|
Plagegeister aller Art und deren Bekämpfung: WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc.Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
16.02.2014, 23:24 | #1 |
| WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Hallo liebes Trojaner-Board-Forum! Ich bin vorhin im Netz unterwegs gewesen.. Es hat sich ein Pop-Up geöffnet, obwohl ich AdBlock verwende. Ich wollte dieses Fenster schließen, als sich eine neue Seite öffnete mit dem Inhalt: WARNUNG!!! POLIZEI!!!! Ihr Browser wurde gesperrt und all ihre Daten verschlüsselt.. Zahlen sie xy... Adblock wurde automatisch geschlossen, ich habe sofort reagiert und blitzschnell den TaskM geöffnet um Chrome zu schließen.. Geschafft habe ich es.. Passiert ist bis jetzt nichts, doch ich habe bedenken, ob ich etwas auf meinem System bekommen habe.. Man weiß ja heutzutage nie. Ich verwende Kaspersky.. Schnell-Scan hat keine Probleme gefunden.. Java wurde sofort im Browser Deaktiviert. Könnt ihr mir helfen, um zu sehen, ob sich da vielleicht was eingeschlichen haben könnte? Vielen dank schon mal!! |
16.02.2014, 23:36 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Hallo und
__________________Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
16.02.2014, 23:53 | #3 |
| WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Nein, ich verwende nur Kaspersky.
__________________Nach dem ersten Scan wurde nur die FRST.txt erstellt, keine andere. Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-02-2014 Ran by Alex (administrator) on ALEX-PC on 16-02-2014 23:47:41 Running from C:\Users\Alex\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe (Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Spotify Ltd) C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.EXE (Spotify Ltd) C:\Users\Alex\AppData\Roaming\Spotify\spotify.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (OCS) C:\Users\Alex\AppData\Local\Temp\OCS\ocs_v71a.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-03-27] (Intel Corporation) HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Spotify Web Helper] - C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2013-12-19] (Spotify Ltd) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Google Update] - C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-02-04] (Google Inc.) AppInit_DLLs-x32: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll => File Not Found IFEO\gamebooster.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\unins000.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.hyrican.de HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&q={searchTerms}&SSPV= SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&q={searchTerms}&SSPV= SearchScopes: HKCU - {1D9852CD-7B4F-40B4-BFBD-585BDC36E590} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-4&o=APN10261&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=^AGS&apn_dtid=^YYYYYY^YY^DE&apn_uid=b10dc064-4b57-4b6f-a007-d7930e08d9f5&apn_sauid=1EEE05F5-CDD0-466E-B9B3-60A2C8BFEC5C SearchScopes: HKCU - {663C16BD-703A-4CA9-85DC-F1F8BD58E28D} URL = hxxp://feed.snap.do/?publisher=SnapdoOpenCandy&dpid=SnapdoOpenCandy&co=DE&userid=54728d0c-c1c1-40a3-bbe8-b69833c9529f&searchtype=ds&q={searchTerms} BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - No File BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 155.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default FF SelectedSearchEngine: Conduit Search FF Homepage: hxxp://search.conduit.com/?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&SSPV= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @idsoftware.com/QuakeLive - C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npnxgameEU.dll (Nexon) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\plugins\npArcPluginFF.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google) FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll () FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Alex\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Alex\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Alex\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npgtpo3dautoplugin.dll () FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npo1d.dll (Google) FF SearchPlugin: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\searchplugins\conduit-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-15] FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt Chrome: ======= CHR HomePage: hxxp://search.conduit.com/?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&SSPV= CHR Extension: (Google Docs) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-25] CHR Extension: (Google Drive) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-25] CHR Extension: (YouTube) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-25] CHR Extension: (Adblock Plus) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-11-25] CHR Extension: (Google-Suche) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-25] CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2013-11-25] CHR Extension: (GFACE Experience Plugin) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejdlfmdbdibkbfdpjocdaolcheehmpol [2013-11-30] CHR Extension: (AdBlock) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-11-25] CHR Extension: (Sicherer Zahlungsverkehr) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2013-11-25] CHR Extension: (Content Blocker) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2013-11-25] CHR Extension: (Virtual Keyboard) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2013-11-25] CHR Extension: (Google Wallet) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-25] CHR Extension: (Google Mail) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-25] CHR Extension: (Anti-Banner) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2013-11-25] CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\online_banking_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\content_blocker_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\virtkbd.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [koalekbhpbggkcfhkkbolikjoaobbppi] - C:\Program Files (x86)\PutLockerDownloader\PutLockerDownloader10.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx [2012-12-28] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-01-24] () S3 BRSptSvc; C:\ProgramData\BitRaider\BRSptSvc.exe [477960 2014-01-06] (BitRaider, LLC) R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () R2 Intel(R) Small Business Advantage; C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [49376 2012-02-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-19] (Intel Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4784312 2014-01-15] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-10-19] () R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== S3 BRDriver64; C:\ProgramData\BitRaider\BRDriver64.sys [75048 2013-10-03] (BitRaider) R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider) S3 hxsyol; C:\AeriaGames\AuraKingdom\avital\hxsy64.sys [86352 2013-11-27] () R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [24496 2011-12-19] (Intel Corporation) S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [637360 2011-12-19] (Intel Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [7717984 2013-10-18] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [626272 2013-10-18] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-08-28] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-08-28] (Kaspersky Lab ZAO) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) S3 PciIsaSerial; C:\Windows\system32\drivers\PciIsaSerial.sys [68608 2008-12-19] (Windows (R) Codename Longhorn DDK provider) S3 PciPPorts; C:\Windows\system32\drivers\PciPPorts.sys [96768 2009-07-23] () S3 PciSPorts; C:\Windows\system32\drivers\PciSPorts.sys [122880 2008-12-19] () R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-12-16] (TuneUp Software) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\1.3\temp\FairplayKD.sys [X] U5 klflt; C:\Windows\System32\Drivers\klflt.sys [90208 2013-10-18] (Kaspersky Lab ZAO) S3 MSICDSetup; \??\D:\CDriver64.sys [X] S3 NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [X] S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X] S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Whitelisted) =================== |
17.02.2014, 00:15 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Log ist unvollständig und das andere Log fehlt
__________________ Logfiles bitte immer in CODE-Tags posten |
17.02.2014, 00:49 | #5 |
| WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Hallo, Ich habe genau das gemacht was sie beschrieben haben. Leider habe ich nur das erhalten was ich ihnen gepostet habe. Ich habe versucht das gleiche zu wiederholen. Am ende des Scans habe ich folgendes erhalten: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-02-2014 Ran by Alex (administrator) on ALEX-PC on 17-02-2014 00:24:21 Running from C:\Users\Alex\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe (Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Spotify Ltd) C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.EXE (Spotify Ltd) C:\Users\Alex\AppData\Roaming\Spotify\spotify.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\War Thunder\aces.exe (www.Bandisoft.com) C:\Users\Alex\Desktop\Bandicam\bdcam.exe (www.Bandisoft.com) C:\Users\Alex\Desktop\Bandicam\bdcam64.bin ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-03-27] (Intel Corporation) HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Spotify Web Helper] - C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2013-12-19] (Spotify Ltd) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Google Update] - C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-02-04] (Google Inc.) AppInit_DLLs-x32: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll => File Not Found IFEO\gamebooster.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\unins000.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.hyrican.de HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&q={searchTerms}&SSPV= SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&q={searchTerms}&SSPV= SearchScopes: HKCU - {1D9852CD-7B4F-40B4-BFBD-585BDC36E590} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-4&o=APN10261&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=^AGS&apn_dtid=^YYYYYY^YY^DE&apn_uid=b10dc064-4b57-4b6f-a007-d7930e08d9f5&apn_sauid=1EEE05F5-CDD0-466E-B9B3-60A2C8BFEC5C SearchScopes: HKCU - {663C16BD-703A-4CA9-85DC-F1F8BD58E28D} URL = hxxp://feed.snap.do/?publisher=SnapdoOpenCandy&dpid=SnapdoOpenCandy&co=DE&userid=54728d0c-c1c1-40a3-bbe8-b69833c9529f&searchtype=ds&q={searchTerms} BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - No File BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 155.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default FF SelectedSearchEngine: Conduit Search FF Homepage: hxxp://search.conduit.com/?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&SSPV= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @idsoftware.com/QuakeLive - C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npnxgameEU.dll (Nexon) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\plugins\npArcPluginFF.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google) FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll () FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Alex\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Alex\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Alex\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npgtpo3dautoplugin.dll () FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npo1d.dll (Google) FF SearchPlugin: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\searchplugins\conduit-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-15] FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt Chrome: ======= CHR HomePage: hxxp://search.conduit.com/?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&SSPV= CHR Extension: (Google Docs) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-25] CHR Extension: (Google Drive) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-25] CHR Extension: (YouTube) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-25] CHR Extension: (Adblock Plus) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-11-25] CHR Extension: (Google-Suche) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-25] CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2013-11-25] CHR Extension: (GFACE Experience Plugin) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejdlfmdbdibkbfdpjocdaolcheehmpol [2013-11-30] CHR Extension: (AdBlock) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-11-25] CHR Extension: (Sicherer Zahlungsverkehr) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2013-11-25] CHR Extension: (Content Blocker) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2013-11-25] CHR Extension: (Virtual Keyboard) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2013-11-25] CHR Extension: (Google Wallet) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-25] CHR Extension: (Google Mail) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-25] CHR Extension: (Anti-Banner) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2013-11-25] CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\online_banking_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\content_blocker_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\virtkbd.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [koalekbhpbggkcfhkkbolikjoaobbppi] - C:\Program Files (x86)\PutLockerDownloader\PutLockerDownloader10.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx [2012-12-28] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-01-24] () S3 BRSptSvc; C:\ProgramData\BitRaider\BRSptSvc.exe [477960 2014-01-06] (BitRaider, LLC) R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () R2 Intel(R) Small Business Advantage; C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [49376 2012-02-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-19] (Intel Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4784312 2014-01-15] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-10-19] () R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== S3 BRDriver64; C:\ProgramData\BitRaider\BRDriver64.sys [75048 2013-10-03] (BitRaider) R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider) S3 hxsyol; C:\AeriaGames\AuraKingdom\avital\hxsy64.sys [86352 2013-11-27] () R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [24496 2011-12-19] (Intel Corporation) S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [637360 2011-12-19] (Intel Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [7717984 2013-10-18] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [626272 2013-10-18] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-08-28] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-08-28] (Kaspersky Lab ZAO) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) S3 PciIsaSerial; C:\Windows\system32\drivers\PciIsaSerial.sys [68608 2008-12-19] (Windows (R) Codename Longhorn DDK provider) S3 PciPPorts; C:\Windows\system32\drivers\PciPPorts.sys [96768 2009-07-23] () S3 PciSPorts; C:\Windows\system32\drivers\PciSPorts.sys [122880 2008-12-19] () R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-12-16] (TuneUp Software) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\1.3\temp\FairplayKD.sys [X] U5 klflt; C:\Windows\System32\Drivers\klflt.sys [90208 2013-10-18] (Kaspersky Lab ZAO) S3 MSICDSetup; \??\D:\CDriver64.sys [X] S3 NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [X] S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X] S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-17 00:22 - 2014-02-17 00:24 - 00024916 _____ () C:\Users\Alex\Desktop\FRST.txt 2014-02-16 23:35 - 2014-02-16 23:35 - 02152448 _____ (Farbar) C:\Users\Alex\Downloads\FRST64.exe 2014-02-16 23:35 - 2014-02-16 23:35 - 02152448 _____ (Farbar) C:\Users\Alex\Desktop\FRST64.exe 2014-02-16 23:22 - 2014-02-16 23:22 - 00614816 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\AdwCleaner - CHIP-Downloader.exe 2014-02-16 21:47 - 2014-02-16 21:47 - 14200736 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.2_setup.exe 2014-02-16 21:44 - 2014-02-16 21:44 - 02224501 _____ () C:\Users\Alex\Downloads\[0.8.11]KT_Crosshair_Mjolnir_v2.742.rar 2014-02-16 21:36 - 2014-02-16 21:38 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (3).exe 2014-02-15 22:01 - 2014-02-15 22:12 - 00000000 ____D () C:\Program Files (x86)\Naturalsoft 2014-02-15 14:59 - 2014-02-15 14:59 - 00065359 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.rar 2014-02-15 14:58 - 2014-02-15 14:58 - 00075654 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.wav 2014-02-15 14:22 - 2014-02-15 14:22 - 33294684 _____ () C:\Users\Alex\Downloads\fmoddesigner43604win-installer.exe 2014-02-15 14:22 - 2014-02-15 14:22 - 00143447 _____ () C:\Users\Alex\Downloads\ssfdp.zip 2014-02-15 12:11 - 2014-02-15 12:11 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599 (1).rar 2014-02-15 11:54 - 2014-02-15 11:54 - 00111376 _____ () C:\Users\Alex\AppData\Local\recently-used.xbel 2014-02-15 11:26 - 2014-02-15 11:26 - 00038937 _____ () C:\Users\Alex\Desktop\schlurp.xcf 2014-02-15 11:13 - 2014-02-15 11:13 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Desktop\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:11 - 2014-02-15 11:13 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:09 - 2014-02-15 11:11 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (1).exe 2014-02-14 21:56 - 2014-02-14 22:00 - 61212284 _____ () C:\Users\Alex\Desktop\20131207_164820.mp4 2014-02-14 20:56 - 2014-02-14 20:56 - 00026567 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.7z 2014-02-14 20:48 - 2014-02-14 20:48 - 00038468 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.zip 2014-02-14 16:22 - 2014-02-14 16:23 - 14252755 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.1_setup.exe 2014-02-14 15:58 - 2014-02-14 15:59 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN.exe 2014-02-13 19:29 - 2014-02-16 10:24 - 00000000 ____D () C:\Users\Alex\Desktop\GFX 2014-02-13 11:32 - 2014-02-15 22:12 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Naturalsoft 2014-02-13 11:31 - 2014-02-15 22:12 - 00000000 ____D () C:\Users\Alex\Documents\Naturalsoft 2014-02-13 11:31 - 2014-02-13 11:31 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Desktop\standardsetup.exe 2014-02-13 11:30 - 2014-02-13 11:31 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Downloads\standardsetup.exe 2014-02-13 10:15 - 2014-02-13 10:15 - 14249870 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.0_setup.exe 2014-02-12 14:30 - 2014-02-12 14:30 - 00000000 ____D () C:\Users\Alex\Documents\Codemasters 2014-02-12 14:20 - 2014-02-12 14:20 - 00466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00121880 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00000000 ____D () C:\Program Files (x86)\OpenAL 2014-02-12 14:20 - 2008-04-28 12:29 - 00805400 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmp2CDE.tmp 2014-02-12 14:19 - 2008-04-28 12:29 - 00805400 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmp2CCD.tmp 2014-02-12 14:16 - 2014-02-12 14:16 - 00000000 ____D () C:\Program Files (x86)\Codemasters 2014-02-12 14:11 - 2014-02-12 14:13 - 00000000 ____D () C:\Users\Alex\Desktop\Grid 2014-02-12 13:50 - 2014-02-12 13:56 - 937281756 _____ () C:\Users\Alex\Downloads\grid_demo.zip 2014-02-12 12:31 - 2014-02-12 12:31 - 01873912 _____ () C:\Users\Alex\Downloads\Warframe_2013-06-10_21-49-50-79._Png 2014-02-11 19:34 - 2014-02-11 19:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\{91094F4B-05EB-4C0F-B5F6-371871BFDC5B} 2014-02-11 19:14 - 2014-02-11 19:14 - 00000000 ____D () C:\Users\Alex\AppData\Local\Avg2014 2014-02-11 16:12 - 2014-02-11 16:12 - 00000000 ____D () C:\Users\Alex\Documents\ACR 2014-02-11 16:02 - 2014-02-11 16:27 - 00000000 ____D () C:\Program Files (x86)\ACR 2014-02-11 16:00 - 2014-02-11 16:00 - 634936568 _____ (Eutechnyx, Ltd ) C:\Users\Alex\Downloads\ACR_setup.exe 2014-02-11 15:56 - 2014-02-11 15:57 - 00710848 _____ ( ) C:\Users\Alex\Downloads\COMPUTER_BILD-Download-Manager_fuer_ACR_setup.exe 2014-02-11 13:15 - 2014-02-11 13:15 - 00000657 _____ () C:\Users\Public\Desktop\World of Tanks.lnk 2014-02-11 13:14 - 2014-02-16 22:11 - 00000000 ____D () C:\Users\Alex\Desktop\WoT 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu.exe 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu (1).exe 2014-02-11 13:00 - 2014-02-11 13:00 - 00015598 _____ () C:\Users\Alex\Desktop\RADIALPERFEKT.rar 2014-02-10 19:58 - 2014-02-10 19:58 - 00953010 _____ () C:\Users\Alex\Downloads\13900708235100_france_Bat_Chatillon155_58_murovanka.wotreplay 2014-02-10 19:51 - 2014-02-10 19:51 - 01149282 _____ () C:\Users\Alex\Downloads\13913363495846_germany_VK4502P_ruinberg.wotreplay 2014-02-10 19:46 - 2014-02-10 19:46 - 00775038 _____ () C:\Users\Alex\Downloads\13835638757003_ussr_KV1_north_america.wotreplay 2014-02-10 17:30 - 2014-02-10 17:30 - 00003940 _____ () C:\Users\Alex\Desktop\WOT SONG.txt 2014-02-10 15:22 - 2014-02-10 15:22 - 00000000 ____D () C:\Users\Alex\Desktop\Replays 2014-02-10 15:14 - 2014-02-10 15:14 - 01247754 _____ () C:\Users\Alex\Downloads\13920322650136_france_Bat_Chatillon25t_steppes.wotreplay 2014-02-10 15:08 - 2014-02-10 15:08 - 00910854 _____ () C:\Users\Alex\Downloads\13920411536424_france_AMX_12t_45_north_america.wotreplay 2014-02-10 12:37 - 2014-02-10 12:37 - 01001812 _____ () C:\Users\Alex\Downloads\13920324752231_china_Ch15_59_16_himmelsdorf.wotreplay 2014-02-09 17:16 - 2014-02-09 17:16 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\steamvr 2014-02-09 11:32 - 2014-02-09 11:32 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (4).exe 2014-02-09 00:44 - 2014-02-09 00:44 - 00015598 _____ () C:\Users\Alex\Desktop\Scaleform.rar 2014-02-08 00:43 - 2014-02-08 00:44 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE (1).exe 2014-02-07 21:08 - 2014-02-07 21:08 - 01032847 _____ () C:\Users\Alex\Downloads\WoT-Battle-11.wma 2014-02-07 19:38 - 2014-02-07 19:38 - 02403548 _____ () C:\Users\Alex\Downloads\J1mB0_s_Crosshair_Mod_v1.35.zip 2014-02-07 19:36 - 2014-02-07 19:36 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (3).exe 2014-02-07 18:08 - 2014-02-07 18:09 - 00933674 _____ () C:\Users\Alex\Desktop\20140211_1800_ussr-ST_I_35_steppes.wotreplay 2014-02-07 16:08 - 2014-02-07 16:08 - 33730085 _____ () C:\Users\Alex\Downloads\E-100_№110_Algiz.rar 2014-02-07 15:55 - 2014-02-07 15:59 - 29620378 _____ () C:\Users\Alex\Downloads\E-100_№105_lee002.rar 2014-02-06 23:20 - 2014-02-06 23:20 - 00175366 _____ () C:\Users\Alex\Downloads\4C756B6173.rar 2014-02-06 00:07 - 2014-02-06 00:07 - 00000093 _____ () C:\Users\Alex\Desktop\bush-middle-finger.png.url 2014-02-05 18:14 - 2014-02-05 18:14 - 00046807 _____ () C:\Users\Alex\Downloads\enemy-vehicle-destroyed.wma 2014-02-05 17:57 - 2014-02-05 17:57 - 01307743 _____ () C:\Users\Alex\Downloads\WoT-Battle-1.wma 2014-02-05 13:58 - 2014-02-05 13:58 - 00035346 _____ () C:\Users\Alex\Downloads\ReceivedDamage-v1.8.zip 2014-02-05 12:27 - 2014-02-05 12:27 - 00225878 _____ () C:\Users\Alex\Downloads\World of tanks Rauch Effekte.exe 2014-02-04 22:24 - 2014-02-16 23:43 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA.job 2014-02-04 22:24 - 2014-02-16 16:43 - 00001064 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core.job 2014-02-04 22:24 - 2014-02-12 16:38 - 00004084 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA 2014-02-04 22:24 - 2014-02-12 16:38 - 00003688 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Downloads\GoogleVoiceAndVideoSetup.exe 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Desktop\GoogleVoiceAndVideoSetup.exe 2014-02-04 21:56 - 2014-02-04 21:56 - 07834449 _____ () C:\Users\Alex\Downloads\OBS_0_60b_Installer.exe 2014-02-04 21:30 - 2014-02-04 21:30 - 00000000 ____D () C:\Users\Alex\AppData\Local\EdgeOfReality 2014-02-04 20:27 - 2014-02-04 20:28 - 00000000 ____D () C:\Users\Alex\Desktop\Cheat Engine 2014-02-04 16:13 - 2014-02-04 16:13 - 02100691 _____ () C:\Users\Alex\Downloads\E75_luka_animeskins.zip 2014-02-04 13:54 - 2014-02-04 13:56 - 12875607 _____ () C:\Users\Alex\Downloads\E-75_№115_lee002.rar 2014-02-04 13:51 - 2014-02-04 13:51 - 11878832 _____ () C:\Users\Alex\Downloads\E-75_№127_Dr_Von_Lederhosen.rar 2014-02-03 22:39 - 2014-02-03 22:39 - 08065840 _____ (Cheat Engine ) C:\Users\Alex\Downloads\CheatEngine63.exe 2014-02-03 15:15 - 2014-02-03 15:15 - 51064354 _____ () C:\Users\Alex\Desktop\realere version+gui.rar 2014-02-03 15:14 - 2014-02-03 15:15 - 51064354 _____ () C:\Users\Alex\Downloads\realere version+gui.rar 2014-02-03 14:53 - 2014-02-03 14:53 - 66177436 _____ () C:\Users\Alex\Downloads\B&T.zip 2014-02-03 14:46 - 2014-02-03 14:46 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (2).exe 2014-02-02 14:05 - 2014-02-02 22:28 - 00001797 _____ () C:\Users\Alex\Desktop\Free Audio Editor.lnk 2014-02-02 14:05 - 2014-02-02 14:05 - 11110208 _____ (FreeAudioStudio Inc. ) C:\Users\Alex\Downloads\FreeAudioEditor2012_de.exe 2014-02-02 10:34 - 2014-02-02 10:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\{33C2AFAD-75E5-437B-AF20-E3E0291A0EE3} 2014-02-01 14:57 - 2014-01-09 13:52 - 00000000 ____D () C:\Users\Alex\Desktop\Radial Menu Editor v1.5 2014-02-01 13:52 - 2014-02-01 13:54 - 471531128 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 1.6 EN.exe 2014-02-01 12:41 - 2014-02-01 12:41 - 352523365 _____ () C:\Users\Alex\Desktop\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:40 - 2014-02-01 12:38 - 72588470 _____ () C:\Users\Alex\Desktop\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-02-01 12:37 - 2014-02-01 12:41 - 352523365 _____ () C:\Users\Alex\Downloads\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:37 - 2014-02-01 12:38 - 72588470 _____ () C:\Users\Alex\Downloads\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-01-31 14:04 - 2014-01-31 14:04 - 00227422 _____ () C:\Users\Alex\Desktop\New.MMM 2014-01-31 13:24 - 2014-01-15 14:34 - 01078912 _____ () C:\Users\Alex\Downloads\setup.exe 2014-01-31 13:24 - 2014-01-15 14:25 - 00000766 _____ () C:\Users\Alex\Downloads\layout.bin 2014-01-31 13:24 - 2014-01-15 14:17 - 01111951 _____ () C:\Users\Alex\Downloads\data1.cab 2014-01-31 13:24 - 2014-01-15 14:17 - 00034912 _____ () C:\Users\Alex\Downloads\data1.hdr 2014-01-31 13:24 - 2014-01-15 14:17 - 00002384 _____ () C:\Users\Alex\Downloads\setup.ini 2014-01-31 13:24 - 2014-01-15 14:15 - 00000376 _____ () C:\Users\Alex\Downloads\info.snail 2014-01-31 13:24 - 2010-09-28 16:26 - 00529808 _____ (Flexera Software, Inc.) C:\Users\Alex\Downloads\setup.ocx 2014-01-31 13:24 - 2010-09-20 10:39 - 00579584 _____ (Flexera Software, Inc.) C:\Users\Alex\Downloads\ISSetup.dll 2014-01-31 13:24 - 2010-06-22 14:30 - 00025860 _____ () C:\Users\Alex\Downloads\0x0407.ini 2014-01-31 12:58 - 2014-01-31 13:24 - 00000000 ____D () C:\Users\Alex\Downloads\Agt of Wulin 2014-01-31 12:58 - 2014-01-31 12:58 - 00696824 _____ () C:\Users\Alex\Downloads\Wulin_DE.exe 2014-01-31 12:49 - 2014-01-31 12:50 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE.exe 2014-01-31 11:29 - 2014-01-31 11:29 - 00001116 _____ () C:\Users\Public\Desktop\MAGIX Music Maker 2014.lnk 2014-01-31 11:26 - 2014-01-31 11:27 - 388717800 _____ (MAGIX AG) C:\Users\Alex\Downloads\music_maker_2014_370mb_chip_de.exe 2014-01-31 11:25 - 2014-01-31 11:27 - 00267624 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HM0 2014-01-31 11:25 - 2014-01-31 11:27 - 00037524 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HMP 2014-01-30 20:50 - 2014-01-30 20:52 - 00000000 ____D () C:\Users\Alex\Desktop\IndieGames 2014-01-30 13:47 - 2014-01-30 13:47 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql (1).exe 2014-01-30 13:15 - 2014-01-30 13:15 - 00000000 ____D () C:\Users\Alex\AppData\Local\{D9BA6412-05B2-46AE-A274-AF36B789EA6D} 2014-01-30 11:30 - 2014-01-30 11:32 - 186944442 _____ () C:\Users\Alex\Downloads\eurotrucksimulator2_1_3_1_patch.zip 2014-01-30 10:34 - 2014-01-30 10:34 - 01369930 _____ () C:\Users\Alex\Desktop\20140130_1023_germany-PzVIB_Tiger_II_01_karelia.wotreplay 2014-01-30 00:52 - 2014-01-30 00:53 - 32688810 _____ () C:\Users\Alex\Downloads\tsm_map_4_5_6_entpacken.7z 2014-01-30 00:42 - 2014-01-30 00:44 - 07616961 _____ () C:\Users\Alex\Downloads\ETS2 tc_mega_mod_v6.zip 2014-01-30 00:37 - 2014-01-30 00:39 - 142820005 _____ () C:\Users\Alex\Downloads\WinterModV1.0.rar 2014-01-30 00:12 - 2014-01-30 00:12 - 00000386 _____ () C:\Users\Alex\Desktop\LAN-Verbindung - Verknüpfung.lnk 2014-01-29 14:28 - 2014-01-29 14:28 - 00000000 ____D () C:\Users\Alex\AppData\Local\{083ED1B7-10B3-4BE1-8AA7-320EACE257F8} 2014-01-29 13:25 - 2014-01-29 14:17 - 00229230 _____ () C:\Users\Alex\Desktop\2014-01-29.MVP 2014-01-28 22:24 - 2014-02-11 13:20 - 00000000 ____D () C:\Users\Alex\Documents\Euro Truck Simulator 2 2014-01-28 22:24 - 2014-01-28 22:24 - 00001339 _____ () C:\Users\Public\Desktop\Euro Truck Simulator 2.lnk 2014-01-28 22:23 - 2014-01-28 22:24 - 00000000 ____D () C:\Program Files (x86)\Euro Truck Simulator 2 2014-01-28 22:20 - 2014-01-28 22:22 - 671664336 _____ (SCS Software ) C:\Users\Alex\Downloads\EuroTruckSimulator2_1_8_2_5_setup.exe 2014-01-28 14:15 - 2014-01-28 14:15 - 00050745 _____ () C:\Users\Alex\Downloads\DRIVE-THRU.zip 2014-01-27 22:24 - 2014-01-27 22:24 - 55306786 _____ () C:\Users\Alex\Downloads\hawkthorne-win-x86.zip 2014-01-27 22:24 - 2014-01-27 22:24 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\hawkthorne_release 2014-01-27 21:39 - 2014-01-27 21:39 - 18471950 _____ () C:\Users\Alex\Downloads\meandmyshadow-0.4-win32.zip 2014-01-27 20:11 - 2014-01-27 20:11 - 00001354 _____ () C:\Users\Alex\Desktop\GeForce Experience.lnk 2014-01-27 20:11 - 2014-01-27 20:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\NVIDIA Corporation 2014-01-27 20:11 - 2013-12-10 03:15 - 00982232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-01-27 20:11 - 2013-12-10 03:14 - 01100248 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-01-27 20:10 - 2014-01-27 20:10 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-01-27 20:08 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-27 20:08 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-27 20:08 - 2013-12-05 09:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-01-27 20:08 - 2013-12-05 09:42 - 00035104 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-01-27 20:08 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-01-27 20:08 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-27 20:08 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-27 19:50 - 2014-01-27 19:53 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-01-27 17:43 - 2014-01-27 17:43 - 04999914 _____ () C:\Users\Alex\Documents\OfLightAndShadow 2014-01-27 17-34-06-674.xcf 2014-01-27 17:05 - 2014-01-27 17:06 - 00000000 ____D () C:\Users\Alex\AppData\Local\{CACA7073-3573-40B4-9085-94B27252F5A7} 2014-01-27 16:24 - 2014-01-27 16:25 - 441930402 _____ () C:\Users\Alex\Downloads\Lets Test Zombie Driver HD [Deutsch] [HD] Zombiematsche hoch 10.mp4 2014-01-27 14:58 - 2014-01-27 14:58 - 12407230 _____ () C:\Users\Alex\Documents\NewOutroBild.xcf 2014-01-27 13:38 - 2014-01-27 13:38 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Desktop\OfLightAndShadow.exe 2014-01-27 13:37 - 2014-01-27 13:38 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Downloads\OfLightAndShadow.exe 2014-01-27 13:34 - 2014-01-31 11:29 - 00000000 ____D () C:\Users\Public\Documents\MAGIX 2014-01-27 13:34 - 2014-01-31 11:25 - 00000000 ____D () C:\Users\Alex\Documents\MAGIX_MusicEditor 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Xara 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Magix 2014-01-27 13:32 - 2014-01-31 11:29 - 00000000 ____D () C:\Program Files (x86)\MAGIX 2014-01-27 13:27 - 2014-01-27 13:27 - 02849104 _____ (MAGIX AG) C:\Users\Alex\Downloads\trial_videodeluxe2014premium_dlm.exe 2014-01-27 13:14 - 2014-01-27 13:16 - 476908585 _____ () C:\Users\Alex\Downloads\TDHv21.zip 2014-01-27 12:40 - 2014-01-27 12:43 - 07106772 _____ () C:\Users\Alex\Downloads\Bandicam.1.8.7.347.rar 2014-01-26 20:37 - 2014-01-26 20:37 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (1).exe 2014-01-26 17:19 - 2014-01-26 17:19 - 39178560 _____ (Atomix Productions) C:\Users\Alex\Downloads\install_virtualdj_home_v7.4.1.exe 2014-01-26 17:17 - 2014-01-26 18:27 - 00000000 ____D () C:\Program Files (x86)\Winamp 2014-01-26 17:17 - 2014-01-26 17:17 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516 (1).exe 2014-01-26 17:16 - 2014-01-26 17:17 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516.exe 2014-01-26 17:13 - 2014-01-26 17:15 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\vlc 2014-01-26 17:12 - 2014-01-26 17:15 - 00000000 ____D () C:\Program Files\VideoLAN 2014-01-26 17:11 - 2014-01-26 17:11 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\VLC media player 64 Bit - CHIP-Downloader.exe 2014-01-26 15:33 - 2014-01-30 13:36 - 00000000 ____D () C:\Users\Alex\Desktop\Banger Rebellieren 2014-01-26 15:33 - 2014-01-26 15:31 - 220324536 _____ () C:\Users\Alex\Desktop\Banger Rebellieren (Deluxe Version).rar 2014-01-26 15:29 - 2014-01-26 15:31 - 220324536 _____ () C:\Users\Alex\Downloads\Banger Rebellieren (Deluxe Version).rar 2014-01-26 13:40 - 2014-01-26 13:40 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct (1).exe 2014-01-26 13:08 - 2014-01-26 13:08 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup.exe 2014-01-25 22:45 - 2014-01-25 22:45 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\YoudaGames 2014-01-25 18:08 - 2014-01-25 18:08 - 00000000 ____D () C:\Users\Alex\AppData\Local\{4FBDC520-9D1C-40CE-834C-5A457311B2BA} 2014-01-25 16:14 - 2014-01-25 16:14 - 04245246 _____ () C:\Users\Alex\Documents\al3xone gruen.xcf 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_.zip 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_ (1).zip 2014-01-25 15:05 - 2014-01-25 15:05 - 07887147 _____ () C:\Users\Alex\Downloads\Urban_Designs_Vectors_Brushes_by_redheadstock.