (Piriform Ltd) Task: {65E3A55A-A86C-463D-B8DE-72F2CA5AEF68} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-22] (Adobe Systems Incorporated) Task: {6653FD76-3F23-45D2-A754-EE20A11AD3F5} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {7A5B974D-57AD-46B4-B856-57372846ECFE} - System32\Tasks\NCH Swift Sound\switchShakeIcon => C:\Program Files (x86)\NCH Swift Sound\Switch\Switch.exe [2013-08-12] (NCH Software) Task: {7ABB2226-034F-4724-8FCC-DBD19AF0AF90} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {909B6DD6-2DE4-4C2D-8A4B-E4DE27AC3227} - System32\Tasks\HardDiskSentinel\Hard Disk Sentinel_Chicken => C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [2013-07-11] (H.D.S. Hungary) Task: {9AA54255-4459-4A7C-8153-BFB888348231} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {A6A895B0-6E7A-4B45-95DC-53504110F0F1} - System32\Tasks\ASUS\ASUS Update Checker => C:\Program Files (x86)\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe [2009-12-28] (ASUSTeK Computer Inc.) Task: {AD47C4F2-2DCE-45BA-A5D6-1CB2EF2488E6} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {D3EA2F5E-82B8-4CE0-B116-FCC983E2EBC9} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-01-02] (AVAST Software) Task: {ECB9C634-E717-4D45-A0DD-2D404A4F4A83} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {EFEF2D50-C60D-4B6C-A4F5-2AC3478EA9F0} - System32\Tasks\SomotoUpdateCheckerAutoStart => C:\Users\Chicken\AppData\Local\FilesFrog Update Checker\update_checker.exe <==== ATTENTION Task: {F36F6E52-6DEF-45BF-AC08-F459575B6F8E} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {F8B836DA-C00F-4BF0-9E45-FD6BC2C2C4DF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-02] (Google Inc.) Task: {FA2316FC-2CE0-4472-9B7C-10D3681806CA} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2013-10-23] () Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2011-11-12 00:49 - 2011-11-12 00:49 - 00730624 _____ () C:\Program Files (x86)\Stardock\ObjectDock Plus\Dock64.dll 2014-01-25 12:45 - 2014-01-25 09:26 - 02166272 _____ () C:\Program Files\AVAST Software\Avast\defs\14012500\algo.dll 2011-11-12 00:49 - 2011-11-12 00:49 - 00626688 _____ () C:\Program Files (x86)\Stardock\ObjectDock Plus\DockShellHook.dll 2011-08-11 21:12 - 2013-09-07 19:31 - 00807936 _____ () C:\Program Files (x86)\Stardock\ObjectDock Plus\CrashRpt.dll 2011-08-11 21:12 - 2011-08-11 21:12 - 00053760 _____ () C:\Program Files (x86)\Stardock\ObjectDock Plus\zlib.dll 2011-08-11 21:12 - 2011-08-11 21:12 - 00094208 _____ () C:\Program Files (x86)\Stardock\ObjectDock Plus\Docklets\Clock\Clock.dll 2013-09-07 19:53 - 2008-09-15 11:43 - 00139776 _____ () C:\Program Files (x86)\Stardock\ObjectDock Plus\Docklets\MasterVolume\MasterVolumeDocklet.dll 2013-12-04 12:17 - 2013-12-04 12:17 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-01-25 18:40 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-01-25 18:40 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2014-01-25 18:40 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2014-01-25 18:40 - 2013-05-16 10:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-01-25 18:40 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2014-01-16 20:41 - 2014-01-11 11:28 - 00715544 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\libglesv2.dll 2014-01-16 20:41 - 2014-01-11 11:28 - 00100120 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\libegl.dll 2014-01-16 20:42 - 2014-01-11 11:29 - 04055320 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\pdf.dll 2014-01-16 20:42 - 2014-01-11 11:29 - 00399640 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\ppGoogleNaClPluginChrome.dll 2014-01-16 20:41 - 2014-01-11 11:28 - 01634584 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Windows\SysWOW64\zlib.dll:DocumentSummaryInformation AlternateDataStreams: C:\Windows\SysWOW64\zlib.dll:SummaryInformation AlternateDataStreams: C:\Windows\SysWOW64\zlib.dll:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} AlternateDataStreams: C:\ProgramData\TEMP:9A870F8B AlternateDataStreams: C:\Users\Chicken\Documents\Ihre Amazon_de Bestellung von _Der Herr der Ringe_ Der____ wurde versandt!.eml:OECustomProperty ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (01/25/2014 08:20:39 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/25/2014 08:15:03 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/25/2014 07:58:20 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: adwcleaner_3.017.exe, Version: 3.0.1.7, Zeitstempel: 0x4f25baec Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc000041d Fehleroffset: 0x754d4f0d ID des fehlerhaften Prozesses: 0x11f8 Startzeit der fehlerhaften Anwendung: 0xadwcleaner_3.017.exe0 Pfad der fehlerhaften Anwendung: adwcleaner_3.017.exe1 Pfad des fehlerhaften Moduls: adwcleaner_3.017.exe2 Berichtskennung: adwcleaner_3.017.exe3 Error: (01/25/2014 07:58:13 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.1.7601.17567, Zeitstempel: 0x4d672ee4 Name des fehlerhaften Moduls: RTSUltraMonHook.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4ff81cd6 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000006f2a8168 ID des fehlerhaften Prozesses: 0x61c Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 Error: (01/25/2014 07:44:21 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/25/2014 07:43:00 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (01/25/2014 07:43:00 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (01/25/2014 07:37:45 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (User: ) Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008] Error: (01/25/2014 05:26:43 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/25/2014 05:22:16 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (01/25/2014 08:20:53 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp-Listeneradapter" ist vom Dienst "Net.Tcp-Portfreigabedienst" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1053 Error: (01/25/2014 08:19:36 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp-Portfreigabedienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (01/25/2014 08:19:36 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Net.Tcp-Portfreigabedienst erreicht. Error: (01/25/2014 08:18:13 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 25.01.2014 um 20:16:28 unerwartet heruntergefahren. Error: (01/25/2014 08:15:07 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp-Listeneradapter" ist vom Dienst "Net.Tcp-Portfreigabedienst" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1053 Error: (01/25/2014 08:13:46 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp-Portfreigabedienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (01/25/2014 08:13:46 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Net.Tcp-Portfreigabedienst erreicht. Error: (01/25/2014 05:43:14 PM) (Source: DCOM) (User: ) Description: {752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (01/25/2014 05:35:01 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Update" wurde nicht richtig gestartet. Error: (01/25/2014 05:32:31 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde nicht richtig gestartet. Microsoft Office Sessions: ========================= Error: (01/25/2014 08:20:39 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/25/2014 08:15:03 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/25/2014 07:58:20 PM) (Source: Application Error)(User: ) Description: adwcleaner_3.017.exe3.0.1.74f25baecunknown0.0.0.000000000c000041d754d4f0d11f801cf19ff2fedfee8C:\Users\Chicken\Downloads\Programme und Anwendungen\Anti Vir\adwcleaner_3.017.exeunknowna7c3e8c5-85f2-11e3-93e6-14dae9e2cd19 Error: (01/25/2014 07:58:13 PM) (Source: Application Error)(User: ) Description: Explorer.EXE6.1.7601.175674d672ee4RTSUltraMonHook.dll_unloaded0.0.0.04ff81cd6c0000005000000006f2a816861c01cf19fcf4741b92C:\Windows\Explorer.EXERTSUltraMonHook.dlla3a3f0cf-85f2-11e3-93e6-14dae9e2cd19 Error: (01/25/2014 07:44:21 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/25/2014 07:43:00 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (01/25/2014 07:43:00 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (01/25/2014 07:37:45 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe)(User: ) Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008] Error: (01/25/2014 05:26:43 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/25/2014 05:22:16 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Percentage of memory in use: 43% Total physical RAM: 4095.12 MB Available physical RAM: 2316.03 MB Total Pagefile: 8188.41 MB Available Pagefile: 6249.14 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.32 GB) (Free:7.9 GB) NTFS Drive g: (INTENSO) (Fixed) (Total:1863.01 GB) (Free:637.73 GB) NTFS Drive h: () (Removable) (Total:1.84 GB) (Free:0.38 GB) FAT ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 2FEE2DB9) Partition 1: (Active) - (Size=197 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 1863 GB) (Disk ID: 6E5BEC83) Partition 1: (Not Active) - (Size=-198627982848) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 2 GB) (Disk ID: 00000000) Partition 1: (Not Active) - (Size=2 GB) - (Type=06) ==================== End Of Log ============================ Geändert von chickenblue (25.01.2014 um 23:00 Uhr) |
26.01.2014, 08:12 | #4 |
/// the machine /// TB-Ausbilder | Windows 7 Chrome unterstrichene Wörter pop ups und ads Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
26.01.2014, 09:05 | #5 |
| Windows 7 Chrome unterstrichene Wörter pop ups und adsCode:
ATTFilter Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.01.26.02 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16428 Chicken :: KILLER7 [Administrator] 26.01.2014 08:29:39 mbam-log-2014-01-26 (08-29-39).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 254021 Laufzeit: 5 Minute(n), 25 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 1 C:\Windows\SysWOW64\batman.aa.no-intro.rar (PUP.Hacktool.Patcher) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) Code:
ATTFilter # AdwCleaner v3.017 - Bericht erstellt am 26/01/2014 um 08:39:24 # Aktualisiert 12/01/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Chicken - KILLER7 # Gestartet von : C:\Users\Chicken\Downloads\Programme und Anwendungen\Anti Vir\adwcleaner_3.017.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16428 -\\ Mozilla Firefox v24.0 (de) [ Datei : C:\Users\Chicken\AppData\Roaming\Mozilla\Firefox\Profiles\utsdst8q.default\prefs.js ] Zeile gelöscht : user_pref("extensions.oUf7WYN504.scode", "(function(){try{if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};}catch(e){};if(window.self.location.protocol.indexOf('hxxp')>-1 && window[...] -\\ Google Chrome v32.0.1700.76 [ Datei : C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [2009 octets] - [21/11/2013 23:11:29] AdwCleaner[R1].txt - [2247 octets] - [05/01/2014 10:56:19] AdwCleaner[R2].txt - [3901 octets] - [25/01/2014 17:00:48] AdwCleaner[R3].txt - [1564 octets] - [25/01/2014 19:56:53] AdwCleaner[R4].txt - [1684 octets] - [26/01/2014 08:38:13] AdwCleaner[S0].txt - [1867 octets] - [21/11/2013 23:13:07] AdwCleaner[S1].txt - [2223 octets] - [05/01/2014 10:58:24] AdwCleaner[S2].txt - [3968 octets] - [25/01/2014 17:02:17] AdwCleaner[S3].txt - [1034 octets] - [25/01/2014 19:58:11] AdwCleaner[S4].txt - [1605 octets] - [26/01/2014 08:39:24] ########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1665 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.0 (01.07.2014:1) OS: Windows 7 Home Premium x64 Ran by Chicken on 26.01.2014 at 8:43:55,25 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-1912867270-4042790353-518462748-1001\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\AboutURLs\\Tabs ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\caphyon Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\caphyon Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{5FE17BAD-CC6D-47E5-9551-049BAD16E287} ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Program Files (x86)\dll-files.com fixer" ~~~ FireFox Successfully deleted the following from C:\Users\Chicken\AppData\Roaming\mozilla\firefox\profiles\utsdst8q.default\prefs.js user_pref("social.manifest.facebook", "{\"origin\":\"hxxps://www.facebook.com\",\"name\":\"Facebook Messenger\",\"workerURL\":\"hxxps://www.facebook.com/desktop/fbdesktop2/soc ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 26.01.2014 at 8:53:30,73 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-01-2014 01 Ran by Chicken (administrator) on KILLER7 on 26-01-2014 08:54:47 Running from C:\Users\Chicken\Desktop\Trojaner-Board Scans Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\CISVC.EXE (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Sony DADC Austria AG.) C:\Windows\SysWOW64\UAService7.