|
Log-Analyse und Auswertung: Langsamer RechnerWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
26.02.2014, 13:38 | #1 |
| Langsamer Rechner Schönen guten Tag , Ich habe das Problem das mein Pc immer normal startet aber nach kurzer zeit alles stark langsamer wird und vielleicht könnt ihr mir helfen Vielen Dank schon im vorraus |
26.02.2014, 13:50 | #2 |
/// the machine /// TB-Ausbilder | Langsamer Rechner hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
26.02.2014, 14:44 | #3 |
| Langsamer RechnerFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-02-2014 Ran by Patrick (administrator) on PATRICK-PC on 26-02-2014 14:43:06 Running from C:\Users\Patrick\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe (Curse) C:\Users\Patrick\AppData\Local\Apps\2.0\4V20DBEV.0NG\MYH12P32.YX0\curs..tion_9e9e83ddf3ed3ead_0005.0001_181b5e0542e9eb6c\CurseClient.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (TeamSpeak Systems GmbH) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7191768 2013-06-24] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-10] (NVIDIA Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-12-23] (DivX, LLC) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-18] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] () HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] - rmdir /s /q "\SearchProtect" HKU\S-1-5-21-1459607672-3188185053-586168013-1000\...\MountPoints2: {daefebfa-0708-11e3-a832-806e6f6e6963} - D:\Install.exe Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () Startup: C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1390546994&from=amt&uid=ST31000524AS_6VPEMABVXXXX6VPEMABV HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x39067523219BCE01 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1390546994&from=amt&uid=ST31000524AS_6VPEMABVXXXX6VPEMABV&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1390546994&from=amt&uid=ST31000524AS_6VPEMABVXXXX6VPEMABV&q={searchTerms} SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKCU - {5CE56213-0DFF-4681-89CB-DEA4E91C6C3B} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3297265&CUI=UN20986328992583821&UM=2 BHO: No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Toolbar: HKLM-x32 - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Chrome: ======= CHR HomePage: hxxp://www.google.com CHR Extension: (Google Drive) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-25] CHR Extension: (YouTube) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-25] CHR Extension: (Adblock Plus) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-01-29] CHR Extension: (Google-Suche) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-25] CHR Extension: (AdBlock Premium) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2014-01-29] CHR Extension: (Super Animes - Dragon Ball GT) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\knldpfnfoakbnkpgpbpcmjllglpofenn [2014-01-25] CHR Extension: (Google Wallet) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-25] CHR Extension: (Google Mail) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-25] CHR HKCU\...\Chrome\Extension: [hkoahcaobjbihehldfimhblmhgalcipm] - C:\Users\Patrick\AppData\Local\CRE\hkoahcaobjbihehldfimhblmhgalcipm.crx [2014-02-06] CHR HKLM-x32\...\Chrome\Extension: [hkoahcaobjbihehldfimhblmhgalcipm] - C:\Users\Patrick\AppData\Local\CRE\hkoahcaobjbihehldfimhblmhgalcipm.crx [2014-02-06] CHR HKLM-x32\...\Chrome\Extension: [pkndmigholgfjlniaohblojbhgjbkakn] - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx [2014-02-06] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-18] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-18] (Avira Operations GmbH & Co. KG) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-01-11] () R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) ==================== Drivers (Whitelisted) ==================== R0 amdide64; C:\Windows\System32\drivers\amdide64.sys [11944 2012-12-03] (Advanced Micro Devices Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-18] (Avira Operations GmbH & Co. KG) S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [848384 2011-06-01] (Realtek Semiconductor Corporation ) S3 whfltr2k; C:\Windows\System32\DRIVERS\whfltr2k.sys [9600 2007-01-26] () U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-26 14:43 - 2014-02-26 14:43 - 00011245 _____ () C:\Users\Patrick\Desktop\FRST.txt 2014-02-26 14:42 - 2014-02-26 14:42 - 02155520 _____ (Farbar) C:\Users\Patrick\Desktop\FRST64.exe 2014-02-26 14:36 - 2014-02-26 14:36 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-26 14:36 - 2014-02-26 14:36 - 00000000 _____ () C:\Windows\setupact.log 2014-02-26 13:34 - 2014-02-26 13:34 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-02-26 13:28 - 2014-02-26 13:28 - 04765152 _____ (Piriform Ltd) C:\Users\Patrick\Downloads\ccsetup411.exe 2014-02-23 19:05 - 2014-02-23 19:05 - 00000222 _____ () C:\Users\Patrick\Desktop\DayZ.url 2014-02-18 11:08 - 2014-02-18 11:08 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-02-14 16:01 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-02-14 16:01 - 2013-04-02 23:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-02-13 03:02 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-13 03:02 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-13 03:01 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-13 03:01 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-13 03:01 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-13 03:01 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-13 03:01 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-13 03:01 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-13 03:01 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-13 03:01 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-13 03:01 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-13 03:01 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-13 03:01 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-13 03:01 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-13 03:01 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-13 03:01 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-13 03:01 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-13 03:01 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-13 03:01 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-13 03:01 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-13 03:01 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-13 03:01 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-13 03:01 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-13 03:00 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-13 03:00 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-13 03:00 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-13 03:00 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-13 03:00 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-13 03:00 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-13 03:00 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-13 03:00 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-13 03:00 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-13 03:00 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-13 03:00 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-13 03:00 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-13 03:00 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-13 03:00 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-13 03:00 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-13 03:00 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-13 03:00 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-13 03:00 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-12 23:57 - 2014-02-12 23:57 - 00001205 _____ () C:\Users\Patrick\Downloads\Kev lol daten - Verknüpfung.lnk 2014-02-12 21:09 - 2014-02-12 21:09 - 00249744 _____ () C:\Users\Patrick\Downloads\Teamspeak Pack.7z 2014-02-12 14:34 - 2014-02-12 15:04 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\FFsplit 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\ProgramData\Package Cache 2014-02-12 12:05 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-12 12:05 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-12 12:05 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-12 12:05 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-12 12:04 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-12 12:04 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-12 12:04 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-12 12:04 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-11 23:45 - 2014-02-14 13:17 - 00000000 ____D () C:\Fraps 2014-02-11 23:25 - 2014-02-11 23:25 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-02-11 23:12 - 2012-08-23 15:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2014-02-11 23:12 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2014-02-11 23:12 - 2012-08-23 15:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys 2014-02-11 23:12 - 2012-08-23 15:07 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2014-02-11 23:12 - 2012-08-23 14:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2014-02-11 23:12 - 2012-08-23 14:46 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2014-02-11 23:12 - 2012-08-23 14:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-02-11 23:12 - 2012-08-23 14:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-02-11 23:12 - 2012-08-23 14:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2014-02-11 23:12 - 2012-08-23 14:20 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2014-02-11 23:12 - 2012-08-23 14:18 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-02-11 23:12 - 2012-08-23 14:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2014-02-11 23:12 - 2012-08-23 14:06 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-02-11 23:12 - 2012-08-23 13:52 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-02-11 23:12 - 2012-08-23 12:20 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2014-02-11 23:12 - 2012-08-23 12:15 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-02-11 23:12 - 2012-08-23 12:14 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2014-02-11 23:12 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll 2014-02-11 23:12 - 2012-08-23 11:54 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-02-11 23:12 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll 2014-02-11 23:12 - 2012-08-23 11:39 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-02-11 23:12 - 2012-08-23 11:22 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-02-11 23:12 - 2012-08-23 10:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-02-11 23:12 - 2012-08-23 09:19 - 04916224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-02-11 23:12 - 2012-08-23 09:13 - 05773824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-02-11 23:09 - 2013-01-13 20:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-02-11 23:09 - 2013-01-13 20:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-02-11 23:09 - 2013-01-04 07:11 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-02-11 23:09 - 2013-01-04 07:11 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-02-11 23:08 - 2013-01-13 22:17 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:17 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:35 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:35 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:35 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:20 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-02-11 23:08 - 2013-01-13 21:09 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-02-11 23:08 - 2013-01-13 21:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-02-11 23:08 - 2013-01-13 20:58 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-02-11 23:08 - 2013-01-13 20:54 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-02-11 23:08 - 2013-01-13 20:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-02-11 23:08 - 2013-01-13 20:49 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-02-11 23:08 - 2013-01-13 20:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-02-11 23:08 - 2013-01-13 20:46 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-02-11 23:08 - 2013-01-13 20:43 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-02-11 23:08 - 2013-01-13 20:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-02-11 23:08 - 2013-01-13 20:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-02-11 23:08 - 2013-01-13 20:25 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-02-11 23:08 - 2013-01-13 20:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-02-11 23:08 - 2013-01-13 20:20 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-02-11 23:08 - 2013-01-13 20:20 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-02-11 23:08 - 2013-01-13 20:15 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-02-11 23:08 - 2013-01-13 20:02 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-02-11 23:08 - 2013-01-13 19:34 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-02-11 23:08 - 2013-01-13 19:32 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-02-11 23:08 - 2013-01-13 19:09 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-02-11 23:08 - 2013-01-13 18:26 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-02-11 23:08 - 2013-01-13 18:05 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-02-11 23:04 - 2014-02-11 23:04 - 00000000 ____D () C:\Users\Patrick\AppData\Local\NativeMessaging 2014-02-11 23:04 - 2014-02-11 23:04 - 00000000 ____D () C:\Users\Patrick\AppData\Local\CRE 2014-02-11 23:01 - 2012-05-04 12:00 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-02-11 23:01 - 2012-05-04 10:59 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-02-11 10:10 - 2014-02-11 10:10 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II - Multiplayer.url 2014-02-11 01:22 - 2014-02-11 01:22 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II.url 2014-02-10 11:50 - 2014-02-10 11:50 - 00000222 _____ () C:\Users\Patrick\Desktop\Saints Row IV.url 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\ProgramData\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-10 11:07 - 2013-12-18 09:32 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-02-10 11:07 - 2013-12-18 09:32 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-02-10 11:07 - 2013-12-18 09:32 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-02-10 10:59 - 2014-02-10 10:59 - 01166132 _____ () C:\Users\Patrick\Downloads\adwcleaner.exe 2014-02-09 01:24 - 2014-02-09 01:24 - 00000000 ____D () C:\ProgramData\Damned 2014-02-09 00:29 - 2014-02-09 00:29 - 00000222 _____ () C:\Users\Patrick\Desktop\Damned.url 2014-02-09 00:23 - 2014-02-26 14:35 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-09 00:23 - 2014-02-09 00:23 - 00000969 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-02-03 22:45 - 2014-02-03 22:45 - 00003134 _____ () C:\Windows\System32\Tasks\{A4D1B302-1F8B-4119-95C7-ACA251661464} ==================== One Month Modified Files and Folders ======= 2014-02-26 14:43 - 2014-02-26 14:43 - 00011245 _____ () C:\Users\Patrick\Desktop\FRST.txt 2014-02-26 14:43 - 2013-07-27 12:56 - 00000000 ____D () C:\FRST 2014-02-26 14:42 - 2014-02-26 14:42 - 02155520 _____ (Farbar) C:\Users\Patrick\Desktop\FRST64.exe 2014-02-26 14:41 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-26 14:41 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-26 14:36 - 2014-02-26 14:36 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-26 14:36 - 2014-02-26 14:36 - 00000000 _____ () C:\Windows\setupact.log 2014-02-26 14:35 - 2014-02-09 00:23 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-26 14:20 - 2014-01-25 21:42 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-26 13:54 - 2014-01-25 21:42 - 00000000 ____D () C:\Users\Patrick\AppData\Local\Deployment 2014-02-26 13:48 - 2013-09-29 09:22 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-26 13:34 - 2014-02-26 13:34 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-02-26 13:29 - 2013-11-03 00:47 - 00000828 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-02-26 13:29 - 2013-11-03 00:47 - 00000000 ____D () C:\Program Files\CCleaner 2014-02-26 13:28 - 2014-02-26 13:28 - 04765152 _____ (Piriform Ltd) C:\Users\Patrick\Downloads\ccsetup411.exe 2014-02-26 13:17 - 2013-10-08 16:31 - 00000000 ____D () C:\Users\Patrick\AppData\Local\Battle.net 2014-02-26 13:06 - 2013-08-17 09:31 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\TS3Client 2014-02-26 12:55 - 2013-08-17 10:12 - 00000000 ____D () C:\Users\Patrick\AppData\Local\PMB Files 2014-02-26 12:51 - 2014-01-24 23:10 - 01478992 ____N () C:\Windows\WindowsUpdate.log 2014-02-26 11:52 - 2013-08-17 10:12 - 00000000 ____D () C:\ProgramData\PMB Files 2014-02-26 11:19 - 2014-01-25 21:42 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-26 09:56 - 2013-08-17 10:15 - 00000000 ____D () C:\Program Files (x86)\Diablo III 2014-02-26 08:51 - 2011-04-12 08:43 - 00699860 _____ () C:\Windows\system32\perfh007.dat 2014-02-26 08:51 - 2011-04-12 08:43 - 00149742 _____ () C:\Windows\system32\perfc007.dat 2014-02-26 08:51 - 2009-07-14 06:13 - 01622188 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-26 08:46 - 2014-01-24 23:10 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-26 08:46 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-23 19:05 - 2014-02-23 19:05 - 00000222 _____ () C:\Users\Patrick\Desktop\DayZ.url 2014-02-22 22:21 - 2014-01-25 21:46 - 00002181 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-21 23:19 - 2013-08-17 10:30 - 00000000 ____D () C:\Program Files (x86)\World of Warcraft 2014-02-21 21:48 - 2013-09-29 09:22 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-21 21:48 - 2013-09-29 09:22 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-21 21:48 - 2013-09-29 09:22 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-18 11:08 - 2014-02-18 11:08 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-02-17 09:41 - 2013-08-20 18:34 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-17 09:39 - 2014-01-25 08:13 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-17 09:35 - 2014-01-25 21:42 - 00058016 _____ () C:\Users\Patrick\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-17 09:34 - 2009-07-14 05:45 - 00279632 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-02-16 16:44 - 2013-08-26 14:11 - 00000000 ____D () C:\Windows\pss 2014-02-16 16:43 - 2013-09-21 21:25 - 00000000 ____D () C:\Program Files (x86)\JDownloader 2014-02-16 12:12 - 2014-01-24 23:14 - 00000000 ____D () C:\Users\Patrick 2014-02-14 13:25 - 2014-01-15 22:37 - 00000000 ____D () C:\ProgramData\HappyCloud 2014-02-14 13:18 - 2014-01-15 22:38 - 00000000 ____D () C:\ProgramData\Turbine 2014-02-14 13:17 - 2014-02-11 23:45 - 00000000 ____D () C:\Fraps 2014-02-14 08:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-02-13 03:08 - 2014-01-25 08:18 - 01595532 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-12 23:57 - 2014-02-12 23:57 - 00001205 _____ () C:\Users\Patrick\Downloads\Kev lol daten - Verknüpfung.lnk 2014-02-12 23:57 - 2013-08-29 16:52 - 00000000 ____D () C:\AdwCleaner 2014-02-12 21:09 - 2014-02-12 21:09 - 00249744 _____ () C:\Users\Patrick\Downloads\Teamspeak Pack.7z 2014-02-12 15:04 - 2014-02-12 14:34 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\FFsplit 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\ProgramData\Package Cache 2014-02-12 14:33 - 2013-08-28 07:49 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-02-12 11:14 - 2014-01-25 21:42 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-12 11:14 - 2014-01-25 21:42 - 00003856 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-12 10:24 - 2013-10-08 16:31 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-02-12 03:19 - 2014-01-25 08:10 - 00001427 _____ () C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-02-12 00:24 - 2013-08-26 20:57 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Skype 2014-02-11 23:25 - 2014-02-11 23:25 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-02-11 23:06 - 2013-08-29 02:59 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-02-11 23:06 - 2013-08-29 02:55 - 00000000 ____D () C:\ProgramData\DivX 2014-02-11 23:04 - 2014-02-11 23:04 - 00000000 ____D () C:\Users\Patrick\AppData\Local\NativeMessaging 2014-02-11 23:04 - 2014-02-11 23:04 - 00000000 ____D () C:\Users\Patrick\AppData\Local\CRE 2014-02-11 10:10 - 2014-02-11 10:10 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II - Multiplayer.url 2014-02-11 01:22 - 2014-02-11 01:22 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II.url 2014-02-10 11:50 - 2014-02-10 11:50 - 00000222 _____ () C:\Users\Patrick\Desktop\Saints Row IV.url 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\ProgramData\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-10 10:59 - 2014-02-10 10:59 - 01166132 _____ () C:\Users\Patrick\Downloads\adwcleaner.exe 2014-02-10 10:58 - 2014-01-05 18:26 - 00000000 ____D () C:\Users\hedev 2014-02-09 01:24 - 2014-02-09 01:24 - 00000000 ____D () C:\ProgramData\Damned 2014-02-09 00:29 - 2014-02-09 00:29 - 00000222 _____ () C:\Users\Patrick\Desktop\Damned.url 2014-02-09 00:23 - 2014-02-09 00:23 - 00000969 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-02-06 13:16 - 2014-02-13 03:00 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-13 03:01 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-13 03:01 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-13 03:00 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-13 03:01 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-13 03:01 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-13 03:01 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-13 03:01 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 11:52 - 2014-02-13 03:01 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 11:49 - 2014-02-13 03:01 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-13 03:01 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 11:48 - 2014-02-13 03:00 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 11:38 - 2014-02-13 03:00 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-13 03:01 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-13 03:01 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-13 03:01 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 11:11 - 2014-02-13 03:00 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-13 03:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-13 03:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-13 03:01 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 10:57 - 2014-02-13 03:00 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 10:52 - 2014-02-13 03:01 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-13 03:01 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-13 03:00 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 10:49 - 2014-02-13 03:01 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 10:47 - 2014-02-13 03:01 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-13 03:00 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-13 03:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 10:25 - 2014-02-13 03:00 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 10:24 - 2014-02-13 03:00 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 10:22 - 2014-02-13 03:00 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-13 03:01 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-13 03:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-13 03:00 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-13 03:00 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-13 03:00 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-13 03:00 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-13 03:00 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-13 03:00 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-03 22:45 - 2014-02-03 22:45 - 00003134 _____ () C:\Windows\System32\Tasks\{A4D1B302-1F8B-4119-95C7-ACA251661464} 2014-02-01 20:50 - 2013-08-17 10:56 - 00000000 ____D () C:\Users\Patrick\Documents\StarCraft II 2014-01-30 21:35 - 2013-08-17 08:30 - 00000000 ____D () C:\Windows.old Some content of TEMP: ==================== C:\Users\Patrick\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-18 02:43 ==================== End Of Log ============================ Leider ist keine Addition.txt erschienen habe nur die FRST.txt bekommen |
27.02.2014, 12:27 | #4 |
/// the machine /// TB-Ausbilder | Langsamer Rechner Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
27.02.2014, 15:29 | #5 |
| Langsamer RechnerCode:
ATTFilter Malwarebytes Anti-Malware (Test) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.02.27.04 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16518 Patrick :: PATRICK-PC [Administrator] Schutz: Aktiviert 27.02.2014 14:47:24 mbam-log-2014-02-27 (14-47-24).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 244479 Laufzeit: 4 Minute(n), 28 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 3 HKLM\SOFTWARE\Google\Chrome\Extensions\pkndmigholgfjlniaohblojbhgjbkakn (PUP.Optional.NewTab.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\Software\awesomehpSoftware (PUP.Optional.Awesomehp.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Registrierungswerte: 1 HKLM\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Daten: 1590556227124396031 -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateiobjekte der Registrierung: 1 HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Default_Page_URL (PUP.Optional.Awesomehp.A) -> Bösartig: (hxxp://www.awesomehp.com/?type=hp&ts=1390546994&from=amt&uid=ST31000524AS_6VPEMABVXXXX6VPEMABV) Gut: (hxxp://www.google.com) -> Erfolgreich ersetzt und in Quarantäne gestellt. Infizierte Verzeichnisse: 2 C:\ProgramData\IePluginService (PUP.Optional.IePluginService.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\IePluginService\update (PUP.Optional.IePluginService.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateien: 1 C:\ProgramData\IePluginService\update\conf (PUP.Optional.IePluginService.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) Code:
ATTFilter # AdwCleaner v3.019 - Bericht erstellt am 27/02/2014 um 15:14:15 # Aktualisiert 17/02/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Patrick - PATRICK-PC # Gestartet von : C:\Users\Patrick\Desktop\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Windows\SysWOW64\AI_RecycleBin Ordner Gelöscht : C:\Users\Patrick\AppData\Local\NativeMessaging Ordner Gelöscht : C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop Datei Gelöscht : C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage Datei Gelöscht : C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage-journal ***** [ Verknüpfungen ] ***** Verknüpfung Desinfiziert : C:\Users\Patrick\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\Software\caphyon Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\DivX\Install\Setup\WizardLayout\ConduitToolbar ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16518 Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] -\\ Google Chrome v33.0.1750.117 [ Datei : C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [3489 octets] - [29/08/2013 16:52:52] AdwCleaner[R10].txt - [2151 octets] - [28/01/2014 00:02:19] AdwCleaner[R11].txt - [2212 octets] - [28/01/2014 01:50:18] AdwCleaner[R12].txt - [2030 octets] - [28/01/2014 01:52:53] AdwCleaner[R13].txt - [2315 octets] - [10/02/2014 11:00:00] AdwCleaner[R14].txt - [3757 octets] - [12/02/2014 11:51:28] AdwCleaner[R15].txt - [2310 octets] - [12/02/2014 23:57:19] AdwCleaner[R16].txt - [3665 octets] - [27/02/2014 15:12:16] AdwCleaner[R1].txt - [7409 octets] - [31/08/2013 09:50:28] AdwCleaner[R2].txt - [4494 octets] - [21/09/2013 21:35:04] AdwCleaner[R3].txt - [4554 octets] - [21/09/2013 22:21:10] AdwCleaner[R4].txt - [4178 octets] - [23/10/2013 15:07:22] AdwCleaner[R5].txt - [1342 octets] - [29/10/2013 12:38:37] AdwCleaner[R6].txt - [1403 octets] - [29/10/2013 23:47:35] AdwCleaner[R7].txt - [3520 octets] - [03/11/2013 00:55:22] AdwCleaner[R8].txt - [7141 octets] - [24/01/2014 08:15:39] AdwCleaner[R9].txt - [5314 octets] - [25/01/2014 22:19:14] AdwCleaner[S0].txt - [3249 octets] - [29/08/2013 16:53:54] AdwCleaner[S10].txt - [2728 octets] - [27/02/2014 15:14:15] AdwCleaner[S1].txt - [7259 octets] - [31/08/2013 09:51:05] AdwCleaner[S2].txt - [4094 octets] - [21/09/2013 22:22:29] AdwCleaner[S3].txt - [4068 octets] - [23/10/2013 15:08:20] AdwCleaner[S4].txt - [3450 octets] - [03/11/2013 00:58:37] AdwCleaner[S5].txt - [5679 octets] - [24/01/2014 08:20:36] AdwCleaner[S6].txt - [4882 octets] - [25/01/2014 22:20:44] AdwCleaner[S7].txt - [2280 octets] - [28/01/2014 01:50:46] AdwCleaner[S8].txt - [2282 octets] - [10/02/2014 11:00:38] AdwCleaner[S9].txt - [3444 octets] - [12/02/2014 11:53:43] ########## EOF - C:\AdwCleaner\AdwCleaner[S10].txt - [3329 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.2 (02.20.2014:1) OS: Windows 7 Home Premium x64 Ran by Patrick on 27.02.2014 at 15:18:10,31 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1459607672-3188185053-586168013-1000\Software\sweetim Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\conduitutil_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\conduitutil_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\conduitutil_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\conduitutil_RASMANCS Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{5CE56213-0DFF-4681-89CB-DEA4E91C6C3B} ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Users\Patrick\appdata\local\cre" ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 27.02.2014 at 15:24:29,69 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-02-2014 Ran by Patrick (administrator) on PATRICK-PC on 27-02-2014 15:28:25 Running from C:\Users\Patrick\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Curse) C:\Users\Patrick\AppData\Local\Apps\2.0\4V20DBEV.0NG\MYH12P32.YX0\curs..tion_9e9e83ddf3ed3ead_0005.0001_181b5e0542e9eb6c\CurseClient.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7191768 2013-06-24] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-10] (NVIDIA Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-12-23] (DivX, LLC) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-18] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] () HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] - rmdir /s /q "\SearchProtect" HKU\S-1-5-21-1459607672-3188185053-586168013-1000\...\MountPoints2: {daefebfa-0708-11e3-a832-806e6f6e6963} - D:\Install.exe Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () Startup: C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x39067523219BCE01 SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO: No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Toolbar: HKLM-x32 - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Chrome: ======= CHR HomePage: hxxp://www.google.com CHR Extension: (Google Drive) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-25] CHR Extension: (YouTube) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-25] CHR Extension: (Adblock Plus) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-01-29] CHR Extension: (Google-Suche) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-25] CHR Extension: (AdBlock Premium) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2014-01-29] CHR Extension: (Super Animes - Dragon Ball GT) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\knldpfnfoakbnkpgpbpcmjllglpofenn [2014-01-25] CHR Extension: (Google Wallet) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-25] CHR Extension: (Google Mail) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-25] CHR HKCU\...\Chrome\Extension: [hkoahcaobjbihehldfimhblmhgalcipm] - C:\Users\Patrick\AppData\Local\CRE\hkoahcaobjbihehldfimhblmhgalcipm.crx [2014-01-25] CHR HKLM-x32\...\Chrome\Extension: [hkoahcaobjbihehldfimhblmhgalcipm] - C:\Users\Patrick\AppData\Local\CRE\hkoahcaobjbihehldfimhblmhgalcipm.crx [2014-01-25] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-18] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-18] (Avira Operations GmbH & Co. KG) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-01-11] () R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) ==================== Drivers (Whitelisted) ==================== R0 amdide64; C:\Windows\System32\drivers\amdide64.sys [11944 2012-12-03] (Advanced Micro Devices Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-18] (Avira Operations GmbH & Co. KG) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [848384 2011-06-01] (Realtek Semiconductor Corporation ) S3 whfltr2k; C:\Windows\System32\DRIVERS\whfltr2k.sys [9600 2007-01-26] () U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-27 15:27 - 2014-02-27 15:28 - 00011163 _____ () C:\Users\Patrick\Desktop\FRST.txt 2014-02-27 15:18 - 2014-02-27 15:18 - 00000000 ____D () C:\Windows\ERUNT 2014-02-27 14:48 - 2014-02-27 14:48 - 01241834 _____ () C:\Users\Patrick\Desktop\adwcleaner.exe 2014-02-27 14:48 - 2014-02-27 14:48 - 01037734 _____ (Thisisu) C:\Users\Patrick\Desktop\JRT.exe 2014-02-27 14:45 - 2014-02-27 14:45 - 00001115 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Malwarebytes 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-27 14:45 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-02-27 12:46 - 2014-02-27 12:46 - 00002615 _____ () C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DC Universe Online PSG.lnk 2014-02-27 12:46 - 2014-02-27 12:46 - 00002585 _____ () C:\Users\Patrick\Desktop\DC Universe Online PSG.lnk 2014-02-27 12:46 - 2014-02-27 12:46 - 00000000 ____D () C:\Users\Public\Sony Online Entertainment 2014-02-27 12:46 - 2014-02-27 12:46 - 00000000 ____D () C:\Users\Patrick\AppData\Local\SCE 2014-02-26 14:42 - 2014-02-26 14:42 - 02155520 _____ (Farbar) C:\Users\Patrick\Desktop\FRST64.exe 2014-02-26 14:36 - 2014-02-27 15:15 - 00077440 _____ () C:\Windows\setupact.log 2014-02-26 14:36 - 2014-02-26 14:36 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-26 13:28 - 2014-02-26 13:28 - 04765152 _____ (Piriform Ltd) C:\Users\Patrick\Downloads\ccsetup411.exe 2014-02-23 19:05 - 2014-02-23 19:05 - 00000222 _____ () C:\Users\Patrick\Desktop\DayZ.url 2014-02-18 11:08 - 2014-02-18 11:08 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-02-14 16:01 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-02-14 16:01 - 2013-04-02 23:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-02-13 03:02 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-13 03:02 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-13 03:01 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-13 03:01 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-13 03:01 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-13 03:01 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-13 03:01 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-13 03:01 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-13 03:01 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-13 03:01 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-13 03:01 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-13 03:01 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-13 03:01 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-13 03:01 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-13 03:01 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-13 03:01 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-13 03:01 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-13 03:01 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-13 03:01 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-13 03:01 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-13 03:01 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-13 03:01 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-13 03:01 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-13 03:00 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-13 03:00 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-13 03:00 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-13 03:00 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-13 03:00 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-13 03:00 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-13 03:00 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-13 03:00 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-13 03:00 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-13 03:00 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-13 03:00 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-13 03:00 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-13 03:00 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-13 03:00 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-13 03:00 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-13 03:00 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-13 03:00 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-13 03:00 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-12 23:57 - 2014-02-12 23:57 - 00001205 _____ () C:\Users\Patrick\Downloads\Kev lol daten - Verknüpfung.lnk 2014-02-12 21:09 - 2014-02-12 21:09 - 00249744 _____ () C:\Users\Patrick\Downloads\Teamspeak Pack.7z 2014-02-12 14:34 - 2014-02-12 15:04 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\FFsplit 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\ProgramData\Package Cache 2014-02-12 12:05 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-12 12:05 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-12 12:05 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-12 12:05 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-12 12:04 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-12 12:04 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-12 12:04 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-12 12:04 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-11 23:45 - 2014-02-14 13:17 - 00000000 ____D () C:\Fraps 2014-02-11 23:25 - 2014-02-11 23:25 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-02-11 23:12 - 2012-08-23 15:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2014-02-11 23:12 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2014-02-11 23:12 - 2012-08-23 15:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys 2014-02-11 23:12 - 2012-08-23 15:07 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2014-02-11 23:12 - 2012-08-23 14:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2014-02-11 23:12 - 2012-08-23 14:46 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2014-02-11 23:12 - 2012-08-23 14:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-02-11 23:12 - 2012-08-23 14:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-02-11 23:12 - 2012-08-23 14:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2014-02-11 23:12 - 2012-08-23 14:20 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2014-02-11 23:12 - 2012-08-23 14:18 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-02-11 23:12 - 2012-08-23 14:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2014-02-11 23:12 - 2012-08-23 14:06 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-02-11 23:12 - 2012-08-23 13:52 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-02-11 23:12 - 2012-08-23 12:20 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2014-02-11 23:12 - 2012-08-23 12:15 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-02-11 23:12 - 2012-08-23 12:14 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2014-02-11 23:12 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll 2014-02-11 23:12 - 2012-08-23 11:54 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-02-11 23:12 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll 2014-02-11 23:12 - 2012-08-23 11:39 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-02-11 23:12 - 2012-08-23 11:22 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-02-11 23:12 - 2012-08-23 10:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-02-11 23:12 - 2012-08-23 09:19 - 04916224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-02-11 23:12 - 2012-08-23 09:13 - 05773824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-02-11 23:09 - 2013-01-13 20:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-02-11 23:09 - 2013-01-13 20:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-02-11 23:09 - 2013-01-04 07:11 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-02-11 23:09 - 2013-01-04 07:11 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-02-11 23:08 - 2013-01-13 22:17 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:17 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:35 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:35 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:35 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:20 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-02-11 23:08 - 2013-01-13 21:09 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-02-11 23:08 - 2013-01-13 21:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-02-11 23:08 - 2013-01-13 20:58 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-02-11 23:08 - 2013-01-13 20:54 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-02-11 23:08 - 2013-01-13 20:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-02-11 23:08 - 2013-01-13 20:49 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-02-11 23:08 - 2013-01-13 20:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-02-11 23:08 - 2013-01-13 20:46 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-02-11 23:08 - 2013-01-13 20:43 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-02-11 23:08 - 2013-01-13 20:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-02-11 23:08 - 2013-01-13 20:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-02-11 23:08 - 2013-01-13 20:25 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-02-11 23:08 - 2013-01-13 20:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-02-11 23:08 - 2013-01-13 20:20 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-02-11 23:08 - 2013-01-13 20:20 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-02-11 23:08 - 2013-01-13 20:15 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-02-11 23:08 - 2013-01-13 20:02 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-02-11 23:08 - 2013-01-13 19:34 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-02-11 23:08 - 2013-01-13 19:32 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-02-11 23:08 - 2013-01-13 19:09 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-02-11 23:08 - 2013-01-13 18:26 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-02-11 23:08 - 2013-01-13 18:05 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-02-11 23:01 - 2012-05-04 12:00 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-02-11 23:01 - 2012-05-04 10:59 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-02-11 10:10 - 2014-02-11 10:10 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II - Multiplayer.url 2014-02-11 01:22 - 2014-02-11 01:22 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II.url 2014-02-10 11:50 - 2014-02-10 11:50 - 00000222 _____ () C:\Users\Patrick\Desktop\Saints Row IV.url 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\ProgramData\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-10 11:07 - 2013-12-18 09:32 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-02-10 11:07 - 2013-12-18 09:32 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-02-10 11:07 - 2013-12-18 09:32 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-02-10 10:59 - 2014-02-10 10:59 - 01166132 _____ () C:\Users\Patrick\Downloads\adwcleaner.exe 2014-02-09 01:24 - 2014-02-09 01:24 - 00000000 ____D () C:\ProgramData\Damned 2014-02-09 00:29 - 2014-02-09 00:29 - 00000222 _____ () C:\Users\Patrick\Desktop\Damned.url 2014-02-09 00:23 - 2014-02-26 14:35 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-09 00:23 - 2014-02-09 00:23 - 00000969 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-02-03 22:45 - 2014-02-03 22:45 - 00003134 _____ () C:\Windows\System32\Tasks\{A4D1B302-1F8B-4119-95C7-ACA251661464} ==================== One Month Modified Files and Folders ======= 2014-02-27 15:28 - 2014-02-27 15:27 - 00011163 _____ () C:\Users\Patrick\Desktop\FRST.txt 2014-02-27 15:28 - 2013-07-27 12:56 - 00000000 ____D () C:\FRST 2014-02-27 15:23 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-27 15:23 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-27 15:21 - 2011-04-12 08:43 - 00699860 _____ () C:\Windows\system32\perfh007.dat 2014-02-27 15:21 - 2011-04-12 08:43 - 00149742 _____ () C:\Windows\system32\perfc007.dat 2014-02-27 15:21 - 2009-07-14 06:13 - 01622188 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-27 15:19 - 2014-01-25 21:42 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-27 15:19 - 2014-01-24 23:10 - 01503580 _____ () C:\Windows\WindowsUpdate.log 2014-02-27 15:18 - 2014-02-27 15:18 - 00000000 ____D () C:\Windows\ERUNT 2014-02-27 15:16 - 2014-01-25 21:42 - 00000000 ____D () C:\Users\Patrick\AppData\Local\Deployment 2014-02-27 15:15 - 2014-02-26 14:36 - 00077440 _____ () C:\Windows\setupact.log 2014-02-27 15:15 - 2014-01-25 21:42 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-27 15:15 - 2014-01-24 23:10 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-27 15:15 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-27 15:14 - 2013-10-08 16:31 - 00000000 ____D () C:\Users\Patrick\AppData\Local\Battle.net 2014-02-27 15:14 - 2013-08-29 16:52 - 00000000 ____D () C:\AdwCleaner 2014-02-27 14:48 - 2014-02-27 14:48 - 01241834 _____ () C:\Users\Patrick\Desktop\adwcleaner.exe 2014-02-27 14:48 - 2014-02-27 14:48 - 01037734 _____ (Thisisu) C:\Users\Patrick\Desktop\JRT.exe 2014-02-27 14:48 - 2013-09-29 09:22 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-27 14:45 - 2014-02-27 14:45 - 00001115 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Malwarebytes 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-27 14:40 - 2013-08-17 10:12 - 00000000 ____D () C:\Users\Patrick\AppData\Local\PMB Files 2014-02-27 14:40 - 2013-08-17 10:12 - 00000000 ____D () C:\ProgramData\PMB Files 2014-02-27 13:51 - 2013-08-17 09:31 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\TS3Client 2014-02-27 12:46 - 2014-02-27 12:46 - 00002615 _____ () C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DC Universe Online PSG.lnk 2014-02-27 12:46 - 2014-02-27 12:46 - 00002585 _____ () C:\Users\Patrick\Desktop\DC Universe Online PSG.lnk 2014-02-27 12:46 - 2014-02-27 12:46 - 00000000 ____D () C:\Users\Public\Sony Online Entertainment 2014-02-27 12:46 - 2014-02-27 12:46 - 00000000 ____D () C:\Users\Patrick\AppData\Local\SCE 2014-02-27 12:46 - 2013-08-28 07:49 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-02-26 14:42 - 2014-02-26 14:42 - 02155520 _____ (Farbar) C:\Users\Patrick\Desktop\FRST64.exe 2014-02-26 14:36 - 2014-02-26 14:36 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-26 14:35 - 2014-02-09 00:23 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-26 13:29 - 2013-11-03 00:47 - 00000828 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-02-26 13:29 - 2013-11-03 00:47 - 00000000 ____D () C:\Program Files\CCleaner 2014-02-26 13:28 - 2014-02-26 13:28 - 04765152 _____ (Piriform Ltd) C:\Users\Patrick\Downloads\ccsetup411.exe 2014-02-26 09:56 - 2013-08-17 10:15 - 00000000 ____D () C:\Program Files (x86)\Diablo III 2014-02-23 19:05 - 2014-02-23 19:05 - 00000222 _____ () C:\Users\Patrick\Desktop\DayZ.url 2014-02-22 22:21 - 2014-01-25 21:46 - 00002181 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-21 23:19 - 2013-08-17 10:30 - 00000000 ____D () C:\Program Files (x86)\World of Warcraft 2014-02-21 21:48 - 2013-09-29 09:22 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-21 21:48 - 2013-09-29 09:22 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-21 21:48 - 2013-09-29 09:22 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-18 11:08 - 2014-02-18 11:08 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-02-17 09:41 - 2013-08-20 18:34 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-17 09:39 - 2014-01-25 08:13 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-17 09:35 - 2014-01-25 21:42 - 00058016 _____ () C:\Users\Patrick\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-17 09:34 - 2009-07-14 05:45 - 00279632 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-02-16 16:44 - 2013-08-26 14:11 - 00000000 ____D () C:\Windows\pss 2014-02-16 16:43 - 2013-09-21 21:25 - 00000000 ____D () C:\Program Files (x86)\JDownloader 2014-02-16 12:12 - 2014-01-24 23:14 - 00000000 ____D () C:\Users\Patrick 2014-02-14 13:25 - 2014-01-15 22:37 - 00000000 ____D () C:\ProgramData\HappyCloud 2014-02-14 13:18 - 2014-01-15 22:38 - 00000000 ____D () C:\ProgramData\Turbine 2014-02-14 13:17 - 2014-02-11 23:45 - 00000000 ____D () C:\Fraps 2014-02-14 08:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-02-13 03:08 - 2014-01-25 08:18 - 01595532 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-12 23:57 - 2014-02-12 23:57 - 00001205 _____ () C:\Users\Patrick\Downloads\Kev lol daten - Verknüpfung.lnk 2014-02-12 21:09 - 2014-02-12 21:09 - 00249744 _____ () C:\Users\Patrick\Downloads\Teamspeak Pack.7z 2014-02-12 15:04 - 2014-02-12 14:34 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\FFsplit 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\ProgramData\Package Cache 2014-02-12 11:14 - 2014-01-25 21:42 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-12 11:14 - 2014-01-25 21:42 - 00003856 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-12 10:24 - 2013-10-08 16:31 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-02-12 03:19 - 2014-01-25 08:10 - 00001427 _____ () C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-02-12 00:24 - 2013-08-26 20:57 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Skype 2014-02-11 23:25 - 2014-02-11 23:25 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-02-11 23:06 - 2013-08-29 02:59 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-02-11 23:06 - 2013-08-29 02:55 - 00000000 ____D () C:\ProgramData\DivX 2014-02-11 10:10 - 2014-02-11 10:10 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II - Multiplayer.url 2014-02-11 01:22 - 2014-02-11 01:22 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II.url 2014-02-10 11:50 - 2014-02-10 11:50 - 00000222 _____ () C:\Users\Patrick\Desktop\Saints Row IV.url 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\ProgramData\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-10 10:59 - 2014-02-10 10:59 - 01166132 _____ () C:\Users\Patrick\Downloads\adwcleaner.exe 2014-02-10 10:58 - 2014-01-05 18:26 - 00000000 ____D () C:\Users\hedev 2014-02-09 01:24 - 2014-02-09 01:24 - 00000000 ____D () C:\ProgramData\Damned 2014-02-09 00:29 - 2014-02-09 00:29 - 00000222 _____ () C:\Users\Patrick\Desktop\Damned.url 2014-02-09 00:23 - 2014-02-09 00:23 - 00000969 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-02-06 13:16 - 2014-02-13 03:00 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-13 03:01 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-13 03:01 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-13 03:00 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-13 03:01 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-13 03:01 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-13 03:01 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-13 03:01 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 11:52 - 2014-02-13 03:01 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 11:49 - 2014-02-13 03:01 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-13 03:01 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 11:48 - 2014-02-13 03:00 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 11:38 - 2014-02-13 03:00 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-13 03:01 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-13 03:01 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-13 03:01 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 11:11 - 2014-02-13 03:00 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-13 03:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-13 03:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-13 03:01 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 10:57 - 2014-02-13 03:00 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 10:52 - 2014-02-13 03:01 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-13 03:01 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-13 03:00 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 10:49 - 2014-02-13 03:01 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 10:47 - 2014-02-13 03:01 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-13 03:00 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-13 03:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 10:25 - 2014-02-13 03:00 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 10:24 - 2014-02-13 03:00 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 10:22 - 2014-02-13 03:00 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-13 03:01 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-13 03:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-13 03:00 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-13 03:00 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-13 03:00 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-13 03:00 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-13 03:00 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-13 03:00 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-03 22:45 - 2014-02-03 22:45 - 00003134 _____ () C:\Windows\System32\Tasks\{A4D1B302-1F8B-4119-95C7-ACA251661464} 2014-02-01 20:50 - 2013-08-17 10:56 - 00000000 ____D () C:\Users\Patrick\Documents\StarCraft II 2014-01-30 21:35 - 2013-08-17 08:30 - 00000000 ____D () C:\Windows.old Some content of TEMP: ==================== C:\Users\Patrick\AppData\Local\Temp\avgnt.exe C:\Users\Patrick\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-18 02:43 ==================== End Of Log ================ ============ |
28.02.2014, 19:43 | #6 |
/// the machine /// TB-Ausbilder | Langsamer RechnerESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ --> Langsamer Rechner |
01.03.2014, 15:16 | #7 |
| Langsamer RechnerCode:
ATTFilter ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=1acbffcd81007f43b937f51ba0c74dbc # engine=17277 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-03-01 01:49:47 # local_time=2014-03-01 02:49:47 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=1799 16775165 100 94 15730 6329812 11773 0 # compatibility_mode=5893 16776574 100 94 1684155 145311637 0 0 # scanned=188382 # found=3 # cleaned=0 # scan_time=14865 sh=91BD9A2ACE6C1F533B1EDAD826E6A7B4C42F1CC6 ft=1 fh=e0d7a37d1750a170 vn="a variant of Win32/SpeedingUpMyPC application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\optimizer pro\OptimizerPro.exe.vir" sh=D9E274574C12779E2062951ED8D4BA4DA71E23D6 ft=1 fh=49cbf485b8b83c97 vn="a variant of Win32/AdWare.SpeedingUpMyPC.D application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\optimizer pro\OptProLauncher.exe.vir" sh=47E4A554E0D12E4C5D65B45CB1CEFF5997389824 ft=1 fh=bc56293ed5818e2e vn="a variant of Win32/Adware.SpeedingUpMyPC.C application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\optimizer pro\OptProSmartScan.exe.vir" Code:
ATTFilter Results of screen317's Security Check version 0.99.79 Windows 7 Service Pack 1 x64 (UAC is disabled!) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` WMI entry may not exist for antivirus; attempting automatic update. Avira successfully updated! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 51 Adobe Flash Player 12.0.0.70 Flash Player out of Date! Adobe Reader XI Google Chrome 32.0.1700.107 Google Chrome 33.0.1750.117 ````````Process Check: objlist.exe by Laurent```````` Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Avira Antivir avgnt.exe Avira Antivir avguard.exe ESET ESET Online Scanner OnlineScannerApp.exe Malwarebytes' Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-02-2014 Ran by Patrick (administrator) on PATRICK-PC on 01-03-2014 15:15:13 Running from C:\Users\Patrick\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (Curse) C:\Users\Patrick\AppData\Local\Apps\2.0\4V20DBEV.0NG\MYH12P32.YX0\curs..tion_9e9e83ddf3ed3ead_0005.0001_181b5e0542e9eb6c\CurseClient.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (TeamSpeak Systems GmbH) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7191768 2013-06-24] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-10] (NVIDIA Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-12-23] (DivX, LLC) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-18] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] () HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] - rmdir /s /q "\SearchProtect" HKU\S-1-5-21-1459607672-3188185053-586168013-1000\...\MountPoints2: {daefebfa-0708-11e3-a832-806e6f6e6963} - D:\Install.exe Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () Startup: C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x39067523219BCE01 SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO: No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Toolbar: HKLM-x32 - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Chrome: ======= CHR HomePage: hxxp://www.google.com CHR Extension: (Google Drive) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-25] CHR Extension: (YouTube) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-25] CHR Extension: (Adblock Plus) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-01-29] CHR Extension: (Google-Suche) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-25] CHR Extension: (AdBlock Premium) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2014-01-29] CHR Extension: (Super Animes - Dragon Ball GT) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\knldpfnfoakbnkpgpbpcmjllglpofenn [2014-01-25] CHR Extension: (Google Wallet) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-25] CHR Extension: (Google Mail) - C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-25] CHR HKCU\...\Chrome\Extension: [hkoahcaobjbihehldfimhblmhgalcipm] - C:\Users\Patrick\AppData\Local\CRE\hkoahcaobjbihehldfimhblmhgalcipm.crx [2014-01-25] CHR HKLM-x32\...\Chrome\Extension: [hkoahcaobjbihehldfimhblmhgalcipm] - C:\Users\Patrick\AppData\Local\CRE\hkoahcaobjbihehldfimhblmhgalcipm.crx [2014-01-25] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-18] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-18] (Avira Operations GmbH & Co. KG) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-01-11] () R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) ==================== Drivers (Whitelisted) ==================== R0 amdide64; C:\Windows\System32\drivers\amdide64.sys [11944 2012-12-03] (Advanced Micro Devices Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-18] (Avira Operations GmbH & Co. KG) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [848384 2011-06-01] (Realtek Semiconductor Corporation ) S3 whfltr2k; C:\Windows\System32\DRIVERS\whfltr2k.sys [9600 2007-01-26] () U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-01 15:15 - 2014-03-01 15:15 - 00011101 _____ () C:\Users\Patrick\Desktop\FRST.txt 2014-03-01 15:11 - 2014-03-01 15:11 - 00987425 _____ () C:\Users\Patrick\Desktop\SecurityCheck.exe 2014-02-28 23:48 - 2014-02-28 23:48 - 02347384 _____ (ESET) C:\Users\Patrick\Desktop\esetsmartinstaller_enu.exe 2014-02-28 23:48 - 2014-02-28 23:48 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-02-27 15:18 - 2014-02-27 15:18 - 00000000 ____D () C:\Windows\ERUNT 2014-02-27 14:48 - 2014-02-27 14:48 - 01241834 _____ () C:\Users\Patrick\Desktop\adwcleaner.exe 2014-02-27 14:48 - 2014-02-27 14:48 - 01037734 _____ (Thisisu) C:\Users\Patrick\Desktop\JRT.exe 2014-02-27 14:45 - 2014-02-27 14:45 - 00001115 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Malwarebytes 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-27 14:45 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-02-27 12:46 - 2014-02-27 12:46 - 00002615 _____ () C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DC Universe Online PSG.lnk 2014-02-27 12:46 - 2014-02-27 12:46 - 00002585 _____ () C:\Users\Patrick\Desktop\DC Universe Online PSG.lnk 2014-02-27 12:46 - 2014-02-27 12:46 - 00000000 ____D () C:\Users\Public\Sony Online Entertainment 2014-02-27 12:46 - 2014-02-27 12:46 - 00000000 ____D () C:\Users\Patrick\AppData\Local\SCE 2014-02-26 14:42 - 2014-02-26 14:42 - 02155520 _____ (Farbar) C:\Users\Patrick\Desktop\FRST64.exe 2014-02-26 14:36 - 2014-03-01 10:27 - 00096800 _____ () C:\Windows\setupact.log 2014-02-26 14:36 - 2014-02-26 14:36 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-26 13:28 - 2014-02-26 13:28 - 04765152 _____ (Piriform Ltd) C:\Users\Patrick\Downloads\ccsetup411.exe 2014-02-23 19:05 - 2014-02-23 19:05 - 00000222 _____ () C:\Users\Patrick\Desktop\DayZ.url 2014-02-18 11:08 - 2014-02-18 11:08 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-02-14 16:01 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-02-14 16:01 - 2013-04-02 23:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-02-13 03:02 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-13 03:02 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-13 03:01 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-13 03:01 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-13 03:01 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-13 03:01 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-13 03:01 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-13 03:01 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-13 03:01 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-13 03:01 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-13 03:01 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-13 03:01 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-13 03:01 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-13 03:01 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-13 03:01 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-13 03:01 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-13 03:01 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-13 03:01 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-13 03:01 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-13 03:01 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-13 03:01 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-13 03:01 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-13 03:01 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-13 03:00 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-13 03:00 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-13 03:00 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-13 03:00 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-13 03:00 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-13 03:00 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-13 03:00 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-13 03:00 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-13 03:00 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-13 03:00 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-13 03:00 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-13 03:00 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-13 03:00 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-13 03:00 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-13 03:00 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-13 03:00 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-13 03:00 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-13 03:00 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-12 23:57 - 2014-02-12 23:57 - 00001205 _____ () C:\Users\Patrick\Downloads\Kev lol daten - Verknüpfung.lnk 2014-02-12 21:09 - 2014-02-12 21:09 - 00249744 _____ () C:\Users\Patrick\Downloads\Teamspeak Pack.7z 2014-02-12 14:34 - 2014-02-12 15:04 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\FFsplit 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\ProgramData\Package Cache 2014-02-12 12:05 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-12 12:05 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-12 12:05 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-12 12:05 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-12 12:04 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-12 12:04 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-12 12:04 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-12 12:04 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-11 23:45 - 2014-02-14 13:17 - 00000000 ____D () C:\Fraps 2014-02-11 23:25 - 2014-02-11 23:25 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-02-11 23:12 - 2012-08-23 15:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2014-02-11 23:12 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2014-02-11 23:12 - 2012-08-23 15:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys 2014-02-11 23:12 - 2012-08-23 15:07 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2014-02-11 23:12 - 2012-08-23 14:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2014-02-11 23:12 - 2012-08-23 14:46 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2014-02-11 23:12 - 2012-08-23 14:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-02-11 23:12 - 2012-08-23 14:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-02-11 23:12 - 2012-08-23 14:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2014-02-11 23:12 - 2012-08-23 14:20 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2014-02-11 23:12 - 2012-08-23 14:18 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-02-11 23:12 - 2012-08-23 14:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2014-02-11 23:12 - 2012-08-23 14:06 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-02-11 23:12 - 2012-08-23 13:52 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-02-11 23:12 - 2012-08-23 12:20 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2014-02-11 23:12 - 2012-08-23 12:15 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-02-11 23:12 - 2012-08-23 12:14 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2014-02-11 23:12 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll 2014-02-11 23:12 - 2012-08-23 11:54 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-02-11 23:12 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll 2014-02-11 23:12 - 2012-08-23 11:39 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-02-11 23:12 - 2012-08-23 11:22 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-02-11 23:12 - 2012-08-23 10:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-02-11 23:12 - 2012-08-23 09:19 - 04916224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-02-11 23:12 - 2012-08-23 09:13 - 05773824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-02-11 23:09 - 2013-01-13 20:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-02-11 23:09 - 2013-01-13 20:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-02-11 23:09 - 2013-01-04 07:11 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-02-11 23:09 - 2013-01-04 07:11 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-02-11 23:08 - 2013-01-13 22:17 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:17 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 22:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:35 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:35 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:35 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-02-11 23:08 - 2013-01-13 21:20 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-02-11 23:08 - 2013-01-13 21:09 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-02-11 23:08 - 2013-01-13 21:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-02-11 23:08 - 2013-01-13 20:58 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-02-11 23:08 - 2013-01-13 20:54 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-02-11 23:08 - 2013-01-13 20:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-02-11 23:08 - 2013-01-13 20:49 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-02-11 23:08 - 2013-01-13 20:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-02-11 23:08 - 2013-01-13 20:46 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-02-11 23:08 - 2013-01-13 20:43 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-02-11 23:08 - 2013-01-13 20:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-02-11 23:08 - 2013-01-13 20:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-02-11 23:08 - 2013-01-13 20:25 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-02-11 23:08 - 2013-01-13 20:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-02-11 23:08 - 2013-01-13 20:20 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-02-11 23:08 - 2013-01-13 20:20 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-02-11 23:08 - 2013-01-13 20:15 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-02-11 23:08 - 2013-01-13 20:02 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-02-11 23:08 - 2013-01-13 19:34 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-02-11 23:08 - 2013-01-13 19:32 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-02-11 23:08 - 2013-01-13 19:09 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-02-11 23:08 - 2013-01-13 18:26 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-02-11 23:08 - 2013-01-13 18:05 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-02-11 23:01 - 2012-05-04 12:00 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-02-11 23:01 - 2012-05-04 10:59 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-02-11 10:10 - 2014-02-11 10:10 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II - Multiplayer.url 2014-02-11 01:22 - 2014-02-11 01:22 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II.url 2014-02-10 11:50 - 2014-02-10 11:50 - 00000222 _____ () C:\Users\Patrick\Desktop\Saints Row IV.url 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\ProgramData\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-10 11:07 - 2013-12-18 09:32 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-02-10 11:07 - 2013-12-18 09:32 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-02-10 11:07 - 2013-12-18 09:32 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-02-10 10:59 - 2014-02-10 10:59 - 01166132 _____ () C:\Users\Patrick\Downloads\adwcleaner.exe 2014-02-09 01:24 - 2014-02-09 01:24 - 00000000 ____D () C:\ProgramData\Damned 2014-02-09 00:29 - 2014-02-09 00:29 - 00000222 _____ () C:\Users\Patrick\Desktop\Damned.url 2014-02-09 00:23 - 2014-02-28 12:14 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-09 00:23 - 2014-02-09 00:23 - 00000969 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-02-03 22:45 - 2014-02-03 22:45 - 00003134 _____ () C:\Windows\System32\Tasks\{A4D1B302-1F8B-4119-95C7-ACA251661464} ==================== One Month Modified Files and Folders ======= 2014-03-01 15:15 - 2014-03-01 15:15 - 00011101 _____ () C:\Users\Patrick\Desktop\FRST.txt 2014-03-01 15:15 - 2013-07-27 12:56 - 00000000 ____D () C:\FRST 2014-03-01 15:11 - 2014-03-01 15:11 - 00987425 _____ () C:\Users\Patrick\Desktop\SecurityCheck.exe 2014-03-01 15:09 - 2013-08-17 10:12 - 00000000 ____D () C:\Users\Patrick\AppData\Local\PMB Files 2014-03-01 15:09 - 2013-08-17 10:12 - 00000000 ____D () C:\ProgramData\PMB Files 2014-03-01 14:48 - 2013-09-29 09:22 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-03-01 14:27 - 2014-01-25 21:42 - 00000000 ____D () C:\Users\Patrick\AppData\Local\Deployment 2014-03-01 14:20 - 2014-01-25 21:42 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-01 13:50 - 2013-08-17 09:31 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\TS3Client 2014-03-01 13:44 - 2013-10-08 16:31 - 00000000 ____D () C:\Users\Patrick\AppData\Local\Battle.net 2014-03-01 12:51 - 2014-01-24 23:10 - 01526350 _____ () C:\Windows\WindowsUpdate.log 2014-03-01 11:19 - 2014-01-25 21:42 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-01 10:36 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-03-01 10:36 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-03-01 10:32 - 2011-04-12 08:43 - 00699860 _____ () C:\Windows\system32\perfh007.dat 2014-03-01 10:32 - 2011-04-12 08:43 - 00149742 _____ () C:\Windows\system32\perfc007.dat 2014-03-01 10:32 - 2009-07-14 06:13 - 01622188 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-03-01 10:27 - 2014-02-26 14:36 - 00096800 _____ () C:\Windows\setupact.log 2014-03-01 10:27 - 2014-01-24 23:10 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-03-01 10:27 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-28 23:48 - 2014-02-28 23:48 - 02347384 _____ (ESET) C:\Users\Patrick\Desktop\esetsmartinstaller_enu.exe 2014-02-28 23:48 - 2014-02-28 23:48 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-02-28 12:14 - 2014-02-09 00:23 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-28 09:25 - 2013-08-17 10:30 - 00000000 ____D () C:\Program Files (x86)\World of Warcraft 2014-02-28 07:49 - 2013-10-01 19:37 - 00000000 ____D () C:\Users\Patrick\Documents\My Games 2014-02-27 15:18 - 2014-02-27 15:18 - 00000000 ____D () C:\Windows\ERUNT 2014-02-27 15:14 - 2013-08-29 16:52 - 00000000 ____D () C:\AdwCleaner 2014-02-27 14:48 - 2014-02-27 14:48 - 01241834 _____ () C:\Users\Patrick\Desktop\adwcleaner.exe 2014-02-27 14:48 - 2014-02-27 14:48 - 01037734 _____ (Thisisu) C:\Users\Patrick\Desktop\JRT.exe 2014-02-27 14:45 - 2014-02-27 14:45 - 00001115 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Malwarebytes 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-27 14:45 - 2014-02-27 14:45 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-27 12:46 - 2014-02-27 12:46 - 00002615 _____ () C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DC Universe Online PSG.lnk 2014-02-27 12:46 - 2014-02-27 12:46 - 00002585 _____ () C:\Users\Patrick\Desktop\DC Universe Online PSG.lnk 2014-02-27 12:46 - 2014-02-27 12:46 - 00000000 ____D () C:\Users\Public\Sony Online Entertainment 2014-02-27 12:46 - 2014-02-27 12:46 - 00000000 ____D () C:\Users\Patrick\AppData\Local\SCE 2014-02-27 12:46 - 2013-08-28 07:49 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-02-26 14:42 - 2014-02-26 14:42 - 02155520 _____ (Farbar) C:\Users\Patrick\Desktop\FRST64.exe 2014-02-26 14:36 - 2014-02-26 14:36 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-26 13:29 - 2013-11-03 00:47 - 00000828 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-02-26 13:29 - 2013-11-03 00:47 - 00000000 ____D () C:\Program Files\CCleaner 2014-02-26 13:28 - 2014-02-26 13:28 - 04765152 _____ (Piriform Ltd) C:\Users\Patrick\Downloads\ccsetup411.exe 2014-02-26 09:56 - 2013-08-17 10:15 - 00000000 ____D () C:\Program Files (x86)\Diablo III 2014-02-23 19:05 - 2014-02-23 19:05 - 00000222 _____ () C:\Users\Patrick\Desktop\DayZ.url 2014-02-22 22:21 - 2014-01-25 21:46 - 00002181 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-21 21:48 - 2013-09-29 09:22 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-21 21:48 - 2013-09-29 09:22 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-21 21:48 - 2013-09-29 09:22 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-18 11:08 - 2014-02-18 11:08 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-02-17 09:41 - 2013-08-20 18:34 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-17 09:39 - 2014-01-25 08:13 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-17 09:35 - 2014-01-25 21:42 - 00058016 _____ () C:\Users\Patrick\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-17 09:34 - 2009-07-14 05:45 - 00279632 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-02-16 16:44 - 2013-08-26 14:11 - 00000000 ____D () C:\Windows\pss 2014-02-16 16:43 - 2013-09-21 21:25 - 00000000 ____D () C:\Program Files (x86)\JDownloader 2014-02-16 12:12 - 2014-01-24 23:14 - 00000000 ____D () C:\Users\Patrick 2014-02-14 13:25 - 2014-01-15 22:37 - 00000000 ____D () C:\ProgramData\HappyCloud 2014-02-14 13:18 - 2014-01-15 22:38 - 00000000 ____D () C:\ProgramData\Turbine 2014-02-14 13:17 - 2014-02-11 23:45 - 00000000 ____D () C:\Fraps 2014-02-14 08:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-02-13 03:08 - 2014-01-25 08:18 - 01595532 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-12 23:57 - 2014-02-12 23:57 - 00001205 _____ () C:\Users\Patrick\Downloads\Kev lol daten - Verknüpfung.lnk 2014-02-12 21:09 - 2014-02-12 21:09 - 00249744 _____ () C:\Users\Patrick\Downloads\Teamspeak Pack.7z 2014-02-12 15:04 - 2014-02-12 14:34 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\FFsplit 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-02-12 14:33 - 2014-02-12 14:33 - 00000000 ____D () C:\ProgramData\Package Cache 2014-02-12 11:14 - 2014-01-25 21:42 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-12 11:14 - 2014-01-25 21:42 - 00003856 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-12 10:24 - 2013-10-08 16:31 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-02-12 03:19 - 2014-01-25 08:10 - 00001427 _____ () C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-02-12 03:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-02-12 00:24 - 2013-08-26 20:57 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Skype 2014-02-11 23:25 - 2014-02-11 23:25 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-02-11 23:25 - 2014-02-11 23:25 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-02-11 23:25 - 2014-02-11 23:25 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-02-11 23:25 - 2014-02-11 23:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-02-11 23:25 - 2014-02-11 23:25 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-02-11 23:25 - 2014-02-11 23:25 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-02-11 23:06 - 2013-08-29 02:59 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-02-11 23:06 - 2013-08-29 02:55 - 00000000 ____D () C:\ProgramData\DivX 2014-02-11 10:10 - 2014-02-11 10:10 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II - Multiplayer.url 2014-02-11 01:22 - 2014-02-11 01:22 - 00000222 _____ () C:\Users\Patrick\Desktop\Call of Duty Black Ops II.url 2014-02-10 11:50 - 2014-02-10 11:50 - 00000222 _____ () C:\Users\Patrick\Desktop\Saints Row IV.url 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Users\Patrick\AppData\Roaming\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\ProgramData\Avira 2014-02-10 11:07 - 2014-02-10 11:07 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-10 10:59 - 2014-02-10 10:59 - 01166132 _____ () C:\Users\Patrick\Downloads\adwcleaner.exe 2014-02-10 10:58 - 2014-01-05 18:26 - 00000000 ____D () C:\Users\hedev 2014-02-09 01:24 - 2014-02-09 01:24 - 00000000 ____D () C:\ProgramData\Damned 2014-02-09 00:29 - 2014-02-09 00:29 - 00000222 _____ () C:\Users\Patrick\Desktop\Damned.url 2014-02-09 00:23 - 2014-02-09 00:23 - 00000969 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-02-06 13:16 - 2014-02-13 03:00 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-13 03:01 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-13 03:01 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-13 03:00 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-13 03:01 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-13 03:01 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-13 03:01 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-13 03:01 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 11:52 - 2014-02-13 03:01 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 11:49 - 2014-02-13 03:01 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-13 03:01 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 11:48 - 2014-02-13 03:00 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 11:38 - 2014-02-13 03:00 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-13 03:01 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-13 03:01 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-13 03:01 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 11:11 - 2014-02-13 03:00 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-13 03:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-13 03:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-13 03:01 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 10:57 - 2014-02-13 03:00 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 10:52 - 2014-02-13 03:01 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-13 03:01 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-13 03:00 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 10:49 - 2014-02-13 03:01 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 10:47 - 2014-02-13 03:01 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-13 03:00 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-13 03:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 10:25 - 2014-02-13 03:00 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 10:24 - 2014-02-13 03:00 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 10:22 - 2014-02-13 03:00 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-13 03:01 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-13 03:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-13 03:00 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-13 03:00 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-13 03:00 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-13 03:00 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-13 03:00 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-13 03:00 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-03 22:45 - 2014-02-03 22:45 - 00003134 _____ () C:\Windows\System32\Tasks\{A4D1B302-1F8B-4119-95C7-ACA251661464} 2014-02-01 20:50 - 2013-08-17 10:56 - 00000000 ____D () C:\Users\Patrick\Documents\StarCraft II 2014-01-30 21:35 - 2013-08-17 08:30 - 00000000 ____D () C:\Windows.old Some content of TEMP: ==================== C:\Users\Patrick\AppData\Local\Temp\avgnt.exe C:\Users\Patrick\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-28 14:08 ==================== End Of Log ============================ |
02.03.2014, 08:28 | #8 |
/// the machine /// TB-Ausbilder | Langsamer Rechner Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] - rmdir /s /q "\SearchProtect" HKU\S-1-5-21-1459607672-3188185053-586168013-1000\...\MountPoints2: {daefebfa-0708-11e3-a832-806e6f6e6963} - D:\Install.exe Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |