|
Plagegeister aller Art und deren Bekämpfung: Internetverbindung langsam und trennt manchmal sogar ganzWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
07.04.2014, 19:18 | #1 |
| Internetverbindung langsam und trennt manchmal sogar ganz Hallo ihr lieben, habe neuerdings das Problem, dass meine Internetverbindung sehr "unregelmäßig funktioniert". Das heißt, dass Seiten teilweiße ewig brauchen zum laden, manchmal aber auch nicht. Habs schon mit verschiedenen Browsern probiert, war überall jedoch das Gleiche. Da ich das Laptop zur Zeit eigentlich nur zum Spielen,Surfen und Chatten etc nutze, ist es nicht so dringlich also macht euch bloß nicht zu viel stress . Habe schon mehrere Programme das System testen lassen, Viren oder Malware wurde jedoch nicht gefunden.. Bei diversen Spielen werde ich auch einfach von der Verbindung getrennt. Dass das Problem beim rooter liegt ist ausgeschlossen, da es bei anderen Nutzern des selben Netzwerks zu keinen Problemen kommt. Ich hoffe ihr könnt mich irgendwie durch die Systemanalyse begleiten und mir da Schritt für Schritt durchhelfen. Habe übrigends Windows 8, falls das relevant sein sollte. Danke schonmal im Voraus für eure Hilfe LG Brozillatron FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 Ran by Admin (administrator) on ACER on 07-04-2014 20:15:42 Running from C:\Users\Admin\Downloads Windows 8.1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Microsoft Corporation) C:\WINDOWS\system32\dashost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe (McAfee, Inc.) C:\Windows\system32\mfevtps.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-Network.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe (Microsoft Corporation) C:\Windows\System32\skydrive.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe (Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Intel Corporation) C:\WINDOWS\system32\igfxext.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (TODO: <Company name>) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Frontend.exe (Valve Corporation) C:\Program Files (x86)\Steam\steam.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (Adobe Systems, Inc.) C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2890056 2013-09-06] (ELAN Microelectronics Corp.) HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13647576 2013-08-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor) HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-01-28] (McAfee, Inc.) HKLM-x32\...\Run: [BlueStacks Agent] - C:\Program Files (x86)\BlueStacks\HD-Agent.exe [819984 2014-03-06] (BlueStack Systems, Inc.) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKLM\...\Policies\Explorer\Run: [BtvStack] - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-09-07] ( (Atheros Communications)) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [387536 2013-08-01] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [326224 2013-08-01] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login. SearchScopes: HKLM - DefaultScope {230404FF-2CDB-4A9B-9E81-F2B57848AAFA} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ACJB SearchScopes: HKLM - {230404FF-2CDB-4A9B-9E81-F2B57848AAFA} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ACJB SearchScopes: HKLM - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} SearchScopes: HKLM-x32 - {230404FF-2CDB-4A9B-9E81-F2B57848AAFA} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ACJB SearchScopes: HKLM-x32 - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} SearchScopes: HKCU - {230404FF-2CDB-4A9B-9E81-F2B57848AAFA} URL = SearchScopes: HKCU - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\rjw1pjsg.default FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll () FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL () FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL () FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-09-05] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2013-09-05] ==================== Services (Whitelisted) ================= R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [312448 2013-09-07] (Windows (R) Win 7 DDK provider) R2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [402192 2014-03-06] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385808 2014-03-06] (BlueStack Systems, Inc.) R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [770832 2014-03-06] (BlueStack Systems, Inc.) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [663592 2013-07-05] (Acer Incorporated) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [101192 2013-09-06] (ELAN Microelectronics Corp.) R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [235008 2013-07-16] (TODO: <Company name>) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation) R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [457768 2013-08-03] (Acer Incorporate) R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-01-28] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-25] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.) R2 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1025712 2014-01-21] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-01-27] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [185792 2014-01-27] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [4278112 2013-08-01] (Symantec Corporation) R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [457768 2013-08-02] (Acer Incorporate) R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [448040 2013-08-02] (Acer Incorporate) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3859968 2013-08-15] (Qualcomm Atheros Communications, Inc.) S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [121616 2014-03-06] (BlueStack Systems) S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-09-07] (Qualcomm Atheros) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation) S3 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0405000.009\ccSetx64.sys [150104 2013-07-30] (Symantec Corporation) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70592 2014-01-27] (McAfee, Inc.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39776 2013-08-22] (Microsoft Corporation) R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation) R2 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [180272 2014-01-27] (McAfee, Inc.) R2 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311600 2014-01-27] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [69352 2014-01-27] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [520696 2014-01-27] (McAfee, Inc.) R2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [783864 2014-01-27] (McAfee, Inc.) R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [422712 2014-01-21] (McAfee, Inc.) S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96592 2014-01-21] (McAfee, Inc.) R2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [344688 2014-01-27] (McAfee, Inc.) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146272 2013-08-22] (Microsoft Corporation) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [56672 2013-08-22] (Microsoft Corporation) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-04-07 20:14 - 2014-04-07 20:14 - 00050477 _____ () C:\Users\Admin\Downloads\Defogger.exe 2014-04-07 20:14 - 2014-04-07 20:14 - 00000472 _____ () C:\Users\Admin\Downloads\defogger_disable.log 2014-04-07 20:14 - 2014-04-07 20:14 - 00000000 _____ () C:\Users\Admin\defogger_reenable 2014-04-07 18:33 - 2014-04-07 18:33 - 00000000 ____D () C:\Users\Admin\AppData\Local\EdgeOfReality 2014-04-07 18:33 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll 2014-04-07 18:33 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll 2014-04-07 18:33 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll 2014-04-07 18:33 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll 2014-04-07 18:32 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2014-04-07 18:32 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2014-04-07 18:32 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll 2014-04-07 18:32 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2014-04-07 18:32 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2014-04-07 18:32 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2014-04-07 18:31 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2014-04-07 18:30 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2014-04-07 18:30 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2014-04-07 18:30 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2014-04-07 18:30 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2014-04-07 18:29 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2014-04-07 18:29 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2014-04-07 18:29 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2014-04-07 18:29 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2014-04-07 18:29 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll 2014-04-07 18:29 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll 2014-04-07 18:29 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2014-04-07 18:29 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll 2014-04-07 18:28 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2014-04-07 18:28 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2014-04-07 18:28 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2014-04-07 18:28 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2014-04-07 18:28 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2014-04-07 18:28 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2014-04-07 18:28 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2014-04-07 18:28 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2014-04-07 18:27 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2014-04-07 18:27 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2014-04-07 18:27 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2014-04-07 18:27 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2014-04-07 18:27 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2014-04-07 18:27 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2014-04-07 18:27 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2014-04-07 18:27 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2014-04-07 18:27 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2014-04-07 18:27 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2014-04-07 18:27 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll 2014-04-07 18:27 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2014-04-07 18:27 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll 2014-04-07 18:27 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2014-04-07 18:27 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2014-04-07 18:27 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2014-04-07 18:26 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2014-04-07 18:26 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2014-04-07 18:26 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2014-04-07 18:26 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2014-04-07 18:26 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2014-04-07 18:26 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2014-04-07 18:26 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2014-04-07 18:26 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2014-04-07 18:26 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2014-04-07 18:26 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2014-04-07 18:26 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2014-04-07 18:26 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2014-04-07 18:25 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2014-04-07 18:25 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2014-04-07 18:25 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2014-04-07 18:25 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2014-04-07 18:25 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2014-04-07 18:25 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2014-04-07 18:24 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2014-04-07 18:24 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2014-04-07 18:24 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2014-04-07 18:24 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2014-04-07 18:24 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2014-04-07 18:24 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2014-04-07 18:24 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2014-04-07 18:24 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2014-04-07 18:24 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2014-04-07 18:24 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2014-04-07 18:24 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2014-04-07 18:24 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2014-04-07 18:24 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2014-04-07 18:24 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2014-04-07 18:23 - 2014-04-07 18:25 - 00010009 _____ () C:\WINDOWS\DirectX.log 2014-04-07 18:23 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2014-04-07 18:23 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2014-04-07 18:23 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2014-04-07 18:23 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2014-04-07 18:23 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2014-04-07 18:23 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2014-04-07 18:23 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2014-04-07 18:23 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2014-04-07 18:23 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2014-04-07 18:23 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2014-04-07 18:23 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2014-04-07 18:23 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2014-04-07 18:23 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2014-04-07 18:23 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2014-04-07 18:23 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2014-04-07 18:23 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2014-04-07 18:23 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2014-04-07 18:23 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2014-04-07 18:23 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2014-04-07 18:23 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2014-04-07 18:23 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2014-04-07 18:23 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2014-04-07 18:23 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2014-04-07 18:23 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2014-04-07 18:23 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll 2014-04-07 18:23 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll 2014-04-07 18:23 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2014-04-07 18:23 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2014-04-07 18:23 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2014-04-07 18:23 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2014-04-07 18:23 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2014-04-07 18:23 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2014-04-07 18:23 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2014-04-07 18:23 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2014-04-07 18:23 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2014-04-07 18:23 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2014-04-07 18:23 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2014-04-07 18:23 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2014-04-07 18:23 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2014-04-07 18:23 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2014-04-07 18:23 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2014-04-07 18:23 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2014-04-07 18:23 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2014-04-07 18:23 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2014-04-07 18:23 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2014-04-07 18:23 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2014-04-07 18:23 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2014-04-07 18:23 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2014-04-07 18:23 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2014-04-07 18:23 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2014-04-07 18:23 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2014-04-07 18:23 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2014-04-07 18:23 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2014-04-07 18:23 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2014-04-07 18:23 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2014-04-07 18:23 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2014-04-07 18:23 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2014-04-07 18:23 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2014-04-07 18:23 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2014-04-07 18:23 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2014-04-07 17:36 - 2014-04-07 17:39 - 00020071 _____ () C:\Users\Admin\Downloads\Addition.txt 2014-04-07 17:34 - 2014-04-07 20:15 - 00018141 _____ () C:\Users\Admin\Downloads\FRST.txt 2014-04-07 17:34 - 2014-04-07 17:39 - 00000000 ____D () C:\FRST 2014-04-07 17:32 - 2014-04-07 17:33 - 02157056 _____ (Farbar) C:\Users\Admin\Downloads\FRST64.exe 2014-04-07 12:51 - 2014-04-07 12:51 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-04-07 12:50 - 2014-04-07 17:20 - 00000000 ____D () C:\ProgramData\HitmanPro 2014-04-07 12:50 - 2014-04-07 12:50 - 00001921 _____ () C:\Users\Public\Desktop\HitmanPro.lnk 2014-04-07 12:50 - 2014-04-07 12:50 - 00000000 ____D () C:\Program Files\HitmanPro 2014-04-07 12:38 - 2014-04-07 12:38 - 00000614 _____ () C:\Users\Admin\Desktop\JRT.txt 2014-04-07 12:33 - 2014-04-07 12:34 - 10971424 _____ (SurfRight B.V.) C:\Users\Admin\Downloads\HitmanPro_x64.exe 2014-04-07 12:33 - 2014-04-07 12:34 - 02347384 _____ (ESET) C:\Users\Admin\Downloads\esetsmartinstaller_enu.exe 2014-04-07 08:03 - 2014-04-07 08:03 - 00000000 ____D () C:\Users\Admin\AppData\Local\Blizzard 2014-04-07 07:50 - 2014-04-07 07:52 - 01426178 _____ () C:\Users\Admin\Downloads\adwcleaner3023.exe 2014-04-07 07:49 - 2014-04-07 19:26 - 00000000 ____D () C:\Users\Admin\AppData\Local\Battle.net 2014-04-07 07:49 - 2014-04-07 08:03 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Battle.net 2014-04-07 07:49 - 2014-04-07 07:49 - 00001136 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\Users\Admin\AppData\Local\Blizzard Entertainment 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-04-07 07:44 - 2014-04-07 07:44 - 00000000 ____D () C:\ProgramData\Battle.net 2014-04-07 02:00 - 2014-04-06 18:38 - 00000000 ____D () C:\Windows.old 2014-04-07 01:58 - 2014-04-07 01:58 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-04-07 01:41 - 2014-04-07 01:41 - 00000000 ____D () C:\$WINDOWS.~BT 2014-04-07 00:03 - 2014-04-07 00:03 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-04-06 22:32 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\WINDOWS\system32\Drivers\HipShieldK.sys 2014-04-06 21:35 - 2014-04-06 21:35 - 00000222 _____ () C:\Users\Admin\Desktop\Loadout.url 2014-04-06 21:26 - 2014-04-07 18:51 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-04-06 21:26 - 2014-04-06 21:26 - 00000979 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-04-06 21:25 - 2014-04-06 21:25 - 01141680 _____ () C:\Users\Admin\Downloads\SteamSetup(2).exe 2014-04-06 21:24 - 2014-04-07 20:10 - 00007603 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg 2014-04-06 21:21 - 2014-04-06 21:21 - 00000000 ____D () C:\Users\Admin\AppData\Local\Macromedia 2014-04-06 21:20 - 2014-04-07 20:00 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-04-06 21:20 - 2014-04-06 21:20 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-04-06 21:17 - 2014-04-06 21:21 - 00000000 ____D () C:\Users\Admin\AppData\Local\Adobe 2014-04-06 20:37 - 2014-04-06 20:37 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Mozilla 2014-04-06 20:37 - 2014-04-06 20:37 - 00000000 ____D () C:\Users\Admin\AppData\Local\Mozilla 2014-04-06 20:36 - 2014-04-06 20:36 - 00001163 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\ProgramData\Mozilla 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-04-06 20:25 - 2014-04-06 20:25 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-04-06 20:17 - 2014-04-06 08:36 - 01016261 _____ (Thisisu) C:\Users\Admin\Desktop\JRT_NEW.exe 2014-04-06 20:06 - 2014-04-06 20:06 - 00000000 ____D () C:\Users\Admin\AppData\Local\Acer Aspire R7 Tutorial 2014-04-06 19:49 - 2014-04-06 19:49 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2014-04-06 19:39 - 2014-04-06 19:39 - 00003151 _____ () C:\Users\Admin\Desktop\GeneratedFile 2014-04-06 19:37 - 2014-04-06 19:51 - 00000000 _____ () C:\Users\Admin\Desktop\OGLdpf.log 2014-04-06 17:44 - 2014-04-06 19:54 - 00000728 _____ () C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk 2014-04-06 17:41 - 2014-01-29 20:04 - 02476976 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiVAD64.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00906224 _____ (Intel Corporation) C:\WINDOWS\system32\igfxstarter.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00845296 _____ (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00770544 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00416240 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00397808 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00391152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00279024 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe 2014-04-06 17:41 - 2014-01-22 15:57 - 00182784 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v3412.dll 2014-04-06 17:41 - 2014-01-22 15:54 - 00002944 _____ () C:\WINDOWS\system32\iglhxs64.vp 2014-04-06 17:41 - 2014-01-22 15:51 - 19380224 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 04221440 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys 2014-04-06 17:41 - 2014-01-22 15:51 - 00733184 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 00548864 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpph.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 00527872 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrell.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00527360 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrplk.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00527360 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfra.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00527360 _____ (Intel Corporation) C:\WINDOWS\system32\igfxresn.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00526848 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrus.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00526848 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrdeu.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00526336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrom.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00526336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnld.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00526336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrita.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsky.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptg.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhun.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhrv.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcsy.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525312 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsve.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525312 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrslv.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525312 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfin.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00524800 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtrk.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00524800 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptb.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00524288 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnor.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00524288 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrdan.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00523776 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtha.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00522240 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrheb.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00521728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrara.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00517632 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrjpn.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00516096 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrkor.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00514048 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcht.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00513536 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrchs.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00373760 _____ () C:\WINDOWS\system32\igdmd64.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 00371200 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrenu.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00346624 _____ (Intel Corporation) C:\WINDOWS\system32\igfxTMM.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 00279040 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcpl.cpl 2014-04-06 17:41 - 2014-01-22 15:51 - 00243712 _____ (Intel Corporation) C:\WINDOWS\system32\igfxdo.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 00012288 _____ ( ) C:\WINDOWS\system32\IGFXDEVLib.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 25971712 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 03224064 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 00493056 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxdv32.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 00320512 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 00299520 _____ () C:\WINDOWS\SysWOW64\igdmd32.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 00025600 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll 2014-04-06 17:41 - 2014-01-22 15:44 - 20954112 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll 2014-04-06 17:41 - 2014-01-22 15:44 - 02896384 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll 2014-04-06 17:41 - 2014-01-22 15:44 - 00265216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 04011168 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAAC64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 02065920 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 01815040 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 01450656 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00785568 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00644768 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00602272 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMux64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00344736 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00210592 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUtils64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00177824 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00163328 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00155136 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00137728 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00133120 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00128672 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCUMD64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00094368 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiLogServer64.dll 2014-04-06 17:40 - 2014-01-29 20:04 - 07597040 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe 2014-04-06 17:40 - 2014-01-29 20:04 - 00771568 _____ (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe 2014-04-06 17:40 - 2014-01-29 20:04 - 00755184 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIHotKeyMenu.exe 2014-04-06 17:40 - 2014-01-29 20:04 - 00530928 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe 2014-04-06 17:40 - 2014-01-29 20:04 - 00397296 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeApp.exe 2014-04-06 17:40 - 2014-01-29 20:04 - 00153072 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe 2014-04-06 17:40 - 2014-01-22 15:51 - 07947776 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll 2014-04-06 17:40 - 2014-01-22 15:51 - 02384896 _____ () C:\WINDOWS\system32\GfxRes.dll 2014-04-06 17:40 - 2014-01-22 15:51 - 00267407 _____ () C:\WINDOWS\system32\Gfxres.th-TH.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00253466 _____ () C:\WINDOWS\system32\Gfxres.el-GR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00235401 _____ () C:\WINDOWS\system32\Gfxres.ru-RU.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00222208 _____ () C:\WINDOWS\system32\igdde64.dll 2014-04-06 17:40 - 2014-01-22 15:51 - 00201128 _____ () C:\WINDOWS\system32\Gfxres.ar-SA.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00198725 _____ () C:\WINDOWS\system32\Gfxres.ja-JP.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00194560 _____ (Intel Corporation) C:\WINDOWS\system32\gfxSrvc.dll 2014-04-06 17:40 - 2014-01-22 15:51 - 00192758 _____ () C:\WINDOWS\system32\Gfxres.he-IL.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00180936 _____ () C:\WINDOWS\system32\Gfxres.ko-KR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00180850 _____ () C:\WINDOWS\system32\Gfxres.it-IT.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00178473 _____ () C:\WINDOWS\system32\Gfxres.es-ES.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00178290 _____ () C:\WINDOWS\system32\Gfxres.fr-FR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00178123 _____ () C:\WINDOWS\system32\Gfxres.de-DE.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00176838 _____ () C:\WINDOWS\system32\Gfxres.ro-RO.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00175862 _____ () C:\WINDOWS\system32\Gfxres.hu-HU.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00175571 _____ () C:\WINDOWS\system32\Gfxres.tr-TR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00175067 _____ () C:\WINDOWS\system32\Gfxres.nl-NL.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00174802 _____ () C:\WINDOWS\system32\Gfxres.pl-PL.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00174269 _____ () C:\WINDOWS\system32\Gfxres.pt-BR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00173792 _____ () C:\WINDOWS\system32\Gfxres.fi-FI.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00173276 _____ () C:\WINDOWS\system32\Gfxres.sk-SK.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00173059 _____ () C:\WINDOWS\system32\Gfxres.sv-SE.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00172833 _____ () C:\WINDOWS\system32\Gfxres.pt-PT.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00172554 _____ () C:\WINDOWS\system32\Gfxres.cs-CZ.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00171691 _____ () C:\WINDOWS\system32\Gfxres.hr-HR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00168215 _____ () C:\WINDOWS\system32\Gfxres.sl-SI.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00166833 _____ () C:\WINDOWS\system32\Gfxres.nb-NO.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00166220 _____ () C:\WINDOWS\system32\Gfxres.da-DK.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00161534 _____ () C:\WINDOWS\system32\Gfxres.en-US.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00160256 _____ () C:\WINDOWS\system32\igdail64.dll 2014-04-06 17:40 - 2014-01-22 15:51 - 00154805 _____ () C:\WINDOWS\system32\Gfxres.zh-TW.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00152993 _____ () C:\WINDOWS\system32\Gfxres.zh-CN.resources 2014-04-06 17:40 - 2014-01-22 15:48 - 00329216 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll 2014-04-06 17:40 - 2014-01-22 15:48 - 00182272 _____ () C:\WINDOWS\SysWOW64\igdde32.dll 2014-04-06 17:40 - 2014-01-22 15:48 - 00142848 _____ () C:\WINDOWS\SysWOW64\igdail32.dll 2014-04-06 17:40 - 2014-01-22 15:44 - 00290816 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll 2014-04-06 17:06 - 2014-04-06 17:06 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Malwarebytes 2014-04-06 17:05 - 2014-04-06 17:05 - 00001125 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-04-06 17:05 - 2014-04-06 17:05 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-04-06 17:05 - 2014-04-06 17:05 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-04-06 17:05 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-04-06 16:52 - 2014-04-06 16:52 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Safer-Networking 2014-04-06 16:51 - 2014-04-06 16:51 - 00001395 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-04-06 16:49 - 2014-04-07 12:15 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-04-06 16:49 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean64.exe 2014-04-06 16:48 - 2014-04-06 16:52 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-04-06 16:48 - 2014-04-06 16:48 - 00001840 _____ () C:\Users\Public\Desktop\Apps.lnk 2014-04-06 16:48 - 2014-04-06 16:48 - 00001823 _____ () C:\Users\Public\Desktop\Start BlueStacks.lnk 2014-04-06 16:48 - 2014-04-06 16:48 - 00000000 ____D () C:\Program Files (x86)\BlueStacks 2014-04-06 16:46 - 2014-04-06 17:40 - 00000000 ____D () C:\ProgramData\BlueStacksSetup 2014-04-06 16:45 - 2014-04-06 16:45 - 00000000 ____D () C:\Users\Admin\AppData\Local\Bluestacks 2014-04-06 16:42 - 2014-04-06 16:50 - 00000000 ____D () C:\ProgramData\BlueStacks 2014-04-06 16:25 - 2014-04-06 16:25 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Macromedia 2014-04-06 16:22 - 2014-04-07 20:07 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1533359429-239272056-3924852376-1002 2014-04-06 16:20 - 2014-04-06 16:24 - 00000000 ____D () C:\Users\Admin\Desktop\Sicherung 2014-04-06 16:17 - 2014-04-06 19:50 - 00000000 ____D () C:\Users\Admin\AppData\Local\Acer 2014-04-06 16:11 - 2014-04-06 16:11 - 00000000 ____D () C:\Users\Public\Pokki 2014-04-06 16:08 - 2014-04-06 20:00 - 00000000 ____D () C:\Users\Admin\AppData\Local\clear.fi 2014-04-06 16:08 - 2014-04-06 16:08 - 00001276 _____ () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RtkGUI.lnk 2014-04-06 16:08 - 2014-04-06 16:08 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD 2014-04-06 16:08 - 2014-04-06 16:08 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Atheros 2014-04-06 16:07 - 2014-04-06 16:07 - 00000000 ____D () C:\ProgramData\OEM_YAHOO 2014-04-06 16:07 - 2014-04-06 16:07 - 00000000 ____D () C:\Program Files\Accessory Store 2014-04-06 16:06 - 2014-04-06 16:34 - 00000000 ____D () C:\Users\Admin\AppData\Local\VirtualStore 2014-04-06 16:06 - 2014-04-06 16:06 - 00001454 _____ () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Adobe 2014-04-06 16:05 - 2014-04-06 16:05 - 00000020 ___SH () C:\Users\Admin\ntuser.ini 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-04-06 16:02 - 2014-04-07 20:14 - 00000000 ____D () C:\Users\Admin 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Vorlagen 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Startmenü 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Netzwerkumgebung 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Lokale Einstellungen 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Eigene Dateien 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Druckumgebung 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Musik 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Bilder 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Verlauf 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Anwendungsdaten 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Anwendungsdaten 2014-04-06 16:02 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-04-06 16:02 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-04-06 16:02 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-04-06 16:02 - 2013-08-22 17:36 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-04-06 16:01 - 2014-04-06 16:04 - 00040008 _____ () C:\WINDOWS\diagwrn.xml 2014-04-06 16:01 - 2014-04-06 16:04 - 00040008 _____ () C:\WINDOWS\diagerr.xml 2014-04-06 15:39 - 2014-04-06 18:03 - 00000000 ___HD () C:\$SysReset 2014-04-05 11:27 - 2014-04-05 11:27 - 00165659 _____ () C:\MyXML.xml 2014-04-05 11:27 - 2014-04-05 11:27 - 00000451 _____ () C:\ASCInit.log 2014-04-05 11:14 - 2014-04-05 11:51 - 00000000 ____D () C:\Users\Admin\Downloads\CrystalDiskInfo6_1_8 2014-04-05 11:14 - 2014-04-05 11:14 - 02545407 _____ () C:\Users\Admin\Downloads\CrystalDiskInfo6_1_8.zip 2014-03-24 23:12 - 2014-03-25 00:17 - 192635764 _____ () C:\Users\Admin\Downloads\VolbeatOutlawDeluxee213.rar 2014-03-23 23:32 - 2014-04-07 07:54 - 00000000 ____D () C:\AdwCleaner 2014-03-23 22:13 - 2014-03-23 22:13 - 00000000 _____ () C:\autoexec.bat 2014-03-23 22:01 - 2014-03-23 22:01 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Admin\Downloads\SpyHunter-Installer.exe 2014-03-23 13:25 - 2014-03-23 13:25 - 00000000 ____D () C:\Users\Admin\.thumbnails 2014-03-23 13:24 - 2014-03-23 13:31 - 00000000 ____D () C:\Users\Admin\.gimp-2.8 2014-03-23 13:20 - 2014-03-23 13:20 - 00000000 ____D () C:\Users\Admin\Downloads\gimp-2 2014-03-23 13:07 - 2014-03-23 13:09 - 37302368 _____ (IN MEDIA KG ) C:\Users\Admin\Downloads\fwsetup.exe 2014-03-23 12:36 - 2014-03-23 12:36 - 00001652 _____ () C:\Users\Public\Desktop\Hi-Rez Diagnostics and Support.lnk 2014-03-23 12:36 - 2014-03-23 12:36 - 00001643 _____ () C:\Users\Public\Desktop\Smite.lnk 2014-03-23 12:34 - 2014-03-23 12:35 - 39967251 _____ (Hi-Rez Studios) C:\Users\Admin\Downloads\InstallHiRezGamesEnglish.exe 2014-03-22 20:48 - 2014-03-22 20:49 - 28888168 _____ () C:\Users\Admin\Downloads\warface-launcher.exe 2014-03-21 23:10 - 2014-04-06 16:04 - 00000000 ____D () C:\Users\Admin\Desktop\Band 2014-03-21 23:01 - 2014-03-21 23:01 - 01540672 _____ (NCH Software) C:\Users\Admin\Downloads\debutpsetup_1.82.exe 2014-03-21 20:48 - 2014-03-21 20:48 - 00000000 ____D () C:\Users\Admin\Documents\clear.fi 2014-03-19 19:17 - 2014-03-19 19:17 - 00005330 _____ () C:\Users\Admin\Downloads\Abkürzungen zu Marketing.html 2014-03-16 17:25 - 2014-03-16 17:25 - 34377032 _____ (DVDVideoSoft Ltd. ) C:\Users\Admin\Downloads\FreeYouTubeToMP3Converter.exe 2014-03-16 16:55 - 2014-03-16 16:55 - 01977432 _____ () C:\Users\Admin\Downloads\winrar-x64-501.exe 2014-03-16 16:53 - 2014-03-16 17:08 - 45066586 _____ () C:\Users\Admin\Downloads\7734_wim.rar 2014-03-14 18:46 - 2014-03-14 18:47 - 34827424 _____ (Skype Technologies S.A.) C:\Users\Admin\Downloads\Skyp614eSetupFull.exe 2014-03-14 16:57 - 2014-03-14 16:57 - 01141680 _____ () C:\Users\Admin\Downloads\SteamSetup(1).exe 2014-03-12 14:43 - 2014-03-12 14:43 - 10149920 _____ (BlueStack Systems Inc.) C:\Users\Admin\Downloads\BlueStacks-SplitInstaller_native (1).exe 2014-03-08 16:00 - 2014-03-08 16:01 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Admin\Downloads\mbam-setup-1.75.0.1300(1).exe 2014-03-08 15:58 - 2014-03-08 16:00 - 27264776 _____ (IObit ) C:\Users\Admin\Downloads\imf-setup_2.3.0.13.exe 2014-03-08 09:50 - 2014-03-08 09:50 - 10284808 _____ (Malwarebytes Corporation ) C:\Users\Admin\Downloads\mbam-setup-1.75.0.1300.exe ==================== One Month Modified Files and Folders ======= 2014-04-07 20:16 - 2014-04-07 17:34 - 00018141 _____ () C:\Users\Admin\Downloads\FRST.txt 2014-04-07 20:15 - 2014-04-07 17:34 - 00000000 ____D () C:\FRST 2014-04-07 20:14 - 2014-04-07 20:14 - 00050477 _____ () C:\Users\Admin\Downloads\Defogger.exe 2014-04-07 20:14 - 2014-04-07 20:14 - 00000472 _____ () C:\Users\Admin\Downloads\defogger_disable.log 2014-04-07 20:14 - 2014-04-07 20:14 - 00000000 _____ () C:\Users\Admin\defogger_reenable 2014-04-07 20:14 - 2014-04-06 16:02 - 00000000 ____D () C:\Users\Admin 2014-04-07 20:12 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-04-07 20:10 - 2014-04-06 21:24 - 00007603 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg 2014-04-07 20:07 - 2014-04-06 16:22 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1533359429-239272056-3924852376-1002 2014-04-07 20:00 - 2014-04-06 21:20 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-04-07 19:26 - 2014-04-07 07:49 - 00000000 ____D () C:\Users\Admin\AppData\Local\Battle.net 2014-04-07 18:51 - 2014-04-06 21:26 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-04-07 18:36 - 2013-11-07 23:46 - 01767064 _____ () C:\WINDOWS\WindowsUpdate.log 2014-04-07 18:33 - 2014-04-07 18:33 - 00000000 ____D () C:\Users\Admin\AppData\Local\EdgeOfReality 2014-04-07 18:25 - 2014-04-07 18:23 - 00010009 _____ () C:\WINDOWS\DirectX.log 2014-04-07 17:39 - 2014-04-07 17:36 - 00020071 _____ () C:\Users\Admin\Downloads\Addition.txt 2014-04-07 17:33 - 2014-04-07 17:32 - 02157056 _____ (Farbar) C:\Users\Admin\Downloads\FRST64.exe 2014-04-07 17:20 - 2014-04-07 12:50 - 00000000 ____D () C:\ProgramData\HitmanPro 2014-04-07 12:51 - 2014-04-07 12:51 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-04-07 12:50 - 2014-04-07 12:50 - 00001921 _____ () C:\Users\Public\Desktop\HitmanPro.lnk 2014-04-07 12:50 - 2014-04-07 12:50 - 00000000 ____D () C:\Program Files\HitmanPro 2014-04-07 12:38 - 2014-04-07 12:38 - 00000614 _____ () C:\Users\Admin\Desktop\JRT.txt 2014-04-07 12:34 - 2014-04-07 12:33 - 10971424 _____ (SurfRight B.V.) C:\Users\Admin\Downloads\HitmanPro_x64.exe 2014-04-07 12:34 - 2014-04-07 12:33 - 02347384 _____ (ESET) C:\Users\Admin\Downloads\esetsmartinstaller_enu.exe 2014-04-07 12:15 - 2014-04-06 16:49 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-04-07 08:03 - 2014-04-07 08:03 - 00000000 ____D () C:\Users\Admin\AppData\Local\Blizzard 2014-04-07 08:03 - 2014-04-07 07:49 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Battle.net 2014-04-07 07:57 - 2014-01-30 17:11 - 00000000 __RDO () C:\Users\Admin\SkyDrive 2014-04-07 07:55 - 2013-09-05 14:39 - 00009254 _____ () C:\WINDOWS\PFRO.log 2014-04-07 07:55 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-04-07 07:55 - 2013-08-22 15:25 - 00786432 ___SH () C:\WINDOWS\system32\config\BBI 2014-04-07 07:54 - 2014-03-23 23:32 - 00000000 ____D () C:\AdwCleaner 2014-04-07 07:52 - 2014-04-07 07:50 - 01426178 _____ () C:\Users\Admin\Downloads\adwcleaner3023.exe 2014-04-07 07:51 - 2014-01-07 19:52 - 00000000 ____D () C:\Users\Admin\AppData\Local\Packages 2014-04-07 07:51 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-04-07 07:49 - 2014-04-07 07:49 - 00001136 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\Users\Admin\AppData\Local\Blizzard Entertainment 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-04-07 07:44 - 2014-04-07 07:44 - 00000000 ____D () C:\ProgramData\Battle.net 2014-04-07 02:00 - 2013-08-22 17:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-04-07 01:58 - 2014-04-07 01:58 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-04-07 01:41 - 2014-04-07 01:41 - 00000000 ____D () C:\$WINDOWS.~BT 2014-04-07 00:03 - 2014-04-07 00:03 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-04-07 00:03 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-04-07 00:03 - 2013-08-22 16:46 - 00034570 _____ () C:\WINDOWS\setupact.log 2014-04-06 22:27 - 2013-09-05 14:51 - 00000000 ____D () C:\Program Files\Common Files\mcafee 2014-04-06 22:25 - 2013-08-22 17:36 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP 2014-04-06 22:23 - 2013-09-05 14:51 - 00000000 ____D () C:\ProgramData\McAfee 2014-04-06 21:35 - 2014-04-06 21:35 - 00000222 _____ () C:\Users\Admin\Desktop\Loadout.url 2014-04-06 21:26 - 2014-04-06 21:26 - 00000979 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-04-06 21:25 - 2014-04-06 21:25 - 01141680 _____ () C:\Users\Admin\Downloads\SteamSetup(2).exe 2014-04-06 21:21 - 2014-04-06 21:21 - 00000000 ____D () C:\Users\Admin\AppData\Local\Macromedia 2014-04-06 21:21 - 2014-04-06 21:17 - 00000000 ____D () C:\Users\Admin\AppData\Local\Adobe 2014-04-06 21:20 - 2014-04-06 21:20 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-04-06 20:37 - 2014-04-06 20:37 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Mozilla 2014-04-06 20:37 - 2014-04-06 20:37 - 00000000 ____D () C:\Users\Admin\AppData\Local\Mozilla 2014-04-06 20:36 - 2014-04-06 20:36 - 00001163 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\ProgramData\Mozilla 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-04-06 20:25 - 2014-04-06 20:25 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-04-06 20:06 - 2014-04-06 20:06 - 00000000 ____D () C:\Users\Admin\AppData\Local\Acer Aspire R7 Tutorial 2014-04-06 20:03 - 2013-11-08 08:33 - 00765582 _____ () C:\WINDOWS\system32\perfh007.dat 2014-04-06 20:03 - 2013-11-08 08:33 - 00159366 _____ () C:\WINDOWS\system32\perfc007.dat 2014-04-06 20:03 - 2013-09-05 14:41 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-04-06 20:00 - 2014-04-06 16:08 - 00000000 ____D () C:\Users\Admin\AppData\Local\clear.fi 2014-04-06 20:00 - 2013-09-05 14:51 - 00000000 ____D () C:\ProgramData\Acer 2014-04-06 20:00 - 2013-09-05 14:51 - 00000000 ____D () C:\Program Files (x86)\Acer 2014-04-06 19:56 - 2013-11-08 00:13 - 00000000 ____D () C:\WINDOWS\SysWOW64\NV 2014-04-06 19:56 - 2013-11-08 00:13 - 00000000 ____D () C:\WINDOWS\system32\NV 2014-04-06 19:54 - 2014-04-06 17:44 - 00000728 _____ () C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk 2014-04-06 19:51 - 2014-04-06 19:37 - 00000000 _____ () C:\Users\Admin\Desktop\OGLdpf.log 2014-04-06 19:50 - 2014-04-06 16:17 - 00000000 ____D () C:\Users\Admin\AppData\Local\Acer 2014-04-06 19:49 - 2014-04-06 19:49 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2014-04-06 19:47 - 2013-08-22 16:44 - 00335992 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-04-06 19:39 - 2014-04-06 19:39 - 00003151 _____ () C:\Users\Admin\Desktop\GeneratedFile 2014-04-06 18:38 - 2014-04-07 02:00 - 00000000 ____D () C:\Windows.old 2014-04-06 18:03 - 2014-04-06 15:39 - 00000000 ___HD () C:\$SysReset 2014-04-06 17:40 - 2014-04-06 16:46 - 00000000 ____D () C:\ProgramData\BlueStacksSetup 2014-04-06 17:06 - 2014-04-06 17:06 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Malwarebytes 2014-04-06 17:05 - 2014-04-06 17:05 - 00001125 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-04-06 17:05 - 2014-04-06 17:05 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-04-06 17:05 - 2014-04-06 17:05 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-04-06 16:52 - 2014-04-06 16:52 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Safer-Networking 2014-04-06 16:52 - 2014-04-06 16:48 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-04-06 16:51 - 2014-04-06 16:51 - 00001395 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-04-06 16:50 - 2014-04-06 16:42 - 00000000 ____D () C:\ProgramData\BlueStacks 2014-04-06 16:48 - 2014-04-06 16:48 - 00001840 _____ () C:\Users\Public\Desktop\Apps.lnk 2014-04-06 16:48 - 2014-04-06 16:48 - 00001823 _____ () C:\Users\Public\Desktop\Start BlueStacks.lnk 2014-04-06 16:48 - 2014-04-06 16:48 - 00000000 ____D () C:\Program Files (x86)\BlueStacks 2014-04-06 16:48 - 2013-08-22 17:36 - 00000000 __RHD () C:\Users\Public\Libraries 2014-04-06 16:45 - 2014-04-06 16:45 - 00000000 ____D () C:\Users\Admin\AppData\Local\Bluestacks 2014-04-06 16:34 - 2014-04-06 16:06 - 00000000 ____D () C:\Users\Admin\AppData\Local\VirtualStore 2014-04-06 16:25 - 2014-04-06 16:25 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Macromedia 2014-04-06 16:24 - 2014-04-06 16:20 - 00000000 ____D () C:\Users\Admin\Desktop\Sicherung 2014-04-06 16:15 - 2013-11-08 00:23 - 00003546 _____ () C:\WINDOWS\System32\Tasks\Norton Online Backup ARA 2014-04-06 16:15 - 2013-11-08 00:23 - 00000000 ____D () C:\ProgramData\Norton 2014-04-06 16:15 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-04-06 16:14 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-04-06 16:11 - 2014-04-06 16:11 - 00000000 ____D () C:\Users\Public\Pokki 2014-04-06 16:08 - 2014-04-06 16:08 - 00001276 _____ () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RtkGUI.lnk 2014-04-06 16:08 - 2014-04-06 16:08 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD 2014-04-06 16:08 - 2014-04-06 16:08 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Atheros 2014-04-06 16:07 - 2014-04-06 16:07 - 00000000 ____D () C:\ProgramData\OEM_YAHOO 2014-04-06 16:07 - 2014-04-06 16:07 - 00000000 ____D () C:\Program Files\Accessory Store 2014-04-06 16:07 - 2013-09-05 15:36 - 00000000 ___HD () C:\OEM 2014-04-06 16:07 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-04-06 16:06 - 2014-04-06 16:06 - 00001454 _____ () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Adobe 2014-04-06 16:06 - 2013-09-05 15:39 - 00000000 ___DC () C:\WINDOWS\Panther 2014-04-06 16:06 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-04-06 16:06 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore 2014-04-06 16:06 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\FileManager 2014-04-06 16:06 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Camera 2014-04-06 16:05 - 2014-04-06 16:05 - 00000020 ___SH () C:\Users\Admin\ntuser.ini 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-04-06 16:04 - 2014-04-06 16:01 - 00040008 _____ () C:\WINDOWS\diagwrn.xml 2014-04-06 16:04 - 2014-04-06 16:01 - 00040008 _____ () C:\WINDOWS\diagerr.xml 2014-04-06 16:04 - 2014-03-21 23:10 - 00000000 ____D () C:\Users\Admin\Desktop\Band 2014-04-06 16:04 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows NT 2014-04-06 16:04 - 2013-08-22 15:36 - 00000000 __RHD () C:\Users\Default 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Vorlagen 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Startmenü 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Netzwerkumgebung 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Lokale Einstellungen 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Eigene Dateien 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Druckumgebung 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Musik 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Bilder 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Verlauf 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Anwendungsdaten 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Anwendungsdaten 2014-04-06 16:01 - 2013-09-05 14:40 - 00000000 ____D () C:\Users\Administrator 2014-04-06 08:36 - 2014-04-06 20:17 - 01016261 _____ (Thisisu) C:\Users\Admin\Desktop\JRT_NEW.exe 2014-04-05 11:51 - 2014-04-05 11:14 - 00000000 ____D () C:\Users\Admin\Downloads\CrystalDiskInfo6_1_8 2014-04-05 11:27 - 2014-04-05 11:27 - 00165659 _____ () C:\MyXML.xml 2014-04-05 11:27 - 2014-04-05 11:27 - 00000451 _____ () C:\ASCInit.log 2014-04-05 11:14 - 2014-04-05 11:14 - 02545407 _____ () C:\Users\Admin\Downloads\CrystalDiskInfo6_1_8.zip 2014-03-25 00:17 - 2014-03-24 23:12 - 192635764 _____ () C:\Users\Admin\Downloads\VolbeatOutlawDeluxee213.rar 2014-03-23 22:13 - 2014-03-23 22:13 - 00000000 _____ () C:\autoexec.bat 2014-03-23 22:01 - 2014-03-23 22:01 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Admin\Downloads\SpyHunter-Installer.exe 2014-03-23 14:26 - 2014-01-31 19:55 - 00000000 ____D () C:\Users\Admin\Documents\My Games 2014-03-23 13:31 - 2014-03-23 13:24 - 00000000 ____D () C:\Users\Admin\.gimp-2.8 2014-03-23 13:25 - 2014-03-23 13:25 - 00000000 ____D () C:\Users\Admin\.thumbnails 2014-03-23 13:20 - 2014-03-23 13:20 - 00000000 ____D () C:\Users\Admin\Downloads\gimp-2 2014-03-23 13:09 - 2014-03-23 13:07 - 37302368 _____ (IN MEDIA KG ) C:\Users\Admin\Downloads\fwsetup.exe 2014-03-23 12:36 - 2014-03-23 12:36 - 00001652 _____ () C:\Users\Public\Desktop\Hi-Rez Diagnostics and Support.lnk 2014-03-23 12:36 - 2014-03-23 12:36 - 00001643 _____ () C:\Users\Public\Desktop\Smite.lnk 2014-03-23 12:36 - 2014-01-12 02:51 - 00000000 ____D () C:\Spiele 2014-03-23 12:35 - 2014-03-23 12:34 - 39967251 _____ (Hi-Rez Studios) C:\Users\Admin\Downloads\InstallHiRezGamesEnglish.exe 2014-03-22 20:49 - 2014-03-22 20:48 - 28888168 _____ () C:\Users\Admin\Downloads\warface-launcher.exe 2014-03-21 23:01 - 2014-03-21 23:01 - 01540672 _____ (NCH Software) C:\Users\Admin\Downloads\debutpsetup_1.82.exe 2014-03-21 20:48 - 2014-03-21 20:48 - 00000000 ____D () C:\Users\Admin\Documents\clear.fi 2014-03-20 16:26 - 2014-01-22 14:50 - 00000000 ____D () C:\Users\Admin\Desktop\Schule 2014-03-19 19:17 - 2014-03-19 19:17 - 00005330 _____ () C:\Users\Admin\Downloads\Abkürzungen zu Marketing.html 2014-03-16 17:25 - 2014-03-16 17:25 - 34377032 _____ (DVDVideoSoft Ltd. ) C:\Users\Admin\Downloads\FreeYouTubeToMP3Converter.exe 2014-03-16 17:08 - 2014-03-16 16:53 - 45066586 _____ () C:\Users\Admin\Downloads\7734_wim.rar 2014-03-16 16:55 - 2014-03-16 16:55 - 01977432 _____ () C:\Users\Admin\Downloads\winrar-x64-501.exe 2014-03-14 18:47 - 2014-03-14 18:46 - 34827424 _____ (Skype Technologies S.A.) C:\Users\Admin\Downloads\Skyp614eSetupFull.exe 2014-03-14 16:57 - 2014-03-14 16:57 - 01141680 _____ () C:\Users\Admin\Downloads\SteamSetup(1).exe 2014-03-12 14:43 - 2014-03-12 14:43 - 10149920 _____ (BlueStack Systems Inc.) C:\Users\Admin\Downloads\BlueStacks-SplitInstaller_native (1).exe 2014-03-11 20:23 - 2014-02-16 19:56 - 00000000 ____D () C:\Users\Admin\Documents\CyberLink 2014-03-08 16:01 - 2014-03-08 16:00 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Admin\Downloads\mbam-setup-1.75.0.1300(1).exe 2014-03-08 16:00 - 2014-03-08 15:58 - 27264776 _____ (IObit ) C:\Users\Admin\Downloads\imf-setup_2.3.0.13.exe 2014-03-08 09:50 - 2014-03-08 09:50 - 10284808 _____ (Malwarebytes Corporation ) C:\Users\Admin\Downloads\mbam-setup-1.75.0.1300.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe [2013-08-22 11:01] - [2013-08-22 14:39] - 2328880 ____A (Microsoft Corporation) 8479DC46E9A09015C0777A16BC22A15D C:\Windows\SysWOW64\explorer.exe [2013-08-22 04:06] - [2013-08-22 07:25] - 2063408 ____A (Microsoft Corporation) 2CA8E3C9335C3C8BAEB335345E48364D C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-05 14:39 ==================== End Of Log ============================ --- --- --- --- --- --- Geändert von Brozillatron (07.04.2014 um 19:28 Uhr) |
07.04.2014, 19:36 | #2 |
| Internetverbindung langsam und trennt manchmal sogar ganz FRST Logfile:
__________________FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 Ran by Admin (administrator) on ACER on 07-04-2014 20:15:42 Running from C:\Users\Admin\Downloads Windows 8.1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Microsoft Corporation) C:\WINDOWS\system32\dashost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe (McAfee, Inc.) C:\Windows\system32\mfevtps.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-Network.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe (Microsoft Corporation) C:\Windows\System32\skydrive.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe (Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Intel Corporation) C:\WINDOWS\system32\igfxext.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (TODO: <Company name>) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Frontend.exe (Valve Corporation) C:\Program Files (x86)\Steam\steam.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (Adobe Systems, Inc.) C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2890056 2013-09-06] (ELAN Microelectronics Corp.) HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13647576 2013-08-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor) HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-01-28] (McAfee, Inc.) HKLM-x32\...\Run: [BlueStacks Agent] - C:\Program Files (x86)\BlueStacks\HD-Agent.exe [819984 2014-03-06] (BlueStack Systems, Inc.) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKLM\...\Policies\Explorer\Run: [BtvStack] - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-09-07] ( (Atheros Communications)) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [387536 2013-08-01] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [326224 2013-08-01] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login. SearchScopes: HKLM - DefaultScope {230404FF-2CDB-4A9B-9E81-F2B57848AAFA} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ACJB SearchScopes: HKLM - {230404FF-2CDB-4A9B-9E81-F2B57848AAFA} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ACJB SearchScopes: HKLM - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} SearchScopes: HKLM-x32 - {230404FF-2CDB-4A9B-9E81-F2B57848AAFA} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ACJB SearchScopes: HKLM-x32 - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} SearchScopes: HKCU - {230404FF-2CDB-4A9B-9E81-F2B57848AAFA} URL = SearchScopes: HKCU - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\rjw1pjsg.default FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll () FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL () FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL () FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-09-05] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2013-09-05] ==================== Services (Whitelisted) ================= R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [312448 2013-09-07] (Windows (R) Win 7 DDK provider) R2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [402192 2014-03-06] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385808 2014-03-06] (BlueStack Systems, Inc.) R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [770832 2014-03-06] (BlueStack Systems, Inc.) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [663592 2013-07-05] (Acer Incorporated) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [101192 2013-09-06] (ELAN Microelectronics Corp.) R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [235008 2013-07-16] (TODO: <Company name>) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation) R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [457768 2013-08-03] (Acer Incorporate) R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-01-28] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-25] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.) R2 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1025712 2014-01-21] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-01-27] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [185792 2014-01-27] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [4278112 2013-08-01] (Symantec Corporation) R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [457768 2013-08-02] (Acer Incorporate) R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [448040 2013-08-02] (Acer Incorporate) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3859968 2013-08-15] (Qualcomm Atheros Communications, Inc.) S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [121616 2014-03-06] (BlueStack Systems) S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-09-07] (Qualcomm Atheros) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation) S3 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0405000.009\ccSetx64.sys [150104 2013-07-30] (Symantec Corporation) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70592 2014-01-27] (McAfee, Inc.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39776 2013-08-22] (Microsoft Corporation) R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation) R2 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [180272 2014-01-27] (McAfee, Inc.) R2 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311600 2014-01-27] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [69352 2014-01-27] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [520696 2014-01-27] (McAfee, Inc.) R2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [783864 2014-01-27] (McAfee, Inc.) R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [422712 2014-01-21] (McAfee, Inc.) S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96592 2014-01-21] (McAfee, Inc.) R2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [344688 2014-01-27] (McAfee, Inc.) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146272 2013-08-22] (Microsoft Corporation) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [56672 2013-08-22] (Microsoft Corporation) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-04-07 20:14 - 2014-04-07 20:14 - 00050477 _____ () C:\Users\Admin\Downloads\Defogger.exe 2014-04-07 20:14 - 2014-04-07 20:14 - 00000472 _____ () C:\Users\Admin\Downloads\defogger_disable.log 2014-04-07 20:14 - 2014-04-07 20:14 - 00000000 _____ () C:\Users\Admin\defogger_reenable 2014-04-07 18:33 - 2014-04-07 18:33 - 00000000 ____D () C:\Users\Admin\AppData\Local\EdgeOfReality 2014-04-07 18:33 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll 2014-04-07 18:33 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll 2014-04-07 18:33 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll 2014-04-07 18:33 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll 2014-04-07 18:32 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2014-04-07 18:32 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2014-04-07 18:32 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll 2014-04-07 18:32 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2014-04-07 18:32 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2014-04-07 18:32 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2014-04-07 18:31 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2014-04-07 18:31 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2014-04-07 18:30 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2014-04-07 18:30 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2014-04-07 18:30 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2014-04-07 18:30 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2014-04-07 18:30 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2014-04-07 18:29 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2014-04-07 18:29 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2014-04-07 18:29 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2014-04-07 18:29 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2014-04-07 18:29 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll 2014-04-07 18:29 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll 2014-04-07 18:29 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2014-04-07 18:29 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2014-04-07 18:29 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll 2014-04-07 18:28 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2014-04-07 18:28 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2014-04-07 18:28 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2014-04-07 18:28 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2014-04-07 18:28 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2014-04-07 18:28 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2014-04-07 18:28 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2014-04-07 18:28 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2014-04-07 18:28 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2014-04-07 18:27 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2014-04-07 18:27 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2014-04-07 18:27 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2014-04-07 18:27 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2014-04-07 18:27 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2014-04-07 18:27 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2014-04-07 18:27 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2014-04-07 18:27 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2014-04-07 18:27 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2014-04-07 18:27 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2014-04-07 18:27 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll 2014-04-07 18:27 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2014-04-07 18:27 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll 2014-04-07 18:27 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2014-04-07 18:27 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2014-04-07 18:27 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2014-04-07 18:26 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2014-04-07 18:26 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2014-04-07 18:26 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2014-04-07 18:26 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2014-04-07 18:26 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2014-04-07 18:26 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2014-04-07 18:26 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2014-04-07 18:26 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2014-04-07 18:26 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2014-04-07 18:26 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2014-04-07 18:26 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2014-04-07 18:26 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2014-04-07 18:25 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2014-04-07 18:25 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2014-04-07 18:25 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2014-04-07 18:25 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2014-04-07 18:25 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2014-04-07 18:25 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2014-04-07 18:24 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2014-04-07 18:24 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2014-04-07 18:24 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2014-04-07 18:24 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2014-04-07 18:24 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2014-04-07 18:24 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2014-04-07 18:24 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2014-04-07 18:24 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2014-04-07 18:24 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2014-04-07 18:24 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2014-04-07 18:24 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2014-04-07 18:24 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2014-04-07 18:24 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2014-04-07 18:24 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2014-04-07 18:23 - 2014-04-07 18:25 - 00010009 _____ () C:\WINDOWS\DirectX.log 2014-04-07 18:23 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2014-04-07 18:23 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2014-04-07 18:23 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2014-04-07 18:23 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2014-04-07 18:23 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2014-04-07 18:23 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2014-04-07 18:23 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2014-04-07 18:23 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2014-04-07 18:23 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2014-04-07 18:23 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2014-04-07 18:23 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2014-04-07 18:23 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2014-04-07 18:23 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2014-04-07 18:23 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2014-04-07 18:23 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2014-04-07 18:23 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2014-04-07 18:23 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2014-04-07 18:23 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2014-04-07 18:23 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2014-04-07 18:23 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2014-04-07 18:23 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2014-04-07 18:23 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2014-04-07 18:23 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2014-04-07 18:23 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2014-04-07 18:23 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2014-04-07 18:23 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2014-04-07 18:23 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll 2014-04-07 18:23 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll 2014-04-07 18:23 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2014-04-07 18:23 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2014-04-07 18:23 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2014-04-07 18:23 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2014-04-07 18:23 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2014-04-07 18:23 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2014-04-07 18:23 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2014-04-07 18:23 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2014-04-07 18:23 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2014-04-07 18:23 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2014-04-07 18:23 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2014-04-07 18:23 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2014-04-07 18:23 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2014-04-07 18:23 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2014-04-07 18:23 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2014-04-07 18:23 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2014-04-07 18:23 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2014-04-07 18:23 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2014-04-07 18:23 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2014-04-07 18:23 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2014-04-07 18:23 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2014-04-07 18:23 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2014-04-07 18:23 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2014-04-07 18:23 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2014-04-07 18:23 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2014-04-07 18:23 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2014-04-07 18:23 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2014-04-07 18:23 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2014-04-07 18:23 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2014-04-07 18:23 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2014-04-07 18:23 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2014-04-07 18:23 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2014-04-07 18:23 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2014-04-07 18:23 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2014-04-07 17:36 - 2014-04-07 17:39 - 00020071 _____ () C:\Users\Admin\Downloads\Addition.txt 2014-04-07 17:34 - 2014-04-07 20:15 - 00018141 _____ () C:\Users\Admin\Downloads\FRST.txt 2014-04-07 17:34 - 2014-04-07 17:39 - 00000000 ____D () C:\FRST 2014-04-07 17:32 - 2014-04-07 17:33 - 02157056 _____ (Farbar) C:\Users\Admin\Downloads\FRST64.exe 2014-04-07 12:51 - 2014-04-07 12:51 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-04-07 12:50 - 2014-04-07 17:20 - 00000000 ____D () C:\ProgramData\HitmanPro 2014-04-07 12:50 - 2014-04-07 12:50 - 00001921 _____ () C:\Users\Public\Desktop\HitmanPro.lnk 2014-04-07 12:50 - 2014-04-07 12:50 - 00000000 ____D () C:\Program Files\HitmanPro 2014-04-07 12:38 - 2014-04-07 12:38 - 00000614 _____ () C:\Users\Admin\Desktop\JRT.txt 2014-04-07 12:33 - 2014-04-07 12:34 - 10971424 _____ (SurfRight B.V.) C:\Users\Admin\Downloads\HitmanPro_x64.exe 2014-04-07 12:33 - 2014-04-07 12:34 - 02347384 _____ (ESET) C:\Users\Admin\Downloads\esetsmartinstaller_enu.exe 2014-04-07 08:03 - 2014-04-07 08:03 - 00000000 ____D () C:\Users\Admin\AppData\Local\Blizzard 2014-04-07 07:50 - 2014-04-07 07:52 - 01426178 _____ () C:\Users\Admin\Downloads\adwcleaner3023.exe 2014-04-07 07:49 - 2014-04-07 19:26 - 00000000 ____D () C:\Users\Admin\AppData\Local\Battle.net 2014-04-07 07:49 - 2014-04-07 08:03 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Battle.net 2014-04-07 07:49 - 2014-04-07 07:49 - 00001136 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\Users\Admin\AppData\Local\Blizzard Entertainment 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-04-07 07:44 - 2014-04-07 07:44 - 00000000 ____D () C:\ProgramData\Battle.net 2014-04-07 02:00 - 2014-04-06 18:38 - 00000000 ____D () C:\Windows.old 2014-04-07 01:58 - 2014-04-07 01:58 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-04-07 01:41 - 2014-04-07 01:41 - 00000000 ____D () C:\$WINDOWS.~BT 2014-04-07 00:03 - 2014-04-07 00:03 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-04-06 22:32 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\WINDOWS\system32\Drivers\HipShieldK.sys 2014-04-06 21:35 - 2014-04-06 21:35 - 00000222 _____ () C:\Users\Admin\Desktop\Loadout.url 2014-04-06 21:26 - 2014-04-07 18:51 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-04-06 21:26 - 2014-04-06 21:26 - 00000979 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-04-06 21:25 - 2014-04-06 21:25 - 01141680 _____ () C:\Users\Admin\Downloads\SteamSetup(2).exe 2014-04-06 21:24 - 2014-04-07 20:10 - 00007603 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg 2014-04-06 21:21 - 2014-04-06 21:21 - 00000000 ____D () C:\Users\Admin\AppData\Local\Macromedia 2014-04-06 21:20 - 2014-04-07 20:00 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-04-06 21:20 - 2014-04-06 21:20 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-04-06 21:17 - 2014-04-06 21:21 - 00000000 ____D () C:\Users\Admin\AppData\Local\Adobe 2014-04-06 20:37 - 2014-04-06 20:37 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Mozilla 2014-04-06 20:37 - 2014-04-06 20:37 - 00000000 ____D () C:\Users\Admin\AppData\Local\Mozilla 2014-04-06 20:36 - 2014-04-06 20:36 - 00001163 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\ProgramData\Mozilla 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-04-06 20:25 - 2014-04-06 20:25 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-04-06 20:17 - 2014-04-06 08:36 - 01016261 _____ (Thisisu) C:\Users\Admin\Desktop\JRT_NEW.exe 2014-04-06 20:06 - 2014-04-06 20:06 - 00000000 ____D () C:\Users\Admin\AppData\Local\Acer Aspire R7 Tutorial 2014-04-06 19:49 - 2014-04-06 19:49 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2014-04-06 19:39 - 2014-04-06 19:39 - 00003151 _____ () C:\Users\Admin\Desktop\GeneratedFile 2014-04-06 19:37 - 2014-04-06 19:51 - 00000000 _____ () C:\Users\Admin\Desktop\OGLdpf.log 2014-04-06 17:44 - 2014-04-06 19:54 - 00000728 _____ () C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk 2014-04-06 17:41 - 2014-01-29 20:04 - 02476976 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiVAD64.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00906224 _____ (Intel Corporation) C:\WINDOWS\system32\igfxstarter.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00845296 _____ (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00770544 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00416240 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00397808 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00391152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe 2014-04-06 17:41 - 2014-01-29 20:04 - 00279024 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe 2014-04-06 17:41 - 2014-01-22 15:57 - 00182784 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v3412.dll 2014-04-06 17:41 - 2014-01-22 15:54 - 00002944 _____ () C:\WINDOWS\system32\iglhxs64.vp 2014-04-06 17:41 - 2014-01-22 15:51 - 19380224 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 04221440 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys 2014-04-06 17:41 - 2014-01-22 15:51 - 00733184 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 00548864 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpph.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 00527872 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrell.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00527360 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrplk.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00527360 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfra.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00527360 _____ (Intel Corporation) C:\WINDOWS\system32\igfxresn.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00526848 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrus.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00526848 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrdeu.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00526336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrom.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00526336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnld.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00526336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrita.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsky.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptg.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhun.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhrv.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcsy.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525312 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsve.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525312 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrslv.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00525312 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfin.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00524800 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtrk.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00524800 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptb.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00524288 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnor.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00524288 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrdan.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00523776 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtha.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00522240 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrheb.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00521728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrara.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00517632 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrjpn.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00516096 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrkor.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00514048 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcht.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00513536 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrchs.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00373760 _____ () C:\WINDOWS\system32\igdmd64.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 00371200 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrenu.lrc 2014-04-06 17:41 - 2014-01-22 15:51 - 00346624 _____ (Intel Corporation) C:\WINDOWS\system32\igfxTMM.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 00279040 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcpl.cpl 2014-04-06 17:41 - 2014-01-22 15:51 - 00243712 _____ (Intel Corporation) C:\WINDOWS\system32\igfxdo.dll 2014-04-06 17:41 - 2014-01-22 15:51 - 00012288 _____ ( ) C:\WINDOWS\system32\IGFXDEVLib.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 25971712 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 03224064 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 00493056 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxdv32.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 00320512 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 00299520 _____ () C:\WINDOWS\SysWOW64\igdmd32.dll 2014-04-06 17:41 - 2014-01-22 15:48 - 00025600 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll 2014-04-06 17:41 - 2014-01-22 15:44 - 20954112 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll 2014-04-06 17:41 - 2014-01-22 15:44 - 02896384 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll 2014-04-06 17:41 - 2014-01-22 15:44 - 00265216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 04011168 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAAC64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 02065920 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 01815040 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 01450656 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00785568 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00644768 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00602272 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMux64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00344736 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00210592 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUtils64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00177824 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00163328 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00155136 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00137728 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00133120 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00128672 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCUMD64.dll 2014-04-06 17:41 - 2014-01-22 15:35 - 00094368 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiLogServer64.dll 2014-04-06 17:40 - 2014-01-29 20:04 - 07597040 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe 2014-04-06 17:40 - 2014-01-29 20:04 - 00771568 _____ (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe 2014-04-06 17:40 - 2014-01-29 20:04 - 00755184 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIHotKeyMenu.exe 2014-04-06 17:40 - 2014-01-29 20:04 - 00530928 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe 2014-04-06 17:40 - 2014-01-29 20:04 - 00397296 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeApp.exe 2014-04-06 17:40 - 2014-01-29 20:04 - 00153072 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe 2014-04-06 17:40 - 2014-01-22 15:51 - 07947776 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll 2014-04-06 17:40 - 2014-01-22 15:51 - 02384896 _____ () C:\WINDOWS\system32\GfxRes.dll 2014-04-06 17:40 - 2014-01-22 15:51 - 00267407 _____ () C:\WINDOWS\system32\Gfxres.th-TH.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00253466 _____ () C:\WINDOWS\system32\Gfxres.el-GR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00235401 _____ () C:\WINDOWS\system32\Gfxres.ru-RU.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00222208 _____ () C:\WINDOWS\system32\igdde64.dll 2014-04-06 17:40 - 2014-01-22 15:51 - 00201128 _____ () C:\WINDOWS\system32\Gfxres.ar-SA.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00198725 _____ () C:\WINDOWS\system32\Gfxres.ja-JP.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00194560 _____ (Intel Corporation) C:\WINDOWS\system32\gfxSrvc.dll 2014-04-06 17:40 - 2014-01-22 15:51 - 00192758 _____ () C:\WINDOWS\system32\Gfxres.he-IL.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00180936 _____ () C:\WINDOWS\system32\Gfxres.ko-KR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00180850 _____ () C:\WINDOWS\system32\Gfxres.it-IT.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00178473 _____ () C:\WINDOWS\system32\Gfxres.es-ES.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00178290 _____ () C:\WINDOWS\system32\Gfxres.fr-FR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00178123 _____ () C:\WINDOWS\system32\Gfxres.de-DE.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00176838 _____ () C:\WINDOWS\system32\Gfxres.ro-RO.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00175862 _____ () C:\WINDOWS\system32\Gfxres.hu-HU.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00175571 _____ () C:\WINDOWS\system32\Gfxres.tr-TR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00175067 _____ () C:\WINDOWS\system32\Gfxres.nl-NL.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00174802 _____ () C:\WINDOWS\system32\Gfxres.pl-PL.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00174269 _____ () C:\WINDOWS\system32\Gfxres.pt-BR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00173792 _____ () C:\WINDOWS\system32\Gfxres.fi-FI.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00173276 _____ () C:\WINDOWS\system32\Gfxres.sk-SK.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00173059 _____ () C:\WINDOWS\system32\Gfxres.sv-SE.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00172833 _____ () C:\WINDOWS\system32\Gfxres.pt-PT.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00172554 _____ () C:\WINDOWS\system32\Gfxres.cs-CZ.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00171691 _____ () C:\WINDOWS\system32\Gfxres.hr-HR.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00168215 _____ () C:\WINDOWS\system32\Gfxres.sl-SI.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00166833 _____ () C:\WINDOWS\system32\Gfxres.nb-NO.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00166220 _____ () C:\WINDOWS\system32\Gfxres.da-DK.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00161534 _____ () C:\WINDOWS\system32\Gfxres.en-US.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00160256 _____ () C:\WINDOWS\system32\igdail64.dll 2014-04-06 17:40 - 2014-01-22 15:51 - 00154805 _____ () C:\WINDOWS\system32\Gfxres.zh-TW.resources 2014-04-06 17:40 - 2014-01-22 15:51 - 00152993 _____ () C:\WINDOWS\system32\Gfxres.zh-CN.resources 2014-04-06 17:40 - 2014-01-22 15:48 - 00329216 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll 2014-04-06 17:40 - 2014-01-22 15:48 - 00182272 _____ () C:\WINDOWS\SysWOW64\igdde32.dll 2014-04-06 17:40 - 2014-01-22 15:48 - 00142848 _____ () C:\WINDOWS\SysWOW64\igdail32.dll 2014-04-06 17:40 - 2014-01-22 15:44 - 00290816 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll 2014-04-06 17:06 - 2014-04-06 17:06 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Malwarebytes 2014-04-06 17:05 - 2014-04-06 17:05 - 00001125 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-04-06 17:05 - 2014-04-06 17:05 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-04-06 17:05 - 2014-04-06 17:05 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-04-06 17:05 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-04-06 16:52 - 2014-04-06 16:52 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Safer-Networking 2014-04-06 16:51 - 2014-04-06 16:51 - 00001395 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-04-06 16:49 - 2014-04-07 12:15 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-04-06 16:49 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean64.exe 2014-04-06 16:48 - 2014-04-06 16:52 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-04-06 16:48 - 2014-04-06 16:48 - 00001840 _____ () C:\Users\Public\Desktop\Apps.lnk 2014-04-06 16:48 - 2014-04-06 16:48 - 00001823 _____ () C:\Users\Public\Desktop\Start BlueStacks.lnk 2014-04-06 16:48 - 2014-04-06 16:48 - 00000000 ____D () C:\Program Files (x86)\BlueStacks 2014-04-06 16:46 - 2014-04-06 17:40 - 00000000 ____D () C:\ProgramData\BlueStacksSetup 2014-04-06 16:45 - 2014-04-06 16:45 - 00000000 ____D () C:\Users\Admin\AppData\Local\Bluestacks 2014-04-06 16:42 - 2014-04-06 16:50 - 00000000 ____D () C:\ProgramData\BlueStacks 2014-04-06 16:25 - 2014-04-06 16:25 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Macromedia 2014-04-06 16:22 - 2014-04-07 20:07 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1533359429-239272056-3924852376-1002 2014-04-06 16:20 - 2014-04-06 16:24 - 00000000 ____D () C:\Users\Admin\Desktop\Sicherung 2014-04-06 16:17 - 2014-04-06 19:50 - 00000000 ____D () C:\Users\Admin\AppData\Local\Acer 2014-04-06 16:11 - 2014-04-06 16:11 - 00000000 ____D () C:\Users\Public\Pokki 2014-04-06 16:08 - 2014-04-06 20:00 - 00000000 ____D () C:\Users\Admin\AppData\Local\clear.fi 2014-04-06 16:08 - 2014-04-06 16:08 - 00001276 _____ () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RtkGUI.lnk 2014-04-06 16:08 - 2014-04-06 16:08 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD 2014-04-06 16:08 - 2014-04-06 16:08 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Atheros 2014-04-06 16:07 - 2014-04-06 16:07 - 00000000 ____D () C:\ProgramData\OEM_YAHOO 2014-04-06 16:07 - 2014-04-06 16:07 - 00000000 ____D () C:\Program Files\Accessory Store 2014-04-06 16:06 - 2014-04-06 16:34 - 00000000 ____D () C:\Users\Admin\AppData\Local\VirtualStore 2014-04-06 16:06 - 2014-04-06 16:06 - 00001454 _____ () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Adobe 2014-04-06 16:05 - 2014-04-06 16:05 - 00000020 ___SH () C:\Users\Admin\ntuser.ini 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-04-06 16:02 - 2014-04-07 20:14 - 00000000 ____D () C:\Users\Admin 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Vorlagen 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Startmenü 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Netzwerkumgebung 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Lokale Einstellungen 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Eigene Dateien 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Druckumgebung 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Musik 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Bilder 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Verlauf 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Anwendungsdaten 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Anwendungsdaten 2014-04-06 16:02 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-04-06 16:02 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-04-06 16:02 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-04-06 16:02 - 2013-08-22 17:36 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-04-06 16:01 - 2014-04-06 16:04 - 00040008 _____ () C:\WINDOWS\diagwrn.xml 2014-04-06 16:01 - 2014-04-06 16:04 - 00040008 _____ () C:\WINDOWS\diagerr.xml 2014-04-06 15:39 - 2014-04-06 18:03 - 00000000 ___HD () C:\$SysReset 2014-04-05 11:27 - 2014-04-05 11:27 - 00165659 _____ () C:\MyXML.xml 2014-04-05 11:27 - 2014-04-05 11:27 - 00000451 _____ () C:\ASCInit.log 2014-04-05 11:14 - 2014-04-05 11:51 - 00000000 ____D () C:\Users\Admin\Downloads\CrystalDiskInfo6_1_8 2014-04-05 11:14 - 2014-04-05 11:14 - 02545407 _____ () C:\Users\Admin\Downloads\CrystalDiskInfo6_1_8.zip 2014-03-24 23:12 - 2014-03-25 00:17 - 192635764 _____ () C:\Users\Admin\Downloads\VolbeatOutlawDeluxee213.rar 2014-03-23 23:32 - 2014-04-07 07:54 - 00000000 ____D () C:\AdwCleaner 2014-03-23 22:13 - 2014-03-23 22:13 - 00000000 _____ () C:\autoexec.bat 2014-03-23 22:01 - 2014-03-23 22:01 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Admin\Downloads\SpyHunter-Installer.exe 2014-03-23 13:25 - 2014-03-23 13:25 - 00000000 ____D () C:\Users\Admin\.thumbnails 2014-03-23 13:24 - 2014-03-23 13:31 - 00000000 ____D () C:\Users\Admin\.gimp-2.8 2014-03-23 13:20 - 2014-03-23 13:20 - 00000000 ____D () C:\Users\Admin\Downloads\gimp-2 2014-03-23 13:07 - 2014-03-23 13:09 - 37302368 _____ (IN MEDIA KG ) C:\Users\Admin\Downloads\fwsetup.exe 2014-03-23 12:36 - 2014-03-23 12:36 - 00001652 _____ () C:\Users\Public\Desktop\Hi-Rez Diagnostics and Support.lnk 2014-03-23 12:36 - 2014-03-23 12:36 - 00001643 _____ () C:\Users\Public\Desktop\Smite.lnk 2014-03-23 12:34 - 2014-03-23 12:35 - 39967251 _____ (Hi-Rez Studios) C:\Users\Admin\Downloads\InstallHiRezGamesEnglish.exe 2014-03-22 20:48 - 2014-03-22 20:49 - 28888168 _____ () C:\Users\Admin\Downloads\warface-launcher.exe 2014-03-21 23:10 - 2014-04-06 16:04 - 00000000 ____D () C:\Users\Admin\Desktop\Band 2014-03-21 23:01 - 2014-03-21 23:01 - 01540672 _____ (NCH Software) C:\Users\Admin\Downloads\debutpsetup_1.82.exe 2014-03-21 20:48 - 2014-03-21 20:48 - 00000000 ____D () C:\Users\Admin\Documents\clear.fi 2014-03-19 19:17 - 2014-03-19 19:17 - 00005330 _____ () C:\Users\Admin\Downloads\Abkürzungen zu Marketing.html 2014-03-16 17:25 - 2014-03-16 17:25 - 34377032 _____ (DVDVideoSoft Ltd. ) C:\Users\Admin\Downloads\FreeYouTubeToMP3Converter.exe 2014-03-16 16:55 - 2014-03-16 16:55 - 01977432 _____ () C:\Users\Admin\Downloads\winrar-x64-501.exe 2014-03-16 16:53 - 2014-03-16 17:08 - 45066586 _____ () C:\Users\Admin\Downloads\7734_wim.rar 2014-03-14 18:46 - 2014-03-14 18:47 - 34827424 _____ (Skype Technologies S.A.) C:\Users\Admin\Downloads\Skyp614eSetupFull.exe 2014-03-14 16:57 - 2014-03-14 16:57 - 01141680 _____ () C:\Users\Admin\Downloads\SteamSetup(1).exe 2014-03-12 14:43 - 2014-03-12 14:43 - 10149920 _____ (BlueStack Systems Inc.) C:\Users\Admin\Downloads\BlueStacks-SplitInstaller_native (1).exe 2014-03-08 16:00 - 2014-03-08 16:01 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Admin\Downloads\mbam-setup-1.75.0.1300(1).exe 2014-03-08 15:58 - 2014-03-08 16:00 - 27264776 _____ (IObit ) C:\Users\Admin\Downloads\imf-setup_2.3.0.13.exe 2014-03-08 09:50 - 2014-03-08 09:50 - 10284808 _____ (Malwarebytes Corporation ) C:\Users\Admin\Downloads\mbam-setup-1.75.0.1300.exe ==================== One Month Modified Files and Folders ======= 2014-04-07 20:16 - 2014-04-07 17:34 - 00018141 _____ () C:\Users\Admin\Downloads\FRST.txt 2014-04-07 20:15 - 2014-04-07 17:34 - 00000000 ____D () C:\FRST 2014-04-07 20:14 - 2014-04-07 20:14 - 00050477 _____ () C:\Users\Admin\Downloads\Defogger.exe 2014-04-07 20:14 - 2014-04-07 20:14 - 00000472 _____ () C:\Users\Admin\Downloads\defogger_disable.log 2014-04-07 20:14 - 2014-04-07 20:14 - 00000000 _____ () C:\Users\Admin\defogger_reenable 2014-04-07 20:14 - 2014-04-06 16:02 - 00000000 ____D () C:\Users\Admin 2014-04-07 20:12 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-04-07 20:10 - 2014-04-06 21:24 - 00007603 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg 2014-04-07 20:07 - 2014-04-06 16:22 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1533359429-239272056-3924852376-1002 2014-04-07 20:00 - 2014-04-06 21:20 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-04-07 19:26 - 2014-04-07 07:49 - 00000000 ____D () C:\Users\Admin\AppData\Local\Battle.net 2014-04-07 18:51 - 2014-04-06 21:26 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-04-07 18:36 - 2013-11-07 23:46 - 01767064 _____ () C:\WINDOWS\WindowsUpdate.log 2014-04-07 18:33 - 2014-04-07 18:33 - 00000000 ____D () C:\Users\Admin\AppData\Local\EdgeOfReality 2014-04-07 18:25 - 2014-04-07 18:23 - 00010009 _____ () C:\WINDOWS\DirectX.log 2014-04-07 17:39 - 2014-04-07 17:36 - 00020071 _____ () C:\Users\Admin\Downloads\Addition.txt 2014-04-07 17:33 - 2014-04-07 17:32 - 02157056 _____ (Farbar) C:\Users\Admin\Downloads\FRST64.exe 2014-04-07 17:20 - 2014-04-07 12:50 - 00000000 ____D () C:\ProgramData\HitmanPro 2014-04-07 12:51 - 2014-04-07 12:51 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-04-07 12:50 - 2014-04-07 12:50 - 00001921 _____ () C:\Users\Public\Desktop\HitmanPro.lnk 2014-04-07 12:50 - 2014-04-07 12:50 - 00000000 ____D () C:\Program Files\HitmanPro 2014-04-07 12:38 - 2014-04-07 12:38 - 00000614 _____ () C:\Users\Admin\Desktop\JRT.txt 2014-04-07 12:34 - 2014-04-07 12:33 - 10971424 _____ (SurfRight B.V.) C:\Users\Admin\Downloads\HitmanPro_x64.exe 2014-04-07 12:34 - 2014-04-07 12:33 - 02347384 _____ (ESET) C:\Users\Admin\Downloads\esetsmartinstaller_enu.exe 2014-04-07 12:15 - 2014-04-06 16:49 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-04-07 08:03 - 2014-04-07 08:03 - 00000000 ____D () C:\Users\Admin\AppData\Local\Blizzard 2014-04-07 08:03 - 2014-04-07 07:49 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Battle.net 2014-04-07 07:57 - 2014-01-30 17:11 - 00000000 __RDO () C:\Users\Admin\SkyDrive 2014-04-07 07:55 - 2013-09-05 14:39 - 00009254 _____ () C:\WINDOWS\PFRO.log 2014-04-07 07:55 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-04-07 07:55 - 2013-08-22 15:25 - 00786432 ___SH () C:\WINDOWS\system32\config\BBI 2014-04-07 07:54 - 2014-03-23 23:32 - 00000000 ____D () C:\AdwCleaner 2014-04-07 07:52 - 2014-04-07 07:50 - 01426178 _____ () C:\Users\Admin\Downloads\adwcleaner3023.exe 2014-04-07 07:51 - 2014-01-07 19:52 - 00000000 ____D () C:\Users\Admin\AppData\Local\Packages 2014-04-07 07:51 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-04-07 07:49 - 2014-04-07 07:49 - 00001136 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\Users\Admin\AppData\Local\Blizzard Entertainment 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-04-07 07:49 - 2014-04-07 07:49 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-04-07 07:44 - 2014-04-07 07:44 - 00000000 ____D () C:\ProgramData\Battle.net 2014-04-07 02:00 - 2013-08-22 17:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-04-07 01:58 - 2014-04-07 01:58 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-04-07 01:41 - 2014-04-07 01:41 - 00000000 ____D () C:\$WINDOWS.~BT 2014-04-07 00:03 - 2014-04-07 00:03 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-04-07 00:03 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-04-07 00:03 - 2013-08-22 16:46 - 00034570 _____ () C:\WINDOWS\setupact.log 2014-04-06 22:27 - 2013-09-05 14:51 - 00000000 ____D () C:\Program Files\Common Files\mcafee 2014-04-06 22:25 - 2013-08-22 17:36 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP 2014-04-06 22:23 - 2013-09-05 14:51 - 00000000 ____D () C:\ProgramData\McAfee 2014-04-06 21:35 - 2014-04-06 21:35 - 00000222 _____ () C:\Users\Admin\Desktop\Loadout.url 2014-04-06 21:26 - 2014-04-06 21:26 - 00000979 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-04-06 21:25 - 2014-04-06 21:25 - 01141680 _____ () C:\Users\Admin\Downloads\SteamSetup(2).exe 2014-04-06 21:21 - 2014-04-06 21:21 - 00000000 ____D () C:\Users\Admin\AppData\Local\Macromedia 2014-04-06 21:21 - 2014-04-06 21:17 - 00000000 ____D () C:\Users\Admin\AppData\Local\Adobe 2014-04-06 21:20 - 2014-04-06 21:20 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-04-06 20:37 - 2014-04-06 20:37 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Mozilla 2014-04-06 20:37 - 2014-04-06 20:37 - 00000000 ____D () C:\Users\Admin\AppData\Local\Mozilla 2014-04-06 20:36 - 2014-04-06 20:36 - 00001163 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\ProgramData\Mozilla 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-04-06 20:36 - 2014-04-06 20:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-04-06 20:25 - 2014-04-06 20:25 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-04-06 20:06 - 2014-04-06 20:06 - 00000000 ____D () C:\Users\Admin\AppData\Local\Acer Aspire R7 Tutorial 2014-04-06 20:03 - 2013-11-08 08:33 - 00765582 _____ () C:\WINDOWS\system32\perfh007.dat 2014-04-06 20:03 - 2013-11-08 08:33 - 00159366 _____ () C:\WINDOWS\system32\perfc007.dat 2014-04-06 20:03 - 2013-09-05 14:41 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-04-06 20:00 - 2014-04-06 16:08 - 00000000 ____D () C:\Users\Admin\AppData\Local\clear.fi 2014-04-06 20:00 - 2013-09-05 14:51 - 00000000 ____D () C:\ProgramData\Acer 2014-04-06 20:00 - 2013-09-05 14:51 - 00000000 ____D () C:\Program Files (x86)\Acer 2014-04-06 19:56 - 2013-11-08 00:13 - 00000000 ____D () C:\WINDOWS\SysWOW64\NV 2014-04-06 19:56 - 2013-11-08 00:13 - 00000000 ____D () C:\WINDOWS\system32\NV 2014-04-06 19:54 - 2014-04-06 17:44 - 00000728 _____ () C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk 2014-04-06 19:51 - 2014-04-06 19:37 - 00000000 _____ () C:\Users\Admin\Desktop\OGLdpf.log 2014-04-06 19:50 - 2014-04-06 16:17 - 00000000 ____D () C:\Users\Admin\AppData\Local\Acer 2014-04-06 19:49 - 2014-04-06 19:49 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2014-04-06 19:47 - 2013-08-22 16:44 - 00335992 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-04-06 19:39 - 2014-04-06 19:39 - 00003151 _____ () C:\Users\Admin\Desktop\GeneratedFile 2014-04-06 18:38 - 2014-04-07 02:00 - 00000000 ____D () C:\Windows.old 2014-04-06 18:03 - 2014-04-06 15:39 - 00000000 ___HD () C:\$SysReset 2014-04-06 17:40 - 2014-04-06 16:46 - 00000000 ____D () C:\ProgramData\BlueStacksSetup 2014-04-06 17:06 - 2014-04-06 17:06 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Malwarebytes 2014-04-06 17:05 - 2014-04-06 17:05 - 00001125 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-04-06 17:05 - 2014-04-06 17:05 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-04-06 17:05 - 2014-04-06 17:05 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-04-06 16:52 - 2014-04-06 16:52 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Safer-Networking 2014-04-06 16:52 - 2014-04-06 16:48 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-04-06 16:51 - 2014-04-06 16:51 - 00001395 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-04-06 16:50 - 2014-04-06 16:42 - 00000000 ____D () C:\ProgramData\BlueStacks 2014-04-06 16:48 - 2014-04-06 16:48 - 00001840 _____ () C:\Users\Public\Desktop\Apps.lnk 2014-04-06 16:48 - 2014-04-06 16:48 - 00001823 _____ () C:\Users\Public\Desktop\Start BlueStacks.lnk 2014-04-06 16:48 - 2014-04-06 16:48 - 00000000 ____D () C:\Program Files (x86)\BlueStacks 2014-04-06 16:48 - 2013-08-22 17:36 - 00000000 __RHD () C:\Users\Public\Libraries 2014-04-06 16:45 - 2014-04-06 16:45 - 00000000 ____D () C:\Users\Admin\AppData\Local\Bluestacks 2014-04-06 16:34 - 2014-04-06 16:06 - 00000000 ____D () C:\Users\Admin\AppData\Local\VirtualStore 2014-04-06 16:25 - 2014-04-06 16:25 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Macromedia 2014-04-06 16:24 - 2014-04-06 16:20 - 00000000 ____D () C:\Users\Admin\Desktop\Sicherung 2014-04-06 16:15 - 2013-11-08 00:23 - 00003546 _____ () C:\WINDOWS\System32\Tasks\Norton Online Backup ARA 2014-04-06 16:15 - 2013-11-08 00:23 - 00000000 ____D () C:\ProgramData\Norton 2014-04-06 16:15 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-04-06 16:14 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-04-06 16:11 - 2014-04-06 16:11 - 00000000 ____D () C:\Users\Public\Pokki 2014-04-06 16:08 - 2014-04-06 16:08 - 00001276 _____ () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RtkGUI.lnk 2014-04-06 16:08 - 2014-04-06 16:08 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD 2014-04-06 16:08 - 2014-04-06 16:08 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Atheros 2014-04-06 16:07 - 2014-04-06 16:07 - 00000000 ____D () C:\ProgramData\OEM_YAHOO 2014-04-06 16:07 - 2014-04-06 16:07 - 00000000 ____D () C:\Program Files\Accessory Store 2014-04-06 16:07 - 2013-09-05 15:36 - 00000000 ___HD () C:\OEM 2014-04-06 16:07 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-04-06 16:06 - 2014-04-06 16:06 - 00001454 _____ () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ___RD () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-04-06 16:06 - 2014-04-06 16:06 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Adobe 2014-04-06 16:06 - 2013-09-05 15:39 - 00000000 ___DC () C:\WINDOWS\Panther 2014-04-06 16:06 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-04-06 16:06 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore 2014-04-06 16:06 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\FileManager 2014-04-06 16:06 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Camera 2014-04-06 16:05 - 2014-04-06 16:05 - 00000020 ___SH () C:\Users\Admin\ntuser.ini 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-04-06 16:04 - 2014-04-06 16:04 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-04-06 16:04 - 2014-04-06 16:01 - 00040008 _____ () C:\WINDOWS\diagwrn.xml 2014-04-06 16:04 - 2014-04-06 16:01 - 00040008 _____ () C:\WINDOWS\diagerr.xml 2014-04-06 16:04 - 2014-03-21 23:10 - 00000000 ____D () C:\Users\Admin\Desktop\Band 2014-04-06 16:04 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows NT 2014-04-06 16:04 - 2013-08-22 15:36 - 00000000 __RHD () C:\Users\Default 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Vorlagen 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Startmenü 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Netzwerkumgebung 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Lokale Einstellungen 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Eigene Dateien 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Druckumgebung 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Musik 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Documents\Eigene Bilder 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Verlauf 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\AppData\Local\Anwendungsdaten 2014-04-06 16:02 - 2014-04-06 16:02 - 00000000 _SHDL () C:\Users\Admin\Anwendungsdaten 2014-04-06 16:01 - 2013-09-05 14:40 - 00000000 ____D () C:\Users\Administrator 2014-04-06 08:36 - 2014-04-06 20:17 - 01016261 _____ (Thisisu) C:\Users\Admin\Desktop\JRT_NEW.exe 2014-04-05 11:51 - 2014-04-05 11:14 - 00000000 ____D () C:\Users\Admin\Downloads\CrystalDiskInfo6_1_8 2014-04-05 11:27 - 2014-04-05 11:27 - 00165659 _____ () C:\MyXML.xml 2014-04-05 11:27 - 2014-04-05 11:27 - 00000451 _____ () C:\ASCInit.log 2014-04-05 11:14 - 2014-04-05 11:14 - 02545407 _____ () C:\Users\Admin\Downloads\CrystalDiskInfo6_1_8.zip 2014-03-25 00:17 - 2014-03-24 23:12 - 192635764 _____ () C:\Users\Admin\Downloads\VolbeatOutlawDeluxee213.rar 2014-03-23 22:13 - 2014-03-23 22:13 - 00000000 _____ () C:\autoexec.bat 2014-03-23 22:01 - 2014-03-23 22:01 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Admin\Downloads\SpyHunter-Installer.exe 2014-03-23 14:26 - 2014-01-31 19:55 - 00000000 ____D () C:\Users\Admin\Documents\My Games 2014-03-23 13:31 - 2014-03-23 13:24 - 00000000 ____D () C:\Users\Admin\.gimp-2.8 2014-03-23 13:25 - 2014-03-23 13:25 - 00000000 ____D () C:\Users\Admin\.thumbnails 2014-03-23 13:20 - 2014-03-23 13:20 - 00000000 ____D () C:\Users\Admin\Downloads\gimp-2 2014-03-23 13:09 - 2014-03-23 13:07 - 37302368 _____ (IN MEDIA KG ) C:\Users\Admin\Downloads\fwsetup.exe 2014-03-23 12:36 - 2014-03-23 12:36 - 00001652 _____ () C:\Users\Public\Desktop\Hi-Rez Diagnostics and Support.lnk 2014-03-23 12:36 - 2014-03-23 12:36 - 00001643 _____ () C:\Users\Public\Desktop\Smite.lnk 2014-03-23 12:36 - 2014-01-12 02:51 - 00000000 ____D () C:\Spiele 2014-03-23 12:35 - 2014-03-23 12:34 - 39967251 _____ (Hi-Rez Studios) C:\Users\Admin\Downloads\InstallHiRezGamesEnglish.exe 2014-03-22 20:49 - 2014-03-22 20:48 - 28888168 _____ () C:\Users\Admin\Downloads\warface-launcher.exe 2014-03-21 23:01 - 2014-03-21 23:01 - 01540672 _____ (NCH Software) C:\Users\Admin\Downloads\debutpsetup_1.82.exe 2014-03-21 20:48 - 2014-03-21 20:48 - 00000000 ____D () C:\Users\Admin\Documents\clear.fi 2014-03-20 16:26 - 2014-01-22 14:50 - 00000000 ____D () C:\Users\Admin\Desktop\Schule 2014-03-19 19:17 - 2014-03-19 19:17 - 00005330 _____ () C:\Users\Admin\Downloads\Abkürzungen zu Marketing.html 2014-03-16 17:25 - 2014-03-16 17:25 - 34377032 _____ (DVDVideoSoft Ltd. ) C:\Users\Admin\Downloads\FreeYouTubeToMP3Converter.exe 2014-03-16 17:08 - 2014-03-16 16:53 - 45066586 _____ () C:\Users\Admin\Downloads\7734_wim.rar 2014-03-16 16:55 - 2014-03-16 16:55 - 01977432 _____ () C:\Users\Admin\Downloads\winrar-x64-501.exe 2014-03-14 18:47 - 2014-03-14 18:46 - 34827424 _____ (Skype Technologies S.A.) C:\Users\Admin\Downloads\Skyp614eSetupFull.exe 2014-03-14 16:57 - 2014-03-14 16:57 - 01141680 _____ () C:\Users\Admin\Downloads\SteamSetup(1).exe 2014-03-12 14:43 - 2014-03-12 14:43 - 10149920 _____ (BlueStack Systems Inc.) C:\Users\Admin\Downloads\BlueStacks-SplitInstaller_native (1).exe 2014-03-11 20:23 - 2014-02-16 19:56 - 00000000 ____D () C:\Users\Admin\Documents\CyberLink 2014-03-08 16:01 - 2014-03-08 16:00 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Admin\Downloads\mbam-setup-1.75.0.1300(1).exe 2014-03-08 16:00 - 2014-03-08 15:58 - 27264776 _____ (IObit ) C:\Users\Admin\Downloads\imf-setup_2.3.0.13.exe 2014-03-08 09:50 - 2014-03-08 09:50 - 10284808 _____ (Malwarebytes Corporation ) C:\Users\Admin\Downloads\mbam-setup-1.75.0.1300.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe [2013-08-22 11:01] - [2013-08-22 14:39] - 2328880 ____A (Microsoft Corporation) 8479DC46E9A09015C0777A16BC22A15D C:\Windows\SysWOW64\explorer.exe [2013-08-22 04:06] - [2013-08-22 07:25] - 2063408 ____A (Microsoft Corporation) 2CA8E3C9335C3C8BAEB335345E48364D C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-05 14:39 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- GMER Logfile: Code:
ATTFilter GMER 2.1.19357 - GMER - Rootkit Detector and Remover Rootkit scan 2014-04-07 20:25:10 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000036 WDC_WD10JPVX-22JC3T0 rev.01.01A01 931,51GB Running: Gmer-19357.exe; Driver: C:\Users\Admin\AppData\Local\Temp\ugldrpob.sys ---- Kernel code sections - GMER 2.1 ---- .text C:\WINDOWS\System32\win32k.sys!W32pServiceTable fffff96000242f00 15 bytes [00, D9, 10, 02, 40, B2, 6F, ...] .text C:\WINDOWS\System32\win32k.sys!W32pServiceTable + 16 fffff96000242f10 11 bytes [00, D0, FB, FF, 80, 5C, C4, ...] ---- User code sections - GMER 2.1 ---- .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNEL32.DLL!K32GetModuleInformation 00007ff8af683104 7 bytes JMP 00007ff9af0202d0 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNEL32.DLL!RegQueryValueExW 00007ff8af683e30 7 bytes JMP 00007ff9af020308 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNEL32.DLL!RegDeleteValueW 00007ff8af735668 7 bytes JMP 00007ff9af020340 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNEL32.DLL!RegSetValueExW 00007ff8af7356c0 7 bytes JMP 00007ff9af0203b0 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNEL32.DLL!RegSetValueExA 00007ff8af73b094 7 bytes JMP 00007ff9af020378 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNEL32.DLL!K32EnumProcessModulesEx 00007ff8af75f314 7 bytes JMP 00007ff9af020228 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNEL32.DLL!K32GetMappedFileNameW 00007ff8af75f384 7 bytes JMP 00007ff9af020298 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNEL32.DLL!K32GetModuleFileNameExW 00007ff8af75f3b4 7 bytes JMP 00007ff9af020260 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNELBASE.dll!GetModuleHandleW 00007ff8af082a84 7 bytes JMP 00007ff9af0200d8 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNELBASE.dll!FreeLibrary 00007ff8af082b7c 5 bytes JMP 00007ff9af020180 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNELBASE.dll!LoadLibraryExW 00007ff8af083f38 5 bytes JMP 00007ff9af020148 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\KERNELBASE.dll!GetModuleHandleExW 00007ff8af084098 5 bytes JMP 00007ff9af020110 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\USER32.dll!CreateWindowExW 00007ff8b1737b64 10 bytes JMP 00007ff9af020490 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\USER32.dll!EnumDisplayDevicesA 00007ff8b1752910 5 bytes JMP 00007ff9af020420 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\USER32.dll!EnumDisplayDevicesW 00007ff8b1754578 5 bytes JMP 00007ff9af020458 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\USER32.dll!DisplayConfigGetDeviceInfo 00007ff8b1754980 9 bytes JMP 00007ff9af0203e8 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\GDI32.dll!D3DKMTGetDisplayModeList 00007ff8af9f1500 8 bytes JMP 00007ff9af0201b8 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\GDI32.dll!D3DKMTQueryAdapterInfo 00007ff8af9f1750 8 bytes JMP 00007ff9af0201f0 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\dxgi.dll!CreateDXGIFactory1 00007ff8aab973c0 5 bytes JMP 00007ff9aab80110 .text C:\WINDOWS\system32\dwm.exe[1004] C:\WINDOWS\system32\dxgi.dll!CreateDXGIFactory 00007ff8aab9b700 5 bytes JMP 00007ff9aab800d8 .text C:\WINDOWS\system32\nvvsvc.exe[472] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ff8af61169a 4 bytes [61, AF, F8, 7F] .text C:\WINDOWS\system32\nvvsvc.exe[472] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ff8af6116a2 4 bytes [61, AF, F8, 7F] .text C:\WINDOWS\system32\nvvsvc.exe[472] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ff8af61181a 4 bytes [61, AF, F8, 7F] .text C:\WINDOWS\system32\nvvsvc.exe[472] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ff8af611832 4 bytes [61, AF, F8, 7F] .text C:\Windows\system32\mfevtps.exe[2104] C:\WINDOWS\system32\psapi.dll!GetModuleBaseNameA + 506 00007ff8af61169a 4 bytes [61, AF, F8, 7F] .text C:\Windows\system32\mfevtps.exe[2104] C:\WINDOWS\system32\psapi.dll!GetModuleBaseNameA + 514 00007ff8af6116a2 4 bytes [61, AF, F8, 7F] .text C:\Windows\system32\mfevtps.exe[2104] C:\WINDOWS\system32\psapi.dll!QueryWorkingSet + 118 00007ff8af61181a 4 bytes [61, AF, F8, 7F] .text C:\Windows\system32\mfevtps.exe[2104] C:\WINDOWS\system32\psapi.dll!QueryWorkingSet + 142 00007ff8af611832 4 bytes [61, AF, F8, 7F] .text C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe[1344] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ff8af61169a 4 bytes [61, AF, F8, 7F] .text C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe[1344] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ff8af6116a2 4 bytes [61, AF, F8, 7F] .text C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe[1344] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ff8af61181a 4 bytes [61, AF, F8, 7F] .text C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe[1344] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ff8af611832 4 bytes [61, AF, F8, 7F] .text C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe[5068] C:\WINDOWS\SYSTEM32\WSOCK32.dll!setsockopt + 194 00007ff89c6e1f6a 4 bytes [6E, 9C, F8, 7F] .text C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe[5068] C:\WINDOWS\SYSTEM32\WSOCK32.dll!setsockopt + 218 00007ff89c6e1f82 4 bytes [6E, 9C, F8, 7F] .text C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe[5504] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ff8af61169a 4 bytes [61, AF, F8, 7F] .text C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe[5504] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ff8af6116a2 4 bytes [61, AF, F8, 7F] .text C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe[5504] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ff8af61181a 4 bytes [61, AF, F8, 7F] .text C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe[5504] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ff8af611832 4 bytes [61, AF, F8, 7F] .text C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe[7344] C:\WINDOWS\system32\psapi.dll!GetModuleBaseNameA + 506 00007ff8af61169a 4 bytes [61, AF, F8, 7F] .text C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe[7344] C:\WINDOWS\system32\psapi.dll!GetModuleBaseNameA + 514 00007ff8af6116a2 4 bytes [61, AF, F8, 7F] .text C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe[7344] C:\WINDOWS\system32\psapi.dll!QueryWorkingSet + 118 00007ff8af61181a 4 bytes [61, AF, F8, 7F] .text C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe[7344] C:\WINDOWS\system32\psapi.dll!QueryWorkingSet + 142 00007ff8af611832 4 bytes [61, AF, F8, 7F] .text C:\Users\Admin\Downloads\FRST64.exe[3192] C:\WINDOWS\SYSTEM32\WSOCK32.dll!setsockopt + 194 00007ff89c6e1f6a 4 bytes [6E, 9C, F8, 7F] .text C:\Users\Admin\Downloads\FRST64.exe[3192] C:\WINDOWS\SYSTEM32\WSOCK32.dll!setsockopt + 218 00007ff89c6e1f82 4 bytes [6E, 9C, F8, 7F] .text C:\Users\Admin\Downloads\FRST64.exe[3192] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ff8af61169a 4 bytes [61, AF, F8, 7F] .text C:\Users\Admin\Downloads\FRST64.exe[3192] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ff8af6116a2 4 bytes [61, AF, F8, 7F] .text C:\Users\Admin\Downloads\FRST64.exe[3192] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ff8af61181a 4 bytes [61, AF, F8, 7F] .text C:\Users\Admin\Downloads\FRST64.exe[3192] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ff8af611832 4 bytes [61, AF, F8, 7F] ---- Threads - GMER 2.1 ---- Thread C:\WINDOWS\system32\csrss.exe [664:6216] fffff960008f14d0 ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- EOF - GMER 2.1 ---- Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.04.06.06 Windows 8 x64 NTFS Internet Explorer 11.0.9600.16384 Admin :: ACER [Administrator] 06.04.2014 17:06:46 mbam-log-2014-04-06 (17-06-46).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 473612 Laufzeit: 2 Stunde(n), 28 Minute(n), 10 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 18 C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe.vir (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\SPTool.dll.vir (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\uninstall.exe.vir (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe.vir (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPTool64.exe.vir (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32.dll.vir (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll.vir (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64.dll.vir (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll.vir (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe.vir (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Admin\AppData\Local\Microsoft\Windows\INetCache\IE\HE6731LG\SoftonicDownloader_fuer_malwarebytes-anti-malware.exe (PUP.Optional.Softonic.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Admin\Downloads\gimp-2.8.6-setup.exe (PUP.Optional.Conduit) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Admin\Downloads\SoftonicDownloader_fuer_free-video-to-mp3-converter.exe (PUP.Optional.Softonic.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows.old\Users\Admin\AppData\Local\Temp\nsa278C.exe (PUP.Optional.SearchProtect.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows.old\Users\Admin\AppData\Local\Temp\nsh520C.exe (PUP.Optional.SearchProtect.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows.old\Users\Admin\AppData\Local\Temp\nsm2A3D.exe (PUP.Optional.SearchProtect.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows.old\Users\Admin\AppData\Local\Temp\nsq4E04.exe (PUP.Optional.SearchProtect.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows.old\Users\Admin\AppData\Local\Temp\nspB420\SpSetup.exe (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) So! Hoffe, dass das so erstmal in Ordnung ist. Falls nicht, einfach sagen was fehlt oder anders gemacht werden soll. |
18.04.2014, 14:25 | #3 |
/// the machine /// TB-Ausbilder | Internetverbindung langsam und trennt manchmal sogar ganz hi,
__________________Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ |
Themen zu Internetverbindung langsam und trennt manchmal sogar ganz |
acer aspire, anderen, bluestacks, chat, crystaldiskinfo, diagnostics, dvdvideosoft ltd., funktioniert, langsam, launch, msn deutschland, problem, pup.optional.conduit, pup.optional.conduit.a, pup.optional.searchprotect.a, pup.optional.softonic.a, safer networking, schonmal, spiele, spielen, spyhunter, spyhunter entfernen, testen, verschiedene, viren, wildtangent games |