|
Log-Analyse und Auswertung: Windows 7: Bildschirm flackert spontanWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
10.02.2014, 11:47 | #16 |
/// the machine /// TB-Ausbilder | Windows 7: Bildschirm flackert spontan supi
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
10.02.2014, 18:09 | #17 |
| Windows 7: Bildschirm flackert spontan Was wären den die nächsten Schritte um den Rechner einmal richtig clean zu bekommen und um den Browser sowie den Rechner sicher zu kriegen?
__________________ |
11.02.2014, 16:32 | #18 |
/// the machine /// TB-Ausbilder | Windows 7: Bildschirm flackert spontan Was gibt es denn aktuell noch für Probleme? Poste mal en frisches FRST log bitte.
__________________
__________________ |
11.02.2014, 19:04 | #19 |
| Windows 7: Bildschirm flackert spontanFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-02-2014 01 Ran by Sebastian (administrator) on SEBASTIAN-PC on 11-02-2014 19:02:06 Running from C:\Users\Sebastian\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe () C:\Windows\SysWOW64\ASGT.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-Network.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Abelssoft) C:\Program Files (x86)\CheckDrive\CheckDriveBackgroundGuard.exe () C:\Program Files (x86)\ASRock Utility\AXTU\Bin\AsrXTU.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) B:\Programme\EvernoteClipper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MpCmdRun.exe () C:\Program Files\ASRock Utility\XFast RAM\asrRd.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12936848 2012-07-13] (Realtek Semiconductor) HKLM\...\Run: [THXCfg64] - C:\Windows\system32\THXCfg64.dll [26624 2011-05-13] (Creative Technology Ltd.) HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-10] (NVIDIA Corporation) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284480 2012-05-30] (Intel Corporation) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-05-20] (Intel Corporation) HKLM-x32\...\Run: [THX TruStudio NB Settings] - C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe [909824 2011-05-19] (Creative Technology Ltd) HKLM-x32\...\Run: [UpdReg] - C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [3830224 2013-05-16] (Safer-Networking Ltd.) HKLM-x32\...\Run: [GrooveMonitor] - B:\Microsoft Office 2007\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [BlueStacks Agent] - C:\Program Files (x86)\BlueStacks\HD-Agent.exe [606024 2013-09-19] (BlueStack Systems, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-1661406111-3008424483-1981243900-1000\...\Run: [ASRockXTU] - [X] HKU\S-1-5-21-1661406111-3008424483-1981243900-1000\...\Run: [zASRockInstantBoot] - [X] HKU\S-1-5-21-1661406111-3008424483-1981243900-1000\...\Run: [AdobeBridge] - [X] HKU\S-1-5-21-1661406111-3008424483-1981243900-1000\...\MountPoints2: {14dce171-e1cf-11e2-ae6b-806e6f6e6963} - D:\ASRSetup.exe HKU\S-1-5-21-1661406111-3008424483-1981243900-1000\...\MountPoints2: {3d154eef-e1ab-11e2-a31c-bc5ff4691d2b} - E:\pushinst.exe HKU\S-1-5-21-1661406111-3008424483-1981243900-1000\...\MountPoints2: {920196ce-e1a4-11e2-a329-806e6f6e6963} - D:\cdstart.exe AppInit_DLLs: C:\Windows\system32\appinit_dll.dll,C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-12-19] (NVIDIA Corporation) Startup: C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk ShortcutTarget: EvernoteClipper.lnk -> B:\Programme\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x07495907BB75CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=ASRK SearchScopes: HKCU - {2431F91C-97E3-459e-943C-23D11AA678E2} URL = hxxp://www.google.com/custom?client=pub-3794288947762788&forid=1&channel=5480255188&ie=UTF-8&oe=UTF-8&safe=active&cof=GALT%3A%23008000%3BGL%3A1%3BDIV%3A%23336699%3BVLC%3A663399%3BAH%3Acenter%3BBGC%3AFFFFFF%3BLBGC%3A336699%3BALC%3A0000FF%3BLC%3A0000FF%3BT%3A000000%3BGFNT%3A0000FF%3BGIMP%3A0000FF%3BFORID%3A1&hl=de&q={searchTerms} BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - B:\Microsoft Office 2007\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - B:\Programme\Java\bin\ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - B:\Programme\Java\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Handler-x32: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - B:\Microsoft Office 2007\Office12\GrooveSystemServices.