|
Log-Analyse und Auswertung: Windows 7: Festplatte füllt sich von selbstWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
29.01.2014, 22:50 | #1 |
| Windows 7: Festplatte füllt sich von selbst Hallo Leute, also erst mal das Wichtige ich hab ein riesen Problem, meine Festplatte füllt sich von alleine (um die 0,2 Gb (manchmal auch 0,1 Gb) alle 5 min oder 10 min). Es wäre schön wenn ich Hilfe kriegen würde da ich schon kein Speicherplatz mehr habe xD meine Festplatte ist in zwei aufgeteilt wurden, nur die C: Festplatte ist betroffen der andere Teil füllt sich nicht. Ich habe ein scan mit FRST64 gemacht (ich hab auch den log mit den Addition.txt auch als download in rar verpackt) aber ich hab keine Ahnung was ich damit machen soll also hoffe ich ihr könnt mir helfen. Wenn ich irgendwelche anderen scans machen soll werde ich es natürlich machen Noch was über mich Ich hoffe es ist kein Problem das ich nach Hilfe frage weil ich schon mehrere solcher Posts auf Trojaner Board gesehen habe. Ich habe sehr wenig Erfahrung mit Viren, Trojaner usw. und ich habe gehofft es gäbe eine Lösung ohne meine Festplatte zu formatieren. Ach ja und ich bin neu, ich hoffe ihr könnt mir verzeihen wenn ich Sachen nicht so schnell verstehe oder falsch mache. FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-01-2014 01 Ran by Artur (administrator) on ARTUR-PC on 29-01-2014 22:40:32 Running from C:\Users\Artur\Desktop Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe () C:\Program Files (x86)\RocketDock\RocketDock.exe ( ) C:\Windows\Temp\mrt7F0E.tmp\stdrt.exe (Valve Corporation) D:\games\Steam\Steam.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Logitech Inc.) C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe (NETGEAR) C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] - "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1179576 2014-01-21] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-01-21] (NVIDIA Corporation) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4767304 2013-03-07] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [amd_dc_opt] - C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD) HKLM-x32\...\Run: [BCSSync] - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3813200 2014-01-23] (LogMeIn Inc.) HKCU\...\Run: [NETGEARGenie] - C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe [1041736 2012-10-16] () HKCU\...\Run: [RocketDock] - C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] () HKCU\...\Run: [Steam] - D:\games\Steam\steam.exe [1815976 2014-01-27] (Valve Corporation) MountPoints2: {196d3057-941e-11e2-b340-f84a0fc85bec} - K:\PsychoLauncher.exe MountPoints2: {7013adca-9418-11e2-bf95-806e6f6e6963} - E:\Autorun.exe HKU\Default\...\Run: [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun HKU\Default User\...\Run: [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun HKU\DefaultAppPool\...\Run: [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun IFEO\rjatydimofu.exe: [Debugger] tasklist.exe Startup: C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\zzlib.lnk ShortcutTarget: zzlib.lnk -> C:\Program Files (x86)\Valve\platform\zzlib.exe () ==================== Internet (Whitelisted) ==================== SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO: avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll No File BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll" No File Toolbar: HKLM-x32 - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Chrome: ======= CHR HomePage: hxxp://feed.snap.do/?publisher=SMTM&dpid=SMTM&co=DE&userid=0b2dc656-ab00-42d3-9e2b-81f42689830f&searchtype=hp CHR Extension: (Google Drive) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-23] CHR Extension: (YouTube) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-23] CHR Extension: (Adblock Plus) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-11-23] CHR Extension: (Google-Suche) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-23] CHR Extension: (Grey With Dark Blue Highlight Chrome Theme) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\gllabpbebalomehiffcgeaimmeecikec [2013-11-23] CHR Extension: (avast! WebRep) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda [2013-11-24] CHR Extension: (Google Wallet) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-23] CHR Extension: (Google Mail) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-23] CHR HKLM-x32\...\Chrome\Extension: [fhmbbigfkgcficoehkhadjbokhhaijea] - C:\Program Files (x86)\LyricsPlug\Chrome.crx [2013-11-23] CHR HKLM-x32\...\Chrome\Extension: [icmlaeflemplmjndnaapfdbbnpncnbda] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2013-03-24] ==================== Services (Whitelisted) ================= S2 Adobe Licensing Console; C:\Windows\SysWOW64\lnsecsl.exe [905070 2013-03-24] ( ) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-07] (AVAST Software) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-12-13] (LogMeIn, Inc.) R2 NETGEARGenieDaemon; C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe [231752 2012-09-25] (NETGEAR) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4694056 2013-03-14] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-01-21] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [16939296 2014-01-21] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-12-08] () R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation) S2 TuneUp.UtilitiesSvc; "C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe" [x] ==================== Drivers (Whitelisted) ==================== R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-03-07] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-03-07] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [70992 2013-03-07] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-03-07] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1025808 2013-03-07] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [377920 2013-03-07] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [68920 2013-03-07] (AVAST Software) S3 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [178624 2013-03-07] () R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-12-11] (Disc Soft Ltd) R3 LVPr2M64; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] () S3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] () R3 NIWinCDEmu; C:\Windows\System32\DRIVERS\NIWinCDEmu.sys [111696 2013-06-08] () R2 NPF; C:\Windows\system32\drivers\npf.sys [35344 2013-04-26] (CACE Technologies, Inc.) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-27] (NVIDIA Corporation) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2013-12-11] (Duplex Secure Ltd.) S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-10-16] (Anchorfree Inc.) U3 aj3vhejc; C:\Windows\System32\Drivers\aj3vhejc.sys [0 ] (Microsoft Corporation) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] U0 Partizan; system32\drivers\Partizan.sys [x] S3 TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [x] U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [x] S3 xhunter1; \??\C:\Windows\xhunter1.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-29 22:40 - 2014-01-29 22:40 - 00013699 _____ C:\Users\Artur\Desktop\FRST.txt 2014-01-29 22:39 - 2014-01-29 22:39 - 00000000 ____D C:\Users\Artur\Desktop\FRST-OlderVersion 2014-01-29 22:31 - 2014-01-29 22:41 - 00054666 _____ C:\Windows\SysWOW64\key.dat 2014-01-27 17:48 - 2014-01-27 17:55 - 00000000 ____D C:\Users\Artur\Documents\Bioshock 2014-01-27 17:48 - 2014-01-27 17:55 - 00000000 ____D C:\Users\Artur\AppData\Roaming\Bioshock 2014-01-27 15:26 - 2013-12-27 19:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-01-27 15:26 - 2013-12-27 19:42 - 00033056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-01-27 13:21 - 2014-01-27 13:21 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2014-01-26 01:51 - 2014-01-26 01:51 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2014-01-26 01:51 - 2014-01-26 01:51 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2014-01-26 00:09 - 2014-01-27 06:53 - 01680555 _____ C:\Users\Artur\Desktop\Demonstration in Kiew.pptx 2014-01-25 23:07 - 2014-01-25 23:08 - 00648646 _____ C:\Users\Artur\Desktop\fürarturwennerpremiereprohatdamitseinevideosnicewerden.prproj 2014-01-25 22:19 - 2014-01-25 22:45 - 00000000 ____D C:\Users\Artur\AppData\Roaming\Blueberry 2014-01-25 22:19 - 2014-01-25 22:19 - 00000000 ____D C:\Users\Artur\Documents\BB FlashBack Movies 2014-01-25 22:18 - 2014-01-25 22:19 - 00000000 ____D C:\Users\Artur\AppData\Roaming\LogSys 2014-01-25 22:18 - 2014-01-25 22:18 - 00037376 _____ (Blueberry Consultants Ltd.) C:\Windows\system32\bbcap.dll 2014-01-25 22:18 - 2014-01-25 22:18 - 00005632 _____ (Blueberry Consultants Ltd.) C:\Windows\system32\bbchlp.dll 2014-01-25 22:18 - 2014-01-25 22:18 - 00004608 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\Drivers\bbcap.sys 2014-01-25 22:18 - 2014-01-25 22:18 - 00000000 ____D C:\ProgramData\LogSys 2014-01-25 20:56 - 2014-01-25 21:27 - 00000000 ____D C:\Users\Artur\Documents\Ableton 2014-01-25 20:53 - 2014-01-25 20:57 - 00000000 ____D C:\Users\Artur\AppData\Roaming\Ableton 2014-01-25 20:53 - 2014-01-25 20:53 - 00000000 ____D C:\Program Files\Common Files\Propellerhead Software 2014-01-25 12:35 - 2014-01-27 06:58 - 00028189 _____ C:\Users\Artur\Desktop\kiew.odt 2014-01-24 21:17 - 2014-01-24 21:17 - 00002937 _____ C:\Users\Artur\Desktop\Microsoft PowerPoint 2010.lnk 2014-01-24 21:17 - 2014-01-24 21:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services 2014-01-24 21:15 - 2014-01-24 21:15 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-24 21:15 - 2014-01-24 21:15 - 00000000 ____D C:\Program Files\Microsoft Office 2014-01-24 21:14 - 2014-01-26 23:39 - 00000000 ____D C:\ProgramData\Microsoft Help 2014-01-24 21:14 - 2014-01-24 21:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2014-01-24 21:14 - 2014-01-24 21:14 - 00000000 ____D C:\Users\Artur\AppData\Local\Microsoft Help 2014-01-19 00:15 - 2014-01-19 00:15 - 00001085 _____ C:\Users\Artur\Desktop\Cheat Engine.lnk 2014-01-19 00:15 - 2014-01-19 00:15 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.3 2014-01-18 21:37 - 2014-01-18 21:37 - 00000851 _____ C:\Users\Artur\Desktop\µTorrent.lnk 2014-01-18 21:37 - 2014-01-18 21:37 - 00000831 _____ C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-01-18 12:40 - 2014-01-18 12:40 - 00002773 _____ C:\Users\Artur\.recently-used.xbel 2014-01-17 06:49 - 2014-01-17 06:49 - 00000000 ____D C:\ProgramData\Oracle 2014-01-17 06:49 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-17 06:49 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-17 06:49 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-17 06:49 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-17 06:48 - 2014-01-17 06:49 - 00005327 _____ C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-15 12:30 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-15 12:29 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-15 12:29 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-11 17:14 - 2014-01-15 21:42 - 00000000 ____D C:\Users\Artur\Desktop\Neuer Ordner 2014-01-09 21:03 - 2014-01-09 21:03 - 00000000 ____D C:\Users\Artur\Documents\MGR 2014-01-09 19:25 - 2014-01-09 19:25 - 00000000 ____H C:\ProgramData\DP45977C.lfl 2014-01-09 19:24 - 2014-01-09 19:24 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2014-01-09 19:24 - 2014-01-09 19:24 - 00000000 ____D C:\Program Files\Realtek 2014-01-09 19:22 - 2000-01-01 01:00 - 05681192 _____ C:\Windows\system32\Drivers\rtvienna.dat 2014-01-09 19:22 - 2000-01-01 01:00 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-09 19:22 - 2000-01-01 01:00 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-09 19:22 - 2000-01-01 01:00 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-01-09 19:21 - 2000-01-01 01:00 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00681905 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-09 19:21 - 2000-01-01 01:00 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-01-09 19:20 - 2014-01-09 19:20 - 00000000 ____D C:\Program Files (x86)\Realtek 2014-01-09 19:20 - 2000-01-01 01:00 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00605496 _____ C:\Windows\system32\audioLibVc.