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00964991 _____ () C:\Users\Alex\Downloads\Splatter_Brushes_by_getfirefox.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00232675 _____ () C:\Users\Alex\Downloads\GIMP_Splatter_Brushes_by_Project_GimpBC.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00125426 _____ () C:\Users\Alex\Downloads\bombing.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00017779 _____ () C:\Users\Alex\Downloads\mostwasted.zip 2014-01-25 14:58 - 2014-01-25 14:58 - 00035633 _____ () C:\Users\Alex\Downloads\maelstrom.zip 2014-01-25 13:44 - 2014-01-25 13:44 - 02237478 _____ () C:\Users\Alex\Downloads\PzVIB_Tiger_II_№200_Red_Fox_Six.zip 2014-01-25 13:34 - 2014-01-25 13:35 - 06703608 _____ () C:\Users\Alex\Downloads\G16_PzVIB_Tiger_II_203_Sgt_Krollnikow51.rar 2014-01-24 22:48 - 2014-01-24 22:48 - 06904899 _____ () C:\Users\Alex\Documents\Surgeon Simulator templater.xcf 2014-01-24 18:26 - 2014-02-08 16:48 - 00000000 ____D () C:\Users\Alex\Desktop\wot testserver1 (1) 2014-01-24 18:26 - 2014-01-24 18:26 - 00000775 _____ () C:\Users\Public\Desktop\World of Tanks - Common Test.lnk 2014-01-24 18:25 - 2014-01-24 18:25 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct.exe 2014-01-24 15:28 - 2014-01-24 15:29 - 00000000 ____D () C:\Users\Alex\AppData\Local\{96970C5E-C513-4659-8CBD-A1EB21C3D2DB} 2014-01-24 01:14 - 2014-01-24 01:14 - 00000000 ____D () C:\ProgramData\Bohemia Interactive Studio 2014-01-24 01:07 - 2014-01-24 01:07 - 00001343 _____ () C:\Users\Public\Desktop\DayZ Commander.lnk 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZCommander 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Program Files (x86)\Dotjosh Studios 2014-01-24 00:57 - 2014-01-24 00:57 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-01-24 00:16 - 2014-02-10 21:40 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 OA 2014-01-24 00:16 - 2014-01-24 01:15 - 00000000 ____D () C:\Users\Alex\Documents\ArmA 2 2014-01-23 21:11 - 2014-01-23 21:11 - 00086285 _____ () C:\Users\Alex\Downloads\Default_GIMP_Brushes_by_Project_GimpBC.zip 2014-01-23 16:25 - 2014-01-23 16:25 - 00000000 ____D () C:\Users\Alex\AppData\Local\THQ 2014-01-23 16:25 - 2008-07-12 08:18 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-01-23 10:04 - 2014-01-23 10:04 - 01077532 _____ () C:\Users\Alex\Downloads\3d-hentai-04.wmv 2014-01-22 20:52 - 2014-01-22 20:52 - 00000000 ____D () C:\Users\Alex\AppData\Local\Ascaron Entertainment 2014-01-22 15:15 - 2014-01-22 15:15 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599.rar 2014-01-22 00:32 - 2014-01-22 00:34 - 269530647 _____ () C:\Users\Alex\Downloads\0505_2CD.rar 2014-01-22 00:16 - 2014-01-22 00:16 - 12749346 _____ () C:\Users\Alex\Downloads\SnowyNight.themepack 2014-01-22 00:16 - 2014-01-22 00:16 - 09714067 _____ () C:\Users\Alex\Downloads\Transformers3.themepack 2014-01-22 00:12 - 2014-01-22 00:12 - 00504817 _____ () C:\Users\Alex\Downloads\Gaia09_7.tvs 2014-01-22 00:11 - 2014-01-22 00:11 - 00694627 _____ () C:\Users\Alex\Downloads\CrystalSystemaRed_7.tvs 2014-01-22 00:09 - 2014-01-22 00:09 - 00695292 _____ () C:\Users\Alex\Downloads\CrystalSystemaBlue_7.tvs 2014-01-22 00:06 - 2013-12-18 10:01 - 00043320 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2014-01-22 00:06 - 2013-12-18 10:01 - 00036152 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll 2014-01-21 23:49 - 2014-01-21 23:49 - 31419822 _____ () C:\Users\Alex\Downloads\JDownloader.zip 2014-01-21 23:22 - 2014-01-21 23:22 - 00650182 _____ () C:\Users\Alex\Downloads\1200951734_San Andreas v1.00 Patch American to German.rar 2014-01-21 21:42 - 2014-01-21 21:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\Risen2 2014-01-21 19:18 - 2014-01-21 19:18 - 00000000 ____D () C:\Users\Alex\AppData\Local\{1F830A71-A22A-4D40-A01F-832778958AE6} 2014-01-21 19:03 - 2014-01-21 19:03 - 00000000 ____D () C:\Users\Alex\Documents\ZombieDriverHD 2014-01-21 18:29 - 2014-01-28 22:37 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZ 2014-01-21 18:29 - 2014-01-21 18:29 - 00000000 ____D () C:\Users\Alex\Documents\DayZ 2014-01-21 17:22 - 2014-01-21 17:22 - 00000000 ____D () C:\Users\Alex\Documents\Duke Nukem Forever 2014-01-21 16:36 - 2014-01-21 16:36 - 00000561 _____ () C:\Windows\wmsetup.log 2014-01-21 16:36 - 2014-01-21 16:36 - 00000000 ____D () C:\Users\Alex\Documents\DeadIsland 2014-01-20 14:04 - 2014-01-20 14:04 - 00000000 ____D () C:\Users\Alex\AppData\Local\{4C2A8127-71F9-4BB9-92CA-799C04F4C107} 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Program Files\Realtek 2014-01-19 23:29 - 2013-11-05 19:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-19 23:29 - 2013-11-05 18:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-01-19 23:29 - 2013-11-05 15:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-19 23:29 - 2013-11-04 19:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-19 23:29 - 2013-11-04 11:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-19 23:29 - 2013-10-30 16:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-01-19 23:29 - 2013-10-28 17:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-19 23:29 - 2013-10-25 10:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-01-19 23:29 - 2013-10-18 16:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-19 23:29 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-19 23:29 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-19 23:29 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-01-19 23:29 - 2013-10-09 20:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-01-19 23:29 - 2013-10-09 20:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-01-19 23:29 - 2013-10-09 20:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-19 23:29 - 2013-10-07 11:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-19 23:29 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-01-19 23:29 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-01-19 23:29 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-01-19 23:29 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-19 23:29 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-01-19 23:29 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-01-19 23:29 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-01-19 23:29 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-01-19 23:29 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-01-19 23:29 - 2013-08-24 03:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-01-19 23:29 - 2013-08-24 03:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-01-19 23:29 - 2013-08-24 03:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-01-19 23:29 - 2013-08-24 03:14 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-01-19 23:29 - 2013-08-20 17:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-01-19 23:29 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-01-19 23:29 - 2013-08-14 16:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-01-19 23:29 - 2013-08-14 16:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-01-19 23:29 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-01-19 23:29 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-19 23:29 - 2013-07-23 15:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-01-19 23:29 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-01-19 23:29 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-01-19 23:29 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-01-19 23:29 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-01-19 23:29 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-19 23:29 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-01-19 23:29 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-01-19 23:29 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-01-19 23:29 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-01-19 23:29 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-01-19 23:29 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-01-19 23:29 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-01-19 23:29 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-01-19 23:29 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-01-19 23:29 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-01-19 23:29 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-01-19 23:29 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-01-19 23:29 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-01-19 23:29 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-01-19 23:29 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-01-19 23:29 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-01-19 23:23 - 2014-01-19 23:23 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\64bit_Win7_Win8_Win81_R273 - CHIP-Downloader.exe 2014-01-19 17:21 - 2014-01-19 17:21 - 00000000 ____D () C:\Users\Alex\AppData\Local\{3ECF4624-E3BF-4FB2-AA19-395266FBC006} 2014-01-19 16:50 - 2014-01-19 16:52 - 197451096 _____ (MAGIX AG) C:\Users\Alex\Downloads\magix_video_deluxe_2014_188mb_chip_de (1).exe 2014-01-19 16:22 - 2014-01-28 13:50 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Sony 2014-01-19 16:22 - 2014-01-19 16:49 - 00000000 ____D () C:\Users\Alex\AppData\Local\Sony 2014-01-19 16:22 - 2014-01-19 16:49 - 00000000 ____D () C:\ProgramData\Sony 2014-01-19 16:15 - 2014-01-19 16:15 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Sony Vegas Pro - CHIP-Downloader.exe 2014-01-19 15:49 - 2014-01-19 15:49 - 09092187 _____ () C:\Users\Alex\Downloads\duke_sound_wot.rar 2014-01-19 13:57 - 2014-01-19 13:57 - 02237923 _____ () C:\Users\Alex\Downloads\21-Smoke-Brush.zip 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (3).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (2).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (1).exe 2014-01-18 15:26 - 2014-01-18 15:27 - 06130877 _____ () C:\Users\Alex\Downloads\Неоновые-иконки.rar 2014-01-18 12:10 - 2014-01-18 12:10 - 00002770 _____ () C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 ==================== One Month Modified Files and Folders ======= 2014-02-17 00:24 - 2014-02-17 00:22 - 00024916 _____ () C:\Users\Alex\Desktop\FRST.txt 2014-02-17 00:24 - 2013-07-03 22:54 - 00000000 ____D () C:\FRST 2014-02-17 00:22 - 2013-01-05 00:19 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Skype 2014-02-17 00:19 - 2013-02-21 15:56 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Spotify 2014-02-16 23:55 - 2013-02-28 19:55 - 00000000 ____D () C:\Program Files (x86)\War Thunder 2014-02-16 23:53 - 2013-11-25 16:33 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-16 23:43 - 2014-02-04 22:24 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA.job 2014-02-16 23:35 - 2014-02-16 23:35 - 02152448 _____ (Farbar) C:\Users\Alex\Downloads\FRST64.exe 2014-02-16 23:35 - 2014-02-16 23:35 - 02152448 _____ (Farbar) C:\Users\Alex\Desktop\FRST64.exe 2014-02-16 23:33 - 2013-06-17 11:35 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-16 23:22 - 2014-02-16 23:22 - 00614816 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\AdwCleaner - CHIP-Downloader.exe 2014-02-16 23:03 - 2013-02-14 12:12 - 00081616 _____ () C:\Windows\setupact.log 2014-02-16 22:41 - 2013-11-25 16:33 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-16 22:41 - 2013-08-28 15:14 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-02-16 22:41 - 2013-01-04 23:51 - 01592492 _____ () C:\Windows\WindowsUpdate.log 2014-02-16 22:22 - 2012-09-08 18:12 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-16 22:11 - 2014-02-11 13:14 - 00000000 ____D () C:\Users\Alex\Desktop\WoT 2014-02-16 21:47 - 2014-02-16 21:47 - 14200736 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.2_setup.exe 2014-02-16 21:44 - 2014-02-16 21:44 - 02224501 _____ () C:\Users\Alex\Downloads\[0.8.11]KT_Crosshair_Mjolnir_v2.742.rar 2014-02-16 21:38 - 2014-02-16 21:36 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (3).exe 2014-02-16 16:44 - 2009-07-14 05:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-16 16:44 - 2009-07-14 05:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-16 16:43 - 2014-02-04 22:24 - 00001064 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core.job 2014-02-16 10:24 - 2014-02-13 19:29 - 00000000 ____D () C:\Users\Alex\Desktop\GFX 2014-02-16 10:00 - 2012-05-23 08:09 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-16 10:00 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-15 22:12 - 2014-02-15 22:01 - 00000000 ____D () C:\Program Files (x86)\Naturalsoft 2014-02-15 22:12 - 2014-02-13 11:32 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Naturalsoft 2014-02-15 22:12 - 2014-02-13 11:31 - 00000000 ____D () C:\Users\Alex\Documents\Naturalsoft 2014-02-15 14:59 - 2014-02-15 14:59 - 00065359 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.rar 2014-02-15 14:58 - 2014-02-15 14:58 - 00075654 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.wav 2014-02-15 14:22 - 2014-02-15 14:22 - 33294684 _____ () C:\Users\Alex\Downloads\fmoddesigner43604win-installer.exe 2014-02-15 14:22 - 2014-02-15 14:22 - 00143447 _____ () C:\Users\Alex\Downloads\ssfdp.zip 2014-02-15 12:11 - 2014-02-15 12:11 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599 (1).rar 2014-02-15 11:54 - 2014-02-15 11:54 - 00111376 _____ () C:\Users\Alex\AppData\Local\recently-used.xbel 2014-02-15 11:54 - 2013-01-31 14:33 - 00000000 ____D () C:\Users\Alex\.gimp-2.8 2014-02-15 11:26 - 2014-02-15 11:26 - 00038937 _____ () C:\Users\Alex\Desktop\schlurp.xcf 2014-02-15 11:13 - 2014-02-15 11:13 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Desktop\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:13 - 2014-02-15 11:11 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:11 - 2014-02-15 11:09 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (1).exe 2014-02-14 22:00 - 2014-02-14 21:56 - 61212284 _____ () C:\Users\Alex\Desktop\20131207_164820.mp4 2014-02-14 20:56 - 2014-02-14 20:56 - 00026567 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.7z 2014-02-14 20:48 - 2014-02-14 20:48 - 00038468 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.zip 2014-02-14 16:48 - 2013-11-25 16:33 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-14 16:48 - 2013-11-25 16:33 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-14 16:23 - 2014-02-14 16:22 - 14252755 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.1_setup.exe 2014-02-14 15:59 - 2014-02-14 15:58 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN.exe 2014-02-14 10:50 - 2009-07-14 05:45 - 00573616 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-02-13 11:52 - 2013-10-25 11:30 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Audacity 2014-02-13 11:31 - 2014-02-13 11:31 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Desktop\standardsetup.exe 2014-02-13 11:31 - 2014-02-13 11:30 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Downloads\standardsetup.exe 2014-02-13 10:29 - 2013-01-05 00:15 - 00171192 _____ () C:\Users\Alex\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-13 10:15 - 2014-02-13 10:15 - 14249870 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.0_setup.exe 2014-02-12 16:38 - 2014-02-04 22:24 - 00004084 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA 2014-02-12 16:38 - 2014-02-04 22:24 - 00003688 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core 2014-02-12 14:30 - 2014-02-12 14:30 - 00000000 ____D () C:\Users\Alex\Documents\Codemasters 2014-02-12 14:30 - 2013-06-21 13:39 - 00000000 ____D () C:\ProgramData\Codemasters 2014-02-12 14:20 - 2014-02-12 14:20 - 00466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00121880 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00000000 ____D () C:\Program Files (x86)\OpenAL 2014-02-12 14:20 - 2013-02-18 18:46 - 00979920 _____ () C:\Windows\DirectX.log 2014-02-12 14:16 - 2014-02-12 14:16 - 00000000 ____D () C:\Program Files (x86)\Codemasters 2014-02-12 14:16 - 2012-05-08 06:30 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-12 14:13 - 2014-02-12 14:11 - 00000000 ____D () C:\Users\Alex\Desktop\Grid 2014-02-12 13:56 - 2014-02-12 13:50 - 937281756 _____ () C:\Users\Alex\Downloads\grid_demo.zip 2014-02-12 12:54 - 2013-06-10 23:38 - 00000000 ____D () C:\Users\Alex\AppData\Local\Warframe 2014-02-12 12:31 - 2014-02-12 12:31 - 01873912 _____ () C:\Users\Alex\Downloads\Warframe_2013-06-10_21-49-50-79._Png 2014-02-12 11:06 - 2009-07-14 06:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-02-12 00:35 - 2013-12-03 11:29 - 00008232 _____ () C:\Users\Alex\Documents\TombRaider.log 2014-02-11 19:35 - 2014-02-11 19:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\{91094F4B-05EB-4C0F-B5F6-371871BFDC5B} 2014-02-11 19:14 - 2014-02-11 19:14 - 00000000 ____D () C:\Users\Alex\AppData\Local\Avg2014 2014-02-11 19:13 - 2013-09-01 18:42 - 00000000 ____D () C:\Users\Alex\Desktop\World of Tanks 2014-02-11 19:13 - 2013-01-05 01:27 - 00000000 ____D () C:\Users\Alex\AppData\Local\CrashDumps 2014-02-11 16:27 - 2014-02-11 16:02 - 00000000 ____D () C:\Program Files (x86)\ACR 2014-02-11 16:12 - 2014-02-11 16:12 - 00000000 ____D () C:\Users\Alex\Documents\ACR 2014-02-11 16:00 - 2014-02-11 16:00 - 634936568 _____ (Eutechnyx, Ltd ) C:\Users\Alex\Downloads\ACR_setup.exe 2014-02-11 15:58 - 2013-01-06 17:07 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\TS3Client 2014-02-11 15:57 - 2014-02-11 15:56 - 00710848 _____ ( ) C:\Users\Alex\Downloads\COMPUTER_BILD-Download-Manager_fuer_ACR_setup.exe 2014-02-11 13:20 - 2014-01-28 22:24 - 00000000 ____D () C:\Users\Alex\Documents\Euro Truck Simulator 2 2014-02-11 13:15 - 2014-02-11 13:15 - 00000657 _____ () C:\Users\Public\Desktop\World of Tanks.lnk 2014-02-11 13:15 - 2013-02-22 17:34 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu.exe 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu (1).exe 2014-02-11 13:00 - 2014-02-11 13:00 - 00015598 _____ () C:\Users\Alex\Desktop\RADIALPERFEKT.rar 2014-02-10 21:40 - 2014-01-24 00:16 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 OA 2014-02-10 19:58 - 2014-02-10 19:58 - 00953010 _____ () C:\Users\Alex\Downloads\13900708235100_france_Bat_Chatillon155_58_murovanka.wotreplay 2014-02-10 19:51 - 2014-02-10 19:51 - 01149282 _____ () C:\Users\Alex\Downloads\13913363495846_germany_VK4502P_ruinberg.wotreplay 2014-02-10 19:46 - 2014-02-10 19:46 - 00775038 _____ () C:\Users\Alex\Downloads\13835638757003_ussr_KV1_north_america.wotreplay 2014-02-10 17:30 - 2014-02-10 17:30 - 00003940 _____ () C:\Users\Alex\Desktop\WOT SONG.txt 2014-02-10 15:22 - 2014-02-10 15:22 - 00000000 ____D () C:\Users\Alex\Desktop\Replays 2014-02-10 15:14 - 2014-02-10 15:14 - 01247754 _____ () C:\Users\Alex\Downloads\13920322650136_france_Bat_Chatillon25t_steppes.wotreplay 2014-02-10 15:08 - 2014-02-10 15:08 - 00910854 _____ () C:\Users\Alex\Downloads\13920411536424_france_AMX_12t_45_north_america.wotreplay 2014-02-10 12:37 - 2014-02-10 12:37 - 01001812 _____ () C:\Users\Alex\Downloads\13920324752231_china_Ch15_59_16_himmelsdorf.wotreplay 2014-02-09 17:16 - 2014-02-09 17:16 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\steamvr 2014-02-09 11:32 - 2014-02-09 11:32 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (4).exe 2014-02-09 00:44 - 2014-02-09 00:44 - 00015598 _____ () C:\Users\Alex\Desktop\Scaleform.rar 2014-02-08 20:36 - 2013-06-25 10:11 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Mozilla 2014-02-08 16:48 - 2014-01-24 18:26 - 00000000 ____D () C:\Users\Alex\Desktop\wot testserver1 (1) 2014-02-08 02:15 - 2013-02-18 21:39 - 00000000 ____D () C:\Users\Alex\Documents\My Games 2014-02-08 00:44 - 2014-02-08 00:43 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE (1).exe 2014-02-07 21:08 - 2014-02-07 21:08 - 01032847 _____ () C:\Users\Alex\Downloads\WoT-Battle-11.wma 2014-02-07 19:38 - 2014-02-07 19:38 - 02403548 _____ () C:\Users\Alex\Downloads\J1mB0_s_Crosshair_Mod_v1.35.zip 2014-02-07 19:36 - 2014-02-07 19:36 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (3).exe 2014-02-07 18:09 - 2014-02-07 18:08 - 00933674 _____ () C:\Users\Alex\Desktop\20140211_1800_ussr-ST_I_35_steppes.wotreplay 2014-02-07 16:08 - 2014-02-07 16:08 - 33730085 _____ () C:\Users\Alex\Downloads\E-100_№110_Algiz.rar 2014-02-07 15:59 - 2014-02-07 15:55 - 29620378 _____ () C:\Users\Alex\Downloads\E-100_№105_lee002.rar 2014-02-06 23:20 - 2014-02-06 23:20 - 00175366 _____ () C:\Users\Alex\Downloads\4C756B6173.rar 2014-02-06 16:42 - 2013-02-21 15:57 - 00000000 ____D () C:\Users\Alex\AppData\Local\Spotify 2014-02-06 00:11 - 2014-01-07 22:39 - 00000000 ____D () C:\Users\Alex\Desktop\GFX - Selfmade 2014-02-06 00:07 - 2014-02-06 00:07 - 00000093 _____ () C:\Users\Alex\Desktop\bush-middle-finger.png.url 2014-02-05 22:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-02-05 22:17 - 2013-01-05 00:19 - 00000000 ____D () C:\ProgramData\Skype 2014-02-05 18:14 - 2014-02-05 18:14 - 00046807 _____ () C:\Users\Alex\Downloads\enemy-vehicle-destroyed.wma 2014-02-05 17:57 - 2014-02-05 17:57 - 01307743 _____ () C:\Users\Alex\Downloads\WoT-Battle-1.wma 2014-02-05 14:33 - 2013-06-17 11:35 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-05 14:33 - 2013-02-20 14:46 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-05 14:33 - 2013-02-20 14:46 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-05 13:58 - 2014-02-05 13:58 - 00035346 _____ () C:\Users\Alex\Downloads\ReceivedDamage-v1.8.zip 2014-02-05 12:38 - 2011-04-12 08:43 - 00699416 _____ () C:\Windows\system32\perfh007.dat 2014-02-05 12:38 - 2011-04-12 08:43 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-02-05 12:38 - 2009-07-14 06:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-05 12:27 - 2014-02-05 12:27 - 00225878 _____ () C:\Users\Alex\Downloads\World of tanks Rauch Effekte.exe 2014-02-05 11:32 - 2013-02-14 12:11 - 01837446 _____ () C:\Windows\PFRO.log 2014-02-04 22:48 - 2013-11-05 22:37 - 00000000 ____D () C:\Program Files (x86)\OBS 2014-02-04 22:24 - 2013-01-05 00:21 - 00000000 ____D () C:\Users\Alex\AppData\Local\Google 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Downloads\GoogleVoiceAndVideoSetup.exe 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Desktop\GoogleVoiceAndVideoSetup.exe 2014-02-04 21:58 - 2013-11-05 22:37 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\OBS 2014-02-04 21:56 - 2014-02-04 21:56 - 07834449 _____ () C:\Users\Alex\Downloads\OBS_0_60b_Installer.exe 2014-02-04 21:30 - 2014-02-04 21:30 - 00000000 ____D () C:\Users\Alex\AppData\Local\EdgeOfReality 2014-02-04 20:28 - 2014-02-04 20:27 - 00000000 ____D () C:\Users\Alex\Desktop\Cheat Engine 2014-02-04 17:55 - 2013-03-03 23:40 - 00000000 ____D () C:\Users\Alex\Desktop\Desktop zeug usw 2014-02-04 17:51 - 2013-01-06 03:05 - 00003162 _____ () C:\Windows\System32\Tasks\Game_Booster_AutoUpdate 2014-02-04 16:13 - 2014-02-04 16:13 - 02100691 _____ () C:\Users\Alex\Downloads\E75_luka_animeskins.zip 2014-02-04 13:56 - 2014-02-04 13:54 - 12875607 _____ () C:\Users\Alex\Downloads\E-75_№115_lee002.rar 2014-02-04 13:51 - 2014-02-04 13:51 - 11878832 _____ () C:\Users\Alex\Downloads\E-75_№127_Dr_Von_Lederhosen.rar 2014-02-03 22:39 - 2014-02-03 22:39 - 08065840 _____ (Cheat Engine ) C:\Users\Alex\Downloads\CheatEngine63.exe 2014-02-03 15:15 - 2014-02-03 15:15 - 51064354 _____ () C:\Users\Alex\Desktop\realere version+gui.rar 2014-02-03 15:15 - 2014-02-03 15:14 - 51064354 _____ () C:\Users\Alex\Downloads\realere version+gui.rar 2014-02-03 14:53 - 2014-02-03 14:53 - 66177436 _____ () C:\Users\Alex\Downloads\B&T.zip 2014-02-03 14:46 - 2014-02-03 14:46 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (2).exe 2014-02-02 22:28 - 2014-02-02 14:05 - 00001797 _____ () C:\Users\Alex\Desktop\Free Audio Editor.lnk 2014-02-02 14:36 - 2013-07-20 21:11 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Free Audio Editor 2014-02-02 14:05 - 2014-02-02 14:05 - 11110208 _____ (FreeAudioStudio Inc. ) C:\Users\Alex\Downloads\FreeAudioEditor2012_de.exe 2014-02-02 10:35 - 2014-02-02 10:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\{33C2AFAD-75E5-437B-AF20-E3E0291A0EE3} 2014-02-01 22:12 - 2013-01-05 01:10 - 00000000 ____D () C:\Users\Alex\AppData\Local\PokerStars.EU 2014-02-01 13:54 - 2014-02-01 13:52 - 471531128 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 1.6 EN.exe 2014-02-01 12:50 - 2012-09-16 13:09 - 00000000 ____D () C:\Program Files (x86)\TeamViewer 2014-02-01 12:41 - 2014-02-01 12:41 - 352523365 _____ () C:\Users\Alex\Desktop\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:41 - 2014-02-01 12:37 - 352523365 _____ () C:\Users\Alex\Downloads\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:38 - 2014-02-01 12:40 - 72588470 _____ () C:\Users\Alex\Desktop\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-02-01 12:38 - 2014-02-01 12:37 - 72588470 _____ () C:\Users\Alex\Downloads\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-01-31 14:04 - 2014-01-31 14:04 - 00227422 _____ () C:\Users\Alex\Desktop\New.MMM 2014-01-31 13:24 - 2014-01-31 12:58 - 00000000 ____D () C:\Users\Alex\Downloads\Agt of Wulin 2014-01-31 12:58 - 2014-01-31 12:58 - 00696824 _____ () C:\Users\Alex\Downloads\Wulin_DE.exe 2014-01-31 12:50 - 2014-01-31 12:49 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE.exe 2014-01-31 11:30 - 2013-02-17 12:31 - 00000000 ___RD () C:\Users\Alex\Documents\MAGIX 2014-01-31 11:30 - 2013-02-17 12:31 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\MAGIX 2014-01-31 11:29 - 2014-01-31 11:29 - 00001116 _____ () C:\Users\Public\Desktop\MAGIX Music Maker 2014.lnk 2014-01-31 11:29 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Public\Documents\MAGIX 2014-01-31 11:29 - 2014-01-27 13:32 - 00000000 ____D () C:\Program Files (x86)\MAGIX 2014-01-31 11:29 - 2013-02-17 12:30 - 00000000 ____D () C:\ProgramData\MAGIX 2014-01-31 11:29 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-01-31 11:27 - 2014-01-31 11:26 - 388717800 _____ (MAGIX AG) C:\Users\Alex\Downloads\music_maker_2014_370mb_chip_de.exe 2014-01-31 11:27 - 2014-01-31 11:25 - 00267624 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HM0 2014-01-31 11:27 - 2014-01-31 11:25 - 00037524 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HMP 2014-01-31 11:25 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\Documents\MAGIX_MusicEditor 2014-01-30 20:52 - 2014-01-30 20:50 - 00000000 ____D () C:\Users\Alex\Desktop\IndieGames 2014-01-30 20:50 - 2013-10-23 20:36 - 00000000 ____D () C:\Users\Alex\Desktop\Eigene Schriftzüge Wallpaper 2014-01-30 13:47 - 2014-01-30 13:47 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql (1).exe 2014-01-30 13:36 - 2014-01-26 15:33 - 00000000 ____D () C:\Users\Alex\Desktop\Banger Rebellieren 2014-01-30 13:15 - 2014-01-30 13:15 - 00000000 ____D () C:\Users\Alex\AppData\Local\{D9BA6412-05B2-46AE-A274-AF36B789EA6D} 2014-01-30 11:32 - 2014-01-30 11:30 - 186944442 _____ () C:\Users\Alex\Downloads\eurotrucksimulator2_1_3_1_patch.zip 2014-01-30 10:34 - 2014-01-30 10:34 - 01369930 _____ () C:\Users\Alex\Desktop\20140130_1023_germany-PzVIB_Tiger_II_01_karelia.wotreplay 2014-01-30 00:53 - 2014-01-30 00:52 - 32688810 _____ () C:\Users\Alex\Downloads\tsm_map_4_5_6_entpacken.7z 2014-01-30 00:44 - 2014-01-30 00:42 - 07616961 _____ () C:\Users\Alex\Downloads\ETS2 tc_mega_mod_v6.zip 2014-01-30 00:39 - 2014-01-30 00:37 - 142820005 _____ () C:\Users\Alex\Downloads\WinterModV1.0.rar 2014-01-30 00:12 - 2014-01-30 00:12 - 00000386 _____ () C:\Users\Alex\Desktop\LAN-Verbindung - Verknüpfung.lnk 2014-01-29 14:28 - 2014-01-29 14:28 - 00000000 ____D () C:\Users\Alex\AppData\Local\{083ED1B7-10B3-4BE1-8AA7-320EACE257F8} 2014-01-29 14:17 - 2014-01-29 13:25 - 00229230 _____ () C:\Users\Alex\Desktop\2014-01-29.MVP 2014-01-28 22:37 - 2014-01-21 18:29 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZ 2014-01-28 22:24 - 2014-01-28 22:24 - 00001339 _____ () C:\Users\Public\Desktop\Euro Truck Simulator 2.lnk 2014-01-28 22:24 - 2014-01-28 22:23 - 00000000 ____D () C:\Program Files (x86)\Euro Truck Simulator 2 2014-01-28 22:22 - 2014-01-28 22:20 - 671664336 _____ (SCS Software ) C:\Users\Alex\Downloads\EuroTruckSimulator2_1_8_2_5_setup.exe 2014-01-28 20:36 - 2013-02-15 10:03 - 00000000 ____D () C:\Users\Alex\AppData\Local\Adobe 2014-01-28 14:16 - 2013-06-15 20:29 - 00000000 ____D () C:\Users\Alex\Documents\GTA San Andreas User Files 2014-01-28 14:15 - 2014-01-28 14:15 - 00050745 _____ () C:\Users\Alex\Downloads\DRIVE-THRU.zip 2014-01-28 13:50 - 2014-01-19 16:22 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Sony 2014-01-27 22:24 - 2014-01-27 22:24 - 55306786 _____ () C:\Users\Alex\Downloads\hawkthorne-win-x86.zip 2014-01-27 22:24 - 2014-01-27 22:24 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\hawkthorne_release 2014-01-27 21:39 - 2014-01-27 21:39 - 18471950 _____ () C:\Users\Alex\Downloads\meandmyshadow-0.4-win32.zip 2014-01-27 20:12 - 2013-06-07 19:09 - 00000000 ____D () C:\Users\Alex\AppData\Local\NVIDIA 2014-01-27 20:11 - 2014-01-27 20:11 - 00001354 _____ () C:\Users\Alex\Desktop\GeForce Experience.lnk 2014-01-27 20:11 - 2014-01-27 20:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\NVIDIA Corporation 2014-01-27 20:11 - 2012-05-23 08:09 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-27 20:11 - 2012-05-08 06:56 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-27 20:11 - 2012-05-08 06:53 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-27 20:10 - 2014-01-27 20:10 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-01-27 19:53 - 2014-01-27 19:50 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-01-27 18:43 - 2014-01-13 20:52 - 00000000 ____D () C:\ProgramData\Nokia 2014-01-27 18:43 - 2013-09-06 15:13 - 00000000 ____D () C:\Program Files (x86)\Nokia 2014-01-27 17:43 - 2014-01-27 17:43 - 04999914 _____ () C:\Users\Alex\Documents\OfLightAndShadow 2014-01-27 17-34-06-674.xcf 2014-01-27 17:06 - 2014-01-27 17:05 - 00000000 ____D () C:\Users\Alex\AppData\Local\{CACA7073-3573-40B4-9085-94B27252F5A7} 2014-01-27 16:25 - 2014-01-27 16:24 - 441930402 _____ () C:\Users\Alex\Downloads\Lets Test Zombie Driver HD [Deutsch] [HD] Zombiematsche hoch 10.mp4 2014-01-27 15:02 - 2013-12-22 17:09 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\.minecraft 2014-01-27 14:59 - 2013-06-27 12:20 - 00000000 ____D () C:\Users\Alex\Desktop\GFX_Anfängerpack by Anonymous 2014-01-27 14:58 - 2014-01-27 14:58 - 12407230 _____ () C:\Users\Alex\Documents\NewOutroBild.xcf 2014-01-27 13:38 - 2014-01-27 13:38 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Desktop\OfLightAndShadow.exe 2014-01-27 13:38 - 2014-01-27 13:37 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Downloads\OfLightAndShadow.exe 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Xara 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Magix 2014-01-27 13:27 - 2014-01-27 13:27 - 02849104 _____ (MAGIX AG) C:\Users\Alex\Downloads\trial_videodeluxe2014premium_dlm.exe 2014-01-27 13:16 - 2014-01-27 13:14 - 476908585 _____ () C:\Users\Alex\Downloads\TDHv21.zip 2014-01-27 13:07 - 2013-09-06 15:13 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Nokia 2014-01-27 12:43 - 2014-01-27 12:40 - 07106772 _____ () C:\Users\Alex\Downloads\Bandicam.1.8.7.347.rar 2014-01-26 20:37 - 2014-01-26 20:37 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (1).exe 2014-01-26 18:27 - 2014-01-26 17:17 - 00000000 ____D () C:\Program Files (x86)\Winamp 2014-01-26 17:19 - 2014-01-26 17:19 - 39178560 _____ (Atomix Productions) C:\Users\Alex\Downloads\install_virtualdj_home_v7.4.1.exe 2014-01-26 17:17 - 2014-01-26 17:17 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516 (1).exe 2014-01-26 17:17 - 2014-01-26 17:16 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516.exe 2014-01-26 17:15 - 2014-01-26 17:13 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\vlc 2014-01-26 17:15 - 2014-01-26 17:12 - 00000000 ____D () C:\Program Files\VideoLAN 2014-01-26 17:11 - 2014-01-26 17:11 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\VLC media player 64 Bit - CHIP-Downloader.exe 2014-01-26 15:31 - 2014-01-26 15:33 - 220324536 _____ () C:\Users\Alex\Desktop\Banger Rebellieren (Deluxe Version).rar 2014-01-26 15:31 - 2014-01-26 15:29 - 220324536 _____ () C:\Users\Alex\Downloads\Banger Rebellieren (Deluxe Version).rar 2014-01-26 13:40 - 2014-01-26 13:40 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct (1).exe 2014-01-26 13:08 - 2014-01-26 13:08 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup.exe 2014-01-25 22:45 - 2014-01-25 22:45 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\YoudaGames 2014-01-25 18:08 - 2014-01-25 18:08 - 00000000 ____D () C:\Users\Alex\AppData\Local\{4FBDC520-9D1C-40CE-834C-5A457311B2BA} 2014-01-25 16:14 - 2014-01-25 16:14 - 04245246 _____ () C:\Users\Alex\Documents\al3xone gruen.xcf 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_.zip 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_ (1).zip 2014-01-25 15:05 - 2014-01-25 15:05 - 07887147 _____ () C:\Users\Alex\Downloads\Urban_Designs_Vectors_Brushes_by_redheadstock.