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\q7yju9nt.default FF Homepage: www.google.de FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - B:\Programme\Java\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - B:\Programme\Java\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - B:\Programme\VLC MediaPLayer\VLC\npvlc.dll (VideoLAN) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\q7yju9nt.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-01-21] ==================== Services (Whitelisted) ================= R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () R2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [393032 2013-09-19] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384840 2013-09-19] (BlueStack Systems, Inc.) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation) S3 Microsoft Office Groove Audit Service; B:\Microsoft Office 2007\Office12\GrooveAuditService.exe [64856 2009-02-26] (Microsoft Corporation) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation) R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.) ==================== Drivers (Whitelisted) ==================== R0 AsrRamDisk; C:\Windows\System32\DRIVERS\AsrRamDisk.sys [31016 2012-01-13] (ASRock Inc.) S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-22] (AVM Berlin) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [70984 2013-09-19] (BlueStack Systems) S3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [460800 2010-10-22] (AVM GmbH) S3 ikbevent; C:\Windows\System32\DRIVERS\ikbevent.sys [25536 2012-02-09] () S3 imsevent; C:\Windows\System32\DRIVERS\imsevent.sys [25536 2012-02-09] () S3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [44992 2012-02-09] () R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation) R3 NIWinCDEmu; C:\Windows\System32\DRIVERS\NIWinCDEmu.sys [112408 2014-02-08] () R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) R3 AxtuDrv; \??\C:\Windows\SysWOW64\Drivers\AxtuDrv.sys [X] S1 eaqhwqqe; \??\C:\Windows\system32\drivers\eaqhwqqe.sys [X] S1 qbkgeytn; \??\C:\Windows\system32\drivers\qbkgeytn.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-11 19:02 - 2014-02-11 19:02 - 00015349 _____ () C:\Users\Sebastian\Desktop\FRST.txt 2014-02-11 19:02 - 2014-02-11 19:02 - 00000000 ____D () C:\Users\Sebastian\Desktop\FRST-OlderVersion 2014-02-11 19:00 - 2014-02-11 19:00 - 00003042 _____ () C:\Windows\System32\Tasks\asrRd 2014-02-11 16:48 - 2014-02-11 18:59 - 00000560 _____ () C:\Windows\setupact.log 2014-02-11 16:48 - 2014-02-11 16:48 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-08 12:53 - 2014-02-09 16:28 - 00000000 ____D () C:\Users\Sebastian\Desktop\Hannover nach Oldenburg - Google Maps-Dateien 2014-02-08 11:17 - 2014-02-08 11:17 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-08 10:30 - 2014-02-08 10:30 - 00112408 _____ () C:\Windows\system32\Drivers\NIWinCDEmu.sys 2014-02-08 10:30 - 2014-02-08 10:30 - 00000000 ____D () C:\Program Files (x86)\Native Instruments 2014-02-01 14:44 - 2014-02-01 14:44 - 06324230 _____ () C:\Users\Sebastian\Downloads\Smoke_Brushes_Set_2_by_Falln_Stock.abr 2014-02-01 10:55 - 2014-02-01 10:55 - 00001483 _____ () C:\Users\Sebastian\Desktop\Photoshop Portable - Verknüpfung.lnk 2014-01-31 13:27 - 2014-01-31 13:27 - 02043928 _____ (Resplendence Software Projects Sp. ) C:\Users\Sebastian\Downloads\whocrashedSetup.exe 2014-01-30 18:21 - 2014-01-30 18:21 - 00987425 _____ () C:\Users\Sebastian\Desktop\SecurityCheck(1).exe 2014-01-29 18:55 - 2014-01-29 18:55 - 00000000 ____D () C:\Users\Sebastian\Downloads\FRST-OlderVersion 2014-01-29 18:50 - 2014-01-29 