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [CmPCIaudio] - C:\Windows\Syswow64\CMICNFG3.dll [8765440 2011-04-01] (C-Media Corporation) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11905128 2011-06-28] (Realtek Semiconductor) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1096480 2013-11-29] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2273056 2013-11-29] (NVIDIA Corporation) HKLM-x32\...\Run: [amd_dc_opt] - C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-02] (AVAST Software) HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-12-11] (Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKCU\...\Run: [Nexus] - [x] HKCU\...\Run: [icq] - C:\Program Files (x86)\ICQ7M\ICQ.exe [127040 2013-11-23] (ICQ, LLC.) HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-12-11] (Samsung) HKCU\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup HKCU\...\Run: [Overwolf] - C:\Program Files (x86)\Overwolf\Overwolf.exe -silent MountPoints2: {bbf4de40-cf95-11e2-9356-806e6f6e6963} - E:\SETUP.EXE MountPoints2: {e2ce8b61-d52c-11e2-8e6d-14dae9e2cd19} - L:\Autorun.exe AppInit_DLLs: C:\PROGRA~2\GSSUPP~1\ASSIST~2.DLL => C:\Program Files (x86)\GS Supporter\Assistant_x64.dll [4229120 2014-01-24] () Startup: C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk ShortcutTarget: Stardock ObjectDock.lnk -> C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe (Stardock) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.vcm-gruppe.de HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://syb.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://syb.msn.com SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {1F2BFC22-475B-475D-A3C4-0AA85133A1B2} URL = SearchScopes: HKCU - {C3E29473-0C5A-47B7-A9A3-E1BD700910DF} URL = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=10447 BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Chicken\AppData\Roaming\Mozilla\Firefox\Profiles\utsdst8q.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1206147.dll (Adobe Systems, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: greatuSaavero - C:\Users\Chicken\AppData\Roaming\Mozilla\Firefox\Profiles\utsdst8q.default\Extensions\mgweq6i@lltomoeuuiue.net [2014-01-25] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-06-07] Chrome: ======= CHR HomePage: hxxp://www.google.de/ig?bav=on.2,or.r_gc.r_pw.r_cp.r_qf.,cf.osb&ech=1&psi=32YVUKz2FIag4gT14YCYDg.1343589972213.3&emsg=NCSR&noj=1&ei=32YVUKz2FIag4gT14YCYDg&hl=de&source=iglk#t_0 CHR Extension: (ProxTube) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-01-08] CHR Extension: (Google Translate) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2013-12-02] CHR Extension: (Google Docs) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-02] CHR Extension: (Google Drive) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-02] CHR Extension: (YouTube) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-02] CHR Extension: (Adblock Plus) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-12-02] CHR Extension: (Webseiten-Screenshot - Webpage Screenshot) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki [2013-12-02] CHR Extension: (Google-Suche) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-02] CHR Extension: (Fade to Black Skin Aero (by Skarv)) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\cpamdpfecojdedkeoghbgfbhmlcmomlj [2013-12-02] CHR Extension: (Stylish) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2013-12-02] CHR Extension: (greatuSaavero) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\gahpacgeennmdjdhdgppaaeinmnkcjmc [2014-01-24] CHR Extension: (AdBlock) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-12-02] CHR Extension: (Eingabe-Test - KeyHero) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkcieoaeooeidmpaopkpjpjfakidlabm [2013-12-02] CHR Extension: (Lock Tab) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnikalcnjojfkpleicbncjmnieimjlfe [2013-12-02] CHR Extension: (Gestures for Google Chrome™) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkfjicglakibpenojifdiepckckakgk [2013-12-02] CHR Extension: (Auto Replay for YouTube™) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\kanbnempkjnhadplbfgdaagijdbdbjeb [2013-12-02] CHR Extension: (FVD Downloader) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmhcpmkbdkbgbmkjoiopeeegenkdikp [2013-12-02] CHR Extension: (Download Master) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcceagdollnkjlogmdckgjakjapmkdjf [2013-12-02] CHR Extension: (DSL speedtest) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\mibbfkdeofpfmkclkgjfnjppdblhpddj [2013-12-02] CHR Extension: (Google Wallet) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-02] CHR Extension: (Feed Intent Viewer) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\oceapojkdgeophkjdijkpbjifdnfimdh [2013-12-02] CHR Extension: (Skipper) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogelglhkekbnacdpabpajccajmdpnpbe [2013-12-02] CHR Extension: (Google Mail) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-02] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-02] (AVAST Software) S2 e9f32388; C:\Program Files (x86)\GS Supporter\AssistantSvc.dll [183632 2014-01-24] () R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1370912 2013-11-29] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15128352 2013-11-29] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-06-08] () S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc.) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [106472 2013-09-18] (Razer Inc.) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S4 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [746392 2013-03-20] (Tunngle.net GmbH) S4 TVersityMediaServer; C:\ProgramData\TVersity\Media Server\MediaServer.exe [5283624 2013-03-13] () R2 UserAccess7; C:\Windows\SysWOW64\UAService7.exe [143360 2013-07-17] (Sony DADC Austria AG.) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [13368 2009-07-06] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-02] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-12-04] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-12-04] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1034464 2014-01-02] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422216 2014-01-02] (AVAST Software) S3 aswStm; C:\Windows\system32\drivers\aswStm.sys [79672 2014-01-02] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-02] () R3 cmuda3; C:\Windows\System32\drivers\cmudax3.sys [2491392 2011-03-30] (C-Media Inc) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-06-08] (DT Soft Ltd) R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [128200 2013-04-26] (Qualcomm Atheros Co., Ltd.) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] () R2 NPF; C:\Windows\System32\drivers\npf.sys [35344 2010-06-25] (CACE Technologies, Inc.) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-10-30] (NVIDIA Corporation) S4 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-06-07] (Duplex Secure Ltd.) R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) S3 VASDeviceDrm; C:\Windows\System32\drivers\vasdDev.sys [1454896 2012-03-19] (ShiningMorning Inc.) R2 VBoxDrv; C:\Program Files (x86)\YouWave Android\vb\VBoxDrv.sys [202592 2011-11-20] (Oracle Corporation) S3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [35344 2013-08-31] () S3 AmUStor; system32\drivers\AmUStor.SYS [x] S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-26 08:43 - 2014-01-26 08:43 - 00000000 ____D C:\Windows\ERUNT 2014-01-26 01:47 - 2014-01-26 01:47 - 00442624 _____ C:\Windows\Minidump\012614-266746-01.dmp 2014-01-25 20:24 - 2014-01-26 08:54 - 00000000 ____D C:\FRST 2014-01-25 20:11 - 2014-01-25 20:11 - 00000188 _____ C:\Users\Chicken\defogger_reenable 2014-01-25 20:10 - 2014-01-26 08:54 - 00000000 ____D C:\Users\Chicken\Desktop\Trojaner-Board Scans 2014-01-25 19:51 - 2014-01-25 19:51 - 00000000 ____D C:\Users\Chicken\Documents\ProcAlyzer Dumps 2014-01-25 19:50 - 2013-11-21 15:56 - 00000895 _____ C:\Windows\system32\Drivers\etc\hosts.20140125-195027.backup 2014-01-25 18:41 - 2014-01-25 18:41 - 00001379 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-25 18:41 - 2014-01-25 18:41 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2014-01-25 18:41 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2014-01-25 18:40 - 2014-01-25 19:54 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2014-01-25 18:40 - 2014-01-25 18:49 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-25 18:13 - 2014-01-25 18:13 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-24 20:06 - 2014-01-25 17:47 - 00000000 ____D C:\Users\Chicken\AppData\Local\Overwolf 2014-01-24 19:11 - 2014-01-24 19:11 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Day 1 Studios 2014-01-24 17:09 - 2014-01-24 17:08 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-24 17:09 - 2014-01-24 17:08 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-24 17:09 - 2014-01-24 17:08 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-24 17:09 - 2014-01-24 17:08 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-24 17:08 - 2014-01-24 17:08 - 00000000 ____D C:\Program Files\Java 2014-01-24 13:02 - 2014-01-25 22:37 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\.minecraft 2014-01-24 13:01 - 2014-01-24 20:05 - 00000000 ____D C:\Users\Chicken\Downloads\Mincraft Downlad 2014-01-24 12:41 - 2014-01-25 19:40 - 00000000 ____D C:\Program Files (x86)\GS Supporter 2014-01-24 12:41 - 2014-01-24 12:41 - 00000000 ____D C:\ProgramData\House Of Soft 2014-01-24 12:40 - 2014-01-24 12:40 - 00320776 _____ (House Of Soft) C:\Users\Chicken\Downloads\minecraftdl_2621.exe 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$ 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Chicken\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\ProgramData\5f3e18278c63fa7b 2014-01-24 12:37 - 2014-01-24 12:37 - 00795225 _____ C:\Users\Chicken\Downloads\OptiFine_1.7.2_HD_U_C2.jar 2014-01-24 12:26 - 2014-01-24 12:26 - 00386383 _____ (hxxp://magiclauncher.com) C:\Users\Chicken\Downloads\MagicLauncher_1.2.5.exe 2014-01-24 12:10 - 2014-01-24 12:10 - 00675988 _____ C:\Users\Chicken\Desktop\Minecraft.exe 2014-01-23 19:53 - 2014-01-23 19:53 - 00110274 _____ C:\Users\Chicken\Downloads\TooManyItems2014_01_13_1.7.4.zip 2014-01-23 19:37 - 2014-01-23 19:37 - 02276799 _____ C:\Users\Chicken\Downloads\mcpatcher-4.3.1_01.exe 2014-01-23 19:30 - 2014-01-23 19:30 - 00000000 ____D C:\Users\Chicken\Downloads\recipebook_1.6.2 2014-01-23 19:29 - 2014-01-23 19:29 - 00007877 _____ C:\Users\Chicken\Downloads\recipebook_1.6.2.zip 2014-01-23 19:28 - 2014-01-23 19:28 - 00375581 _____ C:\Users\Chicken\Downloads\Minecraft-Modder_v2.8.4_de.exe 2014-01-23 19:25 - 2014-01-23 19:25 - 00182824 _____ C:\Users\Chicken\Downloads\modloader_1.6.2.zip 2014-01-23 19:18 - 2014-01-23 19:46 - 00000000 ____D C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010 2014-01-23 19:17 - 2014-01-23 19:17 - 02778587 _____ C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010.7z 2014-01-22 23:08 - 2014-01-22 23:08 - 00282775 _____ C:\Users\Chicken\Downloads\YouTube-Unblocker-055.crx 2014-01-22 19:07 - 2014-01-22 19:07 - 01083237 _____ C:\Users\Chicken\Downloads\Darsider II v2.rar 2014-01-21 21:28 - 2014-01-21 21:28 - 27977728 _____ (Coma) C:\Users\Chicken\Downloads\360Revolution.exe 2014-01-21 21:16 - 2014-01-22 18:50 - 00000000 ____D C:\Users\Chicken\Downloads\Darsider II v2 2014-01-21 21:16 - 2014-01-21 21:16 - 00001131 _____ C:\Users\Chicken\Desktop\Ellipse.lnk 2014-01-21 21:16 - 2014-01-21 21:16 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ellipse 2014-01-21 21:11 - 2014-01-21 21:11 - 12619064 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.7.exe 2014-01-20 19:25 - 2014-01-20 19:25 - 03123926 _____ C:\Users\Chicken\Downloads\HOMEFRONT_1.0.0.1_+_11_Trainer.rar 2014-01-20 19:22 - 2014-01-20 19:22 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1 (1).rar 2014-01-20 19:22 - 2011-04-22 17:01 - 00183808 _____ C:\Users\Chicken\Desktop\rzr-hfu1.exe 2014-01-20 19:09 - 2014-01-20 19:09 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1.rar 2014-01-20 12:08 - 2014-01-20 12:08 - 00000230 _____ C:\Windows\setup.log 2014-01-20 12:08 - 1998-11-17 13:44 - 00328704 _____ (InstallShield Software Corporation ) C:\Windows\IsUn0407.exe 2014-01-20 12:07 - 2014-01-20 12:07 - 18232168 _____ (AVM Berlin ) C:\Users\Chicken\Downloads\FRITZ!fax_3.07.04.exe 