|
Log-Analyse und Auswertung: Computer seit kurzen extrem langsam! Vermutlich TrojanerWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
25.03.2014, 14:31 | #1 |
| Computer seit kurzen extrem langsam! Vermutlich Trojaner Wie schon gesagt ist mein Computer seit kurzem extrem langsam und ich vermute das da ein Virus hinter steckt. wäre cool wen ihr mir helfen könnt. LG Paul |
25.03.2014, 16:07 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Computer seit kurzen extrem langsam! Vermutlich Trojaner Hallo und
__________________Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
26.03.2014, 13:46 | #3 |
| Computer seit kurzen extrem langsam! Vermutlich TrojanerFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 Ran by User (administrator) on USER-PC on 26-03-2014 13:33:32 Running from C:\Users\User\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe (cFos Software GmbH) C:\Program Files\cFosSpeed\spd.exe (Microsoft Corporation) C:\Windows\system32\inetsrv\inetinfo.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Microsoft Corporation) C:\Windows\system32\mqsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (cFos Software GmbH) C:\Program Files\cFosSpeed\cfosspeed.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (Microsoft Corporation) C:\Windows\system32\mqtgsvc.exe (Microsoft Corporation) C:\Windows\Speech\Common\sapisvr.exe (Spotify Ltd) C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\plugin-nm-server.exe () C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.204\deploy\LoLLauncher.exe () C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.77\deploy\LolClient.exe () C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.14\deploy\League of Legends.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6843024 2012-10-29] (Realtek Semiconductor) HKLM\...\Run: [Nvtmru] - "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1179576 2014-01-21] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-01-21] (NVIDIA Corporation) HKLM\...\Run: [cFosSpeed] - C:\Program Files\cFosSpeed\cFosSpeed.exe [1587040 2013-04-19] (cFos Software GmbH) HKLM\...\Run: [MsmqIntCert] - regsvr32 /s mqrt.dll HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-05-20] (Intel Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-06] (AVAST Software) HKLM-x32\...\Run: [TrojanScanner] - C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1658640 2013-11-11] (Simply Super Software) HKLM-x32\...\RunOnce: [20131224] - C:\Program Files\AVAST Software\Avast\setup\emupdate\c478e3c1-3b6a-4012-8d50-a21d2cb2b776.exe /check [181136 2014-03-26] (AVAST Software) HKU\S-1-5-21-1196222016-3991047276-1401738552-1000\...\Run: [Speech Recognition] - C:\Windows\Speech\Common\sapisvr.exe [44544 2009-07-14] (Microsoft Corporation) HKU\S-1-5-21-1196222016-3991047276-1401738552-1000\...\Run: [Spotify] - C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6118400 2014-02-03] (Spotify Ltd) HKU\S-1-5-21-1196222016-3991047276-1401738552-1000\...\Run: [Spotify Web Helper] - C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-02-03] (Spotify Ltd) HKU\S-1-5-21-1196222016-3991047276-1401738552-1000\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd) HKU\S-1-5-21-1196222016-3991047276-1401738552-1000\...\MountPoints2: {23f613af-9c68-11e3-826f-d850e641725c} - E:\INSTALL.EXE HKU\S-1-5-21-1196222016-3991047276-1401738552-1000\...\MountPoints2: {35237b7b-6ef4-11e3-a540-806e6f6e6963} - D:\setup\rsrc\Autorun.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xC98941A09047CF01 BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\..\Interfaces\{3268ADFE-189C-44E5-8F18-5CD2120BE68C}: [NameServer]192.168.2.1 Chrome: ======= CHR HomePage: https://www.google.com/ CHR Extension: (Google Docs) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-31] CHR Extension: (Google Drive) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-31] CHR Extension: (Kaspersky Protection) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blbkdnmdcafmfhinpmnlhhddbepgkeaa [2014-03-24] CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-31] CHR Extension: (Battlefield Heroes) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\cehdakiococlfmjcbebbkjkfjhbieknh [2013-12-31] CHR Extension: (Adblock Plus) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-12-31] CHR Extension: (Google-Suche) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-31] CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2013-12-31] CHR Extension: (AdBlock) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-01-23] CHR Extension: (avast! Online Security) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-01-06] CHR Extension: (ProxMate - Proxy on steroids!) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifalmiidchkjjmkkbkoaibpmoeichmki [2014-01-23] CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-31] CHR Extension: (Battlefield Play4Free) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2014-03-15] CHR Extension: (Google Mail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-31] CHR Extension: (Anti-Banner) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2013-12-31] CHR HKLM-x32\...\Chrome\Extension: [blbkdnmdcafmfhinpmnlhhddbepgkeaa] - https://chrome.google.com/webstore/detail/blbkdnmdcafmfhinpmnlhhddbepgkeaa [2013-12-31] CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\urladvisor.crx [2013-10-17] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-01-06] CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\ab.crx [2013-10-17] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-06] (AVAST Software) R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [214512 2013-10-17] (Kaspersky Lab ZAO) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-02-26] () R2 cFosSpeedS; C:\Program Files\cFosSpeed\spd.exe [480096 2013-04-19] (cFos Software GmbH) R2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [15872 2010-11-21] (Microsoft Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation) R2 MSMQ; C:\Windows\system32\mqsvc.exe [9216 2009-07-14] (Microsoft Corporation) R2 MSMQTriggers; C:\Windows\system32\mqtgsvc.exe [189440 2010-11-21] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-01-21] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [16939296 2014-01-21] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-03-15] () R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-06] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2014-01-06] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-01-06] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1034464 2014-01-06] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422216 2014-01-06] (AVAST Software) R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [79672 2014-01-06] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-06] () R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-02-23] (Disc Soft Ltd) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-12-31] (Kaspersky Lab ZAO) S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [115296 2014-03-24] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625248 2014-03-24] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2013-10-17] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2014-02-19] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-17] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55904 2013-05-14] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178272 2013-12-31] (Kaspersky Lab ZAO) R3 MQAC; C:\Windows\System32\drivers\mqac.sys [189440 2009-07-14] (Microsoft Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-27] (NVIDIA Corporation) S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S0 bycyfro; System32\drivers\kdott.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-26 13:33 - 2014-03-26 13:33 - 00015972 _____ () C:\Users\User\Downloads\FRST.txt 2014-03-26 13:33 - 2014-03-26 13:33 - 00000000 ____D () C:\FRST 2014-03-26 13:32 - 2014-03-26 13:32 - 02157056 _____ (Farbar) C:\Users\User\Downloads\FRST64.exe 2014-03-25 19:11 - 2014-03-25 19:11 - 00000000 __SHD () C:\found.001 2014-03-25 14:17 - 2014-03-25 14:17 - 00006800 ____N () C:\bootsqm.dat 2014-03-25 14:16 - 2014-03-25 14:16 - 00000000 __SHD () C:\found.000 2014-03-25 13:46 - 2014-03-25 13:47 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-03-25 13:46 - 2014-03-25 13:46 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-03-25 13:46 - 2014-03-05 09:26 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-03-25 13:46 - 2014-03-05 09:26 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-03-25 13:45 - 2014-03-25 13:45 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\User\Downloads\mbam-setup-2.0.0.1000.exe 2014-03-24 19:31 - 2014-03-24 19:31 - 00001162 _____ () C:\Users\Public\Desktop\Diablo III.lnk 2014-03-24 19:23 - 2014-03-24 19:45 - 00000000 ____D () C:\Program Files (x86)\Diablo III 2014-03-24 18:11 - 2014-03-26 06:59 - 00000000 ____D () C:\Users\User\AppData\Local\Battle.net 2014-03-24 18:11 - 2014-03-24 19:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\Battle.net 2014-03-24 18:11 - 2014-03-24 18:11 - 00001150 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-03-24 18:11 - 2014-03-24 18:11 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-03-24 18:05 - 2014-03-24 18:06 - 06018744 _____ (Blizzard Entertainment) C:\Users\User\Downloads\Diablo-III-Setup-deDE.exe 2014-03-24 15:11 - 2014-03-24 15:11 - 00000127 _____ () C:\Users\User\Desktop\Elo.txt 2014-03-23 17:31 - 2012-06-01 06:39 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wamregps.dll 2014-03-23 17:31 - 2012-06-01 06:36 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\iisRtl.dll 2014-03-23 17:31 - 2012-06-01 06:36 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\iisrstap.dll 2014-03-23 17:31 - 2012-06-01 06:35 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\ahadmin.dll 2014-03-23 17:31 - 2012-06-01 06:34 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\admwprox.dll 2014-03-23 17:31 - 2012-06-01 06:33 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\iisreset.exe 2014-03-23 17:31 - 2012-06-01 05:40 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wamregps.dll 2014-03-23 17:31 - 2012-06-01 05:37 - 00154624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iisRtl.dll 2014-03-23 17:31 - 2012-06-01 05:37 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iisrstap.dll 2014-03-23 17:31 - 2012-06-01 05:35 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admwprox.dll 2014-03-23 17:31 - 2012-06-01 05:35 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ahadmin.dll 2014-03-23 17:31 - 2012-06-01 05:34 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iisreset.exe 2014-03-23 17:11 - 2014-03-23 17:11 - 00000000 ____D () C:\Users\User\Documents\Razer 2014-03-23 17:11 - 2014-03-23 17:11 - 00000000 ____D () C:\Users\User\AppData\Local\Razer_Inc 2014-03-23 17:09 - 2014-03-23 17:09 - 00002129 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-03-23 17:09 - 2014-03-23 17:09 - 00000000 ____D () C:\Users\User\AppData\Local\Razer 2014-03-23 17:09 - 2014-03-23 17:09 - 00000000 ____D () C:\ProgramData\Razer 2014-03-23 17:09 - 2014-03-23 17:09 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-03-23 17:01 - 2014-03-23 17:06 - 41954352 _____ (Razer Inc. ) C:\Users\User\Downloads\RazerGameBoosterSetup_4.2.45.0.exe 2014-03-23 16:02 - 2014-03-23 16:02 - 00930952 _____ (CNET Download.com) C:\Users\User\Downloads\cbsidlm-cbsi183-SG_TCP_Optimizer-ORG-10415840.exe 2014-03-23 16:00 - 2014-03-24 06:37 - 00047935 _____ () C:\Windows\iis7.log 2014-03-23 15:59 - 2014-03-23 15:59 - 00000000 ____D () C:\Windows\SysWOW64\BestPractices 2014-03-23 15:59 - 2014-03-23 15:59 - 00000000 ____D () C:\Windows\system32\msmq 2014-03-23 15:59 - 2014-03-23 15:59 - 00000000 ____D () C:\Windows\system32\BestPractices 2014-03-23 15:59 - 2014-03-23 15:59 - 00000000 ____D () C:\inetpub 2014-03-22 19:31 - 2014-03-22 19:31 - 00001951 _____ () C:\Users\User\Desktop\The Elder Scrolls V Skyrim.lnk 2014-03-22 15:43 - 2014-03-22 15:43 - 00000000 ____D () C:\Program Files\cFosSpeed 2014-03-22 15:43 - 2013-04-19 16:46 - 01736544 _____ (cFos Software GmbH) C:\Windows\system32\Drivers\cfosspeed6.sys 2014-03-22 15:42 - 2014-03-22 15:42 - 04820216 _____ () C:\Users\User\Downloads\cfosspeed-v904.exe 2014-03-22 15:42 - 2014-03-22 15:42 - 00000000 ____D () C:\Users\User\AppData\Local\cFos 2014-03-22 15:42 - 2014-03-22 15:42 - 00000000 ____D () C:\ProgramData\cFos 2014-03-21 07:00 - 2014-03-21 07:00 - 00000000 ____D () C:\Users\Admin\AppData\Local\Google 2014-03-21 06:57 - 2014-03-21 06:57 - 00064024 _____ () C:\Users\Admin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-03-21 06:56 - 2014-03-21 06:56 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Macromedia 2014-03-21 06:56 - 2014-03-21 06:56 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\LolClient 2014-03-21 06:55 - 2014-03-21 06:55 - 00000000 ____D () C:\Users\Admin\AppData\Local\NVIDIA Corporation 2014-03-21 06:54 - 2014-03-21 06:56 - 00000000 ____D () C:\Users\Admin\AppData\Local\LogMeIn Hamachi 2014-03-21 06:54 - 2014-03-21 06:54 - 00002334 _____ () C:\Users\Admin\Desktop\Sicherer Zahlungsverkehr.lnk 2014-03-21 06:54 - 2014-03-21 06:54 - 00001425 _____ () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\Documents\Simply Super Software 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\AVAST Software 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Adobe 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\AppData\Local\VirtualStore 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\AppData\Local\NVIDIA 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\AppData\Local\LogMeIn 2014-03-21 06:53 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin 2014-03-21 06:53 - 2014-03-21 06:53 - 00000020 ___SH () C:\Users\Admin\ntuser.ini 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Vorlagen 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Startmenü 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Netzwerkumgebung 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Lokale Einstellungen 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Eigene Dateien 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Druckumgebung 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Musik 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Bilder 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Verlauf 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Anwendungsdaten 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Anwendungsdaten 2014-03-21 06:53 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-03-21 06:53 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-03-20 05:50 - 2014-03-20 07:12 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Roaming\Skype 2014-03-20 05:50 - 2014-03-20 05:50 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\Skype 2014-03-20 05:11 - 2014-03-20 05:11 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Roaming\Macromedia 2014-03-20 05:11 - 2014-03-20 05:11 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Roaming\LolClient 2014-03-19 19:07 - 2014-03-19 19:07 - 00064024 _____ () C:\Users\g.User-PC.002\AppData\Local\GDIPFONTCACHEV1.DAT 2014-03-19 19:07 - 2014-03-19 19:07 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\Google 2014-03-19 19:05 - 2014-03-19 19:05 - 00002334 _____ () C:\Users\g.User-PC.002\Desktop\Sicherer Zahlungsverkehr.lnk 2014-03-19 19:05 - 2014-03-19 19:05 - 00000000 ____D () C:\Users\g.User-PC.002\Documents\Simply Super Software 2014-03-19 19:05 - 2014-03-19 19:05 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Roaming\AVAST Software 2014-03-19 19:05 - 2014-03-19 19:05 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\NVIDIA Corporation 2014-03-19 19:04 - 2014-03-20 05:10 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\LogMeIn Hamachi 2014-03-19 19:04 - 2014-03-19 19:05 - 00000000 ___RD () C:\Users\g.User-PC.002\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-19 19:04 - 2014-03-19 19:05 - 00000000 ___RD () C:\Users\g.User-PC.002\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-19 19:04 - 2014-03-19 19:04 - 00001425 _____ () C:\Users\g.User-PC.002\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-19 19:04 - 2014-03-19 19:04 - 00000020 ___SH () C:\Users\g.User-PC.002\ntuser.ini 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Vorlagen 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Startmenü 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Netzwerkumgebung 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Lokale Einstellungen 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Eigene Dateien 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Druckumgebung 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Documents\Eigene Musik 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Documents\Eigene Bilder 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\AppData\Local\Verlauf 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\AppData\Local\Anwendungsdaten 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Anwendungsdaten 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Roaming\Adobe 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\VirtualStore 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\NVIDIA 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\LogMeIn 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 ____D () C:\Users\g.User-PC.002 2014-03-19 19:04 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\g.User-PC.002\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-03-19 19:04 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\g.User-PC.002\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-03-16 13:30 - 2014-03-16 13:30 - 00005402 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-03-16 13:30 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-03-16 13:30 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-03-16 13:30 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-03-16 13:30 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-03-15 19:47 - 2014-03-15 19:47 - 00000000 ____D () C:\Users\User\AppData\Local\Blizzard Entertainment 2014-03-15 18:02 - 2014-03-15 18:25 - 00000000 ____D () C:\Users\User\Documents\Battlefield Play4Free 2014-03-14 18:59 - 2014-03-14 18:59 - 00000000 ____D () C:\Users\User\AppData\Local\MEpochLauncher 2014-03-14 18:59 - 2014-03-14 18:59 - 00000000 ____D () C:\mods 2014-03-14 18:57 - 2014-03-14 18:57 - 01013422 _____ () C:\Users\User\Downloads\CCGLauncher.zip 2014-03-12 20:22 - 2014-03-12 20:22 - 03821624 _____ () C:\Users\User\Downloads\battlelog-web-plugins_2.3.2_131 (1).exe 2014-03-12 20:20 - 2014-03-12 20:21 - 03821624 _____ () C:\Users\User\Downloads\battlelog-web-plugins_2.3.2_131.exe 2014-03-12 19:05 - 2014-03-01 07:05 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-03-12 19:05 - 2014-03-01 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-03-12 19:05 - 2014-03-01 06:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-03-12 19:05 - 2014-03-01 05:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-03-12 19:05 - 2014-03-01 05:52 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-03-12 19:05 - 2014-03-01 05:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-03-12 19:05 - 2014-03-01 05:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-03-12 19:05 - 2014-03-01 05:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-03-12 19:05 - 2014-03-01 05:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-03-12 19:05 - 2014-03-01 05:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-03-12 19:05 - 2014-03-01 05:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-03-12 19:05 - 2014-03-01 05:32 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-03-12 19:05 - 2014-03-01 05:30 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-03-12 19:05 - 2014-03-01 05:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-03-12 19:05 - 2014-03-01 05:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-03-12 19:05 - 2014-03-01 05:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-03-12 19:05 - 2014-03-01 05:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-03-12 19:05 - 2014-03-01 04:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-03-12 19:05 - 2014-03-01 04:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-03-12 19:05 - 2014-03-01 04:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-03-12 19:05 - 2014-03-01 04:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-03-12 19:05 - 2014-03-01 04:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-03-12 19:05 - 2014-03-01 04:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-03-12 19:05 - 2014-03-01 04:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-03-12 19:05 - 2014-03-01 04:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-03-12 19:05 - 2014-03-01 04:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-03-12 19:05 - 2014-03-01 04:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-03-12 19:05 - 2014-03-01 04:35 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-03-12 19:05 - 2014-03-01 04:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-03-12 19:05 - 2014-03-01 04:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-03-12 19:05 - 2014-03-01 04:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-03-12 19:05 - 2014-03-01 04:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-03-12 19:05 - 2014-03-01 04:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-03-12 19:05 - 2014-03-01 04:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-03-12 19:05 - 2014-03-01 03:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-03-12 19:05 - 2014-03-01 03:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-03-12 19:05 - 2014-03-01 03:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-03-12 19:05 - 2014-03-01 03:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-03-12 19:05 - 2014-03-01 03:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-03-12 19:05 - 2014-03-01 03:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-03-12 19:03 - 2014-02-07 02:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-03-12 19:03 - 2014-02-04 03:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-03-12 19:03 - 2014-02-04 03:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-03-12 19:03 - 2014-02-04 03:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-03-12 19:03 - 2014-02-04 03:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-03-12 19:03 - 2014-01-29 03:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-03-12 19:03 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-03-12 19:03 - 2014-01-28 03:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-03-11 14:38 - 2014-03-11 14:39 - 00000000 ____D () C:\ProgramData\Battle.net 2014-03-11 14:35 - 2014-03-11 14:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StarCraft II 2014-03-11 14:02 - 2014-03-22 17:42 - 00000000 ____D () C:\Program Files (x86)\StarCraft II 2014-03-11 14:02 - 2014-03-14 19:55 - 00000000 ____D () C:\Users\User\Documents\StarCraft II 2014-03-11 14:02 - 2014-03-11 14:59 - 00001103 _____ () C:\Users\Public\Desktop\StarCraft II.lnk 2014-03-11 14:02 - 2014-03-11 14:59 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-03-10 19:50 - 2014-03-04 12:32 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-03-10 19:47 - 2014-03-04 15:35 - 31474976 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 25255256 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 23716640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 17755424 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 15783992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 12708128 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-03-10 19:47 - 2014-03-04 15:35 - 11636176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 11589272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 09728064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 09690424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 03143456 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 02958792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 02783008 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 02411976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433523.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 01516488 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433523.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00877856 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00863064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00846168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00832936 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00484296 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00409544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00377688 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00353504 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00333600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00174296 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-03-10 19:47 - 2014-03-04 15:35 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-03-10 19:40 - 2014-03-10 19:43 - 29141928 _____ (Oracle Corporation) C:\Users\User\Downloads\jre-7u51-windows-i586.exe 2014-03-10 19:27 - 2014-03-10 19:28 - 00301328 _____ () C:\Windows\Minidump\031014-18392-01.dmp 2014-03-09 16:03 - 2014-03-09 16:03 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-03-09 16:03 - 2014-03-09 16:03 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-03-09 16:03 - 2014-03-09 16:03 - 00000000 ____D () C:\Users\User\AppData\Local\Skype 2014-03-04 20:10 - 2014-03-25 13:45 - 00000000 ____D () C:\Users\User\Desktop\Order für FB Bilder 2014-03-02 19:23 - 2014-03-02 19:23 - 00000751 _____ () C:\Windows\DXError.log 2014-03-02 19:22 - 2014-03-02 19:22 - 00002014 _____ () C:\Users\Public\Desktop\Call of Duty(R) 4 - Modern Warfare(TM) - Mehrspieler.lnk 2014-03-02 19:22 - 2014-03-02 19:22 - 00002014 _____ () C:\Users\Public\Desktop\Call of Duty(R) 4 - Modern Warfare(TM) - Einzelspieler.lnk 2014-03-02 19:21 - 2014-03-02 19:21 - 00000331 _____ () C:\Windows\game.ini 2014-03-02 19:12 - 2014-03-02 19:12 - 00000000 ____D () C:\Program Files (x86)\Activision 2014-03-02 18:10 - 2014-03-02 18:10 - 02191843 _____ () C:\Users\User\Downloads\Call of Duty Black Ops 2 MultiHack v1.9.rar 2014-02-26 19:44 - 2014-02-26 19:47 - 00000000 ____D () C:\Users\User\Documents\ArmA 2 2014-02-26 19:44 - 2014-02-26 19:44 - 00000000 ____D () C:\ProgramData\Bohemia Interactive Studio 2014-02-26 19:13 - 2014-03-22 17:39 - 00000000 ____D () C:\Users\User\AppData\Local\ArmA 2 OA 2014-02-26 18:26 - 2014-02-26 18:26 - 00001336 _____ () C:\Users\Public\Desktop\DayZ Commander.lnk 2014-02-26 18:26 - 2014-02-26 18:26 - 00000000 ____D () C:\Users\User\AppData\Local\DayZCommander 2014-02-26 18:26 - 2014-02-26 18:26 - 00000000 ____D () C:\Program Files (x86)\Dotjosh Studios 2014-02-26 18:23 - 2014-02-26 18:23 - 02945024 _____ () C:\Users\User\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-02-26 18:17 - 2014-02-26 18:17 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive 2014-02-26 13:21 - 2014-02-26 15:40 - 00000000 ____D () C:\Users\User\AppData\Local\Ubisoft Game Launcher 2014-02-26 13:21 - 2014-02-26 14:17 - 00000000 ____D () C:\Users\User\Documents\Assassin's Creed III 2014-02-26 13:21 - 2014-02-26 13:21 - 00001205 _____ () C:\Users\User\Desktop\Uplay.lnk 2014-02-26 13:21 - 2014-02-26 13:21 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2014-02-26 13:21 - 2014-02-26 13:21 - 00000000 ____D () C:\Program Files (x86)\Ubisoft 2014-02-26 13:20 - 2014-02-26 10:37 - 03123272 _____ () C:\Windows\SysWOW64\pbsvc.exe 2014-02-25 05:14 - 2014-02-25 06:00 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Roaming\Skype 2014-02-25 05:10 - 2014-02-25 05:10 - 00064024 _____ () C:\Users\g.User-PC.001\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-25 05:10 - 2014-02-25 05:10 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Roaming\Macromedia 2014-02-25 05:10 - 2014-02-25 05:10 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Roaming\LolClient 2014-02-25 05:10 - 2014-02-25 05:10 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\Google 2014-02-25 05:07 - 2014-02-25 05:07 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Roaming\AVAST Software 2014-02-25 05:07 - 2014-02-25 05:07 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\NVIDIA Corporation 2014-02-25 05:06 - 2014-02-25 07:16 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\LogMeIn Hamachi 2014-02-25 05:06 - 2014-02-25 05:06 - 00002334 _____ () C:\Users\g.User-PC.001\Desktop\Sicherer Zahlungsverkehr.lnk 2014-02-25 05:06 - 2014-02-25 05:06 - 00001425 _____ () C:\Users\g.User-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-25 05:06 - 2014-02-25 05:06 - 00000020 ___SH () C:\Users\g.User-PC.001\ntuser.ini 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Vorlagen 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Startmenü 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Netzwerkumgebung 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Lokale Einstellungen 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Eigene Dateien 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Druckumgebung 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Documents\Eigene Musik 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Documents\Eigene Bilder 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\AppData\Local\Verlauf 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\AppData\Local\Anwendungsdaten 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Anwendungsdaten 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ___RD () C:\Users\g.User-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ___RD () C:\Users\g.User-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001\Documents\Simply Super Software 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Roaming\Adobe 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\VirtualStore 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\NVIDIA 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\LogMeIn 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001 2014-02-25 05:06 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\g.User-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-02-25 05:06 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\g.User-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-02-24 07:41 - 2014-02-24 07:41 - 00000000 ____D () C:\Users\g.User-PC.000\Documents\My Games 2014-02-24 07:41 - 2014-02-24 07:41 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\Skyrim 2014-02-24 06:50 - 2014-02-24 06:50 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\Google 2014-02-24 06:46 - 2014-02-24 08:01 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Roaming\Skype 2014-02-24 06:45 - 2014-02-24 06:45 - 00064024 _____ () C:\Users\g.User-PC.000\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-24 06:45 - 2014-02-24 06:45 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Roaming\Macromedia 2014-02-24 06:45 - 2014-02-24 06:45 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Roaming\LolClient 2014-02-24 06:44 - 2014-02-24 06:44 - 00002334 _____ () C:\Users\g.User-PC.000\Desktop\Sicherer Zahlungsverkehr.lnk 2014-02-24 06:44 - 2014-02-24 06:44 - 00000000 ____D () C:\Users\g.User-PC.000\Documents\Simply Super Software 2014-02-24 06:44 - 2014-02-24 06:44 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Roaming\AVAST Software 2014-02-24 06:44 - 2014-02-24 06:44 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\NVIDIA Corporation 2014-02-24 06:43 - 2014-02-24 06:44 - 00000000 ___RD () C:\Users\g.User-PC.000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-24 06:43 - 2014-02-24 06:44 - 00000000 ___RD () C:\Users\g.User-PC.000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-24 06:43 - 2014-02-24 06:44 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\LogMeIn Hamachi 2014-02-24 06:43 - 2014-02-24 06:43 - 00001425 _____ () C:\Users\g.User-PC.000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-24 06:43 - 2014-02-24 06:43 - 00000020 ___SH () C:\Users\g.User-PC.000\ntuser.ini 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Vorlagen 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Startmenü 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Netzwerkumgebung 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Lokale Einstellungen 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Eigene Dateien 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Druckumgebung 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Documents\Eigene Musik 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Documents\Eigene Bilder 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\AppData\Local\Verlauf 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\AppData\Local\Anwendungsdaten 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Anwendungsdaten 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Roaming\Adobe 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\VirtualStore 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\NVIDIA 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\LogMeIn 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 ____D () C:\Users\g.User-PC.000 2014-02-24 06:43 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\g.User-PC.000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-02-24 06:43 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\g.User-PC.000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance ==================== One Month Modified Files and Folders ======= 2014-03-26 13:33 - 2014-03-26 13:33 - 00015972 _____ () C:\Users\User\Downloads\FRST.txt 2014-03-26 13:33 - 2014-03-26 13:33 - 00000000 ____D () C:\FRST 2014-03-26 13:32 - 2014-03-26 13:32 - 02157056 _____ (Farbar) C:\Users\User\Downloads\FRST64.exe 2014-03-26 13:32 - 2009-07-14 05:45 - 00028128 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-03-26 13:32 - 2009-07-14 05:45 - 00028128 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-03-26 13:31 - 2014-01-02 12:16 - 00000000 ____D () C:\Users\User\AppData\Roaming\Skype 2014-03-26 13:30 - 2014-02-03 19:50 - 00000000 ____D () C:\Users\User\AppData\Roaming\Spotify 2014-03-26 13:28 - 2013-12-27 13:45 - 01056630 _____ () C:\Windows\WindowsUpdate.log 2014-03-26 13:26 - 2013-12-31 14:09 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-03-26 13:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\inetsrv 2014-03-26 13:25 - 2014-01-06 11:56 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-03-26 13:24 - 2013-12-31 14:01 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-26 13:24 - 2009-07-14 05:51 - 00073216 _____ () C:\Windows\setupact.log 2014-03-26 13:23 - 2013-12-27 14:10 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-03-26 13:23 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-03-26 06:59 - 2014-03-24 18:11 - 00000000 ____D () C:\Users\User\AppData\Local\Battle.net 2014-03-26 06:48 - 2013-12-31 14:01 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-25 19:13 - 2010-11-21 04:47 - 00193454 _____ () C:\Windows\PFRO.log 2014-03-25 19:11 - 2014-03-25 19:11 - 00000000 __SHD () C:\found.001 2014-03-25 14:17 - 2014-03-25 14:17 - 00006800 ____N () C:\bootsqm.dat 2014-03-25 14:16 - 2014-03-25 14:16 - 00000000 __SHD () C:\found.000 2014-03-25 14:13 - 2014-01-05 20:59 - 00000000 ____D () C:\ProgramData\YTD Video Downloader 2014-03-25 13:47 - 2014-03-25 13:46 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-03-25 13:46 - 2014-03-25 13:46 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-03-25 13:46 - 2014-01-06 12:15 - 00001106 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-03-25 13:46 - 2014-01-06 12:15 - 00000000 ____D () C:\Users\User\AppData\Roaming\Malwarebytes 2014-03-25 13:46 - 2014-01-06 12:15 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-03-25 13:45 - 2014-03-25 13:45 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\User\Downloads\mbam-setup-2.0.0.1000.exe 2014-03-25 13:45 - 2014-03-04 20:10 - 00000000 ____D () C:\Users\User\Desktop\Order für FB Bilder 2014-03-25 13:33 - 2014-02-09 19:32 - 00000000 ____D () C:\Program Files\CyberGhost 5 2014-03-24 19:45 - 2014-03-24 19:23 - 00000000 ____D () C:\Program Files (x86)\Diablo III 2014-03-24 19:36 - 2014-03-24 18:11 - 00000000 ____D () C:\Users\User\AppData\Roaming\Battle.net 2014-03-24 19:31 - 2014-03-24 19:31 - 00001162 _____ () C:\Users\Public\Desktop\Diablo III.lnk 2014-03-24 19:29 - 2014-01-01 01:00 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-03-24 18:11 - 2014-03-24 18:11 - 00001150 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-03-24 18:11 - 2014-03-24 18:11 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-03-24 18:06 - 2014-03-24 18:05 - 06018744 _____ (Blizzard Entertainment) C:\Users\User\Downloads\Diablo-III-Setup-deDE.exe 2014-03-24 15:11 - 2014-03-24 15:11 - 00000127 _____ () C:\Users\User\Desktop\Elo.txt 2014-03-24 14:52 - 2013-12-31 14:09 - 00625248 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys 2014-03-24 14:52 - 2013-12-31 14:09 - 00115296 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys 2014-03-24 14:36 - 2014-02-03 19:52 - 00000000 ____D () C:\Users\User\AppData\Local\Spotify 2014-03-24 06:37 - 2014-03-23 16:00 - 00047935 _____ () C:\Windows\iis7.log 2014-03-24 06:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\inetsrv 2014-03-23 17:11 - 2014-03-23 17:11 - 00000000 ____D () C:\Users\User\Documents\Razer 2014-03-23 17:11 - 2014-03-23 17:11 - 00000000 ____D () C:\Users\User\AppData\Local\Razer_Inc 2014-03-23 17:09 - 2014-03-23 17:09 - 00002129 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-03-23 17:09 - 2014-03-23 17:09 - 00000000 ____D () C:\Users\User\AppData\Local\Razer 2014-03-23 17:09 - 2014-03-23 17:09 - 00000000 ____D () C:\ProgramData\Razer 2014-03-23 17:09 - 2014-03-23 17:09 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-03-23 17:06 - 2014-03-23 17:01 - 41954352 _____ (Razer Inc. ) C:\Users\User\Downloads\RazerGameBoosterSetup_4.2.45.0.exe 2014-03-23 16:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-03-23 16:02 - 2014-03-23 16:02 - 00930952 _____ (CNET Download.com) C:\Users\User\Downloads\cbsidlm-cbsi183-SG_TCP_Optimizer-ORG-10415840.exe 2014-03-23 16:01 - 2013-12-31 14:48 - 01744770 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-03-23 16:01 - 2011-04-12 08:43 - 00793436 _____ () C:\Windows\system32\perfh007.dat 2014-03-23 16:01 - 2011-04-12 08:43 - 00184188 _____ () C:\Windows\system32\perfc007.dat 2014-03-23 16:01 - 2009-07-14 06:13 - 01840484 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-03-23 15:59 - 2014-03-23 15:59 - 00000000 ____D () C:\Windows\SysWOW64\BestPractices 2014-03-23 15:59 - 2014-03-23 15:59 - 00000000 ____D () C:\Windows\system32\msmq 2014-03-23 15:59 - 2014-03-23 15:59 - 00000000 ____D () C:\Windows\system32\BestPractices 2014-03-23 15:59 - 2014-03-23 15:59 - 00000000 ____D () C:\inetpub 2014-03-22 19:35 - 2013-12-31 15:04 - 00281392 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-03-22 19:35 - 2013-12-31 14:41 - 00281392 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-03-22 19:31 - 2014-03-22 19:31 - 00001951 _____ () C:\Users\User\Desktop\The Elder Scrolls V Skyrim.lnk 2014-03-22 18:16 - 2013-12-31 14:41 - 00214392 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-03-22 18:09 - 2013-12-31 16:44 - 00000000 ____D () C:\ProgramData\Origin 2014-03-22 18:09 - 2013-12-31 16:44 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-03-22 17:42 - 2014-03-11 14:02 - 00000000 ____D () C:\Program Files (x86)\StarCraft II 2014-03-22 17:39 - 2014-02-26 19:13 - 00000000 ____D () C:\Users\User\AppData\Local\ArmA 2 OA 2014-03-22 17:27 - 2014-01-01 17:32 - 00000000 ____D () C:\Users\User\AppData\Roaming\.minecraft 2014-03-22 15:43 - 2014-03-22 15:43 - 00000000 ____D () C:\Program Files\cFosSpeed 2014-03-22 15:42 - 2014-03-22 15:42 - 04820216 _____ () C:\Users\User\Downloads\cfosspeed-v904.exe 2014-03-22 15:42 - 2014-03-22 15:42 - 00000000 ____D () C:\Users\User\AppData\Local\cFos 2014-03-22 15:42 - 2014-03-22 15:42 - 00000000 ____D () C:\ProgramData\cFos 2014-03-22 13:20 - 2013-12-31 16:05 - 00000000 ____D () C:\Users\User\AppData\Roaming\TS3Client 2014-03-21 08:23 - 2014-01-21 13:59 - 00000000 ____D () C:\Users\Gast\AppData\Local\LogMeIn Hamachi 2014-03-21 07:00 - 2014-03-21 07:00 - 00000000 ____D () C:\Users\Admin\AppData\Local\Google 2014-03-21 06:57 - 2014-03-21 06:57 - 00064024 _____ () C:\Users\Admin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-03-21 06:56 - 2014-03-21 06:56 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Macromedia 2014-03-21 06:56 - 2014-03-21 06:56 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\LolClient 2014-03-21 06:56 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\AppData\Local\LogMeIn Hamachi 2014-03-21 06:55 - 2014-03-21 06:55 - 00000000 ____D () C:\Users\Admin\AppData\Local\NVIDIA Corporation 2014-03-21 06:54 - 2014-03-21 06:54 - 00002334 _____ () C:\Users\Admin\Desktop\Sicherer Zahlungsverkehr.lnk 2014-03-21 06:54 - 2014-03-21 06:54 - 00001425 _____ () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\Documents\Simply Super Software 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\AVAST Software 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Adobe 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\AppData\Local\VirtualStore 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\AppData\Local\NVIDIA 2014-03-21 06:54 - 2014-03-21 06:54 - 00000000 ____D () C:\Users\Admin\AppData\Local\LogMeIn 2014-03-21 06:54 - 2014-03-21 06:53 - 00000000 ____D () C:\Users\Admin 2014-03-21 06:53 - 2014-03-21 06:53 - 00000020 ___SH () C:\Users\Admin\ntuser.ini 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Vorlagen 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Startmenü 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Netzwerkumgebung 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Lokale Einstellungen 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Eigene Dateien 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Druckumgebung 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Musik 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Bilder 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Verlauf 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Anwendungsdaten 2014-03-21 06:53 - 2014-03-21 06:53 - 00000000 _SHDL () C:\Users\Admin\Anwendungsdaten 2014-03-20 07:12 - 2014-03-20 05:50 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Roaming\Skype 2014-03-20 05:50 - 2014-03-20 05:50 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\Skype 2014-03-20 05:11 - 2014-03-20 05:11 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Roaming\Macromedia 2014-03-20 05:11 - 2014-03-20 05:11 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Roaming\LolClient 2014-03-20 05:10 - 2014-03-19 19:04 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\LogMeIn Hamachi 2014-03-19 19:07 - 2014-03-19 19:07 - 00064024 _____ () C:\Users\g.User-PC.002\AppData\Local\GDIPFONTCACHEV1.DAT 2014-03-19 19:07 - 2014-03-19 19:07 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\Google 2014-03-19 19:05 - 2014-03-19 19:05 - 00002334 _____ () C:\Users\g.User-PC.002\Desktop\Sicherer Zahlungsverkehr.lnk 2014-03-19 19:05 - 2014-03-19 19:05 - 00000000 ____D () C:\Users\g.User-PC.002\Documents\Simply Super Software 2014-03-19 19:05 - 2014-03-19 19:05 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Roaming\AVAST Software 2014-03-19 19:05 - 2014-03-19 19:05 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\NVIDIA Corporation 2014-03-19 19:05 - 2014-03-19 19:04 - 00000000 ___RD () C:\Users\g.User-PC.002\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-19 19:05 - 2014-03-19 19:04 - 00000000 ___RD () C:\Users\g.User-PC.002\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-19 19:04 - 2014-03-19 19:04 - 00001425 _____ () C:\Users\g.User-PC.002\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-19 19:04 - 2014-03-19 19:04 - 00000020 ___SH () C:\Users\g.User-PC.002\ntuser.ini 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Vorlagen 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Startmenü 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Netzwerkumgebung 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Lokale Einstellungen 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Eigene Dateien 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Druckumgebung 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Documents\Eigene Musik 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Documents\Eigene Bilder 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\AppData\Local\Verlauf 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\AppData\Local\Anwendungsdaten 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 _SHDL () C:\Users\g.User-PC.002\Anwendungsdaten 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Roaming\Adobe 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\VirtualStore 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\NVIDIA 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 ____D () C:\Users\g.User-PC.002\AppData\Local\LogMeIn 2014-03-19 19:04 - 2014-03-19 19:04 - 00000000 ____D () C:\Users\g.User-PC.002 2014-03-16 16:04 - 2013-12-31 16:04 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-03-16 13:30 - 2014-03-16 13:30 - 00005402 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-03-16 13:30 - 2014-01-01 17:28 - 00000000 ____D () C:\ProgramData\Oracle 2014-03-16 13:30 - 2014-01-01 17:28 - 00000000 ____D () C:\Program Files (x86)\Java 2014-03-15 19:47 - 2014-03-15 19:47 - 00000000 ____D () C:\Users\User\AppData\Local\Blizzard Entertainment 2014-03-15 18:25 - 2014-03-15 18:02 - 00000000 ____D () C:\Users\User\Documents\Battlefield Play4Free 2014-03-15 18:21 - 2013-12-31 14:41 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-03-15 18:06 - 2013-12-31 15:03 - 00000000 ____D () C:\Users\User\AppData\Local\PunkBuster 2014-03-15 16:53 - 2013-12-31 14:02 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-03-15 16:46 - 2013-12-31 14:07 - 00000000 ____D () C:\Program Files (x86)\EA Games 2014-03-14 20:00 - 2014-01-08 15:16 - 00000000 ____D () C:\Users\User\Desktop\Neuer Ordner (2) 2014-03-14 19:55 - 2014-03-11 14:02 - 00000000 ____D () C:\Users\User\Documents\StarCraft II 2014-03-14 19:52 - 2014-01-06 12:00 - 00002010 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-03-14 19:52 - 2014-01-01 19:23 - 00000915 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-03-14 19:52 - 2013-12-31 16:04 - 00001011 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2014-03-14 18:59 - 2014-03-14 18:59 - 00000000 ____D () C:\Users\User\AppData\Local\MEpochLauncher 2014-03-14 18:59 - 2014-03-14 18:59 - 00000000 ____D () C:\mods 2014-03-14 18:57 - 2014-03-14 18:57 - 01013422 _____ () C:\Users\User\Downloads\CCGLauncher.zip 2014-03-13 13:34 - 2009-07-14 05:45 - 00294712 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-03-12 20:22 - 2014-03-12 20:22 - 03821624 _____ () C:\Users\User\Downloads\battlelog-web-plugins_2.3.2_131 (1).exe 2014-03-12 20:21 - 2014-03-12 20:20 - 03821624 _____ () C:\Users\User\Downloads\battlelog-web-plugins_2.3.2_131.exe 2014-03-12 20:21 - 2014-01-01 11:13 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins 2014-03-12 19:07 - 2014-01-04 09:16 - 00000000 ____D () C:\Windows\system32\MRT 2014-03-12 19:06 - 2014-01-04 09:16 - 90015360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-03-12 19:04 - 2013-12-31 14:49 - 00000000 ____D () C:\Users\User\AppData\Local\PMB Files 2014-03-12 19:04 - 2013-12-31 14:49 - 00000000 ____D () C:\ProgramData\PMB Files 2014-03-11 14:59 - 2014-03-11 14:02 - 00001103 _____ () C:\Users\Public\Desktop\StarCraft II.lnk 2014-03-11 14:59 - 2014-03-11 14:02 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-03-11 14:39 - 2014-03-11 14:38 - 00000000 ____D () C:\ProgramData\Battle.net 2014-03-11 14:36 - 2014-03-11 14:35 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StarCraft II 2014-03-10 21:03 - 2014-01-01 19:23 - 00000000 ____D () C:\Users\User\AppData\Roaming\vlc 2014-03-10 19:50 - 2013-12-27 14:09 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-03-10 19:43 - 2014-03-10 19:40 - 29141928 _____ (Oracle Corporation) C:\Users\User\Downloads\jre-7u51-windows-i586.exe 2014-03-10 19:28 - 2014-03-10 19:27 - 00301328 _____ () C:\Windows\Minidump\031014-18392-01.dmp 2014-03-10 19:27 - 2014-01-06 11:57 - 489218716 _____ () C:\Windows\MEMORY.DMP 2014-03-10 19:27 - 2014-01-06 11:57 - 00000000 ____D () C:\Windows\Minidump 2014-03-09 16:03 - 2014-03-09 16:03 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-03-09 16:03 - 2014-03-09 16:03 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-03-09 16:03 - 2014-03-09 16:03 - 00000000 ____D () C:\Users\User\AppData\Local\Skype 2014-03-09 16:03 - 2014-01-02 12:16 - 00000000 ____D () C:\ProgramData\Skype 2014-03-05 09:26 - 2014-03-25 13:46 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-03-05 09:26 - 2014-03-25 13:46 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-03-05 09:26 - 2014-01-06 12:15 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-03-04 15:35 - 2014-03-10 19:47 - 31474976 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 25255256 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 23716640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 17755424 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 15783992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 12708128 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-03-04 15:35 - 2014-03-10 19:47 - 11636176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 11589272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 09728064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 09690424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 03143456 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 02958792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 02783008 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 02411976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433523.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 01516488 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433523.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00877856 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00863064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00846168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00832936 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00484296 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00409544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00377688 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00353504 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00333600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00174296 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-03-04 15:35 - 2014-03-10 19:47 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-03-04 15:35 - 2013-12-27 14:09 - 18302384 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-03-04 15:35 - 2013-12-27 14:09 - 14709720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-03-04 15:35 - 2013-12-27 14:09 - 03093280 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-03-04 15:35 - 2013-12-27 14:09 - 02715264 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-03-04 15:35 - 2013-12-27 14:09 - 00947808 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-03-04 15:35 - 2013-12-27 14:09 - 00062408 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-03-04 15:35 - 2013-12-27 14:09 - 00054216 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-03-04 15:35 - 2013-12-27 14:09 - 00024544 _____ () C:\Windows\system32\nvinfo.pb 2014-03-04 14:06 - 2013-12-27 14:10 - 06714312 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-03-04 14:06 - 2013-12-27 14:10 - 03497816 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-03-04 14:05 - 2013-12-27 14:10 - 03649185 _____ () C:\Windows\system32\nvcoproc.bin 2014-03-04 14:05 - 2013-12-27 14:10 - 02558808 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-03-04 14:05 - 2013-12-27 14:10 - 00922968 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-03-04 14:05 - 2013-12-27 14:10 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-03-04 14:05 - 2013-12-27 14:10 - 00064968 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-03-04 13:24 - 2009-07-14 06:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-03-04 12:32 - 2014-03-10 19:50 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-03-02 19:23 - 2014-03-02 19:23 - 00000751 _____ () C:\Windows\DXError.log 2014-03-02 19:23 - 2014-01-01 11:10 - 00398837 _____ () C:\Windows\DirectX.log 2014-03-02 19:22 - 2014-03-02 19:22 - 00002014 _____ () C:\Users\Public\Desktop\Call of Duty(R) 4 - Modern Warfare(TM) - Mehrspieler.lnk 2014-03-02 19:22 - 2014-03-02 19:22 - 00002014 _____ () C:\Users\Public\Desktop\Call of Duty(R) 4 - Modern Warfare(TM) - Einzelspieler.lnk 2014-03-02 19:21 - 2014-03-02 19:21 - 00000331 _____ () C:\Windows\game.ini 2014-03-02 19:21 - 2013-12-27 13:57 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-03-02 19:12 - 2014-03-02 19:12 - 00000000 ____D () C:\Program Files (x86)\Activision 2014-03-02 19:10 - 2013-12-27 13:45 - 00000000 ____D () C:\Users\User\AppData\Local\VirtualStore 2014-03-02 18:10 - 2014-03-02 18:10 - 02191843 _____ () C:\Users\User\Downloads\Call of Duty Black Ops 2 MultiHack v1.9.rar 2014-03-01 07:05 - 2014-03-12 19:05 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-03-01 06:17 - 2014-03-12 19:05 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-03-01 06:16 - 2014-03-12 19:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-03-01 05:58 - 2014-03-12 19:05 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-03-01 05:52 - 2014-03-12 19:05 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-03-01 05:51 - 2014-03-12 19:05 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-03-01 05:42 - 2014-03-12 19:05 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-03-01 05:40 - 2014-03-12 19:05 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-03-01 05:37 - 2014-03-12 19:05 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-03-01 05:33 - 2014-03-12 19:05 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-03-01 05:33 - 2014-03-12 19:05 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-03-01 05:32 - 2014-03-12 19:05 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-03-01 05:30 - 2014-03-12 19:05 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-03-01 05:23 - 2014-03-12 19:05 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-03-01 05:17 - 2014-03-12 19:05 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-03-01 05:11 - 2014-03-12 19:05 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-03-01 05:02 - 2014-03-12 19:05 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-03-01 04:54 - 2014-03-12 19:05 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-03-01 04:52 - 2014-03-12 19:05 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-03-01 04:51 - 2014-03-12 19:05 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-03-01 04:47 - 2014-03-12 19:05 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-03-01 04:43 - 2014-03-12 19:05 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-03-01 04:43 - 2014-03-12 19:05 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-03-01 04:42 - 2014-03-12 19:05 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-03-01 04:40 - 2014-03-12 19:05 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-03-01 04:38 - 2014-03-12 19:05 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-03-01 04:37 - 2014-03-12 19:05 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-03-01 04:35 - 2014-03-12 19:05 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-03-01 04:18 - 2014-03-12 19:05 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-03-01 04:16 - 2014-03-12 19:05 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-03-01 04:14 - 2014-03-12 19:05 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-03-01 04:10 - 2014-03-12 19:05 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-03-01 04:03 - 2014-03-12 19:05 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-03-01 04:00 - 2014-03-12 19:05 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-03-01 03:57 - 2014-03-12 19:05 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-03-01 03:38 - 2014-03-12 19:05 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-03-01 03:32 - 2014-03-12 19:05 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-03-01 03:27 - 2014-03-12 19:05 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-03-01 03:25 - 2014-03-12 19:05 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-03-01 03:25 - 2014-03-12 19:05 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-26 19:47 - 2014-02-26 19:44 - 00000000 ____D () C:\Users\User\Documents\ArmA 2 2014-02-26 19:44 - 2014-02-26 19:44 - 00000000 ____D () C:\ProgramData\Bohemia Interactive Studio 2014-02-26 18:26 - 2014-02-26 18:26 - 00001336 _____ () C:\Users\Public\Desktop\DayZ Commander.lnk 2014-02-26 18:26 - 2014-02-26 18:26 - 00000000 ____D () C:\Users\User\AppData\Local\DayZCommander 2014-02-26 18:26 - 2014-02-26 18:26 - 00000000 ____D () C:\Program Files (x86)\Dotjosh Studios 2014-02-26 18:23 - 2014-02-26 18:23 - 02945024 _____ () C:\Users\User\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-02-26 18:17 - 2014-02-26 18:17 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive 2014-02-26 15:40 - 2014-02-26 13:21 - 00000000 ____D () C:\Users\User\AppData\Local\Ubisoft Game Launcher 2014-02-26 14:17 - 2014-02-26 13:21 - 00000000 ____D () C:\Users\User\Documents\Assassin's Creed III 2014-02-26 13:21 - 2014-02-26 13:21 - 00001205 _____ () C:\Users\User\Desktop\Uplay.lnk 2014-02-26 13:21 - 2014-02-26 13:21 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2014-02-26 13:21 - 2014-02-26 13:21 - 00000000 ____D () C:\Program Files (x86)\Ubisoft 2014-02-26 10:37 - 2014-02-26 13:20 - 03123272 _____ () C:\Windows\SysWOW64\pbsvc.exe 2014-02-25 07:16 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\LogMeIn Hamachi 2014-02-25 06:00 - 2014-02-25 05:14 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Roaming\Skype 2014-02-25 05:10 - 2014-02-25 05:10 - 00064024 _____ () C:\Users\g.User-PC.001\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-25 05:10 - 2014-02-25 05:10 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Roaming\Macromedia 2014-02-25 05:10 - 2014-02-25 05:10 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Roaming\LolClient 2014-02-25 05:10 - 2014-02-25 05:10 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\Google 2014-02-25 05:07 - 2014-02-25 05:07 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Roaming\AVAST Software 2014-02-25 05:07 - 2014-02-25 05:07 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\NVIDIA Corporation 2014-02-25 05:06 - 2014-02-25 05:06 - 00002334 _____ () C:\Users\g.User-PC.001\Desktop\Sicherer Zahlungsverkehr.lnk 2014-02-25 05:06 - 2014-02-25 05:06 - 00001425 _____ () C:\Users\g.User-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-25 05:06 - 2014-02-25 05:06 - 00000020 ___SH () C:\Users\g.User-PC.001\ntuser.ini 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Vorlagen 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Startmenü 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Netzwerkumgebung 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Lokale Einstellungen 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Eigene Dateien 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Druckumgebung 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Documents\Eigene Musik 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Documents\Eigene Bilder 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\AppData\Local\Verlauf 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\AppData\Local\Anwendungsdaten 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 _SHDL () C:\Users\g.User-PC.001\Anwendungsdaten 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ___RD () C:\Users\g.User-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ___RD () C:\Users\g.User-PC.001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001\Documents\Simply Super Software 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Roaming\Adobe 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\VirtualStore 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\NVIDIA 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001\AppData\Local\LogMeIn 2014-02-25 05:06 - 2014-02-25 05:06 - 00000000 ____D () C:\Users\g.User-PC.001 2014-02-24 08:01 - 2014-02-24 06:46 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Roaming\Skype 2014-02-24 07:41 - 2014-02-24 07:41 - 00000000 ____D () C:\Users\g.User-PC.000\Documents\My Games 2014-02-24 07:41 - 2014-02-24 07:41 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\Skyrim 2014-02-24 06:50 - 2014-02-24 06:50 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\Google 2014-02-24 06:45 - 2014-02-24 06:45 - 00064024 _____ () C:\Users\g.User-PC.000\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-24 06:45 - 2014-02-24 06:45 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Roaming\Macromedia 2014-02-24 06:45 - 2014-02-24 06:45 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Roaming\LolClient 2014-02-24 06:44 - 2014-02-24 06:44 - 00002334 _____ () C:\Users\g.User-PC.000\Desktop\Sicherer Zahlungsverkehr.lnk 2014-02-24 06:44 - 2014-02-24 06:44 - 00000000 ____D () C:\Users\g.User-PC.000\Documents\Simply Super Software 2014-02-24 06:44 - 2014-02-24 06:44 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Roaming\AVAST Software 2014-02-24 06:44 - 2014-02-24 06:44 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\NVIDIA Corporation 2014-02-24 06:44 - 2014-02-24 06:43 - 00000000 ___RD () C:\Users\g.User-PC.000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-24 06:44 - 2014-02-24 06:43 - 00000000 ___RD () C:\Users\g.User-PC.000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-24 06:44 - 2014-02-24 06:43 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\LogMeIn Hamachi 2014-02-24 06:43 - 2014-02-24 06:43 - 00001425 _____ () C:\Users\g.User-PC.000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-24 06:43 - 2014-02-24 06:43 - 00000020 ___SH () C:\Users\g.User-PC.000\ntuser.ini 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Vorlagen 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Startmenü 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Netzwerkumgebung 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Lokale Einstellungen 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Eigene Dateien 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Druckumgebung 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Documents\Eigene Musik 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Documents\Eigene Bilder 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\AppData\Local\Verlauf 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\AppData\Local\Anwendungsdaten 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 _SHDL () C:\Users\g.User-PC.000\Anwendungsdaten 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Roaming\Adobe 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\VirtualStore 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\NVIDIA 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 ____D () C:\Users\g.User-PC.000\AppData\Local\LogMeIn 2014-02-24 06:43 - 2014-02-24 06:43 - 00000000 ____D () C:\Users\g.User-PC.000 Some content of TEMP: ==================== C:\Users\De\AppData\Local\Temp\nvSCPAPI.dll C:\Users\De\AppData\Local\Temp\nvStInst.exe C:\Users\User\AppData\Local\Temp\jansi-32-git-Bukkit-1.6.4-R2.0-26-g31d7c5f-b2943jnks.dll C:\Users\User\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\nvSCPAPI.dll C:\Users\User\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\User\AppData\Local\Temp\nvStInst.exe C:\Users\User\AppData\Local\Temp\sfamcc00001.dll C:\Users\User\AppData\Local\Temp\sfamcc00002.dll C:\Users\User\AppData\Local\Temp\sfextra.dll C:\Users\User\AppData\Local\Temp\sonarinst.exe C:\Users\User\AppData\Local\Temp\swt-win32-3349.dll C:\Users\User\AppData\Local\Temp\uninstall_flash_player.exe C:\Users\User\AppData\Local\Temp\_is5C23.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-03-22 14:23 ==================== End Of Log ============================ [/CODE] Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-03-2014 Ran by User at 2014-03-26 13:34:39 Running from C:\Users\User\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installed Programs ====================== µTorrent (HKCU\...\uTorrent) (Version: 3.3.2.30416 - BitTorrent Inc.) Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.44 - Adobe Systems Incorporated) Aiseesoft AVCHD Video Konverter 6.2.16 (HKLM-x32\...\{160B528D-725A-45d3-B98B-53ADA7E118AF}_is1) (Version: - ) Alle meine Passworte 4.13 (HKLM-x32\...\AllemeinePassworte) (Version: - Mirko Böer) Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive) Assassin’s Creed® III (HKLM-x32\...\Steam App 208480) (Version: - Ubisoft Montreal) avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2011 - Avast Software) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.2.0.0 - Electronic Arts) Battlefield Heroes (HKLM-x32\...\{8DC910CD-8EE3-4ffc-A4EB-9B02701059C4}) (Version: - EA Digital illusions) Battlefield Play4Free (HKLM-x32\...\{87686C21-8A15-4b4d-A3F1-11141D9BE094}) (Version: - EA Digital illusions) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.2 - EA Digital Illusions CE AB) BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - ) Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.00.0000 - Activision) Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.00.0000 - Activision) Hidden Call of Duty: Black Ops II - Multiplayer (HKLM-x32\...\Steam App 202990) (Version: - ) Call of Duty: Modern Warfare 3 - Multiplayer (HKLM-x32\...\Steam App 42690) (Version: - Infinity Ward) Camtasia Studio 7 (HKLM-x32\...\{DE042823-C359-4B87-B66B-308057E8B6AF}) (Version: 7.0.1 - TechSmith Corporation) CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.2.4478 - CDBurnerXP) cFosSpeed v9.04 (HKLM\...\cFosSpeed) (Version: 9.04 - cFos Software GmbH, Bonn) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) DVDFab 8.2.2.7 (06/02/2013) Qt (HKLM-x32\...\DVDFab 8 Qt_is1) (Version: - Fengtao Software Inc.) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Free Hide IP (HKLM-x32\...\FreeHideIP) (Version: 3.9.3.6 - ) GeForce Experience NvStream Client Components (Version: 1.6.28 - NVIDIA Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.154 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.5.235 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}) (Version: 14.0.0.4651 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 14.0.0.4651 - Kaspersky Lab) Hidden K-Lite Codec Pack 6.0.4 (Basic) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 6.0.4 - ) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden LOLReplay (HKLM-x32\...\LOLReplay) (Version: 0.8.5.2 - www.leaguereplays.com) Malwarebytes Anti-Malware Version 2.00.0.1000 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.00.0.1000 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft_VC100_CRT_x86 (HKLM-x32\...\{6FDDB201-2CA0-42BD-973F-7B2C4A61EA3F}) (Version: 1.0.0 - Microsoft) No-IP DUC (HKLM-x32\...\NoIPDUC) (Version: 4.0.1 - Vitalwerks Internet Solutions LLC) NVIDIA 3D Vision Controller-Treiber 335.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 335.21 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 335.23 - NVIDIA Corporation) NVIDIA GeForce Experience 1.8.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.8.2 - NVIDIA Corporation) NVIDIA Grafiktreiber 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 335.23 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.147.1067 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA ShadowPlay 11.10.11 (Version: 11.10.11 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3523 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 335.23 (Version: 335.23 - NVIDIA Corporation) Hidden NVIDIA Update 11.10.11 (Version: 11.10.11 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 11.10.11 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.20 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.20 - NVIDIA Corporation) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) ophcrack 3.6.0 (HKLM-x32\...\ophcrack) (Version: 3.6.0 - OS Objectif Sécurité SA) Origin (HKLM-x32\...\Origin) (Version: 9.3.11.2762 - Electronic Arts, Inc.) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.) PlanetSide 2 (HKCU\...\SOE-PlanetSide 2 PSG) (Version: 1.0.3.183 - Sony Online Entertainment) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.990 - Even Balance, Inc.) Razer Game Booster (HKLM-x32\...\Razer Game Booster_is1) (Version: 4.2.45.0 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.65.1025.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6767 - Realtek Semiconductor Corp.) SHIELD Streaming (Version: 1.7.306 - NVIDIA Corporation) Hidden Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spotify (HKCU\...\Spotify) (Version: 0.9.7.16.g4b197456 - Spotify AB) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH) TmUnitedForever (HKLM-x32\...\TmUnitedForever_is1) (Version: - Nadeo) Trojan Remover 6.8.8 (HKLM-x32\...\Trojan Remover_is1) (Version: 6.8.8 - Simply Super Software) Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft) VLC media player 2.1.1 (HKLM\...\VLC media player) (Version: 2.1.1 - VideoLAN) WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) XSplit Broadcaster (HKLM-x32\...\{395B4656-8D3B-4586-BC07-E06E679C5E99}) (Version: 1.3.1402.2002 - SplitMediaLabs) YouTube Song Downloader (HKLM-x32\...\{4281435C-AD1D-4C8A-B9C0-3961C11EF142}_is1) (Version: 8.2 - Abelssoft) YTD Video Downloader 4.7.2 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 4.7.2 - GreenTree Applications SRL) ==================== Restore Points ========================= 16-03-2014 12:29:58 Installed Java 7 Update 51 18-03-2014 13:43:15 Windows Update 21-03-2014 17:10:37 Windows Update 22-03-2014 14:43:33 Gerätetreiber-Paketinstallation: cFos Software GmbH Netzwerkdienst 23-03-2014 14:59:29 Windows Modules Installer 23-03-2014 19:13:23 Windows Update 25-03-2014 12:33:44 Removed LogMeIn Hamachi ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {22E16A47-A361-42B2-A9F3-634E0DE171EE} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-01-06] (AVAST Software) Task: {38A760E7-638D-4C2C-88AA-E2F64D2B7A28} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-31] (Google Inc.) Task: {72F580D2-01CB-4714-8503-AD499BA31BA0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-31] (Google Inc.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-12-31 14:41 - 2014-03-15 18:21 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-06-12 18:11 - 2013-12-31 14:57 - 01294336 _____ () C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe 2013-12-31 14:58 - 2014-03-19 17:05 - 05325152 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.204\deploy\LoLLauncher.exe 2013-12-31 15:30 - 2013-12-31 15:30 - 00074752 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.77\deploy\LolClient.exe 2013-12-31 17:40 - 2014-03-18 15:56 - 16383840 _____ () C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.14\deploy\League of Legends.exe 2014-03-26 06:35 - 2014-03-25 22:24 - 02189312 _____ () C:\Program Files\AVAST Software\Avast\defs\14032501\algo.dll 2014-03-26 13:27 - 2014-03-26 10:30 - 02189312 _____ () C:\Program Files\AVAST Software\Avast\defs\14032601\algo.dll 2013-06-17 12:35 - 2013-06-17 12:35 - 00478400 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\dblite.dll 2013-05-08 14:52 - 2013-05-08 14:52 - 01270464 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\kpcengine.2.3.dll 2014-01-06 11:55 - 2014-01-06 11:55 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2013-12-27 14:00 - 2012-06-25 10:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2014-03-15 16:53 - 2014-03-15 01:50 - 00051016 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\chrome_elf.dll 2014-03-15 16:53 - 2014-03-15 01:50 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\libglesv2.dll 2014-03-15 16:53 - 2014-03-15 01:50 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\libegl.dll 2014-03-15 16:53 - 2014-03-15 01:50 - 04061000 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\pdf.dll 2014-03-15 16:53 - 2014-03-15 01:50 - 00394568 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\ppGoogleNaClPluginChrome.dll 2014-03-15 16:53 - 2014-03-15 01:50 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\ffmpegsumo.dll 2013-12-31 14:59 - 2014-03-19 17:05 - 00265056 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.204\deploy\RiotLauncher.dll 2013-12-31 17:40 - 2014-03-18 15:56 - 00276320 _____ () C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.14\deploy\RiotLauncher.dll 2013-12-31 17:40 - 2014-03-19 17:05 - 00380768 _____ () C:\Riot Games\League of Legends\RADS\RiotRadsIO.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (03/26/2014 01:26:15 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/26/2014 06:32:13 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/25/2014 07:14:45 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/25/2014 03:53:42 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (User: ) Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008] Error: (03/25/2014 02:46:01 PM) (Source: Application Hang) (User: ) Description: Programm rads_user_kernel.exe, Version 0.0.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 9fc Startzeit: 01cf48305d29b343 Endzeit: 1 Anwendungspfad: C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe Berichts-ID: cb8999aa-b423-11e3-ad69-d850e641725c Error: (03/25/2014 02:44:03 PM) (Source: Application Hang) (User: ) Description: Programm Explorer.EXE, Version 6.1.7601.17567 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 9c8 Startzeit: 01cf482cbeb82155 Endzeit: 0 Anwendungspfad: C:\Windows\Explorer.EXE Berichts-ID: 7f865467-b423-11e3-ad69-d850e641725c Error: (03/25/2014 02:19:56 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/25/2014 01:30:36 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: NvBackend.exe, Version: 11.10.11.1, Zeitstempel: 0x52ddc011 Name des fehlerhaften Moduls: nvspcap.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x52dde0cc Ausnahmecode: 0xc0000005 Fehleroffset: 0x1000c292 ID des fehlerhaften Prozesses: 0x940 Startzeit der fehlerhaften Anwendung: 0xNvBackend.exe0 Pfad der fehlerhaften Anwendung: NvBackend.exe1 Pfad des fehlerhaften Moduls: NvBackend.exe2 Berichtskennung: NvBackend.exe3 Error: (03/25/2014 01:29:53 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: NvBackend.exe, Version: 11.10.11.1, Zeitstempel: 0x52ddc011 Name des fehlerhaften Moduls: nvspcap.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x52dde0cc Ausnahmecode: 0xc0000005 Fehleroffset: 0x100c9860 ID des fehlerhaften Prozesses: 0x940 Startzeit der fehlerhaften Anwendung: 0xNvBackend.exe0 Pfad der fehlerhaften Anwendung: NvBackend.exe1 Pfad des fehlerhaften Moduls: NvBackend.exe2 Berichtskennung: NvBackend.exe3 Error: (03/25/2014 01:28:50 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (03/26/2014 01:24:48 PM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: bycyfro Error: (03/26/2014 01:22:39 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (03/26/2014 01:22:32 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (03/26/2014 01:21:43 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (03/26/2014 01:21:37 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (03/26/2014 01:20:54 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (03/26/2014 01:20:49 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (03/26/2014 01:20:43 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (03/26/2014 01:20:37 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (03/26/2014 01:20:10 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Microsoft Office Sessions: ========================= Error: (03/26/2014 01:26:15 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/26/2014 06:32:13 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/25/2014 07:14:45 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/25/2014 03:53:42 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe)(User: ) Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008] Error: (03/25/2014 02:46:01 PM) (Source: Application Hang)(User: ) Description: rads_user_kernel.exe0.0.0.09fc01cf48305d29b3431C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.execb8999aa-b423-11e3-ad69-d850e641725c Error: (03/25/2014 02:44:03 PM) (Source: Application Hang)(User: ) Description: Explorer.EXE6.1.7601.175679c801cf482cbeb821550C:\Windows\Explorer.EXE7f865467-b423-11e3-ad69-d850e641725c Error: (03/25/2014 02:19:56 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/25/2014 01:30:36 PM) (Source: Application Error)(User: ) Description: NvBackend.exe11.10.11.152ddc011nvspcap.dll_unloaded0.0.0.052dde0ccc00000051000c29294001cf48259b0448e0C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exenvspcap.dll43ed251c-b419-11e3-8c90-d850e641725c Error: (03/25/2014 01:29:53 PM) (Source: Application Error)(User: ) Description: NvBackend.exe11.10.11.152ddc011nvspcap.dll_unloaded0.0.0.052dde0ccc0000005100c986094001cf48259b0448e0C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exenvspcap.dll2a5b8a7b-b419-11e3-8c90-d850e641725c Error: (03/25/2014 01:28:50 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 CodeIntegrity Errors: =================================== Date: 2014-03-24 16:14:46.034 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-24 16:14:46.034 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-24 16:14:46.034 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-24 16:14:46.024 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-24 16:14:46.024 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-24 16:14:46.024 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-23 16:27:59.626 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-23 16:27:59.626 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-23 16:27:59.626 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-23 16:27:59.595 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 26% Total physical RAM: 16328.13 MB Available physical RAM: 12073.97 MB Total Pagefile: 32654.45 MB Available Pagefile: 27755.63 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.41 GB) (Free:647.01 GB) NTFS Drive d: (COD4MW) (CDROM) (Total:6.35 GB) (Free:0 GB) UDF Drive e: (SKYRIM_EN) (CDROM) (Total:5.12 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 618C5CC2) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Danke für die Hilfe. |
26.03.2014, 13:52 | #4 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Computer seit kurzen extrem langsam! Vermutlich TrojanerZitat:
1.) Suites wie Kaspersky Internet Security wurden schon immer nachgesagt richtig geile Systembremsen zu sein. Und mehr Sicherheit als reiner Virenscanner plus Windows-Firewall bieten sie eh nicht, eher im Gegenteil. 2.) Zwei Sicherheitslösungen gehen auf keinen Fall. Deinstalliere Kaspersky und beobachte.
__________________ Logfiles bitte immer in CODE-Tags posten |
26.03.2014, 13:58 | #5 |
| Computer seit kurzen extrem langsam! Vermutlich Trojaner Achja ich sollte noch erwähnen das einmal mein Windows Explorer abgeschmiert ist. LG Paul |
03.04.2014, 15:09 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Computer seit kurzen extrem langsam! Vermutlich Trojaner Hast du Kaspersky jetzt deinstalliert oder nicht?
__________________ --> Computer seit kurzen extrem langsam! Vermutlich Trojaner |
Themen zu Computer seit kurzen extrem langsam! Vermutlich Trojaner |
compu, computer, extrem, extrem langsam, kurze, kurzem, langsam, troja, trojane, trojaner, vermute, vermutlich, vermutlich trojaner, virus |