18:50 - 00000000 ____D () C:\Windows\ERUNT 2014-01-29 18:48 - 2014-01-29 18:49 - 01037068 _____ (Thisisu) C:\Users\Sebastian\Desktop\JRT61.exe 2014-01-29 18:44 - 2014-01-29 18:44 - 01166132 _____ () C:\Users\Sebastian\Downloads\adwcleaner.exe 2014-01-28 13:52 - 2014-01-30 18:58 - 00000000 ____D () C:\Users\Sebastian\Desktop\systemscans 2014-01-28 13:22 - 2014-01-28 13:22 - 00380416 _____ () C:\Users\Sebastian\Downloads\qi3ww0yk.exe 2014-01-28 13:21 - 2014-01-28 13:21 - 00026916 _____ () C:\Users\Sebastian\Downloads\Addition.txt 2014-01-28 13:20 - 2014-02-11 19:02 - 00000000 ____D () C:\FRST 2014-01-28 13:20 - 2014-01-29 18:56 - 00039732 _____ () C:\Users\Sebastian\Downloads\FRST.txt 2014-01-28 13:19 - 2014-02-11 19:02 - 02151424 _____ (Farbar) C:\Users\Sebastian\Desktop\FRST64.exe 2014-01-28 13:10 - 2014-01-28 13:10 - 00011033 _____ () C:\Users\Sebastian\Downloads\hijackthis.log 2014-01-28 13:00 - 2014-01-28 13:00 - 00388608 _____ (Trend Micro Inc.) C:\Users\Sebastian\Downloads\HijackThis.exe 2014-01-28 12:57 - 2014-01-28 12:57 - 00602112 _____ (OldTimer Tools) C:\Users\Sebastian\Desktop\OTL.exe 2014-01-28 12:52 - 2014-01-28 12:52 - 03794432 _____ () C:\Users\Sebastian\Downloads\RogueKiller(1).exe 2014-01-27 23:20 - 2014-01-27 23:20 - 03792384 _____ () C:\Users\Sebastian\Downloads\RogueKiller.exe 2014-01-27 23:19 - 2014-01-29 18:45 - 00000000 ____D () C:\AdwCleaner 2014-01-27 23:18 - 2014-01-27 23:18 - 00987425 _____ () C:\Users\Sebastian\Downloads\SecurityCheck.exe 2014-01-27 19:03 - 2014-01-27 19:03 - 00000212 _____ () C:\Users\Sebastian\Desktop\Neverwinter.url 2014-01-23 17:59 - 2014-01-23 17:59 - 00000377 _____ () C:\Windows\wininit.ini 2014-01-23 14:21 - 2014-02-11 17:07 - 01375353 _____ () C:\Windows\WindowsUpdate.log 2014-01-23 12:12 - 2014-01-23 12:12 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\Malwarebytes 2014-01-23 12:12 - 2014-01-23 12:12 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-01-23 12:11 - 2014-01-23 12:11 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Sebastian\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-23 09:14 - 2014-02-11 13:21 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-23 09:14 - 2014-02-06 10:21 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-23 09:14 - 2014-02-06 10:21 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-23 09:14 - 2014-02-06 10:21 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-23 09:14 - 2014-01-23 09:14 - 00000000 ____D () C:\Windows\system32\Macromed 2014-01-23 09:14 - 2014-01-23 09:14 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\Macromedia 2014-01-21 23:39 - 2014-01-21 23:39 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\Mozilla 2014-01-21 23:39 - 2014-01-21 23:39 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\Mozilla 2014-01-21 23:37 - 2014-02-08 11:51 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-21 23:37 - 2014-01-21 23:37 - 00001157 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-01-21 23:37 - 2014-01-21 23:37 - 00000000 ____D () C:\ProgramData\Mozilla 2014-01-21 23:34 - 2014-01-21 23:36 - 23867560 _____ (Mozilla) C:\Users\Sebastian\Downloads\Firefox_Setup_26.0.exe 2014-01-19 12:52 - 2014-01-28 14:37 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\NVIDIA 2014-01-19 12:47 - 2014-01-23 12:40 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\VOPackage 2014-01-19 12:47 - 2014-01-19 12:47 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\cache 2014-01-19 12:47 - 2014-01-19 12:47 - 00000000 ____D () C:\Users\Sebastian\.android 2014-01-19 12:47 - 2014-01-19 12:47 - 00000000 _____ () C:\Users\Sebastian\daemonprocess.txt 2014-01-19 12:36 - 2014-01-19 12:36 - 00001381 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-01-19 12:36 - 2014-01-19 12:36 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\NVIDIA Corporation 2014-01-19 12:36 - 2013-12-10 03:15 - 00982232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-01-19 