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00109848 _____ C:\Windows\system32\AcpiServiceVnA64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-01-09 18:56 - 2014-01-09 18:59 - 00000000 ____D C:\Users\Artur\AppData\Local\NVIDIA Corporation 2014-01-09 18:42 - 2014-01-09 18:59 - 00000000 ____D C:\Users\Artur\AppData\Local\NVIDIA 2014-01-09 18:40 - 2014-01-21 03:53 - 01179576 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-01-09 18:40 - 2014-01-21 03:53 - 01048152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-01-09 18:40 - 2014-01-09 18:40 - 00001347 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2014-01-09 18:36 - 2014-01-09 18:36 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2014-01-09 18:24 - 2013-12-27 19:42 - 00035104 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-09 18:24 - 2000-01-01 01:00 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00357152 _____ C:\Windows\system32\NvIFROpenGL.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-09 18:24 - 2000-01-01 01:00 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00023754 _____ C:\Windows\system32\nvinfo.pb 2014-01-09 17:57 - 2014-01-09 17:58 - 00448512 _____ (OldTimer Tools) C:\Users\Artur\Downloads\TFC.exe 2014-01-09 17:50 - 2014-01-29 20:21 - 00000410 _____ C:\Windows\Tasks\SlimDrivers Startup.job 2014-01-09 17:50 - 2014-01-29 20:20 - 00002836 _____ C:\Windows\System32\Tasks\SlimDrivers Startup 2014-01-09 17:50 - 2014-01-09 17:50 - 00000000 ____D C:\Users\Artur\AppData\Local\SlimWare Utilities Inc 2014-01-09 17:49 - 2014-01-09 17:49 - 00002467 _____ C:\Users\Public\Desktop\SlimDrivers.lnk 2014-01-09 17:49 - 2014-01-09 17:49 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers 2014-01-09 17:48 - 2014-01-09 17:48 - 00858432 _____ (SlimWare Utilities, Inc.) C:\Users\Artur\Downloads\SlimDrivers-setup_32705.exe 2014-01-09 17:43 - 2014-01-09 17:43 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2014-01-09 17:42 - 2014-01-09 17:42 - 04645232 _____ (Piriform Ltd) C:\Users\Artur\Downloads\ccsetup409.exe 2014-01-09 17:37 - 2014-01-09 17:37 - 15920792 _____ (IObit ) C:\Users\Artur\Downloads\driver12_booster_setup.exe 2014-01-09 17:36 - 2014-01-09 17:37 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Artur\Downloads\spybot-2.2.exe 2014-01-09 17:05 - 2014-01-29 22:39 - 02079744 _____ (Farbar) C:\Users\Artur\Desktop\FRST64.exe 2014-01-09 16:36 - 2014-01-09 16:39 - 00033978 _____ C:\Users\Artur\Downloads\FRST.txt 2014-01-09 15:43 - 2014-01-09 15:43 - 00001115 _____ C:\Users\Artur\Desktop\Free Disk Analyzer.lnk 2014-01-09 15:29 - 2014-01-09 15:29 - 00000000 ____D C:\Users\Artur\AppData\Local\DiskAnalyzer 2014-01-09 15:29 - 2014-01-09 15:29 - 00000000 ____D C:\Program Files (x86)\Free Disk Analyzer 2014-01-09 15:28 - 2014-01-09 15:28 - 00000000 ____D C:\ProgramData\DiskAnalyzer 2014-01-09 15:27 - 2014-01-09 15:27 - 11680559 _____ (Extensoft) C:\Users\Artur\Downloads\FreeDiskAnalyzer.exe 2014-01-09 06:59 - 2014-01-29 22:40 - 00000000 ____D C:\FRST 2014-01-09 06:58 - 2014-01-09 06:59 - 01931770 _____ (Farbar) C:\Users\Artur\Downloads\FRST64.exe 2014-01-08 21:32 - 2014-01-08 21:32 - 00244624 _____ C:\Users\Artur\Downloads\Mofiki's AutoClicker Premium v1.0.0.3.zip 2014-01-07 23:00 - 2014-01-07 22:59 - 01233962 _____ C:\Users\Artur\Desktop\adwcleaner.exe 2014-01-07 22:59 - 2014-01-07 22:59 - 01233962 _____ C:\Users\Artur\Downloads\adwcleaner.exe 2014-01-07 22:51 - 2014-01-07 22:51 - 00000002 RSHOT C:\Windows\winstart.bat 2014-01-07 22:51 - 2014-01-07 22:51 - 00000002 RSHOT C:\Windows\SysWOW64\AUTOEXEC.NT 2014-01-07 22:51 - 2014-01-07 22:51 - 00000000 ____D C:\Users\Artur\Documents\RegRun2 2014-01-07 22:50 - 2014-01-07 22:53 - 00000000 ____D C:\Program Files (x86)\UnHackMe 2014-01-07 21:41 - 2014-01-07 21:41 - 00528888 _____ C:\Users\Artur\Documents\disktec.zip 2014-01-03 21:20 - 2014-01-03 21:20 - 00000000 ____D C:\Users\Artur\Documents\NBGI 2014-01-03 18:57 - 2014-01-29 22:09 - 00000000 ____D C:\Users\Artur\AppData\Local\LogMeIn Hamachi 2014-01-03 18:54 - 2014-01-03 18:54 - 06373376 _____ C:\Users\Artur\Downloads\hamachi09.msi 2014-01-02 23:40 - 2014-01-02 23:40 - 00000000 ____D C:\Users\Artur\AppData\Local\CDWLauncher 2014-01-02 22:14 - 2014-01-02 22:15 - 00000000 ____D C:\Users\Artur\AppData\Local\PAYDAY 2013-12-31 11:35 - 2014-01-18 12:40 - 00000000 ____D C:\Users\Artur\AppData\Roaming\gtk-2.0 ==================== One Month Modified Files and Folders ======= 2014-01-29 22:41 - 2014-01-29 22:40 - 00013699 _____ C:\Users\Artur\Desktop\FRST.txt 2014-01-29 22:41 - 2014-01-29 22:31 - 00054666 _____ C:\Windows\SysWOW64\key.dat 2014-01-29 22:40 - 2014-01-09 06:59 - 00000000 ____D C:\FRST 2014-01-29 22:39 - 2014-01-29 22:39 - 00000000 ____D C:\Users\Artur\Desktop\FRST-OlderVersion 2014-01-29 22:39 - 2014-01-09 17:05 - 02079744 _____ (Farbar) C:\Users\Artur\Desktop\FRST64.exe 2014-01-29 22:16 - 2013-10-13 13:26 - 00000000 __HDC C:\ProgramData\~0 2014-01-29 22:16 - 2013-03-24 11:07 - 00000000 ____D C:\Program Files\Native Instruments 2014-01-29 22:16 - 2013-03-24 11:07 - 00000000 ____D C:\Program Files\Common Files\Native Instruments 2014-01-29 22:15 - 2012-04-22 10:26 - 00000000 ____D C:\Program Files (x86)\Sugar Bytes 2014-01-29 22:14 - 2013-11-23 09:33 - 00002175 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2014-01-29 22:14 - 2013-11-23 09:31 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-29 22:14 - 2013-08-11 15:51 - 00000000 ____D C:\ProgramData\NexonUS 2014-01-29 22:14 - 2013-03-23 23:32 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-29 22:09 - 2014-01-03 18:57 - 00000000 ____D C:\Users\Artur\AppData\Local\LogMeIn Hamachi 2014-01-29 22:09 - 2013-04-19 20:23 - 00000000 ____D C:\Users\Artur\AppData\Roaming\TS3Client 2014-01-29 22:09 - 2013-03-26 07:04 - 00000000 ____D C:\Users\Artur\AppData\Roaming\uTorrent 2014-01-29 22:09 - 2013-03-24 16:55 - 00000000 ____D C:\Windows\Minidump 2014-01-29 22:09 - 2013-03-24 02:05 - 00000000 ____D C:\Users\Artur\AppData\Roaming\DAEMON Tools Lite 2014-01-29 22:09 - 2013-03-24 01:18 - 00000000 ____D C:\Windows\Panther 2014-01-29 22:09 - 2013-03-23 23:16 - 00000000 ____D C:\Users\Artur\AppData\Roaming\BitTorrent 2014-01-29 21:43 - 2013-03-24 01:22 - 01499254 ____N C:\Windows\WindowsUpdate.log 2014-01-29 21:11 - 2013-03-24 11:01 - 00000000 ____D C:\Users\Artur\AppData\Roaming\Skype 2014-01-29 20:27 - 2009-07-14 05:45 - 00030864 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-29 20:27 - 2009-07-14 05:45 - 00030864 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-29 20:21 - 2014-01-09 17:50 - 00000410 _____ C:\Windows\Tasks\SlimDrivers Startup.job 2014-01-29 20:20 - 2014-01-09 17:50 - 00002836 _____ C:\Windows\System32\Tasks\SlimDrivers Startup 2014-01-29 20:16 - 2013-11-23 09:31 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-29 20:15 - 2013-12-18 19:51 - 00001954 _____ C:\Windows\Tasks\FTdownloader V6.0-chromeinstaller.job 2014-01-29 20:15 - 2013-12-18 19:51 - 00001332 _____ C:\Windows\Tasks\FTdownloader V6.0-updater.job 2014-01-29 20:15 - 2013-03-24 01:50 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-29 20:15 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-29 14:00 - 2013-03-24 01:46 - 00000000 ____D C:\Users\Artur 2014-01-27 17:55 - 2014-01-27 17:48 - 00000000 ____D C:\Users\Artur\Documents\Bioshock 2014-01-27 17:55 - 2014-01-27 17:48 - 00000000 ____D C:\Users\Artur\AppData\Roaming\Bioshock 2014-01-27 15:27 - 2013-03-24 01:50 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2014-01-27 14:50 - 2013-11-18 20:25 - 00000000 ____D C:\Users\Artur\AppData\Local\Warframe 2014-01-27 13:21 - 2014-01-27 13:21 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2014-01-27 06:58 - 2014-01-25 12:35 - 00028189 _____ C:\Users\Artur\Desktop\kiew.odt 2014-01-27 06:53 - 2014-01-26 00:09 - 01680555 _____ C:\Users\Artur\Desktop\Demonstration in Kiew.pptx 2014-01-26 23:39 - 2014-01-24 21:14 - 00000000 ____D C:\ProgramData\Microsoft Help 2014-01-26 01:51 - 2014-01-26 01:51 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2014-01-26 01:51 - 2014-01-26 01:51 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2014-01-25 23:08 - 2014-01-25 23:07 - 00648646 _____ C:\Users\Artur\Desktop\fürarturwennerpremiereprohatdamitseinevideosnicewerden.prproj 2014-01-25 22:45 - 2014-01-25 22:19 - 00000000 ____D C:\Users\Artur\AppData\Roaming\Blueberry 2014-01-25 22:19 - 2014-01-25 22:19 - 00000000 ____D C:\Users\Artur\Documents\BB FlashBack Movies 2014-01-25 22:19 - 2014-01-25 22:18 - 00000000 ____D C:\Users\Artur\AppData\Roaming\LogSys 2014-01-25 22:18 - 2014-01-25 22:18 - 00037376 _____ (Blueberry Consultants Ltd.) C:\Windows\system32\bbcap.dll 2014-01-25 22:18 - 2014-01-25 22:18 - 00005632 _____ (Blueberry Consultants Ltd.) C:\Windows\system32\bbchlp.dll 2014-01-25 22:18 - 2014-01-25 22:18 - 00004608 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\Drivers\bbcap.sys 2014-01-25 22:18 - 2014-01-25 22:18 - 00000000 ____D C:\ProgramData\LogSys 2014-01-25 22:18 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Help 2014-01-25 21:27 - 2014-01-25 20:56 - 00000000 ____D C:\Users\Artur\Documents\Ableton 2014-01-25 20:57 - 2014-01-25 20:53 - 00000000 ____D C:\Users\Artur\AppData\Roaming\Ableton 2014-01-25 20:53 - 2014-01-25 20:53 - 00000000 ____D C:\Program Files\Common Files\Propellerhead Software 2014-01-25 08:14 - 2009-07-14 05:45 - 00317176 _____ C:\Windows\system32\FNTCACHE.DAT 2014-01-24 22:03 - 2013-03-24 02:01 - 00069848 _____ C:\Users\Artur\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-24 21:17 - 2014-01-24 21:17 - 00002937 _____ C:\Users\Artur\Desktop\Microsoft PowerPoint 2010.lnk 2014-01-24 21:17 - 2014-01-24 21:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services 2014-01-24 21:17 - 2014-01-24 21:14 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2014-01-24 21:17 - 2013-08-03 21:54 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-01-24 21:15 - 2014-01-24 21:15 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-24 21:15 - 2014-01-24 21:15 - 00000000 ____D C:\Program Files\Microsoft Office 2014-01-24 21:15 - 2009-07-14 19:18 - 00000000 ____D C:\Windows\ShellNew 2014-01-24 21:15 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2014-01-24 21:14 - 2014-01-24 21:14 - 00000000 ____D C:\Users\Artur\AppData\Local\Microsoft Help 2014-01-23 20:58 - 2013-04-13 22:11 - 00000000 ____D C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-01-21 03:53 - 2014-01-09 18:40 - 01179576 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-01-21 03:53 - 2014-01-09 18:40 - 01048152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-01-19 02:28 - 2013-04-26 15:51 - 00000000 ____D C:\Users\Artur\AppData\Local\NETGEARGenie 2014-01-19 02:24 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2014-01-19 00:35 - 2013-04-03 13:50 - 00000000 ____D C:\Users\Artur\Documents\My Cheat Tables 2014-01-19 00:15 - 2014-01-19 00:15 - 00001085 _____ C:\Users\Artur\Desktop\Cheat Engine.lnk 2014-01-19 00:15 - 2014-01-19 00:15 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.3 2014-01-18 21:58 - 2013-03-30 23:29 - 00000000 ____D C:\Users\Artur\AppData\Local\Adobe 2014-01-18 21:57 - 2013-03-23 23:32 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-18 21:57 - 2013-03-23 23:32 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-18 21:57 - 2013-03-23 23:32 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-18 21:37 - 