|
Plagegeister aller Art und deren Bekämpfung: TR/BProtector.Gen2 von Avira gefunden.Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
14.04.2014, 10:55 | #1 |
| TR/BProtector.Gen2 von Avira gefunden. Hallo, auf meinem PC der mit Windows 7 läuft, wurde von Avira der Virus TR/BProtector.Gen2 gefunden. Ich bitte um Hilfe und danke schon jetzt für eine Antwort. MfG Saschax |
14.04.2014, 13:20 | #2 |
/// the machine /// TB-Ausbilder | TR/BProtector.Gen2 von Avira gefunden. hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
14.04.2014, 17:44 | #3 |
| TR/BProtector.Gen2 von Avira gefunden. FRST.txt
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-04-2014 01 Ran by Sascha (administrator) on SASCHA-PC on 14-04-2014 18:39:42 Running from C:\Users\Sascha\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe () C:\Windows\system\3DG4me.exe (Saitek) C:\Program Files\Saitek\VolumeTracker\SaiVolume.exe (Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (hxxp://tortoisesvn.net) C:\Program Files\TortoiseSVN\bin\TSVNCache.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Avira Operations GmbH & Co. KG) C:\program files (x86)\avira\antivir desktop\ipmGui.exe (Google Inc.) C:\Users\Sascha\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Sascha\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Sascha\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Sascha\AppData\Local\Google\Chrome\Application\chrome.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe (Google Inc.) C:\Users\Sascha\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Sascha\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Sascha\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11821160 2011-05-09] (Realtek Semiconductor) HKLM\...\Run: [3DG4me] => C:\Windows\System\3DG4me.exe [126976 2010-04-23] () HKLM\...\Run: [Nvtmru] => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1225920 2014-04-02] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-02] (NVIDIA Corporation) HKLM\...\Run: [SaiVolume] => C:\Program Files\Saitek\VolumeTracker\SaiVolume.exe [152064 2012-10-15] (Saitek) HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454144 2013-04-16] (Saitek) HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2013-04-16] (Saitek) HKLM-x32\...\Run: [STCAgent] => "C:\Program Files (x86)\Splashtop\Splashtop Connect IE\STCAgent.exe" HKLM-x32\...\Run: [ZyngaGamesAgent] => "C:\Program Files (x86)\Splashtop\Splashtop Connect\ZyngaGamesAgent.exe" HKLM-x32\...\Run: [ApnUpdater] => "C:\Program Files (x86)\Ask.com\Updater\Updater.exe" HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-20] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3814736 2014-02-26] (LogMeIn Inc.) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3854640 2014-04-13] (AVAST Software) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] - rmdir /s /q "\SearchProtect" HKU\S-1-5-19\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1475584 2010-11-21] (Microsoft Corporation) HKU\S-1-5-20\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1475584 2010-11-21] (Microsoft Corporation) HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1821888 2014-02-25] (Valve Corporation) HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\Run: [Facebook Update] => C:\Users\Sascha\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-07-12] (Facebook Inc.) HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\Run: [Google Update] => C:\Users\Sascha\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2012-01-15] (Google Inc.) HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\sidebar.exe [1475584 2010-11-21] (Microsoft Corporation) HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\Run: [Viber] => "C:\Users\Sascha\AppData\Local\Viber\Viber.exe" StartMinimized HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\Run: [Browser Infrastructure Helper] => C:\Users\Sascha\AppData\Local\Smartbar\Application\Smartbar.exe startup HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\Run: [BackgroundContainer] => "C:\Windows\SysWOW64\Rundll32.exe" "C:\Users\Sascha\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <===== ATTENTION HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.) HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x91000000 HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\MountPoints2: {aa182aa0-9bb0-11e2-b8cf-806e6f6e6963} - E:\pushinst.exe HKU\S-1-5-21-112523691-468091876-1063715665-1001\...\MountPoints2: {cbcf1ef9-2a34-11e1-bbc5-806e6f6e6963} - D:\Autorun.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=avast&hsimp=yhs-001&type={partner_id}&p={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.yhs4.search.yahoo.com/?hspart=avast&hsimp=yhs-001&type={partner_id} HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x25E0FEFA0CC0CC01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://de.yhs4.search.yahoo.com/?hspart=avast&hsimp=yhs-001&type={partner_id} HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = URLSearchHook: HKLM-x32 - (No Name) - {26647ca4-a2a7-4eac-8a72-761aa9141de7} - No File SearchScopes: HKLM-x32 - DefaultScope {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=avast&hsimp=yhs-001&type={partner_id}&p={searchTerms} SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=eb569e80-15e5-4c3c-88c2-8ed424376feb&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=21/07/2013&type=hp1000 SearchScopes: HKLM-x32 - {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=avast&hsimp=yhs-001&type={partner_id}&p={searchTerms} SearchScopes: HKLM-x32 - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3281675&CUI=UN15535417742404625 SearchScopes: HKCU - DefaultScope {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=avast&hsimp=yhs-001&type={partner_id}&p={searchTerms} SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=eb569e80-15e5-4c3c-88c2-8ed424376feb&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=21/07/2013&type=hp1000 SearchScopes: HKCU - {00A648C7-283C-471f-8CCE-2368BA2BDF2C} URL = hxxp://www.google.com/cse?cx=partner-pub-3794288947762788%3A7941509802&ie=UTF-8&sa=Search&siteurl=www.google.com%2Fcse%2Fhome%3Fcx%3Dpartner-pub-3794288947762788%3A7941509802&q={searchTerms} SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://isearch.babylon.com/?q={searchTerms}&babsrc=SP_ssbtis1&mntrId=4ED700FF467CB682&affID=121562&tl=gbn193047&tsp=4931 SearchScopes: HKCU - {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://blekko.com/?source=c3348dd4&tbp=rbox&toolbarid=blekkotb&u=2012052213BA46FC9C96CDA79C672284&q={searchTerms} SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = SearchScopes: HKCU - {5EB94A5F-BB71-4f40-BAB7-B5F1CDC31205} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBDSV SearchScopes: HKCU - {6A8BF2B2-9843-4C59-9DAC-2A3547987943} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1561552&CUI=UN29656809731627113&UM=1 SearchScopes: HKCU - {7B4F0FFA-9155-4e8b-97E6-9D8127C267FD} URL = hxxp://www.bing.com/search?q={searchTerms}&form=SPLBR1&pc=SPLH SearchScopes: HKCU - {92F3ADB9-CB73-41D0-B59C-AD5ABCEC3D86} URL = hxxp://websearch.search-results.com/redirect?client=ie&tb=STC-SRS&o=41648033&src=crm&q={searchTerms}&locale=de_DE&apn_ptnrs=96&apn_dtid=YYYYYYYYDE&apn_uid=EC56CD93-72EC-4A37-8154-5CAB55C8445D&apn_sauid=53E9D5FE-166B-4EE4-A13C-88A7A70330DA& SearchScopes: HKCU - {99FFD11A-26A1-400C-AC25-C15BA0522210} URL = hxxp://search.softonic.com/MOY00009/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=4ed7162100000000000000ff467cb682&r=86 SearchScopes: HKCU - {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=avast&hsimp=yhs-001&type={partner_id}&p={searchTerms} SearchScopes: HKCU - {C02696BD-E9D4-440C-8519-B784DCDE152D} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=382950&p={searchTerms} SearchScopes: HKCU - {c99fdc39-a1ae-4b24-8d71-e5274f8d7c54} URL = hxxp://search.hotspotshield.com/g/results.php?c=s&q={searchTerms} BHO: No Name - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - No File BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: No Name - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - No File BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE_64.dll No File BHO-x32: No Name - {0E5680D1-BF44-4929-94AF-FD30D784AD1D} - No File BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: No Name - {26647ca4-a2a7-4eac-8a72-761aa9141de7} - No File BHO-x32: No Name - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: No Name - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - No File BHO-x32: No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: No Name - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - No File BHO-x32: No Name - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - No File Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKLM-x32 - No Name - {26647ca4-a2a7-4eac-8a72-761aa9141de7} - No File Toolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_182.dll () FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_182.