2014-01-20 00:19 - 2014-01-20 00:19 - 00001234 _____ C:\Users\Chicken\Desktop\HOMEFRONT.exe - Verknüpfung.lnk 2014-01-19 23:45 - 2014-01-19 23:50 - 82616123 _____ C:\Users\Chicken\Downloads\Homefront---Update-1-od-SKiDROW.rar 2014-01-19 23:45 - 2014-01-19 23:45 - 00001709 _____ C:\Users\Public\Desktop\Homefront.lnk 2014-01-19 20:35 - 2014-01-19 20:36 - 00017589 _____ C:\Windows\DirectX.log 2014-01-19 12:50 - 2014-01-19 12:50 - 00001813 _____ C:\Users\Public\Desktop\Starbound.lnk 2014-01-19 11:26 - 2013-12-23 22:56 - 00000000 ____D C:\Users\Chicken\Downloads\Starbound.Early.Access-SANTA 2014-01-19 09:15 - 2014-01-19 09:33 - 940623891 _____ C:\Users\Chicken\Downloads\651324152457-sastarbnd.rar 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ___RD C:\32788R22FWJFW 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ____D C:\Qoobox 2014-01-18 08:35 - 2014-01-18 08:35 - 05744392 _____ (Auslogics Labs Pty Ltd ) C:\Users\Chicken\Downloads\disk-defrag442-setup.exe 2014-01-18 08:35 - 2014-01-18 08:35 - 00001169 _____ C:\Users\Chicken\Desktop\Auslogics DiskDefrag.lnk 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\ProgramData\Auslogics 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\Program Files (x86)\Auslogics 2014-01-17 16:45 - 2014-01-23 15:35 - 00011229 _____ C:\Users\Chicken\Documents\protokoll AT Januar.xlsx 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\ProgramData\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\Common Files\7-PDF 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\7-PDF 2014-01-17 16:27 - 2013-09-26 14:35 - 00147456 _____ (7-PDF, Germany - Th. Hodes) C:\Windows\SysWOW64\bzpdfc.dll 2014-01-17 16:27 - 2013-09-01 11:59 - 01103872 _____ C:\Windows\SysWOW64\CBLCtlsU.ocx 2014-01-17 16:27 - 2013-07-13 11:15 - 00805376 _____ C:\Windows\SysWOW64\EditCtlsU.ocx 2014-01-17 16:27 - 2013-07-12 21:57 - 00539648 _____ C:\Windows\SysWOW64\LblCtlsU.ocx 2014-01-17 16:27 - 2013-04-05 12:55 - 00476160 _____ C:\Windows\SysWOW64\TabStripCtlU.ocx 2014-01-17 16:27 - 2013-03-28 22:13 - 00645632 _____ C:\Windows\SysWOW64\BtnCtlsU.ocx 2014-01-17 16:27 - 2013-03-03 13:37 - 01061888 _____ C:\Windows\SysWOW64\ExLvwU.ocx 2014-01-17 16:27 - 2008-10-30 14:35 - 00227840 _____ (Bullzip) C:\Windows\SysWOW64\bzFlRdr.dll 2014-01-17 16:27 - 2008-07-09 14:35 - 00103424 _____ (Bullzip) C:\Windows\SysWOW64\bzDCT.dll 2014-01-17 16:26 - 2014-01-17 16:26 - 07794171 _____ C:\Users\Chicken\Downloads\7PDF_10_0_0_1840.zip 2014-01-16 20:25 - 2014-01-16 20:25 - 00000976 _____ C:\Users\Chicken\Desktop\Assassin's Creed Liberation HD.lnk 2014-01-16 00:26 - 2014-01-16 00:26 - 00000000 ____D C:\Saves 2014-01-16 00:25 - 2014-01-16 00:25 - 00004009 _____ C:\Users\Chicken\Downloads\ACLHD.SKIDROW.Crack.Only.rar 2014-01-16 00:03 - 2014-01-16 00:03 - 00000000 ____D C:\Users\Chicken\Documents\Assassin's Creed Liberation HD 2014-01-15 23:00 - 2014-01-15 23:00 - 00205093 _____ C:\Users\Chicken\Downloads\SC-41571547477.rar 2014-01-15 21:07 - 2014-01-15 21:07 - 00001712 _____ C:\Users\Chicken\Downloads\liberation HD.dlc 2014-01-14 21:40 - 2014-01-14 21:40 - 00000000 ____D C:\Users\Chicken\Downloads\checkdisk130 2014-01-14 21:39 - 2014-01-14 21:39 - 00395487 _____ C:\Users\Chicken\Downloads\checkdisk130.zip 2014-01-14 21:25 - 2014-01-14 21:26 - 03610101 _____ C:\Users\Chicken\Downloads\FORCED Trainer +2 V4.2.1.1.77223.rar 2014-01-14 20:55 - 2014-01-14 20:55 - 00000000 ____D C:\Users\Chicken\AppData\Local\UWebKit 2014-01-14 20:41 - 2014-01-14 20:41 - 00000684 _____ C:\Users\Public\Desktop\FORCED.lnk 2014-01-14 19:38 - 2014-01-14 19:45 - 00000000 ____D C:\Users\Chicken\Downloads\Neuer Ordner 2014-01-13 12:06 - 2014-01-13 12:06 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Samsung 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Local\Samsung 2014-01-13 12:03 - 2014-01-13 12:03 - 00000000 ____D C:\Users\Chicken\Documents\samsung 2014-01-13 12:02 - 2014-01-13 12:02 - 00002002 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk 2014-01-13 12:02 - 2014-01-13 12:02 - 00001992 _____ C:\Users\Public\Desktop\Samsung Kies.lnk 2014-01-13 11:57 - 2013-08-21 05:31 - 00204568 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys 2014-01-13 11:57 - 2013-08-21 05:31 - 00103576 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys 2014-01-13 11:55 - 2013-10-30 12:13 - 04659712 _____ (Dmitry Streblechenko) C:\Windows\SysWOW64\Redemption.dll 2014-01-13 11:54 - 2013-10-30 12:06 - 00821824 _____ (Devguru Co., Ltd.) C:\Windows\SysWOW64\dgderapi.dll 2014-01-13 11:53 - 2014-01-13 11:57 - 00000000 ____D C:\Program Files (x86)\Samsung 2014-01-13 11:53 - 2014-01-13 11:56 - 00000000 ____D C:\ProgramData\Samsung 2014-01-13 11:47 - 2014-01-13 11:48 - 70015304 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Chicken\Downloads\KiesSetup.exe 2014-01-12 18:50 - 2014-01-12 18:50 - 02403707 _____ C:\Users\Chicken\Downloads\HTC_DesireX_User_Guide_DEU.zip 2014-01-11 18:24 - 2014-01-11 18:24 - 03585976 _____ C:\Users\Chicken\Downloads\Crack.rar 2014-01-10 16:37 - 2014-01-10 16:37 - 07886712 _____ (Microsoft Corporation) C:\Users\Chicken\Downloads\Xbox360_64Deu.exe 2014-01-10 16:28 - 2014-01-10 16:28 - 00175593 _____ C:\Users\Chicken\Documents\Unbenannt.wma 2014-01-09 21:05 - 2014-01-09 21:05 - 04700503 _____ C:\Users\Chicken\Downloads\uncutfix the darkness 2.rar 2014-01-09 19:11 - 2014-01-09 19:11 - 04571480 _____ (TeamViewer) C:\Users\Chicken\Downloads\TeamViewerQS_de.exe 2014-01-09 09:47 - 2013-12-19 08:57 - 1968460229 _____ C:\Users\Chicken\Downloads\main.2.com.rockstargames.gtasa.obb 2014-01-08 21:06 - 2014-01-09 17:05 - 00000000 ____D C:\Users\Chicken\Documents\Screenshots 2014-01-08 12:16 - 2014-01-08 12:16 - 00161276 _____ C:\Users\Chicken\Downloads\proxtube_1.2.7.crx 2014-01-08 12:08 - 2014-01-08 12:08 - 00000750 _____ C:\Users\Chicken\Downloads\Digitally Imported - Dubstep.pls 2014-01-08 12:04 - 2014-01-08 12:04 - 00000470 _____ C:\Users\Chicken\Downloads\listen-dsl.asx 2014-01-05 14:56 - 2014-01-05 14:56 - 00001447 _____ C:\Users\Chicken\Desktop\condemned.exe - Verknüpfung.lnk 2014-01-05 13:06 - 2014-01-05 13:06 - 00000000 ____D C:\Users\Public\Documents\Monolith Productions 2014-01-05 10:09 - 2014-01-05 10:10 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Chicken\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-04 22:06 - 2014-01-04 22:06 - 00454259 _____ C:\Users\Chicken\Downloads\biohaz hd.7z 2014-01-04 22:05 - 2014-01-04 22:05 - 00864725 _____ C:\Users\Chicken\Downloads\RESIDENT EVIL HD MOD.7z 2014-01-04 21:26 - 2014-01-04 21:43 - 00000000 ____D C:\Users\Chicken\AppData\Local\cache 2014-01-04 21:26 - 2014-01-04 21:26 - 00000000 _____ C:\Users\Chicken\daemonprocess.txt 2014-01-04 21:25 - 2014-01-04 21:25 - 00165736 _____ () C:\Users\Chicken\Downloads\FreeZipSetup-33H02kO.exe 2014-01-04 21:25 - 2014-01-04 21:25 - 00003254 _____ C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart 2014-01-04 21:24 - 2014-01-04 21:24 - 00167528 _____ () C:\Users\Chicken\Downloads\Game_Setup.exe 2014-01-04 16:05 - 2014-01-08 21:51 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\GameCompanion 2014-01-04 16:05 - 2014-01-04 16:05 - 00309797 _____ C:\Users\Chicken\Downloads\GameCompanion_2_4-16478-2-4.zip 2014-01-04 16:05 - 2014-01-04 16:05 - 00001116 _____ C:\Users\Chicken\Desktop\Game Companion.lnk 2014-01-04 16:05 - 2014-01-04 16:05 - 00001102 _____ C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameCompanion.lnk 2014-01-04 16:01 - 2014-01-04 16:01 - 00352787 _____ C:\Users\Chicken\Downloads\FalloutFullscreenNV_2_2-16001-2-2.7z 2014-01-04 10:12 - 2014-01-04 10:12 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-03 19:07 - 2014-01-03 19:07 - 12016434 _____ C:\Users\Chicken\Downloads\Sydney Follower 2_0 with Latest Fixes-9320.rar 2014-01-02 20:19 - 2014-01-25 19:40 - 00068810 _____ C:\Windows\PFRO.log 2014-01-02 19:46 - 2012-09-24 17:29 - 06556672 _____ (Demon) C:\Users\Chicken\Desktop\Sleeping Dogs 2.exe 2014-01-02 19:46 - 2012-08-13 17:09 - 00945664 _____ (Jappi88) C:\Users\Chicken\Desktop\Sleeping Dogs.exe 2014-01-02 18:53 - 2014-01-02 18:53 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-01-02 18:53 - 2014-01-02 18:53 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-01 22:23 - 2014-01-01 22:23 - 02673327 _____ C:\Users\Chicken\Downloads\Sleeping Dogs v2 Update.zip 2014-01-01 22:18 - 2014-01-01 22:18 - 00533166 _____ C:\Users\Chicken\Downloads\Sleeping_Dogs_V1.0.2.0.rar 2014-01-01 01:07 - 2014-01-01 01:07 - 13159264 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.3.exe 2013-12-30 21:01 - 2014-01-26 01:47 - 00004393 _____ C:\Windows\setupact.log 2013-12-30 21:01 - 2013-12-30 21:01 - 00000000 _____ C:\Windows\setuperr.log 2013-12-30 17:52 - 2013-12-30 19:17 - 00010156 _____ C:\Users\Chicken\Desktop\Batman Fahrzeuge.xlsx 2013-12-30 10:05 - 2013-12-30 10:05 - 00322640 _____ (Xiph.Org Foundation) C:\Windows\SysWOW64\vorbis.dll 2013-12-30 09:52 - 2013-09-24 12:14 - 00028952 _____ (Xiph.Org Foundation) C:\Windows\SysWOW64\vorbisfile.dll 2013-12-30 09:52 - 2013-09-24 12:14 - 00028952 _____ (Xiph.Org Foundation) C:\Windows\system32\vorbisfile.dll 2013-12-29 10:14 - 2013-12-29 10:15 - 07478509 _____ C:\Users\Chicken\Downloads\Miley Cyrus - Wrecking Ball Chatroulette - Fun-Video auf Chilloutzone.mp4 2013-12-28 23:34 - 2014-01-10 21:44 - 00000000 ____D C:\Users\Chicken\Documents\Steam Screenshots 2013-12-28 18:55 - 2013-12-28 18:55 - 00000000 ___RD C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geräte und Drucker - Verknüpfung 2013-12-28 18:46 - 2010-02-26 10:38 - 00120248 _____ (Xiph.org Foundation) C:\Windows\system32\libvorbisfile.dll 2013-12-28 18:45 - 2010-02-26 10:38 - 00120248 _____ (Xiph.org Foundation) C:\Windows\SysWOW64\libvorbisfile.dll 2013-12-28 18:43 - 2013-12-28 18:43 - 00000000 ____D C:\Program Files (x86)\Bethesda Softworks ==================== One Month Modified Files and Folders ======= 2021-10-31 17:57 - 2013-06-07 20:46 - 00689664 _____ (AdminSystem Software Limited) C:\Windows\system32\ANPOP.dll 2014-01-26 08:54 - 2014-01-25 20:24 - 00000000 ____D C:\FRST 2014-01-26 08:54 - 2014-01-25 20:10 - 00000000 ____D C:\Users\Chicken\Desktop\Trojaner-Board Scans 2014-01-26 08:43 - 2014-01-26 08:43 - 00000000 ____D C:\Windows\ERUNT 2014-01-26 08:39 - 2013-11-21 23:11 - 00000000 ____D C:\AdwCleaner 2014-01-26 08:39 - 2013-06-07 15:18 - 01121238 _____ C:\Windows\WindowsUpdate.log 2014-01-26 08:37 - 2013-11-16 13:41 - 00003934 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{5C497AA6-8DA4-4F51-9231-255D2BE41896} 2014-01-26 08:34 - 2013-12-02 15:16 - 00001112 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-26 08:34 - 2013-12-02 15:16 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-26 08:18 - 2013-10-21 22:10 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-26 01:58 - 2009-07-14 05:45 - 00021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-26 01:58 - 2009-07-14 05:45 - 00021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-26 01:51 - 2013-10-23 16:36 - 00003510 _____ C:\Windows\System32\Tasks\AutoKMS 2014-01-26 01:50 - 2013-11-23 20:33 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\ICQ 2014-01-26 01:47 - 2014-01-26 01:47 - 00442624 _____ C:\Windows\Minidump\012614-266746-01.dmp 2014-01-26 01:47 - 2013-12-30 21:01 - 00004393 _____ C:\Windows\setupact.log 2014-01-26 01:47 - 2013-11-24 17:49 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-26 01:47 - 2013-06-28 06:51 - 00000000 ____D C:\Windows\Minidump 2014-01-26 01:47 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-26 01:23 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2014-01-25 22:37 - 2014-01-24 13:02 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\.minecraft 2014-01-25 20:15 - 2013-06-07 15:35 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-25 20:11 - 2014-01-25 20:11 - 00000188 _____ C:\Users\Chicken\defogger_reenable 2014-01-25 20:11 - 2013-06-07 15:18 - 00000000 ____D C:\Users\Chicken 2014-01-25 19:54 - 2014-01-25 18:40 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2014-01-25 19:51 - 2014-01-25 19:51 - 00000000 ____D C:\Users\Chicken\Documents\ProcAlyzer Dumps 2014-01-25 19:48 - 2013-08-05 23:16 - 00000000 ____D C:\Users\DefaultAppPool 2014-01-25 19:40 - 2014-01-24 12:41 - 00000000 ____D C:\Program Files (x86)\GS Supporter 2014-01-25 19:40 - 2014-01-02 20:19 - 00068810 _____ C:\Windows\PFRO.log 2014-01-25 18:49 - 2014-01-25 18:40 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-25 18:41 - 2014-01-25 18:41 - 00001379 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-25 18:41 - 2014-01-25 18:41 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2014-01-25 18:13 - 2014-01-25 18:13 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-25 18:13 - 2013-10-16 10:05 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-25 17:48 - 2013-06-08 19:25 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Notepad++ 2014-01-25 17:48 - 2013-06-08 19:25 - 00000000 ____D C:\Program Files (x86)\Notepad++ 2014-01-25 17:47 - 2014-01-24 20:06 - 00000000 ____D C:\Users\Chicken\AppData\Local\Overwolf 2014-01-25 17:03 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2014-01-24 22:16 - 2013-06-16 07:04 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Skype 2014-01-24 21:45 - 2013-06-07 15:58 - 00000000 ____D C:\Program Files (x86)\Steam 2014-01-24 20:05 - 2014-01-24 13:01 - 00000000 ____D C:\Users\Chicken\Downloads\Mincraft Downlad 2014-01-24 19:11 - 2014-01-24 19:11 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Day 1 Studios 2014-01-24 17:08 - 2014-01-24 17:09 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-24 17:08 - 2014-01-24 17:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-24 17:08 - 2014-01-24 17:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-24 17:08 - 2014-01-24 17:09 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-24 17:08 - 2014-01-24 17:08 - 00000000 ____D C:\Program Files\Java 2014-01-24 12:41 - 2014-01-24 12:41 - 00000000 ____D C:\ProgramData\House Of Soft 2014-01-24 12:41 - 2013-08-08 06:15 - 00000000 ____D C:\ProgramData\InstallMate 2014-01-24 12:40 - 2014-01-24 12:40 - 00320776 _____ (House Of Soft) C:\Users\Chicken\Downloads\minecraftdl_2621.exe 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$ 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Chicken\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\ProgramData\5f3e18278c63fa7b 2014-01-24 12:40 - 2013-06-07 15:24 - 00000000 ____D C:\Users\Chicken\AppData\Local\Google 2014-01-24 12:37 - 2014-01-24 12:37 - 00795225 _____ C:\Users\Chicken\Downloads\OptiFine_1.7.2_HD_U_C2.jar 2014-01-24 12:26 - 2014-01-24 12:26 - 00386383 _____ (hxxp://magiclauncher.com) C:\Users\Chicken\Downloads\MagicLauncher_1.2.5.exe 2014-01-24 12:10 - 2014-01-24 12:10 - 00675988 _____ C:\Users\Chicken\Desktop\Minecraft.exe 2014-01-24 00:28 - 2013-06-08 13:19 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\BitTorrent 2014-01-24 00:26 - 2013-06-07 16:52 - 00000000 ____D C:\Users\Chicken\Downloads\BitTorrent 2014-01-23 22:41 - 2013-07-17 17:59 - 00000000 ____D C:\Program Files (x86)\Hard Disk Sentinel 2014-01-23 19:53 - 2014-01-23 19:53 - 00110274 _____ C:\Users\Chicken\Downloads\TooManyItems2014_01_13_1.7.4.zip 2014-01-23 19:46 - 2014-01-23 19:18 - 00000000 ____D C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010 2014-01-23 19:37 - 2014-01-23 19:37 - 02276799 _____ C:\Users\Chicken\Downloads\mcpatcher-4.3.1_01.exe 2014-01-23 19:30 - 2014-01-23 19:30 - 00000000 ____D C:\Users\Chicken\Downloads\recipebook_1.6.2 2014-01-23 19:29 - 2014-01-23 19:29 - 00007877 _____ C:\Users\Chicken\Downloads\recipebook_1.6.2.zip 2014-01-23 19:28 - 2014-01-23 19:28 - 00375581 _____ C:\Users\Chicken\Downloads\Minecraft-Modder_v2.8.4_de.exe 2014-01-23 19:25 - 2014-01-23 19:25 - 00182824 _____ C:\Users\Chicken\Downloads\modloader_1.6.2.zip 2014-01-23 19:17 - 2014-01-23 19:17 - 02778587 _____ C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010.7z 2014-01-23 15:35 - 2014-01-17 16:45 - 00011229 _____ C:\Users\Chicken\Documents\protokoll AT Januar.xlsx 2014-01-22 23:08 - 2014-01-22 23:08 - 00282775 _____ C:\Users\Chicken\Downloads\YouTube-Unblocker-055.crx 2014-01-22 19:07 - 2014-01-22 19:07 - 01083237 _____ C:\Users\Chicken\Downloads\Darsider II v2.rar 2014-01-22 18:50 - 2014-01-21 21:16 - 00000000 ____D C:\Users\Chicken\Downloads\Darsider II v2 2014-01-21 21:28 - 2014-01-21 21:28 - 27977728 _____ (Coma) C:\Users\Chicken\Downloads\360Revolution.exe 2014-01-21 21:16 - 2014-01-21 21:16 - 00001131 _____ C:\Users\Chicken\Desktop\Ellipse.lnk 2014-01-21 21:16 - 2014-01-21 21:16 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ellipse 2014-01-21 21:16 - 2013-11-21 19:45 - 00000000 ____D C:\Program Files (x86)\MxS Elite 2014-01-21 21:16 - 2013-06-07 16:52 - 00688128 ___SH C:\Users\Chicken\Downloads\Thumbs.db 2014-01-21 21:11 - 2014-01-21 21:11 - 12619064 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.7.exe 2014-01-20 19:25 - 2014-01-20 19:25 - 03123926 _____ C:\Users\Chicken\Downloads\HOMEFRONT_1.0.0.1_+_11_Trainer.rar 2014-01-20 19:22 - 2014-01-20 19:22 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1 (1).rar 2014-01-20 19:09 - 2014-01-20 19:09 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1.rar 2014-01-20 12:08 - 2014-01-20 12:08 - 00000230 _____ C:\Windows\setup.log 2014-01-20 12:07 - 2014-01-20 12:07 - 18232168 _____ (AVM Berlin ) C:\Users\Chicken\Downloads\FRITZ!fax_3.07.04.exe 2014-01-20 00:19 - 2014-01-20 00:19 - 00001234 _____ C:\Users\Chicken\Desktop\HOMEFRONT.exe - Verknüpfung.lnk 2014-01-19 23:54 - 2013-08-08 18:27 - 00000000 ____D C:\Users\Chicken\AppData\Local\SKIDROW 2014-01-19 23:54 - 2013-06-07 16:12 - 00000000 ____D C:\Users\Chicken\Documents\My Games 2014-01-19 23:50 - 2014-01-19 23:45 - 82616123 _____ C:\Users\Chicken\Downloads\Homefront---Update-1-od-SKiDROW.rar 2014-01-19 23:45 - 2014-01-19 23:45 - 00001709 _____ C:\Users\Public\Desktop\Homefront.lnk 2014-01-19 23:27 - 2013-06-07 16:11 - 00000000 ____D C:\Games 2014-01-19 20:36 - 2014-01-19 20:35 - 00017589 _____ C:\Windows\DirectX.log 2014-01-19 19:18 - 2013-06-08 06:34 - 00000000 ____D C:\Users\Chicken\AppData\Local\Skyrim 2014-01-19 19:17 - 2013-06-07 16:12 - 00000000 ____D C:\Users\Chicken\Documents\Nexus Mod Manager 2014-01-19 12:50 - 2014-01-19 12:50 - 00001813 _____ C:\Users\Public\Desktop\Starbound.lnk 2014-01-19 09:33 - 2014-01-19 09:15 - 940623891 _____ C:\Users\Chicken\Downloads\651324152457-sastarbnd.rar 2014-01-19 01:37 - 2013-06-07 16:36 - 00035840 ___SH C:\Users\Chicken\Thumbs.db 2014-01-18 14:27 - 2013-06-07 17:05 - 00000000 ____D C:\Users\Chicken\Downloads\Programme und Anwendungen 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ___RD C:\32788R22FWJFW 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ____D C:\Qoobox 2014-01-18 08:35 - 2014-01-18 08:35 - 05744392 _____ (Auslogics Labs Pty Ltd ) C:\Users\Chicken\Downloads\disk-defrag442-setup.exe 2014-01-18 08:35 - 2014-01-18 08:35 - 00001169 _____ C:\Users\Chicken\Desktop\Auslogics DiskDefrag.lnk 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\ProgramData\Auslogics 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\Program Files (x86)\Auslogics 2014-01-17 16:36 - 2013-11-25 12:10 - 00010809 _____ C:\Users\Chicken\Documents\protokoll AT.xlsx 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\ProgramData\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\Common Files\7-PDF 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\7-PDF 2014-01-17 16:26 - 2014-01-17 16:26 - 07794171 _____ C:\Users\Chicken\Downloads\7PDF_10_0_0_1840.zip 2014-01-16 20:25 - 2014-01-16 20:25 - 00000976 _____ C:\Users\Chicken\Desktop\Assassin's Creed Liberation HD.lnk 2014-01-16 12:58 - 2013-06-16 18:18 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\vlc 2014-01-16 00:26 - 2014-01-16 00:26 - 00000000 ____D C:\Saves 2014-01-16 00:25 - 2014-01-16 00:25 - 00004009 _____ C:\Users\Chicken\Downloads\ACLHD.SKIDROW.Crack.Only.rar 2014-01-16 00:03 - 2014-01-16 00:03 - 00000000 ____D C:\Users\Chicken\Documents\Assassin's Creed Liberation HD 2014-01-15 23:00 - 2014-01-15 23:00 - 00205093 _____ C:\Users\Chicken\Downloads\SC-41571547477.rar 2014-01-15 21:08 - 2013-06-13 20:23 - 00000000 ____D C:\Program Files (x86)\JDownloader 2014-01-15 21:07 - 2014-01-15 21:07 - 00001712 _____ C:\Users\Chicken\Downloads\liberation HD.dlc 2014-01-14 21:40 - 2014-01-14 21:40 - 00000000 ____D C:\Users\Chicken\Downloads\checkdisk130 2014-01-14 21:39 - 2014-01-14 21:39 - 00395487 _____ C:\Users\Chicken\Downloads\checkdisk130.zip 2014-01-14 21:26 - 2014-01-14 21:25 - 03610101 _____ C:\Users\Chicken\Downloads\FORCED Trainer +2 V4.2.1.1.77223.rar 2014-01-14 20:55 - 2014-01-14 20:55 - 00000000 ____D C:\Users\Chicken\AppData\Local\UWebKit 2014-01-14 20:41 - 2014-01-14 20:41 - 00000684 _____ C:\Users\Public\Desktop\FORCED.lnk 2014-01-14 19:45 - 2014-01-14 19:38 - 00000000 ____D C:\Users\Chicken\Downloads\Neuer Ordner 2014-01-13 19:26 - 2013-06-10 12:10 - 00000000 ____D C:\Users\Chicken\AppData\Local\Paint.NET 2014-01-13 12:06 - 2014-01-13 12:06 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Samsung 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Local\Samsung 2014-01-13 12:03 - 2014-01-13 12:03 - 00000000 ____D C:\Users\Chicken\Documents\samsung 2014-01-13 12:02 - 2014-01-13 12:02 - 00002002 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk 2014-01-13 12:02 - 2014-01-13 12:02 - 00001992 _____ C:\Users\Public\Desktop\Samsung Kies.lnk 2014-01-13 11:57 - 2014-01-13 11:53 - 00000000 ____D C:\Program Files (x86)\Samsung 2014-01-13 11:56 - 2014-01-13 11:53 - 00000000 ____D C:\ProgramData\Samsung 2014-01-13 11:54 - 2013-06-07 16:06 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-13 11:50 - 2013-06-07 20:11 - 00000000 ____D C:\Users\Chicken\AppData\Local\Downloaded Installations 2014-01-13 11:48 - 2014-01-13 11:47 - 70015304 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Chicken\Downloads\KiesSetup.exe 2014-01-12 18:50 - 2014-01-12 18:50 - 02403707 _____ C:\Users\Chicken\Downloads\HTC_DesireX_User_Guide_DEU.zip 2014-01-11 20:12 - 2013-06-10 12:08 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Winamp 2014-01-11 18:28 - 2013-06-07 15:19 - 00000000 ____D C:\ProgramData\DriverGenius 2014-01-11 18:24 - 2014-01-11 18:24 - 03585976 _____ C:\Users\Chicken\Downloads\Crack.rar 2014-01-10 21:44 - 2013-12-28 23:34 - 00000000 ____D C:\Users\Chicken\Documents\Steam Screenshots 2014-01-10 16:47 - 2013-06-16 07:04 - 00000000 ____D C:\ProgramData\Skype 2014-01-10 16:46 - 2013-06-16 07:04 - 00000000 ___RD C:\Program Files (x86)\Skype 2014-01-10 16:37 - 2014-01-10 16:37 - 07886712 _____ (Microsoft Corporation) C:\Users\Chicken\Downloads\Xbox360_64Deu.exe 2014-01-10 16:35 - 2013-06-07 15:59 - 00000910 _____ C:\Windows\Cmicnfg3.ini.imi 2014-01-10 16:28 - 2014-01-10 16:28 - 00175593 _____ C:\Users\Chicken\Documents\Unbenannt.wma 2014-01-09 21:05 - 2014-01-09 21:05 - 04700503 _____ C:\Users\Chicken\Downloads\uncutfix the darkness 2.rar 2014-01-09 20:29 - 2013-06-07 15:18 - 00086736 _____ C:\Users\Chicken\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-09 20:27 - 2009-07-14 05:45 - 00344816 _____ C:\Windows\system32\FNTCACHE.DAT 2014-01-09 19:13 - 2013-06-19 06:54 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2014-01-09 19:12 - 2013-06-25 16:34 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\TeamViewer 2014-01-09 19:11 - 2014-01-09 19:11 - 04571480 _____ (TeamViewer) C:\Users\Chicken\Downloads\TeamViewerQS_de.exe 2014-01-09 17:05 - 2014-01-08 21:06 - 00000000 ____D C:\Users\Chicken\Documents\Screenshots 2014-01-08 21:51 - 2014-01-04 16:05 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\GameCompanion 2014-01-08 12:16 - 2014-01-08 12:16 - 00161276 _____ C:\Users\Chicken\Downloads\proxtube_1.2.7.crx 2014-01-08 12:08 - 2014-01-08 12:08 - 00000750 _____ C:\Users\Chicken\Downloads\Digitally Imported - Dubstep.pls 2014-01-08 12:04 - 2014-01-08 12:04 - 00000470 _____ C:\Users\Chicken\Downloads\listen-dsl.asx 2014-01-05 14:56 - 2014-01-05 14:56 - 00001447 _____ C:\Users\Chicken\Desktop\condemned.exe - Verknüpfung.lnk 2014-01-05 13:06 - 2014-01-05 13:06 - 00000000 ____D C:\Users\Public\Documents\Monolith Productions 2014-01-05 10:10 - 2014-01-05 10:09 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Chicken\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-04 22:06 - 2014-01-04 22:06 - 00454259 _____ C:\Users\Chicken\Downloads\biohaz hd.7z 2014-01-04 22:05 - 2014-01-04 22:05 - 00864725 _____ C:\Users\Chicken\Downloads\RESIDENT EVIL HD MOD.7z 2014-01-04 21:43 - 2014-01-04 21:26 - 00000000 ____D C:\Users\Chicken\AppData\Local\cache 2014-01-04 21:26 - 2014-01-04 21:26 - 00000000 _____ C:\Users\Chicken\daemonprocess.txt 2014-01-04 21:25 - 2014-01-04 21:25 - 00165736 _____ () C:\Users\Chicken\Downloads\FreeZipSetup-33H02kO.exe 2014-01-04 21:25 - 2014-01-04 21:25 - 00003254 _____ C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart 2014-01-04 21:24 - 2014-01-04 21:24 - 00167528 _____ () C:\Users\Chicken\Downloads\Game_Setup.exe 2014-01-04 16:05 - 2014-01-04 16:05 - 00309797 _____ C:\Users\Chicken\Downloads\GameCompanion_2_4-16478-2-4.zip 2014-01-04 16:05 - 2014-01-04 16:05 - 00001116 _____ C:\Users\Chicken\Desktop\Game Companion.lnk 2014-01-04 16:05 - 2014-01-04 16:05 - 00001102 _____ C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameCompanion.lnk 2014-01-04 16:01 - 2014-01-04 16:01 - 00352787 _____ C:\Users\Chicken\Downloads\FalloutFullscreenNV_2_2-16001-2-2.7z 2014-01-04 10:12 - 2014-01-04 10:12 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-04 10:10 - 2013-06-07 17:42 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\DAEMON Tools Lite 2014-01-04 10:08 - 2013-07-21 22:15 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\dvdcss 2014-01-03 19:07 - 2014-01-03 19:07 - 12016434 _____ C:\Users\Chicken\Downloads\Sydney Follower 2_0 with Latest Fixes-9320.rar 2014-01-03 08:16 - 2013-06-07 16:29 - 00000000 ____D C:\Users\Chicken\Bank 2014-01-02 18:53 - 2014-01-02 18:53 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-01-02 18:53 - 2014-01-02 18:53 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-02 18:52 - 2013-06-07 15:35 - 01034464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-02 18:52 - 2013-06-07 15:35 - 00422216 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-01-02 18:52 - 2013-06-07 15:35 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-02 18:52 - 2013-06-07 15:35 - 00207904 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-02 18:52 - 2013-06-07 15:35 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-02 18:52 - 2013-06-07 15:33 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-01 22:23 - 2014-01-01 22:23 - 02673327 _____ C:\Users\Chicken\Downloads\Sleeping Dogs v2 Update.zip 2014-01-01 22:18 - 2014-01-01 22:18 - 00533166 _____ C:\Users\Chicken\Downloads\Sleeping_Dogs_V1.0.2.0.rar 2014-01-01 01:07 - 2014-01-01 01:07 - 13159264 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.3.exe 2013-12-31 20:03 - 2010-11-21 07:50 - 00772998 _____ C:\Windows\system32\perfh007.dat 2013-12-31 20:03 - 2010-11-21 07:50 - 00175968 _____ C:\Windows\system32\perfc007.dat 2013-12-31 20:03 - 2009-07-14 06:13 - 01806938 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-31 11:51 - 2013-06-07 20:07 - 00000000 ____D C:\Users\Chicken\Documents\Games 2013-12-30 21:01 - 2013-12-30 21:01 - 00000000 _____ C:\Windows\setuperr.log 2013-12-30 19:17 - 2013-12-30 17:52 - 00010156 _____ C:\Users\Chicken\Desktop\Batman Fahrzeuge.xlsx 2013-12-30 17:40 - 2011-04-07 08:47 - 00000000 ____D C:\Windows\Panther 2013-12-30 16:52 - 2013-12-24 19:13 - 00000000 ____D C:\Program Files (x86)\DEUTSCHLAND SPIELT 2013-12-30 16:33 - 2013-06-07 16:14 - 00000000 ___RD C:\Users\Chicken\porn 2013-12-30 10:05 - 2013-12-30 10:05 - 00322640 _____ (Xiph.Org Foundation) C:\Windows\SysWOW64\vorbis.dll 2013-12-29 10:15 - 2013-12-29 10:14 - 07478509 _____ C:\Users\Chicken\Downloads\Miley Cyrus - Wrecking Ball Chatroulette - Fun-Video auf Chilloutzone.mp4 2013-12-28 18:55 - 2013-12-28 18:55 - 00000000 ___RD C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geräte und Drucker - Verknüpfung 2013-12-28 18:53 - 2013-08-12 13:12 - 00000000 ____D C:\Windows\System32\Tasks\NCH Swift Sound 2013-12-28 18:43 - 2013-12-28 18:43 - 00000000 ____D C:\Program Files (x86)\Bethesda Softworks Some content of TEMP: ==================== C:\Users\Chicken\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-19 05:47 ==================== End Of Log ============================ --- --- --- Hier noch eine adwcleaner log bevor ich mich bei euch gemeldet hatte, da hat er auch noch was gefundenbeim letzten scan waren ja schon keine funde mehr: Code:
ATTFilter # AdwCleaner v3.017 - Bericht erstellt am 25/01/2014 um 17:02:17 # Aktualisiert 12/01/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Chicken - KILLER7 # Gestartet von : C:\Users\Chicken\Downloads\Programme und Anwendungen\Anti Vir\adwcleaner_3.017.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\boost_interprocess Ordner Gelöscht : C:\Program Files (x86)\driver-soft Ordner Gelöscht : C:\Users\Chicken\AppData\Local\torch Datei Gelöscht : C:\Users\Chicken\AppData\Local\Temp\Uninstall.exe ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\secman.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{059EACC2-1ABE-49E8-928D-DC8BD355B7A9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4C836512-BB70-11D2-A5A7-00105A9C91C6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6FDBBC21-E399-4542-B4CE-86326E1F0727} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{7B878FD4-8F19-46DB-94B1-4CABFF80679C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{8BA495EF-6CD5-413A-8AEF-483631B98C4F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{8C71E394-2E6F-452A-AB7D-C17E78307083} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{BADB1512-759C-4792-A18A-DD6BDC4E1991} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DB797690-40E0-11D2-9BD5-0060082AE372} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E54FBC83-9028-45AC-A5B9-D5DA828E59C2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{633AA60B-C339-46C3-951F-047F9822C473} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9156C8F9-B397-4DEF-8AC5-5966221A134A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{A8E5842E-102B-4289-9D57-3B3F5B5E15D3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB797681-40E0-11D2-9BD5-0060082AE372} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE} Schlüssel Gelöscht : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Schlüssel Gelöscht : HKLM\Software\Driver-Soft Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA41BB14-E67B-1653-C57B-5CA99418A866} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Driver Genius_is1 ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16428 -\\ Mozilla Firefox v24.0 (de) [ Datei : C:\Users\Chicken\AppData\Roaming\Mozilla\Firefox\Profiles\utsdst8q.default\prefs.js ] -\\ Google Chrome v32.0.1700.76 [ Datei : C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [2009 octets] - [21/11/2013 23:11:29] AdwCleaner[R1].txt - [2247 octets] - [05/01/2014 10:56:19] AdwCleaner[R2].txt - [3901 octets] - [25/01/2014 17:00:48] AdwCleaner[S0].txt - [1867 octets] - [21/11/2013 23:13:07] AdwCleaner[S1].txt - [2223 octets] - [05/01/2014 10:58:24] AdwCleaner[S2].txt - [3820 octets] - [25/01/2014 17:02:17] ########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [3880 octets] ########## |
27.01.2014, 07:26 | #6 |
/// the machine /// TB-Ausbilder | Windows 7 Chrome unterstrichene Wörter pop ups und ads Revo Uninstaller - Download - Filepony damit Chrome deinstallieren, keine Daten behalten, Reste entfernen lassen, neu installieren. ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ --> Windows 7 Chrome unterstrichene Wörter pop ups und ads |
28.01.2014, 18:58 | #7 |
| Windows 7 Chrome unterstrichene Wörter pop ups und ads Eset online Scanner läuft immer noch schon seit 14 Stunden... der entpackt jedes einzelne Archiv und alle isos... aber mittlerweile keine Probleme mehr in den Browsern. Nach frischer Chrome Installation waren die ganzen Ads und pop ups weg. ... lass jetzt aber trotzdem noch alles fertig scannen kann nur noch etwas dauern. .. Eset Online Scan Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=25754bb302c1664cb9ae44e84892983f # engine=16808 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-01-28 11:44:24 # local_time=2014-01-28 12:44:24 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=774 16777213 85 77 2218975 2227912 0 0 # compatibility_mode=5893 16776573 100 94 201211 142539314 0 0 # scanned=386559 # found=0 # cleaned=0 # scan_time=1852 ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=25754bb302c1664cb9ae44e84892983f # engine=16823 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-01-28 04:58:30 # local_time=2014-01-28 05:58:30 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=774 16777213 85 77 2237821 2246758 0 0 # compatibility_mode=5893 16776573 100 94 220057 142558160 0 0 # scanned=388510 # found=0 # cleaned=0 # scan_time=18704 Mein einziges "Security Programm" was bei mir aktiv läuft ist avast! Free Antivirus... FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-01-2014 02 Ran by Chicken (administrator) on KILLER7 on 28-01-2014 18:46:40 Running from C:\Users\Chicken\Desktop\Trojaner-Board Scans Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\CISVC.EXE (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Sony DADC Austria AG.) C:\Windows\SysWOW64\UAService7.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\inetsrv\w3wp.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [CmPCIaudio] - C:\Windows\Syswow64\CMICNFG3.dll [8765440 2011-04-01] (C-Media Corporation) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11905128 2011-06-28] (Realtek Semiconductor) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1096480 2013-11-29] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2273056 2013-11-29] (NVIDIA Corporation) HKLM-x32\...\Run: [amd_dc_opt] - C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-02] (AVAST Software) HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-12-11] (Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKCU\...\Run: [Nexus] - [x] HKCU\...\Run: [icq] - C:\Program Files (x86)\ICQ7M\ICQ.exe [127040 2013-11-23] (ICQ, LLC.) HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-12-11] (Samsung) HKCU\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup HKCU\...\Run: [Overwolf] - C:\Program Files (x86)\Overwolf\Overwolf.exe -silent MountPoints2: {bbf4de40-cf95-11e2-9356-806e6f6e6963} - E:\SETUP.EXE MountPoints2: {e2ce8b61-d52c-11e2-8e6d-14dae9e2cd19} - L:\Autorun.exe AppInit_DLLs: C:\PROGRA~2\GSSUPP~1\ASSIST~2.DLL => C:\Program Files (x86)\GS Supporter\Assistant_x64.dll [4229120 2014-01-24] () Startup: C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk ShortcutTarget: Stardock ObjectDock.lnk -> C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe (Stardock) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.vcm-gruppe.de HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://syb.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://syb.msn.com SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - DefaultScope {1F2BFC22-475B-475D-A3C4-0AA85133A1B2} URL = SearchScopes: HKCU - {1F2BFC22-475B-475D-A3C4-0AA85133A1B2} URL = SearchScopes: HKCU - {C3E29473-0C5A-47B7-A9A3-E1BD700910DF} URL = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=10447 BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Chicken\AppData\Roaming\Mozilla\Firefox\Profiles\mbcmub80.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1206147.dll (Adobe Systems, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Flash Video Downloader - C:\Users\Chicken\AppData\Roaming\Mozilla\Firefox\Profiles\mbcmub80.default\Extensions\artur.dubovoy@gmail.com [2014-01-28] FF Extension: Adblock Plus - C:\Users\Chicken\AppData\Roaming\Mozilla\Firefox\Profiles\mbcmub80.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-01-28] Chrome: ======= CHR HomePage: hxxp://www.google.de/ig?bav=on.2,or.r_gc.r_pw.r_cp.r_qf.,cf.osb&ech=1&psi=32YVUKz2FIag4gT14YCYDg.1343589972213.3&emsg=NCSR&noj=1&ei=32YVUKz2FIag4gT14YCYDg&hl=de&source=iglk#t_0 CHR Extension: (Google Translate) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2014-01-27] CHR Extension: (Google Docs) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-27] CHR Extension: (Google Drive) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-27] CHR Extension: (YouTube) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-27] CHR Extension: (Adblock Plus) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-01-27] CHR Extension: (Webseiten-Screenshot - Webpage Screenshot) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki [2014-01-27] CHR Extension: (Google-Suche) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-27] CHR Extension: (Fade to Black Skin Aero (by Skarv)) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\cpamdpfecojdedkeoghbgfbhmlcmomlj [2014-01-27] CHR Extension: (Stylish) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2014-01-27] CHR Extension: (AdBlock) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-01-27] CHR Extension: (Eingabe-Test - KeyHero) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkcieoaeooeidmpaopkpjpjfakidlabm [2014-01-27] CHR Extension: (Lock Tab) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnikalcnjojfkpleicbncjmnieimjlfe [2014-01-27] CHR Extension: (Gestures for Google Chrome™) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkfjicglakibpenojifdiepckckakgk [2014-01-27] CHR Extension: (Auto Replay for YouTube™) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\kanbnempkjnhadplbfgdaagijdbdbjeb [2014-01-27] CHR Extension: (Download Master) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcceagdollnkjlogmdckgjakjapmkdjf [2014-01-27] CHR Extension: (DSL speedtest) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\mibbfkdeofpfmkclkgjfnjppdblhpddj [2014-01-27] CHR Extension: (Google Wallet) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-27] CHR Extension: (Feed Intent Viewer) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\oceapojkdgeophkjdijkpbjifdnfimdh [2014-01-27] CHR Extension: (Skipper) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogelglhkekbnacdpabpajccajmdpnpbe [2014-01-27] CHR Extension: (Google Mail) - C:\Users\Chicken\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-27] CHR HKLM-x32\...\Chrome\Extension: [ggkfikfcbnpfoicfjammigpnakpogebh] - "C:\Program Files (x86)\FVD Suite\addons\chrome\fvdext.crx" [2014-01-27] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-02] (AVAST Software) S2 e9f32388; C:\Program Files (x86)\GS Supporter\AssistantSvc.dll [183632 2014-01-24] () R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1370912 2013-11-29] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15128352 2013-11-29] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-06-08] () S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc.) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [106472 2013-09-18] (Razer Inc.) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S4 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [746392 2013-03-20] (Tunngle.net GmbH) S4 TVersityMediaServer; C:\ProgramData\TVersity\Media Server\MediaServer.exe [5283624 2013-03-13] () R2 UserAccess7; C:\Windows\SysWOW64\UAService7.exe [143360 2013-07-17] (Sony DADC Austria AG.) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [13368 2009-07-06] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-02] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-12-04] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-12-04] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1034464 2014-01-02] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422216 2014-01-02] (AVAST Software) R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [79672 2014-01-02] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-02] () R3 cmuda3; C:\Windows\System32\drivers\cmudax3.sys [2491392 2011-03-30] (C-Media Inc) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-06-08] (DT Soft Ltd) R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [128200 2013-04-26] (Qualcomm Atheros Co., Ltd.) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] () R2 NPF; C:\Windows\System32\drivers\npf.sys [35344 2010-06-25] (CACE Technologies, Inc.) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-10-30] (NVIDIA Corporation) S4 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-06-07] (Duplex Secure Ltd.) R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) S3 VASDeviceDrm; C:\Windows\System32\drivers\vasdDev.sys [1454896 2012-03-19] (ShiningMorning Inc.) R2 VBoxDrv; C:\Program Files (x86)\YouWave Android\vb\VBoxDrv.sys [202592 2011-11-20] (Oracle Corporation) S3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [35344 2013-08-31] () S3 AmUStor; system32\drivers\AmUStor.SYS [x] S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-28 18:45 - 2014-01-28 18:45 - 00987425 _____ C:\Users\Chicken\Desktop\SecurityCheck.exe 2014-01-28 17:47 - 2014-01-28 17:47 - 284000256 _____ C:\Users\Chicken\Downloads\Streamcloud Der einfache Weg Dateien zu teilen.mp4 2014-01-28 15:21 - 2014-01-28 17:30 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Mozilla 2014-01-28 15:21 - 2014-01-28 15:21 - 00000000 ____D C:\ProgramData\Mozilla 2014-01-28 15:21 - 2014-01-28 15:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-28 15:21 - 2014-01-28 15:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2014-01-28 15:20 - 2014-01-28 15:20 - 00283096 _____ (Mozilla) C:\Users\Chicken\Downloads\Firefox Setup Stub 26.0.exe 2014-01-28 15:16 - 2014-01-28 15:16 - 00000000 ____D C:\ProgramData\APN 2014-01-28 15:04 - 2014-01-28 15:15 - 00000000 ____D C:\Users\Chicken\Downloads\Neuer Ordner (2) 2014-01-28 12:13 - 2014-01-28 12:13 - 00010949 _____ C:\Users\Chicken\Documents\protokoll AT Januar 27.01 - .xlsx 2014-01-27 16:07 - 2014-01-28 18:18 - 00001112 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-27 16:07 - 2014-01-28 16:18 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-27 16:07 - 2014-01-27 16:13 - 00004108 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-01-27 16:07 - 2014-01-27 16:13 - 00003856 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-01-27 12:05 - 2014-01-27 12:05 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2014-01-26 18:58 - 2014-01-26 18:59 - 05042038 _____ C:\Users\Chicken\Downloads\DeadSpaceSaveEditor.rar 2014-01-26 18:58 - 2014-01-26 18:58 - 00062970 _____ C:\Users\Chicken\Downloads\Dead Space Hacking Tool.rar 2014-01-26 08:43 - 2014-01-26 08:43 - 00000000 ____D C:\Windows\ERUNT 2014-01-26 01:47 - 2014-01-26 01:47 - 00442624 _____ C:\Windows\Minidump\012614-266746-01.dmp 2014-01-25 20:24 - 2014-01-28 18:46 - 00000000 ____D C:\FRST 2014-01-25 20:11 - 2014-01-25 20:11 - 00000188 _____ C:\Users\Chicken\defogger_reenable 2014-01-25 20:10 - 2014-01-28 18:46 - 00000000 ____D C:\Users\Chicken\Desktop\Trojaner-Board Scans 2014-01-25 19:51 - 2014-01-25 19:51 - 00000000 ____D C:\Users\Chicken\Documents\ProcAlyzer Dumps 2014-01-25 19:50 - 2013-11-21 15:56 - 00000895 _____ C:\Windows\system32\Drivers\etc\hosts.20140125-195027.backup 2014-01-25 18:41 - 2014-01-25 18:41 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2014-01-25 18:41 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2014-01-25 18:40 - 2014-01-25 19:54 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2014-01-25 18:40 - 2014-01-25 18:49 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-24 20:06 - 2014-01-25 17:47 - 00000000 ____D C:\Users\Chicken\AppData\Local\Overwolf 2014-01-24 19:11 - 2014-01-24 19:11 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Day 1 Studios 2014-01-24 17:09 - 2014-01-24 17:08 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-24 17:09 - 2014-01-24 17:08 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-24 17:09 - 2014-01-24 17:08 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-24 17:09 - 2014-01-24 17:08 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-24 17:08 - 2014-01-24 17:08 - 00000000 ____D C:\Program Files\Java 2014-01-24 13:02 - 2014-01-25 22:37 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\.minecraft 2014-01-24 13:01 - 2014-01-24 20:05 - 00000000 ____D C:\Users\Chicken\Downloads\Mincraft Downlad 2014-01-24 12:41 - 2014-01-25 19:40 - 00000000 ____D C:\Program Files (x86)\GS Supporter 2014-01-24 12:41 - 2014-01-24 12:41 - 00000000 ____D C:\ProgramData\House Of Soft 2014-01-24 12:40 - 2014-01-24 12:40 - 00320776 _____ (House Of Soft) C:\Users\Chicken\Downloads\minecraftdl_2621.exe 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$ 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Chicken\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\ProgramData\5f3e18278c63fa7b 2014-01-24 12:37 - 2014-01-24 12:37 - 00795225 _____ C:\Users\Chicken\Downloads\OptiFine_1.7.2_HD_U_C2.jar 2014-01-24 12:26 - 2014-01-24 12:26 - 00386383 _____ (hxxp://magiclauncher.com) C:\Users\Chicken\Downloads\MagicLauncher_1.2.5.exe 2014-01-24 12:10 - 2014-01-24 12:10 - 00675988 _____ C:\Users\Chicken\Desktop\Minecraft.exe 2014-01-23 19:53 - 2014-01-23 19:53 - 00110274 _____ C:\Users\Chicken\Downloads\TooManyItems2014_01_13_1.7.4.zip 2014-01-23 19:37 - 2014-01-23 19:37 - 02276799 _____ C:\Users\Chicken\Downloads\mcpatcher-4.3.1_01.exe 2014-01-23 19:30 - 2014-01-23 19:30 - 00000000 ____D C:\Users\Chicken\Downloads\recipebook_1.6.2 2014-01-23 19:29 - 2014-01-23 19:29 - 00007877 _____ C:\Users\Chicken\Downloads\recipebook_1.6.2.zip 2014-01-23 19:28 - 2014-01-23 19:28 - 00375581 _____ C:\Users\Chicken\Downloads\Minecraft-Modder_v2.8.4_de.exe 2014-01-23 19:25 - 2014-01-23 19:25 - 00182824 _____ C:\Users\Chicken\Downloads\modloader_1.6.2.zip 2014-01-23 19:18 - 2014-01-23 19:46 - 00000000 ____D C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010 2014-01-23 19:17 - 2014-01-23 19:17 - 02778587 _____ C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010.7z 2014-01-22 23:08 - 2014-01-22 23:08 - 00282775 _____ C:\Users\Chicken\Downloads\YouTube-Unblocker-055.crx 2014-01-22 19:07 - 2014-01-22 19:07 - 01083237 _____ C:\Users\Chicken\Downloads\Darsider II v2.rar 2014-01-21 21:28 - 2014-01-21 21:28 - 27977728 _____ (Coma) C:\Users\Chicken\Downloads\360Revolution.exe 2014-01-21 21:16 - 2014-01-22 18:50 - 00000000 ____D C:\Users\Chicken\Downloads\Darsider II v2 2014-01-21 21:16 - 2014-01-21 21:16 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ellipse 2014-01-21 21:11 - 2014-01-21 21:11 - 12619064 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.7.exe 2014-01-20 19:25 - 2014-01-20 19:25 - 03123926 _____ C:\Users\Chicken\Downloads\HOMEFRONT_1.0.0.1_+_11_Trainer.rar 2014-01-20 19:22 - 2014-01-20 19:22 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1 (1).rar 2014-01-20 19:09 - 2014-01-20 19:09 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1.rar 2014-01-20 12:08 - 2014-01-20 12:08 - 00000230 _____ C:\Windows\setup.log 2014-01-20 12:08 - 1998-11-17 13:44 - 00328704 _____ (InstallShield Software Corporation ) C:\Windows\IsUn0407.exe 2014-01-20 12:07 - 2014-01-20 12:07 - 18232168 _____ (AVM Berlin ) C:\Users\Chicken\Downloads\FRITZ!fax_3.07.04.exe 2014-01-19 23:45 - 2014-01-19 23:50 - 82616123 _____ C:\Users\Chicken\Downloads\Homefront---Update-1-od-SKiDROW.rar 2014-01-19 20:35 - 2014-01-19 20:36 - 00017589 _____ C:\Windows\DirectX.log 2014-01-19 11:26 - 2013-12-23 22:56 - 00000000 ____D C:\Users\Chicken\Downloads\Starbound.Early.Access-SANTA 2014-01-19 09:15 - 2014-01-19 09:33 - 940623891 _____ C:\Users\Chicken\Downloads\651324152457-sastarbnd.rar 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ___RD C:\32788R22FWJFW 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ____D C:\Qoobox 2014-01-18 08:35 - 2014-01-18 08:35 - 05744392 _____ (Auslogics Labs Pty Ltd ) C:\Users\Chicken\Downloads\disk-defrag442-setup.exe 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\ProgramData\Auslogics 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\Program Files (x86)\Auslogics 2014-01-17 16:45 - 2014-01-28 12:09 - 00011240 _____ C:\Users\Chicken\Documents\protokoll AT Januar 13. - 24.xlsx 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\ProgramData\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\Common Files\7-PDF 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\7-PDF 2014-01-17 16:27 - 2013-09-26 14:35 - 00147456 _____ (7-PDF, Germany - Th. Hodes) C:\Windows\SysWOW64\bzpdfc.dll 2014-01-17 16:27 - 2013-09-01 11:59 - 01103872 _____ C:\Windows\SysWOW64\CBLCtlsU.ocx 2014-01-17 16:27 - 2013-07-13 11:15 - 00805376 _____ C:\Windows\SysWOW64\EditCtlsU.ocx 2014-01-17 16:27 - 2013-07-12 21:57 - 00539648 _____ C:\Windows\SysWOW64\LblCtlsU.ocx 2014-01-17 16:27 - 2013-04-05 12:55 - 00476160 _____ C:\Windows\SysWOW64\TabStripCtlU.ocx 2014-01-17 16:27 - 2013-03-28 22:13 - 00645632 _____ C:\Windows\SysWOW64\BtnCtlsU.ocx 2014-01-17 16:27 - 2013-03-03 13:37 - 01061888 _____ C:\Windows\SysWOW64\ExLvwU.ocx 2014-01-17 16:27 - 2008-10-30 14:35 - 00227840 _____ (Bullzip) C:\Windows\SysWOW64\bzFlRdr.dll 2014-01-17 16:27 - 2008-07-09 14:35 - 00103424 _____ (Bullzip) C:\Windows\SysWOW64\bzDCT.dll 2014-01-17 16:26 - 2014-01-17 16:26 - 07794171 _____ C:\Users\Chicken\Downloads\7PDF_10_0_0_1840.zip 2014-01-16 00:26 - 2014-01-16 00:26 - 00000000 ____D C:\Saves 2014-01-16 00:25 - 2014-01-16 00:25 - 00004009 _____ C:\Users\Chicken\Downloads\ACLHD.SKIDROW.Crack.Only.rar 2014-01-16 00:03 - 2014-01-16 00:03 - 00000000 ____D C:\Users\Chicken\Documents\Assassin's Creed Liberation HD 2014-01-15 23:00 - 2014-01-15 23:00 - 00205093 _____ C:\Users\Chicken\Downloads\SC-41571547477.rar 2014-01-15 21:07 - 2014-01-15 21:07 - 00001712 _____ C:\Users\Chicken\Downloads\liberation HD.dlc 2014-01-14 21:40 - 2014-01-14 21:40 - 00000000 ____D C:\Users\Chicken\Downloads\checkdisk130 2014-01-14 21:39 - 2014-01-14 21:39 - 00395487 _____ C:\Users\Chicken\Downloads\checkdisk130.zip 2014-01-14 21:25 - 2014-01-14 21:26 - 03610101 _____ C:\Users\Chicken\Downloads\FORCED Trainer +2 V4.2.1.1.77223.rar 2014-01-14 20:55 - 2014-01-14 20:55 - 00000000 ____D C:\Users\Chicken\AppData\Local\UWebKit 