12:36 - 2013-12-10 03:14 - 01100248 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-01-19 12:35 - 2014-01-19 12:36 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\NVIDIA 2014-01-19 12:35 - 2014-01-19 12:35 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-01-19 12:34 - 2014-01-19 12:36 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-19 12:33 - 2014-01-19 12:36 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-19 12:33 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 15230352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-19 12:33 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 02698272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 00357152 _____ () C:\Windows\system32\NvIFROpenGL.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 00314656 _____ () C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-19 12:33 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-19 12:33 - 2013-12-05 09:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-01-19 12:33 - 2013-12-05 09:42 - 00035104 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-01-19 12:33 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-01-19 12:33 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-19 12:33 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-19 12:31 - 2014-01-19 12:36 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-19 12:31 - 2014-01-19 12:31 - 00000000 ____D () C:\NVIDIA 2014-01-19 12:26 - 2014-02-11 18:59 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-01-19 12:17 - 2013-12-19 19:53 - 06671648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-01-19 12:17 - 2013-12-19 19:53 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-01-19 12:17 - 2013-12-19 19:53 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-01-19 12:17 - 2013-12-19 19:53 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-01-19 12:17 - 2013-12-19 19:53 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-01-19 12:17 - 2013-12-19 19:53 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-01-19 12:17 - 2013-12-19 06:01 - 03539040 _____ () C:\Windows\system32\nvcoproc.bin 2014-01-19 10:22 - 2014-01-19 10:27 - 262041840 _____ (NVIDIA Corporation) C:\Users\Sebastian\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-01-19 10:22 - 2014-01-19 10:22 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Driver Cleaner Pro 2014-01-19 10:22 - 2014-01-19 10:22 - 00000000 ____D () C:\Program Files (x86)\Driver Cleaner Pro 2014-01-19 10:21 - 2014-01-19 10:21 - 02817354 _____ () C:\Users\Sebastian\Downloads\DCProSetup_15.zip 2014-01-19 01:03 - 2014-01-19 01:03 - 00347816 _____ (Microsoft Corporation) C:\Users\Sebastian\Downloads\MicrosoftFixit.Aero.Run.exe 2014-01-18 15:46 - 2014-01-18 15:46 - 00000000 ____D () C:\ProgramData\CheckPoint 2014-01-18 15:45 - 2014-01-18 15:45 - 02465360 _____ (Check Point Software Technologies LTD) C:\Users\Sebastian\Downloads\zaSetupWeb_120_104_000.exe 2014-01-15 19:36 - 2014-01-15 19:36 - 00005292 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-15 08:27 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-15 08:27 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-15 08:27 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-15 08:27 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-15 08:27 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-15 08:27 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-15 08:27 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-15 08:27 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-15 08:27 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys ==================== One Month Modified Files and Folders ======= 2014-02-11 19:02 - 2014-02-11 19:02 - 00015349 _____ () C:\Users\Sebastian\Desktop\FRST.txt 2014-02-11 19:02 - 2014-02-11 19:02 - 00000000 ____D () C:\Users\Sebastian\Desktop\FRST-OlderVersion 2014-02-11 19:02 - 2014-01-28 13:20 - 00000000 ____D () C:\FRST 