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=1.110.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.110.0\npesnlaunch.dll No File FF Plugin-x32: @esn/esnlaunch,version=1.118.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll No File FF Plugin-x32: @esn/esnlaunch,version=1.138.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.138.0\npesnlaunch.dll No File FF Plugin-x32: @esn/esnlaunch,version=2.1.4 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll No File FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @esn/npbattlelog,version=2.3.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @gamersfirst.com/LiveLauncher - C:\Program Files (x86)\GamersFirst\LIVE!\nplivelauncher.dll No File FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Sascha\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Sascha\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Sascha\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\blekkotb.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\privatesearch.xml FF Extension: Hotspot Shield Extension - C:\Program Files (x86)\Mozilla Firefox\extensions\afproxy@anchorfree.com [2013-12-07] FF Extension: Hotspot Shield Extension - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afproxy@anchorfree.com [2014-03-25] FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-03-03] FF HKLM-x32\...\Firefox\Extensions: [webbooster@iminent.com] - C:\Program Files (x86)\Iminent\webbooster@iminent.com FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\ FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-04-13] Chrome: ======= CHR HomePage: hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=eb569e80-15e5-4c3c-88c2-8ed424376feb&searchtype=hp&fr=linkury-tb&installDate=21/07/2013&type=hp1000 CHR DefaultSearchKeyword: CHR DefaultSearchProvider: CHR DefaultSearchURL: CHR DefaultNewTabURL: CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Sascha\AppData\Local\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\Sascha\AppData\Local\Google\Chrome\Application\34.0.1847.116\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Users\Sascha\AppData\Local\Google\Chrome\Application\34.0.1847.116\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll No File CHR Plugin: (Microsoft Windows Media Player Firefox Plugin) - C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll (Microsoft Corporation) CHR Plugin: (ESN Launch Mozilla Plugin) - C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll No File CHR Plugin: (ESN Sonar API) - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll No File CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\Sascha\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) CHR Plugin: (Google Update) - C:\Users\Sascha\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll No File CHR Extension: (YouTube) - C:\Users\Sascha\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-01-15] CHR Extension: (Google-Suche) - C:\Users\Sascha\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-01-15] CHR Extension: (Tampermonkey) - C:\Users\Sascha\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2013-04-07] CHR Extension: (AdBlock) - C:\Users\Sascha\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2012-03-15] CHR Extension: (avast! Online Security) - C:\Users\Sascha\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-04-13] CHR Extension: (ProxMate - Proxy on steroids!) - C:\Users\Sascha\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgjpnmnpjmabddgmjdiaggacbololbjm [2013-03-29] CHR Extension: (Google Wallet) - C:\Users\Sascha\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22] CHR Extension: (Google Mail) - C:\Users\Sascha\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-01-15] CHR HKCU\...\Chrome\Extension: [bhphemoobgnikcoofkgackkaimpfmenm] - C:\Users\Sascha\AppData\Local\CRE\bhphemoobgnikcoofkgackkaimpfmenm.crx [2012-01-15] CHR HKCU\...\Chrome\Extension: [kdfbddbdpnahdahmamlolacimfdbeckk] - C:\Users\Sascha\AppData\Local\CRE\kdfbddbdpnahdahmamlolacimfdbeckk.crx [2013-03-04] CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx [2013-03-04] CHR HKLM-x32\...\Chrome\Extension: [bhphemoobgnikcoofkgackkaimpfmenm] - C:\Users\Sascha\AppData\Local\CRE\bhphemoobgnikcoofkgackkaimpfmenm.crx [2013-03-04] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-04-13] CHR HKLM-x32\...\Chrome\Extension: [kdfbddbdpnahdahmamlolacimfdbeckk] - C:\Users\Sascha\AppData\Local\CRE\kdfbddbdpnahdahmamlolacimfdbeckk.crx [2013-03-04] CHR HKLM-x32\...\Chrome\Extension: [licjnkifamhpbaefhdpacpmihicfbomb] - C:\Program Files (x86)\PricePeep\pricepeep.crx [2013-03-04] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-03-03] CHR HKLM-x32\...\Chrome\Extension: [niapdbllcanepiiimjjndipklodoedlc] - C:\Users\Sascha\AppData\Local\Temp\YontooLayers.crx [2014-03-03] CHR StartMenuInternet: Google Chrome - C:\Users\Sascha\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] () R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-04-13] (AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-10-27] () R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363584 2014-03-03] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1748608 2014-03-03] (Microsoft Corporation) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377616 2014-02-26] (LogMeIn, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [289256 2014-01-16] (McAfee, Inc.) U2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1617352 2014-04-02] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [20542408 2014-04-02] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-01-03] () R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S2 WCUService_STC_FF; C:\Program Files (x86)\Splashtop\Splashtop Connect Firefox Software Updater\WCUService.exe [X] S2 WCUService_STC_IE; C:\Program Files (x86)\Splashtop\Splashtop Connect IE Software Updater\WCUService.exe [X] ==================== Drivers (Whitelisted) ==================== R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21104 2011-01-10] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-04-13] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-04-13] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-04-13] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-04-13] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-04-13] (AVAST Software) R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [84816 2014-04-13] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208928 2014-04-13] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-01] (Avira Operations GmbH & Co. KG) S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-22] (AVM Berlin) S3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [460800 2010-10-22] (AVM GmbH) S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2011-12-25] () R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [54984 2014-03-19] (AnchorFree Inc.) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-21] (NVIDIA Corporation) R3 SaiK1107; C:\Windows\System32\DRIVERS\SaiK1107.sys [180584 2012-12-05] (Saitek) R3 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [25120 2013-04-30] (Saitek) R3 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [52640 2013-04-30] (Saitek) R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [17720 2010-11-26] () R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2014-03-19] (Anchorfree Inc.) R3 USBADVAU; C:\Windows\System32\drivers\cm11264.sys [1308160 2010-04-23] (C-Media Electronics Inc) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-04-14 18:35 - 2014-04-14 18:36 - 00037392 _____ () C:\Users\Sascha\Downloads\Addition.txt 2014-04-14 18:34 - 2014-04-14 18:39 - 00032707 _____ () C:\Users\Sascha\Downloads\FRST.txt 2014-04-14 18:34 - 2014-04-14 18:39 - 00000000 ____D () C:\FRST 2014-04-14 18:33 - 2014-04-14 18:33 - 02157568 _____ (Farbar) C:\Users\Sascha\Downloads\FRST64.exe 2014-04-14 11:32 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2014-04-14 11:26 - 2014-04-14 11:26 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-04-14 11:26 - 2014-04-14 11:26 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-04-14 11:26 - 2014-04-14 11:26 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-04-14 11:26 - 2014-04-14 11:26 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-04-14 11:26 - 2014-04-14 11:26 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-04-14 11:26 - 2014-04-14 11:26 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-04-14 11:26 - 2014-04-14 11:26 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-04-14 11:26 - 2014-04-14 11:26 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-04-14 11:26 - 2014-04-14 11:26 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-04-14 11:26 - 2014-04-14 11:26 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-04-14 11:26 - 2014-04-14 11:26 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-04-14 11:23 - 2014-04-14 11:23 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-04-14 11:23 - 2014-04-14 11:23 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-04-14 11:23 - 2014-04-14 11:23 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2014-04-14 11:22 - 2014-04-14 11:22 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-04-14 11:22 - 2014-04-14 11:22 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-04-14 11:22 - 2014-04-14 11:22 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2014-04-13 19:55 - 2014-04-14 11:33 - 00019833 _____ () C:\Windows\IE11_main.log 2014-04-13 18:08 - 2014-04-13 18:08 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-04-13 18:04 - 2014-04-13 18:04 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-04-13 18:04 - 2014-04-13 18:04 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2014-04-13 18:03 - 2014-04-13 18:20 - 00014014 _____ () C:\Windows\IE10_main.log 2014-04-13 17:59 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2014-04-13 17:52 - 2014-04-13 17:54 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-04-13 17:42 - 2014-04-13 17:45 - 00000000 ____D () C:\Windows\system32\MRT 2014-04-13 17:41 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2014-04-13 17:41 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2014-04-13 17:41 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2014-04-13 17:34 - 2014-04-13 17:34 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-04-13 17:34 - 2014-04-13 17:33 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-04-13 17:34 - 2014-04-13 17:33 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-04-13 17:34 - 2014-04-13 17:33 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-04-13 17:33 - 2014-04-13 17:33 - 00000000 ____D () C:\Program Files\Java 2014-04-13 17:30 - 2014-04-13 17:30 - 00000000 ____D () C:\Program Files (x86)\QuickTime 2014-04-13 17:09 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-04-13 17:09 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2014-04-13 17:08 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-04-13 17:08 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-04-13 17:08 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-04-13 17:08 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-04-13 17:08 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-04-13 17:08 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-04-13 17:08 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-04-13 17:08 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-04-13 17:07 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-04-13 17:07 - 2013-02-27 07:48 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-04-13 17:07 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-04-13 17:07 - 2013-02-27 06:49 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-04-13 17:07 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2014-04-13 17:07 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2014-04-13 17:06 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-04-13 17:06 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-04-13 17:06 - 2013-11-12 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-04-13 17:06 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-04-13 17:06 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-04-13 17:06 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-04-13 17:06 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-04-13 17:06 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-04-13 17:06 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-04-13 17:06 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-04-13 17:06 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2014-04-13 17:06 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2014-04-13 17:06 - 2013-04-12 16:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-04-13 17:05 - 2014-02-07 03:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-04-13 17:05 - 2013-12-06 04:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-04-13 17:05 - 2013-12-06 04:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-04-13 17:05 - 2013-12-06 04:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-04-13 17:05 - 2013-12-06 04:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-04-13 17:05 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-04-13 17:05 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-04-13 17:05 - 2013-09-28 03:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-04-13 17:05 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-04-13 17:05 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-04-13 17:05 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-04-13 17:05 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-04-13 17:05 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2014-04-13 17:05 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2014-04-13 17:05 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2014-04-13 17:05 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-04-13 17:05 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-04-13 17:05 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-04-13 17:04 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-04-13 17:04 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-04-13 17:04 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-04-13 17:04 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-04-13 17:04 - 2013-11-27 03:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-04-13 17:04 - 2013-11-27 03:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-04-13 17:04 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-04-13 17:04 - 2013-09-25 04:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-04-13 17:04 - 2013-09-25 04:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-04-13 17:04 - 2013-09-25 04:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-04-13 17:04 - 2013-09-25 04:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-04-13 17:04 - 2013-09-25 04:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-04-13 17:04 - 2013-09-25 04:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-04-13 17:04 - 2013-09-25 04:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-04-13 17:04 - 2013-09-25 04:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-04-13 17:04 - 2013-09-25 03:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-04-13 17:04 - 2013-09-25 03:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-04-13 17:04 - 2013-09-25 03:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-04-13 17:04 - 2013-09-25 03:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-04-13 17:04 - 2013-09-25 03:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-04-13 17:04 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-04-13 17:04 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2014-04-13 17:04 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2014-04-13 17:04 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-04-13 17:04 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2014-04-13 17:04 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2014-04-13 17:04 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2014-04-13 17:04 - 2013-07-12 12:40 - 00109824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys 2014-04-13 17:04 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-04-13 17:04 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-04-13 17:04 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-04-13 17:04 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-04-13 17:04 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-04-13 17:04 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-04-13 17:04 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-04-13 17:04 - 2012-11-29 00:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-04-13 17:04 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-04-13 17:04 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2014-04-13 17:04 - 2012-11-01 07:43 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-04-13 17:04 - 2012-11-01 06:47 - 01389568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-04-13 17:04 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-04-13 17:04 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2014-04-13 17:04 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2014-04-13 17:02 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-04-13 17:02 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-04-13 17:02 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-04-13 17:02 