2014-01-14 19:38 - 2014-01-14 19:45 - 00000000 ____D C:\Users\Chicken\Downloads\Neuer Ordner 2014-01-13 12:06 - 2014-01-13 12:06 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Samsung 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Local\Samsung 2014-01-13 12:03 - 2014-01-13 12:03 - 00000000 ____D C:\Users\Chicken\Documents\samsung 2014-01-13 11:57 - 2013-08-21 05:31 - 00204568 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys 2014-01-13 11:57 - 2013-08-21 05:31 - 00103576 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys 2014-01-13 11:55 - 2013-10-30 12:13 - 04659712 _____ (Dmitry Streblechenko) C:\Windows\SysWOW64\Redemption.dll 2014-01-13 11:54 - 2013-10-30 12:06 - 00821824 _____ (Devguru Co., Ltd.) C:\Windows\SysWOW64\dgderapi.dll 2014-01-13 11:53 - 2014-01-13 11:57 - 00000000 ____D C:\Program Files (x86)\Samsung 2014-01-13 11:53 - 2014-01-13 11:56 - 00000000 ____D C:\ProgramData\Samsung 2014-01-13 11:47 - 2014-01-13 11:48 - 70015304 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Chicken\Downloads\KiesSetup.exe 2014-01-12 18:50 - 2014-01-12 18:50 - 02403707 _____ C:\Users\Chicken\Downloads\HTC_DesireX_User_Guide_DEU.zip 2014-01-11 18:24 - 2014-01-11 18:24 - 03585976 _____ C:\Users\Chicken\Downloads\Crack.rar 2014-01-10 16:37 - 2014-01-10 16:37 - 07886712 _____ (Microsoft Corporation) C:\Users\Chicken\Downloads\Xbox360_64Deu.exe 2014-01-10 16:28 - 2014-01-10 16:28 - 00175593 _____ C:\Users\Chicken\Documents\Unbenannt.wma 2014-01-09 21:05 - 2014-01-09 21:05 - 04700503 _____ C:\Users\Chicken\Downloads\uncutfix the darkness 2.rar 2014-01-09 19:11 - 2014-01-09 19:11 - 04571480 _____ (TeamViewer) C:\Users\Chicken\Downloads\TeamViewerQS_de.exe 2014-01-09 09:47 - 2013-12-19 08:57 - 1968460229 _____ C:\Users\Chicken\Downloads\main.2.com.rockstargames.gtasa.obb 2014-01-08 21:06 - 2014-01-09 17:05 - 00000000 ____D C:\Users\Chicken\Documents\Screenshots 2014-01-08 12:16 - 2014-01-08 12:16 - 00161276 _____ C:\Users\Chicken\Downloads\proxtube_1.2.7.crx 2014-01-08 12:08 - 2014-01-08 12:08 - 00000750 _____ C:\Users\Chicken\Downloads\Digitally Imported - Dubstep.pls 2014-01-08 12:04 - 2014-01-08 12:04 - 00000470 _____ C:\Users\Chicken\Downloads\listen-dsl.asx 2014-01-05 13:06 - 2014-01-05 13:06 - 00000000 ____D C:\Users\Public\Documents\Monolith Productions 2014-01-05 10:09 - 2014-01-05 10:10 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Chicken\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-04 22:06 - 2014-01-04 22:06 - 00454259 _____ C:\Users\Chicken\Downloads\biohaz hd.7z 2014-01-04 22:05 - 2014-01-04 22:05 - 00864725 _____ C:\Users\Chicken\Downloads\RESIDENT EVIL HD MOD.7z 2014-01-04 21:26 - 2014-01-04 21:43 - 00000000 ____D C:\Users\Chicken\AppData\Local\cache 2014-01-04 21:26 - 2014-01-04 21:26 - 00000000 _____ C:\Users\Chicken\daemonprocess.txt 2014-01-04 21:25 - 2014-01-04 21:25 - 00165736 _____ () C:\Users\Chicken\Downloads\FreeZipSetup-33H02kO.exe 2014-01-04 21:25 - 2014-01-04 21:25 - 00003254 _____ C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart 2014-01-04 21:24 - 2014-01-04 21:24 - 00167528 _____ () C:\Users\Chicken\Downloads\Game_Setup.exe 2014-01-04 16:05 - 2014-01-08 21:51 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\GameCompanion 2014-01-04 16:05 - 2014-01-04 16:05 - 00309797 _____ C:\Users\Chicken\Downloads\GameCompanion_2_4-16478-2-4.zip 2014-01-04 16:05 - 2014-01-04 16:05 - 00001102 _____ C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameCompanion.lnk 2014-01-04 16:01 - 2014-01-04 16:01 - 00352787 _____ C:\Users\Chicken\Downloads\FalloutFullscreenNV_2_2-16001-2-2.7z 2014-01-04 10:12 - 2014-01-04 10:12 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-03 19:07 - 2014-01-03 19:07 - 12016434 _____ C:\Users\Chicken\Downloads\Sydney Follower 2_0 with Latest Fixes-9320.rar 2014-01-02 20:19 - 2014-01-25 19:40 - 00068810 _____ C:\Windows\PFRO.log 2014-01-02 18:53 - 2014-01-02 18:53 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-01-01 22:23 - 2014-01-01 22:23 - 02673327 _____ C:\Users\Chicken\Downloads\Sleeping Dogs v2 Update.zip 2014-01-01 22:18 - 2014-01-01 22:18 - 00533166 _____ C:\Users\Chicken\Downloads\Sleeping_Dogs_V1.0.2.0.rar 2014-01-01 01:07 - 2014-01-01 01:07 - 13159264 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.3.exe 2013-12-30 21:01 - 2014-01-27 21:45 - 00004617 _____ C:\Windows\setupact.log 2013-12-30 21:01 - 2013-12-30 21:01 - 00000000 _____ C:\Windows\setuperr.log 2013-12-30 10:05 - 2013-12-30 10:05 - 00322640 _____ (Xiph.Org Foundation) C:\Windows\SysWOW64\vorbis.dll 2013-12-30 09:52 - 2013-09-24 12:14 - 00028952 _____ (Xiph.Org Foundation) C:\Windows\SysWOW64\vorbisfile.dll 2013-12-30 09:52 - 2013-09-24 12:14 - 00028952 _____ (Xiph.Org Foundation) C:\Windows\system32\vorbisfile.dll 2013-12-29 10:14 - 2013-12-29 10:15 - 07478509 _____ C:\Users\Chicken\Downloads\Miley Cyrus - Wrecking Ball Chatroulette - Fun-Video auf Chilloutzone.mp4 ==================== One Month Modified Files and Folders ======= 2021-10-31 17:57 - 2013-06-07 20:46 - 00689664 _____ (AdminSystem Software Limited) C:\Windows\system32\ANPOP.dll 2014-01-28 18:46 - 2014-01-25 20:24 - 00000000 ____D C:\FRST 2014-01-28 18:46 - 2014-01-25 20:10 - 00000000 ____D C:\Users\Chicken\Desktop\Trojaner-Board Scans 2014-01-28 18:45 - 2014-01-28 18:45 - 00987425 _____ C:\Users\Chicken\Desktop\SecurityCheck.exe 2014-01-28 18:18 - 2014-01-27 16:07 - 00001112 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-28 18:18 - 2013-10-21 22:10 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-28 17:47 - 2014-01-28 17:47 - 284000256 _____ C:\Users\Chicken\Downloads\Streamcloud Der einfache Weg Dateien zu teilen.mp4 2014-01-28 17:30 - 2014-01-28 15:21 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Mozilla 2014-01-28 17:30 - 2013-10-07 15:53 - 00000000 ____D C:\Users\Chicken\AppData\Local\Mozilla 2014-01-28 16:18 - 2014-01-27 16:07 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-28 15:21 - 2014-01-28 15:21 - 00000000 ____D C:\ProgramData\Mozilla 2014-01-28 15:21 - 2014-01-28 15:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-28 15:21 - 2014-01-28 15:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2014-01-28 15:21 - 2013-06-07 15:18 - 01156890 _____ C:\Windows\WindowsUpdate.log 2014-01-28 15:20 - 2014-01-28 15:20 - 00283096 _____ (Mozilla) C:\Users\Chicken\Downloads\Firefox Setup Stub 26.0.exe 2014-01-28 15:16 - 2014-01-28 15:16 - 00000000 ____D C:\ProgramData\APN 2014-01-28 15:15 - 2014-01-28 15:04 - 00000000 ____D C:\Users\Chicken\Downloads\Neuer Ordner (2) 2014-01-28 12:13 - 2014-01-28 12:13 - 00010949 _____ C:\Users\Chicken\Documents\protokoll AT Januar 27.01 - .xlsx 2014-01-28 12:09 - 2014-01-17 16:45 - 00011240 _____ C:\Users\Chicken\Documents\protokoll AT Januar 13. - 24.xlsx 2014-01-28 09:57 - 2013-11-16 13:41 - 00003934 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{5C497AA6-8DA4-4F51-9231-255D2BE41896} 2014-01-28 01:57 - 2009-07-14 05:45 - 00021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-28 01:57 - 2009-07-14 05:45 - 00021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-28 01:52 - 2013-10-23 16:36 - 00003508 _____ C:\Windows\System32\Tasks\AutoKMS 2014-01-27 21:45 - 2013-12-30 21:01 - 00004617 _____ C:\Windows\setupact.log 2014-01-27 16:15 - 2013-06-07 20:07 - 00000000 ____D C:\Users\Chicken\Documents\Games 2014-01-27 16:13 - 2014-01-27 16:07 - 00004108 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-01-27 16:13 - 2014-01-27 16:07 - 00003856 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-01-27 16:09 - 2013-08-05 23:16 - 00000000 ____D C:\Users\DefaultAppPool 2014-01-27 16:08 - 2013-06-07 15:24 - 00000000 ____D C:\Users\Chicken\AppData\Local\Google 2014-01-27 16:07 - 2013-06-07 15:24 - 00000000 ____D C:\Users\Chicken\AppData\Local\Deployment 2014-01-27 16:07 - 2013-06-07 15:24 - 00000000 ____D C:\Program Files (x86)\Google 2014-01-27 12:05 - 2014-01-27 12:05 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2014-01-27 12:04 - 2013-09-30 18:37 - 00001780 _____ C:\Users\Chicken\Desktop\e&!v!wz5&iK.txt 2014-01-26 18:59 - 2014-01-26 18:58 - 05042038 _____ C:\Users\Chicken\Downloads\DeadSpaceSaveEditor.rar 2014-01-26 18:58 - 2014-01-26 18:58 - 00062970 _____ C:\Users\Chicken\Downloads\Dead Space Hacking Tool.rar 2014-01-26 08:43 - 2014-01-26 08:43 - 00000000 ____D C:\Windows\ERUNT 2014-01-26 08:39 - 2013-11-21 23:11 - 00000000 ____D C:\AdwCleaner 2014-01-26 01:50 - 2013-11-23 20:33 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\ICQ 2014-01-26 01:47 - 2014-01-26 01:47 - 00442624 _____ C:\Windows\Minidump\012614-266746-01.dmp 2014-01-26 01:47 - 2013-11-24 17:49 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-26 01:47 - 2013-06-28 06:51 - 00000000 ____D C:\Windows\Minidump 2014-01-26 01:47 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-26 01:23 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2014-01-25 22:37 - 2014-01-24 13:02 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\.minecraft 2014-01-25 20:15 - 2013-06-07 15:35 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-25 20:11 - 2014-01-25 20:11 - 00000188 _____ C:\Users\Chicken\defogger_reenable 2014-01-25 20:11 - 2013-06-07 15:18 - 00000000 ____D C:\Users\Chicken 2014-01-25 19:54 - 2014-01-25 18:40 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2014-01-25 19:51 - 2014-01-25 19:51 - 00000000 ____D C:\Users\Chicken\Documents\ProcAlyzer Dumps 2014-01-25 19:40 - 2014-01-24 12:41 - 00000000 ____D C:\Program Files (x86)\GS Supporter 2014-01-25 19:40 - 2014-01-02 20:19 - 00068810 _____ C:\Windows\PFRO.log 2014-01-25 18:49 - 2014-01-25 18:40 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-25 18:41 - 2014-01-25 18:41 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2014-01-25 18:13 - 2013-10-16 10:05 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-25 17:48 - 2013-06-08 19:25 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Notepad++ 2014-01-25 17:48 - 2013-06-08 19:25 - 00000000 ____D C:\Program Files (x86)\Notepad++ 2014-01-25 17:47 - 2014-01-24 20:06 - 00000000 ____D C:\Users\Chicken\AppData\Local\Overwolf 2014-01-25 17:03 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2014-01-24 22:16 - 2013-06-16 07:04 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Skype 2014-01-24 21:45 - 2013-06-07 15:58 - 00000000 ____D C:\Program Files (x86)\Steam 2014-01-24 20:05 - 2014-01-24 13:01 - 00000000 ____D C:\Users\Chicken\Downloads\Mincraft Downlad 2014-01-24 19:11 - 2014-01-24 19:11 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Day 1 Studios 2014-01-24 17:08 - 2014-01-24 17:09 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-24 17:08 - 2014-01-24 17:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-24 17:08 - 2014-01-24 17:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-24 17:08 - 2014-01-24 17:09 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-24 17:08 - 2014-01-24 17:08 - 00000000 ____D C:\Program Files\Java 2014-01-24 12:41 - 2014-01-24 12:41 - 00000000 ____D C:\ProgramData\House Of Soft 2014-01-24 12:41 - 2013-08-08 06:15 - 00000000 ____D C:\ProgramData\InstallMate 2014-01-24 12:40 - 2014-01-24 12:40 - 00320776 _____ (House Of Soft) C:\Users\Chicken\Downloads\minecraftdl_2621.exe 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\HomeGroupUser$ 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Gast 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Chicken\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo 2014-01-24 12:40 - 2014-01-24 12:40 - 00000000 ____D C:\ProgramData\5f3e18278c63fa7b 2014-01-24 12:37 - 2014-01-24 12:37 - 00795225 _____ C:\Users\Chicken\Downloads\OptiFine_1.7.2_HD_U_C2.jar 2014-01-24 12:26 - 2014-01-24 12:26 - 00386383 _____ (hxxp://magiclauncher.com) C:\Users\Chicken\Downloads\MagicLauncher_1.2.5.exe 2014-01-24 12:10 - 2014-01-24 12:10 - 00675988 _____ C:\Users\Chicken\Desktop\Minecraft.exe 2014-01-24 00:28 - 2013-06-08 13:19 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\BitTorrent 2014-01-24 00:26 - 2013-06-07 16:52 - 00000000 ____D C:\Users\Chicken\Downloads\BitTorrent 2014-01-23 22:41 - 2013-07-17 17:59 - 00000000 ____D C:\Program Files (x86)\Hard Disk Sentinel 2014-01-23 19:53 - 2014-01-23 19:53 - 00110274 _____ C:\Users\Chicken\Downloads\TooManyItems2014_01_13_1.7.4.zip 2014-01-23 19:46 - 2014-01-23 19:18 - 00000000 ____D C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010 2014-01-23 19:37 - 2014-01-23 19:37 - 02276799 _____ C:\Users\Chicken\Downloads\mcpatcher-4.3.1_01.exe 2014-01-23 19:30 - 2014-01-23 19:30 - 00000000 ____D C:\Users\Chicken\Downloads\recipebook_1.6.2 