2014-02-11 19:02 - 2014-01-28 13:19 - 02151424 _____ (Farbar) C:\Users\Sebastian\Desktop\FRST64.exe 2014-02-11 19:00 - 2014-02-11 19:00 - 00003042 _____ () C:\Windows\System32\Tasks\asrRd 2014-02-11 19:00 - 2013-07-02 18:29 - 00002976 _____ () C:\Windows\System32\Tasks\AsrXTU 2014-02-11 18:59 - 2014-02-11 16:48 - 00000560 _____ () C:\Windows\setupact.log 2014-02-11 18:59 - 2014-01-19 12:26 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-11 18:59 - 2013-09-20 20:14 - 00000296 _____ () C:\Windows\Tasks\CheckDriveBackgroundGuard.job 2014-02-11 18:59 - 2013-06-30 17:13 - 00000828 _____ () C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job 2014-02-11 18:59 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-11 17:07 - 2014-01-23 14:21 - 01375353 _____ () C:\Windows\WindowsUpdate.log 2014-02-11 16:55 - 2009-07-14 05:45 - 00021856 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-11 16:55 - 2009-07-14 05:45 - 00021856 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-11 16:54 - 2011-04-12 08:43 - 00699416 _____ () C:\Windows\system32\perfh007.dat 2014-02-11 16:54 - 2011-04-12 08:43 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-02-11 16:54 - 2009-07-14 06:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-11 16:48 - 2014-02-11 16:48 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-11 13:21 - 2014-01-23 09:14 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-11 13:03 - 2013-06-30 17:13 - 00000830 _____ () C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job 2014-02-11 12:57 - 2013-07-04 08:46 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\vlc 2014-02-10 08:57 - 2013-07-04 08:45 - 00000763 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-02-09 16:28 - 2014-02-08 12:53 - 00000000 ____D () C:\Users\Sebastian\Desktop\Hannover nach Oldenburg - Google Maps-Dateien 2014-02-08 11:51 - 2014-01-21 23:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-08 11:49 - 2013-10-29 14:01 - 00000000 ____D () C:\Users\Sebastian\Desktop\Assassins Creed - Black Flag 2014-02-08 11:17 - 2014-02-08 11:17 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-08 10:30 - 2014-02-08 10:30 - 00112408 _____ () C:\Windows\system32\Drivers\NIWinCDEmu.sys 2014-02-08 10:30 - 2014-02-08 10:30 - 00000000 ____D () C:\Program Files (x86)\Native Instruments 2014-02-06 10:21 - 2014-01-23 09:14 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-06 10:21 - 2014-01-23 09:14 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-06 10:21 - 2014-01-23 09:14 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-04 00:27 - 2013-07-05 21:32 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\Skype 2014-02-03 20:03 - 2013-07-05 21:32 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-02-03 20:03 - 2013-07-05 21:32 - 00000000 ____D () C:\ProgramData\Skype 2014-02-01 14:44 - 2014-02-01 14:44 - 06324230 _____ () C:\Users\Sebastian\Downloads\Smoke_Brushes_Set_2_by_Falln_Stock.abr 2014-02-01 10:55 - 2014-02-01 10:55 - 00001483 _____ () C:\Users\Sebastian\Desktop\Photoshop Portable - Verknüpfung.lnk 2014-01-31 13:27 - 2014-01-31 13:27 - 02043928 _____ (Resplendence Software Projects Sp. ) C:\Users\Sebastian\Downloads\whocrashedSetup.exe 2014-01-31 13:12 - 2013-07-05 21:30 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\Adobe 2014-01-30 18:58 - 2014-01-28 13:52 - 00000000 ____D () C:\Users\Sebastian\Desktop\systemscans 2014-01-30 18:21 - 2014-01-30 18:21 - 00987425 _____ () C:\Users\Sebastian\Desktop\SecurityCheck(1).exe 2014-01-29 18:56 - 2014-01-28 13:20 - 00039732 _____ () C:\Users\Sebastian\Downloads\FRST.txt 2014-01-29 18:55 - 2014-01-29 18:55 - 00000000 ____D () C:\Users\Sebastian\Downloads\FRST-OlderVersion 2014-01-29 18:50 - 2014-01-29 18:50 - 00000000 ____D () C:\Windows\ERUNT 2014-01-29 18:49 - 2014-01-29 18:48 - 01037068 _____ (Thisisu) C:\Users\Sebastian\Desktop\JRT61.exe 2014-01-29 18:45 - 2014-01-27 23:19 - 00000000 ____D () C:\AdwCleaner 2014-01-29 18:44 - 2014-01-29 18:44 - 01166132 _____ () C:\Users\Sebastian\Downloads\adwcleaner.exe 2014-01-28 14:37 - 2014-01-19 12:52 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\NVIDIA 2014-01-28 13:22 - 2014-01-28 13:22 - 00380416 _____ () C:\Users\Sebastian\Downloads\qi3ww0yk.exe 2014-01-28 13:21 - 2014-01-28 13:21 - 00026916 _____ () C:\Users\Sebastian\Downloads\Addition.txt 2014-01-28 13:10 - 2014-01-28 13:10 - 00011033 _____ () C:\Users\Sebastian\Downloads\hijackthis.log 2014-01-28 13:08 - 2013-06-30 17:02 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\VirtualStore 2014-01-28 13:00 - 2014-01-28 13:00 - 00388608 _____ (Trend Micro Inc.) C:\Users\Sebastian\Downloads\HijackThis.exe 2014-01-28 12:57 - 2014-01-28 12:57 - 00602112 _____ (OldTimer Tools) C:\Users\Sebastian\Desktop\OTL.exe 2014-01-28 12:52 - 2014-01-28 12:52 - 03794432 _____ () C:\Users\Sebastian\Downloads\RogueKiller(1).exe 2014-01-27 23:24 - 2013-06-30 17:03 - 00001003 _____ () C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-27 23:20 - 2014-01-27 23:20 - 03792384 _____ () C:\Users\Sebastian\Downloads\RogueKiller.exe 2014-01-27 23:18 - 2014-01-27 23:18 - 00987425 _____ () C:\Users\Sebastian\Downloads\SecurityCheck.exe 2014-01-27 22:59 - 2013-07-01 17:47 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Daedalic Entertainment 2014-01-27 22:24 - 2013-08-20 17:37 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\foobar2000 2014-01-27 22:24 - 2013-07-30 18:43 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\.minecraft 2014-01-27 19:03 - 2014-01-27 19:03 - 00000212 _____ () C:\Users\Sebastian\Desktop\Neverwinter.url 2014-01-27 00:21 - 2013-06-30 17:16 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-01-27 00:16 - 2013-06-30 17:16 - 00000000 ____D () C:\ProgramData\Adobe 2014-01-27 00:14 - 2013-06-30 17:16 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\Adobe 2014-01-25 08:48 - 2009-07-14 06:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-01-23 17:59 - 2014-01-23 17:59 - 00000377 _____ () C:\Windows\wininit.ini 2014-01-23 17:59 - 2013-07-01 14:57 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-01-23 16:59 - 2013-07-01 14:57 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-23 12:40 - 2014-01-19 12:47 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\VOPackage 2014-01-23 12:12 - 2014-01-23 12:12 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\Malwarebytes 2014-01-23 12:12 - 2014-01-23 12:12 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-01-23 12:11 - 2014-01-23 12:11 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Sebastian\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-23 09:14 - 2014-01-23 09:14 - 00000000 ____D () C:\Windows\system32\Macromed 2014-01-23 09:14 - 2014-01-23 09:14 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\Macromedia 2014-01-21 23:39 - 2014-01-21 23:39 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\Mozilla 2014-01-21 23:39 - 2014-01-21 23:39 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\Mozilla 2014-01-21 23:38 - 2013-06-30 21:06 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\Google 2014-01-21 23:38 - 2013-06-30 21:06 - 00000000 ____D () C:\Program Files (x86)\Google 2014-01-21 23:37 - 2014-01-21 23:37 - 00001157 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-01-21 23:37 - 2014-01-21 23:37 - 00000000 ____D () C:\ProgramData\Mozilla 2014-01-21 23:36 - 2014-01-21 23:34 - 23867560 _____ (Mozilla) C:\Users\Sebastian\Downloads\Firefox_Setup_26.0.exe 2014-01-19 12:49 - 2013-06-30 17:02 - 00000000 ___RD () C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-19 12:47 - 2014-01-19 12:47 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\cache 2014-01-19 12:47 - 2014-01-19 12:47 - 00000000 ____D () C:\Users\Sebastian\.android 2014-01-19 12:47 - 2014-01-19 12:47 - 00000000 _____ () C:\Users\Sebastian\daemonprocess.txt 2014-01-19 12:47 - 2013-06-30 17:02 - 00000000 ____D () C:\Users\Sebastian 