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00964991 _____ () C:\Users\Alex\Downloads\Splatter_Brushes_by_getfirefox.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00232675 _____ () C:\Users\Alex\Downloads\GIMP_Splatter_Brushes_by_Project_GimpBC.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00125426 _____ () C:\Users\Alex\Downloads\bombing.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00017779 _____ () C:\Users\Alex\Downloads\mostwasted.zip 2014-01-25 14:58 - 2014-01-25 14:58 - 00035633 _____ () C:\Users\Alex\Downloads\maelstrom.zip 2014-01-25 13:44 - 2014-01-25 13:44 - 02237478 _____ () C:\Users\Alex\Downloads\PzVIB_Tiger_II_№200_Red_Fox_Six.zip 2014-01-25 13:35 - 2014-01-25 13:34 - 06703608 _____ () C:\Users\Alex\Downloads\G16_PzVIB_Tiger_II_203_Sgt_Krollnikow51.rar 2014-01-24 22:54 - 2013-10-13 15:39 - 00000000 ____D () C:\Users\Alex\Desktop\GTA San Andreas OFFLINE 2014-01-24 22:48 - 2014-01-24 22:48 - 06904899 _____ () C:\Users\Alex\Documents\Surgeon Simulator templater.xcf 2014-01-24 18:26 - 2014-01-24 18:26 - 00000775 _____ () C:\Users\Public\Desktop\World of Tanks - Common Test.lnk 2014-01-24 18:25 - 2014-01-24 18:25 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct.exe 2014-01-24 15:29 - 2014-01-24 15:28 - 00000000 ____D () C:\Users\Alex\AppData\Local\{96970C5E-C513-4659-8CBD-A1EB21C3D2DB} 2014-01-24 01:15 - 2014-01-24 00:16 - 00000000 ____D () C:\Users\Alex\Documents\ArmA 2 2014-01-24 01:14 - 2014-01-24 01:14 - 00000000 ____D () C:\ProgramData\Bohemia Interactive Studio 2014-01-24 01:07 - 2014-01-24 01:07 - 00001343 _____ () C:\Users\Public\Desktop\DayZ Commander.lnk 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZCommander 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Program Files (x86)\Dotjosh Studios 2014-01-24 00:57 - 2014-01-24 00:57 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-01-24 00:15 - 2013-10-21 09:09 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive 2014-01-23 21:11 - 2014-01-23 21:11 - 00086285 _____ () C:\Users\Alex\Downloads\Default_GIMP_Brushes_by_Project_GimpBC.zip 2014-01-23 16:25 - 2014-01-23 16:25 - 00000000 ____D () C:\Users\Alex\AppData\Local\THQ 2014-01-23 10:04 - 2014-01-23 10:04 - 01077532 _____ () C:\Users\Alex\Downloads\3d-hentai-04.wmv 2014-01-22 20:52 - 2014-01-22 20:52 - 00000000 ____D () C:\Users\Alex\AppData\Local\Ascaron Entertainment 2014-01-22 15:15 - 2014-01-22 15:15 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599.rar 2014-01-22 00:34 - 2014-01-22 00:32 - 269530647 _____ () C:\Users\Alex\Downloads\0505_2CD.rar 2014-01-22 00:16 - 2014-01-22 00:16 - 12749346 _____ () C:\Users\Alex\Downloads\SnowyNight.themepack 2014-01-22 00:16 - 2014-01-22 00:16 - 09714067 _____ () C:\Users\Alex\Downloads\Transformers3.themepack 2014-01-22 00:12 - 2014-01-22 00:12 - 00504817 _____ () C:\Users\Alex\Downloads\Gaia09_7.tvs 2014-01-22 00:11 - 2014-01-22 00:11 - 00694627 _____ () C:\Users\Alex\Downloads\CrystalSystemaRed_7.tvs 2014-01-22 00:09 - 2014-01-22 00:09 - 00695292 _____ () C:\Users\Alex\Downloads\CrystalSystemaBlue_7.tvs 2014-01-21 23:49 - 2014-01-21 23:49 - 31419822 _____ () C:\Users\Alex\Downloads\JDownloader.zip 2014-01-21 23:22 - 2014-01-21 23:22 - 00650182 _____ () C:\Users\Alex\Downloads\1200951734_San Andreas v1.00 Patch American to German.rar 2014-01-21 22:27 - 2014-01-09 23:13 - 00000000 ____D () C:\Program Files (x86)\Zenimax Online 2014-01-21 21:42 - 2014-01-21 21:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\Risen2 2014-01-21 19:18 - 2014-01-21 19:18 - 00000000 ____D () C:\Users\Alex\AppData\Local\{1F830A71-A22A-4D40-A01F-832778958AE6} 2014-01-21 19:03 - 2014-01-21 19:03 - 00000000 ____D () C:\Users\Alex\Documents\ZombieDriverHD 2014-01-21 18:29 - 2014-01-21 18:29 - 00000000 ____D () C:\Users\Alex\Documents\DayZ 2014-01-21 17:22 - 2014-01-21 17:22 - 00000000 ____D () C:\Users\Alex\Documents\Duke Nukem Forever 2014-01-21 16:36 - 2014-01-21 16:36 - 00000561 _____ () C:\Windows\wmsetup.log 2014-01-21 16:36 - 2014-01-21 16:36 - 00000000 ____D () C:\Users\Alex\Documents\DeadIsland 2014-01-20 21:30 - 2013-08-19 16:56 - 00000000 ____D () C:\Program Files (x86)\PokerStars.EU 2014-01-20 14:04 - 2014-01-20 14:04 - 00000000 ____D () C:\Users\Alex\AppData\Local\{4C2A8127-71F9-4BB9-92CA-799C04F4C107} 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Program Files\Realtek 2014-01-19 23:23 - 2014-01-19 23:23 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\64bit_Win7_Win8_Win81_R273 - CHIP-Downloader.exe 2014-01-19 17:21 - 2014-01-19 17:21 - 00000000 ____D () C:\Users\Alex\AppData\Local\{3ECF4624-E3BF-4FB2-AA19-395266FBC006} 2014-01-19 16:52 - 2014-01-19 16:50 - 197451096 _____ (MAGIX AG) C:\Users\Alex\Downloads\magix_video_deluxe_2014_188mb_chip_de (1).exe 2014-01-19 16:49 - 2014-01-19 16:22 - 00000000 ____D () C:\Users\Alex\AppData\Local\Sony 2014-01-19 16:49 - 2014-01-19 16:22 - 00000000 ____D () C:\ProgramData\Sony 2014-01-19 16:15 - 2014-01-19 16:15 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Sony Vegas Pro - CHIP-Downloader.exe 2014-01-19 15:49 - 2014-01-19 15:49 - 09092187 _____ () C:\Users\Alex\Downloads\duke_sound_wot.rar 2014-01-19 13:57 - 2014-01-19 13:57 - 02237923 _____ () C:\Users\Alex\Downloads\21-Smoke-Brush.zip 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (3).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (2).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (1).exe 2014-01-18 15:27 - 2014-01-18 15:26 - 06130877 _____ () C:\Users\Alex\Downloads\Неоновые-иконки.rar 2014-01-18 12:10 - 2014-01-18 12:10 - 00002770 _____ () C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 Files to move or delete: ==================== C:\Users\Alex\AppData\Roaming\Camdata.ini C:\Users\Alex\AppData\Roaming\CamLayout.ini C:\Users\Alex\AppData\Roaming\CamShapes.ini C:\Users\Alex\jagex_cl_runescape_LIVE.dat C:\Users\Alex\random.dat C:\ProgramData\winiml.dat Some content of TEMP: ==================== C:\Users\Alex\AppData\Local\Temp\79997d0e892716dc1d9c2a01795dc3fe.dll C:\Users\Alex\AppData\Local\Temp\b9e556ee429cd109bac5a9b9d9d62425.dll C:\Users\Alex\AppData\Local\Temp\bdfilters.dll C:\Users\Alex\AppData\Local\Temp\drm_dyndata_7410004.dll C:\Users\Alex\AppData\Local\Temp\dxwebsetup.exe C:\Users\Alex\AppData\Local\Temp\HiRezLauncherControls.dll C:\Users\Alex\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe C:\Users\Alex\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe C:\Users\Alex\AppData\Local\Temp\NGMDll.dll C:\Users\Alex\AppData\Local\Temp\NGMResource.dll C:\Users\Alex\AppData\Local\Temp\NGMSetup.exe C:\Users\Alex\AppData\Local\Temp\NOSEventMessages.dll C:\Users\Alex\AppData\Local\Temp\nsa9570.exe C:\Users\Alex\AppData\Local\Temp\nsaBEE5.exe C:\Users\Alex\AppData\Local\Temp\nsf989C.exe C:\Users\Alex\AppData\Local\Temp\nslB8BC.exe C:\Users\Alex\AppData\Local\Temp\nsq9B9A.exe C:\Users\Alex\AppData\Local\Temp\nss93AE.exe C:\Users\Alex\AppData\Local\Temp\nsvBBB9.exe C:\Users\Alex\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Alex\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Alex\AppData\Local\Temp\nvStereoApiI.dll C:\Users\Alex\AppData\Local\Temp\nvStInst.exe C:\Users\Alex\AppData\Local\Temp\Quarantine.exe C:\Users\Alex\AppData\Local\Temp\riftuninstall.exe C:\Users\Alex\AppData\Local\Temp\skype_amd647448122361475394209.dll C:\Users\Alex\AppData\Local\Temp\tmp9819.exe C:\Users\Alex\AppData\Local\Temp\tmpB3D4.exe C:\Users\Alex\AppData\Local\Temp\tmpC68B.exe C:\Users\Alex\AppData\Local\Temp\tmpDF2A.exe C:\Users\Alex\AppData\Local\Temp\TUUUninstallHelper.exe C:\Users\Alex\AppData\Local\Temp\unicows.dll C:\Users\Alex\AppData\Local\Temp\Uninstaller-6108.exe C:\Users\Alex\AppData\Local\Temp\Uninstaller-6676.exe C:\Users\Alex\AppData\Local\Temp\Uninstaller-6788.exe C:\Users\Alex\AppData\Local\Temp\utt450F.tmp.exe C:\Users\Alex\AppData\Local\Temp\vcredist_x86.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-06-17 08:11 ==================== End Of Log ============================ --- --- --- Vorhin habe ich folgende Meldung bekommen: Was muss ich machen? PS: Ich habe erneut einen Scan durchlaufen lassen.. immer noch nur ein Log ... |
17.02.2014, 00:50 | #6 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc.Zitat:
__________________ --> WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. |
17.02.2014, 00:52 | #7 |
| WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Hallo, ich habe meinen Beitrag Editiert.. Ich hoffe sie haben es gelesen. Ich schaue mal, ob der Haken gesetzt ist/war, sekunde. Haken war nicht gesetzt, bitte um Verzeihung!! FRST FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-02-2014 Ran by Alex (administrator) on ALEX-PC on 17-02-2014 00:48:25 Running from C:\Users\Alex\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe (Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Spotify Ltd) C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.EXE (Spotify Ltd) C:\Users\Alex\AppData\Roaming\Spotify\spotify.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (www.Bandisoft.com) C:\Users\Alex\Desktop\Bandicam\bdcam.exe (www.Bandisoft.com) C:\Users\Alex\Desktop\Bandicam\bdcam64.bin (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-03-27] (Intel Corporation) HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Spotify Web Helper] - C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2013-12-19] (Spotify Ltd) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Google Update] - C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-02-04] (Google Inc.) AppInit_DLLs-x32: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll => File Not Found IFEO\gamebooster.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\unins000.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.hyrican.de HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&q={searchTerms}&SSPV= SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&q={searchTerms}&SSPV= SearchScopes: HKCU - {1D9852CD-7B4F-40B4-BFBD-585BDC36E590} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-4&o=APN10261&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=^AGS&apn_dtid=^YYYYYY^YY^DE&apn_uid=b10dc064-4b57-4b6f-a007-d7930e08d9f5&apn_sauid=1EEE05F5-CDD0-466E-B9B3-60A2C8BFEC5C SearchScopes: HKCU - {663C16BD-703A-4CA9-85DC-F1F8BD58E28D} URL = hxxp://feed.snap.do/?publisher=SnapdoOpenCandy&dpid=SnapdoOpenCandy&co=DE&userid=54728d0c-c1c1-40a3-bbe8-b69833c9529f&searchtype=ds&q={searchTerms} BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - No File BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 155.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default FF SelectedSearchEngine: Conduit Search FF Homepage: hxxp://search.conduit.com/?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&SSPV= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @idsoftware.com/QuakeLive - C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npnxgameEU.dll (Nexon) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\plugins\npArcPluginFF.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google) FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll () FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Alex\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Alex\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Alex\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npgtpo3dautoplugin.dll () FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npo1d.dll (Google) FF SearchPlugin: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\searchplugins\conduit-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-15] FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt Chrome: ======= CHR HomePage: hxxp://search.conduit.com/?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&SSPV= CHR Extension: (Google Docs) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-25] CHR Extension: (Google Drive) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-25] CHR Extension: (YouTube) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-25] CHR Extension: (Adblock Plus) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-11-25] CHR Extension: (Google-Suche) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-25] CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2013-11-25] CHR Extension: (GFACE Experience Plugin) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejdlfmdbdibkbfdpjocdaolcheehmpol [2013-11-30] CHR Extension: (AdBlock) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-11-25] CHR Extension: (Sicherer Zahlungsverkehr) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2013-11-25] CHR Extension: (Content Blocker) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2013-11-25] CHR Extension: (Virtual Keyboard) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2013-11-25] CHR Extension: (Google Wallet) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-25] CHR Extension: (Google Mail) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-25] CHR Extension: (Anti-Banner) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2013-11-25] CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\online_banking_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\content_blocker_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\virtkbd.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [koalekbhpbggkcfhkkbolikjoaobbppi] - C:\Program Files (x86)\PutLockerDownloader\PutLockerDownloader10.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx [2012-12-28] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-01-24] () S3 BRSptSvc; C:\ProgramData\BitRaider\BRSptSvc.exe [477960 2014-01-06] (BitRaider, LLC) R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () R2 Intel(R) Small Business Advantage; C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [49376 2012-02-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-19] (Intel Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4784312 2014-01-15] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-10-19] () R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== S3 BRDriver64; C:\ProgramData\BitRaider\BRDriver64.sys [75048 2013-10-03] (BitRaider) R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider) S3 hxsyol; C:\AeriaGames\AuraKingdom\avital\hxsy64.sys [86352 2013-11-27] () R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [24496 2011-12-19] (Intel Corporation) S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [637360 2011-12-19] (Intel Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [7717984 2013-10-18] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [626272 2013-10-18] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-08-28] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-08-28] (Kaspersky Lab ZAO) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) S3 PciIsaSerial; C:\Windows\system32\drivers\PciIsaSerial.sys [68608 2008-12-19] (Windows (R) Codename Longhorn DDK provider) S3 PciPPorts; C:\Windows\system32\drivers\PciPPorts.sys [96768 2009-07-23] () S3 PciSPorts; C:\Windows\system32\drivers\PciSPorts.sys [122880 2008-12-19] () R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-12-16] (TuneUp Software) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\1.3\temp\FairplayKD.sys [X] U5 klflt; C:\Windows\System32\Drivers\klflt.sys [90208 2013-10-18] (Kaspersky Lab ZAO) S3 MSICDSetup; \??\D:\CDriver64.sys [X] S3 NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [X] S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X] S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-17 00:48 - 2014-02-17 00:48 - 00024943 _____ () C:\Users\Alex\Desktop\FRST.txt 2014-02-16 23:35 - 2014-02-16 23:35 - 02152448 _____ (Farbar) C:\Users\Alex\Downloads\FRST64.exe 2014-02-16 23:35 - 2014-02-16 23:35 - 02152448 _____ (Farbar) C:\Users\Alex\Desktop\FRST64.exe 2014-02-16 23:22 - 2014-02-16 23:22 - 00614816 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\AdwCleaner - CHIP-Downloader.exe 2014-02-16 21:47 - 2014-02-16 21:47 - 14200736 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.2_setup.exe 2014-02-16 21:44 - 2014-02-16 21:44 - 02224501 _____ () C:\Users\Alex\Downloads\[0.8.11]KT_Crosshair_Mjolnir_v2.742.rar 2014-02-16 21:36 - 2014-02-16 21:38 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (3).exe 2014-02-15 22:01 - 2014-02-15 22:12 - 00000000 ____D () C:\Program Files (x86)\Naturalsoft 2014-02-15 14:59 - 2014-02-15 14:59 - 00065359 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.rar 2014-02-15 14:58 - 2014-02-15 14:58 - 00075654 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.wav 2014-02-15 14:22 - 2014-02-15 14:22 - 33294684 _____ () C:\Users\Alex\Downloads\fmoddesigner43604win-installer.exe 2014-02-15 14:22 - 2014-02-15 14:22 - 00143447 _____ () C:\Users\Alex\Downloads\ssfdp.zip 2014-02-15 12:11 - 2014-02-15 12:11 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599 (1).rar 2014-02-15 11:54 - 2014-02-15 11:54 - 00111376 _____ () C:\Users\Alex\AppData\Local\recently-used.xbel 2014-02-15 11:26 - 2014-02-15 11:26 - 00038937 _____ () C:\Users\Alex\Desktop\schlurp.xcf 2014-02-15 11:13 - 2014-02-15 11:13 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Desktop\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:11 - 2014-02-15 11:13 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:09 - 2014-02-15 11:11 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (1).exe 2014-02-14 21:56 - 2014-02-14 22:00 - 61212284 _____ () C:\Users\Alex\Desktop\20131207_164820.mp4 2014-02-14 20:56 - 2014-02-14 20:56 - 00026567 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.7z 2014-02-14 20:48 - 2014-02-14 20:48 - 00038468 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.zip 2014-02-14 16:22 - 2014-02-14 16:23 - 14252755 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.1_setup.exe 2014-02-14 15:58 - 2014-02-14 15:59 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN.exe 2014-02-13 19:29 - 2014-02-16 10:24 - 00000000 ____D () C:\Users\Alex\Desktop\GFX 2014-02-13 11:32 - 2014-02-15 22:12 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Naturalsoft 2014-02-13 11:31 - 2014-02-15 22:12 - 00000000 ____D () C:\Users\Alex\Documents\Naturalsoft 2014-02-13 11:31 - 2014-02-13 11:31 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Desktop\standardsetup.exe 2014-02-13 11:30 - 2014-02-13 11:31 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Downloads\standardsetup.exe 2014-02-13 10:15 - 2014-02-13 10:15 - 14249870 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.0_setup.exe 2014-02-12 14:30 - 2014-02-12 14:30 - 00000000 ____D () C:\Users\Alex\Documents\Codemasters 2014-02-12 14:20 - 2014-02-12 14:20 - 00466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00121880 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00000000 ____D () C:\Program Files (x86)\OpenAL 2014-02-12 14:20 - 2008-04-28 12:29 - 00805400 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmp2CDE.tmp 2014-02-12 14:19 - 2008-04-28 12:29 - 00805400 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmp2CCD.tmp 2014-02-12 14:16 - 2014-02-12 14:16 - 00000000 ____D () C:\Program Files (x86)\Codemasters 2014-02-12 14:11 - 2014-02-12 14:13 - 00000000 ____D () C:\Users\Alex\Desktop\Grid 2014-02-12 13:50 - 2014-02-12 13:56 - 937281756 _____ () C:\Users\Alex\Downloads\grid_demo.zip 2014-02-12 12:31 - 2014-02-12 12:31 - 01873912 _____ () C:\Users\Alex\Downloads\Warframe_2013-06-10_21-49-50-79._Png 2014-02-11 19:34 - 2014-02-11 19:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\{91094F4B-05EB-4C0F-B5F6-371871BFDC5B} 2014-02-11 19:14 - 2014-02-11 19:14 - 00000000 ____D () C:\Users\Alex\AppData\Local\Avg2014 2014-02-11 16:12 - 2014-02-11 16:12 - 00000000 ____D () C:\Users\Alex\Documents\ACR 2014-02-11 16:02 - 2014-02-11 16:27 - 00000000 ____D () C:\Program Files (x86)\ACR 2014-02-11 16:00 - 2014-02-11 16:00 - 634936568 _____ (Eutechnyx, Ltd ) C:\Users\Alex\Downloads\ACR_setup.exe 2014-02-11 15:56 - 2014-02-11 15:57 - 00710848 _____ ( ) C:\Users\Alex\Downloads\COMPUTER_BILD-Download-Manager_fuer_ACR_setup.exe 2014-02-11 13:15 - 2014-02-11 13:15 - 00000657 _____ () C:\Users\Public\Desktop\World of Tanks.lnk 2014-02-11 13:14 - 2014-02-16 22:11 - 00000000 ____D () C:\Users\Alex\Desktop\WoT 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu.exe 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu (1).exe 2014-02-11 13:00 - 2014-02-11 13:00 - 00015598 _____ () C:\Users\Alex\Desktop\RADIALPERFEKT.rar 2014-02-10 19:58 - 2014-02-10 19:58 - 00953010 _____ () C:\Users\Alex\Downloads\13900708235100_france_Bat_Chatillon155_58_murovanka.wotreplay 2014-02-10 19:51 - 2014-02-10 19:51 - 01149282 _____ () C:\Users\Alex\Downloads\13913363495846_germany_VK4502P_ruinberg.wotreplay 2014-02-10 19:46 - 2014-02-10 19:46 - 00775038 _____ () C:\Users\Alex\Downloads\13835638757003_ussr_KV1_north_america.wotreplay 2014-02-10 17:30 - 2014-02-10 17:30 - 00003940 _____ () C:\Users\Alex\Desktop\WOT SONG.txt 2014-02-10 15:22 - 2014-02-10 15:22 - 00000000 ____D () C:\Users\Alex\Desktop\Replays 2014-02-10 15:14 - 2014-02-10 15:14 - 01247754 _____ () C:\Users\Alex\Downloads\13920322650136_france_Bat_Chatillon25t_steppes.wotreplay 2014-02-10 15:08 - 2014-02-10 15:08 - 00910854 _____ () C:\Users\Alex\Downloads\13920411536424_france_AMX_12t_45_north_america.wotreplay 2014-02-10 12:37 - 2014-02-10 12:37 - 01001812 _____ () C:\Users\Alex\Downloads\13920324752231_china_Ch15_59_16_himmelsdorf.wotreplay 2014-02-09 17:16 - 2014-02-09 17:16 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\steamvr 2014-02-09 11:32 - 2014-02-09 11:32 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (4).exe 2014-02-09 00:44 - 2014-02-09 00:44 - 00015598 _____ () C:\Users\Alex\Desktop\Scaleform.rar 2014-02-08 00:43 - 2014-02-08 00:44 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE (1).exe 2014-02-07 21:08 - 2014-02-07 21:08 - 01032847 _____ () C:\Users\Alex\Downloads\WoT-Battle-11.wma 2014-02-07 19:38 - 2014-02-07 19:38 - 02403548 _____ () C:\Users\Alex\Downloads\J1mB0_s_Crosshair_Mod_v1.35.zip 2014-02-07 19:36 - 2014-02-07 19:36 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (3).exe 2014-02-07 18:08 - 2014-02-07 18:09 - 00933674 _____ () C:\Users\Alex\Desktop\20140211_1800_ussr-ST_I_35_steppes.wotreplay 2014-02-07 16:08 - 2014-02-07 16:08 - 33730085 _____ () C:\Users\Alex\Downloads\E-100_№110_Algiz.rar 2014-02-07 15:55 - 2014-02-07 15:59 - 29620378 _____ () C:\Users\Alex\Downloads\E-100_№105_lee002.rar 2014-02-06 23:20 - 2014-02-06 23:20 - 00175366 _____ () C:\Users\Alex\Downloads\4C756B6173.rar 2014-02-06 00:07 - 2014-02-06 00:07 - 00000093 _____ () C:\Users\Alex\Desktop\bush-middle-finger.png.url 2014-02-05 18:14 - 2014-02-05 18:14 - 00046807 _____ () C:\Users\Alex\Downloads\enemy-vehicle-destroyed.wma 2014-02-05 17:57 - 2014-02-05 17:57 - 01307743 _____ () C:\Users\Alex\Downloads\WoT-Battle-1.wma 2014-02-05 13:58 - 2014-02-05 13:58 - 00035346 _____ () C:\Users\Alex\Downloads\ReceivedDamage-v1.8.zip 2014-02-05 12:27 - 2014-02-05 12:27 - 00225878 _____ () C:\Users\Alex\Downloads\World of tanks Rauch Effekte.exe 2014-02-04 22:24 - 2014-02-17 00:43 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA.job 2014-02-04 22:24 - 2014-02-16 16:43 - 00001064 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core.job 2014-02-04 22:24 - 2014-02-12 16:38 - 00004084 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA 2014-02-04 22:24 - 2014-02-12 16:38 - 00003688 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Downloads\GoogleVoiceAndVideoSetup.exe 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Desktop\GoogleVoiceAndVideoSetup.exe 2014-02-04 21:56 - 2014-02-04 21:56 - 07834449 _____ () C:\Users\Alex\Downloads\OBS_0_60b_Installer.exe 2014-02-04 21:30 - 2014-02-04 21:30 - 00000000 ____D () C:\Users\Alex\AppData\Local\EdgeOfReality 2014-02-04 20:27 - 2014-02-04 20:28 - 00000000 ____D () C:\Users\Alex\Desktop\Cheat Engine 2014-02-04 16:13 - 2014-02-04 16:13 - 02100691 _____ () C:\Users\Alex\Downloads\E75_luka_animeskins.zip 2014-02-04 13:54 - 2014-02-04 13:56 - 12875607 _____ () C:\Users\Alex\Downloads\E-75_№115_lee002.rar 2014-02-04 13:51 - 2014-02-04 13:51 - 11878832 _____ () C:\Users\Alex\Downloads\E-75_№127_Dr_Von_Lederhosen.rar 2014-02-03 22:39 - 2014-02-03 22:39 - 08065840 _____ (Cheat Engine ) C:\Users\Alex\Downloads\CheatEngine63.exe 2014-02-03 15:15 - 2014-02-03 15:15 - 51064354 _____ () C:\Users\Alex\Desktop\realere version+gui.rar 2014-02-03 15:14 - 2014-02-03 15:15 - 51064354 _____ () C:\Users\Alex\Downloads\realere version+gui.rar 2014-02-03 14:53 - 2014-02-03 14:53 - 66177436 _____ () C:\Users\Alex\Downloads\B&T.zip 2014-02-03 14:46 - 2014-02-03 14:46 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (2).exe 2014-02-02 14:05 - 2014-02-02 22:28 - 00001797 _____ () C:\Users\Alex\Desktop\Free Audio Editor.lnk 2014-02-02 14:05 - 2014-02-02 14:05 - 11110208 _____ (FreeAudioStudio Inc. ) C:\Users\Alex\Downloads\FreeAudioEditor2012_de.exe 2014-02-02 10:34 - 2014-02-02 10:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\{33C2AFAD-75E5-437B-AF20-E3E0291A0EE3} 2014-02-01 14:57 - 2014-01-09 13:52 - 00000000 ____D () C:\Users\Alex\Desktop\Radial Menu Editor v1.5 2014-02-01 13:52 - 2014-02-01 13:54 - 471531128 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 1.6 EN.exe 2014-02-01 12:41 - 2014-02-01 12:41 - 352523365 _____ () C:\Users\Alex\Desktop\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:40 - 2014-02-01 12:38 - 72588470 _____ () C:\Users\Alex\Desktop\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-02-01 12:37 - 2014-02-01 12:41 - 352523365 _____ () C:\Users\Alex\Downloads\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:37 - 2014-02-01 12:38 - 72588470 _____ () C:\Users\Alex\Downloads\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-01-31 14:04 - 2014-01-31 14:04 - 00227422 _____ () C:\Users\Alex\Desktop\New.MMM 2014-01-31 13:24 - 2014-01-15 14:34 - 01078912 _____ () C:\Users\Alex\Downloads\setup.exe 2014-01-31 13:24 - 2014-01-15 14:25 - 00000766 _____ () C:\Users\Alex\Downloads\layout.bin 2014-01-31 13:24 - 2014-01-15 14:17 - 01111951 _____ () C:\Users\Alex\Downloads\data1.cab 2014-01-31 13:24 - 2014-01-15 14:17 - 00034912 _____ () C:\Users\Alex\Downloads\data1.hdr 2014-01-31 13:24 - 2014-01-15 14:17 - 00002384 _____ () C:\Users\Alex\Downloads\setup.ini 2014-01-31 13:24 - 2014-01-15 14:15 - 00000376 _____ () C:\Users\Alex\Downloads\info.snail 2014-01-31 13:24 - 2010-09-28 16:26 - 00529808 _____ (Flexera Software, Inc.) C:\Users\Alex\Downloads\setup.ocx 2014-01-31 13:24 - 2010-09-20 10:39 - 00579584 _____ (Flexera Software, Inc.) C:\Users\Alex\Downloads\ISSetup.dll 2014-01-31 13:24 - 2010-06-22 14:30 - 00025860 _____ () C:\Users\Alex\Downloads\0x0407.ini 2014-01-31 12:58 - 2014-01-31 13:24 - 00000000 ____D () C:\Users\Alex\Downloads\Agt of Wulin 2014-01-31 12:58 - 2014-01-31 12:58 - 00696824 _____ () C:\Users\Alex\Downloads\Wulin_DE.exe 2014-01-31 12:49 - 2014-01-31 12:50 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE.exe 2014-01-31 11:29 - 2014-01-31 11:29 - 00001116 _____ () C:\Users\Public\Desktop\MAGIX Music Maker 2014.lnk 2014-01-31 11:26 - 2014-01-31 11:27 - 388717800 _____ (MAGIX AG) C:\Users\Alex\Downloads\music_maker_2014_370mb_chip_de.exe 2014-01-31 11:25 - 2014-01-31 11:27 - 00267624 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HM0 2014-01-31 11:25 - 2014-01-31 11:27 - 00037524 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HMP 2014-01-30 20:50 - 2014-01-30 20:52 - 00000000 ____D () C:\Users\Alex\Desktop\IndieGames 2014-01-30 13:47 - 2014-01-30 13:47 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql (1).exe 2014-01-30 13:15 - 2014-01-30 13:15 - 00000000 ____D () C:\Users\Alex\AppData\Local\{D9BA6412-05B2-46AE-A274-AF36B789EA6D} 2014-01-30 11:30 - 2014-01-30 11:32 - 186944442 _____ () C:\Users\Alex\Downloads\eurotrucksimulator2_1_3_1_patch.zip 2014-01-30 10:34 - 2014-01-30 10:34 - 01369930 _____ () C:\Users\Alex\Desktop\20140130_1023_germany-PzVIB_Tiger_II_01_karelia.wotreplay 2014-01-30 00:52 - 2014-01-30 00:53 - 32688810 _____ () C:\Users\Alex\Downloads\tsm_map_4_5_6_entpacken.7z 2014-01-30 00:42 - 2014-01-30 00:44 - 07616961 _____ () C:\Users\Alex\Downloads\ETS2 tc_mega_mod_v6.zip 2014-01-30 00:37 - 2014-01-30 00:39 - 142820005 _____ () C:\Users\Alex\Downloads\WinterModV1.0.rar 2014-01-30 00:12 - 2014-01-30 00:12 - 00000386 _____ () C:\Users\Alex\Desktop\LAN-Verbindung - Verknüpfung.lnk 2014-01-29 14:28 - 2014-01-29 14:28 - 00000000 ____D () C:\Users\Alex\AppData\Local\{083ED1B7-10B3-4BE1-8AA7-320EACE257F8} 2014-01-29 13:25 - 2014-01-29 14:17 - 00229230 _____ () C:\Users\Alex\Desktop\2014-01-29.MVP 2014-01-28 22:24 - 2014-02-11 13:20 - 00000000 ____D () C:\Users\Alex\Documents\Euro Truck Simulator 2 2014-01-28 22:24 - 2014-01-28 22:24 - 00001339 _____ () C:\Users\Public\Desktop\Euro Truck Simulator 2.lnk 2014-01-28 22:23 - 2014-01-28 22:24 - 00000000 ____D () C:\Program Files (x86)\Euro Truck Simulator 2 2014-01-28 22:20 - 2014-01-28 22:22 - 671664336 _____ (SCS Software ) C:\Users\Alex\Downloads\EuroTruckSimulator2_1_8_2_5_setup.exe 2014-01-28 14:15 - 2014-01-28 14:15 - 00050745 _____ () C:\Users\Alex\Downloads\DRIVE-THRU.zip 2014-01-27 22:24 - 2014-01-27 22:24 - 55306786 _____ () C:\Users\Alex\Downloads\hawkthorne-win-x86.zip 2014-01-27 22:24 - 2014-01-27 22:24 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\hawkthorne_release 2014-01-27 21:39 - 2014-01-27 21:39 - 18471950 _____ () C:\Users\Alex\Downloads\meandmyshadow-0.4-win32.zip 2014-01-27 20:11 - 2014-01-27 20:11 - 00001354 _____ () C:\Users\Alex\Desktop\GeForce Experience.lnk 2014-01-27 20:11 - 2014-01-27 20:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\NVIDIA Corporation 2014-01-27 20:11 - 2013-12-10 03:15 - 00982232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-01-27 20:11 - 2013-12-10 03:14 - 01100248 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-01-27 20:10 - 2014-01-27 20:10 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-01-27 20:08 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-27 20:08 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-27 20:08 - 2013-12-05 09:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-01-27 20:08 - 2013-12-05 09:42 - 00035104 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-01-27 20:08 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-01-27 20:08 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-27 20:08 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-27 19:50 - 2014-01-27 19:53 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-01-27 17:43 - 2014-01-27 17:43 - 04999914 _____ () C:\Users\Alex\Documents\OfLightAndShadow 2014-01-27 17-34-06-674.xcf 2014-01-27 17:05 - 2014-01-27 17:06 - 00000000 ____D () C:\Users\Alex\AppData\Local\{CACA7073-3573-40B4-9085-94B27252F5A7} 2014-01-27 16:24 - 2014-01-27 16:25 - 441930402 _____ () C:\Users\Alex\Downloads\Lets Test Zombie Driver HD [Deutsch] [HD] Zombiematsche hoch 10.mp4 2014-01-27 14:58 - 2014-01-27 14:58 - 12407230 _____ () C:\Users\Alex\Documents\NewOutroBild.xcf 2014-01-27 13:38 - 2014-01-27 13:38 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Desktop\OfLightAndShadow.exe 2014-01-27 13:37 - 2014-01-27 13:38 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Downloads\OfLightAndShadow.exe 2014-01-27 13:34 - 2014-01-31 11:29 - 00000000 ____D () C:\Users\Public\Documents\MAGIX 2014-01-27 13:34 - 2014-01-31 11:25 - 00000000 ____D () C:\Users\Alex\Documents\MAGIX_MusicEditor 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Xara 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Magix 2014-01-27 13:32 - 2014-01-31 11:29 - 00000000 ____D () C:\Program Files (x86)\MAGIX 2014-01-27 13:27 - 2014-01-27 13:27 - 02849104 _____ (MAGIX AG) C:\Users\Alex\Downloads\trial_videodeluxe2014premium_dlm.exe 2014-01-27 13:14 - 2014-01-27 13:16 - 476908585 _____ () C:\Users\Alex\Downloads\TDHv21.zip 2014-01-27 12:40 - 2014-01-27 12:43 - 07106772 _____ () C:\Users\Alex\Downloads\Bandicam.1.8.7.347.rar 2014-01-26 20:37 - 2014-01-26 20:37 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (1).exe 2014-01-26 17:19 - 2014-01-26 17:19 - 39178560 _____ (Atomix Productions) C:\Users\Alex\Downloads\install_virtualdj_home_v7.4.1.exe 2014-01-26 17:17 - 2014-01-26 18:27 - 00000000 ____D () C:\Program Files (x86)\Winamp 2014-01-26 17:17 - 2014-01-26 17:17 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516 (1).exe 2014-01-26 17:16 - 2014-01-26 17:17 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516.exe 2014-01-26 17:13 - 2014-01-26 17:15 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\vlc 2014-01-26 17:12 - 2014-01-26 17:15 - 00000000 ____D () C:\Program Files\VideoLAN 2014-01-26 17:11 - 2014-01-26 17:11 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\VLC media player 64 Bit - CHIP-Downloader.exe 2014-01-26 15:33 - 2014-01-30 13:36 - 00000000 ____D () C:\Users\Alex\Desktop\Banger Rebellieren 2014-01-26 15:33 - 2014-01-26 15:31 - 220324536 _____ () C:\Users\Alex\Desktop\Banger Rebellieren (Deluxe Version).rar 2014-01-26 15:29 - 2014-01-26 15:31 - 220324536 _____ () C:\Users\Alex\Downloads\Banger Rebellieren (Deluxe Version).rar 2014-01-26 13:40 - 2014-01-26 13:40 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct (1).exe 2014-01-26 13:08 - 2014-01-26 13:08 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup.exe 2014-01-25 22:45 - 2014-01-25 22:45 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\YoudaGames 2014-01-25 18:08 - 2014-01-25 18:08 - 00000000 ____D () C:\Users\Alex\AppData\Local\{4FBDC520-9D1C-40CE-834C-5A457311B2BA} 2014-01-25 16:14 - 2014-01-25 16:14 - 04245246 _____ () C:\Users\Alex\Documents\al3xone gruen.xcf 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_.zip 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_ (1).zip 2014-01-25 15:05 - 2014-01-25 15:05 - 07887147 _____ () C:\Users\Alex\Downloads\Urban_Designs_Vectors_Brushes_by_redheadstock.