2014-01-23 19:29 - 2014-01-23 19:29 - 00007877 _____ C:\Users\Chicken\Downloads\recipebook_1.6.2.zip 2014-01-23 19:28 - 2014-01-23 19:28 - 00375581 _____ C:\Users\Chicken\Downloads\Minecraft-Modder_v2.8.4_de.exe 2014-01-23 19:25 - 2014-01-23 19:25 - 00182824 _____ C:\Users\Chicken\Downloads\modloader_1.6.2.zip 2014-01-23 19:17 - 2014-01-23 19:17 - 02778587 _____ C:\Users\Chicken\Downloads\MineEdit-RELEASE-11212010.7z 2014-01-22 23:08 - 2014-01-22 23:08 - 00282775 _____ C:\Users\Chicken\Downloads\YouTube-Unblocker-055.crx 2014-01-22 19:07 - 2014-01-22 19:07 - 01083237 _____ C:\Users\Chicken\Downloads\Darsider II v2.rar 2014-01-22 18:50 - 2014-01-21 21:16 - 00000000 ____D C:\Users\Chicken\Downloads\Darsider II v2 2014-01-21 21:28 - 2014-01-21 21:28 - 27977728 _____ (Coma) C:\Users\Chicken\Downloads\360Revolution.exe 2014-01-21 21:16 - 2014-01-21 21:16 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ellipse 2014-01-21 21:16 - 2013-11-21 19:45 - 00000000 ____D C:\Program Files (x86)\MxS Elite 2014-01-21 21:16 - 2013-06-07 16:52 - 00688128 ___SH C:\Users\Chicken\Downloads\Thumbs.db 2014-01-21 21:11 - 2014-01-21 21:11 - 12619064 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.7.exe 2014-01-20 19:25 - 2014-01-20 19:25 - 03123926 _____ C:\Users\Chicken\Downloads\HOMEFRONT_1.0.0.1_+_11_Trainer.rar 2014-01-20 19:22 - 2014-01-20 19:22 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1 (1).rar 2014-01-20 19:09 - 2014-01-20 19:09 - 00052727 _____ C:\Users\Chicken\Downloads\rzr-hfu1.rar 2014-01-20 12:08 - 2014-01-20 12:08 - 00000230 _____ C:\Windows\setup.log 2014-01-20 12:07 - 2014-01-20 12:07 - 18232168 _____ (AVM Berlin ) C:\Users\Chicken\Downloads\FRITZ!fax_3.07.04.exe 2014-01-19 23:54 - 2013-08-08 18:27 - 00000000 ____D C:\Users\Chicken\AppData\Local\SKIDROW 2014-01-19 23:54 - 2013-06-07 16:12 - 00000000 ____D C:\Users\Chicken\Documents\My Games 2014-01-19 23:50 - 2014-01-19 23:45 - 82616123 _____ C:\Users\Chicken\Downloads\Homefront---Update-1-od-SKiDROW.rar 2014-01-19 23:27 - 2013-06-07 16:11 - 00000000 ____D C:\Games 2014-01-19 20:36 - 2014-01-19 20:35 - 00017589 _____ C:\Windows\DirectX.log 2014-01-19 19:18 - 2013-06-08 06:34 - 00000000 ____D C:\Users\Chicken\AppData\Local\Skyrim 2014-01-19 19:17 - 2013-06-07 16:12 - 00000000 ____D C:\Users\Chicken\Documents\Nexus Mod Manager 2014-01-19 09:33 - 2014-01-19 09:15 - 940623891 _____ C:\Users\Chicken\Downloads\651324152457-sastarbnd.rar 2014-01-19 01:37 - 2013-06-07 16:36 - 00035840 ___SH C:\Users\Chicken\Thumbs.db 2014-01-18 14:27 - 2013-06-07 17:05 - 00000000 ____D C:\Users\Chicken\Downloads\Programme und Anwendungen 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ___RD C:\32788R22FWJFW 2014-01-18 13:57 - 2014-01-18 13:57 - 00000000 ____D C:\Qoobox 2014-01-18 08:35 - 2014-01-18 08:35 - 05744392 _____ (Auslogics Labs Pty Ltd ) C:\Users\Chicken\Downloads\disk-defrag442-setup.exe 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\ProgramData\Auslogics 2014-01-18 08:35 - 2014-01-18 08:35 - 00000000 ____D C:\Program Files (x86)\Auslogics 2014-01-17 16:36 - 2013-11-25 12:10 - 00010809 _____ C:\Users\Chicken\Documents\protokoll AT.xlsx 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\ProgramData\PDF Writer 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\Common Files\7-PDF 2014-01-17 16:27 - 2014-01-17 16:27 - 00000000 ____D C:\Program Files\7-PDF 2014-01-17 16:26 - 2014-01-17 16:26 - 07794171 _____ C:\Users\Chicken\Downloads\7PDF_10_0_0_1840.zip 2014-01-16 12:58 - 2013-06-16 18:18 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\vlc 2014-01-16 00:26 - 2014-01-16 00:26 - 00000000 ____D C:\Saves 2014-01-16 00:25 - 2014-01-16 00:25 - 00004009 _____ C:\Users\Chicken\Downloads\ACLHD.SKIDROW.Crack.Only.rar 2014-01-16 00:03 - 2014-01-16 00:03 - 00000000 ____D C:\Users\Chicken\Documents\Assassin's Creed Liberation HD 2014-01-15 23:00 - 2014-01-15 23:00 - 00205093 _____ C:\Users\Chicken\Downloads\SC-41571547477.rar 2014-01-15 21:08 - 2013-06-13 20:23 - 00000000 ____D C:\Program Files (x86)\JDownloader 2014-01-15 21:07 - 2014-01-15 21:07 - 00001712 _____ C:\Users\Chicken\Downloads\liberation HD.dlc 2014-01-14 21:40 - 2014-01-14 21:40 - 00000000 ____D C:\Users\Chicken\Downloads\checkdisk130 2014-01-14 21:39 - 2014-01-14 21:39 - 00395487 _____ C:\Users\Chicken\Downloads\checkdisk130.zip 2014-01-14 21:26 - 2014-01-14 21:25 - 03610101 _____ C:\Users\Chicken\Downloads\FORCED Trainer +2 V4.2.1.1.77223.rar 2014-01-14 20:55 - 2014-01-14 20:55 - 00000000 ____D C:\Users\Chicken\AppData\Local\UWebKit 2014-01-14 19:45 - 2014-01-14 19:38 - 00000000 ____D C:\Users\Chicken\Downloads\Neuer Ordner 2014-01-13 19:26 - 2013-06-10 12:10 - 00000000 ____D C:\Users\Chicken\AppData\Local\Paint.NET 2014-01-13 12:06 - 2014-01-13 12:06 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Samsung 2014-01-13 12:04 - 2014-01-13 12:04 - 00000000 ____D C:\Users\Chicken\AppData\Local\Samsung 2014-01-13 12:03 - 2014-01-13 12:03 - 00000000 ____D C:\Users\Chicken\Documents\samsung 2014-01-13 11:57 - 2014-01-13 11:53 - 00000000 ____D C:\Program Files (x86)\Samsung 2014-01-13 11:56 - 2014-01-13 11:53 - 00000000 ____D C:\ProgramData\Samsung 2014-01-13 11:54 - 2013-06-07 16:06 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-13 11:50 - 2013-06-07 20:11 - 00000000 ____D C:\Users\Chicken\AppData\Local\Downloaded Installations 2014-01-13 11:48 - 2014-01-13 11:47 - 70015304 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Chicken\Downloads\KiesSetup.exe 2014-01-12 18:50 - 2014-01-12 18:50 - 02403707 _____ C:\Users\Chicken\Downloads\HTC_DesireX_User_Guide_DEU.zip 2014-01-11 20:12 - 2013-06-10 12:08 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\Winamp 2014-01-11 18:28 - 2013-06-07 15:19 - 00000000 ____D C:\ProgramData\DriverGenius 2014-01-11 18:24 - 2014-01-11 18:24 - 03585976 _____ C:\Users\Chicken\Downloads\Crack.rar 2014-01-10 21:44 - 2013-12-28 23:34 - 00000000 ____D C:\Users\Chicken\Documents\Steam Screenshots 2014-01-10 16:47 - 2013-06-16 07:04 - 00000000 ____D C:\ProgramData\Skype 2014-01-10 16:46 - 2013-06-16 07:04 - 00000000 ___RD C:\Program Files (x86)\Skype 2014-01-10 16:37 - 2014-01-10 16:37 - 07886712 _____ (Microsoft Corporation) C:\Users\Chicken\Downloads\Xbox360_64Deu.exe 2014-01-10 16:35 - 2013-06-07 15:59 - 00000910 _____ C:\Windows\Cmicnfg3.ini.imi 2014-01-10 16:28 - 2014-01-10 16:28 - 00175593 _____ C:\Users\Chicken\Documents\Unbenannt.wma 2014-01-09 21:05 - 2014-01-09 21:05 - 04700503 _____ C:\Users\Chicken\Downloads\uncutfix the darkness 2.rar 2014-01-09 20:29 - 2013-06-07 15:18 - 00086736 _____ C:\Users\Chicken\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-09 20:27 - 2009-07-14 05:45 - 00344816 _____ C:\Windows\system32\FNTCACHE.DAT 2014-01-09 19:13 - 2013-06-19 06:54 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2014-01-09 19:12 - 2013-06-25 16:34 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\TeamViewer 2014-01-09 19:11 - 2014-01-09 19:11 - 04571480 _____ (TeamViewer) C:\Users\Chicken\Downloads\TeamViewerQS_de.exe 2014-01-09 17:05 - 2014-01-08 21:06 - 00000000 ____D C:\Users\Chicken\Documents\Screenshots 2014-01-08 21:51 - 2014-01-04 16:05 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\GameCompanion 2014-01-08 12:16 - 2014-01-08 12:16 - 00161276 _____ C:\Users\Chicken\Downloads\proxtube_1.2.7.crx 2014-01-08 12:08 - 2014-01-08 12:08 - 00000750 _____ C:\Users\Chicken\Downloads\Digitally Imported - Dubstep.pls 2014-01-08 12:04 - 2014-01-08 12:04 - 00000470 _____ C:\Users\Chicken\Downloads\listen-dsl.asx 2014-01-05 13:06 - 2014-01-05 13:06 - 00000000 ____D C:\Users\Public\Documents\Monolith Productions 2014-01-05 10:10 - 2014-01-05 10:09 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Chicken\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-04 22:06 - 2014-01-04 22:06 - 00454259 _____ C:\Users\Chicken\Downloads\biohaz hd.7z 2014-01-04 22:05 - 2014-01-04 22:05 - 00864725 _____ C:\Users\Chicken\Downloads\RESIDENT EVIL HD MOD.7z 2014-01-04 21:43 - 2014-01-04 21:26 - 00000000 ____D C:\Users\Chicken\AppData\Local\cache 2014-01-04 21:26 - 2014-01-04 21:26 - 00000000 _____ C:\Users\Chicken\daemonprocess.txt 2014-01-04 21:25 - 2014-01-04 21:25 - 00165736 _____ () C:\Users\Chicken\Downloads\FreeZipSetup-33H02kO.exe 2014-01-04 21:25 - 2014-01-04 21:25 - 00003254 _____ C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart 2014-01-04 21:24 - 2014-01-04 21:24 - 00167528 _____ () C:\Users\Chicken\Downloads\Game_Setup.exe 2014-01-04 16:05 - 2014-01-04 16:05 - 00309797 _____ C:\Users\Chicken\Downloads\GameCompanion_2_4-16478-2-4.zip 2014-01-04 16:05 - 2014-01-04 16:05 - 00001102 _____ C:\Users\Chicken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameCompanion.lnk 2014-01-04 16:01 - 2014-01-04 16:01 - 00352787 _____ C:\Users\Chicken\Downloads\FalloutFullscreenNV_2_2-16001-2-2.7z 2014-01-04 10:12 - 2014-01-04 10:12 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-04 10:10 - 2013-06-07 17:42 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\DAEMON Tools Lite 2014-01-04 10:08 - 2013-07-21 22:15 - 00000000 ____D C:\Users\Chicken\AppData\Roaming\dvdcss 2014-01-03 19:07 - 2014-01-03 19:07 - 12016434 _____ C:\Users\Chicken\Downloads\Sydney Follower 2_0 with Latest Fixes-9320.rar 2014-01-03 08:16 - 2013-06-07 16:29 - 00000000 ____D C:\Users\Chicken\Bank 2014-01-02 18:53 - 2014-01-02 18:53 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-01-02 18:52 - 2013-06-07 15:35 - 01034464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-02 18:52 - 2013-06-07 15:35 - 00422216 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-01-02 18:52 - 2013-06-07 15:35 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-02 18:52 - 2013-06-07 15:35 - 00207904 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-02 18:52 - 2013-06-07 15:35 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-02 18:52 - 2013-06-07 15:33 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-01 22:23 - 2014-01-01 22:23 - 02673327 _____ C:\Users\Chicken\Downloads\Sleeping Dogs v2 Update.zip 2014-01-01 22:18 - 2014-01-01 22:18 - 00533166 _____ C:\Users\Chicken\Downloads\Sleeping_Dogs_V1.0.2.0.rar 2014-01-01 01:07 - 2014-01-01 01:07 - 13159264 _____ (Daring Development Inc. ) C:\Users\Chicken\Downloads\Horizon.Setup.v2.7.6.3.exe 2013-12-31 20:03 - 2010-11-21 07:50 - 00772998 _____ C:\Windows\system32\perfh007.dat 2013-12-31 20:03 - 2010-11-21 07:50 - 00175968 _____ C:\Windows\system32\perfc007.dat 2013-12-31 20:03 - 2009-07-14 06:13 - 01806938 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-30 21:01 - 2013-12-30 21:01 - 00000000 _____ C:\Windows\setuperr.log 2013-12-30 17:40 - 2011-04-07 08:47 - 00000000 ____D C:\Windows\Panther 2013-12-30 16:52 - 2013-12-24 19:13 - 00000000 ____D C:\Program Files (x86)\DEUTSCHLAND SPIELT 2013-12-30 16:33 - 2013-06-07 16:14 - 00000000 ___RD C:\Users\Chicken\porn 2013-12-30 10:05 - 2013-12-30 10:05 - 00322640 _____ (Xiph.Org Foundation) C:\Windows\SysWOW64\vorbis.dll 2013-12-29 10:15 - 2013-12-29 10:14 - 07478509 _____ C:\Users\Chicken\Downloads\Miley Cyrus - Wrecking Ball Chatroulette - Fun-Video auf Chilloutzone.mp4 Some content of TEMP: ==================== C:\Users\Chicken\AppData\Local\Temp\Quarantine.exe C:\Users\Chicken\AppData\Local\Temp\SCC.dll C:\Users\Chicken\AppData\Local\Temp\SymCCIS.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-19 05:47 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- --- --- --- Wie im Vorherigen Post schon erwähnt ist seit dem ich Chrome neu aufgesetzt hab wieder alles normal. Denke das Problem wurde beseitigt. THX Chickenblue |
29.01.2014, 12:00 | #8 |
/// the machine /// TB-Ausbilder | Windows 7 Chrome unterstrichene Wörter pop ups und ads Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
29.01.2014, 15:50 | #9 |
| Windows 7 Chrome unterstrichene Wörter pop ups und ads Vielen Dank für deine Hilfe! Soweit sind die Punkte mir alle bekannt! Aber Windowsupdate sollte ich wirklich mal langsam aktivieren... War nur immer zu nervig... hat immer dann geladen wenn ichs ned wollte und immer diese ewigen neustarts... Aber besser wäre es wohl! greez chickenblue |
30.01.2014, 14:32 | #10 |
/// the machine /// TB-Ausbilder | Windows 7 Chrome unterstrichene Wörter pop ups und ads Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Windows 7 Chrome unterstrichene Wörter pop ups und ads |
adblock, ads, aktiviert, besser, blue, browser, destroy, irgend, keinerlei, kurzem, laufe, laufen, loszuwerden, maleware, not, pop ups, search, seite, sofort, spybot, spyware, this, ups, werbung, windows, windows 7 |