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-04-13 17:01 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2014-04-13 17:01 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-04-13 17:01 - 2012-08-11 02:56 - 00715776 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-04-13 17:01 - 2012-08-11 01:56 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-04-13 17:01 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2014-04-13 17:00 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-04-13 17:00 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-04-13 17:00 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-04-13 17:00 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-04-13 17:00 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-04-13 17:00 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-04-13 17:00 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-04-13 17:00 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-04-13 17:00 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-04-13 17:00 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-04-13 17:00 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-04-13 17:00 - 2014-02-04 04:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-04-13 17:00 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-04-13 17:00 - 2013-10-03 04:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-04-13 17:00 - 2013-10-03 04:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-04-13 17:00 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-04-13 17:00 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-04-13 17:00 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-04-13 17:00 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2014-04-13 17:00 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-04-13 17:00 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-04-13 17:00 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-04-13 17:00 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2014-04-13 17:00 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-04-13 17:00 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-04-13 17:00 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-04-13 17:00 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2014-04-13 17:00 - 2013-01-03 08:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-04-13 17:00 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2014-04-13 17:00 - 2012-08-22 20:12 - 00376688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-04-13 17:00 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-04-13 17:00 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2014-04-13 17:00 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2014-04-13 17:00 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2014-04-13 17:00 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2014-04-13 17:00 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2014-04-13 17:00 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll 2014-04-13 16:59 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-04-13 16:59 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-04-13 16:59 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-04-13 16:59 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-04-13 16:59 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-04-13 16:59 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-04-13 16:59 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-04-13 16:59 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-04-13 16:59 - 2013-08-01 14:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-04-13 16:59 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-04-13 16:59 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-04-13 16:59 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2014-04-13 16:59 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2014-04-13 16:59 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-04-13 16:59 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-04-13 16:59 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-04-13 16:58 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2014-04-13 16:58 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2014-04-13 16:43 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-04-13 16:43 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-04-13 16:43 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-04-13 16:43 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2014-04-13 16:43 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2014-04-13 16:39 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2014-04-13 16:39 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2014-04-13 16:39 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2014-04-13 16:28 - 2014-04-13 16:28 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-04-13 16:28 - 2014-04-13 16:27 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-04-13 16:28 - 2014-04-13 16:27 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-04-13 16:28 - 2014-04-13 16:27 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-04-13 16:26 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-04-13 16:26 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-04-13 16:26 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-04-13 16:26 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-04-13 16:26 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-04-13 16:26 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-04-13 16:26 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-04-13 16:25 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-04-13 16:25 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-04-13 16:24 - 2014-04-13 16:24 - 00921000 _____ (Oracle Corporation) C:\Users\Sascha\Downloads\chromeinstall-7u51.exe 2014-04-13 16:19 - 2014-04-13 16:19 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-04-13 16:19 - 2014-04-13 16:19 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\DropboxMaster 2014-04-13 16:17 - 2014-04-13 16:19 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\Dropbox 2014-04-13 16:17 - 2014-04-13 16:17 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\AVAST Software 2014-04-13 16:16 - 2014-04-13 16:17 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-04-13 16:16 - 2014-04-13 16:16 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-04-13 16:15 - 2014-04-13 16:15 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-04-13 16:15 - 2014-04-13 16:15 - 00208928 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00084816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-04-13 16:14 - 2014-04-13 16:14 - 00000000 ____D () C:\Program Files\AVAST Software 2014-04-13 16:13 - 2014-04-13 16:13 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-04-13 16:08 - 2014-04-13 16:10 - 88551496 _____ (AVAST Software) C:\Users\Sascha\Downloads\avast_free_antivirus_setup_9.0.2016.exe 2014-04-11 20:57 - 2014-04-11 20:57 - 00000000 ____D () C:\Users\Sascha\Documents\Razer 2014-04-11 20:57 - 2014-04-11 20:57 - 00000000 ____D () C:\Users\Sascha\AppData\Local\Razer_Inc 2014-04-11 20:51 - 2014-04-11 20:51 - 00000000 ____D () C:\Users\Sascha\AppData\Local\Razer 2014-04-11 20:50 - 2014-04-11 20:50 - 00000000 ____D () C:\ProgramData\Razer 2014-04-11 20:50 - 2014-04-11 20:50 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-04-11 20:37 - 2014-04-11 20:37 - 00613200 _____ (Chip Digital GmbH) C:\Users\Sascha\Downloads\Razer Game Booster - CHIP-Downloader.exe 2014-04-10 20:49 - 2014-03-21 21:43 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-04-10 20:49 - 2014-03-21 21:43 - 00033568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-04-08 19:03 - 2014-04-08 19:03 - 00000017 _____ () C:\Users\Sascha\AppData\Local\resmon.resmoncfg 2014-04-07 20:29 - 2014-04-07 20:29 - 00000000 ____D () C:\Users\Sascha\AppData\Local\Skype 2014-04-01 19:54 - 2014-04-13 16:29 - 00000000 ____D () C:\ProgramData\Oracle 2014-03-30 12:24 - 2014-04-13 15:02 - 00000000 ____D () C:\Users\Sascha\AppData\Local\Arma 3 2014-03-30 12:24 - 2014-03-30 12:26 - 00000000 ____D () C:\Users\Sascha\Documents\Arma 3 2014-03-30 12:24 - 2014-03-30 12:24 - 00000000 ____D () C:\ProgramData\Bohemia Interactive 2014-03-29 15:15 - 2014-03-29 15:37 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-03-29 15:15 - 2014-03-29 15:15 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-03-29 15:15 - 2014-03-29 15:15 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-03-29 15:15 - 2013-09-20 11:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2014-03-29 14:48 - 2014-03-29 14:58 - 00000000 ____D () C:\AdwCleaner 2014-03-29 14:29 - 2014-03-29 14:29 - 00293840 _____ () C:\Windows\Minidump\032914-17362-01.dmp 2014-03-27 16:49 - 2014-03-27 16:49 - 00262144 _____ () C:\Windows\Minidump\032714-18891-01.dmp 2014-03-27 16:36 - 2014-03-27 16:37 - 00334112 _____ () C:\Windows\Minidump\032714-21808-01.dmp 2014-03-25 22:19 - 2014-03-19 19:51 - 00054984 _____ (AnchorFree Inc.) C:\Windows\system32\Drivers\hssdrv6.sys 2014-03-22 17:43 - 2014-03-22 17:43 - 00000000 ____D () C:\Users\Sascha\Documents\Electronic Arts 2014-03-21 16:12 - 2014-03-21 16:12 - 00315352 _____ () C:\Windows\Minidump\032114-14866-01.dmp 2014-03-19 19:54 - 2014-03-19 19:54 - 00042184 _____ (Anchorfree Inc.) C:\Windows\system32\Drivers\taphss6.sys ==================== One Month Modified Files and Folders ======= 2014-04-14 18:39 - 2014-04-14 18:34 - 00032707 _____ () C:\Users\Sascha\Downloads\FRST.txt 2014-04-14 18:39 - 2014-04-14 18:34 - 00000000 ____D () C:\FRST 2014-04-14 18:39 - 2012-01-15 17:37 - 00001124 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001UA.job 2014-04-14 18:36 - 2014-04-14 18:35 - 00037392 _____ () C:\Users\Sascha\Downloads\Addition.txt 2014-04-14 18:33 - 2014-04-14 18:33 - 02157568 _____ (Farbar) C:\Users\Sascha\Downloads\FRST64.exe 2014-04-14 18:30 - 2013-01-31 21:53 - 00000000 ____D () C:\Users\Sascha\AppData\Local\LogMeIn Hamachi 2014-04-14 18:29 - 2011-12-19 13:39 - 01200612 _____ () C:\Windows\WindowsUpdate.log 2014-04-14 18:28 - 2012-02-15 18:51 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\TS3Client 2014-04-14 18:27 - 2009-07-14 06:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-04-14 18:27 - 2009-07-14 06:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-04-14 18:26 - 2011-04-12 09:43 - 00699416 _____ () C:\Windows\system32\perfh007.dat 2014-04-14 18:26 - 2011-04-12 09:43 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-04-14 18:26 - 2009-07-14 07:13 - 00905638 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-04-14 18:25 - 2011-12-21 20:43 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\Skype 2014-04-14 18:23 - 2012-01-04 00:31 - 00000000 ____D () C:\Users\Sascha\AppData\Local\TSVNCache 2014-04-14 18:23 - 2011-12-21 20:32 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-04-14 18:23 - 2011-12-21 20:17 - 00001421 _____ () C:\Users\Sascha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-04-14 18:20 - 2009-07-14 06:51 - 00146092 _____ () C:\Windows\setupact.log 2014-04-14 18:19 - 2011-12-19 14:03 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-04-14 18:19 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-04-14 13:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-04-14 13:41 - 2012-04-22 14:01 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-04-14 13:21 - 2012-03-16 20:08 - 00003938 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{5C497AA6-8DA4-4F51-9231-255D2BE41896} 2014-04-14 13:03 - 2014-02-19 22:07 - 00000000 ____D () C:\Users\Sascha\AppData\Local\DayZ 2014-04-14 11:49 - 2012-01-11 18:41 - 00001142 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001UA.job 2014-04-14 11:33 - 2014-04-13 19:55 - 00019833 _____ () C:\Windows\IE11_main.log 2014-04-14 11:26 - 2014-04-14 11:26 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-04-14 11:26 - 2014-04-14 11:26 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-04-14 11:26 - 2014-04-14 11:26 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-04-14 11:26 - 2014-04-14 11:26 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-04-14 11:26 - 2014-04-14 11:26 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-04-14 11:26 - 2014-04-14 11:26 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-04-14 11:26 - 2014-04-14 11:26 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-04-14 11:26 - 2014-04-14 11:26 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-04-14 11:26 - 2014-04-14 11:26 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-04-14 11:26 - 2014-04-14 11:26 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-04-14 11:26 - 2014-04-14 11:26 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-04-14 11:26 - 2014-04-14 11:26 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-04-14 11:26 - 2014-04-14 11:26 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-04-14 11:23 - 2014-04-14 11:23 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-04-14 11:23 - 2014-04-14 11:23 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-04-14 11:23 - 2014-04-14 11:23 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2014-04-14 11:23 - 2014-04-14 11:23 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2014-04-14 11:22 - 2014-04-14 11:22 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-04-14 11:22 - 2014-04-14 11:22 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-04-14 11:22 - 2014-04-14 11:22 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2014-04-14 11:10 - 2011-12-21 20:17 - 00000000 ___RD () C:\Users\Sascha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-04-14 11:10 - 2011-12-21 20:17 - 00000000 ___RD () C:\Users\Sascha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-04-14 11:06 - 2009-07-14 06:45 - 04892848 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-04-14 11:05 - 2013-10-01 19:40 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-14 11:05 - 2013-10-01 19:40 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-04-13 23:46 - 2011-04-12 09:55 - 00000000 ____D () C:\Program Files\Windows Journal 2014-04-13 23:46 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Defender 2014-04-13 23:46 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-04-13 23:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-04-13 23:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-04-13 23:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-04-13 23:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-04-13 21:39 - 2013-10-18 14:40 - 00001072 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001Core1cecbff3812eed0.job 2014-04-13 21:34 - 2013-03-31 22:11 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\.minecraft 2014-04-13 20:20 - 2013-06-01 17:51 - 00878982 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-04-13 18:20 - 2014-04-13 18:03 - 00014014 _____ () C:\Windows\IE10_main.log 2014-04-13 18:08 - 2014-04-13 18:08 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-04-13 18:08 - 2014-04-13 18:08 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-04-13 18:04 - 2014-04-13 18:04 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-04-13 18:04 - 2014-04-13 18:04 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2014-04-13 17:54 - 2014-04-13 17:52 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-04-13 17:45 - 2014-04-13 17:42 - 00000000 ____D () C:\Windows\system32\MRT 2014-04-13 17:34 - 2014-04-13 17:34 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-04-13 17:33 - 2014-04-13 17:34 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-04-13 17:33 - 2014-04-13 17:34 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-04-13 17:33 - 2014-04-13 17:34 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-04-13 17:33 - 2014-04-13 17:33 - 00000000 ____D () C:\Program Files\Java 2014-04-13 17:30 - 2014-04-13 17:30 - 00000000 ____D () C:\Program Files (x86)\QuickTime 2014-04-13 17:29 - 2011-12-21 21:32 - 00000000 ____D () C:\Program Files (x86)\Java 2014-04-13 17:27 - 2012-01-01 22:49 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-04-13 17:27 - 2012-01-01 22:49 - 00000000 ____D () C:\Program Files\WinRAR 2014-04-13 17:26 - 2012-04-22 14:01 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-04-13 17:26 - 2012-04-22 14:01 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-04-13 17:26 - 2012-04-22 14:01 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-04-13 17:17 - 2010-11-21 05:47 - 00541836 _____ () C:\Windows\PFRO.log 2014-04-13 16:32 - 2011-12-21 21:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-04-13 16:29 - 2014-04-01 19:54 - 00000000 ____D () C:\ProgramData\Oracle 2014-04-13 16:28 - 2014-04-13 16:28 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-04-13 16:27 - 2014-04-13 16:28 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-04-13 16:27 - 2014-04-13 16:28 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-04-13 16:27 - 2014-04-13 16:28 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-04-13 16:24 - 2014-04-13 16:24 - 00921000 _____ (Oracle Corporation) C:\Users\Sascha\Downloads\chromeinstall-7u51.exe 2014-04-13 16:19 - 2014-04-13 16:19 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-04-13 16:19 - 2014-04-13 16:19 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\DropboxMaster 2014-04-13 16:19 - 2014-04-13 16:17 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\Dropbox 2014-04-13 16:17 - 2014-04-13 16:17 - 00000000 ____D () C:\Users\Sascha\AppData\Roaming\AVAST Software 2014-04-13 16:17 - 2014-04-13 16:16 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-04-13 16:16 - 2014-04-13 16:16 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-04-13 16:15 - 2014-04-13 16:15 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-04-13 16:15 - 2014-04-13 16:15 - 00208928 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00084816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-04-13 16:15 - 2014-04-13 16:15 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-04-13 16:14 - 2014-04-13 16:14 - 00000000 ____D () C:\Program Files\AVAST Software 2014-04-13 16:13 - 2014-04-13 16:13 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-04-13 16:10 - 2014-04-13 16:08 - 88551496 _____ (AVAST Software) C:\Users\Sascha\Downloads\avast_free_antivirus_setup_9.0.2016.exe 2014-04-13 15:02 - 2014-03-30 12:24 - 00000000 ____D () C:\Users\Sascha\AppData\Local\Arma 3 2014-04-13 14:49 - 2012-01-11 18:41 - 00001120 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001Core.job 2014-04-11 20:57 - 2014-04-11 20:57 - 00000000 ____D () C:\Users\Sascha\Documents\Razer 2014-04-11 20:57 - 2014-04-11 20:57 - 00000000 ____D () C:\Users\Sascha\AppData\Local\Razer_Inc 2014-04-11 20:51 - 2014-04-11 20:51 - 00000000 ____D () C:\Users\Sascha\AppData\Local\Razer 2014-04-11 20:50 - 2014-04-11 20:50 - 00000000 ____D () C:\ProgramData\Razer 2014-04-11 20:50 - 2014-04-11 20:50 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-04-11 20:37 - 2014-04-11 20:37 - 00613200 _____ (Chip Digital GmbH) C:\Users\Sascha\Downloads\Razer Game Booster - CHIP-Downloader.exe 2014-04-10 20:51 - 2013-11-22 16:32 - 00000000 ____D () C:\Users\Sascha\AppData\Local\NVIDIA Corporation 2014-04-10 20:51 - 2011-12-19 14:03 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-04-10 20:51 - 2011-12-19 14:03 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-04-08 19:03 - 2014-04-08 19:03 - 00000017 _____ () C:\Users\Sascha\AppData\Local\resmon.resmoncfg 2014-04-07 20:29 - 2014-04-07 20:29 - 00000000 ____D () C:\Users\Sascha\AppData\Local\Skype 2014-04-07 20:29 - 2011-12-21 20:43 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-04-07 20:29 - 2011-12-21 20:43 - 00000000 ____D () C:\ProgramData\Skype 2014-04-04 23:59 - 2013-08-07 14:33 - 00000000 ____D () C:\Users\Sascha\AppData\Local\Unity 2014-04-04 23:58 - 2012-09-06 23:48 - 00000000 ____D () C:\Fraps 2014-04-04 18:16 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-04-02 15:28 - 2013-10-28 21:32 - 01225920 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-04-02 15:28 - 2013-10-28 21:32 - 01081112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-03-31 03:51 - 2012-01-02 15:02 - 90655440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-03-30 12:26 - 2014-03-30 12:24 - 00000000 ____D () C:\Users\Sascha\Documents\Arma 3 2014-03-30 12:24 - 2014-03-30 12:24 - 00000000 ____D () C:\ProgramData\Bohemia Interactive 2014-03-30 12:23 - 2011-12-21 20:12 - 00503919 _____ () C:\Windows\DirectX.log 2014-03-29 15:37 - 2014-03-29 15:15 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-03-29 15:15 - 2014-03-29 15:15 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-03-29 15:15 - 2014-03-29 15:15 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-03-29 14:58 - 2014-03-29 14:48 - 00000000 ____D () C:\AdwCleaner 2014-03-29 14:29 - 2014-03-29 14:29 - 00293840 _____ () C:\Windows\Minidump\032914-17362-01.dmp 2014-03-29 14:29 - 2013-04-02 19:27 - 444062372 _____ () C:\Windows\MEMORY.DMP 2014-03-29 14:29 - 2012-02-16 19:12 - 00000000 ____D () C:\Windows\Minidump 2014-03-27 22:34 - 2013-12-06 15:22 - 00003700 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001Core1cecbff3812eed0 2014-03-27 22:34 - 2012-01-15 17:37 - 00004096 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001UA 2014-03-27 16:49 - 2014-03-27 16:49 - 00262144 _____ () C:\Windows\Minidump\032714-18891-01.dmp 2014-03-27 16:37 - 2014-03-27 16:36 - 00334112 _____ () C:\Windows\Minidump\032714-21808-01.dmp 2014-03-22 17:43 - 2014-03-22 17:43 - 00000000 ____D () C:\Users\Sascha\Documents\Electronic Arts 2014-03-22 17:21 - 2012-01-03 17:36 - 00000000 ____D () C:\Program Files (x86)\Electronic Arts 2014-03-22 17:21 - 2011-12-19 13:39 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-03-21 21:43 - 2014-04-10 20:49 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-03-21 21:43 - 2014-04-10 20:49 - 00033568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-03-21 21:43 - 2013-10-05 13:57 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-03-21 16:12 - 2014-03-21 16:12 - 00315352 _____ () C:\Windows\Minidump\032114-14866-01.dmp 2014-03-19 19:54 - 2014-03-19 19:54 - 00042184 _____ (Anchorfree Inc.) C:\Windows\system32\Drivers\taphss6.sys 2014-03-19 19:51 - 2014-03-25 22:19 - 00054984 _____ (AnchorFree Inc.) C:\Windows\system32\Drivers\hssdrv6.sys 2014-03-15 00:15 - 2012-05-10 18:37 - 00000000 ____D () C:\Program Files (x86)\Ubisoft 2014-03-15 00:15 - 2011-12-22 14:55 - 00000000 ____D () C:\Program Files (x86)\Origin Games 2014-03-15 00:14 - 2011-12-25 22:43 - 00057960 _____ () C:\Users\Sascha\AppData\Local\GDIPFONTCACHEV1.DAT Some content of TEMP: ==================== C:\Users\Sascha\AppData\Local\Temp\avgnt.exe C:\Users\Sascha\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp09uuq7.dll C:\Users\Sascha\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe C:\Users\Sascha\AppData\Local\Temp\rootsupd.exe C:\Users\Sascha\AppData\Local\Temp\SkypeSetup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-04-10 19:20 ==================== End Of Log ============================ |
14.04.2014, 17:44 | #4 |
| TR/BProtector.Gen2 von Avira gefunden. Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-04-2014 01 Ran by Sascha at 2014-04-14 18:40:12 Running from C:\Users\Sascha\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== @BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.12 - GIGABYTE) 7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov) Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.182 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.182 - Adobe Systems Incorporated) APB Reloaded (HKLM-x32\...\APB Reloaded) (Version: 1.3.9.569452 - ) APB Reloaded (HKLM-x32\...\Steam App 113400) (Version: - ) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive) Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive) Assassin's Creed(R) III v1.02 (HKLM-x32\...\{9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF}) (Version: 1.02 - Ubisoft) Audacity 2.0.3 (HKLM-x32\...\Audacity_is1) (Version: 2.0.3 - Audacity Team) AutoGreen B10.1021.1 (HKLM-x32\...\InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}) (Version: 1.00.0000 - GIGABYTE) AutoGreen B10.1021.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2016 - Avast Software) Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.3.350 - Avira) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.0.0.0 - Electronic Arts) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.1.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.2 - EA Digital Illusions CE AB) BattlEye (A2Free) Uninstall (HKLM-x32\...\BattlEye A2 Free) (Version: - ) BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - ) BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - ) bl (x32 Version: 1.0.0 - Your Company Name) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Bully: Scholarship Edition (HKLM-x32\...\Steam App 12200) (Version: - Rockstar) Call of Duty: Black Ops II - Multiplayer (HKLM-x32\...\Steam App 202990) (Version: - ) Call of Duty: Black Ops II (HKLM-x32\...\Steam App 202970) (Version: - ) Call of Duty: Modern Warfare 2 - Multiplayer (HKLM-x32\...\Steam App 10190) (Version: - Infinity Ward) Call of Duty: Modern Warfare 2 (HKLM-x32\...\Steam App 10180) (Version: - Infinity Ward) Cheat Engine 6.2 (HKLM-x32\...\Cheat Engine 6.2_is1) (Version: - Dark Byte) Command & Conquer 3 (HKLM-x32\...\{B0C30E93-D3D9-4F04-A2AC-54749B573275}) (Version: 1.00.0000 - Ihr Firmenname) Command & Conquer Die ersten 10 Jahre (HKLM-x32\...\{66D6F3BD-CA23-41A4-9FA3-96B26B32528D}) (Version: 1.00.0000 - Electronic Arts) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive) DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios) Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland) Dead Space™ 3 (HKLM-x32\...\{D4329609-4102-4F8C-B83F-7FE024EEA314}) (Version: 1.0.0.0 - Electronic Arts, Inc.) Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) Dino D-Day (HKLM-x32\...\Steam App 70000) (Version: - 800 North and Digital Ranch) DiRT 3 (HKLM-x32\...\Steam App 44320) (Version: - Codemasters) Dishonored (HKLM-x32\...\Steam App 205100) (Version: 1.0 - Bethesda Softworks) Dropbox (HKCU\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.) Easy Tune 6 B11.0608.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE) Easy Tune 6 B11.0608.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Etron USB3.0 Host Controller (x32 Version: 0.101 - Etron Technology) Hidden Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited) Far Cry 3 (HKLM-x32\...\{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}) (Version: 1.05 - Ubisoft) Free YouTube to MP3 Converter version 3.12.8.717 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.8.717 - DVDVideoSoft Ltd.) Game Booster 3 (HKLM-x32\...\Game Booster_is1) (Version: 3.4 - IObit) GamersFirst LIVE! (HKLM-x32\...\GamersFirst LIVE!) (Version: - GamersFirst) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Garry) GIMP 2.8.0 (HKLM\...\GIMP-2_is1) (Version: 2.8.0 - The GIMP Team) Google Chrome (HKCU\...\Google Chrome) (Version: 34.0.1847.116 - Google Inc.) Google Earth (HKLM-x32\...\{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}) (Version: 6.1.0.5001 - Google) Grand Theft Auto IV (HKLM-x32\...\Steam App 12210) (Version: - Rockstar) Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve) Hitman Blood Money (HKLM-x32\...\{A804B134-F03D-4EFD-9BC0-DCD257AA1B22}) (Version: 1.00.0000 - Eidos) iTunes (HKLM\...\{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}) (Version: 11.1.3.8 - Apple Inc.) Java 7 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417051FF}) (Version: 7.0.510 - Oracle) Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Killing Floor (HKLM-x32\...\Steam App 1250) (Version: - Tripwire Interactive) Left 4 Dead (HKLM-x32\...\Steam App 500) (Version: - Valve) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.173 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.173 - LogMeIn, Inc.) Hidden Mafia II (HKLM-x32\...\Steam App 50130) (Version: - 2K Czech) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.141.11 - McAfee, Inc.) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 (Version: 4.5.50709 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 DEU Language Pack (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 DEU Language Pack (Version: 4.5.50709 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Flight (x32 Version: 1.0.0002.129 - Microsoft Studios) Hidden Microsoft Flight (x32 Version: 1.0.0003.129 - Microsoft Studios) Hidden Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Primary Interoperability Assemblies 2010 (HKLM-x32\...\{FA8E7AF5-C70E-3274-9740-9E697FBD5BB7}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Mirror's Edge (HKLM-x32\...\Steam App 17410) (Version: - DICE) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.45.6 - Black Tree Gaming) Notepad++ (HKLM-x32\...\Notepad++) (Version: 5.9.8 - ) NVIDIA 3D Vision Controller Driver (x32 Version: 275.33 - NVIDIA Corporation) Hidden NVIDIA 3D Vision Controller-Treiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 331.82 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.82 - NVIDIA Corporation) NVIDIA GeForce Experience 2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.0 - NVIDIA Corporation) NVIDIA Grafiktreiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.82 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.151.1095 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.0725 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation) NVIDIA ShadowPlay 12.4.55 (Version: 12.4.55 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3182 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 331.82 (Version: 331.82 - NVIDIA Corporation) Hidden NVIDIA Update 12.4.55 (Version: 12.4.55 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 12.4.55 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.22 (Version: 1.2.22 - NVIDIA Corporation) Hidden ON_OFF Charge B11.0110.1 (HKLM-x32\...\{3DECD372-76A1-4483-BF10-B547790A3261}) (Version: 1.00.0001 - GIGABYTE) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 8.5.0.4554 - Electronic Arts, Inc.) ph (x32 Version: 1.0.0 - Your Company Name) Hidden ProtectDisc Driver, Version 11 (HKLM-x32\...\ProtectDisc Driver 11) (Version: 11.0.0.14 - ProtectDisc Software GmbH) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.) Rapture3D 2.4.8 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound) Razer Game Booster (HKLM-x32\...\Razer Game Booster_is1) (Version: 4.2.42.0 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.38.113.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6368 - Realtek Semiconductor Corp.) Saints Row IV (HKLM-x32\...\Steam App 206420) (Version: - Deep Silver Volition) Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition) Search-Results Toolbar (HKLM-x32\...\{86D4B82A-ABED-442A-BE86-96357B70F4FE}) (Version: 1.13.1.0 - Search-Results.com) <==== ATTENTION Sennheiser 3D G4ME1 (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392DDDFB6}) (Version: 1.00.0001 - ) SHIELD Streaming (Version: 1.8.323 - NVIDIA Corporation) Hidden SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 1.0.0.0 - Electronic Arts) Skype Click to Call (HKLM-x32\...\{BB285C9F-C821-4770-8970-56C4AB52C87E}) (Version: 7.1.15383.6004 - Microsoft Corporation) Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.) Smart Defrag 2 (HKLM-x32\...\Smart Defrag 2_is1) (Version: 2.2 - IObit) Smart Technology Programming Software 7.0.27.13 (HKLM\...\{C9193CBB-C31A-412A-A074-AD08F0F2CF3D}) (Version: 7.0.27.13 - Mad Catz) Smart Technology Volume Tracker 7.0.23.0 (HKLM\...\{7C2F1B90-E6E6-4ECF-B626-4545CF6EEB2D}) (Version: 7.0.23.0 - Mad Catz) Source Multiplayer Dedicated Server (HKLM-x32\...\Steam App 310) (Version: - Valve) Source SDK Base 2007 (HKLM-x32\...\Steam App 218) (Version: - Valve) Splashtop Connect IE (HKLM-x32\...\{3B983EFD-6E37-4AD9-9A7D-8C83E61674F7}) (Version: 1.1.13.1 - Splashtop Inc.) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) System Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC) Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.13.1 - TeamSpeak Systems GmbH) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) TortoiseSVN 1.7.3.22386 (64 bit) (HKLM\...\{7095F86C-BB1A-4254-96A0-7C63A1F8D403}) (Version: 1.7.22386 - TortoiseSVN) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) VLC media player 2.0.5 (HKLM\...\VLC media player) (Version: 2.0.5 - VideoLAN) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Family Safety (Version: 15.4.3538.0513 - Microsoft Corporation) Hidden Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3538.0513 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) WinRAR 5.01 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) Yahoo Community Smartbar (HKLM-x32\...\{7DAA6286-1E0A-4954-A7FF-8E6F9AC7EE75}) (Version: 1.49.66.11069 - Linkury Inc.) <==== ATTENTION ==================== Restore Points ========================= 10-04-2014 18:52:12 DirectX wurde installiert 13-04-2014 14:14:22 avast! antivirus system restore point 13-04-2014 14:25:22 Windows Update 13-04-2014 14:27:36 Installed Java 7 Update 51 13-04-2014 15:25:29 Removed Java(TM) 6 Update 31 13-04-2014 15:31:46 Windows Update 14-04-2014 09:12:27 Windows Update ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {1A79E3CB-1E31-451E-AD44-2759D5813A26} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-04-13] (Adobe Systems Incorporated) Task: {1DD52C08-487D-4B2B-A301-619E2B1B62D6} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {3D2CD060-F608-4F4A-B05A-D78D5C469094} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001UA => C:\Users\Sascha\AppData\Local\Google\Update\GoogleUpdate.exe [2012-01-15] (Google Inc.) Task: {5578BA26-BFD3-4C5A-A0F7-69944576470E} - System32\Tasks\BrowserDefendert => Sc.exe start BrowserDefendert <==== ATTENTION Task: {60213F5F-BA4E-4C42-8D62-3A7CAFC4D92E} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001UA => C:\Users\Sascha\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.) Task: {7573D529-5745-494E-85DC-3EA97766A8A3} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Task: {83008882-9AF7-47C2-B279-F17705309A3B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001Core1cecbff3812eed0 => C:\Users\Sascha\AppData\Local\Google\Update\GoogleUpdate.exe [2012-01-15] (Google Inc.) Task: {864F2A87-65E6-47D1-8BB7-67EE5C1ACE49} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe <==== ATTENTION Task: {8BE4EF7D-04A2-4D6D-A9A0-1979C3B8CA9B} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {E0419477-FD79-4C77-84AC-2C8D8229E975} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001Core => C:\Users\Sascha\AppData\Local\Google\Update\GoogleUpdate.exe [2012-01-15] (Google Inc.) Task: {FB506307-3BC8-4B30-88A6-A50BE4E08B44} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-04-13] (AVAST Software) Task: {FBB6CE0D-253B-45CF-923C-4B24DB3DB648} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001Core => C:\Users\Sascha\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001Core.job => C:\Users\Sascha\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001UA.job => C:\Users\Sascha\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001Core1cecbff3812eed0.job => C:\Users\Sascha\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-112523691-468091876-1063715665-1001UA.job => C:\Users\Sascha\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2011-12-22 17:32 - 2014-01-03 13:33 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2011-12-25 22:19 - 2013-11-11 17:02 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2011-12-16 18:07 - 2011-12-16 18:07 - 00088856 _____ () C:\Program Files\TortoiseSVN\bin\libsasl.dll 2012-12-30 18:33 - 2010-04-23 08:14 - 00126976 _____ () C:\Windows\system\3DG4me.exe 2014-04-14 11:08 - 2014-04-14 11:08 - 02210304 _____ () C:\Program Files\AVAST Software\Avast\defs\14041400\algo.dll 2012-11-17 14:28 - 2012-09-19 19:17 - 00397088 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll 2011-11-02 00:26 - 2011-11-02 00:26 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2011-11-02 00:26 - 2011-11-02 00:26 - 01242472 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-03-29 15:15 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2014-03-29 15:15 - 2013-05-16 11:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-03-29 15:15 - 2013-05-16 11:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2014-03-29 15:15 - 2013-05-16 11:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-03-29 15:15 - 2012-04-03 18:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2012-12-30 18:33 - 2010-04-23 08:14 - 00143360 _____ () C:\Windows\system\3DG4me.dll 2014-01-09 17:11 - 2013-12-13 00:19 - 00142848 _____ () C:\Program Files (x86)\Steam\libavresample-1.dll 2014-01-09 17:11 - 2013-11-05 03:12 - 00890592 _____ () C:\Program Files (x86)\Steam\libavutil-52.dll 2013-03-12 18:10 - 2014-02-11 04:34 - 00751616 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2011-12-21 20:34 - 2014-02-25 23:57 - 01135296 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2011-12-21 20:34 - 2014-01-11 01:33 - 20625832 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2012-03-15 17:40 - 2013-06-15 01:49 - 01100800 _____ () C:\Program Files (x86)\Steam\bin\avcodec-53.dll 2012-03-15 17:40 - 2013-06-15 01:49 - 00124416 _____ () C:\Program Files (x86)\Steam\bin\avutil-51.dll 2012-03-15 17:40 - 2013-06-15 01:49 - 00192000 _____ () C:\Program Files (x86)\Steam\bin\avformat-53.dll 2011-12-16 17:24 - 2011-12-16 17:24 - 00070424 _____ () C:\Program Files\TortoiseSVN\bin\libsasl32.dll 2014-04-13 16:15 - 2014-04-13 16:15 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-04-10 20:42 - 2014-04-02 03:57 - 00065352 _____ () C:\Users\Sascha\AppData\Local\Google\Chrome\Application\34.0.1847.116\chrome_elf.dll 2014-04-10 20:42 - 2014-04-02 03:57 - 00674632 _____ () C:\Users\Sascha\AppData\Local\Google\Chrome\Application\34.0.1847.116\libglesv2.dll 2014-04-10 20:42 - 2014-04-02 03:57 - 00093000 _____ () C:\Users\Sascha\AppData\Local\Google\Chrome\Application\34.0.1847.116\libegl.dll 2014-04-10 20:42 - 2014-04-02 03:57 - 04081480 _____ () C:\Users\Sascha\AppData\Local\Google\Chrome\Application\34.0.1847.116\pdf.dll 2014-04-10 20:42 - 2014-04-02 03:58 - 00390472 _____ () C:\Users\Sascha\AppData\Local\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll 2014-04-10 20:42 - 2014-04-02 03:57 - 01647432 _____ () C:\Users\Sascha\AppData\Local\Google\Chrome\Application\34.0.1847.116\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Sascha\AppData\Local\A4p5rDrgsikYb:xprre8UqrE51NfKL8Sm AlternateDataStreams: C:\Users\Sascha\AppData\Local\Temporary Internet Files:HK0UvYYgk6OvcDOLWqfnYH1 AlternateDataStreams: C:\Users\Sascha\AppData\Local\Temporary Internet Files:Tpxiv72Cn18RYxINBmTCXFXo ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Programmable Root Enumerator Description: Programming Support Class Guid: {678dcf40-e2e6-11d5-8cd5-e960089ea00a} Manufacturer: Mad Catz Service: SaiNtBus Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Event log errors: ========================= Application errors: ================== Error: (04/14/2014 06:24:32 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (04/14/2014 06:20:25 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/14/2014 11:13:00 AM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (04/14/2014 11:06:41 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/13/2014 06:50:15 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Product: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 -- Error 1935.An error occurred during the installation of assembly 'Microsoft.VC90.ATL,version="9.0.30729.6161",publicKeyToken="1fc8b3b9a1e18e3b",processorArchitecture="amd64",type="win32"'. Please refer to Help and Support for more information. HRESULT: 0x80070BC9. assembly interface: IAssemblyCacheItem, function: Commit, component: {74C57B6B-FF6E-3825-BED2-78E14E3E0E3C} Error: (04/13/2014 05:26:22 PM) (Source: Application Hang) (User: ) Description: Programm chrome.exe, Version 34.0.1847.116 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: b08 Startzeit: 01cf572c9e7fd1b2 Endzeit: 44 Anwendungspfad: C:\Users\Sascha\AppData\Local\Google\Chrome\Application\chrome.exe Berichts-ID: e8ebdc71-c31f-11e3-bef6-50e54956bbea Error: (04/13/2014 05:23:08 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (04/13/2014 05:21:37 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (04/13/2014 05:18:33 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/13/2014 04:27:36 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddCoreCsiFiles : BeginFileEnumeration() failed. System Error: Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. . System errors: ============= Error: (04/14/2014 06:25:02 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Microsoft .NET Framework NGEN v4.0.30319_X64 erreicht. Error: (04/13/2014 09:08:12 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (04/13/2014 09:07:56 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (04/13/2014 09:07:26 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (04/13/2014 09:07:06 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (04/13/2014 09:06:15 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (04/13/2014 09:05:59 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (04/13/2014 09:05:00 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (04/13/2014 09:04:39 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (04/13/2014 09:04:27 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Microsoft Office Sessions: ========================= Error: (04/14/2014 06:24:32 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (04/14/2014 06:20:25 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/14/2014 11:13:00 AM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (04/14/2014 11:06:41 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/13/2014 06:50:15 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Product: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 -- Error 1935.An error occurred during the installation of assembly 'Microsoft.VC90.ATL,version="9.0.30729.6161",publicKeyToken="1fc8b3b9a1e18e3b",processorArchitecture="amd64",type="win32"'. Please refer to Help and Support for more information. HRESULT: 0x80070BC9. assembly interface: IAssemblyCacheItem, function: Commit, component: {74C57B6B-FF6E-3825-BED2-78E14E3E0E3C}(NULL)(NULL)(NULL)(NULL)(NULL) Error: (04/13/2014 05:26:22 PM) (Source: Application Hang)(User: ) Description: chrome.exe34.0.1847.116b0801cf572c9e7fd1b244C:\Users\Sascha\AppData\Local\Google\Chrome\Application\chrome.exee8ebdc71-c31f-11e3-bef6-50e54956bbea Error: (04/13/2014 05:23:08 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (04/13/2014 05:21:37 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (04/13/2014 05:18:33 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/13/2014 04:27:36 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: Details: AddCoreCsiFiles : BeginFileEnumeration() failed. System Error: Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. ==================== Memory info =========================== Percentage of memory in use: 36% Total physical RAM: 7421.37 MB Available physical RAM: 4740.33 MB Total Pagefile: 14840.91 MB Available Pagefile: 11659.03 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.41 GB) (Free:507.98 GB) NTFS Drive d: (Sims3) (CDROM) (Total:5.56 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: DB47D478) Partition: GPT Partition Type. ==================== End Of Log ============================ |
15.04.2014, 13:53 | #5 |
/// the machine /// TB-Ausbilder | TR/BProtector.Gen2 von Avira gefunden. Revo Uninstaller - Download - Filepony Damit alles deinstallieren was Du in der Additional.txt findest mit dem Zusatz <== ATTENTION Mit Revo auch Moderat die Reste entfernen lassen. Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu TR/BProtector.Gen2 von Avira gefunden. |
avira, bitte um hilfe, bprotector, bprotector.gen, gefunde, hilfe, tr/bprotector.gen, tr/bprotector.gen2, trojaner, virus, windows, windows 7 |