2014-01-18 21:37 - 00000851 _____ C:\Users\Artur\Desktop\µTorrent.lnk 2014-01-18 21:37 - 2014-01-18 21:37 - 00000831 _____ C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-01-18 12:43 - 2013-11-27 14:24 - 00000000 ____D C:\Users\Artur\.gimp-2.6 2014-01-18 12:40 - 2014-01-18 12:40 - 00002773 _____ C:\Users\Artur\.recently-used.xbel 2014-01-18 12:40 - 2013-12-31 11:35 - 00000000 ____D C:\Users\Artur\AppData\Roaming\gtk-2.0 2014-01-17 06:49 - 2014-01-17 06:49 - 00000000 ____D C:\ProgramData\Oracle 2014-01-17 06:49 - 2014-01-17 06:48 - 00005327 _____ C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-17 06:49 - 2013-06-29 10:06 - 00000000 ____D C:\Program Files (x86)\Java 2014-01-15 22:47 - 2013-08-08 08:14 - 00000000 ____D C:\Windows\system32\MRT 2014-01-15 22:45 - 2013-03-23 22:10 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-15 21:42 - 2014-01-11 17:14 - 00000000 ____D C:\Users\Artur\Desktop\Neuer Ordner 2014-01-10 12:30 - 2013-09-26 20:55 - 00000000 ____D C:\Users\Artur\Documents\My Games 2014-01-09 21:03 - 2014-01-09 21:03 - 00000000 ____D C:\Users\Artur\Documents\MGR 2014-01-09 19:25 - 2014-01-09 19:25 - 00000000 ____H C:\ProgramData\DP45977C.lfl 2014-01-09 19:24 - 2014-01-09 19:24 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2014-01-09 19:24 - 2014-01-09 19:24 - 00000000 ____D C:\Program Files\Realtek 2014-01-09 19:20 - 2014-01-09 19:20 - 00000000 ____D C:\Program Files (x86)\Realtek 2014-01-09 19:20 - 2013-04-04 07:03 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-09 18:59 - 2014-01-09 18:56 - 00000000 ____D C:\Users\Artur\AppData\Local\NVIDIA Corporation 2014-01-09 18:59 - 2014-01-09 18:42 - 00000000 ____D C:\Users\Artur\AppData\Local\NVIDIA 2014-01-09 18:58 - 2013-03-24 01:50 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2014-01-09 18:53 - 2013-03-24 01:48 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2014-01-09 18:40 - 2014-01-09 18:40 - 00001347 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2014-01-09 18:36 - 2014-01-09 18:36 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2014-01-09 17:58 - 2014-01-09 17:57 - 00448512 _____ (OldTimer Tools) C:\Users\Artur\Downloads\TFC.exe 2014-01-09 17:50 - 2014-01-09 17:50 - 00000000 ____D C:\Users\Artur\AppData\Local\SlimWare Utilities Inc 2014-01-09 17:49 - 2014-01-09 17:49 - 00002467 _____ C:\Users\Public\Desktop\SlimDrivers.lnk 2014-01-09 17:49 - 2014-01-09 17:49 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers 2014-01-09 17:48 - 2014-01-09 17:48 - 00858432 _____ (SlimWare Utilities, Inc.) C:\Users\Artur\Downloads\SlimDrivers-setup_32705.exe 2014-01-09 17:43 - 2014-01-09 17:43 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2014-01-09 17:42 - 2014-01-09 17:42 - 04645232 _____ (Piriform Ltd) C:\Users\Artur\Downloads\ccsetup409.exe 2014-01-09 17:42 - 2013-07-14 20:32 - 00000000 ____D C:\Program Files\CCleaner 2014-01-09 17:37 - 2014-01-09 17:37 - 15920792 _____ (IObit ) C:\Users\Artur\Downloads\driver12_booster_setup.exe 2014-01-09 17:37 - 2014-01-09 17:36 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Artur\Downloads\spybot-2.2.exe 2014-01-09 17:26 - 2013-10-30 12:25 - 00000000 ____D C:\Program Files\FreeFixer 2014-01-09 16:39 - 2014-01-09 16:36 - 00033978 _____ C:\Users\Artur\Downloads\FRST.txt 2014-01-09 16:04 - 2013-12-22 22:12 - 00000000 ____D C:\Program Files\UVI Workstation x64 2014-01-09 16:04 - 2013-03-24 22:35 - 00000000 ____D C:\Program Files\VstPlugins 2014-01-09 15:43 - 2014-01-09 15:43 - 00001115 _____ C:\Users\Artur\Desktop\Free Disk Analyzer.lnk 2014-01-09 15:29 - 2014-01-09 15:29 - 00000000 ____D C:\Users\Artur\AppData\Local\DiskAnalyzer 2014-01-09 15:29 - 2014-01-09 15:29 - 00000000 ____D C:\Program Files (x86)\Free Disk Analyzer 2014-01-09 15:28 - 2014-01-09 15:28 - 00000000 ____D C:\ProgramData\DiskAnalyzer 2014-01-09 15:27 - 2014-01-09 15:27 - 11680559 _____ (Extensoft) C:\Users\Artur\Downloads\FreeDiskAnalyzer.exe 2014-01-09 15:06 - 2013-12-19 12:39 - 00000000 ____D C:\AdwCleaner 2014-01-09 06:59 - 2014-01-09 06:58 - 01931770 _____ (Farbar) C:\Users\Artur\Downloads\FRST64.exe 2014-01-08 21:32 - 2014-01-08 21:32 - 00244624 _____ C:\Users\Artur\Downloads\Mofiki's AutoClicker Premium v1.0.0.3.zip 2014-01-07 23:08 - 2013-09-26 21:54 - 00000000 ____D C:\Users\DefaultAppPool 2014-01-07 22:59 - 2014-01-07 23:00 - 01233962 _____ C:\Users\Artur\Desktop\adwcleaner.exe 2014-01-07 22:59 - 2014-01-07 22:59 - 01233962 _____ C:\Users\Artur\Downloads\adwcleaner.exe 2014-01-07 22:53 - 2014-01-07 22:50 - 00000000 ____D C:\Program Files (x86)\UnHackMe 2014-01-07 22:51 - 2014-01-07 22:51 - 00000002 RSHOT C:\Windows\winstart.bat 2014-01-07 22:51 - 2014-01-07 22:51 - 00000002 RSHOT C:\Windows\SysWOW64\AUTOEXEC.NT 2014-01-07 22:51 - 2014-01-07 22:51 - 00000000 ____D C:\Users\Artur\Documents\RegRun2 2014-01-07 21:41 - 2014-01-07 21:41 - 00528888 _____ C:\Users\Artur\Documents\disktec.zip 2014-01-07 15:00 - 2009-07-14 06:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2014-01-03 21:20 - 2014-01-03 21:20 - 00000000 ____D C:\Users\Artur\Documents\NBGI 2014-01-03 18:54 - 2014-01-03 18:54 - 06373376 _____ C:\Users\Artur\Downloads\hamachi09.msi 2014-01-02 23:40 - 2014-01-02 23:40 - 00000000 ____D C:\Users\Artur\AppData\Local\CDWLauncher 2014-01-02 22:15 - 2014-01-02 22:14 - 00000000 ____D C:\Users\Artur\AppData\Local\PAYDAY 2014-01-02 19:57 - 2013-03-24 10:32 - 00000000 ____D C:\Program Files (x86)\VstPlugins 2014-01-02 02:27 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2014-01-01 20:01 - 2009-07-14 18:58 - 00767670 _____ C:\Windows\system32\perfh007.dat 2014-01-01 20:01 - 2009-07-14 18:58 - 00173144 _____ C:\Windows\system32\perfc007.dat 2014-01-01 20:01 - 2009-07-14 06:13 - 01812344 _____ C:\Windows\system32\PerfStringBackup.INI Some content of TEMP: ==================== C:\Users\Artur\AppData\Local\Temp\GLB1A2B.EXE C:\Users\Artur\AppData\Local\Temp\NGM.exe C:\Users\Artur\AppData\Local\Temp\NGMDll.dll C:\Users\Artur\AppData\Local\Temp\NGMResource.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-24 17:17 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-01-2014 01 Ran by Artur at 2014-01-09 07:01:47 Running from C:\Users\Artur\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C} AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== µTorrent (x32 Version: 3.3.0.29342 - BitTorrent Inc.) 7-Zip 9.20 (x64 edition) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash CS3 Professional Version CS3 (x32 Version: CS3 - Adobe Systems, Inc.) Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Arturia Minimoog V v1.0 (x32 Version: - ) Arturia Moog Modular V2 v1.0 (x32 Version: - ) ASIO4ALL (x32 Version: 2.10 - Michael Tippach) avast! Free Antivirus (x32 Version: 8.0.1483.0 - AVAST Software) Bastion (x32 Version: - Supergiant Games) Battlefield: Bad Company™ 2 (x32 Version: 1.0.0.0 - Electronic Arts) BattlEye Uninstall (x32 Version: - ) BioShock Infinite (x32 Version: - Irrational Games) BIT.TRIP RUNNER (x32 Version: - Gaijin Games) BitLord 2.3 (x32 Version: 2.3.2-245 - House of Life) BitTorrent (x32 Version: 7.7.3.28706 - BitTorrent Inc.) Blade Symphony (x32 Version: - Puny Human Games) Borderlands (x32 Version: - Gearbox Software) Borderlands 2 (x32 Version: - Gearbox Software) Call of Duty: Modern Warfare 2 - Multiplayer (x32 Version: - Infinity Ward) Camel Audio CamelCrusher (x32 Version: 1.01.0 - Camel Audio) CCleaner (Version: 4.03 - Piriform) Chivalry: Medieval Warfare (x32 Version: - Torn Banner Studios) Counter-Strike (x32 Version: - Valve) Counter-Strike: Global Offensive (x32 Version: - Valve) Counter-Strike: Source (x32 Version: - Valve) CS-80V2 2.0 (x32 Version: - Arturia) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (x32 Version: 4.48.1.0347 - Disc Soft Ltd) Dark Souls: Prepare to Die Edition (x32 Version: - FromSoftware) Don't Starve (x32 Version: - Klei Entertainment) Dual-Core Optimizer (x32 Version: 1.1.4.0169 - AMD) Electronic Super Joy (x32 Version: - Michael Todd Games) eLicenser Control (x32 Version: - Steinberg Media Technologies GmbH) FabFilter Saturn 1.01 (x32 Version: - ) Fallout 3 (x32 Version: - Bethesda Game Studios) Far Cry 3 (x32 Version: 1.00 - Ubisoft) FEZ v1.02 (x32 Version: 1.02 - Friends in War) Firebird v2.0 (x32 Version: - Tone2) FL Studio 10 (x32 Version: - Image-Line) FL Studio 11 (x32 Version: - Image-Line) FlowStone FL 3.0 (x32 Version: - ) Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden FreeFixer (x32 Version: 1.07 - Kephyr) FTdownloader V6.0 (x32 Version: 1.31.153.0 - installdaddy) <==== ATTENTION Garry's Mod (x32 Version: - Facepunch Studios) GForce - Minimonsta (x32 Version: - ) GIMP 2.6.11 (x32 Version: 2.6.11 - The GIMP Team) GIMP 2.8.4 (Version: 2.8.4 - The GIMP Team) Google Chrome (x32 Version: 31.0.1650.63 - Google Inc.) Google Update Helper (x32 Version: 1.3.23.0 - DealPly Technologies Ltd) Hidden <==== ATTENTION Guacamelee! Gold Edition (x32 Version: - DrinkBox Studios) Hotline Miami (x32 Version: - Dennaton Games) IL Download Manager (x32 Version: - Image-Line) IL Shared Libraries (x32 Version: - Image-Line) Java 7 Update 17 (64-bit) (Version: 7.0.170 - Oracle) Java 7 Update 45 (x32 Version: 7.0.450 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Java SE Development Kit 7 Update 17 (64-bit) (Version: 1.7.0.170 - Oracle) KORG Legacy Collection - MonoPoly (Version: 1.1.0 - KORG Inc.) Logitech Vid (x32 Version: 1.10.1009 - Logitech Inc.) Logitech Webcam Software (Version: 12.10.1113 - Logitech Inc.) Logitech Webcam Software-Treiberpaket (Version: 12.10.1110 - Logitech Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.109 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.109 - LogMeIn, Inc.) Hidden Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) MGAServerList (HKCU Version: - ) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (x32 Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (x32 Version: 4.0.30901.0 - Microsoft Corporation) Monaco (x32 Version: - Pocketwatch Games) MotioninJoy DS3 driver version 0.6.0004 (Version: 0.6.0004 - www.motioninjoy.com) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Movies Toolbar for Internet Explorer (Dist. by Somoto Ltd.) (x32 Version: 1.6.2.0 - APN LLC) <==== ATTENTION MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden Native Instruments B4 II (x32 Version: - ) Native Instruments Controller Editor (Version: 1.5.1.1124 - Native Instruments) Hidden Native Instruments Controller Editor (x32 Version: - Native Instruments) Native Instruments FM8 (x32 Version: - ) Native Instruments Guitar Rig 5 (Version: 5.1.1.2673 - Native Instruments) Hidden Native Instruments Guitar Rig 5 (x32 Version: - Native Instruments) Native Instruments Guitar Rig Mobile I/O (Version: 3.0.0.625 - Native Instruments) Hidden Native Instruments Guitar Rig Mobile I/O (x32 Version: - Native Instruments) Native Instruments Guitar Rig Session I/O (Version: 3.0.0.625 - Native Instruments) Hidden Native Instruments Guitar Rig Session I/O (x32 Version: - Native Instruments) Native Instruments Kontakt 5 (Version: 5.1.0.6066 - Native Instruments) Hidden Native Instruments Kontakt 5 (x32 Version: - Native Instruments) Native Instruments Kontakt Factory Selection (Version: 1.2.0.004 - Native Instruments) Hidden Native Instruments Kontakt Factory Selection (x32 Version: - Native Instruments) Native Instruments Massive (Version: 1.3.0.2050 - Native Instruments) Hidden Native Instruments Massive (x32 Version: - Native Instruments) Native Instruments Rig Kontrol 3 (Version: 3.0.0.625 - Native Instruments) Hidden Native Instruments Rig Kontrol 3 (x32 Version: - Native Instruments) Native Instruments Service Center (Version: 2.3.2.926 - Native Instruments) Hidden Native Instruments Service Center (x32 Version: - Native Instruments) NETGEAR Genie (x32 Version: 2.2.27.1 - NETGEAR Inc.) Nexon Game Manager (x32 Version: - ) NVIDIA 3D Vision Controller-Treiber 306.23 (Version: 306.23 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 311.06 (Version: 311.06 - NVIDIA Corporation) NVIDIA Grafiktreiber 311.06 (Version: 311.06 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.18.0 (Version: 1.3.18.0 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.108.688 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1106 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 311.06 (Version: 311.06 - NVIDIA Corporation) Hidden NVIDIA Update 1.11.3 (Version: 1.11.3 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.11.3 - NVIDIA Corporation) Hidden Online Weather (HKCU Version: 1.0 - Somoto Ltd.) Open Broadcaster Software (x32 Version: - ) OpenAL (x32 Version: - ) OpenOffice 4.0.1 (x32 Version: 4.01.9714 - Apache Software Foundation) Opera Stable 15.0.1147.153 (x32 Version: 15.0.1147.153 - Opera Software ASA) Oracle VM VirtualBox 4.3.2 (Version: 4.3.2 - Oracle Corporation) osu! (x32 Version: 0.0.0.0 - peppy) PACE License Support Win64 (Version: 2.3.0.0443 - PACE Anti-Piracy, Inc.) Hidden PACE License Support Win64 (x32 Version: 2.3.0.0443 - PACE Anti-Piracy, Inc.) PAYDAY: The Heist (x32 Version: - OVERKILL Software) PCSX2 - Playstation 2 Emulator (x32 Version: - ) Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden PunkBuster Services (x32 Version: 0.989 - Even Balance, Inc.) Quake Live Mozilla Plugin (x32 Version: 1.0.520 - id Software) RapeLay (x32 Version: 1.03 - ILLUSION) Rapture3D 2.3.26 Game (x32 Version: - Blue Ripple Sound) reFX Nexus VSTi RTAS v2.2.0 (x32 Version: - ) RocketDock 1.3.5 (x32 Version: - Punk Software) Rogue Legacy (x32 Version: - Cellar Door Games) savaenshAre, (x32 Version: 2.3.0.1859 - SaVeNsharEu) <==== ATTENTION Savant - Ascent (x32 Version: - DPad Studios) Skullgirls (x32 Version: - Lab Zero Games) Skype™ 6.11 (x32 Version: 6.11.102 - Skype Technologies S.A.) Sonnox Oxford TransMod Native VST v1.3.1 (x32 Version: - Team AiR 2007) Spicy Guitar 1.2.0.1 (x32 Version: 1.2.0.1 - Keolab) Steam (x32 Version: 1.0.0.0 - Valve Corporation) Super Meat Boy (x32 Version: - Team Meat) TeamSpeak 3 Client (x32 Version: 3.0.13.1 - TeamSpeak Systems GmbH) Terraria (x32 Version: - Re-Logic) The Binding of Isaac (x32 Version: - Edmund McMillen and Florian Himsl) They Bleed Pixels (x32 Version: - Spooky Squid Games Inc.) Trine (x32 Version: - Frozenbyte) Trine 2 (x32 Version: - Frozenbyte) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.89 - TuneUp Software) Hidden TuneUp Utilities 2014 (x32 Version: 14.0.1000.89 - TuneUp Software) TuneUp Utilities 2014 (x32 Version: 14.0.1000.89 - TuneUp Software) Hidden Unity Web Player (HKCU Version: - Unity Technologies ApS) Unlocker 1.9.1-x64 (Version: 1.9.1 - Cedrick Collomb) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Uplay (x32 Version: 3.2 - Ubisoft) UVI Workstation x64 2.2.0 (Version: 2.2.0 - UVI) Visual Studio 2010 x64 Redistributables (Version: 13.0.0.1 - AVG Technologies) Warframe (x32 Version: 1.0.0 - Digital Extremes) Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows-Treiberpaket - Atheros Communications Inc. (athrusb) Net (03/26/2008 2.2.0.15) (Version: 03/26/2008 2.2.0.15 - Atheros Communications Inc.) Windows-Treiberpaket - Ralink (netr28ux) Net (04/21/2008 2.01.06.0000) (Version: 04/21/2008 2.01.06.0000 - Ralink) Windows-Treiberpaket - Ralink (netr7364) Net (02/26/2008 3.01.4.0000) (Version: 02/26/2008 3.01.4.0000 - Ralink) Windows-Treiberpaket - Ralink (rt70x64) Net (10/09/2007 3.01.00.0000) (Version: 10/09/2007 3.01.00.0000 - Ralink) Windows-Treiberpaket - Ralink Technology Corp. (rt61x64) Net (09/28/2007 2.01.00.0000) (Version: 09/28/2007 2.01.00.0000 - Ralink Technology Corp.) Windows-Treiberpaket - Ralink Technology, Corp. (netr28x) Net (05/19/2008 2.00.06.0000) (Version: 05/19/2008 2.00.06.0000 - Ralink Technology, Corp.) Windows-Treiberpaket - Ralink Technology, Inc. (RT2500) Net (06/01/2006 3.02.00.0000) (Version: 06/01/2006 3.02.00.0000 - Ralink Technology, Inc.) Windows-Treiberpaket - Realtek Semiconductor Corp. (RTL8187) Net (01/30/2007 6.1281.0130.2007) (Version: 01/30/2007 6.1281.0130.2007 - Realtek Semiconductor Corp.) Windows-Treiberpaket - Realtek Semiconductor Corp. (RTL8187B) Net (09/04/2007 6.1102.0904.2007) (Version: 09/04/2007 6.1102.0904.2007 - Realtek Semiconductor Corp.) WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH) WOW (x32 Version: 1.0 - Sugar Bytes) ==================== Restore Points ========================= 03-01-2014 17:55:10 Installed LogMeIn Hamachi 03-01-2014 20:22:08 DirectX wurde installiert 04-01-2014 00:54:36 DirectX wurde installiert 07-01-2014 14:08:52 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {046AF8EC-3882-4C5A-AF03-24AE328E0166} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-23] (Google Inc.) Task: {293453DC-746F-4FA5-9A32-4FAB1291548D} - \Plus-HD-2.2-enabler No Task File Task: {45BEA4F4-61CD-4A2C-ABA5-E9F573C91A72} - System32\Tasks\FTdownloader V6.0-chromeinstaller => C:\Program Files (x86)\FTdownloader V6.0\FTdownloader V6.0-chromeinstaller.exe <==== ATTENTION Task: {47FA5BF6-C8A8-4FAC-94EA-9C81C9220D5C} - System32\Tasks\FTdownloader V6.0-updater => C:\Program Files (x86)\FTdownloader V6.0\FTdownloader V6.0-updater.exe <==== ATTENTION Task: {4EED92F7-FCD1-45B6-82CB-1B26B07B5AA3} - \Desk 365 RunAsStdUser No Task File Task: {51AD43E3-89CF-43D3-BF6F-17F8F0E72380} - \Plus-HD-2.2-firefoxinstaller No Task File Task: {7380218E-37B3-4B4C-B702-763B1FFAC0EB} - \Plus-HD-2.2-codedownloader No Task File Task: {86C79ADB-3214-46C7-91C8-D081D9FECDCB} - System32\Tasks\Games\UpdateCheck_S-1-5-21-998081658-780423141-2410253492-1000 Task: {917A22CC-D481-4F90-A3BF-040EE9DEEFCC} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-06-19] (Piriform Ltd) Task: {A2FF738A-A4D7-4221-AF91-CC822CAA896D} - \Dealply No Task File Task: {A74EE147-9149-4A72-87EB-41C59BB3BCB7} - System32\Tasks\Open URL by RoboForm => Rundll32.exe url.dll,FileProtocolHandler "hxxp://www.roboform.com/de/platforms/browsers/other" Task: {AD216709-72F8-4C8C-8B09-F17FCAB881DC} - \BrowserProtect No Task File Task: {AD324946-C849-4A27-9A29-B87402C9666A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-18] (Adobe Systems Incorporated) Task: {BFB2F653-9693-4451-A048-55BBE6882183} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-23] (Google Inc.) Task: {D8BBFF49-3B09-4148-88D7-21A01F593B6F} - \Plus-HD-2.2-chromeinstaller No Task File Task: {EB6A00A0-B6A2-4B0B-AA7F-2F6BA1ED3BE0} - \Plus-HD-2.2-updater No Task File Task: {F5093512-46A5-4500-B709-B9BB640949F4} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-03-07] (AVAST Software) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FTdownloader V6.0-chromeinstaller.job => C:\Program Files (x86)\FTdownloader V6.0\FTdownloader V6.0-chromeinstaller.exe <==== ATTENTION Task: C:\Windows\Tasks\FTdownloader V6.0-updater.job => C:\Program Files (x86)\FTdownloader V6.0\FTdownloader V6.0-updater.exe <==== ATTENTION Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2010-07-15 05:44 - 2010-07-15 05:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2014-01-07 21:38 - 2014-01-07 20:01 - 02244608 _____ () C:\Program Files\AVAST Software\Avast\defs\14010701\algo.dll 2014-01-09 06:39 - 2014-01-09 06:39 - 00307200 _____ () C:\Windows\TEMP\mrtCA12.tmp\MMFS2.dll 2014-01-09 06:39 - 2014-01-09 06:39 - 00012800 _____ () C:\Windows\TEMP\mrtCA12.tmp\Get.mfx 2014-01-09 06:39 - 2014-01-09 06:39 - 00059392 _____ () C:\Windows\TEMP\mrtCA12.tmp\Yaso.mfx 2012-05-11 07:24 - 2012-05-11 07:24 - 02537472 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\QtCore4.dll 2012-05-10 03:34 - 2012-05-10 03:34 - 00011362 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\mingwm10.dll 2012-05-10 03:34 - 2012-05-10 03:34 - 00043008 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\libgcc_s_dw2-1.dll 2012-05-11 07:24 - 2012-05-11 07:24 - 09814016 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\QtGui4.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00478720 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\Genie.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 01553408 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\SvtNetworkTool.dll 2012-05-11 07:24 - 2012-05-11 07:24 - 01140224 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\QtNetwork4.dll 2012-05-11 07:24 - 2012-05-11 07:24 - 00399360 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\QtXml4.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00229888 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Airprint.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 01062400 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Internet.dll 2012-10-17 02:41 - 2012-10-17 02:41 - 03775488 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Map.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00500736 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_NetworkProblem.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00186368 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\DragonNetTool.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 01132032 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_ParentalControl.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 08295424 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Resource.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 01188352 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_RouterConfiguration.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00088064 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\QRCode.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00641536 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Statistics.dll 2013-07-10 23:03 - 2007-09-02 12:57 - 00069632 _____ () C:\Program Files (x86)\RocketDock\RocketDock.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00920064 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Ui.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00438272 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Wireless.dll 2012-05-11 07:24 - 2012-05-11 07:24 - 00083456 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qgif4.dll 2012-05-11 07:24 - 2012-05-11 07:24 - 00083456 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qico4.dll 2012-05-11 07:24 - 2012-05-11 07:24 - 00287232 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qjpeg4.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00136704 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\DiagnosePlugin.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00150528 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\DiagnoseDll.dll 2012-09-25 07:06 - 2012-09-25 07:06 - 01233389 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\drivers\libntgr_api.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00082432 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\SVTUtils.DLL 2012-10-12 01:57 - 2012-10-12 01:57 - 00083968 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\NetcardApi.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00138752 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\airprintdll.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00702464 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\InnerPlugin_Update.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00504832 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\InnerPlugin_WirelessExport.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00116224 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\WSetupApiPlugin.dll 2012-10-12 01:57 - 2012-10-12 01:57 - 00076288 _____ () C:\Program Files (x86)\NETGEAR Genie\bin\WSetupDll.dll 2009-07-16 14:34 - 2009-07-16 14:34 - 02140944 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\QtCore4.dll 2009-07-16 14:34 - 2009-07-16 14:34 - 07704336 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\QtGui4.dll 2009-07-16 14:34 - 2009-07-16 14:34 - 00968976 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\QtNetwork4.dll 2009-07-16 14:34 - 2009-07-16 14:34 - 00475408 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\QtOpenGL4.dll 2009-07-16 14:35 - 2009-07-16 14:35 - 00363792 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\QtXml4.dll 2009-07-16 14:34 - 2009-07-16 14:34 - 00199952 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\QtSql4.dll 2009-07-16 14:35 - 2009-07-16 14:35 - 00027408 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\SDL.dll 2009-07-16 14:35 - 2009-07-16 14:35 - 11311888 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\QtWebKit4.dll 2009-07-16 14:34 - 2009-07-16 14:34 - 00291600 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\phonon4.dll 2009-07-16 14:36 - 2009-07-16 14:36 - 00028944 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\plugins\imageformats\qgif4.dll 2009-07-16 14:36 - 2009-07-16 14:36 - 00035088 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\plugins\imageformats\qico4.dll 2009-07-16 14:36 - 2009-07-16 14:36 - 00138000 _____ () C:\Program Files (x86)\Logitech\Logitech Vid\plugins\imageformats\qjpeg4.dll 2009-10-14 12:36 - 2009-10-14 12:36 - 00181592 _____ () C:\Program Files (x86)\Common Files\LogiShrd\LvApi11\LvApi11.dll 2013-12-05 20:10 - 2013-12-04 03:47 - 00702416 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libglesv2.dll 2013-12-05 20:10 - 2013-12-04 03:47 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libegl.dll 2013-12-05 20:10 - 2013-12-04 03:48 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll 2013-12-05 20:10 - 2013-12-04 03:48 - 00399312 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll 2013-12-05 20:10 - 2013-12-04 03:47 - 01619408 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll 2013-12-05 20:10 - 2013-12-04 03:48 - 13586896 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll 2014-01-09 06:42 - 2013-12-12 23:19 - 00142848 _____ () D:\games\Steam\libavresample-1.dll 2014-01-09 06:42 - 2013-11-05 02:12 - 00890592 _____ () D:\games\Steam\libavutil-52.dll 2013-07-01 07:20 - 2013-12-12 23:04 - 00716800 _____ () D:\games\Steam\SDL2.dll 2013-07-09 16:56 - 2014-01-07 22:00 - 01138088 _____ () D:\games\Steam\bin\chromehtml.DLL 2013-07-09 12:45 - 2013-12-12 23:04 - 20625832 _____ () D:\games\Steam\bin\libcef.dll 2013-06-14 14:49 - 2013-06-15 00:49 - 01100800 _____ () D:\games\Steam\bin\avcodec-53.dll 2013-06-14 14:49 - 2013-06-15 00:49 - 00124416 _____ () D:\games\Steam\bin\avutil-51.dll 2013-06-14 14:49 - 2013-06-15 00:49 - 00192000 _____ () D:\games\Steam\bin\avformat-53.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\TEMP:373E1720 ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Faulty Device Manager Devices ============= Name: Ethernet-Controller Description: Ethernet-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: SM-Bus-Controller Description: SM-Bus-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (01/09/2014 06:59:04 AM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi Error: (01/08/2014 10:59:03 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi Error: (01/08/2014 09:59:03 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi Error: (01/08/2014 08:59:04 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi Error: (01/08/2014 07:59:01 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi Error: (01/08/2014 06:59:05 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi Error: (01/08/2014 05:59:03 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi Error: (01/08/2014 04:59:03 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi Error: (01/08/2014 03:59:02 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi Error: (01/08/2014 02:59:06 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi System errors: ============= Error: (01/09/2014 06:45:21 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (01/09/2014 06:45:21 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (01/09/2014 06:43:35 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (01/09/2014 06:43:35 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (01/09/2014 06:43:35 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (01/09/2014 06:43:35 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (01/09/2014 06:43:35 AM) (Source: PNRPSvc) (User: ) Description: 0x80630801 Error: (01/09/2014 06:43:35 AM) (Source: PNRPSvc) (User: ) Description: 0x80630801 Error: (01/09/2014 06:43:28 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (01/09/2014 06:43:28 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1330 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Microsoft Office Sessions: ========================= Error: (01/09/2014 06:59:04 AM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/08/2014 10:59:03 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/08/2014 09:59:03 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/08/2014 08:59:04 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/08/2014 07:59:01 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/08/2014 06:59:05 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/08/2014 05:59:03 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/08/2014 04:59:03 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/08/2014 03:59:02 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/08/2014 02:59:06 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Google\Update\1.3.22.3\DealPlyLiveHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL) CodeIntegrity Errors: =================================== Date: 2013-03-23 23:55:30.763 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-03-23 23:55:30.742 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-03-23 23:55:30.720 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-03-23 23:55:30.699 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Geändert von Ichnixcheck (29.01.2014 um 23:35 Uhr) |
29.01.2014, 23:23 | #2 |
/// the machine /// TB-Ausbilder | Windows 7: Festplatte füllt sich von selbst Hi,
__________________Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
29.01.2014, 23:35 | #3 |
| Windows 7: Festplatte füllt sich von selbst Ah! Danke, habe es verbessert
__________________ |
30.01.2014, 00:15 | #4 |
| Windows 7: Festplatte füllt sich von selbst
__________________ When you contact tech support, a lot of people feel like they're either talking to an idiot or being treated like one. |
30.01.2014, 07:08 | #5 |
| Windows 7: Festplatte füllt sich von selbst Sieht nach einem tollen Programm aus, ich werde es gleich mal ausprobieren und morgen/ heute sagen ob es geholfen hat Also ich hab mir mal das angeschaut und nichts besonders auffallend großes entdeckt. Nur zwei Sachen hiberfil.sys und pagefile.sys aber die kann man ja ausschließen außerdem machen sie nut um die 13 gb zusammen aus. |
30.01.2014, 17:00 | #6 | |
/// the machine /// TB-Ausbilder | Windows 7: Festplatte füllt sich von selbstCombofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ --> Windows 7: Festplatte füllt sich von selbst |
30.01.2014, 17:54 | #7 |
| Windows 7: Festplatte füllt sich von selbst ich kriege eine Fehlermeldung: Fehler beim Überschreiben der Datei: "C:\32788R22FWJFW\swxcacls.3XE", wenn ich auf Ignorieren drücke ladet es zu Ende, nichts weiteres passiert und es wird keine Combofix.txt hergestellt. Ich habe mein Avast ausgeschaltet und Firewall ebenfalls. |
31.01.2014, 09:55 | #8 |
/// the machine /// TB-Ausbilder | Windows 7: Festplatte füllt sich von selbst Combofix löschen udn neu laden und bitte nochmal versuchen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
31.01.2014, 17:07 | #9 |
| Windows 7: Festplatte füllt sich von selbst Ich habe es mehrere male deinstalliert und installiert aber krieg es einfach nicht hin das es ein autoscan macht. Jedes mal wenn der grüne Balken fertig geladen hat schließt sich es einfach wieder. Ich habe im Internet nach Antworten gesucht aber so wie es aussieht hat niemand dieses Problem je gehabt Tut mir leid das ich es nicht hin kriege. Wahrscheinlich hat das irgendwie mit Anti-Virus zu tun aber ich habe alles ausgeschaltet. Ich habe nur Avast und Firewall. Muss man Windows defender auch ausschalten? Wenn das überhaupt ein anti virus ist. |
01.02.2014, 11:15 | #10 |
/// the machine /// TB-Ausbilder | Windows 7: Festplatte füllt sich von selbst Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
01.02.2014, 17:27 | #11 |
| Windows 7: Festplatte füllt sich von selbst Malwarebytes Anti-Malware hängt sich bei mir bei einem vollständigen Scan nach 40 min auf aber ich konnte ein quick scan machen und hab dann nochmal einen vollständigen Scan gemacht aber kurz bevor es sich auf hängt habe ich es abgebrochen konnte aber zwei infizierte Dateien finden Malwarebytes Anti-Malware log Code:
ATTFilter Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.02.01.04 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16476 Artur :: ARTUR-PC [Administrator] 01.02.2014 16:35:07 mbam-log-2014-02-01 (16-35-07).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 129766 Laufzeit: 32 Minute(n), 28 Sekunde(n) [Abgebrochen] Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 2 C:\AdwCleaner\Quarantine\C\Windows\System32\roboot64.exe.vir (PUP.Optional.PCPerformer.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Artur\Local Settings\Application Data\Bundled software uninstaller\biclient.exe (PUP.Optional.Somoto.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) Code:
ATTFilter # AdwCleaner v3.018 - Bericht erstellt am 01/02/2014 um 13:46:36 # Updated 28/01/2014 von Xplode # Betriebssystem : Windows 7 Professional Service Pack 1 (64 bits) # Benutzername : Artur - ARTUR-PC # Gestartet von : C:\Users\Artur\Desktop\adwcleaner (1).exe # Option : Suchen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16428 -\\ Google Chrome v32.0.1700.102 [ Datei : C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gefunden : homepage Gefunden : homepage ************************* AdwCleaner[R0].txt - [54526 octets] - [19/12/2013 12:39:32] AdwCleaner[R1].txt - [1189 octets] - [19/12/2013 17:39:25] AdwCleaner[R2].txt - [1457 octets] - [07/01/2014 23:00:30] AdwCleaner[R3].txt - [1325 octets] - [09/01/2014 15:05:57] AdwCleaner[R4].txt - [940 octets] - [01/02/2014 13:46:36] AdwCleaner[S0].txt - [46291 octets] - [19/12/2013 12:40:54] AdwCleaner[S1].txt - [1230 octets] - [19/12/2013 17:42:11] AdwCleaner[S2].txt - [1505 octets] - [07/01/2014 23:02:17] ########## EOF - C:\AdwCleaner\AdwCleaner[R4].txt - [1180 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.0 (01.07.2014:1) OS: Windows 7 Professional x64 Ran by Artur on 01.02.2014 at 14:01:11,71 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 01.02.2014 at 14:10:59,12 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-02-2014 03 Ran by Artur (administrator) on ARTUR-PC on 01-02-2014 17:14:35 Running from C:\Users\Artur\Desktop Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe ( ) C:\Windows\Temp\mrtE5EB.tmp\stdrt.exe (SlimWare Utilities, Inc.) C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe () C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe () C:\Program Files (x86)\RocketDock\RocketDock.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe (Valve Corporation) D:\games\Steam\Steam.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Logitech Inc.) C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (NETGEAR) C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Program Files (x86)\NETGEAR Genie\bin\genie2_tray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corporation) C:\Windows\System32\inetsrv\w3wp.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] - "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1179576 2014-01-21] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-01-21] (NVIDIA Corporation) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4767304 2013-03-07] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [amd_dc_opt] - C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD) HKLM-x32\...\Run: [BCSSync] - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3813200 2014-01-23] (LogMeIn Inc.) HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2013-04-04] (Microsoft Corporation) HKU\S-1-5-21-998081658-780423141-2410253492-1000\...\Run: [NETGEARGenie] - C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe [1041736 2012-10-16] () HKU\S-1-5-21-998081658-780423141-2410253492-1000\...\Run: [RocketDock] - C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] () HKU\S-1-5-21-998081658-780423141-2410253492-1000\...\Run: [Steam] - D:\games\Steam\steam.exe [1815976 2014-01-27] (Valve Corporation) HKU\S-1-5-21-998081658-780423141-2410253492-1000\...\MountPoints2: {196d3057-941e-11e2-b340-f84a0fc85bec} - K:\PsychoLauncher.exe HKU\S-1-5-21-998081658-780423141-2410253492-1000\...\MountPoints2: {7013adca-9418-11e2-bf95-806e6f6e6963} - E:\Autorun.exe HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\...\Run: [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun Startup: C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\zzlib.lnk ShortcutTarget: zzlib.lnk -> C:\Program Files (x86)\Valve\platform\zzlib.exe () ==================== Internet (Whitelisted) ==================== SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO: avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll No File BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll" No File Toolbar: HKLM-x32 - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Chrome: ======= CHR HomePage: hxxp://feed.snap.do/?publisher=SMTM&dpid=SMTM&co=DE&userid=0b2dc656-ab00-42d3-9e2b-81f42689830f&searchtype=hp CHR Extension: (Google Drive) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-23] CHR Extension: (YouTube) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-23] CHR Extension: (Adblock Plus) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-11-23] CHR Extension: (Google-Suche) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-23] CHR Extension: (Grey With Dark Blue Highlight Chrome Theme) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\gllabpbebalomehiffcgeaimmeecikec [2013-11-23] CHR Extension: (avast! WebRep) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda [2013-11-24] CHR Extension: (Google Wallet) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-23] CHR Extension: (Google Mail) - C:\Users\Artur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-23] CHR HKLM-x32\...\Chrome\Extension: [fhmbbigfkgcficoehkhadjbokhhaijea] - C:\Program Files (x86)\LyricsPlug\Chrome.crx [2013-11-23] CHR HKLM-x32\...\Chrome\Extension: [icmlaeflemplmjndnaapfdbbnpncnbda] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2013-03-24] ==================== Services (Whitelisted) ================= S2 Adobe Licensing Console; C:\Windows\SysWOW64\lnsecsl.exe [905070 2013-03-24] ( ) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-07] (AVAST Software) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-12-13] (LogMeIn, Inc.) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 NETGEARGenieDaemon; C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe [231752 2012-09-25] (NETGEAR) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4694056 2013-03-14] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-01-21] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [16939296 2014-01-21] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-12-08] () R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation) S2 TuneUp.UtilitiesSvc; "C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe" [x] ==================== Drivers (Whitelisted) ==================== R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-03-07] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-03-07] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [70992 2013-03-07] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-03-07] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1025808 2013-03-07] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [377920 2013-03-07] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [68920 2013-03-07] (AVAST Software) S3 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [178624 2013-03-07] () R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-12-11] (Disc Soft Ltd) R3 LVPr2M64; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] () S3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] () R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 NIWinCDEmu; C:\Windows\System32\DRIVERS\NIWinCDEmu.sys [111696 2013-06-08] () R2 NPF; C:\Windows\system32\drivers\npf.sys [35344 2013-04-26] (CACE Technologies, Inc.) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-27] (NVIDIA Corporation) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2013-12-11] (Duplex Secure Ltd.) S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2014-02-01] () S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-10-16] (Anchorfree Inc.) U3 a2ndtc0a; C:\Windows\System32\Drivers\a2ndtc0a.sys [0 ] (Microsoft Corporation) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] U0 Partizan; system32\drivers\Partizan.sys [x] S3 TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [x] U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [x] S3 xhunter1; \??\C:\Windows\xhunter1.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-01 17:14 - 2014-02-01 17:14 - 00013832 _____ () C:\Users\Artur\Desktop\FRST.txt 2014-02-01 15:12 - 2014-02-01 17:16 - 00089653 _____ () C:\Windows\SysWOW64\key.dat 2014-02-01 14:10 - 2014-02-01 14:10 - 00000625 _____ () C:\Users\Artur\Desktop\JRT.txt 2014-02-01 14:00 - 2014-02-01 14:00 - 01037068 _____ (Thisisu) C:\Users\Artur\Downloads\JRT.exe 2014-02-01 14:00 - 2014-02-01 14:00 - 01037068 _____ (Thisisu) C:\Users\Artur\Desktop\JRT.exe 2014-02-01 13:51 - 2014-02-01 13:47 - 00001260 _____ () C:\Users\Artur\Desktop\AdwCleaner[R4].txt 2014-02-01 13:45 - 2014-02-01 13:46 - 01166132 _____ () C:\Users\Artur\Desktop\adwcleaner (1).exe 2014-02-01 11:30 - 2014-02-01 11:30 - 00001109 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-01 11:30 - 2014-02-01 11:30 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-01 11:30 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-02-01 11:29 - 2014-02-01 11:30 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Artur\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-31 19:56 - 2014-01-31 19:56 - 00079385 _____ () C:\Users\Artur\Downloads\Fire Power Organs.flp 2014-01-31 16:21 - 2014-01-31 16:21 - 00000000 ____D () C:\Qoobox 2014-01-31 16:18 - 2014-01-31 16:18 - 00001146 _____ () C:\Users\Artur\Desktop\ComboFix.exe - Verknüpfung.lnk 2014-01-31 15:36 - 2014-01-31 15:36 - 00015220 ____H () C:\Users\Artur\Desktop\watwatwat.mp3.zpa 2014-01-31 15:33 - 2014-01-31 15:33 - 09901768 _____ () C:\Users\Artur\Downloads\shareddlls_20131130.zip 2014-01-31 15:32 - 2014-01-31 15:33 - 05105783 _____ () C:\Users\Artur\Downloads\wrapper_2.4.18.zip 2014-01-31 15:26 - 2014-01-31 15:26 - 00188416 _____ () C:\Users\Artur\Desktop\JKuchRemixRetrograde - recovered.flp 2014-01-31 15:25 - 2014-01-31 15:25 - 01119331 _____ (Image-Line bvba) C:\Users\Artur\Downloads\diagnostic.exe 2014-01-30 17:37 - 2014-01-30 17:37 - 00003086 _____ () C:\Windows\System32\Tasks\{8C509B95-4AED-4364-AE28-EC7D28D746E8} 2014-01-30 17:21 - 2014-01-31 17:11 - 00000000 ___SD () C:\32788R22FWJFW 2014-01-30 17:21 - 2014-01-30 17:38 - 00000000 ____D () C:\Windows\erdnt 2014-01-30 17:19 - 2014-01-30 17:20 - 05177551 ____R (Swearware) C:\Users\Artur\Downloads\ComboFix.exe 2014-01-30 06:39 - 2014-02-01 17:11 - 00001960 _____ () C:\Windows\setupact.log 2014-01-30 06:39 - 2014-02-01 17:10 - 00004658 _____ () C:\Windows\PFRO.log 2014-01-30 06:39 - 2014-01-30 06:39 - 00000000 _____ () C:\Windows\setuperr.log 2014-01-30 00:21 - 2014-01-30 17:49 - 00000870 _____ () C:\Users\Artur\Desktop\SequoiaView.lnk 2014-01-30 00:21 - 2014-01-30 00:21 - 00567047 _____ () C:\Users\Artur\Downloads\Sequoia1.3Install.exe 2014-01-30 00:21 - 2014-01-30 00:21 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SequoiaView 2014-01-30 00:21 - 2014-01-30 00:21 - 00000000 ____D () C:\Program Files\SequoiaView 2014-01-29 22:39 - 2014-02-01 17:14 - 00000000 ____D () C:\Users\Artur\Desktop\FRST-OlderVersion 2014-01-27 17:48 - 2014-01-30 19:13 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Bioshock 2014-01-27 17:48 - 2014-01-27 17:55 - 00000000 ____D () C:\Users\Artur\Documents\Bioshock 2014-01-27 15:26 - 2013-12-27 19:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-01-27 15:26 - 2013-12-27 19:42 - 00033056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-01-27 13:21 - 2014-01-27 13:21 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi 2014-01-26 01:51 - 2014-01-26 01:51 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-01-26 01:51 - 2014-01-26 01:51 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-01-26 00:09 - 2014-01-27 06:53 - 01680555 _____ () C:\Users\Artur\Desktop\Demonstration in Kiew.pptx 2014-01-25 23:07 - 2014-01-25 23:08 - 00648646 _____ () C:\Users\Artur\Desktop\fürarturwennerpremiereprohatdamitseinevideosnicewerden.prproj 2014-01-25 22:19 - 2014-01-25 22:45 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Blueberry 2014-01-25 22:19 - 2014-01-25 22:19 - 00000000 ____D () C:\Users\Artur\Documents\BB FlashBack Movies 2014-01-25 22:18 - 2014-01-25 22:19 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\LogSys 2014-01-25 22:18 - 2014-01-25 22:18 - 00037376 _____ (Blueberry Consultants Ltd.) C:\Windows\system32\bbcap.dll 2014-01-25 22:18 - 2014-01-25 22:18 - 00005632 _____ (Blueberry Consultants Ltd.) C:\Windows\system32\bbchlp.dll 2014-01-25 22:18 - 2014-01-25 22:18 - 00004608 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\Drivers\bbcap.sys 2014-01-25 22:18 - 2014-01-25 22:18 - 00000000 ____D () C:\ProgramData\LogSys 2014-01-25 20:56 - 2014-01-25 21:27 - 00000000 ____D () C:\Users\Artur\Documents\Ableton 2014-01-25 20:53 - 2014-01-25 20:57 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Ableton 2014-01-25 20:53 - 2014-01-25 20:53 - 00000000 ____D () C:\Program Files\Common Files\Propellerhead Software 2014-01-25 12:35 - 2014-01-27 06:58 - 00028189 _____ () C:\Users\Artur\Desktop\kiew.odt 2014-01-24 21:17 - 2014-01-24 21:17 - 00002937 _____ () C:\Users\Artur\Desktop\Microsoft PowerPoint 2010.lnk 2014-01-24 21:17 - 2014-01-24 21:17 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services 2014-01-24 21:15 - 2014-01-24 21:15 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-24 21:15 - 2014-01-24 21:15 - 00000000 ____D () C:\Program Files\Microsoft Office 2014-01-24 21:14 - 2014-01-30 07:16 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-01-24 21:14 - 2014-01-24 21:17 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-01-24 21:14 - 2014-01-24 21:14 - 00000000 ____D () C:\Users\Artur\AppData\Local\Microsoft Help 2014-01-19 00:15 - 2014-01-19 00:15 - 00001085 _____ () C:\Users\Artur\Desktop\Cheat Engine.lnk 2014-01-19 00:15 - 2014-01-19 00:15 - 00000000 ____D () C:\Program Files (x86)\Cheat Engine 6.3 2014-01-18 21:37 - 2014-01-18 21:37 - 00000851 _____ () C:\Users\Artur\Desktop\µTorrent.lnk 2014-01-18 21:37 - 2014-01-18 21:37 - 00000831 _____ () C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-01-18 12:40 - 2014-01-18 12:40 - 00002773 _____ () C:\Users\Artur\.recently-used.xbel 2014-01-17 06:49 - 2014-01-17 06:49 - 00000000 ____D () C:\ProgramData\Oracle 2014-01-17 06:49 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-17 06:49 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-17 06:49 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-17 06:49 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-17 06:48 - 2014-01-17 06:49 - 00005327 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-15 12:30 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-15 12:30 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-15 12:29 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-15 12:29 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-11 17:14 - 2014-01-15 21:42 - 00000000 ____D () C:\Users\Artur\Desktop\Neuer Ordner 2014-01-09 21:03 - 2014-01-09 21:03 - 00000000 ____D () C:\Users\Artur\Documents\MGR 2014-01-09 19:25 - 2014-01-09 19:25 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-09 19:24 - 2014-01-09 19:24 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-09 19:24 - 2014-01-09 19:24 - 00000000 ____D () C:\Program Files\Realtek 2014-01-09 19:22 - 2000-01-01 01:00 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-01-09 19:22 - 2000-01-01 01:00 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-09 19:22 - 2000-01-01 01:00 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-09 19:22 - 2000-01-01 01:00 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-01-09 19:22 - 2000-01-01 01:00 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-01-09 19:21 - 2000-01-01 01:00 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-09 19:21 - 2000-01-01 01:00 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-01-09 19:21 - 2000-01-01 01:00 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-01-09 19:20 - 2014-01-09 19:20 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-01-09 19:20 - 2000-01-01 01:00 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-01-09 19:20 - 2000-01-01 01:00 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-01-09 18:56 - 2014-01-09 18:59 - 00000000 ____D () C:\Users\Artur\AppData\Local\NVIDIA Corporation 2014-01-09 18:42 - 2014-01-09 18:59 - 00000000 ____D () C:\Users\Artur\AppData\Local\NVIDIA 2014-01-09 18:40 - 2014-01-21 03:53 - 01179576 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-01-09 18:40 - 2014-01-21 03:53 - 01048152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-01-09 18:40 - 2014-01-09 18:40 - 00001347 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-01-09 18:36 - 2014-01-09 18:36 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-01-09 18:24 - 2013-12-27 19:42 - 00035104 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-09 18:24 - 2000-01-01 01:00 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00357152 _____ () C:\Windows\system32\NvIFROpenGL.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00314656 _____ () C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-09 18:24 - 2000-01-01 01:00 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-09 18:24 - 2000-01-01 01:00 - 00023754 _____ () C:\Windows\system32\nvinfo.pb 2014-01-09 17:57 - 2014-01-09 17:58 - 00448512 _____ (OldTimer Tools) C:\Users\Artur\Downloads\TFC.exe 2014-01-09 17:50 - 2014-02-01 17:14 - 00002836 _____ () C:\Windows\System32\Tasks\SlimDrivers Startup 2014-01-09 17:50 - 2014-02-01 17:14 - 00000410 _____ () C:\Windows\Tasks\SlimDrivers Startup.job 2014-01-09 17:50 - 2014-02-01 17:12 - 00016152 _____ () C:\Windows\system32\Drivers\SWDUMon.sys 2014-01-09 17:50 - 2014-01-09 17:50 - 00000000 ____D () C:\Users\Artur\AppData\Local\SlimWare Utilities Inc 2014-01-09 17:49 - 2014-01-09 17:49 - 00002467 _____ () C:\Users\Public\Desktop\SlimDrivers.lnk 2014-01-09 17:49 - 2014-01-09 17:49 - 00000000 ____D () C:\Users\Public\Documents\Downloaded Installers 2014-01-09 17:48 - 2014-01-09 17:48 - 00858432 _____ (SlimWare Utilities, Inc.) C:\Users\Artur\Downloads\SlimDrivers-setup_32705.exe 2014-01-09 17:43 - 2014-01-09 17:43 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-01-09 17:42 - 2014-01-09 17:42 - 04645232 _____ (Piriform Ltd) C:\Users\Artur\Downloads\ccsetup409.exe 2014-01-09 17:37 - 2014-01-09 17:37 - 15920792 _____ (IObit ) C:\Users\Artur\Downloads\driver12_booster_setup.exe 2014-01-09 17:36 - 2014-01-09 17:37 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Artur\Downloads\spybot-2.2.exe 2014-01-09 17:05 - 2014-02-01 17:14 - 02080256 _____ (Farbar) C:\Users\Artur\Desktop\FRST64.exe 2014-01-09 16:36 - 2014-01-09 16:39 - 00033978 _____ () C:\Users\Artur\Downloads\FRST.txt 2014-01-09 15:43 - 2014-01-09 15:43 - 00001115 _____ () C:\Users\Artur\Desktop\Free Disk Analyzer.lnk 2014-01-09 15:29 - 2014-01-09 15:29 - 00000000 ____D () C:\Users\Artur\AppData\Local\DiskAnalyzer 2014-01-09 15:29 - 2014-01-09 15:29 - 00000000 ____D () C:\Program Files (x86)\Free Disk Analyzer 2014-01-09 15:28 - 2014-01-09 15:28 - 00000000 ____D () C:\ProgramData\DiskAnalyzer 2014-01-09 15:27 - 2014-01-09 15:27 - 11680559 _____ (Extensoft) C:\Users\Artur\Downloads\FreeDiskAnalyzer.exe 2014-01-09 06:59 - 2014-02-01 17:14 - 00000000 ____D () C:\FRST 2014-01-09 06:58 - 2014-01-09 06:59 - 01931770 _____ (Farbar) C:\Users\Artur\Downloads\FRST64.exe 2014-01-08 21:32 - 2014-01-08 21:32 - 00244624 _____ () C:\Users\Artur\Downloads\Mofiki's AutoClicker Premium v1.0.0.3.zip 2014-01-07 22:59 - 2014-01-07 22:59 - 01233962 _____ () C:\Users\Artur\Downloads\adwcleaner.exe 2014-01-07 22:51 - 2014-01-07 22:51 - 00000002 RSHOT () C:\Windows\winstart.bat 2014-01-07 22:51 - 2014-01-07 22:51 - 00000002 RSHOT () C:\Windows\SysWOW64\AUTOEXEC.NT 2014-01-07 22:51 - 2014-01-07 22:51 - 00000000 ____D () C:\Users\Artur\Documents\RegRun2 2014-01-07 22:50 - 2014-01-07 22:53 - 00000000 ____D () C:\Program Files (x86)\UnHackMe 2014-01-07 21:41 - 2014-01-07 21:41 - 00528888 _____ () C:\Users\Artur\Documents\disktec.zip 2014-01-03 21:20 - 2014-01-03 21:20 - 00000000 ____D () C:\Users\Artur\Documents\NBGI 2014-01-03 18:57 - 2014-02-01 17:12 - 00000000 ____D () C:\Users\Artur\AppData\Local\LogMeIn Hamachi 2014-01-03 18:54 - 2014-01-03 18:54 - 06373376 _____ () C:\Users\Artur\Downloads\hamachi09.msi 2014-01-02 23:40 - 2014-01-02 23:40 - 00000000 ____D () C:\Users\Artur\AppData\Local\CDWLauncher 2014-01-02 22:14 - 2014-01-02 22:15 - 00000000 ____D () C:\Users\Artur\AppData\Local\PAYDAY ==================== One Month Modified Files and Folders ======= 2014-02-01 17:16 - 2014-02-01 17:14 - 00013832 _____ () C:\Users\Artur\Desktop\FRST.txt 2014-02-01 17:16 - 2014-02-01 15:12 - 00089653 _____ () C:\Windows\SysWOW64\key.dat 2014-02-01 17:14 - 2014-01-29 22:39 - 00000000 ____D () C:\Users\Artur\Desktop\FRST-OlderVersion 2014-02-01 17:14 - 2014-01-09 17:50 - 00002836 _____ () C:\Windows\System32\Tasks\SlimDrivers Startup 2014-02-01 17:14 - 2014-01-09 17:50 - 00000410 _____ () C:\Windows\Tasks\SlimDrivers Startup.job 2014-02-01 17:14 - 2014-01-09 17:05 - 02080256 _____ (Farbar) C:\Users\Artur\Desktop\FRST64.exe 2014-02-01 17:14 - 2014-01-09 06:59 - 00000000 ____D () C:\FRST 2014-02-01 17:14 - 2013-03-23 23:32 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-01 17:12 - 2014-01-09 17:50 - 00016152 _____ () C:\Windows\system32\Drivers\SWDUMon.sys 2014-02-01 17:12 - 2014-01-03 18:57 - 00000000 ____D () C:\Users\Artur\AppData\Local\LogMeIn Hamachi 2014-02-01 17:11 - 2014-01-30 06:39 - 00001960 _____ () C:\Windows\setupact.log 2014-02-01 17:11 - 2013-12-18 19:51 - 00001954 _____ () C:\Windows\Tasks\FTdownloader V6.0-chromeinstaller.job 2014-02-01 17:11 - 2013-12-18 19:51 - 00001332 _____ () C:\Windows\Tasks\FTdownloader V6.0-updater.job 2014-02-01 17:11 - 2013-11-23 09:31 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-01 17:11 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-01 17:10 - 2014-01-30 06:39 - 00004658 _____ () C:\Windows\PFRO.log 2014-02-01 17:10 - 2013-03-24 01:50 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-01 17:09 - 2013-03-24 01:22 - 01741635 _____ () C:\Windows\WindowsUpdate.log 2014-02-01 16:59 - 2013-11-23 09:31 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-01 14:10 - 2014-02-01 14:10 - 00000625 _____ () C:\Users\Artur\Desktop\JRT.txt 2014-02-01 14:04 - 2009-07-14 05:45 - 00030864 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-01 14:04 - 2009-07-14 05:45 - 00030864 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-01 14:00 - 2014-02-01 14:00 - 01037068 _____ (Thisisu) C:\Users\Artur\Downloads\JRT.exe 2014-02-01 14:00 - 2014-02-01 14:00 - 01037068 _____ (Thisisu) C:\Users\Artur\Desktop\JRT.exe 2014-02-01 13:52 - 2013-12-19 12:39 - 00000000 ____D () C:\AdwCleaner 2014-02-01 13:47 - 2014-02-01 13:51 - 00001260 _____ () C:\Users\Artur\Desktop\AdwCleaner[R4].txt 2014-02-01 13:46 - 2014-02-01 13:45 - 01166132 _____ () C:\Users\Artur\Desktop\adwcleaner (1).exe 2014-02-01 11:30 - 2014-02-01 11:30 - 00001109 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-01 11:30 - 2014-02-01 11:30 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-01 11:30 - 2014-02-01 11:29 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Artur\Downloads\mbam-setup-1.75.0.1300.exe 2014-02-01 02:32 - 2013-03-24 11:01 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Skype 2014-01-31 21:46 - 2013-04-19 20:23 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\TS3Client 2014-01-31 19:56 - 2014-01-31 19:56 - 00079385 _____ () C:\Users\Artur\Downloads\Fire Power Organs.flp 2014-01-31 17:11 - 2014-01-30 17:21 - 00000000 ___SD () C:\32788R22FWJFW 2014-01-31 16:21 - 2014-01-31 16:21 - 00000000 ____D () C:\Qoobox 2014-01-31 16:18 - 2014-01-31 16:18 - 00001146 _____ () C:\Users\Artur\Desktop\ComboFix.exe - Verknüpfung.lnk 2014-01-31 15:36 - 2014-01-31 15:36 - 00015220 ____H () C:\Users\Artur\Desktop\watwatwat.mp3.zpa 2014-01-31 15:33 - 2014-01-31 15:33 - 09901768 _____ () C:\Users\Artur\Downloads\shareddlls_20131130.zip 2014-01-31 15:33 - 2014-01-31 15:32 - 05105783 _____ () C:\Users\Artur\Downloads\wrapper_2.4.18.zip 2014-01-31 15:26 - 2014-01-31 15:26 - 00188416 _____ () C:\Users\Artur\Desktop\JKuchRemixRetrograde - recovered.flp 2014-01-31 15:25 - 2014-01-31 15:25 - 01119331 _____ (Image-Line bvba) C:\Users\Artur\Downloads\diagnostic.exe 2014-01-30 19:13 - 2014-01-27 17:48 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Bioshock 2014-01-30 17:49 - 2014-01-30 00:21 - 00000870 _____ () C:\Users\Artur\Desktop\SequoiaView.lnk 2014-01-30 17:38 - 2014-01-30 17:21 - 00000000 ____D () C:\Windows\erdnt 2014-01-30 17:37 - 2014-01-30 17:37 - 00003086 _____ () C:\Windows\System32\Tasks\{8C509B95-4AED-4364-AE28-EC7D28D746E8} 2014-01-30 17:34 - 2013-03-24 01:46 - 00000000 ____D () C:\Users\Artur\AppData\Local\VirtualStore 2014-01-30 17:20 - 2014-01-30 17:19 - 05177551 ____R (Swearware) C:\Users\Artur\Downloads\ComboFix.exe 2014-01-30 09:19 - 2013-09-26 21:54 - 00000000 ____D () C:\Users\DefaultAppPool 2014-01-30 07:16 - 2014-01-24 21:14 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-01-30 07:03 - 2013-03-24 10:32 - 00000000 ____D () C:\Program Files (x86)\VstPlugins 2014-01-30 06:39 - 2014-01-30 06:39 - 00000000 _____ () C:\Windows\setuperr.log 2014-01-30 00:21 - 2014-01-30 00:21 - 00567047 _____ () C:\Users\Artur\Downloads\Sequoia1.3Install.exe 2014-01-30 00:21 - 2014-01-30 00:21 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SequoiaView 2014-01-30 00:21 - 2014-01-30 00:21 - 00000000 ____D () C:\Program Files\SequoiaView 2014-01-29 22:16 - 2013-03-24 11:07 - 00000000 ____D () C:\Program Files\Native Instruments 2014-01-29 22:16 - 2013-03-24 11:07 - 00000000 ____D () C:\Program Files\Common Files\Native Instruments 2014-01-29 22:15 - 2012-04-22 10:26 - 00000000 ____D () C:\Program Files (x86)\Sugar Bytes 2014-01-29 22:14 - 2013-11-23 09:33 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-01-29 22:14 - 2013-08-11 15:51 - 00000000 ____D () C:\ProgramData\NexonUS 2014-01-29 22:09 - 2013-03-26 07:04 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\uTorrent 2014-01-29 22:09 - 2013-03-24 16:55 - 00000000 ____D () C:\Windows\Minidump 2014-01-29 22:09 - 2013-03-24 02:05 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\DAEMON Tools Lite 2014-01-29 22:09 - 2013-03-24 01:18 - 00000000 ____D () C:\Windows\Panther 2014-01-29 22:09 - 2013-03-23 23:16 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\BitTorrent 2014-01-29 14:00 - 2013-03-24 01:46 - 00000000 ____D () C:\Users\Artur 2014-01-27 17:55 - 2014-01-27 17:48 - 00000000 ____D () C:\Users\Artur\Documents\Bioshock 2014-01-27 15:27 - 2013-03-24 01:50 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-27 14:50 - 2013-11-18 20:25 - 00000000 ____D () C:\Users\Artur\AppData\Local\Warframe 2014-01-27 13:21 - 2014-01-27 13:21 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi 2014-01-27 06:58 - 2014-01-25 12:35 - 00028189 _____ () C:\Users\Artur\Desktop\kiew.odt 2014-01-27 06:53 - 2014-01-26 00:09 - 01680555 _____ () C:\Users\Artur\Desktop\Demonstration in Kiew.pptx 2014-01-26 01:51 - 2014-01-26 01:51 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-01-26 01:51 - 2014-01-26 01:51 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-01-25 23:08 - 2014-01-25 23:07 - 00648646 _____ () C:\Users\Artur\Desktop\fürarturwennerpremiereprohatdamitseinevideosnicewerden.prproj 2014-01-25 22:45 - 2014-01-25 22:19 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Blueberry 2014-01-25 22:19 - 2014-01-25 22:19 - 00000000 ____D () C:\Users\Artur\Documents\BB FlashBack Movies 2014-01-25 22:19 - 2014-01-25 22:18 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\LogSys 2014-01-25 22:18 - 2014-01-25 22:18 - 00037376 _____ (Blueberry Consultants Ltd.) C:\Windows\system32\bbcap.dll 2014-01-25 22:18 - 2014-01-25 22:18 - 00005632 _____ (Blueberry Consultants Ltd.) C:\Windows\system32\bbchlp.dll 2014-01-25 22:18 - 2014-01-25 22:18 - 00004608 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\Drivers\bbcap.sys 2014-01-25 22:18 - 2014-01-25 22:18 - 00000000 ____D () C:\ProgramData\LogSys 2014-01-25 22:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-01-25 21:27 - 2014-01-25 20:56 - 00000000 ____D () C:\Users\Artur\Documents\Ableton 2014-01-25 20:57 - 2014-01-25 20:53 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Ableton 2014-01-25 20:53 - 2014-01-25 20:53 - 00000000 ____D () C:\Program Files\Common Files\Propellerhead Software 2014-01-25 08:14 - 2009-07-14 05:45 - 00317176 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-01-24 22:03 - 2013-03-24 02:01 - 00069848 _____ () C:\Users\Artur\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-24 21:17 - 2014-01-24 21:17 - 00002937 _____ () C:\Users\Artur\Desktop\Microsoft PowerPoint 2010.lnk 2014-01-24 21:17 - 2014-01-24 21:17 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services 2014-01-24 21:17 - 2014-01-24 21:14 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-01-24 21:17 - 2013-08-03 21:54 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-01-24 21:15 - 2014-01-24 21:15 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-24 21:15 - 2014-01-24 21:15 - 00000000 ____D () C:\Program Files\Microsoft Office 2014-01-24 21:15 - 2009-07-14 19:18 - 00000000 ____D () C:\Windows\ShellNew 2014-01-24 21:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-01-24 21:14 - 2014-01-24 21:14 - 00000000 ____D () C:\Users\Artur\AppData\Local\Microsoft Help 2014-01-23 20:58 - 2013-04-13 22:11 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-01-21 03:53 - 2014-01-09 18:40 - 01179576 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-01-21 03:53 - 2014-01-09 18:40 - 01048152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-01-19 02:28 - 2013-04-26 15:51 - 00000000 ____D () C:\Users\Artur\AppData\Local\NETGEARGenie 2014-01-19 02:24 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-01-19 00:35 - 2013-04-03 13:50 - 00000000 ____D () C:\Users\Artur\Documents\My Cheat Tables 2014-01-19 00:15 - 2014-01-19 00:15 - 00001085 _____ () C:\Users\Artur\Desktop\Cheat Engine.lnk 2014-01-19 00:15 - 2014-01-19 00:15 - 00000000 ____D () C:\Program Files (x86)\Cheat Engine 6.3 2014-01-18 21:58 - 2013-03-30 23:29 - 00000000 ____D () C:\Users\Artur\AppData\Local\Adobe 2014-01-18 21:57 - 2013-03-23 23:32 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-18 21:57 - 2013-03-23 23:32 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-18 21:57 - 2013-03-23 23:32 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-18 21:37 - 2014-01-18 21:37 - 00000851 _____ () C:\Users\Artur\Desktop\µTorrent.lnk 2014-01-18 21:37 - 2014-01-18 21:37 - 00000831 _____ () C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-01-18 12:43 - 2013-11-27 14:24 - 00000000 ____D () C:\Users\Artur\.gimp-2.6 2014-01-18 12:40 - 2014-01-18 12:40 - 00002773 _____ () C:\Users\Artur\.recently-used.xbel 2014-01-18 12:40 - 2013-12-31 11:35 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\gtk-2.0 2014-01-17 06:49 - 2014-01-17 06:49 - 00000000 ____D () C:\ProgramData\Oracle 2014-01-17 06:49 - 2014-01-17 06:48 - 00005327 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-17 06:49 - 2013-06-29 10:06 - 00000000 ____D () C:\Program Files (x86)\Java 2014-01-15 22:47 - 2013-08-08 08:14 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-15 22:45 - 2013-03-23 22:10 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-15 21:42 - 2014-01-11 17:14 - 00000000 ____D () C:\Users\Artur\Desktop\Neuer Ordner 2014-01-10 12:30 - 2013-09-26 20:55 - 00000000 ____D () C:\Users\Artur\Documents\My Games 2014-01-09 21:03 - 2014-01-09 21:03 - 00000000 ____D () C:\Users\Artur\Documents\MGR 2014-01-09 19:25 - 2014-01-09 19:25 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-09 19:24 - 2014-01-09 19:24 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-09 19:24 - 2014-01-09 19:24 - 00000000 ____D () C:\Program Files\Realtek 2014-01-09 19:20 - 2014-01-09 19:20 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-01-09 19:20 - 2013-04-04 07:03 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-01-09 18:59 - 2014-01-09 18:56 - 00000000 ____D () C:\Users\Artur\AppData\Local\NVIDIA Corporation 2014-01-09 18:59 - 2014-01-09 18:42 - 00000000 ____D () C:\Users\Artur\AppData\Local\NVIDIA 2014-01-09 18:58 - 2013-03-24 01:50 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-09 18:53 - 2013-03-24 01:48 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-09 18:40 - 2014-01-09 18:40 - 00001347 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-01-09 18:36 - 2014-01-09 18:36 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-01-09 17:58 - 2014-01-09 17:57 - 00448512 _____ (OldTimer Tools) C:\Users\Artur\Downloads\TFC.exe 2014-01-09 17:50 - 2014-01-09 17:50 - 00000000 ____D () C:\Users\Artur\AppData\Local\SlimWare Utilities Inc 2014-01-09 17:49 - 2014-01-09 17:49 - 00002467 _____ () C:\Users\Public\Desktop\SlimDrivers.lnk 2014-01-09 17:49 - 2014-01-09 17:49 - 00000000 ____D () C:\Users\Public\Documents\Downloaded Installers 2014-01-09 17:48 - 2014-01-09 17:48 - 00858432 _____ (SlimWare Utilities, Inc.) C:\Users\Artur\Downloads\SlimDrivers-setup_32705.exe 2014-01-09 17:43 - 2014-01-09 17:43 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-01-09 17:42 - 2014-01-09 17:42 - 04645232 _____ (Piriform Ltd) C:\Users\Artur\Downloads\ccsetup409.exe 2014-01-09 17:42 - 2013-07-14 20:32 - 00000000 ____D () C:\Program Files\CCleaner 2014-01-09 17:37 - 2014-01-09 17:37 - 15920792 _____ (IObit ) C:\Users\Artur\Downloads\driver12_booster_setup.exe 2014-01-09 17:37 - 2014-01-09 17:36 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Artur\Downloads\spybot-2.2.exe 2014-01-09 17:26 - 2013-10-30 12:25 - 00000000 ____D () C:\Program Files\FreeFixer 2014-01-09 16:39 - 2014-01-09 16:36 - 00033978 _____ () C:\Users\Artur\Downloads\FRST.txt 2014-01-09 16:04 - 2013-12-22 22:12 - 00000000 ____D () C:\Program Files\UVI Workstation x64 2014-01-09 16:04 - 2013-03-24 22:35 - 00000000 ____D () C:\Program Files\VstPlugins 2014-01-09 15:43 - 2014-01-09 15:43 - 00001115 _____ () C:\Users\Artur\Desktop\Free Disk Analyzer.lnk 2014-01-09 15:29 - 2014-01-09 15:29 - 00000000 ____D () C:\Users\Artur\AppData\Local\DiskAnalyzer 2014-01-09 15:29 - 2014-01-09 15:29 - 00000000 ____D () C:\Program Files (x86)\Free Disk Analyzer 2014-01-09 15:28 - 2014-01-09 15:28 - 00000000 ____D () C:\ProgramData\DiskAnalyzer 2014-01-09 15:27 - 2014-01-09 15:27 - 11680559 _____ (Extensoft) C:\Users\Artur\Downloads\FreeDiskAnalyzer.exe 2014-01-09 06:59 - 2014-01-09 06:58 - 01931770 _____ (Farbar) C:\Users\Artur\Downloads\FRST64.exe 2014-01-08 21:32 - 2014-01-08 21:32 - 00244624 _____ () C:\Users\Artur\Downloads\Mofiki's AutoClicker Premium v1.0.0.3.zip 2014-01-07 22:59 - 2014-01-07 22:59 - 01233962 _____ () C:\Users\Artur\Downloads\adwcleaner.exe 2014-01-07 22:53 - 2014-01-07 22:50 - 00000000 ____D () C:\Program Files (x86)\UnHackMe 2014-01-07 22:51 - 2014-01-07 22:51 - 00000002 RSHOT () C:\Windows\winstart.bat 2014-01-07 22:51 - 2014-01-07 22:51 - 00000002 RSHOT () C:\Windows\SysWOW64\AUTOEXEC.NT 2014-01-07 22:51 - 2014-01-07 22:51 - 00000000 ____D () C:\Users\Artur\Documents\RegRun2 2014-01-07 21:41 - 2014-01-07 21:41 - 00528888 _____ () C:\Users\Artur\Documents\disktec.zip 2014-01-07 15:00 - 2009-07-14 06:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-01-03 21:20 - 2014-01-03 21:20 - 00000000 ____D () C:\Users\Artur\Documents\NBGI 2014-01-03 18:54 - 2014-01-03 18:54 - 06373376 _____ () C:\Users\Artur\Downloads\hamachi09.msi 2014-01-02 23:40 - 2014-01-02 23:40 - 00000000 ____D () C:\Users\Artur\AppData\Local\CDWLauncher 2014-01-02 22:15 - 2014-01-02 22:14 - 00000000 ____D () C:\Users\Artur\AppData\Local\PAYDAY 2014-01-02 02:27 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache Some content of TEMP: ==================== C:\Users\Artur\AppData\Local\Temp\NGM.exe C:\Users\Artur\AppData\Local\Temp\NGMDll.dll C:\Users\Artur\AppData\Local\Temp\NGMResource.dll C:\Users\Artur\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-24 17:17 ==================== End Of Log ============================ |
01.02.2014, 17:40 | #12 |
/// the machine /// TB-Ausbilder | Windows 7: Festplatte füllt sich von selbstESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
01.02.2014, 23:32 | #13 |
| Windows 7: Festplatte füllt sich von selbst werds gleich machen Ich glaube ich kriege noch die Krise! Combofix will nicht gehen, Malwarebytes hängt sich auf und ESET stopt jetzt auch einfach mal so bei 49%! Es stopt bei desktop.ini ist das normal? Denn es hängt schon ne ganze weile daran. Und Security Check hängt auch bei "Performing System Health Check" |
02.02.2014, 07:40 | #14 |
/// the machine /// TB-Ausbilder | Windows 7: Festplatte füllt sich von selbst Poste einfach mal en frisches FRST log und mach nen Vollscan mit deinem AV Programm
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
02.02.2014, 18:55 | #15 |
| Windows 7: Festplatte füllt sich von selbst -_- avast stopt auch einfach. Ich teste gerade ob Avira geht. Ich weiß wirklich nicht was los ist. Könnte das der Virus/Trojaner sein der einfach alle Anti Virus Programme stoppt? WOW 5 stunden und 30 min und es hat gerade mal 10 % gescannt.... gibt es vielleicht einen schnelleren Anti Virus Programm? Ich muss wohl doch formartierten kein Virenscanner funktioniert Avast hat gehangen. Habe es deinstalliert und wieder installiert und jetzt gehts wieder hoffe ich. Wow 1% und Avast hat schon 4 infizierte Dateien gefunden! |
Themen zu Windows 7: Festplatte füllt sich von selbst |
adblock, ahnung, anderen, bingbar, board, ccsetup, download, falsch, festplatte, focus, frage, frst64.exe durchgeführt, hilfe bei trojaner, leute, log, log auswerten, lösung, min, msiinstaller, natürlich, neu, platte, problem, refresh, sache, sachen, scan, speicherplatz, trojaner, trojaner board, viren, virtualbox, wichtige, win64, windows, windows 7, windows 7 64 bit |