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00964991 _____ () C:\Users\Alex\Downloads\Splatter_Brushes_by_getfirefox.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00232675 _____ () C:\Users\Alex\Downloads\GIMP_Splatter_Brushes_by_Project_GimpBC.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00125426 _____ () C:\Users\Alex\Downloads\bombing.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00017779 _____ () C:\Users\Alex\Downloads\mostwasted.zip 2014-01-25 14:58 - 2014-01-25 14:58 - 00035633 _____ () C:\Users\Alex\Downloads\maelstrom.zip 2014-01-25 13:44 - 2014-01-25 13:44 - 02237478 _____ () C:\Users\Alex\Downloads\PzVIB_Tiger_II_№200_Red_Fox_Six.zip 2014-01-25 13:34 - 2014-01-25 13:35 - 06703608 _____ () C:\Users\Alex\Downloads\G16_PzVIB_Tiger_II_203_Sgt_Krollnikow51.rar 2014-01-24 22:48 - 2014-01-24 22:48 - 06904899 _____ () C:\Users\Alex\Documents\Surgeon Simulator templater.xcf 2014-01-24 18:26 - 2014-02-08 16:48 - 00000000 ____D () C:\Users\Alex\Desktop\wot testserver1 (1) 2014-01-24 18:26 - 2014-01-24 18:26 - 00000775 _____ () C:\Users\Public\Desktop\World of Tanks - Common Test.lnk 2014-01-24 18:25 - 2014-01-24 18:25 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct.exe 2014-01-24 15:28 - 2014-01-24 15:29 - 00000000 ____D () C:\Users\Alex\AppData\Local\{96970C5E-C513-4659-8CBD-A1EB21C3D2DB} 2014-01-24 01:14 - 2014-01-24 01:14 - 00000000 ____D () C:\ProgramData\Bohemia Interactive Studio 2014-01-24 01:07 - 2014-01-24 01:07 - 00001343 _____ () C:\Users\Public\Desktop\DayZ Commander.lnk 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZCommander 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Program Files (x86)\Dotjosh Studios 2014-01-24 00:57 - 2014-01-24 00:57 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-01-24 00:16 - 2014-02-10 21:40 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 OA 2014-01-24 00:16 - 2014-01-24 01:15 - 00000000 ____D () C:\Users\Alex\Documents\ArmA 2 2014-01-23 21:11 - 2014-01-23 21:11 - 00086285 _____ () C:\Users\Alex\Downloads\Default_GIMP_Brushes_by_Project_GimpBC.zip 2014-01-23 16:25 - 2014-01-23 16:25 - 00000000 ____D () C:\Users\Alex\AppData\Local\THQ 2014-01-23 16:25 - 2008-07-12 08:18 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-01-23 10:04 - 2014-01-23 10:04 - 01077532 _____ () C:\Users\Alex\Downloads\3d-hentai-04.wmv 2014-01-22 20:52 - 2014-01-22 20:52 - 00000000 ____D () C:\Users\Alex\AppData\Local\Ascaron Entertainment 2014-01-22 15:15 - 2014-01-22 15:15 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599.rar 2014-01-22 00:32 - 2014-01-22 00:34 - 269530647 _____ () C:\Users\Alex\Downloads\0505_2CD.rar 2014-01-22 00:16 - 2014-01-22 00:16 - 12749346 _____ () C:\Users\Alex\Downloads\SnowyNight.themepack 2014-01-22 00:16 - 2014-01-22 00:16 - 09714067 _____ () C:\Users\Alex\Downloads\Transformers3.themepack 2014-01-22 00:12 - 2014-01-22 00:12 - 00504817 _____ () C:\Users\Alex\Downloads\Gaia09_7.tvs 2014-01-22 00:11 - 2014-01-22 00:11 - 00694627 _____ () C:\Users\Alex\Downloads\CrystalSystemaRed_7.tvs 2014-01-22 00:09 - 2014-01-22 00:09 - 00695292 _____ () C:\Users\Alex\Downloads\CrystalSystemaBlue_7.tvs 2014-01-22 00:06 - 2013-12-18 10:01 - 00043320 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2014-01-22 00:06 - 2013-12-18 10:01 - 00036152 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll 2014-01-21 23:49 - 2014-01-21 23:49 - 31419822 _____ () C:\Users\Alex\Downloads\JDownloader.zip 2014-01-21 23:22 - 2014-01-21 23:22 - 00650182 _____ () C:\Users\Alex\Downloads\1200951734_San Andreas v1.00 Patch American to German.rar 2014-01-21 21:42 - 2014-01-21 21:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\Risen2 2014-01-21 19:18 - 2014-01-21 19:18 - 00000000 ____D () C:\Users\Alex\AppData\Local\{1F830A71-A22A-4D40-A01F-832778958AE6} 2014-01-21 19:03 - 2014-01-21 19:03 - 00000000 ____D () C:\Users\Alex\Documents\ZombieDriverHD 2014-01-21 18:29 - 2014-01-28 22:37 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZ 2014-01-21 18:29 - 2014-01-21 18:29 - 00000000 ____D () C:\Users\Alex\Documents\DayZ 2014-01-21 17:22 - 2014-01-21 17:22 - 00000000 ____D () C:\Users\Alex\Documents\Duke Nukem Forever 2014-01-21 16:36 - 2014-01-21 16:36 - 00000561 _____ () C:\Windows\wmsetup.log 2014-01-21 16:36 - 2014-01-21 16:36 - 00000000 ____D () C:\Users\Alex\Documents\DeadIsland 2014-01-20 14:04 - 2014-01-20 14:04 - 00000000 ____D () C:\Users\Alex\AppData\Local\{4C2A8127-71F9-4BB9-92CA-799C04F4C107} 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Program Files\Realtek 2014-01-19 23:29 - 2013-11-05 19:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-19 23:29 - 2013-11-05 18:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-01-19 23:29 - 2013-11-05 15:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-19 23:29 - 2013-11-04 19:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-19 23:29 - 2013-11-04 11:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-19 23:29 - 2013-10-30 16:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-01-19 23:29 - 2013-10-28 17:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-19 23:29 - 2013-10-25 10:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-01-19 23:29 - 2013-10-18 16:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-19 23:29 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-19 23:29 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-19 23:29 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-01-19 23:29 - 2013-10-09 20:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-01-19 23:29 - 2013-10-09 20:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-01-19 23:29 - 2013-10-09 20:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-19 23:29 - 2013-10-07 11:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-19 23:29 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-01-19 23:29 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-01-19 23:29 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-01-19 23:29 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-19 23:29 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-01-19 23:29 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-01-19 23:29 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-01-19 23:29 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-01-19 23:29 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-01-19 23:29 - 2013-08-24 03:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-01-19 23:29 - 2013-08-24 03:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-01-19 23:29 - 2013-08-24 03:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-01-19 23:29 - 2013-08-24 03:14 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-01-19 23:29 - 2013-08-20 17:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-01-19 23:29 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-01-19 23:29 - 2013-08-14 16:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-01-19 23:29 - 2013-08-14 16:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-01-19 23:29 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-01-19 23:29 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-19 23:29 - 2013-07-23 15:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-01-19 23:29 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-01-19 23:29 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-01-19 23:29 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-01-19 23:29 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-01-19 23:29 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-19 23:29 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-01-19 23:29 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-01-19 23:29 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-01-19 23:29 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-01-19 23:29 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-01-19 23:29 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-01-19 23:29 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-01-19 23:29 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-01-19 23:29 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-01-19 23:29 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-01-19 23:29 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-01-19 23:29 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-01-19 23:29 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-01-19 23:29 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-01-19 23:29 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-01-19 23:29 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-01-19 23:23 - 2014-01-19 23:23 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\64bit_Win7_Win8_Win81_R273 - CHIP-Downloader.exe 2014-01-19 17:21 - 2014-01-19 17:21 - 00000000 ____D () C:\Users\Alex\AppData\Local\{3ECF4624-E3BF-4FB2-AA19-395266FBC006} 2014-01-19 16:50 - 2014-01-19 16:52 - 197451096 _____ (MAGIX AG) C:\Users\Alex\Downloads\magix_video_deluxe_2014_188mb_chip_de (1).exe 2014-01-19 16:22 - 2014-01-28 13:50 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Sony 2014-01-19 16:22 - 2014-01-19 16:49 - 00000000 ____D () C:\Users\Alex\AppData\Local\Sony 2014-01-19 16:22 - 2014-01-19 16:49 - 00000000 ____D () C:\ProgramData\Sony 2014-01-19 16:15 - 2014-01-19 16:15 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Sony Vegas Pro - CHIP-Downloader.exe 2014-01-19 15:49 - 2014-01-19 15:49 - 09092187 _____ () C:\Users\Alex\Downloads\duke_sound_wot.rar 2014-01-19 13:57 - 2014-01-19 13:57 - 02237923 _____ () C:\Users\Alex\Downloads\21-Smoke-Brush.zip 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (3).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (2).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (1).exe 2014-01-18 15:26 - 2014-01-18 15:27 - 06130877 _____ () C:\Users\Alex\Downloads\Неоновые-иконки.rar 2014-01-18 12:10 - 2014-01-18 12:10 - 00002770 _____ () C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 ==================== One Month Modified Files and Folders ======= 2014-02-17 00:48 - 2014-02-17 00:48 - 00024943 _____ () C:\Users\Alex\Desktop\FRST.txt 2014-02-17 00:48 - 2013-07-03 22:54 - 00000000 ____D () C:\FRST 2014-02-17 00:43 - 2014-02-04 22:24 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA.job 2014-02-17 00:43 - 2013-01-05 00:19 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Skype 2014-02-17 00:33 - 2013-06-17 11:35 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-17 00:28 - 2013-08-28 15:14 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-02-17 00:19 - 2013-02-21 15:56 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Spotify 2014-02-16 23:55 - 2013-02-28 19:55 - 00000000 ____D () C:\Program Files (x86)\War Thunder 2014-02-16 23:53 - 2013-11-25 16:33 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-16 23:35 - 2014-02-16 23:35 - 02152448 _____ (Farbar) C:\Users\Alex\Downloads\FRST64.exe 2014-02-16 23:35 - 2014-02-16 23:35 - 02152448 _____ (Farbar) C:\Users\Alex\Desktop\FRST64.exe 2014-02-16 23:22 - 2014-02-16 23:22 - 00614816 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\AdwCleaner - CHIP-Downloader.exe 2014-02-16 23:03 - 2013-02-14 12:12 - 00081616 _____ () C:\Windows\setupact.log 2014-02-16 22:41 - 2013-11-25 16:33 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-16 22:41 - 2013-01-04 23:51 - 01592492 _____ () C:\Windows\WindowsUpdate.log 2014-02-16 22:22 - 2012-09-08 18:12 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-16 22:11 - 2014-02-11 13:14 - 00000000 ____D () C:\Users\Alex\Desktop\WoT 2014-02-16 21:47 - 2014-02-16 21:47 - 14200736 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.2_setup.exe 2014-02-16 21:44 - 2014-02-16 21:44 - 02224501 _____ () C:\Users\Alex\Downloads\[0.8.11]KT_Crosshair_Mjolnir_v2.742.rar 2014-02-16 21:38 - 2014-02-16 21:36 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (3).exe 2014-02-16 16:44 - 2009-07-14 05:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-16 16:44 - 2009-07-14 05:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-16 16:43 - 2014-02-04 22:24 - 00001064 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core.job 2014-02-16 10:24 - 2014-02-13 19:29 - 00000000 ____D () C:\Users\Alex\Desktop\GFX 2014-02-16 10:00 - 2012-05-23 08:09 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-16 10:00 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-15 22:12 - 2014-02-15 22:01 - 00000000 ____D () C:\Program Files (x86)\Naturalsoft 2014-02-15 22:12 - 2014-02-13 11:32 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Naturalsoft 2014-02-15 22:12 - 2014-02-13 11:31 - 00000000 ____D () C:\Users\Alex\Documents\Naturalsoft 2014-02-15 14:59 - 2014-02-15 14:59 - 00065359 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.rar 2014-02-15 14:58 - 2014-02-15 14:58 - 00075654 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.wav 2014-02-15 14:22 - 2014-02-15 14:22 - 33294684 _____ () C:\Users\Alex\Downloads\fmoddesigner43604win-installer.exe 2014-02-15 14:22 - 2014-02-15 14:22 - 00143447 _____ () C:\Users\Alex\Downloads\ssfdp.zip 2014-02-15 12:11 - 2014-02-15 12:11 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599 (1).rar 2014-02-15 11:54 - 2014-02-15 11:54 - 00111376 _____ () C:\Users\Alex\AppData\Local\recently-used.xbel 2014-02-15 11:54 - 2013-01-31 14:33 - 00000000 ____D () C:\Users\Alex\.gimp-2.8 2014-02-15 11:26 - 2014-02-15 11:26 - 00038937 _____ () C:\Users\Alex\Desktop\schlurp.xcf 2014-02-15 11:13 - 2014-02-15 11:13 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Desktop\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:13 - 2014-02-15 11:11 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:11 - 2014-02-15 11:09 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (1).exe 2014-02-14 22:00 - 2014-02-14 21:56 - 61212284 _____ () C:\Users\Alex\Desktop\20131207_164820.mp4 2014-02-14 20:56 - 2014-02-14 20:56 - 00026567 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.7z 2014-02-14 20:48 - 2014-02-14 20:48 - 00038468 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.zip 2014-02-14 16:48 - 2013-11-25 16:33 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-14 16:48 - 2013-11-25 16:33 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-14 16:23 - 2014-02-14 16:22 - 14252755 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.1_setup.exe 2014-02-14 15:59 - 2014-02-14 15:58 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN.exe 2014-02-14 10:50 - 2009-07-14 05:45 - 00573616 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-02-13 11:52 - 2013-10-25 11:30 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Audacity 2014-02-13 11:31 - 2014-02-13 11:31 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Desktop\standardsetup.exe 2014-02-13 11:31 - 2014-02-13 11:30 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Downloads\standardsetup.exe 2014-02-13 10:29 - 2013-01-05 00:15 - 00171192 _____ () C:\Users\Alex\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-13 10:15 - 2014-02-13 10:15 - 14249870 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.0_setup.exe 2014-02-12 16:38 - 2014-02-04 22:24 - 00004084 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA 2014-02-12 16:38 - 2014-02-04 22:24 - 00003688 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core 2014-02-12 14:30 - 2014-02-12 14:30 - 00000000 ____D () C:\Users\Alex\Documents\Codemasters 2014-02-12 14:30 - 2013-06-21 13:39 - 00000000 ____D () C:\ProgramData\Codemasters 2014-02-12 14:20 - 2014-02-12 14:20 - 00466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00121880 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00000000 ____D () C:\Program Files (x86)\OpenAL 2014-02-12 14:20 - 2013-02-18 18:46 - 00979920 _____ () C:\Windows\DirectX.log 2014-02-12 14:16 - 2014-02-12 14:16 - 00000000 ____D () C:\Program Files (x86)\Codemasters 2014-02-12 14:16 - 2012-05-08 06:30 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-12 14:13 - 2014-02-12 14:11 - 00000000 ____D () C:\Users\Alex\Desktop\Grid 2014-02-12 13:56 - 2014-02-12 13:50 - 937281756 _____ () C:\Users\Alex\Downloads\grid_demo.zip 2014-02-12 12:54 - 2013-06-10 23:38 - 00000000 ____D () C:\Users\Alex\AppData\Local\Warframe 2014-02-12 12:31 - 2014-02-12 12:31 - 01873912 _____ () C:\Users\Alex\Downloads\Warframe_2013-06-10_21-49-50-79._Png 2014-02-12 11:06 - 2009-07-14 06:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-02-12 00:35 - 2013-12-03 11:29 - 00008232 _____ () C:\Users\Alex\Documents\TombRaider.log 2014-02-11 19:35 - 2014-02-11 19:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\{91094F4B-05EB-4C0F-B5F6-371871BFDC5B} 2014-02-11 19:14 - 2014-02-11 19:14 - 00000000 ____D () C:\Users\Alex\AppData\Local\Avg2014 2014-02-11 19:13 - 2013-09-01 18:42 - 00000000 ____D () C:\Users\Alex\Desktop\World of Tanks 2014-02-11 19:13 - 2013-01-05 01:27 - 00000000 ____D () C:\Users\Alex\AppData\Local\CrashDumps 2014-02-11 16:27 - 2014-02-11 16:02 - 00000000 ____D () C:\Program Files (x86)\ACR 2014-02-11 16:12 - 2014-02-11 16:12 - 00000000 ____D () C:\Users\Alex\Documents\ACR 2014-02-11 16:00 - 2014-02-11 16:00 - 634936568 _____ (Eutechnyx, Ltd ) C:\Users\Alex\Downloads\ACR_setup.exe 2014-02-11 15:58 - 2013-01-06 17:07 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\TS3Client 2014-02-11 15:57 - 2014-02-11 15:56 - 00710848 _____ ( ) C:\Users\Alex\Downloads\COMPUTER_BILD-Download-Manager_fuer_ACR_setup.exe 2014-02-11 13:20 - 2014-01-28 22:24 - 00000000 ____D () C:\Users\Alex\Documents\Euro Truck Simulator 2 2014-02-11 13:15 - 2014-02-11 13:15 - 00000657 _____ () C:\Users\Public\Desktop\World of Tanks.lnk 2014-02-11 13:15 - 2013-02-22 17:34 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu.exe 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu (1).exe 2014-02-11 13:00 - 2014-02-11 13:00 - 00015598 _____ () C:\Users\Alex\Desktop\RADIALPERFEKT.rar 2014-02-10 21:40 - 2014-01-24 00:16 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 OA 2014-02-10 19:58 - 2014-02-10 19:58 - 00953010 _____ () C:\Users\Alex\Downloads\13900708235100_france_Bat_Chatillon155_58_murovanka.wotreplay 2014-02-10 19:51 - 2014-02-10 19:51 - 01149282 _____ () C:\Users\Alex\Downloads\13913363495846_germany_VK4502P_ruinberg.wotreplay 2014-02-10 19:46 - 2014-02-10 19:46 - 00775038 _____ () C:\Users\Alex\Downloads\13835638757003_ussr_KV1_north_america.wotreplay 2014-02-10 17:30 - 2014-02-10 17:30 - 00003940 _____ () C:\Users\Alex\Desktop\WOT SONG.txt 2014-02-10 15:22 - 2014-02-10 15:22 - 00000000 ____D () C:\Users\Alex\Desktop\Replays 2014-02-10 15:14 - 2014-02-10 15:14 - 01247754 _____ () C:\Users\Alex\Downloads\13920322650136_france_Bat_Chatillon25t_steppes.wotreplay 2014-02-10 15:08 - 2014-02-10 15:08 - 00910854 _____ () C:\Users\Alex\Downloads\13920411536424_france_AMX_12t_45_north_america.wotreplay 2014-02-10 12:37 - 2014-02-10 12:37 - 01001812 _____ () C:\Users\Alex\Downloads\13920324752231_china_Ch15_59_16_himmelsdorf.wotreplay 2014-02-09 17:16 - 2014-02-09 17:16 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\steamvr 2014-02-09 11:32 - 2014-02-09 11:32 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (4).exe 2014-02-09 00:44 - 2014-02-09 00:44 - 00015598 _____ () C:\Users\Alex\Desktop\Scaleform.rar 2014-02-08 20:36 - 2013-06-25 10:11 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Mozilla 2014-02-08 16:48 - 2014-01-24 18:26 - 00000000 ____D () C:\Users\Alex\Desktop\wot testserver1 (1) 2014-02-08 02:15 - 2013-02-18 21:39 - 00000000 ____D () C:\Users\Alex\Documents\My Games 2014-02-08 00:44 - 2014-02-08 00:43 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE (1).exe 2014-02-07 21:08 - 2014-02-07 21:08 - 01032847 _____ () C:\Users\Alex\Downloads\WoT-Battle-11.wma 2014-02-07 19:38 - 2014-02-07 19:38 - 02403548 _____ () C:\Users\Alex\Downloads\J1mB0_s_Crosshair_Mod_v1.35.zip 2014-02-07 19:36 - 2014-02-07 19:36 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (3).exe 2014-02-07 18:09 - 2014-02-07 18:08 - 00933674 _____ () C:\Users\Alex\Desktop\20140211_1800_ussr-ST_I_35_steppes.wotreplay 2014-02-07 16:08 - 2014-02-07 16:08 - 33730085 _____ () C:\Users\Alex\Downloads\E-100_№110_Algiz.rar 2014-02-07 15:59 - 2014-02-07 15:55 - 29620378 _____ () C:\Users\Alex\Downloads\E-100_№105_lee002.rar 2014-02-06 23:20 - 2014-02-06 23:20 - 00175366 _____ () C:\Users\Alex\Downloads\4C756B6173.rar 2014-02-06 16:42 - 2013-02-21 15:57 - 00000000 ____D () C:\Users\Alex\AppData\Local\Spotify 2014-02-06 00:11 - 2014-01-07 22:39 - 00000000 ____D () C:\Users\Alex\Desktop\GFX - Selfmade 2014-02-06 00:07 - 2014-02-06 00:07 - 00000093 _____ () C:\Users\Alex\Desktop\bush-middle-finger.png.url 2014-02-05 22:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-02-05 22:17 - 2013-01-05 00:19 - 00000000 ____D () C:\ProgramData\Skype 2014-02-05 18:14 - 2014-02-05 18:14 - 00046807 _____ () C:\Users\Alex\Downloads\enemy-vehicle-destroyed.wma 2014-02-05 17:57 - 2014-02-05 17:57 - 01307743 _____ () C:\Users\Alex\Downloads\WoT-Battle-1.wma 2014-02-05 14:33 - 2013-06-17 11:35 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-05 14:33 - 2013-02-20 14:46 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-05 14:33 - 2013-02-20 14:46 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-05 13:58 - 2014-02-05 13:58 - 00035346 _____ () C:\Users\Alex\Downloads\ReceivedDamage-v1.8.zip 2014-02-05 12:38 - 2011-04-12 08:43 - 00699416 _____ () C:\Windows\system32\perfh007.dat 2014-02-05 12:38 - 2011-04-12 08:43 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-02-05 12:38 - 2009-07-14 06:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-05 12:27 - 2014-02-05 12:27 - 00225878 _____ () C:\Users\Alex\Downloads\World of tanks Rauch Effekte.exe 2014-02-05 11:32 - 2013-02-14 12:11 - 01837446 _____ () C:\Windows\PFRO.log 2014-02-04 22:48 - 2013-11-05 22:37 - 00000000 ____D () C:\Program Files (x86)\OBS 2014-02-04 22:24 - 2013-01-05 00:21 - 00000000 ____D () C:\Users\Alex\AppData\Local\Google 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Downloads\GoogleVoiceAndVideoSetup.exe 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Desktop\GoogleVoiceAndVideoSetup.exe 2014-02-04 21:58 - 2013-11-05 22:37 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\OBS 2014-02-04 21:56 - 2014-02-04 21:56 - 07834449 _____ () C:\Users\Alex\Downloads\OBS_0_60b_Installer.exe 2014-02-04 21:30 - 2014-02-04 21:30 - 00000000 ____D () C:\Users\Alex\AppData\Local\EdgeOfReality 2014-02-04 20:28 - 2014-02-04 20:27 - 00000000 ____D () C:\Users\Alex\Desktop\Cheat Engine 2014-02-04 17:55 - 2013-03-03 23:40 - 00000000 ____D () C:\Users\Alex\Desktop\Desktop zeug usw 2014-02-04 17:51 - 2013-01-06 03:05 - 00003162 _____ () C:\Windows\System32\Tasks\Game_Booster_AutoUpdate 2014-02-04 16:13 - 2014-02-04 16:13 - 02100691 _____ () C:\Users\Alex\Downloads\E75_luka_animeskins.zip 2014-02-04 13:56 - 2014-02-04 13:54 - 12875607 _____ () C:\Users\Alex\Downloads\E-75_№115_lee002.rar 2014-02-04 13:51 - 2014-02-04 13:51 - 11878832 _____ () C:\Users\Alex\Downloads\E-75_№127_Dr_Von_Lederhosen.rar 2014-02-03 22:39 - 2014-02-03 22:39 - 08065840 _____ (Cheat Engine ) C:\Users\Alex\Downloads\CheatEngine63.exe 2014-02-03 15:15 - 2014-02-03 15:15 - 51064354 _____ () C:\Users\Alex\Desktop\realere version+gui.rar 2014-02-03 15:15 - 2014-02-03 15:14 - 51064354 _____ () C:\Users\Alex\Downloads\realere version+gui.rar 2014-02-03 14:53 - 2014-02-03 14:53 - 66177436 _____ () C:\Users\Alex\Downloads\B&T.zip 2014-02-03 14:46 - 2014-02-03 14:46 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (2).exe 2014-02-02 22:28 - 2014-02-02 14:05 - 00001797 _____ () C:\Users\Alex\Desktop\Free Audio Editor.lnk 2014-02-02 14:36 - 2013-07-20 21:11 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Free Audio Editor 2014-02-02 14:05 - 2014-02-02 14:05 - 11110208 _____ (FreeAudioStudio Inc. ) C:\Users\Alex\Downloads\FreeAudioEditor2012_de.exe 2014-02-02 10:35 - 2014-02-02 10:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\{33C2AFAD-75E5-437B-AF20-E3E0291A0EE3} 2014-02-01 22:12 - 2013-01-05 01:10 - 00000000 ____D () C:\Users\Alex\AppData\Local\PokerStars.EU 2014-02-01 13:54 - 2014-02-01 13:52 - 471531128 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 1.6 EN.exe 2014-02-01 12:50 - 2012-09-16 13:09 - 00000000 ____D () C:\Program Files (x86)\TeamViewer 2014-02-01 12:41 - 2014-02-01 12:41 - 352523365 _____ () C:\Users\Alex\Desktop\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:41 - 2014-02-01 12:37 - 352523365 _____ () C:\Users\Alex\Downloads\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:38 - 2014-02-01 12:40 - 72588470 _____ () C:\Users\Alex\Desktop\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-02-01 12:38 - 2014-02-01 12:37 - 72588470 _____ () C:\Users\Alex\Downloads\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-01-31 14:04 - 2014-01-31 14:04 - 00227422 _____ () C:\Users\Alex\Desktop\New.MMM 2014-01-31 13:24 - 2014-01-31 12:58 - 00000000 ____D () C:\Users\Alex\Downloads\Agt of Wulin 2014-01-31 12:58 - 2014-01-31 12:58 - 00696824 _____ () C:\Users\Alex\Downloads\Wulin_DE.exe 2014-01-31 12:50 - 2014-01-31 12:49 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE.exe 2014-01-31 11:30 - 2013-02-17 12:31 - 00000000 ___RD () C:\Users\Alex\Documents\MAGIX 2014-01-31 11:30 - 2013-02-17 12:31 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\MAGIX 2014-01-31 11:29 - 2014-01-31 11:29 - 00001116 _____ () C:\Users\Public\Desktop\MAGIX Music Maker 2014.lnk 2014-01-31 11:29 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Public\Documents\MAGIX 2014-01-31 11:29 - 2014-01-27 13:32 - 00000000 ____D () C:\Program Files (x86)\MAGIX 2014-01-31 11:29 - 2013-02-17 12:30 - 00000000 ____D () C:\ProgramData\MAGIX 2014-01-31 11:29 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-01-31 11:27 - 2014-01-31 11:26 - 388717800 _____ (MAGIX AG) C:\Users\Alex\Downloads\music_maker_2014_370mb_chip_de.exe 2014-01-31 11:27 - 2014-01-31 11:25 - 00267624 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HM0 2014-01-31 11:27 - 2014-01-31 11:25 - 00037524 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HMP 2014-01-31 11:25 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\Documents\MAGIX_MusicEditor 2014-01-30 20:52 - 2014-01-30 20:50 - 00000000 ____D () C:\Users\Alex\Desktop\IndieGames 2014-01-30 20:50 - 2013-10-23 20:36 - 00000000 ____D () C:\Users\Alex\Desktop\Eigene Schriftzüge Wallpaper 2014-01-30 13:47 - 2014-01-30 13:47 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql (1).exe 2014-01-30 13:36 - 2014-01-26 15:33 - 00000000 ____D () C:\Users\Alex\Desktop\Banger Rebellieren 2014-01-30 13:15 - 2014-01-30 13:15 - 00000000 ____D () C:\Users\Alex\AppData\Local\{D9BA6412-05B2-46AE-A274-AF36B789EA6D} 2014-01-30 11:32 - 2014-01-30 11:30 - 186944442 _____ () C:\Users\Alex\Downloads\eurotrucksimulator2_1_3_1_patch.zip 2014-01-30 10:34 - 2014-01-30 10:34 - 01369930 _____ () C:\Users\Alex\Desktop\20140130_1023_germany-PzVIB_Tiger_II_01_karelia.wotreplay 2014-01-30 00:53 - 2014-01-30 00:52 - 32688810 _____ () C:\Users\Alex\Downloads\tsm_map_4_5_6_entpacken.7z 2014-01-30 00:44 - 2014-01-30 00:42 - 07616961 _____ () C:\Users\Alex\Downloads\ETS2 tc_mega_mod_v6.zip 2014-01-30 00:39 - 2014-01-30 00:37 - 142820005 _____ () C:\Users\Alex\Downloads\WinterModV1.0.rar 2014-01-30 00:12 - 2014-01-30 00:12 - 00000386 _____ () C:\Users\Alex\Desktop\LAN-Verbindung - Verknüpfung.lnk 2014-01-29 14:28 - 2014-01-29 14:28 - 00000000 ____D () C:\Users\Alex\AppData\Local\{083ED1B7-10B3-4BE1-8AA7-320EACE257F8} 2014-01-29 14:17 - 2014-01-29 13:25 - 00229230 _____ () C:\Users\Alex\Desktop\2014-01-29.MVP 2014-01-28 22:37 - 2014-01-21 18:29 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZ 2014-01-28 22:24 - 2014-01-28 22:24 - 00001339 _____ () C:\Users\Public\Desktop\Euro Truck Simulator 2.lnk 2014-01-28 22:24 - 2014-01-28 22:23 - 00000000 ____D () C:\Program Files (x86)\Euro Truck Simulator 2 2014-01-28 22:22 - 2014-01-28 22:20 - 671664336 _____ (SCS Software ) C:\Users\Alex\Downloads\EuroTruckSimulator2_1_8_2_5_setup.exe 2014-01-28 20:36 - 2013-02-15 10:03 - 00000000 ____D () C:\Users\Alex\AppData\Local\Adobe 2014-01-28 14:16 - 2013-06-15 20:29 - 00000000 ____D () C:\Users\Alex\Documents\GTA San Andreas User Files 2014-01-28 14:15 - 2014-01-28 14:15 - 00050745 _____ () C:\Users\Alex\Downloads\DRIVE-THRU.zip 2014-01-28 13:50 - 2014-01-19 16:22 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Sony 2014-01-27 22:24 - 2014-01-27 22:24 - 55306786 _____ () C:\Users\Alex\Downloads\hawkthorne-win-x86.zip 2014-01-27 22:24 - 2014-01-27 22:24 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\hawkthorne_release 2014-01-27 21:39 - 2014-01-27 21:39 - 18471950 _____ () C:\Users\Alex\Downloads\meandmyshadow-0.4-win32.zip 2014-01-27 20:12 - 2013-06-07 19:09 - 00000000 ____D () C:\Users\Alex\AppData\Local\NVIDIA 2014-01-27 20:11 - 2014-01-27 20:11 - 00001354 _____ () C:\Users\Alex\Desktop\GeForce Experience.lnk 2014-01-27 20:11 - 2014-01-27 20:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\NVIDIA Corporation 2014-01-27 20:11 - 2012-05-23 08:09 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-27 20:11 - 2012-05-08 06:56 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-27 20:11 - 2012-05-08 06:53 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-27 20:10 - 2014-01-27 20:10 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-01-27 19:53 - 2014-01-27 19:50 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-01-27 18:43 - 2014-01-13 20:52 - 00000000 ____D () C:\ProgramData\Nokia 2014-01-27 18:43 - 2013-09-06 15:13 - 00000000 ____D () C:\Program Files (x86)\Nokia 2014-01-27 17:43 - 2014-01-27 17:43 - 04999914 _____ () C:\Users\Alex\Documents\OfLightAndShadow 2014-01-27 17-34-06-674.xcf 2014-01-27 17:06 - 2014-01-27 17:05 - 00000000 ____D () C:\Users\Alex\AppData\Local\{CACA7073-3573-40B4-9085-94B27252F5A7} 2014-01-27 16:25 - 2014-01-27 16:24 - 441930402 _____ () C:\Users\Alex\Downloads\Lets Test Zombie Driver HD [Deutsch] [HD] Zombiematsche hoch 10.mp4 2014-01-27 15:02 - 2013-12-22 17:09 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\.minecraft 2014-01-27 14:59 - 2013-06-27 12:20 - 00000000 ____D () C:\Users\Alex\Desktop\GFX_Anfängerpack by Anonymous 2014-01-27 14:58 - 2014-01-27 14:58 - 12407230 _____ () C:\Users\Alex\Documents\NewOutroBild.xcf 2014-01-27 13:38 - 2014-01-27 13:38 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Desktop\OfLightAndShadow.exe 2014-01-27 13:38 - 2014-01-27 13:37 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Downloads\OfLightAndShadow.exe 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Xara 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Magix 2014-01-27 13:27 - 2014-01-27 13:27 - 02849104 _____ (MAGIX AG) C:\Users\Alex\Downloads\trial_videodeluxe2014premium_dlm.exe 2014-01-27 13:16 - 2014-01-27 13:14 - 476908585 _____ () C:\Users\Alex\Downloads\TDHv21.zip 2014-01-27 13:07 - 2013-09-06 15:13 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Nokia 2014-01-27 12:43 - 2014-01-27 12:40 - 07106772 _____ () C:\Users\Alex\Downloads\Bandicam.1.8.7.347.rar 2014-01-26 20:37 - 2014-01-26 20:37 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (1).exe 2014-01-26 18:27 - 2014-01-26 17:17 - 00000000 ____D () C:\Program Files (x86)\Winamp 2014-01-26 17:19 - 2014-01-26 17:19 - 39178560 _____ (Atomix Productions) C:\Users\Alex\Downloads\install_virtualdj_home_v7.4.1.exe 2014-01-26 17:17 - 2014-01-26 17:17 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516 (1).exe 2014-01-26 17:17 - 2014-01-26 17:16 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516.exe 2014-01-26 17:15 - 2014-01-26 17:13 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\vlc 2014-01-26 17:15 - 2014-01-26 17:12 - 00000000 ____D () C:\Program Files\VideoLAN 2014-01-26 17:11 - 2014-01-26 17:11 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\VLC media player 64 Bit - CHIP-Downloader.exe 2014-01-26 15:31 - 2014-01-26 15:33 - 220324536 _____ () C:\Users\Alex\Desktop\Banger Rebellieren (Deluxe Version).rar 2014-01-26 15:31 - 2014-01-26 15:29 - 220324536 _____ () C:\Users\Alex\Downloads\Banger Rebellieren (Deluxe Version).rar 2014-01-26 13:40 - 2014-01-26 13:40 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct (1).exe 2014-01-26 13:08 - 2014-01-26 13:08 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup.exe 2014-01-25 22:45 - 2014-01-25 22:45 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\YoudaGames 2014-01-25 18:08 - 2014-01-25 18:08 - 00000000 ____D () C:\Users\Alex\AppData\Local\{4FBDC520-9D1C-40CE-834C-5A457311B2BA} 2014-01-25 16:14 - 2014-01-25 16:14 - 04245246 _____ () C:\Users\Alex\Documents\al3xone gruen.xcf 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_.zip 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_ (1).zip 2014-01-25 15:05 - 2014-01-25 15:05 - 07887147 _____ () C:\Users\Alex\Downloads\Urban_Designs_Vectors_Brushes_by_redheadstock.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00964991 _____ () C:\Users\Alex\Downloads\Splatter_Brushes_by_getfirefox.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00232675 _____ () C:\Users\Alex\Downloads\GIMP_Splatter_Brushes_by_Project_GimpBC.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00125426 _____ () C:\Users\Alex\Downloads\bombing.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00017779 _____ () C:\Users\Alex\Downloads\mostwasted.zip 2014-01-25 14:58 - 2014-01-25 14:58 - 00035633 _____ () C:\Users\Alex\Downloads\maelstrom.zip 2014-01-25 13:44 - 2014-01-25 13:44 - 02237478 _____ () C:\Users\Alex\Downloads\PzVIB_Tiger_II_№200_Red_Fox_Six.zip 2014-01-25 13:35 - 2014-01-25 13:34 - 06703608 _____ () C:\Users\Alex\Downloads\G16_PzVIB_Tiger_II_203_Sgt_Krollnikow51.rar 2014-01-24 22:54 - 2013-10-13 15:39 - 00000000 ____D () C:\Users\Alex\Desktop\GTA San Andreas OFFLINE 2014-01-24 22:48 - 2014-01-24 22:48 - 06904899 _____ () C:\Users\Alex\Documents\Surgeon Simulator templater.xcf 2014-01-24 18:26 - 2014-01-24 18:26 - 00000775 _____ () C:\Users\Public\Desktop\World of Tanks - Common Test.lnk 2014-01-24 18:25 - 2014-01-24 18:25 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct.exe 2014-01-24 15:29 - 2014-01-24 15:28 - 00000000 ____D () C:\Users\Alex\AppData\Local\{96970C5E-C513-4659-8CBD-A1EB21C3D2DB} 2014-01-24 01:15 - 2014-01-24 00:16 - 00000000 ____D () C:\Users\Alex\Documents\ArmA 2 2014-01-24 01:14 - 2014-01-24 01:14 - 00000000 ____D () C:\ProgramData\Bohemia Interactive Studio 2014-01-24 01:07 - 2014-01-24 01:07 - 00001343 _____ () C:\Users\Public\Desktop\DayZ Commander.lnk 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZCommander 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Program Files (x86)\Dotjosh Studios 2014-01-24 00:57 - 2014-01-24 00:57 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-01-24 00:15 - 2013-10-21 09:09 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive 2014-01-23 21:11 - 2014-01-23 21:11 - 00086285 _____ () C:\Users\Alex\Downloads\Default_GIMP_Brushes_by_Project_GimpBC.zip 2014-01-23 16:25 - 2014-01-23 16:25 - 00000000 ____D () C:\Users\Alex\AppData\Local\THQ 2014-01-23 10:04 - 2014-01-23 10:04 - 01077532 _____ () C:\Users\Alex\Downloads\3d-hentai-04.wmv 2014-01-22 20:52 - 2014-01-22 20:52 - 00000000 ____D () C:\Users\Alex\AppData\Local\Ascaron Entertainment 2014-01-22 15:15 - 2014-01-22 15:15 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599.rar 2014-01-22 00:34 - 2014-01-22 00:32 - 269530647 _____ () C:\Users\Alex\Downloads\0505_2CD.rar 2014-01-22 00:16 - 2014-01-22 00:16 - 12749346 _____ () C:\Users\Alex\Downloads\SnowyNight.themepack 2014-01-22 00:16 - 2014-01-22 00:16 - 09714067 _____ () C:\Users\Alex\Downloads\Transformers3.themepack 2014-01-22 00:12 - 2014-01-22 00:12 - 00504817 _____ () C:\Users\Alex\Downloads\Gaia09_7.tvs 2014-01-22 00:11 - 2014-01-22 00:11 - 00694627 _____ () C:\Users\Alex\Downloads\CrystalSystemaRed_7.tvs 2014-01-22 00:09 - 2014-01-22 00:09 - 00695292 _____ () C:\Users\Alex\Downloads\CrystalSystemaBlue_7.tvs 2014-01-21 23:49 - 2014-01-21 23:49 - 31419822 _____ () C:\Users\Alex\Downloads\JDownloader.zip 2014-01-21 23:22 - 2014-01-21 23:22 - 00650182 _____ () C:\Users\Alex\Downloads\1200951734_San Andreas v1.00 Patch American to German.rar 2014-01-21 22:27 - 2014-01-09 23:13 - 00000000 ____D () C:\Program Files (x86)\Zenimax Online 2014-01-21 21:42 - 2014-01-21 21:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\Risen2 2014-01-21 19:18 - 2014-01-21 19:18 - 00000000 ____D () C:\Users\Alex\AppData\Local\{1F830A71-A22A-4D40-A01F-832778958AE6} 2014-01-21 19:03 - 2014-01-21 19:03 - 00000000 ____D () C:\Users\Alex\Documents\ZombieDriverHD 2014-01-21 18:29 - 2014-01-21 18:29 - 00000000 ____D () C:\Users\Alex\Documents\DayZ 2014-01-21 17:22 - 2014-01-21 17:22 - 00000000 ____D () C:\Users\Alex\Documents\Duke Nukem Forever 2014-01-21 16:36 - 2014-01-21 16:36 - 00000561 _____ () C:\Windows\wmsetup.log 2014-01-21 16:36 - 2014-01-21 16:36 - 00000000 ____D () C:\Users\Alex\Documents\DeadIsland 2014-01-20 21:30 - 2013-08-19 16:56 - 00000000 ____D () C:\Program Files (x86)\PokerStars.EU 2014-01-20 14:04 - 2014-01-20 14:04 - 00000000 ____D () C:\Users\Alex\AppData\Local\{4C2A8127-71F9-4BB9-92CA-799C04F4C107} 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Program Files\Realtek 2014-01-19 23:23 - 2014-01-19 23:23 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\64bit_Win7_Win8_Win81_R273 - CHIP-Downloader.exe 2014-01-19 17:21 - 2014-01-19 17:21 - 00000000 ____D () C:\Users\Alex\AppData\Local\{3ECF4624-E3BF-4FB2-AA19-395266FBC006} 2014-01-19 16:52 - 2014-01-19 16:50 - 197451096 _____ (MAGIX AG) C:\Users\Alex\Downloads\magix_video_deluxe_2014_188mb_chip_de (1).exe 2014-01-19 16:49 - 2014-01-19 16:22 - 00000000 ____D () C:\Users\Alex\AppData\Local\Sony 2014-01-19 16:49 - 2014-01-19 16:22 - 00000000 ____D () C:\ProgramData\Sony 2014-01-19 16:15 - 2014-01-19 16:15 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Sony Vegas Pro - CHIP-Downloader.exe 2014-01-19 15:49 - 2014-01-19 15:49 - 09092187 _____ () C:\Users\Alex\Downloads\duke_sound_wot.rar 2014-01-19 13:57 - 2014-01-19 13:57 - 02237923 _____ () C:\Users\Alex\Downloads\21-Smoke-Brush.zip 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (3).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (2).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (1).exe 2014-01-18 15:27 - 2014-01-18 15:26 - 06130877 _____ () C:\Users\Alex\Downloads\Неоновые-иконки.rar 2014-01-18 12:10 - 2014-01-18 12:10 - 00002770 _____ () C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 Files to move or delete: ==================== C:\Users\Alex\AppData\Roaming\Camdata.ini C:\Users\Alex\AppData\Roaming\CamLayout.ini C:\Users\Alex\AppData\Roaming\CamShapes.ini C:\Users\Alex\jagex_cl_runescape_LIVE.dat C:\Users\Alex\random.dat C:\ProgramData\winiml.dat Some content of TEMP: ==================== C:\Users\Alex\AppData\Local\Temp\79997d0e892716dc1d9c2a01795dc3fe.dll C:\Users\Alex\AppData\Local\Temp\b9e556ee429cd109bac5a9b9d9d62425.dll C:\Users\Alex\AppData\Local\Temp\bdfilters.dll C:\Users\Alex\AppData\Local\Temp\drm_dyndata_7410004.dll C:\Users\Alex\AppData\Local\Temp\dxwebsetup.exe C:\Users\Alex\AppData\Local\Temp\HiRezLauncherControls.dll C:\Users\Alex\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe C:\Users\Alex\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe C:\Users\Alex\AppData\Local\Temp\NGMDll.dll C:\Users\Alex\AppData\Local\Temp\NGMResource.dll C:\Users\Alex\AppData\Local\Temp\NGMSetup.exe C:\Users\Alex\AppData\Local\Temp\NOSEventMessages.dll C:\Users\Alex\AppData\Local\Temp\nsa9570.exe C:\Users\Alex\AppData\Local\Temp\nsaBEE5.exe C:\Users\Alex\AppData\Local\Temp\nsf989C.exe C:\Users\Alex\AppData\Local\Temp\nslB8BC.exe C:\Users\Alex\AppData\Local\Temp\nsq9B9A.exe C:\Users\Alex\AppData\Local\Temp\nss93AE.exe C:\Users\Alex\AppData\Local\Temp\nsvBBB9.exe C:\Users\Alex\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Alex\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Alex\AppData\Local\Temp\nvStereoApiI.dll C:\Users\Alex\AppData\Local\Temp\nvStInst.exe C:\Users\Alex\AppData\Local\Temp\Quarantine.exe C:\Users\Alex\AppData\Local\Temp\riftuninstall.exe C:\Users\Alex\AppData\Local\Temp\skype_amd647448122361475394209.dll C:\Users\Alex\AppData\Local\Temp\tmp9819.exe C:\Users\Alex\AppData\Local\Temp\tmpB3D4.exe C:\Users\Alex\AppData\Local\Temp\tmpC68B.exe C:\Users\Alex\AppData\Local\Temp\tmpDF2A.exe C:\Users\Alex\AppData\Local\Temp\TUUUninstallHelper.exe C:\Users\Alex\AppData\Local\Temp\unicows.dll C:\Users\Alex\AppData\Local\Temp\Uninstaller-6108.exe C:\Users\Alex\AppData\Local\Temp\Uninstaller-6676.exe C:\Users\Alex\AppData\Local\Temp\Uninstaller-6788.exe C:\Users\Alex\AppData\Local\Temp\utt450F.tmp.exe C:\Users\Alex\AppData\Local\Temp\vcredist_x86.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-06-17 08:11 ==================== End Of Log ============================ |
17.02.2014, 00:53 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Trotzdem fehlt das additions Log
__________________ Logfiles bitte immer in CODE-Tags posten |
17.02.2014, 00:55 | #9 |
| WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-02-2014 Ran by Alex at 2014-02-17 00:48:44 Running from C:\Users\Alex\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Kaspersky PURE 3.0 (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5} AS: Kaspersky PURE 3.0 (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky PURE 3.0 (Enabled) {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E} ==================== Installed Programs ====================== Ace of Spades (x32 Version: - Jagex Limited) Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (x32 Version: 11.0.06 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (x32 Version: 12.0.2.122 - Adobe Systems, Inc.) Aeria Ignite (x32 Version: 1.13.3296 - Aeria Games & Entertainment) Aeria Ignite (x32 Version: 1.13.3296 - Aeria Games & Entertainment) Hidden AION Free-to-Play Version 1.0 (x32 Version: 1.0 - Gameforge) AMD APP SDK Runtime (Version: 10.0.938.2 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (Version: 8.0.881.0 - Advanced Micro Devices, Inc.) applicationupdater (HKCU Version: - Sony Online Entertainment) Arma 2 (x32 Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (x32 Version: - Bohemia Interactive) Aura Kingdom (x32 Version: - ) Auslogics Disk Defrag (x32 Version: 3.6 - Auslogics Software Pty Ltd) Bandicam (x32 Version: 1.9.2.454 - Bandisoft.com) Bandisoft MPEG-1 Decoder (x32 Version: - Bandisoft.com) Battlefield 1942 (x32 Version: - ) BattlEye for OA Uninstall (x32 Version: - ) BitRaider Web Client (x32 Version: 1.1.9.4 - BitRaider, LLC) Borderlands 2 (x32 Version: - Gearbox Software) Brick-Force (x32 Version: - Infernum Productions AG) CamStudio version 2.7 (x32 Version: 2.7 - CamStudio Open Source) Cheat Engine 6.3 (x32 Version: - Cheat Engine) Counter-Strike: Global Offensive (x32 Version: - Valve) Crysis 2 Maximum Edition (x32 Version: - Crytek Studios) Cube World version 0.0.1 (x32 Version: 0.0.1 - Picroma) Cubemen (x32 Version: - Three Sprockets) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DayZ Commander (x32 Version: 0.92.91 - Dotjosh Studios) Dead Island (x32 Version: - Techland) DEFIANCE (x32 Version: - Trion Worlds, Inc.) DefianceRuntimes (x32 Version: 1.0.2 - Trion Worlds, Inc.) diclovit's mod pack 1.10.2 (x32 Version: 1.10.2 - diclovit) Dokan Library 0.6.0 (x32 Version: - ) Duke Nukem Forever (x32 Version: - Gearbox Software) eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden ESN Sonar (x32 Version: 0.70.4 - ESN Social Software AB) Estranged: Act I (x32 Version: - Alan Edwardes) Euro Truck Simulator 2 (x32 Version: 1.8.2.5 - SCS Software) F1 2012 (x32 Version: - Codemasters Birmingham) Fallout: New Vegas (x32 Version: - Obsidian Entertainment) Firebird SQL Server - MAGIX Edition (x32 Version: 2.1.32.0 - MAGIX AG) FMOD Designer (x32 Version: - ) FormatFactory 3.0.1 (x32 Version: 3.0.1 - Free Time) Game Booster 3 (x32 Version: 3.4 - IObit) Gameforge Live 1.9.0 "Legend" (x32 Version: 1.9.0 - Gameforge) Garry's Mod (x32 Version: - Garry) Gas Guzzlers Extreme Demo (x32 Version: - ) GeForce Experience NvStream Client Components (Version: 1.6.28 - NVIDIA Corporation) Hidden GIMP 2.8.4 (Version: 2.8.4 - The GIMP Team) Google Chrome (x32 Version: 32.0.1700.107 - Google Inc.) Google Talk Plugin (x32 Version: 5.1.4.17398 - Google) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden Governor of Poker 2: Premium Edition (x32 Version: - I Sioux Game Productions B.V.) Grand Theft Auto: San Andreas (x32 Version: - Rockstar Games) GRID Demo (x32 Version: 1.00.0000 - Codemasters) HAWKEN (x32 Version: - Adhesive Games) Hi-Rez Studios Authenticate and Update Service (x32 Version: 3.0.0.0 - Hi-Rez Studios) IM Lock (x32 Version: - Comvigo, Inc.) Intel(R) Control Center (x32 Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (x32 Version: 8.1.0.1281 - Intel Corporation) Intel(R) Rapid Storage Technology (x32 Version: 11.1.0.1006 - Intel Corporation) Intel(R) Small Business Advantage (x32 Version: - Intel(R) Corporation) Intel(R) Update Manager (x32 Version: 1.0.0.34813 - Intel Corporation) Hidden Intel(R) USB 3.0 eXtensible Host Controller Driver (x32 Version: 1.0.4.225 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.738.1 - Intel Corporation) Hidden Java 7 Update 17 (64-bit) (Version: 7.0.170 - Oracle) Java 7 Update 51 (x32 Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Jt's AGQJ Engine&Guns Version 2.1 AGQJ for WOT 0.8.11 (x32 Version: 2.1 AGQJ for WOT 0.8.11 - JT_Adams's Modwerkstatt) Just Cause 2 (x32 Version: - Avalanche) Just Cause 2: Multiplayer Mod (x32 Version: - Avalanche Studios) Kaspersky PURE 3.0 (x32 Version: 13.0.2.558 - Kaspersky Lab) Kaspersky PURE 3.0 (x32 Version: 13.0.2.558 - Kaspersky Lab) Hidden MAESTIA Version 201307 (x32 Version: 201307 - ANDROMEDAGAMES) MAGIX Content und Soundpools (x32 Version: 1.0.0.0 - MAGIX AG) MAGIX Goya burnR (MSI) (Version: 4.3.2.0 - MAGIX AG) Hidden MAGIX Goya burnR (MSI) (x32 Version: 4.3.2.0 - MAGIX AG) MAGIX Music Maker 2014 (Version: 20.0.2.35 - MAGIX AG) Hidden MAGIX Music Maker 2014 (x32 Version: 20.0.2.35 - MAGIX AG) MAGIX Music Maker 2014 Trial Soundpools (Version: 1.0.0.0 - MAGIX AG) Hidden MAGIX Speed burnR (MSI) (Version: 7.0.2.6 - MAGIX AG) Hidden MAGIX Speed burnR (MSI) (x32 Version: 7.0.2.6 - MAGIX AG) MAGIX Video deluxe 2014 Premium (Version: 13.0.2.8 - MAGIX AG) Hidden MAGIX Video deluxe 2014 Premium (x32 Version: 13.0.2.8 - MAGIX AG) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (x32 Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Corporation (Version: 9.1.0.0 - Microsoft Corporation) Hidden Microsoft Corporation (x32 Version: 9.1.0.0 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE (x32 Version: 3.1.186.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0 - Microsoft Corporation) Microsoft LifeCam (Version: 3.22.270.0 - Microsoft Corporation) Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0 - Microsoft Corporation) Microsoft_VC100_CRT_SP1_x64 (Version: 10.0.40219.1 - Nokia) Hidden Microsoft_VC100_CRT_SP1_x86 (x32 Version: 10.0.40219.1 - Nokia) Hidden Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 22.0 - Mozilla) MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0 - Microsoft Corporation) Natural Selection 2 (x32 Version: - Unknown Worlds Entertainment) Nokia Connectivity Cable Driver (x32 Version: 7.1.172.0 - Nokia) NVIDIA 3D Vision Controller-Treiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA GeForce Experience 1.8.1 (Version: 1.8.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.142.992 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.0725 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725 - NVIDIA Corporation) NVIDIA ShadowPlay 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3221 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 332.21 (Version: 332.21 - NVIDIA Corporation) Hidden NVIDIA Update 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 10.11.15 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.19 (Version: 1.2.19 - NVIDIA Corporation) OpenAL (x32 Version: - ) Paint.NET v3.5.11 (Version: 3.61.0 - dotPDN LLC) PC Connectivity Solution (x32 Version: 12.0.109.0 - Nokia) PlanetSide 2 (x32 Version: - Sony Online Entertainment) PokerStars.eu (x32 Version: - PokerStars.eu) Portal 2 (x32 Version: - Valve) Quake Live Mozilla Plugin (x32 Version: 1.0.520 - id Software) Realtek Ethernet Controller Driver (x32 Version: 7.53.216.2012 - Realtek) Realtek High Definition Audio Driver (x32 Version: 6.0.1.7083 - Realtek Semiconductor Corp.) RocketDock 1.3.5 (x32 Version: - Punk Software) RuneScape Launcher 1.2.3 (x32 Version: 1.2.3 - Jagex Ltd) S.K.I.L.L. - Special Force 2 (x32 Version: - ) Saints Row IV (x32 Version: - Deep Silver Volition) Saints Row: The Third (x32 Version: - Volition) SHIELD Streaming (Version: 1.6.85 - NVIDIA Corporation) Hidden Skype™ 6.11 (x32 Version: 6.11.102 - Skype Technologies S.A.) Source SDK Base 2007 (x32 Version: - Valve) SpeedFan (remove only) (x32 Version: - ) SpinTires Tech Demo (June 060613) (x32 Version: 1.3 - Oovee) Spotify (HKCU Version: 0.9.7.16.g4b197456 - Spotify AB) Star Wars The Old Republic (x32 Version: 7.0.0.29 - Bioware/EA) Star Wars: The Old Republic (x32 Version: 1.00 - Electronic Arts, Inc.) Steam (x32 Version: 1.0.0.0 - Valve Corporation) Surgeon Simulator 2013 (x32 Version: - Bossa Studios) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Team Fortress 2 (x32 Version: - Valve) TeamSpeak 3 Client (HKCU Version: 3.0.13.1 - TeamSpeak Systems GmbH) TeamViewer 9 (x32 Version: 9.0.25790 - TeamViewer) Terraria (x32 Version: - ) Text-To-Speech-Runtime (x32 Version: 1.0.0.0 - Magix Development GmbH) The Elder Scrolls Online Beta (x32 Version: 0.3.4 - ) The Elder Scrolls V: Skyrim (x32 Version: - Bethesda Game Studios) The Mighty Quest For Epic Loot Version 1.220469 (x32 Version: 1.220469 - ) The Pit Demo (x32 Version: 1.0.0 - Kerberos Productions) The Plan (x32 Version: - Krillbite Studio) Tomb Raider (x32 Version: - Crystal Dynamics) TS Notifier (x32 Version: 1.5.5001 - Andreas Gebert) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden TuneUp Utilities 2014 (x32 Version: 14.0.1000.221 - TuneUp Software) TuneUp Utilities 2014 (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden Unity Web Player (HKCU Version: - Unity Technologies ApS) War Thunder Launcher 1.0.1.153 (x32 Version: - 2012 Gaijin Entertainment Corporation) Warframe (x32 Version: - ) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (Version: 05/31/2012 7.1.2.0 - Nokia) WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH) World of Tanks - Common Test (x32 Version: - Wargaming.net) World of Tanks (x32 Version: - Wargaming.net) World of Warplanes (x32 Version: - Wargaming.net) Zombie Driver HD (x32 Version: - Exor Studios) ==================== Restore Points ========================= 13-02-2014 10:32:24 Installed NaturalReaderFree. 13-02-2014 10:53:38 Removed NaturalReaderFree. 15-02-2014 21:01:18 Installed NaturalReaderFree. 15-02-2014 21:12:02 Removed NaturalReaderFree. ==================== Hosts content: ========================== 2009-07-14 03:34 - 2013-02-14 23:29 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {0211AD9F-6C20-4455-96BF-42E583E43FB2} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated) Task: {1060B6A7-B474-4CBE-AA3C-8E6788F5AB1B} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe [2013-12-18] (TuneUp Software) Task: {42720A60-DC37-432F-B779-544681FEE9E1} - System32\Tasks\{48A9EF00-04F4-4DFE-B8FB-9F9AE3EC46A1} => C:\Users\Alex\Desktop\SWTOR_setup (1).exe Task: {524B0F5B-2B4D-4D10-AC1B-4680409C7416} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation) Task: {5BE15411-DB39-4FF9-AA35-0ECA4D9DD6A1} - \Desk 365 RunAsStdUser No Task File Task: {76B77F1A-CF31-4FBA-8A2D-18D6C37A8A36} - System32\Tasks\Google Updater and Installer => C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe [2014-02-04] (Google Inc.) Task: {7D384E7A-3993-411D-9ACA-9BDD52817321} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-25] (Google Inc.) Task: {7F23482B-05F5-4139-AADF-736E0BD611CE} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [2013-07-23] () Task: {8005C0D7-3BF7-4CC1-8F1F-06A890C22868} - System32\Tasks\{1F1F4FB0-3932-4BAF-B1CC-B1729A279C99} => C:\Users\Alex\Desktop\gta sa neu\gta_sa.exe Task: {ABE1557F-5D1F-4750-9A14-E70754112752} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-05] (Adobe Systems Incorporated) Task: {C83B5117-32CB-4D91-A9DC-B4EE76B0704F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-25] (Google Inc.) Task: {CBACF01D-29AF-4D20-BC21-0C104C244700} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA => C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe [2014-02-04] (Google Inc.) Task: {D411F42A-B3B8-4EEC-9A77-2DE04EE6E683} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core => C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe [2014-02-04] (Google Inc.) Task: {EADF1C57-5D72-4ABF-A976-B8EC8FF63CAA} - \Omiga Plus RunAsStdUser No Task File Task: {ECC2222F-999F-46C5-9E20-8990838F97B4} - System32\Tasks\{96401EEC-B719-45F4-85D3-79C00ABDC861} => C:\Users\Alex\Desktop\SWTOR_setup (1).exe Task: {FB4C7FDF-E6C8-49EF-BA19-F0B7C2C0E6A9} - System32\Tasks\FRAPS => C:\Users\Alex\Desktop\Fraps\fraps.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core.job => C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA.job => C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-09-19 17:13 - 2013-12-19 13:40 - 00603648 _____ () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe 2012-12-20 17:19 - 2012-12-20 17:19 - 00479752 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\dblite.dll 2012-12-20 17:19 - 2012-12-20 17:19 - 01310728 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\kpcengine.2.2.dll 2011-01-10 13:49 - 2011-01-10 13:49 - 00014848 _____ () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe 2013-10-04 22:54 - 2013-10-19 00:02 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-10-17 09:43 - 2013-10-17 09:43 - 00172032 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\67f2d87ba056e1075fce76a8c50bb57e\IsdiInterop.ni.dll 2012-05-08 06:30 - 2012-02-01 15:25 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2012-05-08 10:56 - 2012-07-18 10:55 - 01198912 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2013-01-05 20:19 - 2012-02-27 13:00 - 00030432 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\ProcessPrivileges.dll 2013-01-05 20:19 - 2012-02-27 13:00 - 00215264 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\System.ComponentModel.Composition.dll 2013-01-05 20:19 - 2012-02-27 13:00 - 00051424 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Interop.TaskScheduler.dll 2013-02-21 15:57 - 2013-12-19 13:40 - 36967424 _____ () C:\Users\Alex\AppData\Roaming\Spotify\Data\libcef.dll 2013-09-19 17:13 - 2013-12-19 13:40 - 00887808 _____ () C:\Users\Alex\AppData\Roaming\Spotify\Data\libglesv2.dll 2013-09-19 17:13 - 2013-12-19 13:40 - 00109568 _____ () C:\Users\Alex\AppData\Roaming\Spotify\Data\libegl.dll 2014-02-05 14:33 - 2014-02-05 14:33 - 16287624 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll 2014-02-05 11:35 - 2014-02-02 00:41 - 00715592 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\libglesv2.dll 2014-02-05 11:35 - 2014-02-02 00:41 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\libegl.dll 2014-02-05 11:35 - 2014-02-02 00:42 - 04055368 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll 2014-02-05 11:35 - 2014-02-02 00:42 - 00399688 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll 2014-02-05 11:35 - 2014-02-02 00:41 - 01634632 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Alex\Anwendungsdaten:NT AlternateDataStreams: C:\Users\Alex\AppData\Roaming:NT ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Alex\AppData\Local\Akamai\netsession_win.exe" MSCONFIG\startupreg: Overwolf => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/16/2014 09:17:04 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (02/16/2014 02:19:51 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (02/16/2014 10:02:13 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/15/2014 10:48:07 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (02/15/2014 08:39:37 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/15/2014 08:38:12 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (02/15/2014 08:38:12 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (02/15/2014 08:38:09 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcNvVAD endpoint registration failed [0] Error: (02/15/2014 08:23:57 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (02/15/2014 10:36:28 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (02/15/2014 08:36:45 PM) (Source: DCOM) (User: ) Description: {3EB3C877-1F16-487C-9050-104DBCD66683} Error: (02/13/2014 00:35:18 AM) (Source: DCOM) (User: ) Description: {3EB3C877-1F16-487C-9050-104DBCD66683} Error: (02/11/2014 07:10:53 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 11.02.2014 um 19:08:59 unerwartet heruntergefahren. Error: (02/11/2014 10:48:18 AM) (Source: DCOM) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Error: (02/10/2014 00:04:03 PM) (Source: DCOM) (User: ) Description: {3EB3C877-1F16-487C-9050-104DBCD66683} Error: (02/09/2014 10:55:18 AM) (Source: volsnap) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. Error: (02/08/2014 00:02:12 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/08/2014 00:02:12 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (02/08/2014 11:59:16 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/08/2014 11:59:16 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Microsoft Office Sessions: ========================= Error: (02/16/2014 09:17:04 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (02/16/2014 02:19:51 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (02/16/2014 10:02:13 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/15/2014 10:48:07 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (02/15/2014 08:39:37 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/15/2014 08:38:12 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (02/15/2014 08:38:12 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (02/15/2014 08:38:09 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcNvVAD endpoint registration failed [0] Error: (02/15/2014 08:23:57 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (02/15/2014 10:36:28 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 CodeIntegrity Errors: =================================== Date: 2013-06-25 12:48:51.081 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 12:48:51.079 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 12:48:51.078 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 11:22:29.720 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 11:22:29.719 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 11:22:29.718 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-17 09:13:00.263 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-17 09:13:00.263 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-17 09:13:00.263 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-17 09:13:00.233 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 50% Total physical RAM: 8127.46 MB Available physical RAM: 3983.18 MB Total Pagefile: 16253.11 MB Available Pagefile: 11996.26 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:921.41 GB) (Free:104.64 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 1E2AC9C5) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=921 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=10 GB) - (Type=27) ==================== End Of Log ============================ |
17.02.2014, 01:00 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Dann bitte jetzt Combofix ausführen: Scan mit Combofix
__________________ Logfiles bitte immer in CODE-Tags posten |
17.02.2014, 01:17 | #11 |
| WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Alles klar, bevor ich das mache, kann ich die Meldung zuvor ignoeiren oder kann diese Datei (Von KAspersky) schaden anrichten während mein Virenprogramm abgeschaltet ist? Code:
ATTFilter ComboFix 14-02-16.01 - Alex 17.02.2014 1:03.2.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.8127.4379 [GMT 1:00] ausgeführt von:: c:\users\Alex\Desktop\ComboFix.exe AV: Kaspersky PURE 3.0 *Disabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5} FW: Kaspersky PURE 3.0 *Disabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E} SP: Kaspersky PURE 3.0 *Disabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Neuer Wiederherstellungspunkt wurde erstellt . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\Alex\AppData\Roaming\siw_sdk.dll c:\windows\SwSys1.bmp c:\windows\SwSys2.bmp c:\windows\SysWow64\frapsvid.dll c:\windows\SysWow64\tmp2CCD.tmp c:\windows\SysWow64\tmp2CDE.tmp . . ((((((((((((((((((((((( Dateien erstellt von 2014-01-17 bis 2014-02-17 )))))))))))))))))))))))))))))) . . 2014-02-17 00:08 . 2014-02-17 00:08 -------- d-----w- c:\users\Public\AppData\Local\temp 2014-02-17 00:08 . 2014-02-17 00:08 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-02-15 21:01 . 2014-02-15 21:12 -------- d-----w- c:\program files (x86)\Naturalsoft 2014-02-13 10:32 . 2014-02-15 21:12 -------- d-----w- c:\users\Alex\AppData\Roaming\Naturalsoft 2014-02-12 13:20 . 2014-02-12 13:20 466456 ----a-w- c:\windows\system32\wrap_oal.dll 2014-02-12 13:20 . 2014-02-12 13:20 444952 ----a-w- c:\windows\SysWow64\wrap_oal.dll 2014-02-12 13:20 . 2014-02-12 13:20 121880 ----a-w- c:\windows\system32\OpenAL32.dll 2014-02-12 13:20 . 2014-02-12 13:20 109080 ----a-w- c:\windows\SysWow64\OpenAL32.dll 2014-02-12 13:20 . 2014-02-12 13:20 -------- d-----w- c:\program files (x86)\OpenAL 2014-02-12 13:16 . 2014-02-12 13:16 -------- d-----w- c:\program files (x86)\Codemasters 2014-02-11 18:14 . 2014-02-11 18:14 -------- d-----w- c:\users\Alex\AppData\Local\Avg2014 2014-02-11 15:02 . 2014-02-11 15:27 -------- d-----w- c:\program files (x86)\ACR 2014-02-09 16:16 . 2014-02-09 16:16 -------- d-----w- c:\users\Alex\AppData\Roaming\steamvr 2014-02-04 20:30 . 2014-02-04 20:30 -------- d-----w- c:\users\Alex\AppData\Local\EdgeOfReality 2014-01-28 21:23 . 2014-01-28 21:24 -------- d-----w- c:\program files (x86)\Euro Truck Simulator 2 2014-01-27 21:24 . 2014-01-27 21:24 -------- d-----w- c:\users\Alex\AppData\Roaming\hawkthorne_release 2014-01-27 19:11 . 2014-01-27 19:11 -------- d-----w- c:\users\Alex\AppData\Local\NVIDIA Corporation 2014-01-27 19:11 . 2013-12-10 02:15 982232 ----a-w- c:\windows\SysWow64\nvspcap.dll 2014-01-27 19:11 . 2013-12-10 02:14 1100248 ----a-w- c:\windows\system32\nvspcap64.dll 2014-01-27 19:10 . 2014-01-27 19:10 -------- d-----w- c:\program files (x86)\AGEIA Technologies 2014-01-27 12:34 . 2014-01-27 12:34 -------- d-----w- c:\users\Alex\AppData\Local\Magix 2014-01-27 12:34 . 2014-01-27 12:34 -------- d-----w- c:\users\Alex\AppData\Local\Xara 2014-01-27 12:32 . 2014-01-31 10:29 -------- d-----w- c:\program files (x86)\MAGIX 2014-01-26 16:17 . 2014-01-26 17:27 -------- d-----w- c:\program files (x86)\Common Files\PX Storage Engine 2014-01-26 16:17 . 2014-01-26 17:27 -------- d-----w- c:\program files (x86)\Winamp 2014-01-26 16:13 . 2014-01-26 16:15 -------- d-----w- c:\users\Alex\AppData\Roaming\vlc 2014-01-26 16:12 . 2014-01-26 16:15 -------- d-----w- c:\program files\VideoLAN 2014-01-25 21:45 . 2014-01-25 21:45 -------- d-----w- c:\users\Alex\AppData\Roaming\YoudaGames 2014-01-24 00:18 . 2014-01-24 00:18 -------- d-----w- c:\program files (x86)\Common Files\BattlEye 2014-01-24 00:14 . 2014-01-24 00:14 -------- d-----w- c:\programdata\Bohemia Interactive Studio 2014-01-24 00:07 . 2014-01-24 00:07 -------- d-----w- c:\program files (x86)\Dotjosh Studios 2014-01-23 23:16 . 2014-02-10 20:40 -------- d-----w- c:\users\Alex\AppData\Local\ArmA 2 OA 2014-01-23 15:25 . 2014-01-23 15:25 -------- d-----w- c:\users\Alex\AppData\Local\THQ 2014-01-23 15:25 . 2008-07-12 07:18 467984 ----a-w- c:\windows\SysWow64\d3dx10_39.dll 2014-01-23 15:25 . 2008-07-12 07:18 1493528 ----a-w- c:\windows\SysWow64\D3DCompiler_39.dll 2014-01-23 15:25 . 2008-07-12 07:18 540688 ----a-w- c:\windows\system32\d3dx10_39.dll 2014-01-23 15:25 . 2008-07-12 07:18 1942552 ----a-w- c:\windows\system32\D3DCompiler_39.dll 2014-01-23 15:25 . 2008-07-12 07:18 3851784 ----a-w- c:\windows\SysWow64\D3DX9_39.dll 2014-01-23 15:25 . 2008-07-12 07:18 4992520 ----a-w- c:\windows\system32\D3DX9_39.dll 2014-01-22 19:52 . 2014-01-22 19:52 -------- d-----w- c:\users\Alex\AppData\Local\Ascaron Entertainment 2014-01-21 23:06 . 2013-12-18 09:01 36152 ----a-w- c:\windows\SysWow64\uxtuneup.dll 2014-01-21 23:06 . 2013-12-18 09:01 43320 ----a-w- c:\windows\system32\uxtuneup.dll 2014-01-21 20:42 . 2014-01-21 20:42 -------- d-----w- c:\users\Alex\AppData\Local\Risen2 2014-01-21 17:29 . 2014-01-28 21:37 -------- d-----w- c:\users\Alex\AppData\Local\DayZ 2014-01-19 22:30 . 2014-01-19 22:30 -------- d-----w- c:\windows\SysWow64\RTCOM 2014-01-19 22:30 . 2014-01-19 22:30 -------- d-----w- c:\program files\Realtek 2014-01-19 22:28 . 2005-11-13 22:19 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\DotNetInstaller.exe 2014-01-19 15:22 . 2014-01-19 15:49 -------- d-----w- c:\users\Alex\AppData\Local\Sony 2014-01-19 15:22 . 2014-01-19 15:49 -------- d-----w- c:\programdata\Sony 2014-01-19 15:22 . 2014-01-28 12:50 -------- d-----w- c:\users\Alex\AppData\Roaming\Sony . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-02-05 13:33 . 2013-02-20 13:46 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2014-02-05 13:33 . 2013-02-20 13:46 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-01-15 10:05 . 2014-01-15 10:27 4784312 ----a-w- c:\windows\SysWow64\GameMon.des 2014-01-06 15:20 . 2012-05-08 07:26 86054176 ----a-w- c:\windows\system32\MRT.exe 2013-12-19 20:33 . 2012-10-10 20:22 2698272 ----a-w- c:\windows\SysWow64\nvapi.dll 2013-12-19 20:33 . 2012-05-08 05:56 3071656 ----a-w- c:\windows\system32\nvapi64.dll 2013-12-19 20:33 . 2012-05-08 05:56 18310112 ----a-w- c:\windows\system32\nvwgf2umx.dll 2013-12-19 20:33 . 2012-05-08 05:56 15230352 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2013-12-19 20:33 . 2012-05-08 05:56 1436528 ----a-w- c:\windows\system32\nvumdshimx.dll 2013-12-19 18:53 . 2012-05-23 07:09 6671648 ----a-w- c:\windows\system32\nvcpl.dll 2013-12-19 18:53 . 2012-05-23 07:09 3490080 ----a-w- c:\windows\system32\nvsvc64.dll 2013-12-19 18:53 . 2012-05-23 07:09 922912 ----a-w- c:\windows\system32\nvvsvc.exe 2013-12-19 18:53 . 2012-05-23 07:09 63776 ----a-w- c:\windows\system32\nvshext.dll 2013-12-19 18:53 . 2012-05-23 07:09 386336 ----a-w- c:\windows\system32\nvmctray.dll 2013-12-19 18:53 . 2012-05-23 07:09 2559776 ----a-w- c:\windows\system32\nvsvcr.dll 2013-12-19 11:20 . 2013-12-19 11:20 590112 ----a-w- c:\windows\SysWow64\nvStreaming.exe 2013-12-19 05:01 . 2012-05-23 07:09 3539040 ----a-w- c:\windows\system32\nvcoproc.bin 2013-12-18 20:09 . 2014-01-13 13:05 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2013-12-18 09:01 . 2014-01-17 16:45 40760 ----a-w- c:\windows\system32\TURegOpt.exe 2013-12-18 09:01 . 2014-01-17 16:45 29496 ----a-w- c:\windows\system32\authuitu.dll 2013-12-18 09:01 . 2014-01-17 16:45 25400 ----a-w- c:\windows\SysWow64\authuitu.dll 2013-11-27 01:41 . 2014-01-16 08:37 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys 2013-11-27 01:41 . 2014-01-16 08:37 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys 2013-11-27 01:41 . 2014-01-16 08:37 53248 ----a-w- c:\windows\system32\drivers\usbehci.sys 2013-11-27 01:41 . 2014-01-16 08:37 325120 ----a-w- c:\windows\system32\drivers\usbport.sys 2013-11-27 01:41 . 2014-01-16 08:37 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys 2013-11-27 01:41 . 2014-01-16 08:37 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys 2013-11-27 01:41 . 2014-01-16 08:37 7808 ----a-w- c:\windows\system32\drivers\usbd.sys 2013-11-26 11:40 . 2014-01-16 08:36 376768 ----a-w- c:\windows\system32\drivers\netio.sys 2013-11-26 10:32 . 2014-01-16 08:37 3156480 ----a-w- c:\windows\system32\win32k.sys 2013-11-23 18:26 . 2014-01-16 08:37 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll 2013-11-23 17:47 . 2014-01-16 08:37 465920 ----a-w- c:\windows\system32\WMPhoto.dll 2013-11-22 08:36 . 2012-05-23 07:09 1515296 ----a-w- c:\windows\system32\nvhdagenco6420103.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\KAVOverlayIcon] @="{dd230880-495a-11d1-b064-008048ec2fc5}" [HKEY_CLASSES_ROOT\CLSID\{dd230880-495a-11d1-b064-008048ec2fc5}] 2012-12-20 16:20 459784 ----a-w- c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\shellex.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584] "Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-11-14 20584608] "Spotify Web Helper"="c:\users\Alex\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [2013-12-19 1171968] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-03-27 291608] "AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe" [2013-10-18 356128] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37] @="" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys] @="" . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "IAStorIcon"=c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60 "IMSS"="c:\program files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" "IntelSBA"=c:\program files (x86)\Intel\Intel(R) Small Business Advantage\Service\SBALaunchDelay.exe "c:\program files (x86)\Intel\Intel(R) Small Business Advantage\UI\IntelSmallBusinessAdvantage.exe -minimized" 60 "LifeCam"="c:\program files (x86)\Microsoft LifeCam\LifeExp.exe" "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" "Aeria Ignite"="c:\program files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 DokanMounter;DokanMounter;c:\program files (x86)\Dokan\DokanLibrary\mounter.exe;c:\program files (x86)\Dokan\DokanLibrary\mounter.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 BEService;BattlEye Service;c:\program files (x86)\Common Files\BattlEye\BEService.exe;c:\program files (x86)\Common Files\BattlEye\BEService.exe [x] R3 BRDriver64;BRDriver64;c:\programdata\BitRaider\BRDriver64.sys;c:\programdata\BitRaider\BRDriver64.sys [x] R3 BRSptSvc;BitRaider Mini-Support Service;c:\programdata\BitRaider\BRSptSvc.exe;c:\programdata\BitRaider\BRSptSvc.exe [x] R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x] R3 FairplayKD;FairplayKD;c:\programdata\MTA San Andreas All\1.3\temp\FairplayKD.sys;c:\programdata\MTA San Andreas All\1.3\temp\FairplayKD.sys [x] R3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [x] R3 hxsyol;hxsyol;c:\aeriagames\AuraKingdom\avital\hxsy64.sys;c:\aeriagames\AuraKingdom\avital\hxsy64.sys [x] R3 iaStorA;iaStorA;c:\windows\system32\drivers\iaStorA.sys;c:\windows\SYSNATIVE\drivers\iaStorA.sys [x] R3 iaStorS;iaStorS;c:\windows\system32\drivers\iaStorS.sys;c:\windows\SYSNATIVE\drivers\iaStorS.sys [x] R3 MSICDSetup;MSICDSetup;d:\cdriver64.sys;d:\CDriver64.sys [x] R3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des;c:\windows\SYSNATIVE\GameMon.des [x] R3 NTIOLib_1_0_3;NTIOLib_1_0_3;c:\program files (x86)\MSI\Super-Charger\NTIOLib_X64.sys;c:\program files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [x] R3 NTIOLib_1_0_C;NTIOLib_1_0_C;d:\ntiolib_x64.sys;d:\NTIOLib_X64.sys [x] R3 NvStUSB;NVIDIA Stereoscopic 3D USB driver;c:\windows\system32\drivers\nvstusb.sys;c:\windows\SYSNATIVE\drivers\nvstusb.sys [x] R3 PciIsaSerial;PCI-ISA Communication Port;c:\windows\system32\drivers\PciIsaSerial.sys;c:\windows\SYSNATIVE\drivers\PciIsaSerial.sys [x] R3 PciPPorts;PCI ECP Parallel Port;c:\windows\system32\drivers\PciPPorts.sys;c:\windows\SYSNATIVE\drivers\PciPPorts.sys [x] R3 PciSPorts;High-Speed PCI Serial Port;c:\windows\system32\drivers\PciSPorts.sys;c:\windows\SYSNATIVE\drivers\PciSPorts.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [x] R3 X6va011;X6va011;c:\windows\SysWOW64\Drivers\X6va011;c:\windows\SysWOW64\Drivers\X6va011 [x] R3 X6va012;X6va012;c:\windows\SysWOW64\Drivers\X6va012;c:\windows\SysWOW64\Drivers\X6va012 [x] R3 X6va015;X6va015;c:\windows\SysWOW64\Drivers\X6va015;c:\windows\SysWOW64\Drivers\X6va015 [x] R3 xhunter1;xhunter1;c:\windows\xhunter1.sys;c:\windows\xhunter1.sys [x] S0 CSCrySec;InfoWatch Encrypt Sector Library driver;c:\windows\system32\DRIVERS\CSCrySec.sys;c:\windows\SYSNATIVE\DRIVERS\CSCrySec.sys [x] S0 iaStorF;iaStorF;c:\windows\system32\drivers\iaStorF.sys;c:\windows\SYSNATIVE\drivers\iaStorF.sys [x] S0 iusb3hcs;Intel(R) USB 3.0 Hostcontroller-Switchtreiber;c:\windows\system32\drivers\iusb3hcs.sys;c:\windows\SYSNATIVE\drivers\iusb3hcs.sys [x] S1 CSVirtualDiskDrv;InfoWatch Virtual Disk driver;c:\windows\system32\DRIVERS\CSVirtualDiskDrv.sys;c:\windows\SYSNATIVE\DRIVERS\CSVirtualDiskDrv.sys [x] S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x] S1 kltdi;kltdi;c:\windows\system32\DRIVERS\kltdi.sys;c:\windows\SYSNATIVE\DRIVERS\kltdi.sys [x] S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x] S2 CSObjectsSrv;Verwaltungsservice vom CryproStorage-System;c:\program files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe;c:\program files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [x] S2 Dokan;Dokan;c:\windows\system32\drivers\dokan.sys;c:\windows\SYSNATIVE\drivers\dokan.sys [x] S2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [x] S2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;c:\program files (x86)\Hi-Rez Studios\HiPatchService.exe;c:\program files (x86)\Hi-Rez Studios\HiPatchService.exe [x] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x] S2 Intel(R) Small Business Advantage;Intel(R) Small Business Advantage;c:\program files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe;c:\program files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [x] S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x] S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 TeamViewer9;TeamViewer 9;c:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [x] S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe;c:\program files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S3 iusb3hub;Intel(R) USB 3.0-Hubtreiber;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x] S3 iusb3xhc;Intel(R) USB 3.0 eXtensible-Hostcontrollertreiber;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x] S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x] S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x] S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver;c:\windows\system32\Drivers\nx6000.sys;c:\windows\SYSNATIVE\Drivers\nx6000.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys;c:\program files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2014-02-05 10:35 1211720 ----a-w- c:\program files (x86)\Google\Chrome\Application\32.0.1700.107\Installer\chrmstp.exe . Inhalt des "geplante Tasks" Ordners . 2014-02-16 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-20 13:33] . 2014-02-16 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-11-25 15:33] . 2014-02-16 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-11-25 15:33] . 2014-02-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core.job - c:\users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe [2014-02-04 21:24] . 2014-02-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA.job - c:\users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe [2014-02-04 21:24] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\KAVOverlayIcon] @="{dd230880-495a-11d1-b064-008048ec2fc5}" [HKEY_CLASSES_ROOT\CLSID\{dd230880-495a-11d1-b064-008048ec2fc5}] 2012-12-20 16:22 492040 ----a-w- c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\shellex.dll . HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs UxTuneUp . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = about:blank mDefault_Page_URL = hxxp://www.google.com mStart Page = about:blank mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = <local> uSearchAssistant = hxxp://www.google.com IE: Hinzufügen zu Anti-Banner - c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ie_banner_deny.htm IE: {{07BA1DA9-F501-4796-8728-74D1B91A6CD5} - c:\program files (x86)\PokerStars.EU\PokerStarsUpdate.exe TCP: DhcpNameServer = 155.168.1.1 FF - ProfilePath - c:\users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\ FF - prefs.js: browser.search.selectedEngine - Conduit Search FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&SSPV= FF - ExtSQL: 2014-02-15 23:28; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi . - - - - Entfernte verwaiste Registrierungseinträge - - - - . HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start AddRemove-FMOD Designer - c:\users\Alex\Desktop\Yolo\uninstall.exe AddRemove-IMLock - c:\windows\System32\tnblf.exe AddRemove-{1AD3289B-A7F7-409B-B8F9-AF255869676B}_is1 - c:\users\Alex\Desktop\Neuer Ordner\unins000.exe . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\npggsvc] "ImagePath"="c:\windows\system32\GameMon.des -service" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\X6va011] "ImagePath"="\??\c:\windows\SysWOW64\Drivers\X6va011" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\X6va012] "ImagePath"="\??\c:\windows\SysWOW64\Drivers\X6va012" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\X6va015] "ImagePath"="\??\c:\windows\SysWOW64\Drivers\X6va015" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\.Default\Software\Classes\CLSID] @DACL=(02 0000) . [HKEY_USERS\.Default\Software\Classes\CLSID\{97D17A04-4438-4C8E-BAC7-BC21B8B9E999}] @DACL=(02 0000) @="GPUStatusReader.GPUMonitor" . [HKEY_USERS\S-1-5-21-992614989-2845173188-1475335217-1003\Software\SecuROM\License information*] "datasecu"=hex:31,62,6d,16,d7,29,12,17,0d,20,89,a8,30,08,0a,0b,52,16,c9,f2,bd, 1d,96,62,01,fc,28,36,a1,53,67,fb,35,2f,35,02,c6,3a,5c,60,c4,4c,4b,51,08,56,\ "rkeysecu"=hex:b6,20,e3,c8,fe,58,4b,9e,8b,c6,01,bb,bc,de,fc,46 . [HKEY_USERS\S-1-5-21-992614989-2845173188-1475335217-1003_Classes\CLSID] @DACL=(02 0000) . [HKEY_USERS\S-1-5-21-992614989-2845173188-1475335217-1003_Classes\CLSID\{55839D91-467F-4be1-9DC1-8ADBBCC794F6}] @DACL=(02 0000) @="SoundControl.VCRGadget" . [HKEY_USERS\S-1-5-21-992614989-2845173188-1475335217-1003_Classes\CLSID\{97D17A04-4438-4C8E-BAC7-BC21B8B9E999}] @DACL=(02 0000) @="GPUStatusReader.GPUMonitor" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2014-02-17 01:10:55 ComboFix-quarantined-files.txt 2014-02-17 00:10 ComboFix2.txt 2013-02-14 22:30 . Vor Suchlauf: 31 Verzeichnis(se), 143.701.635.072 Bytes frei Nach Suchlauf: 33 Verzeichnis(se), 145.219.727.360 Bytes frei . - - End Of File - - 36E96A8A24ED3D185B28D3D0566DA60F |
17.02.2014, 09:49 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Adware/Junkware/Toolbars entfernen 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten |
17.02.2014, 12:12 | #13 |
| WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Morgen, Sehen sie an den bereits geposteten Logs Trojaner o. Keylogger? Wer weiß was mir diese Seite alles drauf gezogen hat :-( Wäre nich so toll, weil ich Paypal nutze :S Nun, hier die Logs: Adwcleaner: Code:
ATTFilter # AdwCleaner v3.018 - Bericht erstellt am 17/02/2014 um 11:53:29 # Updated 28/01/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Alex - ALEX-PC # Gestartet von : C:\Users\Alex\Desktop\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Datei Gelöscht : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\searchplugins\conduit-search.xml ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C3DA4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785} Schlüssel Gelöscht : HKCU\Software\OCS ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.16750 -\\ Mozilla Firefox v22.0 (de) [ Datei : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\prefs.js ] Zeile gelöscht : user_pref("browser.search.selectedEngine", "Conduit Search"); Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://search.conduit.com/?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP38AE4FB4-5517-4325-9313-FD58901CEEE9&SSPV="); -\\ Google Chrome v32.0.1700.107 [ Datei : C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht : homepage ************************* AdwCleaner[R0].txt - [4997 octets] - [18/11/2013 15:30:35] AdwCleaner[R1].txt - [3413 octets] - [17/02/2014 11:52:20] AdwCleaner[S0].txt - [4791 octets] - [18/11/2013 15:32:21] AdwCleaner[S1].txt - [3100 octets] - [17/02/2014 11:53:29] ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [3160 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.1 (02.04.2014:1) OS: Windows 7 Home Premium x64 Ran by Alex on 17.02.2014 at 12:00:16,69 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-992614989-2845173188-1475335217-1003\Software\sweetim Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\omigaplussvc Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{1D9852CD-7B4F-40B4-BFBD-585BDC36E590} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{663C16BD-703A-4CA9-85DC-F1F8BD58E28D} ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Users\Alex\appdata\local\cre" Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin" Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{01D09B3C-1212-440F-A0E4-C09F88542879} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{033717EC-BE5D-404E-BAAB-1F41CC0C2393} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{083ED1B7-10B3-4BE1-8AA7-320EACE257F8} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{1F830A71-A22A-4D40-A01F-832778958AE6} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{20A09D2F-F1FF-40B6-87B4-342353CB1C3A} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{238C9AF3-1C85-45A5-A9D3-9AA4EDCE9108} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{29125C19-DBEC-4F38-AF2F-BBA8EFA48A78} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{2A1774B3-9B0C-4856-9CD3-ED85463F72D1} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{324CE60D-601B-43A7-9F9B-D858519BF4A9} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{33C2AFAD-75E5-437B-AF20-E3E0291A0EE3} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{358FEBB5-2318-400E-AF2C-E97E9A209D28} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{3D85E798-1B8E-48F7-8367-11FF9B7B2942} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{3DD6F274-EC4C-436B-872C-E6F997B5E0F2} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{3ECF4624-E3BF-4FB2-AA19-395266FBC006} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{42BE627F-B00E-4946-A9A1-24FA23B7ECEF} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{492777E2-8181-466A-B190-D7952D016F80} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{4C2A8127-71F9-4BB9-92CA-799C04F4C107} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{4E398B70-7958-4572-A38F-47AAD27EFDAF} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{4FBDC520-9D1C-40CE-834C-5A457311B2BA} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{5892B501-AA01-4385-95B8-E1615A892634} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{5B7277E2-23C9-4EC8-895D-A129F1D570B5} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{5E229FC5-42B7-4048-AF78-8AC6BBF2A037} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{6945717F-BF60-44BE-90B7-1801C2CAC2E4} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{6B4273F6-DF67-4EE4-82B8-EDFE29B495D8} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{735F9922-D795-4FA8-8AEA-93FAC1AEDB5F} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{773AA86E-157B-44E5-912D-783DD00F039C} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{91094F4B-05EB-4C0F-B5F6-371871BFDC5B} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{9173643D-41E7-4EA5-BE30-2DF73977519F} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{96970C5E-C513-4659-8CBD-A1EB21C3D2DB} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{BAC09DE4-A900-4CAB-91A4-4D42627F1F7B} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{C8D136A7-74B9-4B12-A0BD-354AEC8DFFD6} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{CACA7073-3573-40B4-9085-94B27252F5A7} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{D0DF933F-6F07-49A9-8542-BF92BB4E89BB} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{D9BA6412-05B2-46AE-A274-AF36B789EA6D} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{E8114953-D8EA-46DA-9896-F040FA3214F2} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{E9AFF11F-6D7D-48AF-BAB8-F744628211B7} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{F73AD5E8-1079-411A-931B-6D4FC778C784} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{F7FBE4D3-BA0E-4E08-8711-BF313AA95BBD} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{FB8595C4-956E-484F-9D86-8F9CBE79545F} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{FB9418E9-763B-4361-B93B-CD4A49D4F26F} ~~~ FireFox Emptied folder: C:\Users\Alex\AppData\Roaming\mozilla\firefox\profiles\8qof1hkw.default\minidumps [3 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 17.02.2014 at 12:06:03,70 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
17.02.2014, 12:23 | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ | WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Log von FRST fehlt. Und nein, bislang keine Keylogger und Sicht
__________________ Logfiles bitte immer in CODE-Tags posten |
17.02.2014, 12:30 | #15 |
| WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. Entschuldigung, FRST FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-02-2014 Ran by Alex (administrator) on ALEX-PC on 17-02-2014 12:24:24 Running from C:\Users\Alex\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe (Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe (Farbar) C:\Users\Alex\Desktop\FRST64 (1).exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-03-27] (Intel Corporation) HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.hyrican.de HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - No File BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 155.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @idsoftware.com/QuakeLive - C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npnxgameEU.dll (Nexon) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\plugins\npArcPluginFF.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google) FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Alex\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll () FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Alex\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Alex\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Alex\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npgtpo3dautoplugin.dll () FF Plugin ProgramFiles/Appdata: C:\Users\Alex\AppData\Roaming\mozilla\plugins\npo1d.dll (Google) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-15] FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt Chrome: ======= CHR HomePage: hxxp://www.google.com CHR Extension: (Google Docs) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-25] CHR Extension: (Google Drive) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-25] CHR Extension: (YouTube) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-25] CHR Extension: (Adblock Plus) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-11-25] CHR Extension: (Google-Suche) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-25] CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2013-11-25] CHR Extension: (GFACE Experience Plugin) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejdlfmdbdibkbfdpjocdaolcheehmpol [2013-11-30] CHR Extension: (AdBlock) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-11-25] CHR Extension: (Sicherer Zahlungsverkehr) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2013-11-25] CHR Extension: (Content Blocker) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2013-11-25] CHR Extension: (Virtual Keyboard) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2013-11-25] CHR Extension: (Google Wallet) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-25] CHR Extension: (Google Mail) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-25] CHR Extension: (Anti-Banner) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2013-11-25] CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\online_banking_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\content_blocker_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\virtkbd.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [koalekbhpbggkcfhkkbolikjoaobbppi] - C:\Program Files (x86)\PutLockerDownloader\PutLockerDownloader10.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx [2012-12-28] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-01-24] () S3 BRSptSvc; C:\ProgramData\BitRaider\BRSptSvc.exe [477960 2014-01-06] (BitRaider, LLC) R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () R2 Intel(R) Small Business Advantage; C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [49376 2012-02-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-19] (Intel Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4784312 2014-01-15] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-10-19] () R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== S3 BRDriver64; C:\ProgramData\BitRaider\BRDriver64.sys [75048 2013-10-03] (BitRaider) R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider) S3 hxsyol; C:\AeriaGames\AuraKingdom\avital\hxsy64.sys [86352 2013-11-27] () R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [24496 2011-12-19] (Intel Corporation) S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [637360 2011-12-19] (Intel Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [7717984 2013-10-18] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [626272 2013-10-18] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-08-28] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-08-28] (Kaspersky Lab ZAO) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) S3 PciIsaSerial; C:\Windows\system32\drivers\PciIsaSerial.sys [68608 2008-12-19] (Windows (R) Codename Longhorn DDK provider) S3 PciPPorts; C:\Windows\system32\drivers\PciPPorts.sys [96768 2009-07-23] () S3 PciSPorts; C:\Windows\system32\drivers\PciSPorts.sys [122880 2008-12-19] () R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-12-16] (TuneUp Software) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\1.3\temp\FairplayKD.sys [X] U5 klflt; C:\Windows\System32\Drivers\klflt.sys [90208 2013-10-18] (Kaspersky Lab ZAO) S3 MSICDSetup; \??\D:\CDriver64.sys [X] S3 NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [X] S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X] S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-17 12:24 - 2014-02-17 12:24 - 02152448 _____ (Farbar) C:\Users\Alex\Desktop\FRST64 (1).exe 2014-02-17 12:24 - 2014-02-17 12:24 - 00021266 _____ () C:\Users\Alex\Desktop\FRST.txt 2014-02-17 12:23 - 2014-02-17 12:24 - 02152448 _____ (Farbar) C:\Users\Alex\Downloads\FRST64 (1).exe 2014-02-17 12:06 - 2014-02-17 12:06 - 00005694 _____ () C:\Users\Alex\Desktop\JRT.txt 2014-02-17 12:00 - 2014-02-17 12:00 - 00000000 ____D () C:\Windows\ERUNT 2014-02-17 11:51 - 2014-02-17 11:51 - 01037530 _____ (Thisisu) C:\Users\Alex\Downloads\JRT.exe 2014-02-17 11:51 - 2014-02-17 11:51 - 01037530 _____ (Thisisu) C:\Users\Alex\Desktop\JRT.exe 2014-02-17 11:50 - 2014-02-17 11:50 - 01166132 _____ () C:\Users\Alex\Downloads\adwcleaner.exe 2014-02-17 11:50 - 2014-02-17 11:50 - 01166132 _____ () C:\Users\Alex\Desktop\adwcleaner.exe 2014-02-17 01:10 - 2014-02-17 01:10 - 00025114 _____ () C:\ComboFix.txt 2014-02-17 00:57 - 2014-02-17 00:57 - 05183112 ____R (Swearware) C:\Users\Alex\Desktop\ComboFix.exe 2014-02-17 00:57 - 2014-02-17 00:57 - 05183112 _____ (Swearware) C:\Users\Alex\Downloads\ComboFix.exe 2014-02-16 23:35 - 2014-02-16 23:35 - 02152448 _____ (Farbar) C:\Users\Alex\Downloads\FRST64.exe 2014-02-16 23:22 - 2014-02-16 23:22 - 00614816 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\AdwCleaner - CHIP-Downloader.exe 2014-02-16 21:47 - 2014-02-16 21:47 - 14200736 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.2_setup.exe 2014-02-16 21:44 - 2014-02-16 21:44 - 02224501 _____ () C:\Users\Alex\Downloads\[0.8.11]KT_Crosshair_Mjolnir_v2.742.rar 2014-02-16 21:36 - 2014-02-16 21:38 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (3).exe 2014-02-15 22:01 - 2014-02-15 22:12 - 00000000 ____D () C:\Program Files (x86)\Naturalsoft 2014-02-15 14:59 - 2014-02-15 14:59 - 00065359 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.rar 2014-02-15 14:58 - 2014-02-15 14:58 - 00075654 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.wav 2014-02-15 14:22 - 2014-02-15 14:22 - 33294684 _____ () C:\Users\Alex\Downloads\fmoddesigner43604win-installer.exe 2014-02-15 14:22 - 2014-02-15 14:22 - 00143447 _____ () C:\Users\Alex\Downloads\ssfdp.zip 2014-02-15 12:11 - 2014-02-15 12:11 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599 (1).rar 2014-02-15 11:54 - 2014-02-15 11:54 - 00111376 _____ () C:\Users\Alex\AppData\Local\recently-used.xbel 2014-02-15 11:26 - 2014-02-15 11:26 - 00038937 _____ () C:\Users\Alex\Desktop\schlurp.xcf 2014-02-15 11:13 - 2014-02-15 11:13 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Desktop\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:11 - 2014-02-15 11:13 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:09 - 2014-02-15 11:11 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (1).exe 2014-02-14 21:56 - 2014-02-14 22:00 - 61212284 _____ () C:\Users\Alex\Desktop\20131207_164820.mp4 2014-02-14 20:56 - 2014-02-14 20:56 - 00026567 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.7z 2014-02-14 20:48 - 2014-02-14 20:48 - 00038468 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.zip 2014-02-14 16:22 - 2014-02-14 16:23 - 14252755 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.1_setup.exe 2014-02-14 15:58 - 2014-02-14 15:59 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN.exe 2014-02-13 19:29 - 2014-02-16 10:24 - 00000000 ____D () C:\Users\Alex\Desktop\GFX 2014-02-13 11:32 - 2014-02-15 22:12 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Naturalsoft 2014-02-13 11:31 - 2014-02-15 22:12 - 00000000 ____D () C:\Users\Alex\Documents\Naturalsoft 2014-02-13 11:31 - 2014-02-13 11:31 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Desktop\standardsetup.exe 2014-02-13 11:30 - 2014-02-13 11:31 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Downloads\standardsetup.exe 2014-02-13 10:15 - 2014-02-13 10:15 - 14249870 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.0_setup.exe 2014-02-12 14:30 - 2014-02-12 14:30 - 00000000 ____D () C:\Users\Alex\Documents\Codemasters 2014-02-12 14:20 - 2014-02-12 14:20 - 00466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00121880 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00000000 ____D () C:\Program Files (x86)\OpenAL 2014-02-12 14:16 - 2014-02-12 14:16 - 00000000 ____D () C:\Program Files (x86)\Codemasters 2014-02-12 14:11 - 2014-02-12 14:13 - 00000000 ____D () C:\Users\Alex\Desktop\Grid 2014-02-12 13:50 - 2014-02-12 13:56 - 937281756 _____ () C:\Users\Alex\Downloads\grid_demo.zip 2014-02-12 12:31 - 2014-02-12 12:31 - 01873912 _____ () C:\Users\Alex\Downloads\Warframe_2013-06-10_21-49-50-79._Png 2014-02-11 19:14 - 2014-02-11 19:14 - 00000000 ____D () C:\Users\Alex\AppData\Local\Avg2014 2014-02-11 16:12 - 2014-02-11 16:12 - 00000000 ____D () C:\Users\Alex\Documents\ACR 2014-02-11 16:02 - 2014-02-11 16:27 - 00000000 ____D () C:\Program Files (x86)\ACR 2014-02-11 16:00 - 2014-02-11 16:00 - 634936568 _____ (Eutechnyx, Ltd ) C:\Users\Alex\Downloads\ACR_setup.exe 2014-02-11 15:56 - 2014-02-11 15:57 - 00710848 _____ ( ) C:\Users\Alex\Downloads\COMPUTER_BILD-Download-Manager_fuer_ACR_setup.exe 2014-02-11 13:15 - 2014-02-11 13:15 - 00000657 _____ () C:\Users\Public\Desktop\World of Tanks.lnk 2014-02-11 13:14 - 2014-02-17 01:45 - 00000000 ____D () C:\Users\Alex\Desktop\WoT 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu.exe 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu (1).exe 2014-02-11 13:00 - 2014-02-11 13:00 - 00015598 _____ () C:\Users\Alex\Desktop\RADIALPERFEKT.rar 2014-02-10 19:58 - 2014-02-10 19:58 - 00953010 _____ () C:\Users\Alex\Downloads\13900708235100_france_Bat_Chatillon155_58_murovanka.wotreplay 2014-02-10 19:51 - 2014-02-10 19:51 - 01149282 _____ () C:\Users\Alex\Downloads\13913363495846_germany_VK4502P_ruinberg.wotreplay 2014-02-10 19:46 - 2014-02-10 19:46 - 00775038 _____ () C:\Users\Alex\Downloads\13835638757003_ussr_KV1_north_america.wotreplay 2014-02-10 17:30 - 2014-02-10 17:30 - 00003940 _____ () C:\Users\Alex\Desktop\WOT SONG.txt 2014-02-10 15:22 - 2014-02-10 15:22 - 00000000 ____D () C:\Users\Alex\Desktop\Replays 2014-02-10 15:14 - 2014-02-10 15:14 - 01247754 _____ () C:\Users\Alex\Downloads\13920322650136_france_Bat_Chatillon25t_steppes.wotreplay 2014-02-10 15:08 - 2014-02-10 15:08 - 00910854 _____ () C:\Users\Alex\Downloads\13920411536424_france_AMX_12t_45_north_america.wotreplay 2014-02-10 12:37 - 2014-02-10 12:37 - 01001812 _____ () C:\Users\Alex\Downloads\13920324752231_china_Ch15_59_16_himmelsdorf.wotreplay 2014-02-09 17:16 - 2014-02-09 17:16 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\steamvr 2014-02-09 11:32 - 2014-02-09 11:32 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (4).exe 2014-02-09 00:44 - 2014-02-09 00:44 - 00015598 _____ () C:\Users\Alex\Desktop\Scaleform.rar 2014-02-08 00:43 - 2014-02-08 00:44 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE (1).exe 2014-02-07 21:08 - 2014-02-07 21:08 - 01032847 _____ () C:\Users\Alex\Downloads\WoT-Battle-11.wma 2014-02-07 19:38 - 2014-02-07 19:38 - 02403548 _____ () C:\Users\Alex\Downloads\J1mB0_s_Crosshair_Mod_v1.35.zip 2014-02-07 19:36 - 2014-02-07 19:36 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (3).exe 2014-02-07 18:08 - 2014-02-07 18:09 - 00933674 _____ () C:\Users\Alex\Desktop\20140211_1800_ussr-ST_I_35_steppes.wotreplay 2014-02-07 16:08 - 2014-02-07 16:08 - 33730085 _____ () C:\Users\Alex\Downloads\E-100_№110_Algiz.rar 2014-02-07 15:55 - 2014-02-07 15:59 - 29620378 _____ () C:\Users\Alex\Downloads\E-100_№105_lee002.rar 2014-02-06 23:20 - 2014-02-06 23:20 - 00175366 _____ () C:\Users\Alex\Downloads\4C756B6173.rar 2014-02-06 00:07 - 2014-02-06 00:07 - 00000093 _____ () C:\Users\Alex\Desktop\bush-middle-finger.png.url 2014-02-05 18:14 - 2014-02-05 18:14 - 00046807 _____ () C:\Users\Alex\Downloads\enemy-vehicle-destroyed.wma 2014-02-05 17:57 - 2014-02-05 17:57 - 01307743 _____ () C:\Users\Alex\Downloads\WoT-Battle-1.wma 2014-02-05 13:58 - 2014-02-05 13:58 - 00035346 _____ () C:\Users\Alex\Downloads\ReceivedDamage-v1.8.zip 2014-02-05 12:27 - 2014-02-05 12:27 - 00225878 _____ () C:\Users\Alex\Downloads\World of tanks Rauch Effekte.exe 2014-02-04 22:24 - 2014-02-17 11:43 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA.job 2014-02-04 22:24 - 2014-02-16 16:43 - 00001064 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core.job 2014-02-04 22:24 - 2014-02-12 16:38 - 00004084 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA 2014-02-04 22:24 - 2014-02-12 16:38 - 00003688 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Downloads\GoogleVoiceAndVideoSetup.exe 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Desktop\GoogleVoiceAndVideoSetup.exe 2014-02-04 21:56 - 2014-02-04 21:56 - 07834449 _____ () C:\Users\Alex\Downloads\OBS_0_60b_Installer.exe 2014-02-04 21:30 - 2014-02-04 21:30 - 00000000 ____D () C:\Users\Alex\AppData\Local\EdgeOfReality 2014-02-04 20:27 - 2014-02-04 20:28 - 00000000 ____D () C:\Users\Alex\Desktop\Cheat Engine 2014-02-04 16:13 - 2014-02-04 16:13 - 02100691 _____ () C:\Users\Alex\Downloads\E75_luka_animeskins.zip 2014-02-04 13:54 - 2014-02-04 13:56 - 12875607 _____ () C:\Users\Alex\Downloads\E-75_№115_lee002.rar 2014-02-04 13:51 - 2014-02-04 13:51 - 11878832 _____ () C:\Users\Alex\Downloads\E-75_№127_Dr_Von_Lederhosen.rar 2014-02-03 22:39 - 2014-02-03 22:39 - 08065840 _____ (Cheat Engine ) C:\Users\Alex\Downloads\CheatEngine63.exe 2014-02-03 15:15 - 2014-02-03 15:15 - 51064354 _____ () C:\Users\Alex\Desktop\realere version+gui.rar 2014-02-03 15:14 - 2014-02-03 15:15 - 51064354 _____ () C:\Users\Alex\Downloads\realere version+gui.rar 2014-02-03 14:53 - 2014-02-03 14:53 - 66177436 _____ () C:\Users\Alex\Downloads\B&T.zip 2014-02-03 14:46 - 2014-02-03 14:46 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (2).exe 2014-02-02 14:05 - 2014-02-02 22:28 - 00001797 _____ () C:\Users\Alex\Desktop\Free Audio Editor.lnk 2014-02-02 14:05 - 2014-02-02 14:05 - 11110208 _____ (FreeAudioStudio Inc. ) C:\Users\Alex\Downloads\FreeAudioEditor2012_de.exe 2014-02-01 14:57 - 2014-01-09 13:52 - 00000000 ____D () C:\Users\Alex\Desktop\Radial Menu Editor v1.5 2014-02-01 13:52 - 2014-02-01 13:54 - 471531128 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 1.6 EN.exe 2014-02-01 12:41 - 2014-02-01 12:41 - 352523365 _____ () C:\Users\Alex\Desktop\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:40 - 2014-02-01 12:38 - 72588470 _____ () C:\Users\Alex\Desktop\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-02-01 12:37 - 2014-02-01 12:41 - 352523365 _____ () C:\Users\Alex\Downloads\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:37 - 2014-02-01 12:38 - 72588470 _____ () C:\Users\Alex\Downloads\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-01-31 14:04 - 2014-01-31 14:04 - 00227422 _____ () C:\Users\Alex\Desktop\New.MMM 2014-01-31 13:24 - 2014-01-15 14:34 - 01078912 _____ () C:\Users\Alex\Downloads\setup.exe 2014-01-31 13:24 - 2014-01-15 14:25 - 00000766 _____ () C:\Users\Alex\Downloads\layout.bin 2014-01-31 13:24 - 2014-01-15 14:17 - 01111951 _____ () C:\Users\Alex\Downloads\data1.cab 2014-01-31 13:24 - 2014-01-15 14:17 - 00034912 _____ () C:\Users\Alex\Downloads\data1.hdr 2014-01-31 13:24 - 2014-01-15 14:17 - 00002384 _____ () C:\Users\Alex\Downloads\setup.ini 2014-01-31 13:24 - 2014-01-15 14:15 - 00000376 _____ () C:\Users\Alex\Downloads\info.snail 2014-01-31 13:24 - 2010-09-28 16:26 - 00529808 _____ (Flexera Software, Inc.) C:\Users\Alex\Downloads\setup.ocx 2014-01-31 13:24 - 2010-09-20 10:39 - 00579584 _____ (Flexera Software, Inc.) C:\Users\Alex\Downloads\ISSetup.dll 2014-01-31 13:24 - 2010-06-22 14:30 - 00025860 _____ () C:\Users\Alex\Downloads\0x0407.ini 2014-01-31 12:58 - 2014-01-31 13:24 - 00000000 ____D () C:\Users\Alex\Downloads\Agt of Wulin 2014-01-31 12:58 - 2014-01-31 12:58 - 00696824 _____ () C:\Users\Alex\Downloads\Wulin_DE.exe 2014-01-31 12:49 - 2014-01-31 12:50 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE.exe 2014-01-31 11:29 - 2014-01-31 11:29 - 00001116 _____ () C:\Users\Public\Desktop\MAGIX Music Maker 2014.lnk 2014-01-31 11:26 - 2014-01-31 11:27 - 388717800 _____ (MAGIX AG) C:\Users\Alex\Downloads\music_maker_2014_370mb_chip_de.exe 2014-01-31 11:25 - 2014-01-31 11:27 - 00267624 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HM0 2014-01-31 11:25 - 2014-01-31 11:27 - 00037524 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HMP 2014-01-30 20:50 - 2014-01-30 20:52 - 00000000 ____D () C:\Users\Alex\Desktop\IndieGames 2014-01-30 13:47 - 2014-01-30 13:47 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql (1).exe 2014-01-30 11:30 - 2014-01-30 11:32 - 186944442 _____ () C:\Users\Alex\Downloads\eurotrucksimulator2_1_3_1_patch.zip 2014-01-30 10:34 - 2014-01-30 10:34 - 01369930 _____ () C:\Users\Alex\Desktop\20140130_1023_germany-PzVIB_Tiger_II_01_karelia.wotreplay 2014-01-30 00:52 - 2014-01-30 00:53 - 32688810 _____ () C:\Users\Alex\Downloads\tsm_map_4_5_6_entpacken.7z 2014-01-30 00:42 - 2014-01-30 00:44 - 07616961 _____ () C:\Users\Alex\Downloads\ETS2 tc_mega_mod_v6.zip 2014-01-30 00:37 - 2014-01-30 00:39 - 142820005 _____ () C:\Users\Alex\Downloads\WinterModV1.0.rar 2014-01-30 00:12 - 2014-01-30 00:12 - 00000386 _____ () C:\Users\Alex\Desktop\LAN-Verbindung - Verknüpfung.lnk 2014-01-29 13:25 - 2014-01-29 14:17 - 00229230 _____ () C:\Users\Alex\Desktop\2014-01-29.MVP 2014-01-28 22:24 - 2014-02-11 13:20 - 00000000 ____D () C:\Users\Alex\Documents\Euro Truck Simulator 2 2014-01-28 22:24 - 2014-01-28 22:24 - 00001339 _____ () C:\Users\Public\Desktop\Euro Truck Simulator 2.lnk 2014-01-28 22:23 - 2014-01-28 22:24 - 00000000 ____D () C:\Program Files (x86)\Euro Truck Simulator 2 2014-01-28 22:20 - 2014-01-28 22:22 - 671664336 _____ (SCS Software ) C:\Users\Alex\Downloads\EuroTruckSimulator2_1_8_2_5_setup.exe 2014-01-28 14:15 - 2014-01-28 14:15 - 00050745 _____ () C:\Users\Alex\Downloads\DRIVE-THRU.zip 2014-01-27 22:24 - 2014-01-27 22:24 - 55306786 _____ () C:\Users\Alex\Downloads\hawkthorne-win-x86.zip 2014-01-27 22:24 - 2014-01-27 22:24 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\hawkthorne_release 2014-01-27 21:39 - 2014-01-27 21:39 - 18471950 _____ () C:\Users\Alex\Downloads\meandmyshadow-0.4-win32.zip 2014-01-27 20:11 - 2014-01-27 20:11 - 00001354 _____ () C:\Users\Alex\Desktop\GeForce Experience.lnk 2014-01-27 20:11 - 2014-01-27 20:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\NVIDIA Corporation 2014-01-27 20:11 - 2013-12-10 03:15 - 00982232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-01-27 20:11 - 2013-12-10 03:14 - 01100248 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-01-27 20:10 - 2014-01-27 20:10 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-01-27 20:08 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-27 20:08 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-01-27 20:08 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-27 20:08 - 2013-12-05 09:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-01-27 20:08 - 2013-12-05 09:42 - 00035104 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-01-27 20:08 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-01-27 20:08 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-27 20:08 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-27 19:50 - 2014-01-27 19:53 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-01-27 17:43 - 2014-01-27 17:43 - 04999914 _____ () C:\Users\Alex\Documents\OfLightAndShadow 2014-01-27 17-34-06-674.xcf 2014-01-27 16:24 - 2014-01-27 16:25 - 441930402 _____ () C:\Users\Alex\Downloads\Lets Test Zombie Driver HD [Deutsch] [HD] Zombiematsche hoch 10.mp4 2014-01-27 14:58 - 2014-01-27 14:58 - 12407230 _____ () C:\Users\Alex\Documents\NewOutroBild.xcf 2014-01-27 13:38 - 2014-01-27 13:38 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Desktop\OfLightAndShadow.exe 2014-01-27 13:37 - 2014-01-27 13:38 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Downloads\OfLightAndShadow.exe 2014-01-27 13:34 - 2014-01-31 11:29 - 00000000 ____D () C:\Users\Public\Documents\MAGIX 2014-01-27 13:34 - 2014-01-31 11:25 - 00000000 ____D () C:\Users\Alex\Documents\MAGIX_MusicEditor 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Xara 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Magix 2014-01-27 13:32 - 2014-01-31 11:29 - 00000000 ____D () C:\Program Files (x86)\MAGIX 2014-01-27 13:27 - 2014-01-27 13:27 - 02849104 _____ (MAGIX AG) C:\Users\Alex\Downloads\trial_videodeluxe2014premium_dlm.exe 2014-01-27 13:14 - 2014-01-27 13:16 - 476908585 _____ () C:\Users\Alex\Downloads\TDHv21.zip 2014-01-27 12:40 - 2014-01-27 12:43 - 07106772 _____ () C:\Users\Alex\Downloads\Bandicam.1.8.7.347.rar 2014-01-26 20:37 - 2014-01-26 20:37 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (1).exe 2014-01-26 17:19 - 2014-01-26 17:19 - 39178560 _____ (Atomix Productions) C:\Users\Alex\Downloads\install_virtualdj_home_v7.4.1.exe 2014-01-26 17:17 - 2014-01-26 18:27 - 00000000 ____D () C:\Program Files (x86)\Winamp 2014-01-26 17:17 - 2014-01-26 17:17 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516 (1).exe 2014-01-26 17:16 - 2014-01-26 17:17 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516.exe 2014-01-26 17:13 - 2014-01-26 17:15 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\vlc 2014-01-26 17:12 - 2014-01-26 17:15 - 00000000 ____D () C:\Program Files\VideoLAN 2014-01-26 17:11 - 2014-01-26 17:11 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\VLC media player 64 Bit - CHIP-Downloader.exe 2014-01-26 15:33 - 2014-01-30 13:36 - 00000000 ____D () C:\Users\Alex\Desktop\Banger Rebellieren 2014-01-26 15:33 - 2014-01-26 15:31 - 220324536 _____ () C:\Users\Alex\Desktop\Banger Rebellieren (Deluxe Version).rar 2014-01-26 15:29 - 2014-01-26 15:31 - 220324536 _____ () C:\Users\Alex\Downloads\Banger Rebellieren (Deluxe Version).rar 2014-01-26 13:40 - 2014-01-26 13:40 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct (1).exe 2014-01-26 13:08 - 2014-01-26 13:08 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup.exe 2014-01-25 22:45 - 2014-01-25 22:45 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\YoudaGames 2014-01-25 16:14 - 2014-01-25 16:14 - 04245246 _____ () C:\Users\Alex\Documents\al3xone gruen.xcf 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_.zip 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_ (1).zip 2014-01-25 15:05 - 2014-01-25 15:05 - 07887147 _____ () C:\Users\Alex\Downloads\Urban_Designs_Vectors_Brushes_by_redheadstock.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00964991 _____ () C:\Users\Alex\Downloads\Splatter_Brushes_by_getfirefox.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00232675 _____ () C:\Users\Alex\Downloads\GIMP_Splatter_Brushes_by_Project_GimpBC.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00125426 _____ () C:\Users\Alex\Downloads\bombing.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00017779 _____ () C:\Users\Alex\Downloads\mostwasted.zip 2014-01-25 14:58 - 2014-01-25 14:58 - 00035633 _____ () C:\Users\Alex\Downloads\maelstrom.zip 2014-01-25 13:44 - 2014-01-25 13:44 - 02237478 _____ () C:\Users\Alex\Downloads\PzVIB_Tiger_II_№200_Red_Fox_Six.zip 2014-01-25 13:34 - 2014-01-25 13:35 - 06703608 _____ () C:\Users\Alex\Downloads\G16_PzVIB_Tiger_II_203_Sgt_Krollnikow51.rar 2014-01-24 22:48 - 2014-01-24 22:48 - 06904899 _____ () C:\Users\Alex\Documents\Surgeon Simulator templater.xcf 2014-01-24 18:26 - 2014-02-08 16:48 - 00000000 ____D () C:\Users\Alex\Desktop\wot testserver1 (1) 2014-01-24 18:26 - 2014-01-24 18:26 - 00000775 _____ () C:\Users\Public\Desktop\World of Tanks - Common Test.lnk 2014-01-24 18:25 - 2014-01-24 18:25 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct.exe 2014-01-24 01:14 - 2014-01-24 01:14 - 00000000 ____D () C:\ProgramData\Bohemia Interactive Studio 2014-01-24 01:07 - 2014-01-24 01:07 - 00001343 _____ () C:\Users\Public\Desktop\DayZ Commander.lnk 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZCommander 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Program Files (x86)\Dotjosh Studios 2014-01-24 00:57 - 2014-01-24 00:57 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-01-24 00:16 - 2014-02-10 21:40 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 OA 2014-01-24 00:16 - 2014-01-24 01:15 - 00000000 ____D () C:\Users\Alex\Documents\ArmA 2 2014-01-23 21:11 - 2014-01-23 21:11 - 00086285 _____ () C:\Users\Alex\Downloads\Default_GIMP_Brushes_by_Project_GimpBC.zip 2014-01-23 16:25 - 2014-01-23 16:25 - 00000000 ____D () C:\Users\Alex\AppData\Local\THQ 2014-01-23 16:25 - 2008-07-12 08:18 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-01-23 16:25 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-01-23 10:04 - 2014-01-23 10:04 - 01077532 _____ () C:\Users\Alex\Downloads\3d-hentai-04.wmv 2014-01-22 20:52 - 2014-01-22 20:52 - 00000000 ____D () C:\Users\Alex\AppData\Local\Ascaron Entertainment 2014-01-22 15:15 - 2014-01-22 15:15 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599.rar 2014-01-22 00:32 - 2014-01-22 00:34 - 269530647 _____ () C:\Users\Alex\Downloads\0505_2CD.rar 2014-01-22 00:16 - 2014-01-22 00:16 - 12749346 _____ () C:\Users\Alex\Downloads\SnowyNight.themepack 2014-01-22 00:16 - 2014-01-22 00:16 - 09714067 _____ () C:\Users\Alex\Downloads\Transformers3.themepack 2014-01-22 00:12 - 2014-01-22 00:12 - 00504817 _____ () C:\Users\Alex\Downloads\Gaia09_7.tvs 2014-01-22 00:11 - 2014-01-22 00:11 - 00694627 _____ () C:\Users\Alex\Downloads\CrystalSystemaRed_7.tvs 2014-01-22 00:09 - 2014-01-22 00:09 - 00695292 _____ () C:\Users\Alex\Downloads\CrystalSystemaBlue_7.tvs 2014-01-22 00:06 - 2013-12-18 10:01 - 00043320 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2014-01-22 00:06 - 2013-12-18 10:01 - 00036152 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll 2014-01-21 23:49 - 2014-01-21 23:49 - 31419822 _____ () C:\Users\Alex\Downloads\JDownloader.zip 2014-01-21 23:22 - 2014-01-21 23:22 - 00650182 _____ () C:\Users\Alex\Downloads\1200951734_San Andreas v1.00 Patch American to German.rar 2014-01-21 21:42 - 2014-01-21 21:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\Risen2 2014-01-21 19:03 - 2014-01-21 19:03 - 00000000 ____D () C:\Users\Alex\Documents\ZombieDriverHD 2014-01-21 18:29 - 2014-01-28 22:37 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZ 2014-01-21 18:29 - 2014-01-21 18:29 - 00000000 ____D () C:\Users\Alex\Documents\DayZ 2014-01-21 17:22 - 2014-01-21 17:22 - 00000000 ____D () C:\Users\Alex\Documents\Duke Nukem Forever 2014-01-21 16:36 - 2014-01-21 16:36 - 00000561 _____ () C:\Windows\wmsetup.log 2014-01-21 16:36 - 2014-01-21 16:36 - 00000000 ____D () C:\Users\Alex\Documents\DeadIsland 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Program Files\Realtek 2014-01-19 23:29 - 2013-11-05 19:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-19 23:29 - 2013-11-05 18:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-01-19 23:29 - 2013-11-05 15:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-19 23:29 - 2013-11-04 19:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-19 23:29 - 2013-11-04 11:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-19 23:29 - 2013-10-30 16:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-01-19 23:29 - 2013-10-28 17:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-19 23:29 - 2013-10-25 10:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-01-19 23:29 - 2013-10-18 16:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-19 23:29 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-19 23:29 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-19 23:29 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-01-19 23:29 - 2013-10-09 20:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-01-19 23:29 - 2013-10-09 20:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-01-19 23:29 - 2013-10-09 20:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-19 23:29 - 2013-10-09 20:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-19 23:29 - 2013-10-07 11:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-19 23:29 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-01-19 23:29 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-01-19 23:29 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-01-19 23:29 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-19 23:29 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-01-19 23:29 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-01-19 23:29 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-01-19 23:29 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-01-19 23:29 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-01-19 23:29 - 2013-08-24 03:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-01-19 23:29 - 2013-08-24 03:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-01-19 23:29 - 2013-08-24 03:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-01-19 23:29 - 2013-08-24 03:14 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-01-19 23:29 - 2013-08-20 17:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-01-19 23:29 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-01-19 23:29 - 2013-08-14 16:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-01-19 23:29 - 2013-08-14 16:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-01-19 23:29 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-01-19 23:29 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-19 23:29 - 2013-07-23 15:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-01-19 23:29 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-01-19 23:29 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-01-19 23:29 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-01-19 23:29 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-01-19 23:29 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-19 23:29 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-01-19 23:29 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-01-19 23:29 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-01-19 23:29 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-01-19 23:29 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-01-19 23:29 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-01-19 23:29 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-01-19 23:29 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-01-19 23:29 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-01-19 23:29 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-01-19 23:29 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-01-19 23:29 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-01-19 23:29 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-01-19 23:29 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-01-19 23:29 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-01-19 23:29 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-01-19 23:29 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-01-19 23:29 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-01-19 23:29 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-01-19 23:29 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-01-19 23:23 - 2014-01-19 23:23 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\64bit_Win7_Win8_Win81_R273 - CHIP-Downloader.exe 2014-01-19 16:50 - 2014-01-19 16:52 - 197451096 _____ (MAGIX AG) C:\Users\Alex\Downloads\magix_video_deluxe_2014_188mb_chip_de (1).exe 2014-01-19 16:22 - 2014-01-28 13:50 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Sony 2014-01-19 16:22 - 2014-01-19 16:49 - 00000000 ____D () C:\Users\Alex\AppData\Local\Sony 2014-01-19 16:22 - 2014-01-19 16:49 - 00000000 ____D () C:\ProgramData\Sony 2014-01-19 16:15 - 2014-01-19 16:15 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Sony Vegas Pro - CHIP-Downloader.exe 2014-01-19 15:49 - 2014-01-19 15:49 - 09092187 _____ () C:\Users\Alex\Downloads\duke_sound_wot.rar 2014-01-19 13:57 - 2014-01-19 13:57 - 02237923 _____ () C:\Users\Alex\Downloads\21-Smoke-Brush.zip 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (3).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (2).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (1).exe 2014-01-18 15:26 - 2014-01-18 15:27 - 06130877 _____ () C:\Users\Alex\Downloads\Неоновые-иконки.rar 2014-01-18 12:10 - 2014-01-18 12:10 - 00002770 _____ () C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 ==================== One Month Modified Files and Folders ======= 2014-02-17 12:24 - 2014-02-17 12:24 - 02152448 _____ (Farbar) C:\Users\Alex\Desktop\FRST64 (1).exe 2014-02-17 12:24 - 2014-02-17 12:24 - 00021266 _____ () C:\Users\Alex\Desktop\FRST.txt 2014-02-17 12:24 - 2014-02-17 12:23 - 02152448 _____ (Farbar) C:\Users\Alex\Downloads\FRST64 (1).exe 2014-02-17 12:24 - 2013-07-03 22:54 - 00000000 ____D () C:\FRST 2014-02-17 12:11 - 2013-08-28 15:14 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-02-17 12:06 - 2014-02-17 12:06 - 00005694 _____ () C:\Users\Alex\Desktop\JRT.txt 2014-02-17 12:01 - 2009-07-14 05:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-17 12:01 - 2009-07-14 05:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-17 12:00 - 2014-02-17 12:00 - 00000000 ____D () C:\Windows\ERUNT 2014-02-17 11:57 - 2013-02-14 12:12 - 00082288 _____ () C:\Windows\setupact.log 2014-02-17 11:57 - 2013-01-04 23:51 - 01627003 _____ () C:\Windows\WindowsUpdate.log 2014-02-17 11:54 - 2013-11-25 16:33 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-17 11:54 - 2012-05-23 08:09 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-17 11:54 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-17 11:53 - 2013-11-25 16:33 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-17 11:53 - 2013-11-18 15:30 - 00000000 ____D () C:\AdwCleaner 2014-02-17 11:51 - 2014-02-17 11:51 - 01037530 _____ (Thisisu) C:\Users\Alex\Downloads\JRT.exe 2014-02-17 11:51 - 2014-02-17 11:51 - 01037530 _____ (Thisisu) C:\Users\Alex\Desktop\JRT.exe 2014-02-17 11:50 - 2014-02-17 11:50 - 01166132 _____ () C:\Users\Alex\Downloads\adwcleaner.exe 2014-02-17 11:50 - 2014-02-17 11:50 - 01166132 _____ () C:\Users\Alex\Desktop\adwcleaner.exe 2014-02-17 11:43 - 2014-02-04 22:24 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA.job 2014-02-17 01:45 - 2014-02-11 13:14 - 00000000 ____D () C:\Users\Alex\Desktop\WoT 2014-02-17 01:45 - 2013-02-21 15:56 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Spotify 2014-02-17 01:39 - 2013-01-05 00:19 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Skype 2014-02-17 01:38 - 2013-02-14 12:11 - 01837992 _____ () C:\Windows\PFRO.log 2014-02-17 01:33 - 2013-06-17 11:35 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-17 01:30 - 2012-09-08 18:12 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-17 01:11 - 2013-02-14 23:22 - 00000000 ____D () C:\Qoobox 2014-02-17 01:10 - 2014-02-17 01:10 - 00025114 _____ () C:\ComboFix.txt 2014-02-17 01:08 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini 2014-02-17 00:57 - 2014-02-17 00:57 - 05183112 ____R (Swearware) C:\Users\Alex\Desktop\ComboFix.exe 2014-02-17 00:57 - 2014-02-17 00:57 - 05183112 _____ (Swearware) C:\Users\Alex\Downloads\ComboFix.exe 2014-02-16 23:55 - 2013-02-28 19:55 - 00000000 ____D () C:\Program Files (x86)\War Thunder 2014-02-16 23:35 - 2014-02-16 23:35 - 02152448 _____ (Farbar) C:\Users\Alex\Downloads\FRST64.exe 2014-02-16 23:22 - 2014-02-16 23:22 - 00614816 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\AdwCleaner - CHIP-Downloader.exe 2014-02-16 21:47 - 2014-02-16 21:47 - 14200736 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.2_setup.exe 2014-02-16 21:44 - 2014-02-16 21:44 - 02224501 _____ () C:\Users\Alex\Downloads\[0.8.11]KT_Crosshair_Mjolnir_v2.742.rar 2014-02-16 21:38 - 2014-02-16 21:36 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (3).exe 2014-02-16 16:43 - 2014-02-04 22:24 - 00001064 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core.job 2014-02-16 10:24 - 2014-02-13 19:29 - 00000000 ____D () C:\Users\Alex\Desktop\GFX 2014-02-15 22:12 - 2014-02-15 22:01 - 00000000 ____D () C:\Program Files (x86)\Naturalsoft 2014-02-15 22:12 - 2014-02-13 11:32 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Naturalsoft 2014-02-15 22:12 - 2014-02-13 11:31 - 00000000 ____D () C:\Users\Alex\Documents\Naturalsoft 2014-02-15 14:59 - 2014-02-15 14:59 - 00065359 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.rar 2014-02-15 14:58 - 2014-02-15 14:58 - 00075654 _____ () C:\Users\Alex\Desktop\bandicam 2014-02-15 14-58-30-803.wav 2014-02-15 14:22 - 2014-02-15 14:22 - 33294684 _____ () C:\Users\Alex\Downloads\fmoddesigner43604win-installer.exe 2014-02-15 14:22 - 2014-02-15 14:22 - 00143447 _____ () C:\Users\Alex\Downloads\ssfdp.zip 2014-02-15 12:11 - 2014-02-15 12:11 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599 (1).rar 2014-02-15 11:54 - 2014-02-15 11:54 - 00111376 _____ () C:\Users\Alex\AppData\Local\recently-used.xbel 2014-02-15 11:54 - 2013-01-31 14:33 - 00000000 ____D () C:\Users\Alex\.gimp-2.8 2014-02-15 11:26 - 2014-02-15 11:26 - 00038937 _____ () C:\Users\Alex\Desktop\schlurp.xcf 2014-02-15 11:13 - 2014-02-15 11:13 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Desktop\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:13 - 2014-02-15 11:11 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (2).exe 2014-02-15 11:11 - 2014-02-15 11:09 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN (1).exe 2014-02-14 22:00 - 2014-02-14 21:56 - 61212284 _____ () C:\Users\Alex\Desktop\20131207_164820.mp4 2014-02-14 20:56 - 2014-02-14 20:56 - 00026567 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.7z 2014-02-14 20:48 - 2014-02-14 20:48 - 00038468 _____ () C:\Users\Alex\Downloads\wot-fps-vid-ot-pervogo-lica.zip 2014-02-14 16:48 - 2013-11-25 16:33 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-14 16:48 - 2013-11-25 16:33 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-14 16:23 - 2014-02-14 16:22 - 14252755 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.1_setup.exe 2014-02-14 15:59 - 2014-02-14 15:58 - 446400727 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 2.2 EN.exe 2014-02-14 10:50 - 2009-07-14 05:45 - 00573616 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-02-13 11:52 - 2013-10-25 11:30 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Audacity 2014-02-13 11:31 - 2014-02-13 11:31 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Desktop\standardsetup.exe 2014-02-13 11:31 - 2014-02-13 11:30 - 19099064 _____ (Naturalsoft limited ) C:\Users\Alex\Downloads\standardsetup.exe 2014-02-13 10:29 - 2013-01-05 00:15 - 00171192 _____ () C:\Users\Alex\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-13 10:15 - 2014-02-13 10:15 - 14249870 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.10.0_setup.exe 2014-02-12 16:38 - 2014-02-04 22:24 - 00004084 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA 2014-02-12 16:38 - 2014-02-04 22:24 - 00003688 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core 2014-02-12 14:30 - 2014-02-12 14:30 - 00000000 ____D () C:\Users\Alex\Documents\Codemasters 2014-02-12 14:30 - 2013-06-21 13:39 - 00000000 ____D () C:\ProgramData\Codemasters 2014-02-12 14:20 - 2014-02-12 14:20 - 00466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00121880 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2014-02-12 14:20 - 2014-02-12 14:20 - 00000000 ____D () C:\Program Files (x86)\OpenAL 2014-02-12 14:20 - 2013-02-18 18:46 - 00979920 _____ () C:\Windows\DirectX.log 2014-02-12 14:16 - 2014-02-12 14:16 - 00000000 ____D () C:\Program Files (x86)\Codemasters 2014-02-12 14:16 - 2012-05-08 06:30 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-12 14:13 - 2014-02-12 14:11 - 00000000 ____D () C:\Users\Alex\Desktop\Grid 2014-02-12 13:56 - 2014-02-12 13:50 - 937281756 _____ () C:\Users\Alex\Downloads\grid_demo.zip 2014-02-12 12:54 - 2013-06-10 23:38 - 00000000 ____D () C:\Users\Alex\AppData\Local\Warframe 2014-02-12 12:31 - 2014-02-12 12:31 - 01873912 _____ () C:\Users\Alex\Downloads\Warframe_2013-06-10_21-49-50-79._Png 2014-02-12 11:06 - 2009-07-14 06:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-02-12 00:35 - 2013-12-03 11:29 - 00008232 _____ () C:\Users\Alex\Documents\TombRaider.log 2014-02-11 19:14 - 2014-02-11 19:14 - 00000000 ____D () C:\Users\Alex\AppData\Local\Avg2014 2014-02-11 19:13 - 2013-09-01 18:42 - 00000000 ____D () C:\Users\Alex\Desktop\World of Tanks 2014-02-11 19:13 - 2013-01-05 01:27 - 00000000 ____D () C:\Users\Alex\AppData\Local\CrashDumps 2014-02-11 16:27 - 2014-02-11 16:02 - 00000000 ____D () C:\Program Files (x86)\ACR 2014-02-11 16:12 - 2014-02-11 16:12 - 00000000 ____D () C:\Users\Alex\Documents\ACR 2014-02-11 16:00 - 2014-02-11 16:00 - 634936568 _____ (Eutechnyx, Ltd ) C:\Users\Alex\Downloads\ACR_setup.exe 2014-02-11 15:58 - 2013-01-06 17:07 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\TS3Client 2014-02-11 15:57 - 2014-02-11 15:56 - 00710848 _____ ( ) C:\Users\Alex\Downloads\COMPUTER_BILD-Download-Manager_fuer_ACR_setup.exe 2014-02-11 13:20 - 2014-01-28 22:24 - 00000000 ____D () C:\Users\Alex\Documents\Euro Truck Simulator 2 2014-02-11 13:15 - 2014-02-11 13:15 - 00000657 _____ () C:\Users\Public\Desktop\World of Tanks.lnk 2014-02-11 13:15 - 2013-02-22 17:34 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu.exe 2014-02-11 13:14 - 2014-02-11 13:14 - 09304408 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_eu (1).exe 2014-02-11 13:00 - 2014-02-11 13:00 - 00015598 _____ () C:\Users\Alex\Desktop\RADIALPERFEKT.rar 2014-02-10 21:40 - 2014-01-24 00:16 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 OA 2014-02-10 19:58 - 2014-02-10 19:58 - 00953010 _____ () C:\Users\Alex\Downloads\13900708235100_france_Bat_Chatillon155_58_murovanka.wotreplay 2014-02-10 19:51 - 2014-02-10 19:51 - 01149282 _____ () C:\Users\Alex\Downloads\13913363495846_germany_VK4502P_ruinberg.wotreplay 2014-02-10 19:46 - 2014-02-10 19:46 - 00775038 _____ () C:\Users\Alex\Downloads\13835638757003_ussr_KV1_north_america.wotreplay 2014-02-10 17:30 - 2014-02-10 17:30 - 00003940 _____ () C:\Users\Alex\Desktop\WOT SONG.txt 2014-02-10 15:22 - 2014-02-10 15:22 - 00000000 ____D () C:\Users\Alex\Desktop\Replays 2014-02-10 15:14 - 2014-02-10 15:14 - 01247754 _____ () C:\Users\Alex\Downloads\13920322650136_france_Bat_Chatillon25t_steppes.wotreplay 2014-02-10 15:08 - 2014-02-10 15:08 - 00910854 _____ () C:\Users\Alex\Downloads\13920411536424_france_AMX_12t_45_north_america.wotreplay 2014-02-10 12:37 - 2014-02-10 12:37 - 01001812 _____ () C:\Users\Alex\Downloads\13920324752231_china_Ch15_59_16_himmelsdorf.wotreplay 2014-02-09 17:16 - 2014-02-09 17:16 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\steamvr 2014-02-09 11:32 - 2014-02-09 11:32 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (4).exe 2014-02-09 00:44 - 2014-02-09 00:44 - 00015598 _____ () C:\Users\Alex\Desktop\Scaleform.rar 2014-02-08 20:36 - 2013-06-25 10:11 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Mozilla 2014-02-08 16:48 - 2014-01-24 18:26 - 00000000 ____D () C:\Users\Alex\Desktop\wot testserver1 (1) 2014-02-08 02:15 - 2013-02-18 21:39 - 00000000 ____D () C:\Users\Alex\Documents\My Games 2014-02-08 00:44 - 2014-02-08 00:43 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE (1).exe 2014-02-07 21:08 - 2014-02-07 21:08 - 01032847 _____ () C:\Users\Alex\Downloads\WoT-Battle-11.wma 2014-02-07 19:38 - 2014-02-07 19:38 - 02403548 _____ () C:\Users\Alex\Downloads\J1mB0_s_Crosshair_Mod_v1.35.zip 2014-02-07 19:36 - 2014-02-07 19:36 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (3).exe 2014-02-07 18:09 - 2014-02-07 18:08 - 00933674 _____ () C:\Users\Alex\Desktop\20140211_1800_ussr-ST_I_35_steppes.wotreplay 2014-02-07 16:08 - 2014-02-07 16:08 - 33730085 _____ () C:\Users\Alex\Downloads\E-100_№110_Algiz.rar 2014-02-07 15:59 - 2014-02-07 15:55 - 29620378 _____ () C:\Users\Alex\Downloads\E-100_№105_lee002.rar 2014-02-06 23:20 - 2014-02-06 23:20 - 00175366 _____ () C:\Users\Alex\Downloads\4C756B6173.rar 2014-02-06 16:42 - 2013-02-21 15:57 - 00000000 ____D () C:\Users\Alex\AppData\Local\Spotify 2014-02-06 00:11 - 2014-01-07 22:39 - 00000000 ____D () C:\Users\Alex\Desktop\GFX - Selfmade 2014-02-06 00:07 - 2014-02-06 00:07 - 00000093 _____ () C:\Users\Alex\Desktop\bush-middle-finger.png.url 2014-02-05 22:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-02-05 22:17 - 2013-01-05 00:19 - 00000000 ____D () C:\ProgramData\Skype 2014-02-05 18:14 - 2014-02-05 18:14 - 00046807 _____ () C:\Users\Alex\Downloads\enemy-vehicle-destroyed.wma 2014-02-05 17:57 - 2014-02-05 17:57 - 01307743 _____ () C:\Users\Alex\Downloads\WoT-Battle-1.wma 2014-02-05 14:33 - 2013-06-17 11:35 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-05 14:33 - 2013-02-20 14:46 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-05 14:33 - 2013-02-20 14:46 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-05 13:58 - 2014-02-05 13:58 - 00035346 _____ () C:\Users\Alex\Downloads\ReceivedDamage-v1.8.zip 2014-02-05 12:38 - 2011-04-12 08:43 - 00699416 _____ () C:\Windows\system32\perfh007.dat 2014-02-05 12:38 - 2011-04-12 08:43 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-02-05 12:38 - 2009-07-14 06:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-05 12:27 - 2014-02-05 12:27 - 00225878 _____ () C:\Users\Alex\Downloads\World of tanks Rauch Effekte.exe 2014-02-04 22:48 - 2013-11-05 22:37 - 00000000 ____D () C:\Program Files (x86)\OBS 2014-02-04 22:24 - 2013-01-05 00:21 - 00000000 ____D () C:\Users\Alex\AppData\Local\Google 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Downloads\GoogleVoiceAndVideoSetup.exe 2014-02-04 22:23 - 2014-02-04 22:23 - 00847320 _____ (Google Inc.) C:\Users\Alex\Desktop\GoogleVoiceAndVideoSetup.exe 2014-02-04 21:58 - 2013-11-05 22:37 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\OBS 2014-02-04 21:56 - 2014-02-04 21:56 - 07834449 _____ () C:\Users\Alex\Downloads\OBS_0_60b_Installer.exe 2014-02-04 21:30 - 2014-02-04 21:30 - 00000000 ____D () C:\Users\Alex\AppData\Local\EdgeOfReality 2014-02-04 20:28 - 2014-02-04 20:27 - 00000000 ____D () C:\Users\Alex\Desktop\Cheat Engine 2014-02-04 17:55 - 2013-03-03 23:40 - 00000000 ____D () C:\Users\Alex\Desktop\Desktop zeug usw 2014-02-04 17:51 - 2013-01-06 03:05 - 00003162 _____ () C:\Windows\System32\Tasks\Game_Booster_AutoUpdate 2014-02-04 16:13 - 2014-02-04 16:13 - 02100691 _____ () C:\Users\Alex\Downloads\E75_luka_animeskins.zip 2014-02-04 13:56 - 2014-02-04 13:54 - 12875607 _____ () C:\Users\Alex\Downloads\E-75_№115_lee002.rar 2014-02-04 13:51 - 2014-02-04 13:51 - 11878832 _____ () C:\Users\Alex\Downloads\E-75_№127_Dr_Von_Lederhosen.rar 2014-02-03 22:39 - 2014-02-03 22:39 - 08065840 _____ (Cheat Engine ) C:\Users\Alex\Downloads\CheatEngine63.exe 2014-02-03 15:15 - 2014-02-03 15:15 - 51064354 _____ () C:\Users\Alex\Desktop\realere version+gui.rar 2014-02-03 15:15 - 2014-02-03 15:14 - 51064354 _____ () C:\Users\Alex\Downloads\realere version+gui.rar 2014-02-03 14:53 - 2014-02-03 14:53 - 66177436 _____ () C:\Users\Alex\Downloads\B&T.zip 2014-02-03 14:46 - 2014-02-03 14:46 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (2).exe 2014-02-02 22:28 - 2014-02-02 14:05 - 00001797 _____ () C:\Users\Alex\Desktop\Free Audio Editor.lnk 2014-02-02 14:36 - 2013-07-20 21:11 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Free Audio Editor 2014-02-02 14:05 - 2014-02-02 14:05 - 11110208 _____ (FreeAudioStudio Inc. ) C:\Users\Alex\Downloads\FreeAudioEditor2012_de.exe 2014-02-01 22:12 - 2013-01-05 01:10 - 00000000 ____D () C:\Users\Alex\AppData\Local\PokerStars.EU 2014-02-01 13:54 - 2014-02-01 13:52 - 471531128 _____ (JT_Adams's Modwerkstatt ) C:\Users\Alex\Downloads\JTAdams AGQJ Engine 1.6 EN.exe 2014-02-01 12:50 - 2012-09-16 13:09 - 00000000 ____D () C:\Program Files (x86)\TeamViewer 2014-02-01 12:41 - 2014-02-01 12:41 - 352523365 _____ () C:\Users\Alex\Desktop\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:41 - 2014-02-01 12:37 - 352523365 _____ () C:\Users\Alex\Downloads\Gnomefather_s_Engines_v0.49_for_Curse (1).zip 2014-02-01 12:38 - 2014-02-01 12:40 - 72588470 _____ () C:\Users\Alex\Desktop\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-02-01 12:38 - 2014-02-01 12:37 - 72588470 _____ () C:\Users\Alex\Downloads\HRMOD_Gun_Sounds_v1.86 (1).zip 2014-01-31 14:04 - 2014-01-31 14:04 - 00227422 _____ () C:\Users\Alex\Desktop\New.MMM 2014-01-31 13:24 - 2014-01-31 12:58 - 00000000 ____D () C:\Users\Alex\Downloads\Agt of Wulin 2014-01-31 12:58 - 2014-01-31 12:58 - 00696824 _____ () C:\Users\Alex\Downloads\Wulin_DE.exe 2014-01-31 12:50 - 2014-01-31 12:49 - 207064344 _____ (GIANTS Software ) C:\Users\Alex\Downloads\FarmingSimulator2013DemoDE.exe 2014-01-31 11:30 - 2013-02-17 12:31 - 00000000 ___RD () C:\Users\Alex\Documents\MAGIX 2014-01-31 11:30 - 2013-02-17 12:31 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\MAGIX 2014-01-31 11:29 - 2014-01-31 11:29 - 00001116 _____ () C:\Users\Public\Desktop\MAGIX Music Maker 2014.lnk 2014-01-31 11:29 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Public\Documents\MAGIX 2014-01-31 11:29 - 2014-01-27 13:32 - 00000000 ____D () C:\Program Files (x86)\MAGIX 2014-01-31 11:29 - 2013-02-17 12:30 - 00000000 ____D () C:\ProgramData\MAGIX 2014-01-31 11:29 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-01-31 11:27 - 2014-01-31 11:26 - 388717800 _____ (MAGIX AG) C:\Users\Alex\Downloads\music_maker_2014_370mb_chip_de.exe 2014-01-31 11:27 - 2014-01-31 11:25 - 00267624 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HM0 2014-01-31 11:27 - 2014-01-31 11:25 - 00037524 _____ () C:\Users\Alex\Desktop\DOCTOR VOX - Sunrise.HMP 2014-01-31 11:25 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\Documents\MAGIX_MusicEditor 2014-01-30 20:52 - 2014-01-30 20:50 - 00000000 ____D () C:\Users\Alex\Desktop\IndieGames 2014-01-30 20:50 - 2013-10-23 20:36 - 00000000 ____D () C:\Users\Alex\Desktop\Eigene Schriftzüge Wallpaper 2014-01-30 13:47 - 2014-01-30 13:47 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql (1).exe 2014-01-30 13:36 - 2014-01-26 15:33 - 00000000 ____D () C:\Users\Alex\Desktop\Banger Rebellieren 2014-01-30 11:32 - 2014-01-30 11:30 - 186944442 _____ () C:\Users\Alex\Downloads\eurotrucksimulator2_1_3_1_patch.zip 2014-01-30 10:34 - 2014-01-30 10:34 - 01369930 _____ () C:\Users\Alex\Desktop\20140130_1023_germany-PzVIB_Tiger_II_01_karelia.wotreplay 2014-01-30 00:53 - 2014-01-30 00:52 - 32688810 _____ () C:\Users\Alex\Downloads\tsm_map_4_5_6_entpacken.7z 2014-01-30 00:44 - 2014-01-30 00:42 - 07616961 _____ () C:\Users\Alex\Downloads\ETS2 tc_mega_mod_v6.zip 2014-01-30 00:39 - 2014-01-30 00:37 - 142820005 _____ () C:\Users\Alex\Downloads\WinterModV1.0.rar 2014-01-30 00:12 - 2014-01-30 00:12 - 00000386 _____ () C:\Users\Alex\Desktop\LAN-Verbindung - Verknüpfung.lnk 2014-01-29 14:17 - 2014-01-29 13:25 - 00229230 _____ () C:\Users\Alex\Desktop\2014-01-29.MVP 2014-01-28 22:37 - 2014-01-21 18:29 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZ 2014-01-28 22:24 - 2014-01-28 22:24 - 00001339 _____ () C:\Users\Public\Desktop\Euro Truck Simulator 2.lnk 2014-01-28 22:24 - 2014-01-28 22:23 - 00000000 ____D () C:\Program Files (x86)\Euro Truck Simulator 2 2014-01-28 22:22 - 2014-01-28 22:20 - 671664336 _____ (SCS Software ) C:\Users\Alex\Downloads\EuroTruckSimulator2_1_8_2_5_setup.exe 2014-01-28 20:36 - 2013-02-15 10:03 - 00000000 ____D () C:\Users\Alex\AppData\Local\Adobe 2014-01-28 14:16 - 2013-06-15 20:29 - 00000000 ____D () C:\Users\Alex\Documents\GTA San Andreas User Files 2014-01-28 14:15 - 2014-01-28 14:15 - 00050745 _____ () C:\Users\Alex\Downloads\DRIVE-THRU.zip 2014-01-28 13:50 - 2014-01-19 16:22 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Sony 2014-01-27 22:24 - 2014-01-27 22:24 - 55306786 _____ () C:\Users\Alex\Downloads\hawkthorne-win-x86.zip 2014-01-27 22:24 - 2014-01-27 22:24 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\hawkthorne_release 2014-01-27 21:39 - 2014-01-27 21:39 - 18471950 _____ () C:\Users\Alex\Downloads\meandmyshadow-0.4-win32.zip 2014-01-27 20:12 - 2013-06-07 19:09 - 00000000 ____D () C:\Users\Alex\AppData\Local\NVIDIA 2014-01-27 20:11 - 2014-01-27 20:11 - 00001354 _____ () C:\Users\Alex\Desktop\GeForce Experience.lnk 2014-01-27 20:11 - 2014-01-27 20:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\NVIDIA Corporation 2014-01-27 20:11 - 2012-05-23 08:09 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-27 20:11 - 2012-05-08 06:56 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-27 20:11 - 2012-05-08 06:53 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-27 20:10 - 2014-01-27 20:10 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-01-27 19:53 - 2014-01-27 19:50 - 262041840 _____ (NVIDIA Corporation) C:\Users\Alex\Downloads\332.21-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-01-27 18:43 - 2014-01-13 20:52 - 00000000 ____D () C:\ProgramData\Nokia 2014-01-27 18:43 - 2013-09-06 15:13 - 00000000 ____D () C:\Program Files (x86)\Nokia 2014-01-27 17:43 - 2014-01-27 17:43 - 04999914 _____ () C:\Users\Alex\Documents\OfLightAndShadow 2014-01-27 17-34-06-674.xcf 2014-01-27 16:25 - 2014-01-27 16:24 - 441930402 _____ () C:\Users\Alex\Downloads\Lets Test Zombie Driver HD [Deutsch] [HD] Zombiematsche hoch 10.mp4 2014-01-27 15:02 - 2013-12-22 17:09 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\.minecraft 2014-01-27 14:59 - 2013-06-27 12:20 - 00000000 ____D () C:\Users\Alex\Desktop\GFX_Anfängerpack by Anonymous 2014-01-27 14:58 - 2014-01-27 14:58 - 12407230 _____ () C:\Users\Alex\Documents\NewOutroBild.xcf 2014-01-27 13:38 - 2014-01-27 13:38 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Desktop\OfLightAndShadow.exe 2014-01-27 13:38 - 2014-01-27 13:37 - 177390194 _____ (12 Angry Devs ) C:\Users\Alex\Downloads\OfLightAndShadow.exe 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Xara 2014-01-27 13:34 - 2014-01-27 13:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Magix 2014-01-27 13:27 - 2014-01-27 13:27 - 02849104 _____ (MAGIX AG) C:\Users\Alex\Downloads\trial_videodeluxe2014premium_dlm.exe 2014-01-27 13:16 - 2014-01-27 13:14 - 476908585 _____ () C:\Users\Alex\Downloads\TDHv21.zip 2014-01-27 13:07 - 2013-09-06 15:13 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Nokia 2014-01-27 12:43 - 2014-01-27 12:40 - 07106772 _____ () C:\Users\Alex\Downloads\Bandicam.1.8.7.347.rar 2014-01-26 20:37 - 2014-01-26 20:37 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup (1).exe 2014-01-26 18:27 - 2014-01-26 17:17 - 00000000 ____D () C:\Program Files (x86)\Winamp 2014-01-26 17:19 - 2014-01-26 17:19 - 39178560 _____ (Atomix Productions) C:\Users\Alex\Downloads\install_virtualdj_home_v7.4.1.exe 2014-01-26 17:17 - 2014-01-26 17:17 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516 (1).exe 2014-01-26 17:17 - 2014-01-26 17:16 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Alex\Downloads\winamp5666_full_de-de_b3516.exe 2014-01-26 17:15 - 2014-01-26 17:13 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\vlc 2014-01-26 17:15 - 2014-01-26 17:12 - 00000000 ____D () C:\Program Files\VideoLAN 2014-01-26 17:11 - 2014-01-26 17:11 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\VLC media player 64 Bit - CHIP-Downloader.exe 2014-01-26 15:31 - 2014-01-26 15:33 - 220324536 _____ () C:\Users\Alex\Desktop\Banger Rebellieren (Deluxe Version).rar 2014-01-26 15:31 - 2014-01-26 15:29 - 220324536 _____ () C:\Users\Alex\Downloads\Banger Rebellieren (Deluxe Version).rar 2014-01-26 13:40 - 2014-01-26 13:40 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct (1).exe 2014-01-26 13:08 - 2014-01-26 13:08 - 13251826 _____ (diclovit ) C:\Users\Alex\Downloads\dmp_1.9.3_setup.exe 2014-01-25 22:45 - 2014-01-25 22:45 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\YoudaGames 2014-01-25 16:14 - 2014-01-25 16:14 - 04245246 _____ () C:\Users\Alex\Documents\al3xone gruen.xcf 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_.zip 2014-01-25 15:45 - 2014-01-25 15:45 - 00040062 _____ () C:\Users\Alex\Downloads\_crazy_writerz_ (1).zip 2014-01-25 15:05 - 2014-01-25 15:05 - 07887147 _____ () C:\Users\Alex\Downloads\Urban_Designs_Vectors_Brushes_by_redheadstock.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00964991 _____ () C:\Users\Alex\Downloads\Splatter_Brushes_by_getfirefox.zip 2014-01-25 15:05 - 2014-01-25 15:05 - 00232675 _____ () C:\Users\Alex\Downloads\GIMP_Splatter_Brushes_by_Project_GimpBC.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00125426 _____ () C:\Users\Alex\Downloads\bombing.zip 2014-01-25 14:59 - 2014-01-25 14:59 - 00017779 _____ () C:\Users\Alex\Downloads\mostwasted.zip 2014-01-25 14:58 - 2014-01-25 14:58 - 00035633 _____ () C:\Users\Alex\Downloads\maelstrom.zip 2014-01-25 13:44 - 2014-01-25 13:44 - 02237478 _____ () C:\Users\Alex\Downloads\PzVIB_Tiger_II_№200_Red_Fox_Six.zip 2014-01-25 13:35 - 2014-01-25 13:34 - 06703608 _____ () C:\Users\Alex\Downloads\G16_PzVIB_Tiger_II_203_Sgt_Krollnikow51.rar 2014-01-24 22:54 - 2013-10-13 15:39 - 00000000 ____D () C:\Users\Alex\Desktop\GTA San Andreas OFFLINE 2014-01-24 22:48 - 2014-01-24 22:48 - 06904899 _____ () C:\Users\Alex\Documents\Surgeon Simulator templater.xcf 2014-01-24 18:26 - 2014-01-24 18:26 - 00000775 _____ () C:\Users\Public\Desktop\World of Tanks - Common Test.lnk 2014-01-24 18:25 - 2014-01-24 18:25 - 10983288 _____ (Wargaming.net ) C:\Users\Alex\Downloads\WoT_internet_install_ct.exe 2014-01-24 01:15 - 2014-01-24 00:16 - 00000000 ____D () C:\Users\Alex\Documents\ArmA 2 2014-01-24 01:14 - 2014-01-24 01:14 - 00000000 ____D () C:\ProgramData\Bohemia Interactive Studio 2014-01-24 01:07 - 2014-01-24 01:07 - 00001343 _____ () C:\Users\Public\Desktop\DayZ Commander.lnk 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Users\Alex\AppData\Local\DayZCommander 2014-01-24 01:07 - 2014-01-24 01:07 - 00000000 ____D () C:\Program Files (x86)\Dotjosh Studios 2014-01-24 00:57 - 2014-01-24 00:57 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-01-24 00:15 - 2013-10-21 09:09 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive 2014-01-23 21:11 - 2014-01-23 21:11 - 00086285 _____ () C:\Users\Alex\Downloads\Default_GIMP_Brushes_by_Project_GimpBC.zip 2014-01-23 16:25 - 2014-01-23 16:25 - 00000000 ____D () C:\Users\Alex\AppData\Local\THQ 2014-01-23 10:04 - 2014-01-23 10:04 - 01077532 _____ () C:\Users\Alex\Downloads\3d-hentai-04.wmv 2014-01-22 20:52 - 2014-01-22 20:52 - 00000000 ____D () C:\Users\Alex\AppData\Local\Ascaron Entertainment 2014-01-22 15:15 - 2014-01-22 15:15 - 02624469 _____ () C:\Users\Alex\Downloads\Lowe_№116_70599.rar 2014-01-22 00:34 - 2014-01-22 00:32 - 269530647 _____ () C:\Users\Alex\Downloads\0505_2CD.rar 2014-01-22 00:16 - 2014-01-22 00:16 - 12749346 _____ () C:\Users\Alex\Downloads\SnowyNight.themepack 2014-01-22 00:16 - 2014-01-22 00:16 - 09714067 _____ () C:\Users\Alex\Downloads\Transformers3.themepack 2014-01-22 00:12 - 2014-01-22 00:12 - 00504817 _____ () C:\Users\Alex\Downloads\Gaia09_7.tvs 2014-01-22 00:11 - 2014-01-22 00:11 - 00694627 _____ () C:\Users\Alex\Downloads\CrystalSystemaRed_7.tvs 2014-01-22 00:09 - 2014-01-22 00:09 - 00695292 _____ () C:\Users\Alex\Downloads\CrystalSystemaBlue_7.tvs 2014-01-21 23:49 - 2014-01-21 23:49 - 31419822 _____ () C:\Users\Alex\Downloads\JDownloader.zip 2014-01-21 23:22 - 2014-01-21 23:22 - 00650182 _____ () C:\Users\Alex\Downloads\1200951734_San Andreas v1.00 Patch American to German.rar 2014-01-21 22:27 - 2014-01-09 23:13 - 00000000 ____D () C:\Program Files (x86)\Zenimax Online 2014-01-21 21:42 - 2014-01-21 21:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\Risen2 2014-01-21 19:03 - 2014-01-21 19:03 - 00000000 ____D () C:\Users\Alex\Documents\ZombieDriverHD 2014-01-21 18:29 - 2014-01-21 18:29 - 00000000 ____D () C:\Users\Alex\Documents\DayZ 2014-01-21 17:22 - 2014-01-21 17:22 - 00000000 ____D () C:\Users\Alex\Documents\Duke Nukem Forever 2014-01-21 16:36 - 2014-01-21 16:36 - 00000561 _____ () C:\Windows\wmsetup.log 2014-01-21 16:36 - 2014-01-21 16:36 - 00000000 ____D () C:\Users\Alex\Documents\DeadIsland 2014-01-20 21:30 - 2013-08-19 16:56 - 00000000 ____D () C:\Program Files (x86)\PokerStars.EU 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-19 23:30 - 2014-01-19 23:30 - 00000000 ____D () C:\Program Files\Realtek 2014-01-19 23:23 - 2014-01-19 23:23 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\64bit_Win7_Win8_Win81_R273 - CHIP-Downloader.exe 2014-01-19 16:52 - 2014-01-19 16:50 - 197451096 _____ (MAGIX AG) C:\Users\Alex\Downloads\magix_video_deluxe_2014_188mb_chip_de (1).exe 2014-01-19 16:49 - 2014-01-19 16:22 - 00000000 ____D () C:\Users\Alex\AppData\Local\Sony 2014-01-19 16:49 - 2014-01-19 16:22 - 00000000 ____D () C:\ProgramData\Sony 2014-01-19 16:15 - 2014-01-19 16:15 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Sony Vegas Pro - CHIP-Downloader.exe 2014-01-19 15:49 - 2014-01-19 15:49 - 09092187 _____ () C:\Users\Alex\Downloads\duke_sound_wot.rar 2014-01-19 13:57 - 2014-01-19 13:57 - 02237923 _____ () C:\Users\Alex\Downloads\21-Smoke-Brush.zip 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (3).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (2).exe 2014-01-18 15:27 - 2014-01-18 15:27 - 00614784 _____ (Chip Digital GmbH) C:\Users\Alex\Downloads\Tunngle - CHIP-Downloader (1).exe 2014-01-18 15:27 - 2014-01-18 15:26 - 06130877 _____ () C:\Users\Alex\Downloads\Неоновые-иконки.rar 2014-01-18 12:10 - 2014-01-18 12:10 - 00002770 _____ () C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 Files to move or delete: ==================== C:\Users\Alex\AppData\Roaming\Camdata.ini C:\Users\Alex\AppData\Roaming\CamLayout.ini C:\Users\Alex\AppData\Roaming\CamShapes.ini C:\Users\Alex\jagex_cl_runescape_LIVE.dat C:\Users\Alex\random.dat C:\ProgramData\winiml.dat Some content of TEMP: ==================== C:\Users\Alex\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-06-17 08:11 ==================== End Of Log ============================ Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-02-2014 Ran by Alex at 2014-02-17 12:24:52 Running from C:\Users\Alex\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Kaspersky PURE 3.0 (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5} AS: Kaspersky PURE 3.0 (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky PURE 3.0 (Enabled) {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E} ==================== Installed Programs ====================== Ace of Spades (x32 Version: - Jagex Limited) Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (x32 Version: 11.0.06 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (x32 Version: 12.0.2.122 - Adobe Systems, Inc.) Aeria Ignite (x32 Version: 1.13.3296 - Aeria Games & Entertainment) Aeria Ignite (x32 Version: 1.13.3296 - Aeria Games & Entertainment) Hidden AION Free-to-Play Version 1.0 (x32 Version: 1.0 - Gameforge) AMD APP SDK Runtime (Version: 10.0.938.2 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (Version: 8.0.881.0 - Advanced Micro Devices, Inc.) applicationupdater (HKCU Version: - Sony Online Entertainment) Arma 2 (x32 Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (x32 Version: - Bohemia Interactive) Aura Kingdom (x32 Version: - ) Auslogics Disk Defrag (x32 Version: 3.6 - Auslogics Software Pty Ltd) Bandicam (x32 Version: 1.9.2.454 - Bandisoft.com) Bandisoft MPEG-1 Decoder (x32 Version: - Bandisoft.com) Battlefield 1942 (x32 Version: - ) BattlEye for OA Uninstall (x32 Version: - ) BitRaider Web Client (x32 Version: 1.1.9.4 - BitRaider, LLC) Borderlands 2 (x32 Version: - Gearbox Software) Brick-Force (x32 Version: - Infernum Productions AG) CamStudio version 2.7 (x32 Version: 2.7 - CamStudio Open Source) Cheat Engine 6.3 (x32 Version: - Cheat Engine) Counter-Strike: Global Offensive (x32 Version: - Valve) Crysis 2 Maximum Edition (x32 Version: - Crytek Studios) Cube World version 0.0.1 (x32 Version: 0.0.1 - Picroma) Cubemen (x32 Version: - Three Sprockets) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DayZ Commander (x32 Version: 0.92.91 - Dotjosh Studios) Dead Island (x32 Version: - Techland) DEFIANCE (x32 Version: - Trion Worlds, Inc.) DefianceRuntimes (x32 Version: 1.0.2 - Trion Worlds, Inc.) diclovit's mod pack 1.10.2 (x32 Version: 1.10.2 - diclovit) Dokan Library 0.6.0 (x32 Version: - ) Duke Nukem Forever (x32 Version: - Gearbox Software) eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden ESN Sonar (x32 Version: 0.70.4 - ESN Social Software AB) Estranged: Act I (x32 Version: - Alan Edwardes) Euro Truck Simulator 2 (x32 Version: 1.8.2.5 - SCS Software) F1 2012 (x32 Version: - Codemasters Birmingham) Fallout: New Vegas (x32 Version: - Obsidian Entertainment) Firebird SQL Server - MAGIX Edition (x32 Version: 2.1.32.0 - MAGIX AG) FMOD Designer (x32 Version: - ) FormatFactory 3.0.1 (x32 Version: 3.0.1 - Free Time) Game Booster 3 (x32 Version: 3.4 - IObit) Gameforge Live 1.9.0 "Legend" (x32 Version: 1.9.0 - Gameforge) Garry's Mod (x32 Version: - Garry) Gas Guzzlers Extreme Demo (x32 Version: - ) GeForce Experience NvStream Client Components (Version: 1.6.28 - NVIDIA Corporation) Hidden GIMP 2.8.4 (Version: 2.8.4 - The GIMP Team) Google Chrome (x32 Version: 32.0.1700.107 - Google Inc.) Google Talk Plugin (x32 Version: 5.1.4.17398 - Google) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden Governor of Poker 2: Premium Edition (x32 Version: - I Sioux Game Productions B.V.) Grand Theft Auto: San Andreas (x32 Version: - Rockstar Games) GRID Demo (x32 Version: 1.00.0000 - Codemasters) HAWKEN (x32 Version: - Adhesive Games) Hi-Rez Studios Authenticate and Update Service (x32 Version: 3.0.0.0 - Hi-Rez Studios) IM Lock (x32 Version: - Comvigo, Inc.) Intel(R) Control Center (x32 Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (x32 Version: 8.1.0.1281 - Intel Corporation) Intel(R) Rapid Storage Technology (x32 Version: 11.1.0.1006 - Intel Corporation) Intel(R) Small Business Advantage (x32 Version: - Intel(R) Corporation) Intel(R) Update Manager (x32 Version: 1.0.0.34813 - Intel Corporation) Hidden Intel(R) USB 3.0 eXtensible Host Controller Driver (x32 Version: 1.0.4.225 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.738.1 - Intel Corporation) Hidden Java 7 Update 17 (64-bit) (Version: 7.0.170 - Oracle) Java 7 Update 51 (x32 Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Jt's AGQJ Engine&Guns Version 2.1 AGQJ for WOT 0.8.11 (x32 Version: 2.1 AGQJ for WOT 0.8.11 - JT_Adams's Modwerkstatt) Just Cause 2 (x32 Version: - Avalanche) Just Cause 2: Multiplayer Mod (x32 Version: - Avalanche Studios) Kaspersky PURE 3.0 (x32 Version: 13.0.2.558 - Kaspersky Lab) Kaspersky PURE 3.0 (x32 Version: 13.0.2.558 - Kaspersky Lab) Hidden MAESTIA Version 201307 (x32 Version: 201307 - ANDROMEDAGAMES) MAGIX Content und Soundpools (x32 Version: 1.0.0.0 - MAGIX AG) MAGIX Goya burnR (MSI) (Version: 4.3.2.0 - MAGIX AG) Hidden MAGIX Goya burnR (MSI) (x32 Version: 4.3.2.0 - MAGIX AG) MAGIX Music Maker 2014 (Version: 20.0.2.35 - MAGIX AG) Hidden MAGIX Music Maker 2014 (x32 Version: 20.0.2.35 - MAGIX AG) MAGIX Music Maker 2014 Trial Soundpools (Version: 1.0.0.0 - MAGIX AG) Hidden MAGIX Speed burnR (MSI) (Version: 7.0.2.6 - MAGIX AG) Hidden MAGIX Speed burnR (MSI) (x32 Version: 7.0.2.6 - MAGIX AG) MAGIX Video deluxe 2014 Premium (Version: 13.0.2.8 - MAGIX AG) Hidden MAGIX Video deluxe 2014 Premium (x32 Version: 13.0.2.8 - MAGIX AG) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (x32 Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Corporation (Version: 9.1.0.0 - Microsoft Corporation) Hidden Microsoft Corporation (x32 Version: 9.1.0.0 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE (x32 Version: 3.1.186.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0 - Microsoft Corporation) Microsoft LifeCam (Version: 3.22.270.0 - Microsoft Corporation) Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0 - Microsoft Corporation) Microsoft_VC100_CRT_SP1_x64 (Version: 10.0.40219.1 - Nokia) Hidden Microsoft_VC100_CRT_SP1_x86 (x32 Version: 10.0.40219.1 - Nokia) Hidden Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 22.0 - Mozilla) MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0 - Microsoft Corporation) Natural Selection 2 (x32 Version: - Unknown Worlds Entertainment) Nokia Connectivity Cable Driver (x32 Version: 7.1.172.0 - Nokia) NVIDIA 3D Vision Controller-Treiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA GeForce Experience 1.8.1 (Version: 1.8.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.142.992 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.0725 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725 - NVIDIA Corporation) NVIDIA ShadowPlay 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3221 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 332.21 (Version: 332.21 - NVIDIA Corporation) Hidden NVIDIA Update 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 10.11.15 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.19 (Version: 1.2.19 - NVIDIA Corporation) OpenAL (x32 Version: - ) Paint.NET v3.5.11 (Version: 3.61.0 - dotPDN LLC) PC Connectivity Solution (x32 Version: 12.0.109.0 - Nokia) PlanetSide 2 (x32 Version: - Sony Online Entertainment) PokerStars.eu (x32 Version: - PokerStars.eu) Portal 2 (x32 Version: - Valve) Quake Live Mozilla Plugin (x32 Version: 1.0.520 - id Software) Realtek Ethernet Controller Driver (x32 Version: 7.53.216.2012 - Realtek) Realtek High Definition Audio Driver (x32 Version: 6.0.1.7083 - Realtek Semiconductor Corp.) RocketDock 1.3.5 (x32 Version: - Punk Software) RuneScape Launcher 1.2.3 (x32 Version: 1.2.3 - Jagex Ltd) S.K.I.L.L. - Special Force 2 (x32 Version: - ) Saints Row IV (x32 Version: - Deep Silver Volition) Saints Row: The Third (x32 Version: - Volition) SHIELD Streaming (Version: 1.6.85 - NVIDIA Corporation) Hidden Skype™ 6.11 (x32 Version: 6.11.102 - Skype Technologies S.A.) Source SDK Base 2007 (x32 Version: - Valve) SpeedFan (remove only) (x32 Version: - ) SpinTires Tech Demo (June 060613) (x32 Version: 1.3 - Oovee) Spotify (HKCU Version: 0.9.7.16.g4b197456 - Spotify AB) Star Wars The Old Republic (x32 Version: 7.0.0.29 - Bioware/EA) Star Wars: The Old Republic (x32 Version: 1.00 - Electronic Arts, Inc.) Steam (x32 Version: 1.0.0.0 - Valve Corporation) Surgeon Simulator 2013 (x32 Version: - Bossa Studios) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Team Fortress 2 (x32 Version: - Valve) TeamSpeak 3 Client (HKCU Version: 3.0.13.1 - TeamSpeak Systems GmbH) TeamViewer 9 (x32 Version: 9.0.25790 - TeamViewer) Terraria (x32 Version: - ) Text-To-Speech-Runtime (x32 Version: 1.0.0.0 - Magix Development GmbH) The Elder Scrolls Online Beta (x32 Version: 0.3.4 - ) The Elder Scrolls V: Skyrim (x32 Version: - Bethesda Game Studios) The Mighty Quest For Epic Loot Version 1.220469 (x32 Version: 1.220469 - ) The Pit Demo (x32 Version: 1.0.0 - Kerberos Productions) The Plan (x32 Version: - Krillbite Studio) Tomb Raider (x32 Version: - Crystal Dynamics) TS Notifier (x32 Version: 1.5.5001 - Andreas Gebert) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden TuneUp Utilities 2014 (x32 Version: 14.0.1000.221 - TuneUp Software) TuneUp Utilities 2014 (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden Unity Web Player (HKCU Version: - Unity Technologies ApS) War Thunder Launcher 1.0.1.153 (x32 Version: - 2012 Gaijin Entertainment Corporation) Warframe (x32 Version: - ) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (Version: 05/31/2012 7.1.2.0 - Nokia) WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH) World of Tanks - Common Test (x32 Version: - Wargaming.net) World of Tanks (x32 Version: - Wargaming.net) World of Warplanes (x32 Version: - Wargaming.net) Zombie Driver HD (x32 Version: - Exor Studios) ==================== Restore Points ========================= 15-02-2014 21:12:02 Removed NaturalReaderFree. 17-02-2014 00:02:22 ComboFix created restore point ==================== Hosts content: ========================== 2009-07-14 03:34 - 2014-02-17 01:08 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {0211AD9F-6C20-4455-96BF-42E583E43FB2} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated) Task: {1060B6A7-B474-4CBE-AA3C-8E6788F5AB1B} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe [2013-12-18] (TuneUp Software) Task: {42720A60-DC37-432F-B779-544681FEE9E1} - System32\Tasks\{48A9EF00-04F4-4DFE-B8FB-9F9AE3EC46A1} => C:\Users\Alex\Desktop\SWTOR_setup (1).exe Task: {524B0F5B-2B4D-4D10-AC1B-4680409C7416} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation) Task: {5BE15411-DB39-4FF9-AA35-0ECA4D9DD6A1} - \Desk 365 RunAsStdUser No Task File Task: {76B77F1A-CF31-4FBA-8A2D-18D6C37A8A36} - System32\Tasks\Google Updater and Installer => C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe [2014-02-04] (Google Inc.) Task: {7D384E7A-3993-411D-9ACA-9BDD52817321} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-25] (Google Inc.) Task: {7F23482B-05F5-4139-AADF-736E0BD611CE} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [2013-07-23] () Task: {8005C0D7-3BF7-4CC1-8F1F-06A890C22868} - System32\Tasks\{1F1F4FB0-3932-4BAF-B1CC-B1729A279C99} => C:\Users\Alex\Desktop\gta sa neu\gta_sa.exe Task: {ABE1557F-5D1F-4750-9A14-E70754112752} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-05] (Adobe Systems Incorporated) Task: {C83B5117-32CB-4D91-A9DC-B4EE76B0704F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-25] (Google Inc.) Task: {CBACF01D-29AF-4D20-BC21-0C104C244700} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA => C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe [2014-02-04] (Google Inc.) Task: {D411F42A-B3B8-4EEC-9A77-2DE04EE6E683} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core => C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe [2014-02-04] (Google Inc.) Task: {EADF1C57-5D72-4ABF-A976-B8EC8FF63CAA} - \Omiga Plus RunAsStdUser No Task File Task: {ECC2222F-999F-46C5-9E20-8990838F97B4} - System32\Tasks\{96401EEC-B719-45F4-85D3-79C00ABDC861} => C:\Users\Alex\Desktop\SWTOR_setup (1).exe Task: {FB4C7FDF-E6C8-49EF-BA19-F0B7C2C0E6A9} - System32\Tasks\FRAPS => C:\Users\Alex\Desktop\Fraps\fraps.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003Core.job => C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-992614989-2845173188-1475335217-1003UA.job => C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2012-12-20 17:19 - 2012-12-20 17:19 - 00479752 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\dblite.dll 2012-12-20 17:19 - 2012-12-20 17:19 - 01310728 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\kpcengine.2.2.dll 2011-01-10 13:49 - 2011-01-10 13:49 - 00014848 _____ () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe 2013-10-04 22:54 - 2013-10-19 00:02 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-10-17 09:43 - 2013-10-17 09:43 - 00172032 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\67f2d87ba056e1075fce76a8c50bb57e\IsdiInterop.ni.dll 2012-05-08 06:30 - 2012-02-01 15:25 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2012-05-08 10:56 - 2012-07-18 10:55 - 01198912 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2013-01-05 20:19 - 2012-02-27 13:00 - 00030432 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\ProcessPrivileges.dll 2013-01-05 20:19 - 2012-02-27 13:00 - 00215264 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\System.ComponentModel.Composition.dll 2013-01-05 20:19 - 2012-02-27 13:00 - 00051424 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Interop.TaskScheduler.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Alex\Anwendungsdaten:NT AlternateDataStreams: C:\Users\Alex\AppData\Roaming:NT ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Alex\AppData\Local\Akamai\netsession_win.exe" MSCONFIG\startupreg: Overwolf => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== System errors: ============= Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2014-02-17 01:08:26.910 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-17 01:08:26.878 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-17 01:08:26.846 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-17 01:08:26.814 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-06-25 12:48:51.081 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 12:48:51.079 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 12:48:51.078 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 11:22:29.720 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 11:22:29.719 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 11:22:29.718 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 25% Total physical RAM: 8127.47 MB Available physical RAM: 6025.86 MB Total Pagefile: 16253.12 MB Available Pagefile: 14021.32 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:921.41 GB) (Free:135.46 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 1E2AC9C5) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=921 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=10 GB) - (Type=27) ==================== End Of Log ============================ |
Themen zu WARNUNG. Polizei! Browser wurde gesperrt.. Daten verschlüsselt etc. |
automatisch, bli, browser, daten, daten verschlüsselt, fenster, fenster schließen, geschlossen, gesperrt, inhalt, java, neue, neue seite, nichts, polizei, probleme, reagiert, schließe, schließen, seite, sofort, system, troja, unterwegs, verschlüsselt, warnung, zahlen |