|
Plagegeister aller Art und deren Bekämpfung: Werde Popup Trojaner nicht losWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
15.04.2014, 19:10 | #1 |
| Werde Popup Trojaner nicht los Servus, ich hab heute nen neuen PC bekommen und hab ihn auch gleich eingerichtet. Als ich aber Avira runtergeladen habe, habe ich das ausversehen von einer Fremdseite... Da hab ich mir wohl nen Popup Trojaner eingefangen... Es gehen ständig neue Fenster mit irgendwelchen Werbungen auf... hab Chrome mal wieder deinstalliert hilft auch nichts.... alle Tools bei Chrome gelöscht... hilft auch nichts... wenn ich chrome ganz weglasse gehen die popups bei Explorer auf... Ps: bei avira wurden dann noch andere Programme runtergeladen, die ich eig gelöscht habe... Vielleicht habt ihr ja ne Idee? Mich regts langsam richtig auf weil ihn kein Virenprogramm findet....-.- Hab hier noch nen OTL Scan gemacht falls der was hilft:OTL Logfile: Code:
ATTFilter OTL logfile created on: 15.04.2014 20:05:08 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Olli\Downloads 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16521) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 7,88 Gb Total Physical Memory | 3,57 Gb Available Physical Memory | 45,38% Memory free 15,75 Gb Paging File | 11,73 Gb Available in Paging File | 74,48% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 232,88 Gb Total Space | 167,49 Gb Free Space | 71,92% Space Free | Partition Type: NTFS Drive D: | 931,51 Gb Total Space | 931,36 Gb Free Space | 99,98% Space Free | Partition Type: NTFS Computer Name: OQTOWER | User Name: Olli | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\Olli\Downloads\OTL.exe (OldTimer Tools) PRC - C:\Users\Olli\AppData\Local\Genesis\Genesis.exe (l'obligeant) PRC - C:\Program Files (x86)\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Program Files (x86)\AVG\AVG2014\avgfws.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) PRC - C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Program Files (x86)\Overwolf\Overwolf.exe (Overwolf LTD) PRC - C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper.exe (Overwolf LTD) PRC - C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) PRC - C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) PRC - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) PRC - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation) PRC - C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) PRC - C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) PRC - C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe (ASUS) PRC - C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe (ASUS) PRC - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) PRC - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) PRC - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) PRC - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) PRC - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) PRC - C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe () PRC - C:\Windows\SysWOW64\ASGT.exe () ========== Modules (No Company Name) ========== MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsForm0b574481#\1ab52f8951c2ab97592ec25830dd5165\WindowsFormsIntegration.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\1e5e19d119e04b93da3d45153abd60fd\System.IdentityModel.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\24bf0c88c0465485f4b842df043b3f45\System.ServiceModel.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servf73e6522#\0bedc417d3c5dcb1c9a5f15dd733c556\System.ServiceModel.Web.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio49d6fefe#\47e7fc401facd4a5d3f2237f16948f36\PresentationFramework-SystemXml.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio84a7b877#\af02d03484578dbc357d1df8d1b6fd01\PresentationFramework-SystemData.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\8f2441d71e42bd17d5afd83524c67c57\WindowsFormsIntegration.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\d4ecf1db24ac65cb502042102dc45ba2\System.AddIn.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\35c42717ad414479b8abcc8a468403fe\System.AddIn.Contract.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\868ad9d8acc0bf80a973c0e4e9cae4fa\System.Core.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\4412bbbb473c356b5ea3e1ea13b25f52\System.Management.ni.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\pdf.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\libglesv2.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\libegl.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\ffmpegsumo.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\chrome_elf.dll () MOD - C:\Program Files (x86)\Avira\My Avira\Avira.OE.NativeCore.dll () MOD - C:\Users\Olli\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll () MOD - C:\Program Files (x86)\Overwolf\CoreAudioApi.dll () MOD - C:\Program Files (x86)\Overwolf\client_c_api_win32.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\72284863df9bea3f081ae98996400619\PresentationFramework.Aero.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\b34b348a9935338b1282fd0c9309eb1f\System.ServiceProcess.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\4b1795df6372b251625f958595e08d3d\System.Web.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\f703846404bb66a4ae03ef8133755007\PresentationFramework.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\ab661afc099166b889ebd2717d2294ea\PresentationCFFRasterizer.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\8bc548587e91ecf0552a40e47bbf99cc\System.Windows.Forms.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5c24d3b0041ebf4f48a93615b9fa3de9\System.Drawing.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\549aa924ef5af7232f4024eb6f8cb97a\UIAutomationProvider.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\4f5069e6497e5e6a381ab6aadf05d6a5\Accessibility.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\217ece46920546d718414291d463bb1c\System.Xml.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\5b6ddf934128d538cd5cd77bf4209b93\System.Configuration.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\660ac5d6da77df8e86fb26f05c6a9816\PresentationCore.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\1d696b2d3de530f7ee971070263667ff\WindowsBase.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\b3a78269847005365001c33870cd121f\System.ni.dll () MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ede2c6c842840e009f01bcc74fa4c457\mscorlib.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Serv759bfb78#\f4354d6580fbb745c0c8acba382a7b84\System.ServiceProcess.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\3fe705796c6a41d4889d9001d1c56af8\System.Xaml.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Linq\7e73e63cf4b8efdf41900b9576489e61\System.Data.Linq.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\a4b45c44490c75bc2fb22780e7ef087d\PresentationFramework.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data\6bbed231aec6fd82547e09474da0b2f9\System.Data.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\f4f6ee0df2aa4189bf36e6335cb92761\System.Windows.Forms.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\a74542efbeb46445949a39026c501132\PresentationCore.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\5cd2aee5e7c07227c694d89219688ab3\System.Drawing.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servd1dec626#\34b53ecafa1d7ccc7ca961d722b5d983\System.ServiceModel.Internals.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\78652b7fa68ee058bff6a118c657f565\SMDiagnostics.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\f6d7bb59f318c130d68816a89335d05e\System.Runtime.Serialization.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\acf97bfe2a931d4a47253b26b7218991\WindowsBase.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio1c9175f8#\75f8bc4cf08030c4a53b6d5e0ae20046\PresentationFramework.Aero.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\bada32953bb6b16a53d653eae23d78dc\System.Xml.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\dce99d8de14d8a015313db98c72552ee\System.Core.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\bbc48ec4245e502ae19b0601d3799c9e\System.Configuration.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System\ff26cc03e6d57d8abd13b990332e67c6\System.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Numerics\4c8a153aa66fcd62db6fff269a2ef2b4\System.Numerics.ni.dll () MOD - C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\ce5f61c5754789df97be8dc991c47d07\mscorlib.ni.dll () MOD - C:\Program Files (x86)\Steam\bin\chromehtml.DLL () MOD - C:\Program Files (x86)\Steam\bin\audio.dll () MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll () MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll () MOD - C:\Program Files (x86)\Steam\SDL2.dll () MOD - C:\Program Files (x86)\Steam\bin\libcef.dll () MOD - C:\Program Files (x86)\Steam\libavresample-1.dll () MOD - C:\Program Files (x86)\Steam\libavutil-52.dll () MOD - C:\Program Files (x86)\ASUS\GPU Tweak\Exeio.dll () MOD - C:\Program Files (x86)\ASUS\GPU Tweak\Vender.dll () MOD - C:\Program Files (x86)\Steam\bin\mssvoice.asi () MOD - C:\Program Files (x86)\Steam\bin\mssmp3.asi () MOD - C:\Program Files (x86)\Steam\bin\avcodec-53.dll () MOD - C:\Program Files (x86)\Steam\bin\avformat-53.dll () MOD - C:\Program Files (x86)\Steam\bin\avutil-51.dll () MOD - C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl () MOD - C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl () MOD - C:\Windows\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\System.AddIn.dll () MOD - C:\Windows\assembly\GAC_MSIL\System.AddIn.Contract\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll () MOD - C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll () ========== Services (SafeList) ========== SRV:64bit: - (xmkysecqun64) -- C:\Program Files\003\xmkysecqun64.exe () SRV:64bit: - (IEEtwCollectorService) -- C:\Windows\SysNative\IEEtwCollector.exe (Microsoft Corporation) SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation) SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated) SRV - (avgfws) -- C:\Program Files (x86)\AVG\AVG2014\avgfws.exe (AVG Technologies CZ, s.r.o.) SRV - (AVGIDSAgent) -- C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) SRV - (Avira.OE.ServiceHost) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Avira Operations GmbH & Co. KG) SRV - (avgwd) -- C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (AVG Technologies CZ, s.r.o.) SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation) SRV - (OverwolfUpdaterService) -- C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe (Overwolf LTD) SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) SRV - (NvNetworkService) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) SRV - (cphs) -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe (Intel Corporation) SRV - (IAStorDataMgrSvc) -- C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) SRV - (Stereo Service) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) SRV - (NvStreamSvc) -- C:\Programme\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) SRV - (LMS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) SRV - (jhi_service) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) SRV - (Intel(R) -- C:\Programme\Intel\iCLS Client\SocketHeciServer.exe (Intel(R) Corporation) SRV - (Intel(R) -- C:\Programme\Intel\iCLS Client\HeciServer.exe (Intel(R) Corporation) SRV - (asComSvc) -- C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe () SRV - (DTSAudioSvc) -- C:\Programme\Realtek\Audio\HDA\DTSU2PAuSrv64.exe (DTS, Inc) SRV - (wlidsvc) -- C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) SRV - (ASGT) -- C:\Windows\SysWOW64\ASGT.exe () SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) ========== Driver Services (SafeList) ========== DRV:64bit: - (AVGIDSDriver) -- C:\Windows\SysNative\drivers\avgidsdrivera.sys (AVG Technologies CZ, s.r.o.) DRV:64bit: - (Avgtdia) -- C:\Windows\SysNative\drivers\avgtdia.sys (AVG Technologies CZ, s.r.o.) DRV:64bit: - (Avgmfx64) -- C:\Windows\SysNative\drivers\avgmfx64.sys (AVG Technologies CZ, s.r.o.) DRV:64bit: - (AVGIDSHA) -- C:\Windows\SysNative\drivers\avgidsha.sys (AVG Technologies CZ, s.r.o.) DRV:64bit: - (Avgdiska) -- C:\Windows\SysNative\drivers\avgdiska.sys (AVG Technologies CZ, s.r.o.) DRV:64bit: - (Avgldx64) -- C:\Windows\SysNative\drivers\avgldx64.sys (AVG Technologies CZ, s.r.o.) DRV:64bit: - (Avgloga) -- C:\Windows\SysNative\drivers\avgloga.sys (AVG Technologies CZ, s.r.o.) DRV:64bit: - (Avgrkx64) -- C:\Windows\SysNative\drivers\avgrkx64.sys (AVG Technologies CZ, s.r.o.) DRV:64bit: - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira Operations GmbH & Co. KG) DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira Operations GmbH & Co. KG) DRV:64bit: - (avkmgr) -- C:\Windows\SysNative\drivers\avkmgr.sys (Avira Operations GmbH & Co. KG) DRV:64bit: - (IntcDAud) -- C:\Windows\SysNative\drivers\IntcDAud.sys (Intel(R) Corporation) DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation) DRV:64bit: - (SIVDriver) -- C:\Windows\SysNative\drivers\SIVX64.sys (Ray Hinchliffe) DRV:64bit: - (iusb3hcs) -- C:\Windows\SysNative\drivers\iusb3hcs.sys (Intel Corporation) DRV:64bit: - (iusb3xhc) -- C:\Windows\SysNative\drivers\iusb3xhc.sys (Intel Corporation) DRV:64bit: - (iusb3hub) -- C:\Windows\SysNative\drivers\iusb3hub.sys (Intel Corporation) DRV:64bit: - (iaStorA) -- C:\Windows\SysNative\drivers\iaStorA.sys (Intel Corporation) DRV:64bit: - (iaStorF) -- C:\Windows\SysNative\drivers\iaStorF.sys (Intel Corporation) DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation) DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation) DRV:64bit: - (Avgfwfd) -- C:\Windows\SysNative\drivers\avgfwd6a.sys (AVG Technologies CZ, s.r.o.) DRV:64bit: - (nvvad_WaveExtensible) -- C:\Windows\SysNative\drivers\nvvad64v.sys (NVIDIA Corporation) DRV:64bit: - (MEIx64) -- C:\Windows\SysNative\drivers\TeeDriverx64.sys (Intel Corporation) DRV:64bit: - (NVHDA) -- C:\Windows\SysNative\drivers\nvhda64v.sys (NVIDIA Corporation) DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek ) DRV:64bit: - (terminpt) -- C:\Windows\SysNative\drivers\terminpt.sys (Microsoft Corporation) DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation) DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.) DRV:64bit: - (fssfltr) -- C:\Windows\SysNative\drivers\fssfltr.sys (Microsoft Corporation) DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation) DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:64bit: - (dmvsc) -- C:\Windows\SysNative\drivers\dmvsc.sys (Microsoft Corporation) DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology) DRV:64bit: - (PNPMEM) -- C:\Windows\SysNative\drivers\pnpmem.sys (Microsoft Corporation) DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.) DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1829189191-908704339-1287612711-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login. IE - HKU\S-1-5-21-1829189191-908704339-1287612711-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE IE - HKU\S-1-5-21-1829189191-908704339-1287612711-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = D9 F2 D5 E3 A8 58 CF 01 [binary data] IE - HKU\S-1-5-21-1829189191-908704339-1287612711-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-21-1829189191-908704339-1287612711-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR IE - HKU\S-1-5-21-1829189191-908704339-1287612711-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1829189191-908704339-1287612711-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local ========== FireFox ========== FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:28.0 FF - user.js - File not found FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_182.dll File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_182.dll () FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3503.0728: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014.04.15 19:44:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Olli\AppData\Roaming\mozilla\Extensions [2014.04.15 19:43:57 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions [2014.04.15 19:43:57 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ========== Chrome ========== CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter}, CHR - homepage: CHR - plugin: Error reading preferences file CHR - Extension: Google Docs = C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\ CHR - Extension: Google Drive = C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\ CHR - Extension: YouTube = C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\ CHR - Extension: Adblock Plus = C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.7.4_0\ CHR - Extension: Google-Suche = C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\ CHR - Extension: I \u003C3 House Music = C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbihiclmkdmbnihofkkhlmdefkclbfkj\1_0\ CHR - Extension: AdBlock = C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.26_0\ CHR - Extension: Google Wallet = C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\ CHR - Extension: Google Mail = C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\ O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [RtHDVBg_DTS] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) O4:64bit: - HKLM..\Run: [ShadowPlay] C:\Windows\SysNative\nvspcap64.dll (NVIDIA Corporation) O4 - HKLM..\Run: [AVG_UI] C:\Program Files (x86)\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [SDTray] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation) O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-21-1829189191-908704339-1287612711-1001..\Run: [genesis] c:\users\olli\appdata\local\genesis\genesis.exe (l'obligeant) O4 - HKU\S-1-5-21-1829189191-908704339-1287612711-1001..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe (Overwolf LTD) O4 - HKU\S-1-5-21-1829189191-908704339-1287612711-1001..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation) O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found O4 - Startup: C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\genesis.lnk = C:\Users\Olli\AppData\Local\Genesis\Genesis.exe (l'obligeant) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.) O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.) O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.) O1364bit: - gopher Prefix: missing O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1A49F857-6683-408A-8CFD-176B20B0B1AB}: DhcpNameServer = 192.168.2.1 O18:64bit: - Protocol\Handler\livecall - No CLSID value found O18:64bit: - Protocol\Handler\msnim - No CLSID value found O18:64bit: - Protocol\Handler\skype4com - No CLSID value found O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found O18:64bit: - Protocol\Handler\wlpg - No CLSID value found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\SUPPOR~1\SUPPOR~2.DLL) - C:\PROGRA~2\SUPPOR~1\SUPPOR~2.DLL () O20:64bit: - AppInit_DLLs: (C:\Windows\system32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation) O20 - AppInit_DLLs: (C:\Windows\SysWOW64\nvinit.dll) - C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation) O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation) O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation) O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2014.04.15 19:48:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome [2014.04.15 19:44:58 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Macromedia [2014.04.15 19:44:05 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\Mozilla [2014.04.15 19:44:05 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Mozilla [2014.04.15 19:43:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service [2014.04.15 19:43:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla [2014.04.15 19:43:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox [2014.04.15 16:46:37 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\Macromedia [2014.04.15 16:40:53 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\AVG2014 [2014.04.15 16:38:37 | 000,000,000 | ---D | C] -- C:\Users\Olli\Documents\BFBC2 [2014.04.15 16:38:35 | 000,000,000 | ---D | C] -- C:\Users\Olli\Documents\Stronghold Crusader [2014.04.15 16:38:33 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\TuneUp Software [2014.04.15 16:38:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG [2014.04.15 16:38:28 | 000,000,000 | -H-D | C] -- C:\$AVG [2014.04.15 16:38:28 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2014 [2014.04.15 16:38:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVG [2014.04.15 16:32:06 | 000,000,000 | ---D | C] -- C:\Users\Olli\Documents\DayZ [2014.04.15 16:32:06 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\DayZ [2014.04.15 16:32:02 | 005,631,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_40.dll [2014.04.15 16:32:02 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_40.dll [2014.04.15 16:32:02 | 002,605,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_40.dll [2014.04.15 16:32:02 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_40.dll [2014.04.15 16:32:02 | 000,519,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_40.dll [2014.04.15 16:32:02 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_40.dll [2014.04.15 16:21:38 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files [2014.04.15 16:21:38 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\MFAData [2014.04.15 16:21:38 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData [2014.04.15 16:21:38 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Avg2014 [2014.04.15 16:08:50 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee [2014.04.15 16:08:49 | 000,692,400 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe [2014.04.15 16:08:49 | 000,070,832 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2014.04.15 16:08:48 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed [2014.04.15 16:08:48 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed [2014.04.15 16:08:21 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Adobe [2014.04.15 15:56:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 [2014.04.15 15:56:29 | 000,021,040 | ---- | C] (Safer Networking Limited) -- C:\Windows\SysNative\sdnclean64.exe [2014.04.15 15:56:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy [2014.04.15 15:56:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spybot - Search & Destroy 2 [2014.04.15 15:44:17 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\Apple Computer [2014.04.15 15:44:17 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Apple Computer [2014.04.15 15:44:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes [2014.04.15 15:44:15 | 000,033,240 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys [2014.04.15 15:44:03 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes [2014.04.15 15:44:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes [2014.04.15 15:44:03 | 000,000,000 | ---D | C] -- C:\Program Files\iPod [2014.04.15 15:44:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer [2014.04.15 15:44:03 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 [2014.04.15 15:43:46 | 000,000,000 | ---D | C] -- C:\Users\Olli\Desktop\Bilder [2014.04.15 15:43:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update [2014.04.15 15:43:25 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Apple [2014.04.15 15:43:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple [2014.04.15 15:43:21 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour [2014.04.15 15:43:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour [2014.04.15 15:43:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple [2014.04.15 15:43:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Apple [2014.04.15 15:40:39 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2014.04.15 15:23:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS [2014.04.15 15:23:15 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS [2014.04.15 15:23:05 | 000,000,000 | ---D | C] -- C:\Windows\Downloaded Installations [2014.04.15 15:22:55 | 000,028,448 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvaudcap32v.dll [2014.04.15 15:22:54 | 000,039,200 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvvad64v.sys [2014.04.15 15:22:29 | 000,196,384 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvhda64v.sys [2014.04.15 15:22:28 | 000,031,520 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvhdap64.dll [2014.04.15 15:22:28 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\NV [2014.04.15 15:22:28 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\NV [2014.04.15 15:21:43 | 001,884,448 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispco6432723.dll [2014.04.15 15:21:43 | 001,511,712 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispgenco6432723.dll [2014.04.15 15:20:26 | 013,628,208 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvwgf2um.dll [2014.04.15 15:20:25 | 006,329,552 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvopencl.dll [2014.04.15 15:20:25 | 001,222,824 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvumdshim.dll [2014.04.15 15:20:24 | 007,648,000 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvopencl.dll [2014.04.15 15:20:21 | 029,337,376 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglv64.dll [2014.04.15 15:20:19 | 022,102,304 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglv32.dll [2014.04.15 15:20:19 | 000,317,472 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglshim64.dll [2014.04.15 15:20:19 | 000,266,984 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglshim32.dll [2014.04.15 15:20:17 | 000,681,760 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvFBC64.dll [2014.04.15 15:20:17 | 000,603,424 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFR64.dll [2014.04.15 15:20:17 | 000,586,016 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvFBC.dll [2014.04.15 15:20:17 | 000,515,360 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFR.dll [2014.04.15 15:20:17 | 000,458,528 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvEncodeAPI64.dll [2014.04.15 15:20:17 | 000,388,384 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvEncodeAPI.dll [2014.04.15 15:20:17 | 000,168,616 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvinitx.dll [2014.04.15 15:20:17 | 000,141,336 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvinit.dll [2014.04.15 15:20:13 | 015,703,688 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvd3dumx.dll [2014.04.15 15:20:11 | 002,789,152 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvid.dll [2014.04.15 15:20:10 | 002,970,400 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvid.dll [2014.04.15 15:20:10 | 002,367,264 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvenc.dll [2014.04.15 15:20:10 | 002,007,328 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvenc.dll [2014.04.15 15:20:09 | 007,720,576 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuda.dll [2014.04.15 15:20:08 | 009,281,032 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuda.dll [2014.04.15 15:19:46 | 025,256,224 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcompiler.dll [2014.04.15 15:19:44 | 017,560,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcompiler.dll [2014.04.15 15:01:14 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf [2014.04.15 15:01:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype [2014.04.15 15:01:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Overwolf [2014.04.15 15:01:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Overwolf [2014.04.15 15:00:17 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\TS3Client [2014.04.15 15:00:17 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\NVIDIA Corporation [2014.04.15 15:00:15 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Overwolf [2014.04.15 15:00:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client [2014.04.15 15:00:14 | 000,000,000 | ---D | C] -- C:\Program Files\TeamSpeak 3 Client [2014.04.15 14:59:15 | 001,179,576 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvspcap64.dll [2014.04.15 14:59:15 | 001,048,152 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvspcap.dll [2014.04.15 14:59:15 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\NVIDIA [2014.04.15 14:59:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation [2014.04.15 14:59:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies [2014.04.15 14:58:57 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA [2014.04.15 14:58:40 | 006,599,968 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcpl.dll [2014.04.15 14:58:40 | 003,452,192 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvsvc64.dll [2014.04.15 14:58:40 | 002,559,776 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvsvcr.dll [2014.04.15 14:58:40 | 000,219,424 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvmctray.dll [2014.04.15 14:58:40 | 000,063,776 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvshext.dll [2014.04.15 14:58:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam [2014.04.15 14:58:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Steam [2014.04.15 14:58:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam [2014.04.15 14:58:30 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation [2014.04.15 14:58:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NVIDIA Corporation [2014.04.15 14:58:02 | 015,901,448 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvwgf2umx.dll [2014.04.15 14:58:02 | 012,947,360 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvd3dum.dll [2014.04.15 14:58:02 | 002,986,672 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvapi64.dll [2014.04.15 14:58:02 | 002,630,304 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvapi.dll [2014.04.15 14:58:02 | 001,885,472 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispco6433523.dll [2014.04.15 14:58:02 | 001,516,488 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispgenco6433523.dll [2014.04.15 14:58:02 | 001,510,176 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvhdagenco6420103.dll [2014.04.15 14:58:02 | 001,412,832 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvumdshimx.dll [2014.04.15 14:58:02 | 000,377,688 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFROpenGL.dll [2014.04.15 14:58:02 | 000,333,600 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFROpenGL.dll [2014.04.15 14:58:02 | 000,029,984 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvaudcap64v.dll [2014.04.15 14:57:35 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2014.04.15 14:57:16 | 000,000,000 | ---D | C] -- C:\NVIDIA [2014.04.15 14:55:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google [2014.04.15 14:54:51 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Deployment [2014.04.15 14:54:51 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Apps [2014.04.15 14:52:52 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\Avira [2014.04.15 14:51:45 | 000,131,576 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys [2014.04.15 14:51:45 | 000,108,440 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys [2014.04.15 14:51:45 | 000,028,600 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys [2014.04.15 14:51:32 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\CrashDumps [2014.04.15 14:51:07 | 000,338,120 | ---- | C] (SecureAssist) -- C:\Windows\SysNative\SecureAssist64.dll [2014.04.15 14:51:05 | 000,295,080 | ---- | C] (SecureAssist) -- C:\Windows\SysWow64\SecureAssist.dll [2014.04.15 14:50:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira [2014.04.15 14:50:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira [2014.04.15 14:50:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira [2014.04.15 14:50:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache [2014.04.15 14:49:47 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\Advanced System Protector [2014.04.15 14:49:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Supporter [2014.04.15 14:49:37 | 000,019,544 | ---- | C] (System Speedup) -- C:\Windows\SysNative\roboot64.exe [2014.04.15 14:49:37 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\systweak [2014.04.15 14:49:37 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Programs [2014.04.15 14:49:35 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Torch [2014.04.15 14:49:35 | 000,000,000 | ---D | C] -- C:\ProgramData\SaveClicker [2014.04.15 14:49:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SaveClicker [2014.04.15 14:49:35 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Packages [2014.04.15 14:49:35 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Google [2014.04.15 14:49:35 | 000,000,000 | ---D | C] -- C:\ProgramData\d7969783fbe7f5ae [2014.04.15 14:49:35 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Comodo [2014.04.15 14:49:30 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Genesis [2014.04.15 14:49:27 | 000,000,000 | ---D | C] -- C:\temp [2014.04.15 14:49:09 | 000,000,000 | ---D | C] -- C:\Program Files\003 [2014.04.15 14:48:06 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\Intel Corporation [2014.04.15 14:47:04 | 000,000,000 | R--D | C] -- C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [2014.04.15 14:47:04 | 000,000,000 | R--D | C] -- C:\Users\Olli\Searches [2014.04.15 14:47:04 | 000,000,000 | R--D | C] -- C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2014.04.15 14:47:04 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\Adobe [2014.04.15 14:46:58 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\Identities [2014.04.15 14:46:57 | 000,000,000 | R--D | C] -- C:\Users\Olli\Contacts [2014.04.15 14:46:57 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\VirtualStore [2014.04.15 14:45:29 | 000,000,000 | R--D | C] -- C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2014.04.15 14:45:29 | 000,000,000 | R--D | C] -- C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Vorlagen [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\AppData\Local\Verlauf [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\AppData\Local\Temporary Internet Files [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Startmenü [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\SendTo [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Recent [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Netzwerkumgebung [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Lokale Einstellungen [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Documents\Eigene Videos [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Documents\Eigene Musik [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Eigene Dateien [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Documents\Eigene Bilder [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Druckumgebung [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Cookies [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\AppData\Local\Anwendungsdaten [2014.04.15 14:45:29 | 000,000,000 | -HSD | C] -- C:\Users\Olli\Anwendungsdaten [2014.04.15 14:45:29 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Temp [2014.04.15 14:45:29 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Local\Microsoft [2014.04.15 14:45:29 | 000,000,000 | ---D | C] -- C:\Users\Olli\AppData\Roaming\Media Center Programs [2014.04.15 14:45:28 | 000,000,000 | --SD | C] -- C:\Users\Olli\AppData\Roaming\Microsoft [2014.04.15 14:45:28 | 000,000,000 | R--D | C] -- C:\Users\Olli\Videos [2014.04.15 14:45:28 | 000,000,000 | R--D | C] -- C:\Users\Olli\Saved Games [2014.04.15 14:45:28 | 000,000,000 | R--D | C] -- C:\Users\Olli\Pictures [2014.04.15 14:45:28 | 000,000,000 | R--D | C] -- C:\Users\Olli\Music [2014.04.15 14:45:28 | 000,000,000 | R--D | C] -- C:\Users\Olli\Links [2014.04.15 14:45:28 | 000,000,000 | R--D | C] -- C:\Users\Olli\Favorites [2014.04.15 14:45:28 | 000,000,000 | R--D | C] -- C:\Users\Olli\Downloads [2014.04.15 14:45:28 | 000,000,000 | R--D | C] -- C:\Users\Olli\Documents [2014.04.15 14:45:28 | 000,000,000 | R--D | C] -- C:\Users\Olli\Desktop [2014.04.15 14:45:28 | 000,000,000 | -H-D | C] -- C:\Users\Olli\AppData [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\Recovery [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\Programme [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente [2014.04.15 14:45:19 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten [2014.04.14 14:15:19 | 000,149,240 | ---- | C] (Ray Hinchliffe) -- C:\Windows\SysNative\drivers\SIVX64.sys [2014.04.14 13:59:54 | 000,028,672 | ---- | C] (ASUSTek Computer Inc.) -- C:\Windows\SysWow64\AsIO.dll [2014.04.14 13:59:54 | 000,000,000 | ---D | C] -- C:\Program Files\ASUS [2014.04.14 13:59:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ASUS [2014.04.14 13:58:08 | 000,041,984 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\USB3Ver.dll [2014.04.14 13:58:01 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM [2014.04.14 13:58:01 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2014.04.14 13:57:55 | 002,103,040 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib64.dll [2014.04.14 13:57:55 | 001,361,336 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tosade.dll [2014.04.14 13:57:55 | 001,019,136 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\slcnt64.dll [2014.04.14 13:57:55 | 000,947,248 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\SFSS_APO.dll [2014.04.14 13:57:55 | 000,899,328 | ---- | C] (DTS, Inc.) -- C:\Windows\SysNative\sl3apo64.dll [2014.04.14 13:57:55 | 000,871,856 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tossaeapo64.dll [2014.04.14 13:57:55 | 000,836,544 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo264.dll [2014.04.14 13:57:55 | 000,720,128 | ---- | C] (DTS, Inc.) -- C:\Windows\SysNative\sltech64.dll [2014.04.14 13:57:55 | 000,582,056 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tosasfapo64.dll [2014.04.14 13:57:55 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll [2014.04.14 13:57:55 | 000,244,480 | ---- | C] (TODO: <Company name>) -- C:\Windows\SysNative\slprp64.dll [2014.04.14 13:57:55 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll [2014.04.14 13:57:55 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll [2014.04.14 13:57:55 | 000,162,224 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\toseaeapo64.dll [2014.04.14 13:57:55 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll [2014.04.14 13:57:55 | 000,148,416 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo.dll [2014.04.14 13:57:55 | 000,065,944 | ---- | C] (TOSHIBA CORPORATION.) -- C:\Windows\SysNative\tepeqapo64.dll [2014.04.14 13:57:54 | 031,488,000 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoRes64.dat [2014.04.14 13:57:54 | 027,518,208 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioVnA64.dll [2014.04.14 13:57:54 | 014,048,512 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek64.dll [2014.04.14 13:57:54 | 007,164,176 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll [2014.04.14 13:57:54 | 004,848,920 | ---- | C] (ASUSTeKcomputer.Inc Inc) -- C:\Windows\SysNative\RTKSMlfx.dll [2014.04.14 13:57:54 | 003,610,880 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioVnN64.dll [2014.04.14 13:57:54 | 002,809,048 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll [2014.04.14 13:57:54 | 002,585,304 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkAPO64.dll [2014.04.14 13:57:54 | 002,032,896 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ64.dll [2014.04.14 13:57:54 | 001,916,672 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek264.dll [2014.04.14 13:57:54 | 001,662,024 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl [2014.04.14 13:57:54 | 001,325,312 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO5064.dll [2014.04.14 13:57:54 | 001,284,680 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll [2014.04.14 13:57:54 | 001,084,160 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO4064.dll [2014.04.14 13:57:54 | 001,005,784 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll [2014.04.14 13:57:54 | 000,922,880 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPOShell64.dll [2014.04.14 13:57:54 | 000,907,008 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVoiceAPO2064.dll [2014.04.14 13:57:54 | 000,906,800 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\MISS_APO.dll [2014.04.14 13:57:54 | 000,818,008 | ---- | C] (ASUSTeKcomputer.Inc Inc) -- C:\Windows\SysNative\RTKSMSettingsIPC.dll [2014.04.14 13:57:54 | 000,765,184 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxSpeechAPO64.dll [2014.04.14 13:57:54 | 000,663,296 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll [2014.04.14 13:57:54 | 000,662,784 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll [2014.04.14 13:57:54 | 000,617,176 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtDataProc64.dll [2014.04.14 13:57:54 | 000,603,984 | ---- | C] (Knowles Acoustics ) -- C:\Windows\SysNative\KAAPORT64.dll [2014.04.14 13:57:54 | 000,434,960 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll [2014.04.14 13:57:54 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll [2014.04.14 13:57:54 | 000,331,880 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll [2014.04.14 13:57:54 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll [2014.04.14 13:57:54 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll [2014.04.14 13:57:54 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll [2014.04.14 13:57:54 | 000,221,024 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll [2014.04.14 13:57:54 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll [2014.04.14 13:57:54 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll [2014.04.14 13:57:54 | 000,148,184 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInstII64.dll [2014.04.14 13:57:54 | 000,141,584 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll [2014.04.14 13:57:54 | 000,124,176 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll [2014.04.14 13:57:54 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll [2014.04.14 13:57:54 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll [2014.04.14 13:57:54 | 000,078,688 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll [2014.04.14 13:57:54 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll [2014.04.14 13:57:54 | 000,075,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll [2014.04.14 13:57:54 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll [2014.04.14 13:57:54 | 000,014,952 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCoLDR64.dll [2014.04.14 13:57:53 | 006,219,096 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPP64A.dll [2014.04.14 13:57:53 | 002,743,328 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll [2014.04.14 13:57:53 | 002,080,472 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll [2014.04.14 13:57:53 | 001,908,568 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPD64A.dll [2014.04.14 13:57:53 | 001,756,264 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll [2014.04.14 13:57:53 | 001,568,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll [2014.04.14 13:57:53 | 001,486,952 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll [2014.04.14 13:57:53 | 000,728,680 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll [2014.04.14 13:57:53 | 000,712,296 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll [2014.04.14 13:57:53 | 000,693,352 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll [2014.04.14 13:57:53 | 000,501,192 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PLFX64.dll [2014.04.14 13:57:53 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll [2014.04.14 13:57:53 | 000,487,368 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PGFX64.dll [2014.04.14 13:57:53 | 000,432,744 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll [2014.04.14 13:57:53 | 000,428,648 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll [2014.04.14 13:57:53 | 000,415,688 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PREC64.dll [2014.04.14 13:57:53 | 000,312,152 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPO64A.dll [2014.04.14 13:57:53 | 000,261,464 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPA64.dll [2014.04.14 13:57:53 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll [2014.04.14 13:57:53 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll [2014.04.14 13:57:53 | 000,241,768 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll [2014.04.14 13:57:53 | 000,208,072 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll [2014.04.14 13:57:53 | 000,113,576 | ---- | C] (Real Sound Lab SIA) -- C:\Windows\SysNative\CONEQMSAPOGUILibrary.dll [2014.04.14 13:57:53 | 000,108,640 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll [2014.04.14 13:57:53 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp [2014.04.14 13:57:53 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information [2014.04.14 13:57:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek [2014.04.14 13:57:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield [2014.04.14 13:57:47 | 000,016,344 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\IntelMEFWVer.dll [2014.04.14 13:57:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\postureAgent [2014.04.14 13:56:59 | 000,064,000 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\OpenCL.DLL [2014.04.14 13:56:59 | 000,060,416 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.DLL [2014.04.14 13:56:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intel [2014.04.14 13:55:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intel Corporation [2014.04.14 13:54:34 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel [2014.04.14 13:54:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel [2014.04.14 13:54:13 | 000,000,000 | ---D | C] -- C:\Program Files\Intel [2014.04.14 13:54:03 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll [2014.04.14 13:54:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel [2014.04.14 13:54:00 | 000,000,000 | ---D | C] -- C:\Intel [2014.04.14 13:53:56 | 001,721,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WdfCoInstaller01009.dll [2014.04.14 13:53:56 | 000,790,512 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\iusb3xhc.sys [2014.04.14 13:53:56 | 000,369,648 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\iusb3hub.sys [2014.04.14 13:53:56 | 000,020,464 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\iusb3hcs.sys [2014.04.14 13:53:34 | 001,795,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WdfCoInstaller01011.dll [2014.04.14 13:53:34 | 000,099,288 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\TeeDriverx64.sys [2014.04.14 13:53:34 | 000,064,472 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\HECIx64.sys [2014.04.14 13:53:26 | 000,733,184 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\MetroIntelGenericUIFramework.dll [2014.04.14 13:53:25 | 000,064,000 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\Intel_OpenCL_ICD64.dll [2014.04.14 13:53:25 | 000,060,416 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\Intel_OpenCL_ICD32.dll [2014.04.14 13:53:24 | 009,081,856 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxress.dll [2014.04.14 13:53:24 | 001,127,424 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\iglhsip64.dll [2014.04.14 13:53:24 | 001,123,328 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\iglhsip32.dll [2014.04.14 13:53:24 | 000,906,224 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxstarter.exe [2014.04.14 13:53:24 | 000,845,296 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxsrvc.exe [2014.04.14 13:53:24 | 000,770,544 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxpers.exe [2014.04.14 13:53:24 | 000,624,640 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxdev.dll [2014.04.14 13:53:24 | 000,548,864 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxpph.dll [2014.04.14 13:53:24 | 000,527,872 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrell.lrc [2014.04.14 13:53:24 | 000,527,360 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrplk.lrc [2014.04.14 13:53:24 | 000,527,360 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrfra.lrc [2014.04.14 13:53:24 | 000,527,360 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxresn.lrc [2014.04.14 13:53:24 | 000,526,848 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrrus.lrc [2014.04.14 13:53:24 | 000,526,848 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrdeu.lrc [2014.04.14 13:53:24 | 000,526,336 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrrom.lrc [2014.04.14 13:53:24 | 000,526,336 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrnld.lrc [2014.04.14 13:53:24 | 000,526,336 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrita.lrc [2014.04.14 13:53:24 | 000,525,824 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrsky.lrc [2014.04.14 13:53:24 | 000,525,824 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrptg.lrc [2014.04.14 13:53:24 | 000,525,824 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrhun.lrc [2014.04.14 13:53:24 | 000,525,824 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrhrv.lrc [2014.04.14 13:53:24 | 000,525,824 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrcsy.lrc [2014.04.14 13:53:24 | 000,525,312 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrsve.lrc [2014.04.14 13:53:24 | 000,525,312 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrslv.lrc [2014.04.14 13:53:24 | 000,525,312 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrfin.lrc [2014.04.14 13:53:24 | 000,524,800 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrtrk.lrc [2014.04.14 13:53:24 | 000,524,800 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrptb.lrc [2014.04.14 13:53:24 | 000,524,288 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrnor.lrc [2014.04.14 13:53:24 | 000,524,288 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrdan.lrc [2014.04.14 13:53:24 | 000,523,776 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrtha.lrc [2014.04.14 13:53:24 | 000,522,240 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrheb.lrc [2014.04.14 13:53:24 | 000,521,728 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrara.lrc [2014.04.14 13:53:24 | 000,517,632 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrjpn.lrc [2014.04.14 13:53:24 | 000,516,096 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrkor.lrc [2014.04.14 13:53:24 | 000,514,048 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrcht.lrc [2014.04.14 13:53:24 | 000,513,536 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrchs.lrc [2014.04.14 13:53:24 | 000,493,056 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igfxdv32.dll [2014.04.14 13:53:24 | 000,397,808 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxext.exe [2014.04.14 13:53:24 | 000,391,152 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxtray.exe [2014.04.14 13:53:24 | 000,371,200 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxrenu.lrc [2014.04.14 13:53:24 | 000,346,624 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxTMM.dll [2014.04.14 13:53:24 | 000,320,512 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\IntelOpenCL64.dll [2014.04.14 13:53:24 | 000,279,040 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxcpl.cpl [2014.04.14 13:53:24 | 000,279,024 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014.04.14 13:53:24 | 000,265,216 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\IntelOpenCL32.dll [2014.04.14 13:53:24 | 000,243,712 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxdo.dll [2014.04.14 13:53:24 | 000,214,528 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\iglhcp64.dll [2014.04.14 13:53:24 | 000,182,784 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxCoIn_v3412.dll [2014.04.14 13:53:24 | 000,179,712 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\iglhcp32.dll [2014.04.14 13:53:24 | 000,163,328 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxcmrt64.dll [2014.04.14 13:53:24 | 000,137,728 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igfxcmrt32.dll [2014.04.14 13:53:24 | 000,066,560 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxsrvc.dll [2014.04.14 13:53:24 | 000,029,696 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxexps.dll [2014.04.14 13:53:24 | 000,025,600 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igfxexps32.dll [2014.04.14 13:53:23 | 019,380,224 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igdumdim64.dll [2014.04.14 13:53:23 | 018,629,632 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igdumdim32.dll [2014.04.14 13:53:23 | 004,474,368 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igdusc64.dll [2014.04.14 13:53:23 | 003,558,912 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igdusc32.dll [2014.04.14 13:53:23 | 003,224,064 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igdrcl64.dll [2014.04.14 13:53:23 | 002,896,384 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igdrcl32.dll [2014.04.14 13:53:23 | 002,065,920 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxcmjit64.dll [2014.04.14 13:53:23 | 001,815,040 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igfxcmjit32.dll [2014.04.14 13:53:23 | 000,155,136 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfx11cmrt64.dll [2014.04.14 13:53:23 | 000,133,120 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igfx11cmrt32.dll [2014.04.14 13:53:22 | 025,971,712 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igdfcl64.dll [2014.04.14 13:53:22 | 020,954,112 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igdfcl32.dll [2014.04.14 13:53:22 | 004,221,440 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\igdkmd64.sys [2014.04.14 13:53:22 | 000,329,216 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igdbcl64.dll [2014.04.14 13:53:22 | 000,290,816 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igdbcl32.dll [2014.04.14 13:53:21 | 021,088,256 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igd10iumd64.dll [2014.04.14 13:53:21 | 020,433,408 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\igd10iumd32.dll [2014.04.14 13:53:21 | 007,947,776 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\ig75icd64.dll [2014.04.14 13:53:20 | 007,597,040 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\GfxUIEx.exe [2014.04.14 13:53:20 | 006,289,408 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\ig75icd32.dll [2014.04.14 13:53:20 | 000,771,568 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\hkcmd.exe [2014.04.14 13:53:20 | 000,755,184 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\GfxUIHotKeyMenu.exe [2014.04.14 13:53:20 | 000,530,928 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\DPTopologyApp.exe [2014.04.14 13:53:20 | 000,224,256 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\hccutils.dll [2014.04.14 13:53:20 | 000,194,560 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\gfxSrvc.dll [2014.04.14 13:53:20 | 000,153,072 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\difx64.exe [2014.04.14 13:53:19 | 000,450,520 | ---- | C] (Intel(R) Corporation) -- C:\Windows\SysNative\drivers\IntcDAud.sys [2014.04.14 13:53:19 | 000,397,296 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\CustomModeApp.exe [2014.04.01 21:03:14 | 000,236,824 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgidsdrivera.sys [2014.03.31 16:20:54 | 000,274,200 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgtdia.sys [2014.03.31 16:06:26 | 000,130,840 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgmfx64.sys [2014.03.27 22:14:26 | 000,192,792 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgidsha.sys [2014.03.27 22:14:24 | 000,153,368 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgdiska.sys [2014.03.27 22:07:10 | 000,236,824 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgldx64.sys [2014.03.27 22:05:02 | 000,324,376 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgloga.sys [2014.03.27 22:03:16 | 000,032,536 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgrkx64.sys [2014.03.21 11:46:46 | 001,081,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscomctl.ocx [2014.03.21 11:46:46 | 000,152,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\comdlg32.ocx [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2014.04.15 20:06:53 | 000,001,066 | ---- | M] () -- C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\genesis.lnk [2014.04.15 19:52:21 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2014.04.15 19:52:09 | 000,001,102 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2014.04.15 19:48:01 | 000,002,257 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk [2014.04.15 19:43:58 | 000,001,157 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2014.04.15 19:18:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2014.04.15 18:49:49 | 006,070,334 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2014.04.15 18:49:49 | 000,738,688 | ---- | M] () -- C:\Windows\SysNative\perfh00C.dat [2014.04.15 18:49:49 | 000,738,428 | ---- | M] () -- C:\Windows\SysNative\perfh00A.dat [2014.04.15 18:49:49 | 000,736,470 | ---- | M] () -- C:\Windows\SysNative\perfh013.dat [2014.04.15 18:49:49 | 000,733,330 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat [2014.04.15 18:49:49 | 000,733,018 | ---- | M] () -- C:\Windows\SysNative\perfh010.dat [2014.04.15 18:49:49 | 000,700,470 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat [2014.04.15 18:49:49 | 000,655,308 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2014.04.15 18:49:49 | 000,159,008 | ---- | M] () -- C:\Windows\SysNative\perfc00A.dat [2014.04.15 18:49:49 | 000,156,406 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat [2014.04.15 18:49:49 | 000,153,636 | ---- | M] () -- C:\Windows\SysNative\perfc013.dat [2014.04.15 18:49:49 | 000,150,114 | ---- | M] () -- C:\Windows\SysNative\perfc00C.dat [2014.04.15 18:49:49 | 000,150,108 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat [2014.04.15 18:49:49 | 000,147,380 | ---- | M] () -- C:\Windows\SysNative\perfc010.dat [2014.04.15 18:49:49 | 000,122,678 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2014.04.15 18:43:51 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2014.04.15 18:43:50 | 2047,381,503 | -HS- | M] () -- C:\hiberfil.sys [2014.04.15 18:06:37 | 000,024,992 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2014.04.15 18:06:37 | 000,024,992 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2014.04.15 16:38:33 | 000,000,991 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2014.lnk [2014.04.15 16:14:26 | 000,000,426 | ---- | M] () -- C:\AVScanner.ini [2014.04.15 16:08:49 | 000,692,400 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe [2014.04.15 16:08:49 | 000,070,832 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2014.04.15 15:56:31 | 000,001,389 | ---- | M] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk [2014.04.15 15:46:02 | 000,055,513 | ---- | M] () -- C:\Windows\SysWow64\license.rtf [2014.04.15 15:46:02 | 000,055,513 | ---- | M] () -- C:\Windows\SysNative\license.rtf [2014.04.15 15:44:16 | 000,001,793 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk [2014.04.15 15:28:18 | 000,003,978 | ---- | M] () -- C:\Users\Olli\Desktop\autoexec.cfg [2014.04.15 15:23:42 | 000,001,060 | ---- | M] () -- C:\Users\Public\Desktop\GPUTweakStreaming.lnk [2014.04.15 15:23:17 | 000,001,053 | ---- | M] () -- C:\Users\Public\Desktop\ASUS GPU Tweak.lnk [2014.04.15 15:01:14 | 000,001,981 | ---- | M] () -- C:\Users\Public\Desktop\Overwolf.lnk [2014.04.15 15:00:14 | 000,000,977 | ---- | M] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk [2014.04.15 14:59:31 | 000,001,357 | ---- | M] () -- C:\Users\Public\Desktop\GeForce Experience.lnk [2014.04.15 14:58:31 | 000,000,973 | ---- | M] () -- C:\Users\Public\Desktop\Steam.lnk [2014.04.15 14:50:50 | 000,001,147 | ---- | M] () -- C:\Users\Public\Desktop\Avira.lnk [2014.04.14 14:00:49 | 000,018,680 | ---- | M] () -- C:\Windows\SysNative\results.xml [2014.04.14 13:59:55 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_ASMBSW_01_11_00.Wdf [2014.04.14 13:58:15 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iusb3hcs_01009.Wdf [2014.04.14 13:58:05 | 000,000,000 | -H-- | M] () -- C:\ProgramData\DP45977C.lfl [2014.04.14 13:57:00 | 000,000,716 | ---- | M] () -- C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk [2014.04.14 13:57:00 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_TeeDriverx64_01011.Wdf [2014.04.14 13:54:36 | 006,130,124 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2014.04.01 21:03:14 | 000,236,824 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgidsdrivera.sys [2014.03.31 16:20:54 | 000,274,200 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgtdia.sys [2014.03.31 16:06:26 | 000,130,840 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgmfx64.sys [2014.03.27 22:14:26 | 000,192,792 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgidsha.sys [2014.03.27 22:14:24 | 000,153,368 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgdiska.sys [2014.03.27 22:07:10 | 000,236,824 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgldx64.sys [2014.03.27 22:05:02 | 000,324,376 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgloga.sys [2014.03.27 22:03:16 | 000,032,536 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgrkx64.sys [2014.03.21 11:46:46 | 001,081,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mscomctl.ocx [2014.03.21 11:46:46 | 000,152,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\comdlg32.ocx [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] ========== Files Created - No Company Name ========== [2014.04.15 19:48:01 | 000,002,257 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk [2014.04.15 19:47:36 | 000,001,106 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2014.04.15 19:47:36 | 000,001,102 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2014.04.15 19:43:58 | 000,001,169 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2014.04.15 19:43:58 | 000,001,157 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2014.04.15 18:05:02 | 000,000,426 | ---- | C] () -- C:\AVScanner.ini [2014.04.15 16:40:50 | 000,001,066 | ---- | C] () -- C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\genesis.lnk [2014.04.15 16:38:33 | 000,000,991 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2014.lnk [2014.04.15 16:08:49 | 000,000,884 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2014.04.15 15:56:31 | 000,001,401 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk [2014.04.15 15:56:31 | 000,001,389 | ---- | C] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk [2014.04.15 15:44:16 | 000,001,793 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk [2014.04.15 15:43:25 | 000,002,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk [2014.04.15 15:28:18 | 000,003,978 | ---- | C] () -- C:\Users\Olli\Desktop\autoexec.cfg [2014.04.15 15:23:42 | 000,001,060 | ---- | C] () -- C:\Users\Public\Desktop\GPUTweakStreaming.lnk [2014.04.15 15:23:17 | 000,001,053 | ---- | C] () -- C:\Users\Public\Desktop\ASUS GPU Tweak.lnk [2014.04.15 15:01:14 | 000,001,981 | ---- | C] () -- C:\Users\Public\Desktop\Overwolf.lnk [2014.04.15 15:00:14 | 000,000,977 | ---- | C] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk [2014.04.15 14:59:31 | 000,001,357 | ---- | C] () -- C:\Users\Public\Desktop\GeForce Experience.lnk [2014.04.15 14:58:40 | 003,361,114 | ---- | C] () -- C:\Windows\SysNative\nvcoproc.bin [2014.04.15 14:58:31 | 000,000,973 | ---- | C] () -- C:\Users\Public\Desktop\Steam.lnk [2014.04.15 14:58:02 | 000,022,814 | ---- | C] () -- C:\Windows\SysNative\nvinfo.pb [2014.04.15 14:50:50 | 000,001,147 | ---- | C] () -- C:\Users\Public\Desktop\Avira.lnk [2014.04.15 14:47:04 | 000,001,431 | ---- | C] () -- C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [2014.04.15 14:45:29 | 000,002,130 | ---- | C] () -- C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk [2014.04.15 14:45:29 | 000,001,990 | ---- | C] () -- C:\Users\Olli\Desktop\Microsoft Office.lnk [2014.04.14 14:00:49 | 000,018,680 | ---- | C] () -- C:\Windows\SysNative\results.xml [2014.04.14 13:59:55 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_ASMBSW_01_11_00.Wdf [2014.04.14 13:59:54 | 000,013,440 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsIO.sys [2014.04.14 13:58:15 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iusb3hcs_01009.Wdf [2014.04.14 13:58:05 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl [2014.04.14 13:57:56 | 000,001,332 | ---- | C] () -- C:\Windows\SysNative\drivers\DTSU2P.DAT [2014.04.14 13:57:54 | 005,694,760 | ---- | C] () -- C:\Windows\SysNative\drivers\rtvienna.dat [2014.04.14 13:57:54 | 000,633,381 | ---- | C] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT [2014.04.14 13:57:53 | 000,557,880 | ---- | C] () -- C:\Windows\SysNative\audioLibVc.dll [2014.04.14 13:57:53 | 000,109,848 | ---- | C] () -- C:\Windows\SysNative\AcpiServiceVnA64.dll [2014.04.14 13:57:00 | 000,000,716 | ---- | C] () -- C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk [2014.04.14 13:57:00 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_TeeDriverx64_01011.Wdf [2014.04.14 13:53:24 | 002,813,952 | ---- | C] () -- C:\Windows\SysNative\iglhxa64.cpa [2014.04.14 13:53:24 | 000,044,025 | ---- | C] () -- C:\Windows\SysNative\iglhxo64.vp [2014.04.14 13:53:24 | 000,043,816 | ---- | C] () -- C:\Windows\SysNative\iglhxc64_dev.vp [2014.04.14 13:53:24 | 000,043,494 | ---- | C] () -- C:\Windows\SysNative\iglhxc64.vp [2014.04.14 13:53:24 | 000,043,298 | ---- | C] () -- C:\Windows\SysNative\iglhxg64_dev.vp [2014.04.14 13:53:24 | 000,043,256 | ---- | C] () -- C:\Windows\SysNative\iglhxg64.vp [2014.04.14 13:53:24 | 000,042,079 | ---- | C] () -- C:\Windows\SysNative\iglhxo64_dev.vp [2014.04.14 13:53:24 | 000,012,288 | ---- | C] ( ) -- C:\Windows\SysNative\IGFXDEVLib.dll [2014.04.14 13:53:24 | 000,002,944 | ---- | C] () -- C:\Windows\SysNative\iglhxs64.vp [2014.04.14 13:53:24 | 000,001,125 | ---- | C] () -- C:\Windows\SysNative\iglhxa64.vp [2014.04.14 13:53:23 | 000,373,760 | ---- | C] () -- C:\Windows\SysNative\igdmd64.dll [2014.04.14 13:53:23 | 000,299,520 | ---- | C] () -- C:\Windows\SysWow64\igdmd32.dll [2014.04.14 13:53:22 | 000,222,208 | ---- | C] () -- C:\Windows\SysNative\igdde64.dll [2014.04.14 13:53:22 | 000,182,272 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll [2014.04.14 13:53:22 | 000,160,256 | ---- | C] () -- C:\Windows\SysNative\igdail64.dll [2014.04.14 13:53:22 | 000,142,848 | ---- | C] () -- C:\Windows\SysWow64\igdail32.dll [2014.04.14 13:53:20 | 002,384,896 | ---- | C] () -- C:\Windows\SysNative\GfxRes.dll [2014.04.14 13:53:20 | 000,267,407 | ---- | C] () -- C:\Windows\SysNative\Gfxres.th-TH.resources [2014.04.14 13:53:20 | 000,253,466 | ---- | C] () -- C:\Windows\SysNative\Gfxres.el-GR.resources [2014.04.14 13:53:20 | 000,235,401 | ---- | C] () -- C:\Windows\SysNative\Gfxres.ru-RU.resources [2014.04.14 13:53:20 | 000,201,128 | ---- | C] () -- C:\Windows\SysNative\Gfxres.ar-SA.resources [2014.04.14 13:53:20 | 000,198,725 | ---- | C] () -- C:\Windows\SysNative\Gfxres.ja-JP.resources [2014.04.14 13:53:20 | 000,192,758 | ---- | C] () -- C:\Windows\SysNative\Gfxres.he-IL.resources [2014.04.14 13:53:20 | 000,180,936 | ---- | C] () -- C:\Windows\SysNative\Gfxres.ko-KR.resources [2014.04.14 13:53:20 | 000,180,850 | ---- | C] () -- C:\Windows\SysNative\Gfxres.it-IT.resources [2014.04.14 13:53:20 | 000,178,473 | ---- | C] () -- C:\Windows\SysNative\Gfxres.es-ES.resources [2014.04.14 13:53:20 | 000,178,290 | ---- | C] () -- C:\Windows\SysNative\Gfxres.fr-FR.resources [2014.04.14 13:53:20 | 000,178,123 | ---- | C] () -- C:\Windows\SysNative\Gfxres.de-DE.resources [2014.04.14 13:53:20 | 000,176,838 | ---- | C] () -- C:\Windows\SysNative\Gfxres.ro-RO.resources [2014.04.14 13:53:20 | 000,175,862 | ---- | C] () -- C:\Windows\SysNative\Gfxres.hu-HU.resources [2014.04.14 13:53:20 | 000,175,571 | ---- | C] () -- C:\Windows\SysNative\Gfxres.tr-TR.resources [2014.04.14 13:53:20 | 000,175,067 | ---- | C] () -- C:\Windows\SysNative\Gfxres.nl-NL.resources [2014.04.14 13:53:20 | 000,174,802 | ---- | C] () -- C:\Windows\SysNative\Gfxres.pl-PL.resources [2014.04.14 13:53:20 | 000,174,269 | ---- | C] () -- C:\Windows\SysNative\Gfxres.pt-BR.resources [2014.04.14 13:53:20 | 000,173,792 | ---- | C] () -- C:\Windows\SysNative\Gfxres.fi-FI.resources [2014.04.14 13:53:20 | 000,173,276 | ---- | C] () -- C:\Windows\SysNative\Gfxres.sk-SK.resources [2014.04.14 13:53:20 | 000,173,059 | ---- | C] () -- C:\Windows\SysNative\Gfxres.sv-SE.resources [2014.04.14 13:53:20 | 000,172,833 | ---- | C] () -- C:\Windows\SysNative\Gfxres.pt-PT.resources [2014.04.14 13:53:20 | 000,172,554 | ---- | C] () -- C:\Windows\SysNative\Gfxres.cs-CZ.resources [2014.04.14 13:53:20 | 000,171,691 | ---- | C] () -- C:\Windows\SysNative\Gfxres.hr-HR.resources [2014.04.14 13:53:20 | 000,168,215 | ---- | C] () -- C:\Windows\SysNative\Gfxres.sl-SI.resources [2014.04.14 13:53:20 | 000,166,833 | ---- | C] () -- C:\Windows\SysNative\Gfxres.nb-NO.resources [2014.04.14 13:53:20 | 000,166,220 | ---- | C] () -- C:\Windows\SysNative\Gfxres.da-DK.resources [2014.04.14 13:53:20 | 000,161,534 | ---- | C] () -- C:\Windows\SysNative\Gfxres.en-US.resources [2014.04.14 13:53:20 | 000,154,805 | ---- | C] () -- C:\Windows\SysNative\Gfxres.zh-TW.resources [2014.04.14 13:53:20 | 000,152,993 | ---- | C] () -- C:\Windows\SysNative\Gfxres.zh-CN.resources [2014.04.14 13:53:20 | 000,094,208 | ---- | C] () -- C:\Windows\SysNative\IccLibDll_x64.dll [2014.04.14 13:53:20 | 000,001,806 | ---- | C] () -- C:\Windows\SysNative\GfxUIEx.exe.config [2014.04.14 13:53:20 | 000,000,935 | ---- | C] () -- C:\Windows\SysNative\DPTopologyApp.exe.config [2014.04.14 13:53:20 | 000,000,264 | ---- | C] () -- C:\Windows\SysNative\GfxUIHotKeyMenu.exe.config [2014.04.14 13:53:19 | 000,000,935 | ---- | C] () -- C:\Windows\SysNative\CustomModeApp.exe.config [2014.04.14 13:52:59 | 000,000,134 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\alternate.net.url [2013.06.11 13:10:53 | 006,130,124 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2013.05.11 17:17:52 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll [2013.04.24 09:06:15 | 000,002,048 | ---- | C] () -- C:\Windows\hidcon.exe ========== ZeroAccess Check ========== [2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2013.07.26 04:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2013.07.26 03:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] < End of report > |
15.04.2014, 19:20 | #2 |
/// the machine /// TB-Ausbilder | Werde Popup Trojaner nicht los hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
15.04.2014, 19:25 | #3 |
| Werde Popup Trojaner nicht losFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-04-2014 Ran by Olli (administrator) on OQTOWER on 15-04-2014 20:23:51 Running from C:\Users\Olli\Downloads Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe () C:\Windows\SysWOW64\ASGT.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (DTS, Inc) C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE () C:\Program Files\003\xmkysecqun64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (l'obligeant) C:\Users\Olli\AppData\Local\Genesis\Genesis.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe (Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper.exe (Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper64.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Avira Operations GmbH & Co. KG) c:\program files (x86)\avira\antivir desktop\avscan.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-11-21] (Intel Corporation) HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [391152 2014-01-30] (Intel Corporation) HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe [771568 2014-01-30] (Intel Corporation) HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe [770544 2014-01-30] (Intel Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7202520 2013-08-19] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_DTS] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1179576 2014-02-05] (NVIDIA Corporation) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-12-21] (Intel Corporation) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [180304 2014-04-01] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-25] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5180432 2014-04-06] (AVG Technologies CZ, s.r.o.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-19\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1475584 2010-11-21] (Microsoft Corporation) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1475584 2010-11-21] (Microsoft Corporation) HKU\S-1-5-20\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1475584 2010-11-21] (Microsoft Corporation) HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1475584 2010-11-21] (Microsoft Corporation) HKU\S-1-5-21-1829189191-908704339-1287612711-1001\...\Run: [genesis] => c:\users\olli\appdata\local\genesis\genesis.exe [3072000 2014-04-15] (l'obligeant) HKU\S-1-5-21-1829189191-908704339-1287612711-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [37664 2014-03-05] (Overwolf LTD) HKU\S-1-5-21-1829189191-908704339-1287612711-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1821888 2014-02-25] (Valve Corporation) HKU\S-1-5-21-1829189191-908704339-1287612711-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [genesis] => c:\users\olli\appdata\local\genesis\genesis.exe [3072000 2014-04-15] (l'obligeant) HKU\S-1-5-21-1829189191-908704339-1287612711-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [37664 2014-03-05] (Overwolf LTD) HKU\S-1-5-21-1829189191-908704339-1287612711-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1821888 2014-02-25] (Valve Corporation) AppInit_DLLs: C:\PROGRA~2\SUPPOR~1\SUPPOR~2.DLL => C:\Program Files (x86)\Supporter\Supporter_x64.dll [4621312 2014-04-15] () AppInit_DLLs: , C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-09-12] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [141336 2013-09-12] (NVIDIA Corporation) Startup: C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\genesis.lnk ShortcutTarget: genesis.lnk -> C:\Users\Olli\AppData\Local\Genesis\Genesis.exe (l'obligeant) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login. HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xD9F2D5E3A858CF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Olli\AppData\Roaming\Mozilla\Firefox\Profiles\ffp2dscs.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_182.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_182.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3503.0728 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml Chrome: ======= CHR HomePage: CHR Extension: (Google Docs) - C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-15] CHR Extension: (Google Drive) - C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-15] CHR Extension: (YouTube) - C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-15] CHR Extension: (Adblock Plus) - C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-04-15] CHR Extension: (Google-Suche) - C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-15] CHR Extension: (I <3 House Music) - C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbihiclmkdmbnihofkkhlmdefkclbfkj [2014-04-15] CHR Extension: (AdBlock) - C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-04-15] CHR Extension: (Google Wallet) - C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-15] CHR Extension: (Google Mail) - C:\Users\Olli\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-15] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe [927232 2012-10-30] () R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1473280 2014-04-03] (AVG Technologies CZ, s.r.o.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3655184 2014-04-01] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [291912 2014-03-27] (AVG Technologies CZ, s.r.o.) R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [122448 2014-04-01] (Avira Operations GmbH & Co. KG) R2 DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [240584 2012-10-02] (DTS, Inc) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-11-21] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [14997280 2013-08-27] (NVIDIA Corporation) S3 OverwolfUpdaterService; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [99616 2014-03-05] (Overwolf LTD) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2012-05-08] () R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-03-27] (AVG Technologies CZ, s.r.o.) R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [236824 2014-04-01] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [192792 2014-03-27] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [236824 2014-03-27] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [324376 2014-03-27] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [130840 2014-03-31] (AVG Technologies CZ, s.r.o.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2014-02-25] (Avira Operations GmbH & Co. KG) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [32536 2014-03-27] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [274200 2014-03-31] (AVG Technologies CZ, s.r.o.) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2014-02-25] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-02-25] (Avira Operations GmbH & Co. KG) U0 haiamk; C:\Windows\System32\drivers\jnyfj.sys [79064 2014-04-15] (Malwarebytes Corporation) R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [28008 2013-11-21] (Intel Corporation) R3 MEIx64; C:\Windows\system32\drivers\TeeDriverx64.sys [99288 2013-08-08] (Intel Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-08-20] (NVIDIA Corporation) S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 SIVDriver; C:\Windows\system32\Drivers\SIVX64.sys [149240 2014-01-14] (Ray Hinchliffe) R4 IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-04-15 20:23 - 2014-04-15 20:24 - 00018678 _____ () C:\Users\Olli\Downloads\FRST.txt 2014-04-15 20:23 - 2014-04-15 20:23 - 02054144 _____ (Farbar) C:\Users\Olli\Downloads\FRST64.exe 2014-04-15 20:23 - 2014-04-15 20:23 - 00000000 ____D () C:\FRST 2014-04-15 20:22 - 2014-04-15 20:22 - 00079064 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\jnyfj.sys 2014-04-15 20:16 - 2014-04-15 20:16 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-04-15 20:15 - 2014-04-15 20:15 - 00001112 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-04-15 20:15 - 2014-04-15 20:15 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-04-15 20:15 - 2014-04-15 20:15 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-04-15 20:15 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-04-15 20:15 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-04-15 20:15 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-04-15 20:14 - 2014-04-15 20:14 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Olli\Downloads\mbam-setup-2.0.1.1004.exe 2014-04-15 20:09 - 2014-04-15 20:09 - 00184280 _____ () C:\Users\Olli\Downloads\OTL.Txt 2014-04-15 20:09 - 2014-04-15 20:09 - 00068304 _____ () C:\Users\Olli\Downloads\Extras.Txt 2014-04-15 20:08 - 2014-04-15 20:08 - 01426178 _____ () C:\Users\Olli\Downloads\adwcleaner.exe 2014-04-15 20:08 - 2014-04-15 20:08 - 00000000 ____D () C:\AdwCleaner 2014-04-15 20:04 - 2014-04-15 20:04 - 00602112 _____ (OldTimer Tools) C:\Users\Olli\Downloads\OTL.exe 2014-04-15 19:48 - 2014-04-15 19:48 - 00002257 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-04-15 19:47 - 2014-04-15 19:52 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-04-15 19:47 - 2014-04-15 19:52 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-04-15 19:47 - 2014-04-15 19:47 - 00884728 _____ (Google Inc.) C:\Users\Olli\Downloads\ChromeSetup.exe 2014-04-15 19:47 - 2014-04-15 19:47 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-04-15 19:47 - 2014-04-15 19:47 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-04-15 19:44 - 2014-04-15 19:44 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Mozilla 2014-04-15 19:44 - 2014-04-15 19:44 - 00000000 ____D () C:\Users\Olli\AppData\Local\Mozilla 2014-04-15 19:44 - 2014-04-15 19:44 - 00000000 ____D () C:\Users\Olli\AppData\Local\Macromedia 2014-04-15 19:43 - 2014-04-15 19:43 - 00283192 _____ (Mozilla) C:\Users\Olli\Downloads\Firefox Setup Stub 28.0.exe 2014-04-15 19:43 - 2014-04-15 19:43 - 00001157 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-04-15 19:43 - 2014-04-15 19:43 - 00000000 ____D () C:\ProgramData\Mozilla 2014-04-15 19:43 - 2014-04-15 19:43 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-04-15 19:43 - 2014-04-15 19:43 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-04-15 18:05 - 2014-04-15 16:14 - 00000426 _____ () C:\AVScanner.ini 2014-04-15 18:02 - 2014-04-15 18:02 - 70658472 _____ (AVG) C:\Users\Olli\Downloads\avg_tuh_stf_all_2014_380_24c4.exe 2014-04-15 16:46 - 2014-04-15 16:46 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Macromedia 2014-04-15 16:40 - 2014-04-15 16:40 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\AVG2014 2014-04-15 16:38 - 2014-04-15 16:40 - 00000000 ____D () C:\ProgramData\AVG2014 2014-04-15 16:38 - 2014-04-15 16:38 - 00000991 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-04-15 16:38 - 2014-04-15 16:38 - 00000000 ___HD () C:\$AVG 2014-04-15 16:38 - 2014-04-15 16:38 - 00000000 ____D () C:\Users\Olli\Documents\Stronghold Crusader 2014-04-15 16:38 - 2014-04-15 16:38 - 00000000 ____D () C:\Users\Olli\Documents\BFBC2 2014-04-15 16:38 - 2014-04-15 16:38 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\TuneUp Software 2014-04-15 16:38 - 2014-04-15 16:38 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-04-15 16:32 - 2014-04-15 16:40 - 00000000 ____D () C:\Users\Olli\AppData\Local\DayZ 2014-04-15 16:32 - 2014-04-15 16:38 - 00000000 ____D () C:\Users\Olli\Documents\DayZ 2014-04-15 16:32 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-04-15 16:32 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-04-15 16:32 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-04-15 16:32 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-04-15 16:32 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-04-15 16:32 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-04-15 16:22 - 2014-04-15 16:23 - 143792688 _____ (AVG Technologies) C:\Users\Olli\Downloads\avg_isct_x86_all_2014_4259a6848_huawei (1).exe 2014-04-15 16:21 - 2014-04-15 19:30 - 00000000 ____D () C:\ProgramData\MFAData 2014-04-15 16:21 - 2014-04-15 17:41 - 00000000 ____D () C:\Users\Olli\AppData\Local\Avg2014 2014-04-15 16:21 - 2014-04-15 16:21 - 00000000 ____D () C:\Users\Olli\AppData\Local\MFAData 2014-04-15 16:20 - 2014-04-15 16:21 - 143792688 _____ (AVG Technologies) C:\Users\Olli\Downloads\avg_isct_x86_all_2014_4259a6848_huawei.exe 2014-04-15 16:08 - 2014-04-15 20:18 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-04-15 16:08 - 2014-04-15 16:08 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Olli\Downloads\spybot-2.2.exe 2014-04-15 16:08 - 2014-04-15 16:08 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-04-15 16:08 - 2014-04-15 16:08 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-04-15 16:08 - 2014-04-15 16:08 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-04-15 16:08 - 2014-04-15 16:08 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-04-15 16:08 - 2014-04-15 16:08 - 00000000 ____D () C:\Windows\system32\Macromed 2014-04-15 16:08 - 2014-04-15 16:08 - 00000000 ____D () C:\Users\Olli\AppData\Local\Adobe 2014-04-15 16:08 - 2014-04-15 16:08 - 00000000 ____D () C:\ProgramData\McAfee 2014-04-15 15:56 - 2014-04-15 16:13 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-04-15 15:56 - 2014-04-15 15:56 - 00001389 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-04-15 15:56 - 2014-04-15 15:56 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-04-15 15:56 - 2014-04-15 15:56 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-04-15 15:56 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2014-04-15 15:55 - 2014-04-15 15:55 - 00613200 _____ (Chip Digital GmbH) C:\Users\Olli\Downloads\SpyBot Search Destroy - CHIP-Downloader.exe 2014-04-15 15:44 - 2014-04-15 15:49 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Apple Computer 2014-04-15 15:44 - 2014-04-15 15:44 - 00001793 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\Users\Olli\AppData\Local\Apple Computer 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\Program Files\iTunes 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\Program Files\iPod 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-04-15 15:44 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Users\Olli\Desktop\Bilder 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Users\Olli\AppData\Local\Apple 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\ProgramData\Apple 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Program Files\Bonjour 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Program Files (x86)\Bonjour 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-04-15 15:40 - 2014-04-15 18:47 - 00173738 _____ () C:\Windows\WindowsUpdate.log 2014-04-15 15:31 - 2014-04-15 15:37 - 148885840 _____ (Apple Inc.) C:\Users\Olli\Downloads\iTunes64Setup.exe 2014-04-15 15:28 - 2014-04-15 15:28 - 00003978 _____ () C:\Users\Olli\Desktop\autoexec.cfg 2014-04-15 15:26 - 2014-04-15 15:28 - 00003978 _____ () C:\Users\Olli\Downloads\autoexec.cfg 2014-04-15 15:23 - 2014-04-15 15:23 - 00001060 _____ () C:\Users\Public\Desktop\GPUTweakStreaming.lnk 2014-04-15 15:23 - 2014-04-15 15:23 - 00001053 _____ () C:\Users\Public\Desktop\ASUS GPU Tweak.lnk 2014-04-15 15:23 - 2014-04-15 15:23 - 00000032 _____ () C:\setup.log 2014-04-15 15:23 - 2014-04-15 15:23 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS 2014-04-15 15:23 - 2014-04-15 15:23 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-04-15 15:23 - 2014-04-15 15:23 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS 2014-04-15 15:22 - 2014-04-15 15:22 - 00000000 ____D () C:\Windows\SysWOW64\NV 2014-04-15 15:22 - 2014-04-15 15:22 - 00000000 ____D () C:\Windows\system32\NV 2014-04-15 15:22 - 2013-08-20 15:33 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-04-15 15:22 - 2013-08-20 15:32 - 00028448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-04-15 15:22 - 2013-06-16 14:38 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-04-15 15:22 - 2013-06-16 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-04-15 15:21 - 2013-09-12 10:58 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432723.dll 2014-04-15 15:21 - 2013-09-12 10:58 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432723.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 29337376 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 22102304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 15703688 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 13628208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 11274528 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-04-15 15:20 - 2013-09-12 10:58 - 09281032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 07720576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 07648000 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 06329552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 02970400 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 02789152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 02367264 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 02007328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 01222824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 00681760 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 00603424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 00586016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 00515360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 00458528 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 00388384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-04-15 15:20 - 2013-09-12 10:58 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-04-15 15:19 - 2013-09-12 10:58 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-04-15 15:19 - 2013-09-12 10:58 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-04-15 15:01 - 2014-04-15 15:01 - 00001981 _____ () C:\Users\Public\Desktop\Overwolf.lnk 2014-04-15 15:01 - 2014-04-15 15:01 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf 2014-04-15 15:01 - 2014-04-15 15:01 - 00000000 ____D () C:\Program Files (x86)\Overwolf 2014-04-15 15:00 - 2014-04-15 18:45 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\TS3Client 2014-04-15 15:00 - 2014-04-15 18:44 - 00000000 ____D () C:\Users\Olli\AppData\Local\Overwolf 2014-04-15 15:00 - 2014-04-15 15:00 - 00000977 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2014-04-15 15:00 - 2014-04-15 15:00 - 00000000 ____D () C:\Users\Olli\AppData\Local\NVIDIA Corporation 2014-04-15 15:00 - 2014-04-15 15:00 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-04-15 14:59 - 2014-04-15 15:00 - 00000000 ____D () C:\Users\Olli\AppData\Local\NVIDIA 2014-04-15 14:59 - 2014-04-15 14:59 - 29498592 _____ (TeamSpeak Systems GmbH) C:\Users\Olli\Downloads\TeamSpeak3-Client-win64-3.0.14.exe 2014-04-15 14:59 - 2014-04-15 14:59 - 00001357 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-04-15 14:59 - 2014-04-15 14:59 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-04-15 14:59 - 2014-02-05 11:31 - 01048152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-04-15 14:59 - 2014-02-05 11:30 - 01179576 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-04-15 14:58 - 2014-04-15 18:44 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-04-15 14:58 - 2014-04-15 18:43 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-04-15 14:58 - 2014-04-15 15:22 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-04-15 14:58 - 2014-04-15 15:00 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-04-15 14:58 - 2014-04-15 14:58 - 01141680 _____ () C:\Users\Olli\Downloads\SteamSetup.exe 2014-04-15 14:58 - 2014-04-15 14:58 - 00000973 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-04-15 14:58 - 2014-03-04 16:35 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433523.dll 2014-04-15 14:58 - 2014-03-04 16:35 - 01516488 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433523.dll 2014-04-15 14:58 - 2014-03-04 16:35 - 00377688 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-04-15 14:58 - 2014-03-04 16:35 - 00333600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-04-15 14:58 - 2013-09-12 10:58 - 15901448 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-04-15 14:58 - 2013-09-12 10:58 - 12947360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-04-15 14:58 - 2013-09-12 10:58 - 02986672 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-04-15 14:58 - 2013-09-12 10:58 - 02630304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-04-15 14:58 - 2013-09-12 10:58 - 01412832 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-04-15 14:58 - 2013-09-12 10:58 - 00022814 _____ () C:\Windows\system32\nvinfo.pb 2014-04-15 14:58 - 2013-09-12 09:25 - 06599968 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-04-15 14:58 - 2013-09-12 09:25 - 03452192 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-04-15 14:58 - 2013-09-12 09:25 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-04-15 14:58 - 2013-09-12 09:25 - 00920864 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-04-15 14:58 - 2013-09-12 09:25 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-04-15 14:58 - 2013-09-12 09:25 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-04-15 14:58 - 2013-09-12 00:06 - 03361114 _____ () C:\Windows\system32\nvcoproc.bin 2014-04-15 14:58 - 2013-08-20 15:32 - 00029984 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-04-15 14:58 - 2013-01-29 10:35 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-04-15 14:57 - 2014-04-15 14:59 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-04-15 14:57 - 2014-04-15 14:57 - 00000000 ____D () C:\NVIDIA 2014-04-15 14:55 - 2014-04-15 19:47 - 00000000 ____D () C:\Program Files (x86)\Google 2014-04-15 14:54 - 2014-04-15 14:54 - 00000000 ____D () C:\Users\Olli\AppData\Local\Deployment 2014-04-15 14:54 - 2014-04-15 14:54 - 00000000 ____D () C:\Users\Olli\AppData\Local\Apps\2.0 2014-04-15 14:53 - 2014-04-15 14:57 - 276762432 _____ (NVIDIA Corporation) C:\Users\Olli\Downloads\335.23-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-04-15 14:52 - 2014-04-15 14:52 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Avira 2014-04-15 14:51 - 2014-04-15 14:51 - 00000000 ____D () C:\Users\Olli\AppData\Local\CrashDumps 2014-04-15 14:51 - 2014-03-12 16:00 - 00338120 _____ (SecureAssist) C:\Windows\system32\SecureAssist64.dll 2014-04-15 14:51 - 2014-02-25 11:41 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-04-15 14:51 - 2014-02-25 11:41 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-04-15 14:51 - 2014-02-25 11:41 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-04-15 14:50 - 2014-04-15 14:51 - 00000000 ____D () C:\ProgramData\Avira 2014-04-15 14:50 - 2014-04-15 14:51 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-04-15 14:50 - 2014-04-15 14:50 - 00001147 _____ () C:\Users\Public\Desktop\Avira.lnk 2014-04-15 14:50 - 2014-04-15 14:50 - 00000000 ____D () C:\ProgramData\Package Cache 2014-04-15 14:49 - 2014-04-15 20:05 - 00000000 ____D () C:\Users\Olli\AppData\Local\Genesis 2014-04-15 14:49 - 2014-04-15 17:48 - 00000000 ____D () C:\ProgramData\SaveClicker 2014-04-15 14:49 - 2014-04-15 16:11 - 00000000 ____D () C:\ProgramData\d7969783fbe7f5ae 2014-04-15 14:49 - 2014-04-15 16:11 - 00000000 ____D () C:\Program Files (x86)\SaveClicker 2014-04-15 14:49 - 2014-04-15 14:54 - 00000000 ____D () C:\Users\Olli\AppData\Local\Google 2014-04-15 14:49 - 2014-04-15 14:54 - 00000000 ____D () C:\Program Files (x86)\Supporter 2014-04-15 14:49 - 2014-04-15 14:51 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\systweak 2014-04-15 14:49 - 2014-04-15 14:49 - 00003314 _____ () C:\Windows\System32\Tasks\Advanced System Protector 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Advanced System Protector 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Olli\AppData\Local\Torch 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Olli\AppData\Local\Packages 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Olli\AppData\Local\Comodo 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Torch 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\HomeGroupUser$ 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Gast\AppData\Local\Torch 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Gast\AppData\Local\Google 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Gast\AppData\Local\Comodo 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Gast 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Administrator 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Program Files\003 2014-04-15 14:48 - 2014-04-15 14:48 - 00058016 _____ () C:\Users\Olli\AppData\Local\GDIPFONTCACHEV1.DAT 2014-04-15 14:48 - 2014-04-15 14:48 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Intel Corporation 2014-04-15 14:47 - 2014-04-15 16:40 - 00000000 ___RD () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-04-15 14:47 - 2014-04-15 14:47 - 00001431 _____ () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-04-15 14:47 - 2014-04-15 14:47 - 00000000 ___RD () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-04-15 14:47 - 2014-04-15 14:47 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Adobe 2014-04-15 14:46 - 2014-04-15 14:46 - 00000000 ____D () C:\Users\Olli\AppData\Local\VirtualStore 2014-04-15 14:45 - 2014-04-15 14:47 - 00000000 ____D () C:\Users\Olli 2014-04-15 14:45 - 2014-04-15 14:45 - 00000020 ___SH () C:\Users\Olli\ntuser.ini 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Vorlagen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Startmenü 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Netzwerkumgebung 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Lokale Einstellungen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Eigene Dateien 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Druckumgebung 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Documents\Eigene Musik 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Documents\Eigene Bilder 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\AppData\Local\Verlauf 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\AppData\Local\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Programme 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 __SHD () C:\Recovery 2014-04-15 14:45 - 2013-04-23 11:07 - 00002130 _____ () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk 2014-04-15 14:45 - 2013-04-23 10:56 - 00001990 _____ () C:\Users\Olli\Desktop\Microsoft Office.lnk 2014-04-15 14:45 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-04-15 14:45 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-04-14 14:15 - 2014-01-14 08:48 - 00149240 _____ (Ray Hinchliffe) C:\Windows\system32\Drivers\SIVX64.sys 2014-04-14 14:00 - 2014-04-14 14:00 - 00018680 _____ () C:\Windows\system32\results.xml 2014-04-14 13:59 - 2014-04-15 15:23 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-04-14 13:59 - 2014-04-14 13:59 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf 2014-04-14 13:59 - 2014-04-14 13:59 - 00000000 ____D () C:\Program Files\ASUS 2014-04-14 13:59 - 2012-05-08 09:04 - 00028672 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2014-04-14 13:59 - 2012-05-08 09:04 - 00013440 _____ () C:\Windows\SysWOW64\Drivers\AsIO.sys 2014-04-14 13:58 - 2014-04-14 13:58 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-04-14 13:58 - 2014-04-14 13:58 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-04-14 13:58 - 2014-04-14 13:58 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-04-14 13:58 - 2014-04-14 13:58 - 00000000 ____D () C:\Program Files\Realtek 2014-04-14 13:58 - 2013-12-21 02:38 - 00041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll 2014-04-14 13:57 - 2014-04-15 15:23 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-04-14 13:57 - 2014-04-14 13:57 - 00000716 _____ () C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk 2014-04-14 13:57 - 2014-04-14 13:57 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-04-14 13:57 - 2014-04-14 13:57 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-04-14 13:57 - 2013-08-21 06:50 - 03591000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-04-14 13:57 - 2013-08-20 14:17 - 02809048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-04-14 13:57 - 2013-08-20 14:17 - 02585304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-04-14 13:57 - 2013-08-20 12:48 - 00633381 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-04-14 13:57 - 2013-08-20 12:31 - 00148184 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-04-14 13:57 - 2013-08-20 07:51 - 31488000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-04-14 13:57 - 2013-08-20 04:02 - 04848920 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMlfx.dll 2014-04-14 13:57 - 2013-08-16 09:46 - 00818008 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMSettingsIPC.dll 2014-04-14 13:57 - 2013-08-14 10:36 - 01325312 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-04-14 13:57 - 2013-08-14 10:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-04-14 13:57 - 2013-08-14 10:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-04-14 13:57 - 2013-08-14 10:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-04-14 13:57 - 2013-08-14 10:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-04-14 13:57 - 2013-08-12 23:21 - 01019136 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-04-14 13:57 - 2013-08-12 23:21 - 00899328 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-04-14 13:57 - 2013-08-12 23:21 - 00720128 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-04-14 13:57 - 2013-08-12 23:21 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-04-14 13:57 - 2013-08-08 22:27 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2014-04-14 13:57 - 2013-08-08 13:57 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-04-14 13:57 - 2013-08-07 11:41 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-04-14 13:57 - 2013-08-07 11:34 - 00765184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-04-14 13:57 - 2013-08-06 03:47 - 00947248 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-04-14 13:57 - 2013-08-05 22:56 - 06219096 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-04-14 13:57 - 2013-08-05 22:56 - 01908568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-04-14 13:57 - 2013-08-05 22:56 - 00312152 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-04-14 13:57 - 2013-08-05 22:56 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-04-14 13:57 - 2013-08-05 12:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-04-14 13:57 - 2013-08-02 14:16 - 01005784 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-04-14 13:57 - 2013-08-01 04:59 - 05694760 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-04-14 13:57 - 2013-07-28 04:48 - 27518208 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-04-14 13:57 - 2013-07-26 08:05 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-04-14 13:57 - 2013-07-24 04:07 - 02032896 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-04-14 13:57 - 2013-07-23 09:40 - 03610880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-04-14 13:57 - 2013-07-23 09:40 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-04-14 13:57 - 2013-07-23 09:39 - 14048512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-04-14 13:57 - 2013-07-23 09:39 - 01916672 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-04-14 13:57 - 2013-07-23 09:39 - 00922880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-04-14 13:57 - 2013-07-11 08:15 - 00557880 _____ () C:\Windows\system32\audioLibVc.dll 2014-04-14 13:57 - 2013-06-25 06:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-04-14 13:57 - 2013-06-25 06:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-04-14 13:57 - 2013-06-25 06:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-04-14 13:57 - 2013-06-21 05:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-04-14 13:57 - 2013-06-05 15:42 - 00208072 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-04-14 13:57 - 2013-04-24 11:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-04-14 13:57 - 2013-04-03 08:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-04-14 13:57 - 2013-02-20 12:55 - 01284680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-04-14 13:57 - 2012-10-02 08:41 - 00501192 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-04-14 13:57 - 2012-10-02 08:41 - 00487368 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-04-14 13:57 - 2012-10-02 08:41 - 00415688 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-04-14 13:57 - 2012-08-31 13:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-04-14 13:57 - 2012-08-31 13:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-04-14 13:57 - 2012-08-31 13:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-04-14 13:57 - 2012-08-31 13:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-04-14 13:57 - 2012-08-31 13:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-04-14 13:57 - 2012-03-08 05:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-04-14 13:57 - 2012-01-30 05:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-04-14 13:57 - 2012-01-10 04:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-04-14 13:57 - 2011-12-20 09:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-04-14 13:57 - 2011-11-22 10:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-04-14 13:57 - 2011-09-02 08:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-04-14 13:57 - 2011-09-02 08:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-04-14 13:57 - 2011-09-02 08:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-04-14 13:57 - 2011-08-23 11:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-04-14 13:57 - 2011-08-11 10:55 - 00001332 _____ () C:\Windows\system32\Drivers\DTSU2P.DAT 2014-04-14 13:57 - 2011-05-31 03:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-04-14 13:57 - 2011-05-31 03:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-04-14 13:57 - 2011-05-31 03:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-04-14 13:57 - 2011-05-31 03:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-04-14 13:57 - 2011-05-31 03:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-04-14 13:57 - 2011-05-31 03:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-04-14 13:57 - 2011-05-31 03:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-04-14 13:57 - 2011-05-31 03:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-04-14 13:57 - 2011-05-31 03:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-04-14 13:57 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-04-14 13:57 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-04-14 13:57 - 2011-05-31 03:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-04-14 13:57 - 2011-03-17 06:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-04-14 13:57 - 2011-03-07 11:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-04-14 13:57 - 2010-11-08 01:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-04-14 13:57 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-04-14 13:57 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-04-14 13:57 - 2010-11-08 01:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-04-14 13:57 - 2010-11-08 01:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-04-14 13:57 - 2010-11-08 01:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-04-14 13:57 - 2010-11-03 12:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-04-14 13:57 - 2010-09-27 03:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-04-14 13:57 - 2010-07-22 10:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-04-14 13:57 - 2009-11-24 03:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-04-14 13:57 - 2009-11-24 03:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-04-14 13:57 - 2009-11-24 03:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-04-14 13:57 - 2009-11-24 03:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-04-14 13:56 - 2014-01-23 00:35 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2014-04-14 13:56 - 2014-01-23 00:35 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2014-04-14 13:54 - 2014-04-14 13:58 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-04-14 13:54 - 2014-04-14 13:57 - 00000000 ____D () C:\ProgramData\Intel 2014-04-14 13:54 - 2014-04-14 13:57 - 00000000 ____D () C:\Program Files\Intel 2014-04-14 13:54 - 2014-04-14 13:56 - 00000000 ____D () C:\Intel 2014-04-14 13:54 - 2013-08-05 11:50 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll 2014-04-14 13:53 - 2014-01-30 05:04 - 07597040 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe 2014-04-14 13:53 - 2014-01-30 05:04 - 00906224 _____ (Intel Corporation) C:\Windows\system32\igfxstarter.exe 2014-04-14 13:53 - 2014-01-30 05:04 - 00845296 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2014-04-14 13:53 - 2014-01-30 05:04 - 00771568 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2014-04-14 13:53 - 2014-01-30 05:04 - 00770544 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2014-04-14 13:53 - 2014-01-30 05:04 - 00755184 _____ (Intel Corporation) C:\Windows\system32\GfxUIHotKeyMenu.exe 2014-04-14 13:53 - 2014-01-30 05:04 - 00530928 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe 2014-04-14 13:53 - 2014-01-30 05:04 - 00397808 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2014-04-14 13:53 - 2014-01-30 05:04 - 00397296 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe 2014-04-14 13:53 - 2014-01-30 05:04 - 00391152 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2014-04-14 13:53 - 2014-01-30 05:04 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe 2014-04-14 13:53 - 2014-01-30 05:04 - 00153072 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2014-04-14 13:53 - 2014-01-23 00:57 - 00450520 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys 2014-04-14 13:53 - 2014-01-23 00:57 - 00182784 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3412.dll 2014-04-14 13:53 - 2014-01-23 00:54 - 00002944 _____ () C:\Windows\system32\iglhxs64.vp 2014-04-14 13:53 - 2014-01-23 00:51 - 21088256 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 19380224 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 09081856 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 07947776 _____ (Intel Corporation) C:\Windows\system32\ig75icd64.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 04221440 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2014-04-14 13:53 - 2014-01-23 00:51 - 02384896 _____ () C:\Windows\system32\GfxRes.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00733184 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00624640 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00548864 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00527872 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00522240 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00521728 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00517632 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00516096 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00514048 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00513536 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00373760 _____ () C:\Windows\system32\igdmd64.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2014-04-14 13:53 - 2014-01-23 00:51 - 00346624 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2014-04-14 13:53 - 2014-01-23 00:51 - 00267407 _____ () C:\Windows\system32\Gfxres.th-TH.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00253466 _____ () C:\Windows\system32\Gfxres.el-GR.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00243712 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00235401 _____ () C:\Windows\system32\Gfxres.ru-RU.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00224256 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00222208 _____ () C:\Windows\system32\igdde64.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00201128 _____ () C:\Windows\system32\Gfxres.ar-SA.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00198725 _____ () C:\Windows\system32\Gfxres.ja-JP.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00194560 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00192758 _____ () C:\Windows\system32\Gfxres.he-IL.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00180936 _____ () C:\Windows\system32\Gfxres.ko-KR.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00180850 _____ () C:\Windows\system32\Gfxres.it-IT.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00178473 _____ () C:\Windows\system32\Gfxres.es-ES.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00178290 _____ () C:\Windows\system32\Gfxres.fr-FR.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00178123 _____ () C:\Windows\system32\Gfxres.de-DE.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00176838 _____ () C:\Windows\system32\Gfxres.ro-RO.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00175862 _____ () C:\Windows\system32\Gfxres.hu-HU.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00175571 _____ () C:\Windows\system32\Gfxres.tr-TR.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00175067 _____ () C:\Windows\system32\Gfxres.nl-NL.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00174802 _____ () C:\Windows\system32\Gfxres.pl-PL.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00174269 _____ () C:\Windows\system32\Gfxres.pt-BR.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00173792 _____ () C:\Windows\system32\Gfxres.fi-FI.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00173276 _____ () C:\Windows\system32\Gfxres.sk-SK.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00173059 _____ () C:\Windows\system32\Gfxres.sv-SE.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00172833 _____ () C:\Windows\system32\Gfxres.pt-PT.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00172554 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00171691 _____ () C:\Windows\system32\Gfxres.hr-HR.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00168215 _____ () C:\Windows\system32\Gfxres.sl-SI.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00166833 _____ () C:\Windows\system32\Gfxres.nb-NO.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00166220 _____ () C:\Windows\system32\Gfxres.da-DK.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00161534 _____ () C:\Windows\system32\Gfxres.en-US.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00160256 _____ () C:\Windows\system32\igdail64.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00154805 _____ () C:\Windows\system32\Gfxres.zh-TW.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00152993 _____ () C:\Windows\system32\Gfxres.zh-CN.resources 2014-04-14 13:53 - 2014-01-23 00:51 - 00066560 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00029696 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2014-04-14 13:53 - 2014-01-23 00:51 - 00012288 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 25971712 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 20433408 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 18629632 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 06289408 _____ (Intel Corporation) C:\Windows\SysWOW64\ig75icd32.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 03224064 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 00493056 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 00329216 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 00320512 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 00299520 _____ () C:\Windows\SysWOW64\igdmd32.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 00182272 _____ () C:\Windows\SysWOW64\igdde32.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 00142848 _____ () C:\Windows\SysWOW64\igdail32.dll 2014-04-14 13:53 - 2014-01-23 00:48 - 00025600 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2014-04-14 13:53 - 2014-01-23 00:44 - 20954112 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll 2014-04-14 13:53 - 2014-01-23 00:44 - 02896384 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll 2014-04-14 13:53 - 2014-01-23 00:44 - 00290816 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll 2014-04-14 13:53 - 2014-01-23 00:44 - 00265216 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 04474368 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 02813952 _____ () C:\Windows\system32\iglhxa64.cpa 2014-04-14 13:53 - 2014-01-23 00:35 - 02065920 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 01815040 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 01127424 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 01123328 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 00214528 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 00179712 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 00163328 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 00155136 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 00137728 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 00133120 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll 2014-04-14 13:53 - 2014-01-23 00:35 - 00044025 _____ () C:\Windows\system32\iglhxo64.vp 2014-04-14 13:53 - 2014-01-23 00:35 - 00043816 _____ () C:\Windows\system32\iglhxc64_dev.vp 2014-04-14 13:53 - 2014-01-23 00:35 - 00043494 _____ () C:\Windows\system32\iglhxc64.vp 2014-04-14 13:53 - 2014-01-23 00:35 - 00043298 _____ () C:\Windows\system32\iglhxg64_dev.vp 2014-04-14 13:53 - 2014-01-23 00:35 - 00043256 _____ () C:\Windows\system32\iglhxg64.vp 2014-04-14 13:53 - 2014-01-23 00:35 - 00042079 _____ () C:\Windows\system32\iglhxo64_dev.vp 2014-04-14 13:53 - 2014-01-23 00:35 - 00001125 _____ () C:\Windows\system32\iglhxa64.vp 2014-04-14 13:53 - 2014-01-23 00:34 - 03558912 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll 2014-04-14 13:53 - 2013-12-21 02:38 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2014-04-14 13:53 - 2013-12-21 02:38 - 00790512 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3xhc.sys 2014-04-14 13:53 - 2013-12-21 02:38 - 00369648 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hub.sys 2014-04-14 13:53 - 2013-12-21 02:38 - 00020464 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hcs.sys 2014-04-14 13:53 - 2013-08-08 22:27 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-04-14 13:53 - 2013-08-08 22:27 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-04-14 13:53 - 2013-08-08 22:27 - 00064472 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2014-04-01 21:03 - 2014-04-01 21:03 - 00236824 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2014-03-31 16:20 - 2014-03-31 16:20 - 00274200 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys 2014-03-31 16:06 - 2014-03-31 16:06 - 00130840 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2014-03-27 22:14 - 2014-03-27 22:14 - 00192792 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys 2014-03-27 22:14 - 2014-03-27 22:14 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys 2014-03-27 22:07 - 2014-03-27 22:07 - 00236824 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2014-03-27 22:05 - 2014-03-27 22:05 - 00324376 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys 2014-03-27 22:03 - 2014-03-27 22:03 - 00032536 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2014-03-21 11:46 - 2014-03-21 11:46 - 01081616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx 2014-03-21 11:46 - 2014-03-21 11:46 - 00152848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx ==================== One Month Modified Files and Folders ======= 2014-04-15 20:24 - 2014-04-15 20:23 - 00018678 _____ () C:\Users\Olli\Downloads\FRST.txt 2014-04-15 20:23 - 2014-04-15 20:23 - 02054144 _____ (Farbar) C:\Users\Olli\Downloads\FRST64.exe 2014-04-15 20:23 - 2014-04-15 20:23 - 00000000 ____D () C:\FRST 2014-04-15 20:22 - 2014-04-15 20:22 - 00079064 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\jnyfj.sys 2014-04-15 20:18 - 2014-04-15 16:08 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-04-15 20:16 - 2014-04-15 20:16 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-04-15 20:16 - 2009-07-14 06:45 - 00024992 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-04-15 20:16 - 2009-07-14 06:45 - 00024992 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-04-15 20:15 - 2014-04-15 20:15 - 00001112 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-04-15 20:15 - 2014-04-15 20:15 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-04-15 20:15 - 2014-04-15 20:15 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-04-15 20:14 - 2014-04-15 20:14 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Olli\Downloads\mbam-setup-2.0.1.1004.exe 2014-04-15 20:09 - 2014-04-15 20:09 - 00184280 _____ () C:\Users\Olli\Downloads\OTL.Txt 2014-04-15 20:09 - 2014-04-15 20:09 - 00068304 _____ () C:\Users\Olli\Downloads\Extras.Txt 2014-04-15 20:08 - 2014-04-15 20:08 - 01426178 _____ () C:\Users\Olli\Downloads\adwcleaner.exe 2014-04-15 20:08 - 2014-04-15 20:08 - 00000000 ____D () C:\AdwCleaner 2014-04-15 20:05 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Olli\AppData\Local\Genesis 2014-04-15 20:04 - 2014-04-15 20:04 - 00602112 _____ (OldTimer Tools) C:\Users\Olli\Downloads\OTL.exe 2014-04-15 19:52 - 2014-04-15 19:47 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-04-15 19:52 - 2014-04-15 19:47 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-04-15 19:48 - 2014-04-15 19:48 - 00002257 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-04-15 19:47 - 2014-04-15 19:47 - 00884728 _____ (Google Inc.) C:\Users\Olli\Downloads\ChromeSetup.exe 2014-04-15 19:47 - 2014-04-15 19:47 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-04-15 19:47 - 2014-04-15 19:47 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-04-15 19:47 - 2014-04-15 14:55 - 00000000 ____D () C:\Program Files (x86)\Google 2014-04-15 19:44 - 2014-04-15 19:44 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Mozilla 2014-04-15 19:44 - 2014-04-15 19:44 - 00000000 ____D () C:\Users\Olli\AppData\Local\Mozilla 2014-04-15 19:44 - 2014-04-15 19:44 - 00000000 ____D () C:\Users\Olli\AppData\Local\Macromedia 2014-04-15 19:43 - 2014-04-15 19:43 - 00283192 _____ (Mozilla) C:\Users\Olli\Downloads\Firefox Setup Stub 28.0.exe 2014-04-15 19:43 - 2014-04-15 19:43 - 00001157 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-04-15 19:43 - 2014-04-15 19:43 - 00000000 ____D () C:\ProgramData\Mozilla 2014-04-15 19:43 - 2014-04-15 19:43 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-04-15 19:43 - 2014-04-15 19:43 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-04-15 19:35 - 2011-04-12 09:43 - 00000000 ____D () C:\Windows\system32\WCN 2014-04-15 19:35 - 2011-04-12 09:43 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2014-04-15 19:35 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-04-15 19:30 - 2014-04-15 16:21 - 00000000 ____D () C:\ProgramData\MFAData 2014-04-15 18:49 - 2013-04-22 15:04 - 00733330 _____ () C:\Windows\system32\perfh015.dat 2014-04-15 18:49 - 2013-04-22 15:04 - 00156406 _____ () C:\Windows\system32\perfc015.dat 2014-04-15 18:49 - 2013-04-22 14:54 - 00736470 _____ () C:\Windows\system32\perfh013.dat 2014-04-15 18:49 - 2013-04-22 14:54 - 00153636 _____ () C:\Windows\system32\perfc013.dat 2014-04-15 18:49 - 2013-04-22 14:38 - 00733018 _____ () C:\Windows\system32\perfh010.dat 2014-04-15 18:49 - 2013-04-22 14:38 - 00147380 _____ () C:\Windows\system32\perfc010.dat 2014-04-15 18:49 - 2013-04-22 14:24 - 00738688 _____ () C:\Windows\system32\perfh00C.dat 2014-04-15 18:49 - 2013-04-22 14:24 - 00150114 _____ () C:\Windows\system32\perfc00C.dat 2014-04-15 18:49 - 2013-04-22 14:08 - 00738428 _____ () C:\Windows\system32\perfh00A.dat 2014-04-15 18:49 - 2013-04-22 14:08 - 00159008 _____ () C:\Windows\system32\perfc00A.dat 2014-04-15 18:49 - 2011-04-12 09:43 - 00700470 _____ () C:\Windows\system32\perfh007.dat 2014-04-15 18:49 - 2011-04-12 09:43 - 00150108 _____ () C:\Windows\system32\perfc007.dat 2014-04-15 18:49 - 2009-07-14 07:13 - 06070334 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-04-15 18:47 - 2014-04-15 15:40 - 00173738 _____ () C:\Windows\WindowsUpdate.log 2014-04-15 18:45 - 2014-04-15 15:00 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\TS3Client 2014-04-15 18:44 - 2014-04-15 15:00 - 00000000 ____D () C:\Users\Olli\AppData\Local\Overwolf 2014-04-15 18:44 - 2014-04-15 14:58 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-04-15 18:43 - 2014-04-15 14:58 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-04-15 18:43 - 2013-11-19 16:25 - 00019413 _____ () C:\Windows\setupact.log 2014-04-15 18:43 - 2010-11-21 05:47 - 00234228 _____ () C:\Windows\PFRO.log 2014-04-15 18:43 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-04-15 18:04 - 2009-07-14 07:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2014-04-15 18:02 - 2014-04-15 18:02 - 70658472 _____ (AVG) C:\Users\Olli\Downloads\avg_tuh_stf_all_2014_380_24c4.exe 2014-04-15 17:48 - 2014-04-15 14:49 - 00000000 ____D () C:\ProgramData\SaveClicker 2014-04-15 17:41 - 2014-04-15 16:21 - 00000000 ____D () C:\Users\Olli\AppData\Local\Avg2014 2014-04-15 16:46 - 2014-04-15 16:46 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Macromedia 2014-04-15 16:40 - 2014-04-15 16:40 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\AVG2014 2014-04-15 16:40 - 2014-04-15 16:38 - 00000000 ____D () C:\ProgramData\AVG2014 2014-04-15 16:40 - 2014-04-15 16:32 - 00000000 ____D () C:\Users\Olli\AppData\Local\DayZ 2014-04-15 16:40 - 2014-04-15 14:47 - 00000000 ___RD () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-04-15 16:38 - 2014-04-15 16:38 - 00000991 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-04-15 16:38 - 2014-04-15 16:38 - 00000000 ___HD () C:\$AVG 2014-04-15 16:38 - 2014-04-15 16:38 - 00000000 ____D () C:\Users\Olli\Documents\Stronghold Crusader 2014-04-15 16:38 - 2014-04-15 16:38 - 00000000 ____D () C:\Users\Olli\Documents\BFBC2 2014-04-15 16:38 - 2014-04-15 16:38 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\TuneUp Software 2014-04-15 16:38 - 2014-04-15 16:38 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-04-15 16:38 - 2014-04-15 16:32 - 00000000 ____D () C:\Users\Olli\Documents\DayZ 2014-04-15 16:32 - 2013-04-23 11:07 - 00028538 _____ () C:\Windows\DirectX.log 2014-04-15 16:23 - 2014-04-15 16:22 - 143792688 _____ (AVG Technologies) C:\Users\Olli\Downloads\avg_isct_x86_all_2014_4259a6848_huawei (1).exe 2014-04-15 16:21 - 2014-04-15 16:21 - 00000000 ____D () C:\Users\Olli\AppData\Local\MFAData 2014-04-15 16:21 - 2014-04-15 16:20 - 143792688 _____ (AVG Technologies) C:\Users\Olli\Downloads\avg_isct_x86_all_2014_4259a6848_huawei.exe 2014-04-15 16:14 - 2014-04-15 18:05 - 00000426 _____ () C:\AVScanner.ini 2014-04-15 16:13 - 2014-04-15 15:56 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-04-15 16:11 - 2014-04-15 14:49 - 00000000 ____D () C:\ProgramData\d7969783fbe7f5ae 2014-04-15 16:11 - 2014-04-15 14:49 - 00000000 ____D () C:\Program Files (x86)\SaveClicker 2014-04-15 16:08 - 2014-04-15 16:08 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Olli\Downloads\spybot-2.2.exe 2014-04-15 16:08 - 2014-04-15 16:08 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-04-15 16:08 - 2014-04-15 16:08 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-04-15 16:08 - 2014-04-15 16:08 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-04-15 16:08 - 2014-04-15 16:08 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-04-15 16:08 - 2014-04-15 16:08 - 00000000 ____D () C:\Windows\system32\Macromed 2014-04-15 16:08 - 2014-04-15 16:08 - 00000000 ____D () C:\Users\Olli\AppData\Local\Adobe 2014-04-15 16:08 - 2014-04-15 16:08 - 00000000 ____D () C:\ProgramData\McAfee 2014-04-15 15:56 - 2014-04-15 15:56 - 00001389 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-04-15 15:56 - 2014-04-15 15:56 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-04-15 15:56 - 2014-04-15 15:56 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-04-15 15:55 - 2014-04-15 15:55 - 00613200 _____ (Chip Digital GmbH) C:\Users\Olli\Downloads\SpyBot Search Destroy - CHIP-Downloader.exe 2014-04-15 15:49 - 2014-04-15 15:44 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Apple Computer 2014-04-15 15:44 - 2014-04-15 15:44 - 00001793 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\Users\Olli\AppData\Local\Apple Computer 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\Program Files\iTunes 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\Program Files\iPod 2014-04-15 15:44 - 2014-04-15 15:44 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Users\Olli\Desktop\Bilder 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Users\Olli\AppData\Local\Apple 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\ProgramData\Apple 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Program Files\Bonjour 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Program Files (x86)\Bonjour 2014-04-15 15:43 - 2014-04-15 15:43 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-04-15 15:37 - 2014-04-15 15:31 - 148885840 _____ (Apple Inc.) C:\Users\Olli\Downloads\iTunes64Setup.exe 2014-04-15 15:37 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-04-15 15:34 - 2013-04-22 13:37 - 00005949 _____ () C:\Windows\TSSysprep.log 2014-04-15 15:34 - 2009-07-14 06:46 - 00004822 _____ () C:\Windows\DtcInstall.log 2014-04-15 15:28 - 2014-04-15 15:28 - 00003978 _____ () C:\Users\Olli\Desktop\autoexec.cfg 2014-04-15 15:28 - 2014-04-15 15:26 - 00003978 _____ () C:\Users\Olli\Downloads\autoexec.cfg 2014-04-15 15:23 - 2014-04-15 15:23 - 00001060 _____ () C:\Users\Public\Desktop\GPUTweakStreaming.lnk 2014-04-15 15:23 - 2014-04-15 15:23 - 00001053 _____ () C:\Users\Public\Desktop\ASUS GPU Tweak.lnk 2014-04-15 15:23 - 2014-04-15 15:23 - 00000032 _____ () C:\setup.log 2014-04-15 15:23 - 2014-04-15 15:23 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS 2014-04-15 15:23 - 2014-04-15 15:23 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-04-15 15:23 - 2014-04-15 15:23 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS 2014-04-15 15:23 - 2014-04-14 13:59 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-04-15 15:23 - 2014-04-14 13:57 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-04-15 15:22 - 2014-04-15 15:22 - 00000000 ____D () C:\Windows\SysWOW64\NV 2014-04-15 15:22 - 2014-04-15 15:22 - 00000000 ____D () C:\Windows\system32\NV 2014-04-15 15:22 - 2014-04-15 14:58 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-04-15 15:01 - 2014-04-15 15:01 - 00001981 _____ () C:\Users\Public\Desktop\Overwolf.lnk 2014-04-15 15:01 - 2014-04-15 15:01 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf 2014-04-15 15:01 - 2014-04-15 15:01 - 00000000 ____D () C:\Program Files (x86)\Overwolf 2014-04-15 15:00 - 2014-04-15 15:00 - 00000977 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2014-04-15 15:00 - 2014-04-15 15:00 - 00000000 ____D () C:\Users\Olli\AppData\Local\NVIDIA Corporation 2014-04-15 15:00 - 2014-04-15 15:00 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-04-15 15:00 - 2014-04-15 14:59 - 00000000 ____D () C:\Users\Olli\AppData\Local\NVIDIA 2014-04-15 15:00 - 2014-04-15 14:58 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-04-15 14:59 - 2014-04-15 14:59 - 29498592 _____ (TeamSpeak Systems GmbH) C:\Users\Olli\Downloads\TeamSpeak3-Client-win64-3.0.14.exe 2014-04-15 14:59 - 2014-04-15 14:59 - 00001357 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-04-15 14:59 - 2014-04-15 14:59 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-04-15 14:59 - 2014-04-15 14:57 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-04-15 14:59 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\restore 2014-04-15 14:58 - 2014-04-15 14:58 - 01141680 _____ () C:\Users\Olli\Downloads\SteamSetup.exe 2014-04-15 14:58 - 2014-04-15 14:58 - 00000973 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-04-15 14:58 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help 2014-04-15 14:57 - 2014-04-15 14:57 - 00000000 ____D () C:\NVIDIA 2014-04-15 14:57 - 2014-04-15 14:53 - 276762432 _____ (NVIDIA Corporation) C:\Users\Olli\Downloads\335.23-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-04-15 14:54 - 2014-04-15 14:54 - 00000000 ____D () C:\Users\Olli\AppData\Local\Deployment 2014-04-15 14:54 - 2014-04-15 14:54 - 00000000 ____D () C:\Users\Olli\AppData\Local\Apps\2.0 2014-04-15 14:54 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Olli\AppData\Local\Google 2014-04-15 14:54 - 2014-04-15 14:49 - 00000000 ____D () C:\Program Files (x86)\Supporter 2014-04-15 14:52 - 2014-04-15 14:52 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Avira 2014-04-15 14:51 - 2014-04-15 14:51 - 00000000 ____D () C:\Users\Olli\AppData\Local\CrashDumps 2014-04-15 14:51 - 2014-04-15 14:50 - 00000000 ____D () C:\ProgramData\Avira 2014-04-15 14:51 - 2014-04-15 14:50 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-04-15 14:51 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\systweak 2014-04-15 14:50 - 2014-04-15 14:50 - 00001147 _____ () C:\Users\Public\Desktop\Avira.lnk 2014-04-15 14:50 - 2014-04-15 14:50 - 00000000 ____D () C:\ProgramData\Package Cache 2014-04-15 14:49 - 2014-04-15 14:49 - 00003314 _____ () C:\Windows\System32\Tasks\Advanced System Protector 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Advanced System Protector 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Olli\AppData\Local\Torch 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Olli\AppData\Local\Packages 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Olli\AppData\Local\Comodo 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Torch 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\HomeGroupUser$ 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Gast\AppData\Local\Torch 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Gast\AppData\Local\Google 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Gast\AppData\Local\Comodo 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Gast 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Users\Administrator 2014-04-15 14:49 - 2014-04-15 14:49 - 00000000 ____D () C:\Program Files\003 2014-04-15 14:48 - 2014-04-15 14:48 - 00058016 _____ () C:\Users\Olli\AppData\Local\GDIPFONTCACHEV1.DAT 2014-04-15 14:48 - 2014-04-15 14:48 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Intel Corporation 2014-04-15 14:47 - 2014-04-15 14:47 - 00001431 _____ () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-04-15 14:47 - 2014-04-15 14:47 - 00000000 ___RD () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-04-15 14:47 - 2014-04-15 14:47 - 00000000 ____D () C:\Users\Olli\AppData\Roaming\Adobe 2014-04-15 14:47 - 2014-04-15 14:45 - 00000000 ____D () C:\Users\Olli 2014-04-15 14:46 - 2014-04-15 14:46 - 00000000 ____D () C:\Users\Olli\AppData\Local\VirtualStore 2014-04-15 14:45 - 2014-04-15 14:45 - 00000020 ___SH () C:\Users\Olli\ntuser.ini 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Vorlagen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Startmenü 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Netzwerkumgebung 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Lokale Einstellungen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Eigene Dateien 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Druckumgebung 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Documents\Eigene Musik 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Documents\Eigene Bilder 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\AppData\Local\Verlauf 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\AppData\Local\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Olli\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Programme 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-04-15 14:45 - 2014-04-15 14:45 - 00000000 __SHD () C:\Recovery 2014-04-15 14:45 - 2013-04-22 14:33 - 00000000 ____D () C:\Windows\Panther 2014-04-15 14:45 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries 2014-04-15 14:45 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-04-15 14:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Recovery 2014-04-15 14:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-04-14 14:47 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-04-14 14:00 - 2014-04-14 14:00 - 00018680 _____ () C:\Windows\system32\results.xml 2014-04-14 13:59 - 2014-04-14 13:59 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf 2014-04-14 13:59 - 2014-04-14 13:59 - 00000000 ____D () C:\Program Files\ASUS 2014-04-14 13:58 - 2014-04-14 13:58 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-04-14 13:58 - 2014-04-14 13:58 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-04-14 13:58 - 2014-04-14 13:58 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-04-14 13:58 - 2014-04-14 13:58 - 00000000 ____D () C:\Program Files\Realtek 2014-04-14 13:58 - 2014-04-14 13:54 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-04-14 13:57 - 2014-04-14 13:57 - 00000716 _____ () C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk 2014-04-14 13:57 - 2014-04-14 13:57 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-04-14 13:57 - 2014-04-14 13:57 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-04-14 13:57 - 2014-04-14 13:54 - 00000000 ____D () C:\ProgramData\Intel 2014-04-14 13:57 - 2014-04-14 13:54 - 00000000 ____D () C:\Program Files\Intel 2014-04-14 13:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-04-14 13:56 - 2014-04-14 13:54 - 00000000 ____D () C:\Intel 2014-04-14 13:54 - 2013-06-11 13:10 - 06130124 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-04-14 13:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\oobe 2014-04-03 09:51 - 2014-04-15 20:15 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-04-03 09:51 - 2014-04-15 20:15 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-04-03 09:50 - 2014-04-15 20:15 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-04-01 21:03 - 2014-04-01 21:03 - 00236824 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2014-03-31 16:20 - 2014-03-31 16:20 - 00274200 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys 2014-03-31 16:06 - 2014-03-31 16:06 - 00130840 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2014-03-31 09:35 - 2010-11-21 05:27 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-03-27 22:14 - 2014-03-27 22:14 - 00192792 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys 2014-03-27 22:14 - 2014-03-27 22:14 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys 2014-03-27 22:07 - 2014-03-27 22:07 - 00236824 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2014-03-27 22:05 - 2014-03-27 22:05 - 00324376 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys 2014-03-27 22:03 - 2014-03-27 22:03 - 00032536 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2014-03-21 11:46 - 2014-03-21 11:46 - 01081616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx 2014-03-21 11:46 - 2014-03-21 11:46 - 00152848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx Some content of TEMP: ==================== C:\Users\Olli\AppData\Local\Temp\avgnt.exe C:\Users\Olli\AppData\Local\Temp\install_flashplayer13x32_mssa_aaa_aih.exe C:\Users\Olli\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Olli\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Olli\AppData\Local\Temp\nvStInst.exe C:\Users\Olli\AppData\Local\Temp\SpOrder.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-04-15 19:27 ==================== End Of Log ============================ |
16.04.2014, 10:17 | #4 |
| Werde Popup Trojaner nicht los FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-04-2014 Ran by Olli at 2014-04-15 20:24:04 Running from C:\Users\Olli\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: AVG Internet Security 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: AVG Internet Security 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} FW: AVG Internet Security 2014 (Enabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2} ==================== Installed Programs ====================== Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.182 - Adobe Systems Incorporated) Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.4.9.2 - ASUSTek COMPUTER INC.) ASUS GPU Tweak (x32 Version: 2.4.9.2 - ASUSTek COMPUTER INC.) Hidden ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.025 - ASUSTek Computer Inc.) AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4569 - AVG Technologies) AVG 2014 (Version: 14.0.3882 - AVG Technologies) Hidden AVG 2014 (Version: 14.0.4569 - AVG Technologies) Hidden Avira (HKLM-x32\...\{a9aa166b-f5d7-419f-92fc-c0c86c93ca53}) (Version: 1.0.5204.23256 - Avira Operations GmbH & Co. KG) Avira (x32 Version: 1.0.5204.23256 - Avira Operations GmbH & Co. KG) Hidden Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.3.350 - Avira) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive) Fotogalerie (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galería de fotos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galeria fotografii (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galerie de photos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden GeForce Experience NvStream Client Components (Version: 0.1.87 - NVIDIA Corporation) Hidden Genesis (HKCU\...\genesis) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 34.0.1847.116 - Google Inc.) Google Update Helper (x32 Version: 1.3.23.9 - Google Inc.) Hidden GPUTweakStreaming (HKLM-x32\...\InstallShield_{D2A41AA7-4313-43D5-AA39-7E3FBBE0556D}) (Version: 1.0.3.5 - ASUS) GPUTweakStreaming (x32 Version: 1.0.3.5 - ASUS) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.20.1447 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.9.0.1001 - Intel Corporation) Intel(R) Rapid Storage Technology (Version: 12.9.0.1001 - Intel Corporation) Hidden Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.3.34 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.28.487.1 - Intel Corporation) Hidden iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.) Junk Mail filter update (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (ESN) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (FRA) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (ITA) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Italiano) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1040) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Nederlands) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1043) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (NLD) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (PLK) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Mozilla Firefox 28.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 28.0 (x86 de)) (Version: 28.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 28.0 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1108.0727 - Microsoft) Hidden NVIDIA 3D Vision Controller-Treiber 326.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 326.01 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 327.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 327.23 - NVIDIA Corporation) NVIDIA GeForce Experience 1.8.2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.8.2.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 327.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.23 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.147.1067 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA ShadowPlay 11.10.13 (Version: 11.10.13 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.2723 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 327.23 (Version: 327.23 - NVIDIA Corporation) Hidden NVIDIA Update 11.10.13 (Version: 11.10.13 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 11.10.13 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.5 - NVIDIA Corporation) Overwolf (HKLM-x32\...\{FB83467F-D8EB-43E6-8B3D-860B045C1C52}) (Version: 0.51.325 - Overwolf) Photo Common (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Poczta usługi Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Raccolta foto (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7023 - Realtek Semiconductor Corp.) SHIELD Streaming (Version: 1.05.28 - NVIDIA Corporation) Hidden Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Supporter 1.80 (HKLM-x32\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{be0fb33b}) (Version: - SaveClicker) <==== ATTENTION TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Windows Live Communications Platform (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3503.0728 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Family Safety (Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Family Safety (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden ==================== Restore Points ========================= 15-04-2014 13:43:26 Installed iTunes 15-04-2014 14:32:37 AVG 2014 wurde installiert 15-04-2014 14:38:19 Installed AVG 2014 15-04-2014 17:34:19 Sprachpaketdeinstallation ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {15E06B86-5376-4E50-90AE-4DD1AE9CA581} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-04-15] (Adobe Systems Incorporated) Task: {29DBF0DA-5CD7-4AF5-891A-124A936A7751} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-15] (Google Inc.) Task: {3C287F3D-E768-4D05-845C-21DEA02F39F4} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {4A6D7A20-5261-4320-B10F-AF00EA7F58B8} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Task: {568CAB7F-4BEF-4B0F-A085-5A8FB4FFA670} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {61C88776-5254-4255-BD5E-C70974AF40F7} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {85659085-8D1F-4554-8A4A-CAC6B26D49AD} - System32\Tasks\Advanced System Protector => C:\Program Files (x86)\RegClean Pro\SystweakASP.exe <==== ATTENTION Task: {87F9F364-2F63-4CD2-99EE-26F22F40AB25} - System32\Tasks\Microsoft\Windows\SetupSQMTask => C:\Windows\SYSTEM32\OOBE\SETUPSQM.EXE [2009-07-14] (Microsoft Corporation) Task: {91210423-B40E-43CE-8CE1-1BF94217AB85} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-15] (Google Inc.) Task: {E718CEE3-1BCE-423E-A3EF-DA0A46291DB3} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2013-08-27] (ASUSTek Computer Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-04-15 14:58 - 2013-09-12 09:25 - 00097568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-04-14 13:59 - 2012-10-30 00:48 - 00927232 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe 2012-01-17 11:24 - 2012-01-17 11:24 - 00055296 _____ () C:\Windows\SysWOW64\ASGT.exe 2014-04-15 14:49 - 2014-04-15 14:49 - 00706560 ____N () C:\Program Files\003\xmkysecqun64.exe 2014-04-15 15:20 - 2013-09-12 10:58 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 2014-02-28 11:14 - 2014-02-28 11:14 - 00173568 _____ () C:\Program Files\TeamSpeak 3 Client\quazip.dll 2014-02-27 16:51 - 2014-02-27 16:51 - 01080832 _____ () C:\Program Files\TeamSpeak 3 Client\platforms\qwindows.dll 2014-02-27 16:51 - 2014-02-27 16:51 - 00833024 _____ () C:\Program Files\TeamSpeak 3 Client\sqldrivers\qsqlite.dll 2014-02-28 15:07 - 2014-02-28 15:07 - 00102344 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2014-02-28 15:07 - 2014-02-28 15:07 - 00108488 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2014-02-27 16:51 - 2014-02-27 16:51 - 00030208 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qgif.dll 2014-02-27 16:51 - 2014-02-27 16:51 - 00233984 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qjpeg.dll 2014-02-28 15:10 - 2014-02-28 15:10 - 00563656 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2014-02-28 15:10 - 2014-02-28 15:10 - 00577480 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2014-02-27 16:51 - 2014-02-27 16:51 - 00159232 _____ () C:\Program Files\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll 2014-04-15 14:51 - 2014-02-25 11:41 - 00394808 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll 2014-02-12 20:58 - 2014-02-12 20:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-02-12 20:58 - 2014-02-12 20:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-04-14 13:59 - 2014-04-15 18:43 - 00028672 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.01\PEbiosinterface32.dll 2014-04-14 13:59 - 2012-05-08 09:04 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.01\ATKEX.dll 2014-04-15 15:56 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2014-04-15 15:56 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-04-15 15:56 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2014-04-15 15:56 - 2013-05-16 10:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-04-15 15:56 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2014-04-01 13:57 - 2014-04-01 13:57 - 00138320 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.NativeCore.dll 2014-04-01 13:57 - 2014-04-01 13:57 - 00064592 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.AvConnectorNative.dll 2013-09-24 17:22 - 2013-09-24 17:22 - 00258048 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Vender.dll 2013-10-07 10:30 - 2013-10-07 10:30 - 00053248 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Exeio.dll 2014-03-05 19:30 - 2014-03-05 19:30 - 00025600 _____ () C:\Program Files (x86)\Overwolf\CoreAudioApi.dll 2014-03-05 19:29 - 2014-03-05 19:29 - 00607232 _____ () C:\Program Files (x86)\Overwolf\client_c_api_win32.dll 2014-04-15 14:59 - 2013-12-13 00:19 - 00142848 _____ () C:\Program Files (x86)\Steam\libavresample-1.dll 2014-04-15 14:59 - 2013-11-05 03:12 - 00890592 _____ () C:\Program Files (x86)\Steam\libavutil-52.dll 2014-04-15 14:59 - 2014-02-11 04:34 - 00751616 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2014-04-15 14:59 - 2014-02-25 23:57 - 01135296 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2014-04-15 14:59 - 2014-01-11 01:33 - 20625832 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2014-04-15 14:59 - 2013-06-15 01:49 - 01100800 _____ () C:\Program Files (x86)\Steam\bin\avcodec-53.dll 2014-04-15 14:59 - 2013-06-15 01:49 - 00124416 _____ () C:\Program Files (x86)\Steam\bin\avutil-51.dll 2014-04-15 14:59 - 2013-06-15 01:49 - 00192000 _____ () C:\Program Files (x86)\Steam\bin\avformat-53.dll 2014-04-15 14:59 - 2014-02-25 23:57 - 00119488 _____ () C:\Program Files (x86)\Steam\bin\audio.dll 2014-04-15 14:59 - 2013-06-15 01:49 - 00071680 _____ () C:\Program Files (x86)\Steam\bin\mssmp3.asi 2014-04-15 14:59 - 2013-06-15 01:49 - 00153088 _____ () C:\Program Files (x86)\Steam\bin\mssvoice.asi 2014-04-15 14:52 - 2014-04-01 13:57 - 00049744 _____ () C:\Users\Olli\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll 2014-04-14 13:57 - 2013-08-08 22:27 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-04-15 19:48 - 2014-04-02 03:57 - 00065352 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\chrome_elf.dll 2014-04-15 19:48 - 2014-04-02 03:57 - 00674632 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\libglesv2.dll 2014-04-15 19:48 - 2014-04-02 03:57 - 00093000 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\libegl.dll 2014-04-15 19:48 - 2014-04-02 03:57 - 04081480 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\pdf.dll 2014-04-15 19:48 - 2014-04-02 03:58 - 00390472 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll 2014-04-15 19:48 - 2014-04-02 03:57 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\ffmpegsumo.dll 2014-04-15 14:51 - 2014-02-25 11:41 - 00394808 _____ () c:\program files (x86)\avira\antivir desktop\sqlite3.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (04/15/2014 06:44:39 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (04/15/2014 06:43:57 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2014 06:43:56 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (04/15/2014 06:43:56 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (04/15/2014 06:43:56 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcNvVAD endpoint registration failed [0] Error: (04/15/2014 06:04:33 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (04/15/2014 06:04:19 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2014 04:32:37 PM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\msiexec.exe /V; Beschreibung = Installed AVG 2014; Fehler = 0x81000101). Error: (04/15/2014 04:31:47 PM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Program Files (x86)\Steam\steamapps\common\DayZ\_CommonRedist\DirectX\Jun2010\DXSETUP.exe Files (x86)\Steam\steamapps\common\DayZ\_CommonRedist\DirectX\Jun2010\DXSETUP.exe" /silent; Beschreibung = DirectX wurde installiert; Fehler = 0x81000101). Error: (04/15/2014 04:10:36 PM) (Source: Microsoft-Windows-RestartManager) (User: OQTower) Description: Die Anwendung oder der Dienst "SecureAssist" konnte nicht neu gestartet werden. System errors: ============= Error: (04/15/2014 07:35:14 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: Das Sprachpaket für es-ES kann von CBS nicht entfernt werden. Zurückgegebener CBS-Fehlercode: 0x8000ffff. Error: (04/15/2014 07:35:14 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: CBS-Fehler 0x8000ffff '' bei Verwendung des Benutzeroberflächen-Sprachpakets für es-ES. Error: (04/15/2014 07:35:13 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: Das Sprachpaket für pl-PL kann von CBS nicht entfernt werden. Zurückgegebener CBS-Fehlercode: 0x8000ffff. Error: (04/15/2014 07:35:13 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: CBS-Fehler 0x8000ffff '' bei Verwendung des Benutzeroberflächen-Sprachpakets für pl-PL. Error: (04/15/2014 07:35:13 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: Das Sprachpaket für nl-NL kann von CBS nicht entfernt werden. Zurückgegebener CBS-Fehlercode: 0x8000ffff. Error: (04/15/2014 07:35:13 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: CBS-Fehler 0x8000ffff '' bei Verwendung des Benutzeroberflächen-Sprachpakets für nl-NL. Error: (04/15/2014 07:35:12 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: Das Sprachpaket für it-IT kann von CBS nicht entfernt werden. Zurückgegebener CBS-Fehlercode: 0x8000ffff. Error: (04/15/2014 07:35:12 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: CBS-Fehler 0x8000ffff '' bei Verwendung des Benutzeroberflächen-Sprachpakets für it-IT. Error: (04/15/2014 07:35:12 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: Das Sprachpaket für fr-FR kann von CBS nicht entfernt werden. Zurückgegebener CBS-Fehlercode: 0x8000ffff. Error: (04/15/2014 07:35:12 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: CBS-Fehler 0x8000ffff '' bei Verwendung des Benutzeroberflächen-Sprachpakets für fr-FR. Microsoft Office Sessions: ========================= Error: (04/15/2014 06:44:39 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (04/15/2014 06:43:57 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2014 06:43:56 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (04/15/2014 06:43:56 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (04/15/2014 06:43:56 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcNvVAD endpoint registration failed [0] Error: (04/15/2014 06:04:33 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (04/15/2014 06:04:19 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2014 04:32:37 PM) (Source: System Restore)(User: ) Description: C:\Windows\system32\msiexec.exe /VInstalled AVG 20140x81000101 Error: (04/15/2014 04:31:47 PM) (Source: System Restore)(User: ) Description: C:\Program Files (x86)\Steam\steamapps\common\DayZ\_CommonRedist\DirectX\Jun2010\DXSETUP.exe Files (x86)\Steam\steamapps\common\DayZ\_CommonRedist\DirectX\Jun2010\DXSETUP.exe" /silentDirectX wurde installiert0x81000101 Error: (04/15/2014 04:10:36 PM) (Source: Microsoft-Windows-RestartManager)(User: OQTower) Description: 1SecureAssist.exeSecureAssist03026217822760 CodeIntegrity Errors: =================================== Date: 2014-04-14 14:17:40.672 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 57% Total physical RAM: 8064.71 MB Available physical RAM: 3438.7 MB Total Pagefile: 16127.61 MB Available Pagefile: 11948.17 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: (Win7Prox64) (Fixed) (Total:232.88 GB) (Free:166.89 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (Volume) (Fixed) (Total:931.51 GB) (Free:931.36 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 68F22E9F) Partition 1: (Active) - (Size=233 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 9BDF600B) Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Stimmt das so? |
17.04.2014, 09:53 | #5 |
/// the machine /// TB-Ausbilder | Werde Popup Trojaner nicht los hi, Revo Uninstaller - Download - Filepony Damit alles deinstallieren was Du in der Additional.txt findest mit dem Zusatz <== ATTENTION Mit Revo auch Moderat die Reste entfernen lassen. Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Werde Popup Trojaner nicht los |
avira, chrome, deinstalliert, explorer, fenster, focus, genesis, heute, monitor.exe, msn deutschland, popup, popups, preferences, programme, runtergeladen, safer networking, system speedup, tools, trojaner, virenprogramm, werbungen |