![]() |
Plagegeister aller Art und deren Bekämpfung: Internet langsam, netstat zeigt hunderte VerbindungenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
![]() | #1 |
| ![]() Internet langsam, netstat zeigt hunderte Verbindungen Hey, mein Internet ist immer wieder von einen Moment auf den anderen unbenutzbar. Heute habe ich bei netstat seitenweise Verbindungen aufgelistet bekommen. So sieht das aus: ![]() ![]() ![]() ![]() Kann mir jemand sagen, woher die ganzen Verbindungen kommen? mfg |
![]() | #2 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Internet langsam, netstat zeigt hunderte Verbindungen hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
![]() | #3 |
| ![]() Internet langsam, netstat zeigt hunderte VerbindungenFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-02-2014 02 Ran by Flobsen (administrator) on FLOSA on 27-02-2014 11:53:08 Running from C:\Users\Flobsen\Downloads Windows 8 Pro (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apache Software Foundation) F:\work\xampp\apache\bin\httpd.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (FileZilla Project) F:\work\xampp\filezillaftp\filezillaserver.exe () F:\work\xampp\mysql\bin\mysqld.exe () C:\Windows\SysWOW64\PnkBstrA.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Apache Software Foundation) F:\work\xampp\apache\bin\httpd.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (AMD) C:\Windows\system32\atieclxx.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (SoftPerfect Research) C:\Program Files\NetWorx\networx.exe (Hyperdesktop) C:\Users\Flobsen\AppData\Roaming\Hyperdesktop\hyperdesktop.exe (SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe () C:\Program Files (x86)\Everything\Everything.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Valve Corporation) F:\Steam\Steam.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe (Blizzard Entertainment) F:\Games\hearthstone\Battle.net\Battle.net.4217\Battle.net.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Microsoft Corporation) C:\Windows\SysWOW64\NOTEPAD.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (VideoLAN) C:\Program Files\VideoLAN\VLC\vlc.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\system32\cmd.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13191312 2013-02-28] (Realtek Semiconductor) HKLM\...\Run: [NetWorx] - C:\Program Files\NetWorx\networx.exe [4762000 2013-01-18] (SoftPerfect Research) HKLM\...\Run: [Cm108Sound] - C:\Windows\Syswow64\cm108.dll [8757248 2013-01-16] (C-Media Corporation) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-20] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [BCSSync] - F:\Work\Office 2010\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [Everything] - C:\Program Files (x86)\Everything\Everything.exe [602624 2009-03-13] () HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-08-30] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ROCCAT Savu Gaming Mouse] - C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe [872048 2012-09-10] (ROCCAT GmbH) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-1003224168-2144006893-2651108538-1001\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3674320 2013-01-08] (DT Soft Ltd) HKU\S-1-5-21-1003224168-2144006893-2651108538-1001\...\Run: [Steam] - F:\Steam\steam.exe [1821888 2014-02-25] (Valve Corporation) HKU\S-1-5-21-1003224168-2144006893-2651108538-1001\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [21822128 2014-01-30] (Google) HKU\S-1-5-21-1003224168-2144006893-2651108538-1001\...\Run: [Hyperdesktop] - C:\Users\Flobsen\AppData\Roaming\Hyperdesktop\hyperdesktop.exe [316000 2013-09-21] (Hyperdesktop) HKU\S-1-5-21-1003224168-2144006893-2651108538-1001\...\Run: [SteelSeries Engine] - C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [242688 2013-11-05] (SteelSeries ApS) HKU\S-1-5-21-1003224168-2144006893-2651108538-1001\...\MountPoints2: {511b3c59-81a5-11e2-be65-806e6f6e6963} - "E:\ASRSetup.exe" ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.snapdo.com/?publisher=Somoto&dpid=Somoto&co=DE&userid=fa881e51-315e-f67c-a9a7-ca809806e586&searchtype=ds&q={searchTerms}&installDate=20/10/2013 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://feed.snapdo.com/?publisher=Somoto&dpid=Somoto&co=DE&userid=fa881e51-315e-f67c-a9a7-ca809806e586&searchtype=hp&installDate=20/10/2013 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x0DC6ADD3B215CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.snapdo.com/?publisher=Somoto&dpid=Somoto&co=DE&userid=fa881e51-315e-f67c-a9a7-ca809806e586&searchtype=ds&q={searchTerms}&installDate=20/10/2013 BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - F:\Work\Office 2010\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - F:\Work\Office 2010\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Flobsen\AppData\Roaming\Mozilla\Firefox\Profiles\ln0qzfrc.default FF NewTab: about:blank FF Homepage: hxxp://feed.snapdo.com/?publisher=Somoto&dpid=Somoto&co=DE&userid=fa881e51-315e-f67c-a9a7-ca809806e586&searchtype=hp&installDate=20/10/2013 FF Keyword.URL: hxxp://feed.snapdo.com/?publisher=Somoto&dpid=Somoto&co=DE&userid=fa881e51-315e-f67c-a9a7-ca809806e586&searchtype=ds&installDate=20/10/2013&q= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll () FF Plugin: @java.com/DTPlugin,version=10.17.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.17.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll () FF Plugin-x32: @esn/esnlaunch,version=2.1.3 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.3\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - F:\Work\Office 2010\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - F:\Work\Office 2010\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @acestream.net/acestreamplugin,version= - C:\Users\Flobsen\AppData\Roaming\ACEStream\player\npace_plugin.dll (Innovative Digital Technologies) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Flobsen\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: ubisoft.com/uplaypc - F:\Games\UPlay\npuplaypc.dll () FF Extension: Firebug - C:\Users\Flobsen\AppData\Roaming\Mozilla\Firefox\Profiles\ln0qzfrc.default\Extensions\firebug@software.joehewitt.com.xpi [2013-04-30] FF Extension: Adblock Plus - C:\Users\Flobsen\AppData\Roaming\Mozilla\Firefox\Profiles\ln0qzfrc.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-04-06] Chrome: ======= CHR HomePage: hxxp://www.zeit.de/index CHR Plugin: (Widevine Content Decryption Module) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\WidevineCDM\\_platform_specific\win_x86\widevinecdmadapter.dll No File CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\pdf.dll () CHR Plugin: (Chrome IE Tab) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd\\plugin/blackfishietab.dll No File CHR Plugin: (Foxit Reader Plugin for Mozilla) - C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) CHR Plugin: (ESN Launch Mozilla Plugin) - C:\Program Files (x86)\Battlelog Web Plugins\2.1.3\npesnlaunch.dll (ESN Social Software AB) CHR Plugin: (ESN Launch Mozilla Plugin) - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.450.18) - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Java(TM) Platform SE 7 U45) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) CHR Plugin: (Unity Player) - C:\Users\Flobsen\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll No File CHR Plugin: (Adobe Acrobat) - F:\Work\Adobe Master Collection\Acrobat 10.0\Acrobat\Air\nppdf32.dll No File CHR Plugin: (Microsoft Office 2010) - F:\Work\Office 2010\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - F:\Work\Office 2010\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Extension: (Magic Actions for YouTube™) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2014-02-22] CHR Extension: (Google Docs) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-06-11] CHR Extension: (Google Drive) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-06-11] CHR Extension: (YouTube) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-06-11] CHR Extension: (Pushbullet) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd [2014-02-25] CHR Extension: (Google-Suche) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-06-11] CHR Extension: (imgur Extension by Metronomik) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehoopddfhgaehhmphfcooacjdpmbjlao [2013-12-20] CHR Extension: (NightShade) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjoppnagojngbhccmckpneeajmifgfnb [2014-01-27] CHR Extension: (AdBlock) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-12-20] CHR Extension: (LastPass: Free Password Manager) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2013-12-20] CHR Extension: (IE Tab) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2013-12-23] CHR Extension: (ProxMate - Proxy on steroids!) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifalmiidchkjjmkkbkoaibpmoeichmki [2014-01-23] CHR Extension: (Notifier for Twitter) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\ikknnkomiokeodcdkknnhgjmncfiefmn [2013-12-20] CHR Extension: (Reddit Enhancement Suite) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2013-12-20] CHR Extension: (Google Dictionary (by Google)) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2013-12-20] CHR Extension: (Google Wallet) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23] CHR Extension: (Hover Zoom) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl [2013-12-28] CHR Extension: (Hover Zoom) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbimoafigmfpaiobngkbobhpmjeeppfh [2013-12-20] CHR Extension: (Click&Clean App) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2014-02-22] CHR Extension: (Google Mail) - C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-06-11] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 Apache2.4; F:\work\xampp\apache\bin\httpd.exe [22016 2012-08-18] (Apache Software Foundation) R2 FileZillaServer; F:\work\xampp\filezillaftp\filezillaserver.exe [632320 2012-05-11] (FileZilla Project) S3 Microsoft SharePoint Workspace Audit Service; F:\Work\Office 2010\Office14\GROOVE.EXE [30814400 2013-12-19] (Microsoft Corporation) R2 mysql; F:\work\xampp\mysql\bin\mysqld.exe [8186368 2012-07-20] () R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-10-04] () R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.) R3 athur; C:\Windows\system32\DRIVERS\athuw8x.sys [3744256 2012-11-21] (Qualcomm Atheros Communications, Inc.) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [129536 2013-07-05] (Advanced Micro Devices) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131576 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-11-26] (Avira Operations GmbH & Co. KG) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2013-02-28] (DT Soft Ltd) S3 hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2013-11-29] (LogMeIn Inc.) R3 SAlphamHid; C:\Windows\System32\drivers\SAlpham64.sys [38016 2013-05-31] (SteelSeries Corporation) S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [89088 2012-07-26] (Microsoft Corporation) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-27 11:53 - 2014-02-27 11:53 - 00022388 _____ () C:\Users\Flobsen\Downloads\FRST.txt 2014-02-27 11:53 - 2014-02-27 11:53 - 00000000 ____D () C:\FRST 2014-02-27 11:52 - 2014-02-27 11:52 - 02155520 _____ (Farbar) C:\Users\Flobsen\Downloads\FRST64.exe 2014-02-26 20:12 - 2014-02-26 20:12 - 00000000 ____D () C:\Users\Flobsen\Documents\ProcAlyzer Dumps 2014-02-26 20:00 - 2014-02-26 20:12 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-02-26 20:00 - 2014-02-26 20:07 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-02-26 20:00 - 2014-02-26 20:00 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-02-26 20:00 - 2014-02-26 20:00 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-02-26 20:00 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2014-02-26 19:56 - 2014-02-26 19:58 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Flobsen\Downloads\spybot-2.2.25.exe 2014-02-26 19:44 - 2014-02-26 19:44 - 00011362 _____ () C:\Users\Flobsen\Downloads\hijackthis.log 2014-02-26 19:43 - 2014-02-26 19:43 - 00388608 _____ (Trend Micro Inc.) C:\Users\Flobsen\Downloads\HiJackThis204.exe 2014-02-26 04:58 - 2014-02-26 04:58 - 00000000 ____D () C:\Users\Flobsen\Documents\Banished 2014-02-26 03:14 - 2014-02-26 03:15 - 05971136 _____ (Blizzard Entertainment) C:\Users\Flobsen\Downloads\Hearthstone-Beta-Setup-enUS.exe 2014-02-25 17:52 - 2014-02-25 18:03 - 129026039 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-25_tue_(w-_pre_&_post_show).m4a 2014-02-24 16:46 - 2014-02-24 16:57 - 104049919 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-24_mon.m4a 2014-02-23 05:57 - 2014-02-25 23:15 - 00287269 _____ () C:\Windows\WindowsUpdate.log 2014-02-23 04:53 - 2014-02-23 04:54 - 00303482 _____ () C:\Users\Flobsen\Documents\cc_20140223_045342.reg 2014-02-21 20:51 - 2014-02-21 20:56 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\TeamViewer 2014-02-21 20:34 - 2014-02-21 20:34 - 00001166 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk 2014-02-21 20:34 - 2014-02-21 20:34 - 00000000 ____D () C:\Program Files (x86)\TeamViewer 2014-02-21 20:33 - 2014-02-21 20:33 - 05852336 _____ (TeamViewer GmbH) C:\Users\Flobsen\Downloads\TeamViewer_Setup_de-ckc.exe 2014-02-20 19:17 - 2014-02-20 19:27 - 129119538 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-20_thu_(w-_pre_&_post_show).m4a 2014-02-19 16:45 - 2014-02-19 16:56 - 102330947 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-19_wed.m4a 2014-02-17 23:34 - 2013-12-05 00:43 - 01845248 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-17 23:34 - 2013-12-05 00:37 - 01419264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-17 23:34 - 2013-11-27 01:19 - 00385614 _____ () C:\Windows\system32\ApnDatabase.xml 2014-02-17 23:34 - 2013-11-26 00:17 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-02-17 23:34 - 2013-11-01 06:53 - 02232664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-02-17 23:33 - 2014-02-01 10:20 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-17 23:33 - 2014-02-01 10:19 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-17 23:33 - 2014-02-01 10:19 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-17 23:33 - 2014-02-01 10:19 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2014-02-17 23:33 - 2014-02-01 10:19 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2014-02-17 23:33 - 2014-02-01 10:18 - 19274240 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-17 23:33 - 2014-02-01 10:18 - 15403520 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-17 23:33 - 2014-02-01 10:18 - 03960320 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-17 23:33 - 2014-02-01 10:18 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-17 23:33 - 2014-02-01 10:18 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-02-17 23:33 - 2014-02-01 10:18 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-17 23:33 - 2014-02-01 10:18 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-17 23:33 - 2014-02-01 10:18 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-02-17 23:33 - 2014-02-01 10:18 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-17 23:33 - 2014-02-01 10:18 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-17 23:33 - 2014-02-01 10:18 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-17 23:33 - 2014-02-01 08:58 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-17 23:33 - 2014-02-01 08:58 - 01140736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-17 23:33 - 2014-02-01 08:58 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2014-02-17 23:33 - 2014-02-01 08:57 - 14359040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-17 23:33 - 2014-02-01 08:57 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-17 23:33 - 2014-02-01 08:57 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-17 23:33 - 2014-02-01 08:57 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-17 23:33 - 2014-02-01 08:57 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-02-17 23:33 - 2014-02-01 08:57 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-17 23:33 - 2014-02-01 08:57 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-17 23:33 - 2014-02-01 08:57 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-02-17 23:33 - 2014-02-01 08:57 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-17 23:33 - 2014-02-01 08:57 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-17 23:33 - 2014-02-01 08:57 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-17 23:33 - 2014-02-01 08:40 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-17 23:33 - 2014-02-01 08:34 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-17 23:33 - 2014-02-01 06:08 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2014-02-17 23:33 - 2013-12-09 01:45 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-17 23:33 - 2013-12-09 00:59 - 00600064 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-17 23:33 - 2013-12-05 00:43 - 00583680 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-02-17 23:33 - 2013-12-05 00:37 - 00451072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-02-17 23:31 - 2014-01-13 00:30 - 02238976 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-17 23:31 - 2014-01-13 00:30 - 02032640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-17 23:31 - 2013-11-20 01:15 - 03842560 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-17 23:31 - 2013-11-20 00:57 - 03288576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-17 23:23 - 2014-02-17 23:23 - 00000000 ____D () C:\Users\Flobsen\AppData\Local\SteelSeries_ApS 2014-02-17 23:22 - 2014-02-17 23:22 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\SteelSeries 2014-02-17 23:22 - 2014-02-17 23:22 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SteelSeries 2014-02-17 23:22 - 2014-02-17 23:22 - 00000000 ____D () C:\ProgramData\SteelSeries 2014-02-17 23:15 - 2014-02-17 23:15 - 00000000 ____D () C:\Program Files\SteelSeries 2014-02-17 22:47 - 2014-02-17 22:54 - 46074088 _____ () C:\Users\Flobsen\Downloads\SteelSeriesEngine_2.8.0171.exe 2014-02-13 18:24 - 2014-02-13 18:38 - 130905560 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-13_(w-_pre_&_post_show).m4a 2014-02-12 17:43 - 2014-02-12 18:34 - 129482618 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-12_wed_(w-_pre_&_post_show).m4a 2014-02-12 14:30 - 2014-02-12 14:31 - 27010956 _____ () C:\Users\Flobsen\Downloads\presse.zip 2014-02-10 15:27 - 2014-02-10 15:27 - 00026567 _____ () C:\Users\Flobsen\Downloads\Archiv.zip 2014-02-10 14:57 - 2014-02-10 14:57 - 00087450 _____ () C:\Users\Flobsen\Downloads\Keyword-Analyse.numbers 2014-02-09 23:25 - 2014-02-09 23:25 - 00000000 ____D () C:\Users\Flobsen\AppData\Local\netz 2014-02-09 23:24 - 2014-02-09 23:24 - 00856442 _____ () C:\Users\Flobsen\Downloads\hearthstonestats112.zip 2014-02-09 23:24 - 2014-02-09 23:24 - 00856442 _____ () C:\Users\Flobsen\Downloads\hearthstonestats112 (1).zip 2014-02-08 21:50 - 2014-02-08 22:49 - 838008890 _____ () C:\Users\Flobsen\Downloads\TaxiDriver720pmkv.mkv 2014-02-04 18:52 - 2014-02-04 18:52 - 00847296 _____ (Google Inc.) C:\Users\Flobsen\Downloads\googledrivesync.exe 2014-02-04 13:34 - 2014-02-04 13:34 - 00055953 _____ () C:\Users\Flobsen\Downloads\Simulationen.tar.gz 2014-02-04 13:33 - 2014-02-04 13:33 - 00144283 _____ () C:\Users\Flobsen\Downloads\Simulationen.zip 2014-02-04 13:30 - 2014-02-04 13:30 - 00032907 _____ () C:\Users\Flobsen\Downloads\FuD_Kap5.odp 2014-02-01 13:58 - 2014-02-01 13:58 - 00000000 ____D () C:\Users\Flobsen\AppData\Local\EdgeOfReality 2014-01-31 17:04 - 2014-01-31 17:27 - 118694269 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-01-31_fri.m4a 2014-01-30 21:03 - 2014-01-30 21:12 - 80189124 _____ () C:\Users\Flobsen\Downloads\ron_&_fez-2014-01-30_thu.m4a 2014-01-30 11:09 - 2014-01-30 11:09 - 00000896 _____ () C:\Users\Flobsen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WilmaaTV.lnk 2014-01-30 11:05 - 2014-01-30 11:06 - 33394921 _____ (Igor Pavlov) C:\Users\Flobsen\Downloads\TV-TOOLS.exe 2014-01-29 15:36 - 2014-01-29 15:36 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\PDAppFlex 2014-01-29 12:45 - 2014-01-29 12:45 - 00000000 ____D () C:\Users\Flobsen\AppData\Local\Demiurge Studios ==================== One Month Modified Files and Folders ======= 2014-02-27 11:53 - 2014-02-27 11:53 - 00022388 _____ () C:\Users\Flobsen\Downloads\FRST.txt 2014-02-27 11:53 - 2014-02-27 11:53 - 00000000 ____D () C:\FRST 2014-02-27 11:52 - 2014-02-27 11:52 - 02155520 _____ (Farbar) C:\Users\Flobsen\Downloads\FRST64.exe 2014-02-27 11:51 - 2013-10-19 18:07 - 00000000 ____D () C:\Users\Flobsen\AppData\Local\Battle.net 2014-02-27 11:47 - 2013-02-28 14:00 - 00001124 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-27 11:46 - 2013-09-27 18:09 - 00000404 _____ () C:\Windows\Tasks\update-S-1-5-21-1003224168-2144006893-2651108538-1001.job 2014-02-27 11:22 - 2013-04-06 18:33 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-27 11:00 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\sru 2014-02-27 10:10 - 2013-02-28 14:58 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\TS3Client 2014-02-27 09:22 - 2013-09-27 18:09 - 00000404 _____ () C:\Windows\Tasks\update-sys.job 2014-02-27 02:53 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\rescache 2014-02-27 01:57 - 2013-02-28 16:51 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\vlc 2014-02-26 20:47 - 2013-02-28 14:00 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-26 20:12 - 2014-02-26 20:12 - 00000000 ____D () C:\Users\Flobsen\Documents\ProcAlyzer Dumps 2014-02-26 20:12 - 2014-02-26 20:00 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-02-26 20:07 - 2014-02-26 20:00 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-02-26 20:00 - 2014-02-26 20:00 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-02-26 20:00 - 2014-02-26 20:00 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-02-26 19:58 - 2014-02-26 19:56 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Flobsen\Downloads\spybot-2.2.25.exe 2014-02-26 19:44 - 2014-02-26 19:44 - 00011362 _____ () C:\Users\Flobsen\Downloads\hijackthis.log 2014-02-26 19:43 - 2014-02-26 19:43 - 00388608 _____ (Trend Micro Inc.) C:\Users\Flobsen\Downloads\HiJackThis204.exe 2014-02-26 06:47 - 2013-03-29 22:38 - 00000000 ____D () C:\Program Files (x86)\JDownloader 2 2014-02-26 04:58 - 2014-02-26 04:58 - 00000000 ____D () C:\Users\Flobsen\Documents\Banished 2014-02-26 03:15 - 2014-02-26 03:14 - 05971136 _____ (Blizzard Entertainment) C:\Users\Flobsen\Downloads\Hearthstone-Beta-Setup-enUS.exe 2014-02-26 00:08 - 2012-07-26 11:27 - 00751892 _____ () C:\Windows\system32\perfh007.dat 2014-02-26 00:08 - 2012-07-26 11:27 - 00155620 _____ () C:\Windows\system32\perfc007.dat 2014-02-26 00:08 - 2012-07-26 08:28 - 01745416 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-26 00:04 - 2013-03-01 20:44 - 00000000 ____D () C:\Program Files (x86)\Everything 2014-02-26 00:01 - 2012-07-26 08:22 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-25 23:15 - 2014-02-23 05:57 - 00287269 _____ () C:\Windows\WindowsUpdate.log 2014-02-25 18:03 - 2014-02-25 17:52 - 129026039 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-25_tue_(w-_pre_&_post_show).m4a 2014-02-24 16:57 - 2014-02-24 16:46 - 104049919 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-24_mon.m4a 2014-02-23 04:55 - 2013-02-28 13:54 - 00000000 ___RD () C:\Users\Flobsen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-23 04:54 - 2014-02-23 04:53 - 00303482 _____ () C:\Users\Flobsen\Documents\cc_20140223_045342.reg 2014-02-23 04:52 - 2013-04-24 17:10 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\FileZilla 2014-02-23 04:52 - 2013-03-23 23:09 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\uTorrent 2014-02-23 04:52 - 2013-02-28 14:22 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\DAEMON Tools Lite 2014-02-22 16:37 - 2013-12-20 15:37 - 05046480 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-02-21 20:56 - 2014-02-21 20:51 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\TeamViewer 2014-02-21 20:34 - 2014-02-21 20:34 - 00001166 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk 2014-02-21 20:34 - 2014-02-21 20:34 - 00000000 ____D () C:\Program Files (x86)\TeamViewer 2014-02-21 20:33 - 2014-02-21 20:33 - 05852336 _____ (TeamViewer GmbH) C:\Users\Flobsen\Downloads\TeamViewer_Setup_de-ckc.exe 2014-02-20 20:23 - 2013-04-06 18:33 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-20 19:27 - 2014-02-20 19:17 - 129119538 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-20_thu_(w-_pre_&_post_show).m4a 2014-02-19 16:56 - 2014-02-19 16:45 - 102330947 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-19_wed.m4a 2014-02-18 16:32 - 2013-02-28 14:57 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-02-18 16:30 - 2012-07-26 06:26 - 00000167 _____ () C:\Windows\win.ini 2014-02-18 16:22 - 2013-09-06 17:48 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-18 16:19 - 2013-03-01 18:22 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-18 00:28 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\AUInstallAgent 2014-02-17 23:23 - 2014-02-17 23:23 - 00000000 ____D () C:\Users\Flobsen\AppData\Local\SteelSeries_ApS 2014-02-17 23:22 - 2014-02-17 23:22 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\SteelSeries 2014-02-17 23:22 - 2014-02-17 23:22 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SteelSeries 2014-02-17 23:22 - 2014-02-17 23:22 - 00000000 ____D () C:\ProgramData\SteelSeries 2014-02-17 23:15 - 2014-02-17 23:15 - 00000000 ____D () C:\Program Files\SteelSeries 2014-02-17 23:03 - 2013-11-15 18:27 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-17 23:03 - 2013-11-15 18:27 - 00078304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-17 22:54 - 2014-02-17 22:47 - 46074088 _____ () C:\Users\Flobsen\Downloads\SteelSeriesEngine_2.8.0171.exe 2014-02-17 20:42 - 2013-02-28 14:00 - 00004096 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-17 20:42 - 2013-02-28 14:00 - 00003860 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-16 20:02 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\NDF 2014-02-13 18:38 - 2014-02-13 18:24 - 130905560 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-13_(w-_pre_&_post_show).m4a 2014-02-13 13:22 - 2013-04-03 18:50 - 00000000 ____D () C:\ProgramData\Adobe 2014-02-12 18:34 - 2014-02-12 17:43 - 129482618 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-02-12_wed_(w-_pre_&_post_show).m4a 2014-02-12 17:21 - 2013-02-28 13:59 - 00003600 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1003224168-2144006893-2651108538-1001 2014-02-12 17:14 - 2013-02-28 13:54 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\Adobe 2014-02-12 17:13 - 2013-07-24 06:10 - 00000000 ____D () C:\Users\Flobsen\AppData\Local\Adobe 2014-02-12 17:07 - 2013-12-16 01:02 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-02-12 17:02 - 2013-02-28 13:53 - 00000000 ____D () C:\Users\Flobsen 2014-02-12 14:31 - 2014-02-12 14:30 - 27010956 _____ () C:\Users\Flobsen\Downloads\presse.zip 2014-02-11 18:01 - 2013-11-18 19:54 - 00000008 _____ () C:\Users\Flobsen\Desktop\Neues Textdokument (3).txt 2014-02-10 15:27 - 2014-02-10 15:27 - 00026567 _____ () C:\Users\Flobsen\Downloads\Archiv.zip 2014-02-10 14:57 - 2014-02-10 14:57 - 00087450 _____ () C:\Users\Flobsen\Downloads\Keyword-Analyse.numbers 2014-02-09 23:25 - 2014-02-09 23:25 - 00000000 ____D () C:\Users\Flobsen\AppData\Local\netz 2014-02-09 23:24 - 2014-02-09 23:24 - 00856442 _____ () C:\Users\Flobsen\Downloads\hearthstonestats112.zip 2014-02-09 23:24 - 2014-02-09 23:24 - 00856442 _____ () C:\Users\Flobsen\Downloads\hearthstonestats112 (1).zip 2014-02-08 22:49 - 2014-02-08 21:50 - 838008890 _____ () C:\Users\Flobsen\Downloads\TaxiDriver720pmkv.mkv 2014-02-08 20:13 - 2013-08-10 08:45 - 00000000 ____D () C:\Users\Flobsen\AppData\Local\Arma 3 2014-02-08 12:28 - 2013-02-28 14:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-06 20:10 - 2013-02-28 14:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-02-05 20:22 - 2013-04-15 19:37 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\Skype 2014-02-05 19:53 - 2013-05-26 17:13 - 00000000 ___RD () C:\Users\Flobsen\Google Drive 2014-02-04 18:52 - 2014-02-04 18:52 - 00847296 _____ (Google Inc.) C:\Users\Flobsen\Downloads\googledrivesync.exe 2014-02-04 13:34 - 2014-02-04 13:34 - 00055953 _____ () C:\Users\Flobsen\Downloads\Simulationen.tar.gz 2014-02-04 13:33 - 2014-02-04 13:33 - 00144283 _____ () C:\Users\Flobsen\Downloads\Simulationen.zip 2014-02-04 13:30 - 2014-02-04 13:30 - 00032907 _____ () C:\Users\Flobsen\Downloads\FuD_Kap5.odp 2014-02-01 13:58 - 2014-02-01 13:58 - 00000000 ____D () C:\Users\Flobsen\AppData\Local\EdgeOfReality 2014-02-01 10:20 - 2014-02-17 23:33 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-01 10:19 - 2014-02-17 23:33 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-01 10:19 - 2014-02-17 23:33 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-01 10:19 - 2014-02-17 23:33 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2014-02-01 10:19 - 2014-02-17 23:33 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2014-02-01 10:18 - 2014-02-17 23:33 - 19274240 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-01 10:18 - 2014-02-17 23:33 - 15403520 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-01 10:18 - 2014-02-17 23:33 - 03960320 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-01 10:18 - 2014-02-17 23:33 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-01 10:18 - 2014-02-17 23:33 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-02-01 10:18 - 2014-02-17 23:33 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-01 10:18 - 2014-02-17 23:33 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-01 10:18 - 2014-02-17 23:33 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-02-01 10:18 - 2014-02-17 23:33 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-01 10:18 - 2014-02-17 23:33 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-01 10:18 - 2014-02-17 23:33 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-01 08:58 - 2014-02-17 23:33 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-01 08:58 - 2014-02-17 23:33 - 01140736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-01 08:58 - 2014-02-17 23:33 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2014-02-01 08:57 - 2014-02-17 23:33 - 14359040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-01 08:57 - 2014-02-17 23:33 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-01 08:57 - 2014-02-17 23:33 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-01 08:57 - 2014-02-17 23:33 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-01 08:57 - 2014-02-17 23:33 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-02-01 08:57 - 2014-02-17 23:33 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-01 08:57 - 2014-02-17 23:33 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-01 08:57 - 2014-02-17 23:33 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-02-01 08:57 - 2014-02-17 23:33 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-01 08:57 - 2014-02-17 23:33 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-01 08:57 - 2014-02-17 23:33 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-01 08:40 - 2014-02-17 23:33 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-01 08:34 - 2014-02-17 23:33 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-01 06:08 - 2014-02-17 23:33 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2014-01-31 17:27 - 2014-01-31 17:04 - 118694269 _____ () C:\Users\Flobsen\Downloads\opie_&_anthony-2014-01-31_fri.m4a 2014-01-30 21:12 - 2014-01-30 21:03 - 80189124 _____ () C:\Users\Flobsen\Downloads\ron_&_fez-2014-01-30_thu.m4a 2014-01-30 11:09 - 2014-01-30 11:09 - 00000896 _____ () C:\Users\Flobsen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WilmaaTV.lnk 2014-01-30 11:06 - 2014-01-30 11:05 - 33394921 _____ (Igor Pavlov) C:\Users\Flobsen\Downloads\TV-TOOLS.exe 2014-01-29 15:36 - 2014-01-29 15:36 - 00000000 ____D () C:\Users\Flobsen\AppData\Roaming\PDAppFlex 2014-01-29 12:45 - 2014-01-29 12:45 - 00000000 ____D () C:\Users\Flobsen\AppData\Local\Demiurge Studios 2014-01-28 18:43 - 2012-07-26 06:26 - 00262144 ___SH () C:\Windows\system32\config\BBI Some content of TEMP: ==================== C:\Users\Flobsen\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-26 19:22 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-02-2014 02 Ran by Flobsen at 2014-02-27 11:53:45 Running from C:\Users\Flobsen\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} ==================== Installed Programs ====================== [translation missing: EVERemoveOnly] (HKLM-x32\...\EVE) (Version: - CCP Games Ltd.) µTorrent (HKLM-x32\...\uTorrent) (Version: - BitTorrent Inc.) Ace Stream Media (HKCU\...\AceStream) (Version: - Ace Stream Media) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: - Adobe Systems Incorporated) Adobe AIR (x32 Version: - Adobe Systems Incorporated) Hidden Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Help Manager (x32 Version: 4.0.244 - Adobe Systems Incorporated) Hidden Adobe Reader XI (11.0.06) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated) Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.) Adobe Widget Browser (x32 Version: 2.0.348 - Adobe Systems Incorporated.) Hidden AirMech (HKLM-x32\...\Steam App 206500) (Version: - Carbon Games) Altova MissionKit® 2013 rel. 2 sp2 (x64) Enterprise Edition (HKLM\...\{CD4F9A49-EB2E-461F-9962-A8ECEAC4CF2A}) (Version: 2013.02.02 - Altova) AMD Accelerated Video Transcoding (Version: - Advanced Micro Devices, Inc.) Hidden AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2013.0830.1944.33589 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (HKLM\...\{1E9871B6-7C44-9A3A-A1C0-F9729663C7F5}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.) Anomaly Warzone Earth (HKLM-x32\...\Steam App 91200) (Version: - 11 bit studios) Arma 3 Alpha (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive) Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: - Avira) Banished (HKLM-x32\...\GOGPACKBANISHED_is1) (Version: - GOG.com) Bastion (HKLM-x32\...\Steam App 107100) (Version: - Supergiant Games) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 1942™ (HKLM-x32\...\{5BE7BD06-512B-43bf-AD78-3BD2A5F5F7B3}) (Version: - Electronic Arts) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: - Electronic Arts) Battlefield 4™ Beta (HKLM-x32\...\{CFAB3721-549D-4827-A4E8-7F90192114AB}) (Version: - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) bl (x32 Version: 1.0.0 - Your Company Name) Hidden BLAZBLUE -CALAMITY TRIGGER- (HKLM-x32\...\GFWL_{415807D5-45E8-4635-A5A9-C81000008400}) (Version: 1.0.0000.132 - ARC SYSTEM WORKS) BLAZBLUE -CALAMITY TRIGGER- (x32 Version: 1.0.0000.132 - ARC SYSTEM WORKS) Hidden Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.04 - Piriform) Cities XL Platinum (HKLM-x32\...\Steam App 231140) (Version: - Focus Home Interactive) Crysis®3 (HKLM-x32\...\{4198AE83-A3C6-4C41-85C8-EC63E990696E}) (Version: - Electronic Arts) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: - DT Soft Ltd) Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version: - FromSoftware) Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{81FB7C60-565A-4869-9D90-3BE1D270E8B7}) (Version: - Microsoft) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - ) Europa Universalis III (HKLM-x32\...\Steam App 25800) (Version: - Paradox Development Studio) Europa Universalis IV (HKLM-x32\...\Europa Universalis IV_is1) (Version: - Paradox Interactive) EVE Isk per Hour (HKLM-x32\...\{61A1A5A8-2835-46CD-9429-A8F4CFEE6657}) (Version: 2.2 - EVE IPH) EVEMon (HKLM-x32\...\EVEMon) (Version: - battleclinic.com) Everything (HKLM-x32\...\Everything) (Version: - ) Fallout Mod Manager 0.13.21 (HKLM-x32\...\Generic Mod Manager_is1) (Version: - Q, Timeslip) FileZilla Client (HKLM-x32\...\FileZilla Client) (Version: - FileZilla Project) FINAL FANTASY XIV - A Realm Reborn (HKLM-x32\...\{2B41E132-07DF-4925-A3D3-F2D1765CCDFE}) (Version: 1.0.0000 - SQUARE ENIX CO., LTD.) FORCED (HKLM-x32\...\Steam App 249990) (Version: - BetaDwarf) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: - Foxit Corporation) Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.117 - Google Inc.) Google Drive (HKLM-x32\...\{E87022D3-C8C9-4C76-8E27-BC7F18F9B8FB}) (Version: 1.14.6059.644 - Google, Inc.) Google Update Helper (x32 Version: - Google Inc.) Hidden GRID (HKLM-x32\...\Steam App 12750) (Version: - Codemasters Studios) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Hitman: Absolution - Complete Edition (HKLM-x32\...\{47050392-4E41-4ACF-96E2-1AE1B08459CA}_is1) (Version: 1.0 - SQUARE ENIX) Insurgency (HKLM-x32\...\Steam App 222880) (Version: - New World Interactive) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: - Intel Corporation) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.35 - Irfan Skiljan) Java 7 Update 17 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417017FF}) (Version: 7.0.170 - Oracle) Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217017FF}) (Version: 7.0.450 - Oracle) Java Auto Updater (x32 Version: - Sun Microsystems, Inc.) Hidden Java SE Development Kit 7 Update 17 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170170}) (Version: - Oracle) JDownloader 2 (HKLM-x32\...\0630-0716-3135-7887) (Version: 2 - AppWork GmbH) Just Cause 2 (HKLM-x32\...\Steam App 8190) (Version: - Avalanche) Just Cause 2: Multiplayer Mod (HKLM-x32\...\Steam App 259080) (Version: - JC2-MP Team) Killing Floor (HKLM-x32\...\Steam App 1250) (Version: - Tripwire Interactive) King's Bounty: The Legend (HKLM-x32\...\Steam App 25900) (Version: - Katauri) League of Legends (HKLM-x32\...\{92606477-9366-4D3B-8AE3-6BE4B29727AB}) (Version: 1.3 - Riot Games) Loadout (HKLM-x32\...\Steam App 208090) (Version: - Edge of Reality) ManiaPlanet (HKLM-x32\...\ManiaPlanet_is1) (Version: - Nadeo) Marvel Puzzle Quest: Dark Reign (HKLM-x32\...\Steam App 234330) (Version: - ) Megacoin (HKCU\...\Megacoin) (Version: 0.8.99 - Megacoin project) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: - Microsoft Corporation) Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Groove MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFCLOC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Might & Magic Heroes VI (HKLM-x32\...\{745D37C2-26F4-4B65-BA13-F9840EBFA75B}) (Version: 1.7.1 - Ubisoft) Monaco (HKLM-x32\...\Steam App 113020) (Version: - Pocketwatch Games) MotoGP(TM)13 (HKLM-x32\...\{4B784CE7-7CDB-4AF1-B636-2DC3EA51EA87}) (Version: 1.00.0000 - Milestone) MotoGP(TM)13 (x32 Version: 1.00.0000 - Milestone) Hidden Mount & Blade: Warband (HKLM-x32\...\Steam App 48700) (Version: - Tale Worlds) Mozilla Firefox 20.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 20.0.1 (x86 de)) (Version: 20.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.3.0 - Mozilla) Mozilla Thunderbird 24.3.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.3.0 (x86 de)) (Version: 24.3.0 - Mozilla) MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden Mumble 1.2.3 (HKLM-x32\...\{C3E9887A-23BA-4777-8080-191A5AFCAB74}) (Version: 1.2.3 - Thorvald Natvig) NBA 2K14 (HKLM-x32\...\{4FE0545A-1BF3-4B9B-A044-6E1EE719E197}) (Version: 1.0.0 - 2K Sports) NetWorx 5.2.7 (HKLM\...\NetWorx_is1) (Version: - Softperfect Research) Nidhogg (HKLM-x32\...\TmlkaG9nZw==_is1) (Version: 1 - ) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.3.1 - ) NVIDIA PhysX (HKLM-x32\...\{9530AE42-DAE1-4619-9594-B23487285D17}) (Version: 9.11.1107 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: - Electronic Arts, Inc.) Path of Exile (HKLM-x32\...\{90A4562F-D4A1-4B65-906D-41F236CF6902}) (Version: - Grinding Gear Games) Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games) ph (x32 Version: 1.0.0 - Your Company Name) Hidden PlanetSide 2 (HKLM-x32\...\Steam App 218230) (Version: - Sony Online Entertainment) PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) Pro Evolution Soccer 2014 (HKLM-x32\...\{5EFD3544-2371-4900-8ACA-F157BA80FB0C}) (Version: 1.00.0000 - KONAMI) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.) RIFT (HKCU\...\RIFT) (Version: - Trion Worlds, Inc.) Samsung_MonSetup (HKLM-x32\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung) Savu Mouse (HKLM-x32\...\{6F4B8EA6-4546-4160-A05F-0706F7DC1EFF}) (Version: 1.1.9 - ROCCAT GmbH) Scrolls (HKLM-x32\...\Scrolls 1.0.0) (Version: 1.0.0 - Mojang) Scrolls (x32 Version: 1.0.0 - Mojang) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version: - Microsoft) Hidden Shadowrun Returns (HKLM-x32\...\Shadowrun Returns_is1) (Version: - Harebrained Holdings) Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.) Sid Meier's Civilization V GotY (HKLM-x32\...\{C314E1AC-BAE4-4165-9A94-20B03CD77600}_is1) (Version: - RAF) Sins of a Solar Empire Rebellion (c) Stardock version 1 (HKLM-x32\...\Sins of a Solar Empire Rebellion (c) Stardock_is1) (Version: 1 - ) Skype™ 6.3 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.3.107 - Skype Technologies S.A.) SolForge (HKLM-x32\...\Steam App 232450) (Version: - Stone Blade Entertainment) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spelunky (HKLM-x32\...\Steam App 239350) (Version: - ) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.) StarDrive (HKLM-x32\...\StarDrive_is1) (Version: - Iceberg Interactive) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: - Valve Corporation) SteelSeries Engine (HKLM\...\SteelSeries Engine) (Version: - SteelSeries) Sublime Text 2.0.2 (HKLM\...\Sublime Text 2_is1) (Version: - ) Super Street Fighter IV: Arcade Edition (HKLM-x32\...\Steam App 45760) (Version: - Capcom) Sword of the Stars - The Pit version 1.00 (HKLM-x32\...\Sword of the Stars - The Pit_is1) (Version: 1.00 - ) Sword of the Stars II: Enhanced Edition (HKLM-x32\...\Steam App 42990) (Version: - Kerberos Productions) Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.26297 - TeamViewer) The King Of Fighters XIII (HKLM-x32\...\VGhlS2luZ09mRmlnaHRlcnNYSUlJ_is1) (Version: 1 - ) THE KING OF FIGHTERS XIII STEAM EDITION (HKLM-x32\...\Steam App 222940) (Version: - SNK Playmore) The Showdown Effect (HKLM-x32\...\Steam App 204080) (Version: - Arrowhead Game Studios) The Witcher 2 - Assassins of Kings Enhanced Edition (HKLM-x32\...\The Witcher 2 - Assassins of Kings Enhanced Edition_is1) (Version: - GOG.com) TreeSize Personal V6.0.1 (HKLM-x32\...\TreeSize Personal_is1) (Version: 6.0.1 - JAM Software) Trials 2 Second Edition v1.08 (HKLM-x32\...\Trials 2 Second Edition_is1) (Version: - ) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: - UBISOFT) Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{001E8BF3-EDC3-4D5E-9C11-1D0E599B6497}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{001E8BF3-EDC3-4D5E-9C11-1D0E599B6497}) (Version: - Microsoft) Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version: - Microsoft) Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{39767ECA-1731-45DB-AB5B-6BF40E151D66}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{BA610006-2C39-4419-9834-CF61AB24810A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2837583) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{E21274CE-CA0C-49FA-93F4-DC292A052264}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUS_{C70D2038-A2C4-4A99-87DE-5272BB44F0CE}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{B5C70C99-B109-42FD-B219-FF12CA543F19}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.PROPLUS_{82F87E28-B18E-46D6-A399-E2F19CF5949B}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.PROPLUS_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.PROPLUS_{81812245-FC84-426A-BC02-6659C88CC7B2}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2775360) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{80F56E3F-1D47-4E45-B6E0-FEF4E919F4F9}) (Version: - Microsoft) Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft) Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{8C55AA83-54C2-4236-A622-78440A411DC5}) (Version: - Microsoft) Update for Microsoft Word 2010 (KB2837593) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{E78E2B68-8FD1-42EE-BB74-99A4D9E6222D}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 2.1 - Ubisoft) USB PnP Sound Device (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392006300}) (Version: - ) Valdis Story AC (HKLM-x32\...\Valdis Story AC_is1) (Version: - ) Vegas Pro 12.0 (64-bit) (HKLM\...\{7A0D09B0-6575-11E2-89D5-F04DA23A5C58}) (Version: 12.0.486 - Sony) VLC media player 2.0.5 (HKLM\...\VLC media player) (Version: 2.0.5 - VideoLAN) Warframe (HKLM-x32\...\Steam App 230410) (Version: - ) Wargame AirLand Battle (c) Focus Home Interactive version RLD! (HKLM-x32\...\V2FyZ2FtZUFpckxhbmRCYXR0bGU=_is1) (Version: RLD! - ) Wargame: AirLand Battle (HKLM-x32\...\Steam App 222750) (Version: - Eugen Systems) WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) World of Tanks (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version: - Wargaming.net) World of Warplanes (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C813EU}_is1) (Version: - Wargaming.net) X Rebirth (HKLM-x32\...\WFJlYmlydGg=_is1) (Version: 1 - ) XAMPP 1.8.1-0 (HKLM-x32\...\xampp) (Version: 1.8.1-0 - BitNami) XBMC (HKCU\...\XBMC) (Version: - Team XBMC) XSplit Broadcaster (HKLM-x32\...\{DA46D1E1-407A-4E2B-AA43-937842B8448F}) (Version: 1.3.1401.0901 - SplitMediaLabs) ==================== Restore Points ========================= 21-02-2014 20:00:40 Windows Update ==================== Hosts content: ========================== 2012-07-26 06:26 - 2012-07-26 06:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {070887BC-E9C6-4EE1-8020-BB392354F90F} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2013-09-27] () Task: {0AC8448B-299E-4762-B45D-7787CE0FC95F} - System32\Tasks\Hoolapp Init => C:\Users\Flobsen\AppData\Roaming\HOOLAP~1\Hoolapp.exe <==== ATTENTION Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {38497ECC-7A14-4A8F-9F06-C56B79417037} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {3F563684-0C77-4701-A938-636F7CFE8EEF} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\system32\NotificationUI.exe [2013-08-16] (Microsoft Corporation) Task: {606C3B54-1617-45E9-878D-39A5373A028D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-20] (Adobe Systems Incorporated) Task: {7A6EA8F5-7FF6-4E09-8C4E-7A80E13BF472} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\WatTask => C:\Windows Activation Technologies\wat.exe [2006-04-21] () Task: {9C540E7D-3B78-4C29-B1C7-75EAB1A23EB2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {9EFCD1FC-60AA-4C95-BF79-BD548DBAFF83} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-07-22] (Piriform Ltd) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {B32EF9A8-93FC-4F49-A6F3-9C707E285C14} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-28] (Google Inc.) Task: {BB5181F0-65CF-4277-87DE-88D82AEE59BD} - System32\Tasks\Hoolapp For Android => C:\Users\Flobsen\AppData\Roaming\HOOLAP~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {E6FAA1CA-AC02-415D-98FE-09EA70837FB8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-28] (Google Inc.) Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {F63B2261-A444-4B7F-B430-E75B156B41C7} - System32\Tasks\update-S-1-5-21-1003224168-2144006893-2651108538-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2013-09-27] () Task: {F8CB3CA8-A685-4EA4-9070-C098DCC9688D} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS.exe [2013-02-28] () Task: {F8D97E7C-E9B7-49C2-840E-1F6236975CDD} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\update-S-1-5-21-1003224168-2144006893-2651108538-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Loaded Modules (whitelisted) ============= 2013-04-24 16:39 - 2012-07-20 19:08 - 08186368 _____ () F:\work\xampp\mysql\bin\mysqld.exe 2013-03-01 16:13 - 2013-10-04 13:44 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2012-12-14 02:42 - 2012-12-14 02:42 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-04-03 16:14 - 2011-09-17 11:12 - 00664576 _____ () C:\Program Files\NetWorx\sqlite.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00708096 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SSEngineLib.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00175104 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DBUtils.dll 2014-02-17 23:22 - 2014-02-17 23:22 - 00089915 ____N () C:\Users\Flobsen\AppData\Local\Temp\10d2ca4a-28d7-4d81-8c1e-dc42bb6c83fc\CliSecureRT64.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00280064 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DriverCommunication.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00139776 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\ISSPlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00148480 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\Localization.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00145408 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\Utilities.dll 2013-01-10 06:46 - 2013-01-10 06:46 - 00047616 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesDrivers\x2api.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 09562112 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SSEngineWinGui.dll 2013-01-10 06:46 - 2013-01-10 06:46 - 01102336 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\System.Data.SQLite.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00209408 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CustomWPFColorPicker.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00349696 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\MousePlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00171008 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\D3MousePlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00173056 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\KKMousePlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00171008 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SRawPlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00307200 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\MLGSenseiPlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00154624 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoWGoldPlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00170496 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\GW2MousePlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00169472 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CSGOMousePlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00169984 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DOTA2MousePlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00157184 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoWWirelessPlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00170496 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CODMousePlugin.dll 2013-11-05 18:19 - 2013-11-05 18:19 - 00169984 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoTMousePlugin.dll 2009-03-13 02:18 - 2009-03-13 02:18 - 00602624 _____ () C:\Program Files (x86)\Everything\Everything.exe 2012-12-16 11:27 - 2012-12-16 11:27 - 00150528 _____ () C:\Program Files\VideoLAN\VLC\libvlc.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 02344960 _____ () C:\Program Files\VideoLAN\VLC\libvlccore.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00306176 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libdshow_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00088064 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_output\libaout_directx_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00089088 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_output\libwaveout_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00115712 _____ () C:\Program Files\VideoLAN\VLC\plugins\video_output\libdirectx_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00076288 _____ () C:\Program Files\VideoLAN\VLC\plugins\mmxext\libmemcpymmxext_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00231936 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\liblibbluray_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00139264 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libaccess_bd_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00299008 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libdvdnav_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00083456 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libaccess_vdr_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00084480 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libfilesystem_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00528896 _____ () C:\Program Files\VideoLAN\VLC\plugins\stream_filter\libstream_filter_httplive_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00876544 _____ () C:\Program Files\VideoLAN\VLC\plugins\stream_filter\libstream_filter_dash_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00077824 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libstream_filter_rar_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00128512 _____ () C:\Program Files\VideoLAN\VLC\plugins\access\libzip_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00074752 _____ () C:\Program Files\VideoLAN\VLC\plugins\stream_filter\libstream_filter_record_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00144384 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libplaylist_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 01996800 _____ () C:\Program Files\VideoLAN\VLC\plugins\meta_engine\libtaglib_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00344064 _____ () C:\Program Files\VideoLAN\VLC\plugins\lua\liblua_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 01498624 _____ () C:\Program Files\VideoLAN\VLC\plugins\misc\libxml_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00089600 _____ () C:\Program Files\VideoLAN\VLC\plugins\control\libhotkeys_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00077312 _____ () C:\Program Files\VideoLAN\VLC\plugins\control\libglobalhotkeys_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00084480 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libes_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00377856 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libtheora_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00076288 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\librawvideo_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00218112 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libspeex_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 11936768 _____ () C:\Program Files\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 01816576 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libvorbis_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00076288 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libaes3_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00080384 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\liblpcm_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00080896 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_flac_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00087040 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_dirac_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00081408 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mlp_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00087552 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4audio_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00097792 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_vc1_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00077312 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libsvcdsub_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00079872 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libspudec_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00086016 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4video_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00084480 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpegvideo_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00078848 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libcvdsub_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00128512 _____ () C:\Program Files\VideoLAN\VLC\plugins\packetizer\libpacketizer_h264_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00078848 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libmpeg_audio_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00363520 _____ () C:\Program Files\VideoLAN\VLC\plugins\services_discovery\libupnp_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00074752 _____ () C:\Program Files\VideoLAN\VLC\plugins\meta_engine\libfolder_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00128000 _____ () C:\Program Files\VideoLAN\VLC\plugins\services_discovery\libsap_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00080384 _____ () C:\Program Files\VideoLAN\VLC\plugins\services_discovery\libpodcast_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00077824 _____ () C:\Program Files\VideoLAN\VLC\plugins\services_discovery\libmediadirs_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00075264 _____ () C:\Program Files\VideoLAN\VLC\plugins\services_discovery\libwindrive_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00219648 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libmp4_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00119808 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libavi_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00109568 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libasf_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00083456 _____ () C:\Program Files\VideoLAN\VLC\plugins\demux\libflacsys_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00251904 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libpng_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00079360 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libcdg_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 01548288 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libschroedinger_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00089600 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libaraw_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00078848 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libdts_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00460288 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libfaad_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00302592 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libflac_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 01103360 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\liblibass_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00421376 _____ () C:\Program Files\VideoLAN\VLC\plugins\codec\libopus_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00233984 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libdtstofloat32_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00124928 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\liba52tofloat32_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00166400 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libmpgatofixed32_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 01562624 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libsamplerate_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00075776 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libconverter_fixed_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00074240 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\liba52tospdif_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00078848 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libsimple_channel_mixer_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00075264 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libdtstospdif_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00074752 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libdolby_surround_decoder_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00074240 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libugly_resampler_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00087552 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libaudio_format_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00073728 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_mixer\libfloat32_mixer_plugin.dll 2012-12-16 11:28 - 2012-12-16 11:28 - 00079360 _____ () C:\Program Files\VideoLAN\VLC\plugins\audio_filter\libscaletempo_plugin.dll 2012-10-29 11:08 - 2012-10-29 11:08 - 00030208 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\_old_qgif4.dll 2012-10-29 11:08 - 2012-10-29 11:08 - 00236032 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\_old_qjpeg4.dll 2012-10-29 11:08 - 2013-11-05 18:24 - 00302056 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2012-10-29 11:08 - 2013-11-05 18:24 - 00320488 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2012-10-29 11:08 - 2013-11-05 18:24 - 00565224 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2013-09-28 07:38 - 2013-11-05 18:24 - 00700904 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2013-02-28 15:50 - 2013-02-28 15:46 - 00397704 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll 2013-04-24 16:39 - 2012-04-04 17:47 - 00108032 _____ () F:\work\xampp\apache\bin\pcre.dll 2013-04-24 16:40 - 2012-09-17 11:05 - 00025088 _____ () F:\Work\XAMPP\php\php5apache2_4.dll 2014-02-20 20:49 - 2014-02-20 02:02 - 00051016 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\chrome_elf.dll 2012-11-29 22:59 - 2012-11-29 22:59 - 00093696 _____ () F:\Work\FileZilla FTP Client\fzshellext.dll 2014-02-20 20:49 - 2014-02-20 02:02 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\libglesv2.dll 2014-02-20 20:49 - 2014-02-20 02:02 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\libegl.dll 2014-02-20 20:49 - 2014-02-20 02:03 - 04060488 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\pdf.dll 2014-02-20 20:49 - 2014-02-20 02:03 - 00394568 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\ppGoogleNaClPluginChrome.dll 2014-02-20 20:49 - 2014-02-20 02:02 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\ffmpegsumo.dll 2014-01-08 17:43 - 2013-12-12 23:19 - 00142848 _____ () F:\Steam\libavresample-1.dll 2014-01-08 17:43 - 2013-11-05 02:12 - 00890592 _____ () F:\Steam\libavutil-52.dll 2014-02-19 21:14 - 2014-02-11 03:34 - 00751616 _____ () F:\Steam\SDL2.dll 2014-02-26 00:06 - 2014-02-25 22:57 - 01135296 _____ () F:\Steam\bin\chromehtml.DLL 2014-01-28 13:42 - 2014-01-11 00:33 - 20625832 _____ () F:\Steam\bin\libcef.dll 2013-07-09 14:00 - 2013-06-15 00:49 - 01100800 _____ () F:\Steam\bin\avcodec-53.dll 2013-07-09 14:00 - 2013-06-15 00:49 - 00124416 _____ () F:\Steam\bin\avutil-51.dll 2013-07-09 14:00 - 2013-06-15 00:49 - 00192000 _____ () F:\Steam\bin\avformat-53.dll 2014-02-20 20:49 - 2014-02-20 02:03 - 13632840 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\PepperFlash\pepflashplayer.dll 2014-02-12 19:30 - 2014-02-12 19:30 - 26118656 _____ () F:\Games\hearthstone\Battle.net\Battle.net.4217\libcef.dll 2014-02-12 19:30 - 2014-02-12 19:30 - 00739840 _____ () F:\Games\hearthstone\Battle.net\Battle.net.4217\libglesv2.dll 2014-02-12 19:30 - 2014-02-12 19:30 - 00130048 _____ () F:\Games\hearthstone\Battle.net\Battle.net.4217\libegl.dll 2013-02-28 14:36 - 2014-02-06 20:10 - 03019376 _____ () C:\Program Files (x86)\Mozilla Thunderbird\mozjs.dll 2013-02-28 14:36 - 2014-02-06 20:10 - 00158832 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll 2013-02-28 14:36 - 2014-02-06 20:10 - 00023152 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll 2014-02-26 20:00 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-02-26 20:00 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2014-02-26 20:00 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2014-02-26 20:00 - 2013-05-16 10:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-02-26 20:00 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2014-01-22 01:40 - 2014-01-22 01:40 - 00236032 _____ () C:\Users\Flobsen\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd\\plugin\blackfishietab.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (02/26/2014 08:41:16 PM) (Source: Application Hang) (User: ) Description: Programm Hearthstone.exe, Version kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1ec0 Startzeit: 01cf332a95ad850e Endzeit: 28 Anwendungspfad: F:\Games\hearthstone\Hearthstone\Hearthstone.exe Berichts-ID: f12d1d0c-9f1d-11e3-bebe-bc5ff477301a Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (02/26/2014 07:52:40 PM) (Source: Software Protection Platform Service) (User: ) Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: hr=0x8007232B Befehlszeilenargumente: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/26/2014 07:37:06 PM) (Source: Software Protection Platform Service) (User: ) Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: hr=0x8007232B Befehlszeilenargumente: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/26/2014 07:22:50 PM) (Source: Software Protection Platform Service) (User: ) Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: hr=0x8007232B Befehlszeilenargumente: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/26/2014 03:27:00 AM) (Source: Software Protection Platform Service) (User: ) Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: hr=0x8007232B Befehlszeilenargumente: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/26/2014 00:06:30 AM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (02/26/2014 00:03:04 AM) (Source: Software Protection Platform Service) (User: ) Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: hr=0x8007232B Befehlszeilenargumente: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/26/2014 00:03:02 AM) (Source: Software Protection Platform Service) (User: ) Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: hr=0x8007232B Befehlszeilenargumente: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (02/25/2014 08:09:47 PM) (Source: Software Protection Platform Service) (User: ) Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: hr=0x8007232B Befehlszeilenargumente: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/25/2014 07:15:25 PM) (Source: Software Protection Platform Service) (User: ) Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: hr=0x8007232B Befehlszeilenargumente: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable System errors: ============= Error: (02/26/2014 00:06:30 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/26/2014 00:06:30 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (02/26/2014 00:01:52 AM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 25.02.2014 um 22:58:09 unerwartet heruntergefahren. Error: (02/22/2014 04:55:28 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/22/2014 04:55:28 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (02/19/2014 09:14:19 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/19/2014 09:14:19 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (02/08/2014 00:29:06 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 08.02.2014 um 04:04:14 unerwartet heruntergefahren. Error: (02/06/2014 00:31:40 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 06.02.2014 um 00:52:44 unerwartet heruntergefahren. Error: (02/04/2014 09:30:12 AM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 04.02.2014 um 00:22:49 unerwartet heruntergefahren. Microsoft Office Sessions: ========================= Error: (02/26/2014 08:41:16 PM) (Source: Application Hang)(User: ) Description: Hearthstone.exe1.0.0.44821ec001cf332a95ad850e28F:\Games\hearthstone\Hearthstone\Hearthstone.exef12d1d0c-9f1d-11e3-bebe-bc5ff477301a Error: (02/26/2014 07:52:40 PM) (Source: Software Protection Platform Service)(User: ) Description: hr=0x8007232BRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/26/2014 07:37:06 PM) (Source: Software Protection Platform Service)(User: ) Description: hr=0x8007232BRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/26/2014 07:22:50 PM) (Source: Software Protection Platform Service)(User: ) Description: hr=0x8007232BRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/26/2014 03:27:00 AM) (Source: Software Protection Platform Service)(User: ) Description: hr=0x8007232BRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/26/2014 00:06:30 AM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (02/26/2014 00:03:04 AM) (Source: Software Protection Platform Service)(User: ) Description: hr=0x8007232BRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/26/2014 00:03:02 AM) (Source: Software Protection Platform Service)(User: ) Description: hr=0x8007232BRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (02/25/2014 08:09:47 PM) (Source: Software Protection Platform Service)(User: ) Description: hr=0x8007232BRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/25/2014 07:15:25 PM) (Source: Software Protection Platform Service)(User: ) Description: hr=0x8007232BRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable ==================== Memory info =========================== Percentage of memory in use: 54% Total physical RAM: 8076.37 MB Available physical RAM: 3682.59 MB Total Pagefile: 10380.37 MB Available Pagefile: 3970.89 MB Total Virtual: 8192 MB Available Virtual: 8191.76 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:117.83 GB) (Free:37.36 GB) NTFS Drive d: (Elements) (Fixed) (Total:931.51 GB) (Free:47.65 GB) NTFS Drive f: (Volume) (Fixed) (Total:813.33 GB) (Free:92.98 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 6E7D383A) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=118 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=813 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 932 GB) (Disk ID: 469D60DF) Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Danke schonmal |
![]() | #4 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Internet langsam, netstat zeigt hunderte Verbindungen hi, sieht gut aus. Downloade dir bitte ![]()
Downloade dir bitte ![]()
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() |
Themen zu Internet langsam, netstat zeigt hunderte Verbindungen |
andere, anderen, gen, hunderte, immer wieder, inter, interne, internet, internet langsam, langsam, netstat, seite, verbindungen |