2014-01-19 12:36 - 2014-01-19 12:36 - 00001381 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-01-19 12:36 - 2014-01-19 12:36 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\NVIDIA Corporation 2014-01-19 12:36 - 2014-01-19 12:35 - 00000000 ____D () C:\Users\Sebastian\AppData\Local\NVIDIA 2014-01-19 12:36 - 2014-01-19 12:34 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-19 12:36 - 2014-01-19 12:33 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-19 12:36 - 2014-01-19 12:31 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-19 12:35 - 2014-01-19 12:35 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-01-19 12:31 - 2014-01-19 12:31 - 00000000 ____D () C:\NVIDIA 2014-01-19 12:17 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-01-19 10:27 - 2014-01-19 10:22 - 262041840 _____ (NVIDIA Corporation) C:\Users\Sebastian\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-01-19 10:22 - 2014-01-19 10:22 - 00000000 ____D () C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Driver Cleaner Pro 2014-01-19 10:22 - 2014-01-19 10:22 - 00000000 ____D () C:\Program Files (x86)\Driver Cleaner Pro 2014-01-19 10:21 - 2014-01-19 10:21 - 02817354 _____ () C:\Users\Sebastian\Downloads\DCProSetup_15.zip 2014-01-19 08:33 - 2010-11-21 04:27 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-01-19 01:03 - 2014-01-19 01:03 - 00347816 _____ (Microsoft Corporation) C:\Users\Sebastian\Downloads\MicrosoftFixit.Aero.Run.exe 2014-01-18 16:09 - 2013-07-05 21:32 - 00002547 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-01-18 15:46 - 2014-01-18 15:46 - 00000000 ____D () C:\ProgramData\CheckPoint 2014-01-18 15:45 - 2014-01-18 15:45 - 02465360 _____ (Check Point Software Technologies LTD) C:\Users\Sebastian\Downloads\zaSetupWeb_120_104_000.exe 2014-01-15 19:48 - 2013-10-21 07:55 - 00000000 ____D () C:\ProgramData\Oracle 2014-01-15 19:36 - 2014-01-15 19:36 - 00005292 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-15 18:51 - 2009-07-14 05:45 - 04978136 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-01-15 08:56 - 2013-07-01 15:33 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-01-15 08:55 - 2013-07-18 09:42 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-15 08:54 - 2013-07-04 08:30 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-09 16:46 ==================== End Of Log ============================ Bitte sehr. |
12.02.2014, 17:49 | #20 |
/// the machine /// TB-Ausbilder | Windows 7: Bildschirm flackert spontan meine Frage?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
12.02.2014, 18:48 | #21 |
| Windows 7: Bildschirm flackert spontan Achso Tschuldigung! Ganz vergessen! Eigentlich keine mehr! Mir geht es nur darum den Rechner komplett abzusichern (Browser,Virenprogramme etc.). Habe schon verschiedene Programme ausprobiert, weiss aber nicht welche etwas bringen und von welchen man die Finger lassen sollte! Und weil der Rechner noch recht neu ist und ich beruflich drauf angewiesen bin, wollte ich den einmal komplett sicher haben. Was kannst du mir den Empfehlen? Browsertechnisch hatte ich eigendlich immer Chrome, bin dann aber auf Firefox umgeschwenkt weil Chrome bei mir anfing rumzuspinnen. Ich würde aber eigendlich wieder gerne auf Chrome zurück kommen, da der am sichersten sein soll. Beste Grüße Sebi |
13.02.2014, 21:24 | #22 |
/// the machine /// TB-Ausbilder | Windows 7: Bildschirm flackert spontan Chrome ist nicht am sichersten. Chrome und FF sind gleich auf. Am Sichersten (aber trotzdem blöd) ist IE. Nutz in FF oder Chrome nen Adblocker, dann passt das schon. Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
13.02.2014, 23:13 | #23 |
| Windows 7: Bildschirm flackert spontan Danke! Damit hast du mir super geholfen! Ich danke Dir :-) Jetzt kann das Thema geschlossen werden! |
14.02.2014, 17:37 | #24 |
/// the machine /// TB-Ausbilder | Windows 7: Bildschirm flackert spontan Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |