|
Plagegeister aller Art und deren Bekämpfung: Pc sehr langsam geworden und hoher Ping bei spielenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
18.04.2014, 23:27 | #1 |
| Pc sehr langsam geworden und hoher Ping bei spielen Ich habe seit kurzen folgendes Problem. Mein Pc ist sehr langsam geworden. Wenn ich n Browser/itunes (für Musik hören beim spielen) offen habe und n Spiel starte (oder andersrum), dauert es ewig bis es starte und es passiert lange Zeit gar nichts. War früher nicht so. Auch der Ping ist sehr hoch bei spielen, was zu lagging und disconnects führt (League of Legends). Was kann ich tun? |
19.04.2014, 04:50 | #2 |
/// the machine /// TB-Ausbilder | Pc sehr langsam geworden und hoher Ping bei spielen hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
19.04.2014, 12:54 | #3 |
| Pc sehr langsam geworden und hoher Ping bei spielen FRST Logfile:
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 17-04-2014 01 Ran by LordDrygin (administrator) on LORDDRYGIN-PC on 19-04-2014 13:46:49 Running from C:\Users\LordDrygin\Downloads Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgnsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgemcx.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe (TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe (TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe (TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TUDefragBackend32.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe () C:\Users\LordDrygin\Downloads\FRST.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [4971024 2014-03-19] (AVG Technologies CZ, s.r.o.) Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X] HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [280576 2014-03-09] (Microsoft Corporation) HKU\S-1-5-21-817323750-2849227344-2509689014-1000\...\Run: [ManyCam] => C:\Program Files\ManyCam\ManyCam.exe [5753832 2014-03-05] (Visicom Media Inc.) IFEO\AcroRd32.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\manycam.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\uninstall.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x06D333CDF368CF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) Hosts: Hosts file not detected in the default directory Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default FF user.js: detected! => C:\Users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default\user.js FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: NoScript - C:\Users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-03-09] FF Extension: Adblock Plus - C:\Users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-03-09] ========================== Services (Whitelisted) ================= R2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3782672 2014-02-23] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.) S3 cphs; C:\Windows\system32\IntelCpHeciSvc.exe [279000 2014-01-25] (Intel Corporation) R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) R2 TuneUp.UtilitiesSvc; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe [1773368 2014-03-20] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [120600 2013-11-25] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [210712 2013-11-25] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [149272 2013-11-25] (AVG Technologies CZ, s.r.o.) R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22808 2014-01-19] (AVG Technologies CZ, s.r.o.) R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [176952 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [222520 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [102712 2013-10-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27448 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [193848 2013-08-01] (AVG Technologies CZ, s.r.o.) R3 b57xdbd; C:\Windows\System32\DRIVERS\b57xdbd.sys [60968 2011-11-04] (Broadcom Corporation) R3 b57xdmp; C:\Windows\System32\DRIVERS\b57xdmp.sys [17960 2011-11-04] (Broadcom Corporation) R3 bScsiMSx; C:\Windows\System32\DRIVERS\bScsiMSx.sys [43560 2011-09-02] (Broadcom Corporation) R3 bScsiSDx; C:\Windows\System32\DRIVERS\bScsiSDx.sys [47104 2012-05-03] (Broadcom Corporation) R3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [40736 2013-11-27] (Visicom Media Inc.) R3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv.sys [29728 2013-12-06] (Visicom Media Inc.) R3 MEI; C:\Windows\System32\DRIVERS\HECI.sys [55104 2012-07-17] (Intel Corporation) R0 nvpciflt; C:\Windows\System32\DRIVERS\nvpciflt.sys [25376 2013-09-05] (NVIDIA Corporation) R3 TuneUpUtilitiesDrv; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys [12320 2014-02-10] (TuneUp Software) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-06 08:38 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2014-05-06 08:38 - 2012-02-17 06:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2014-05-06 08:38 - 2010-11-20 12:21 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdpipe.sys 2014-05-06 08:33 - 2014-04-18 18:06 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\TuneUp Software 2014-05-06 08:29 - 2014-05-06 08:29 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\MFAData 2014-05-06 08:29 - 2014-04-19 10:58 - 00000000 ____D () C:\ProgramData\MFAData 2014-05-06 08:26 - 2012-06-03 00:19 - 01933848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-05-06 08:26 - 2012-06-03 00:19 - 00053784 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-05-06 08:26 - 2012-06-03 00:19 - 00045080 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-05-06 08:26 - 2012-06-03 00:12 - 02422272 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-05-06 08:25 - 2014-05-06 08:26 - 00000000 ____D () C:\Program Files\DriverTuner 2014-05-06 08:25 - 2012-06-03 00:19 - 00577048 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-05-06 08:25 - 2012-06-03 00:19 - 00035864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-05-06 08:25 - 2012-06-03 00:12 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-05-06 08:25 - 2012-06-02 15:19 - 00171904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-05-06 08:25 - 2012-06-02 15:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-05-06 08:18 - 2014-05-06 08:18 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_b57xdbd_01009.Wdf 2014-05-06 08:18 - 2014-03-08 08:49 - 00000000 ____D () C:\Program Files\Intel 2014-05-06 08:18 - 2012-01-31 10:22 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\system32\CSVer.dll 2014-05-06 08:17 - 2014-05-06 08:20 - 00000000 ____D () C:\Program Files\Broadcom 2014-05-06 08:17 - 2014-05-06 08:17 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-05-06 08:12 - 2014-05-06 08:12 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\DriverTuner 2014-05-05 18:19 - 2014-04-18 19:15 - 00000000 ____D () C:\Windows\Panther 2014-05-05 17:54 - 2014-05-05 17:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-05-05 17:52 - 2014-04-08 08:49 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-05 17:49 - 2014-03-09 12:02 - 00001413 _____ () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-05 17:48 - 2014-05-05 17:49 - 00000000 ____D () C:\Users\LordDrygin 2014-05-05 17:48 - 2014-05-05 17:48 - 00000020 ___SH () C:\Users\LordDrygin\ntuser.ini 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Netzwerkumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Druckumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 __SHD () C:\Recovery 2014-05-05 17:48 - 2014-03-11 17:41 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\VirtualStore 2014-05-05 17:48 - 2009-07-14 06:42 - 00000000 ___RD () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-05 17:48 - 2009-07-14 06:37 - 00000000 ___RD () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-05 17:23 - 2014-04-19 13:23 - 02095517 _____ () C:\Windows\WindowsUpdate.log 2014-04-19 13:41 - 2014-04-19 13:46 - 00007748 _____ () C:\Users\LordDrygin\Downloads\FRST.txt 2014-04-19 13:41 - 2014-04-19 13:41 - 00017919 _____ () C:\Users\LordDrygin\Downloads\Addition.txt 2014-04-19 13:37 - 2014-04-19 13:46 - 00000000 ____D () C:\FRST 2014-04-19 03:00 - 2014-04-19 03:00 - 00064024 _____ () C:\Users\LordDrygin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-04-18 18:35 - 2014-04-18 18:35 - 00000000 ____D () C:\ProgramData\Avg_Update_0414b 2014-04-18 18:07 - 2014-04-18 18:07 - 00002159 _____ () C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2014-04-18 18:07 - 2014-04-18 18:07 - 00002139 _____ () C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk 2014-04-18 18:07 - 2014-03-20 14:44 - 00036664 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe 2014-04-18 18:07 - 2014-03-20 14:44 - 00025400 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2014-04-18 18:06 - 2014-04-18 18:06 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\TuneUp Software 2014-04-18 18:05 - 2014-04-18 18:07 - 00000000 ____D () C:\Program Files\TuneUp Utilities 2014 2014-04-18 18:02 - 2014-04-18 18:21 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-04-18 18:02 - 2014-04-18 18:12 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-04-13 20:01 - 2014-04-13 20:01 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\WinRAR 2014-04-13 20:00 - 2014-04-19 02:56 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-04-13 20:00 - 2014-04-19 02:55 - 00000000 ____D () C:\Program Files\WinRAR 2014-04-10 03:01 - 2014-03-06 10:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-04-10 03:01 - 2014-03-06 10:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-04-10 03:01 - 2014-03-06 10:02 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-04-10 03:01 - 2014-03-06 10:02 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-04-10 03:01 - 2014-03-06 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-04-10 03:01 - 2014-03-06 09:45 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-04-10 03:01 - 2014-03-06 09:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-04-10 03:01 - 2014-03-06 09:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-04-10 03:01 - 2014-03-06 09:22 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-04-10 03:01 - 2014-03-06 09:18 - 00575488 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-04-10 03:01 - 2014-03-06 09:07 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-04-10 03:01 - 2014-03-06 09:01 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-04-10 03:01 - 2014-03-06 08:46 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-04-10 03:01 - 2014-03-06 07:43 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-04-10 03:00 - 2014-03-06 11:19 - 17387008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-10 03:00 - 2014-03-06 10:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-04-10 03:00 - 2014-03-06 09:47 - 02178048 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-04-10 03:00 - 2014-03-06 09:46 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-04-10 03:00 - 2014-03-06 09:38 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-04-10 03:00 - 2014-03-06 09:36 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-04-10 03:00 - 2014-03-06 09:28 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-04-10 03:00 - 2014-03-06 09:13 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-04-10 03:00 - 2014-03-06 08:40 - 01967104 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-04-10 03:00 - 2014-03-06 08:36 - 11745792 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-04-10 03:00 - 2014-03-06 07:41 - 01789440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-04-10 03:00 - 2014-03-06 07:36 - 01143808 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-04-09 18:12 - 2014-03-04 11:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-04-09 18:12 - 2014-02-04 04:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-04-09 18:12 - 2014-02-04 04:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-04-09 18:12 - 2014-02-04 04:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-04-09 18:12 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-04-09 18:12 - 2014-01-24 04:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-04-08 16:02 - 2014-04-08 16:02 - 00000955 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-04-08 15:56 - 2014-04-08 15:56 - 00000000 ____D () C:\Program Files\AVG 2014-04-08 14:54 - 2014-04-13 02:09 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\PokerStars.EU 2014-04-08 14:54 - 2014-04-11 23:02 - 00000000 ____D () C:\Program Files\PokerStars.EU 2014-04-08 14:54 - 2014-04-08 14:54 - 00001046 _____ () C:\Users\Public\Desktop\PokerStars.eu.lnk 2014-04-07 20:07 - 2014-04-07 20:07 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-03-30 21:19 - 2014-03-30 21:19 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Windows Live Writer 2014-03-30 21:19 - 2014-03-30 21:19 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Windows Live Writer 2014-03-30 21:13 - 2014-03-30 21:14 - 00000000 ____D () C:\Program Files\Windows Live 2014-03-30 21:13 - 2014-03-30 21:13 - 00000000 ____D () C:\Windows\PCHEALTH 2014-03-30 21:10 - 2014-04-04 11:22 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Windows Live 2014-03-30 21:09 - 2014-03-30 21:09 - 00000000 ____D () C:\Program Files\Common Files\Windows Live 2014-03-30 03:30 - 2014-03-30 03:30 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2014-03-29 04:31 - 2014-03-29 04:31 - 00000000 ____D () C:\Users\LordDrygin\Documents\My Games 2014-03-29 04:31 - 2010-06-02 05:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-03-29 04:31 - 2010-06-02 05:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-03-29 04:31 - 2010-06-02 05:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-03-29 04:31 - 2010-05-26 12:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-03-29 04:31 - 2010-05-26 12:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-03-29 04:31 - 2010-05-26 12:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-03-29 04:31 - 2010-05-26 12:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-03-29 04:31 - 2010-05-26 12:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-03-29 04:31 - 2010-02-04 11:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-03-29 04:31 - 2010-02-04 11:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-03-29 04:31 - 2010-02-04 11:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-03-29 04:31 - 2010-02-04 11:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-03-29 04:31 - 2009-09-04 18:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-03-29 04:31 - 2009-09-04 18:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-03-29 04:31 - 2009-09-04 18:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-03-29 04:31 - 2009-09-04 18:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-03-29 04:31 - 2009-09-04 18:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-03-29 04:31 - 2009-09-04 18:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-03-29 04:31 - 2009-09-04 18:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-03-29 04:31 - 2009-09-04 18:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-03-29 04:31 - 2009-03-16 15:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-03-29 04:31 - 2009-03-09 16:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-03-29 04:31 - 2009-03-09 16:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-03-29 04:31 - 2009-03-09 16:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-03-29 04:30 - 2009-03-16 15:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-03-29 04:30 - 2009-03-16 15:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-03-29 04:30 - 2008-10-27 11:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-03-29 04:30 - 2008-10-27 11:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-03-29 04:30 - 2008-10-27 11:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-03-29 04:30 - 2008-10-27 11:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-03-29 04:30 - 2008-10-15 07:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-03-29 04:30 - 2008-10-15 07:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-03-29 04:30 - 2008-10-15 07:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-03-29 04:30 - 2008-07-31 11:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-03-29 04:30 - 2008-05-30 15:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-03-29 04:30 - 2008-05-30 15:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-03-29 04:30 - 2008-05-30 15:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-03-29 04:30 - 2008-05-30 15:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-03-29 04:30 - 2008-05-30 15:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-03-29 04:30 - 2008-05-30 15:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-03-29 04:30 - 2008-05-30 15:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-03-29 04:30 - 2008-03-05 17:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-03-29 04:30 - 2008-03-05 17:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-03-29 04:30 - 2008-03-05 17:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-03-29 04:30 - 2008-03-05 16:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-03-29 04:30 - 2008-03-05 16:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-03-29 04:30 - 2008-02-06 00:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-03-29 04:30 - 2007-10-22 04:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-03-29 04:30 - 2007-10-22 04:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-03-29 04:30 - 2007-10-12 16:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-03-29 04:30 - 2007-10-12 16:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-03-29 04:30 - 2007-10-02 10:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-03-29 04:30 - 2007-07-20 01:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-03-29 04:30 - 2007-07-19 19:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-03-29 04:30 - 2007-07-19 19:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-03-29 04:30 - 2007-07-19 19:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-03-29 04:30 - 2007-06-20 21:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-03-29 04:30 - 2007-05-16 17:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-03-29 04:30 - 2007-05-16 17:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-03-29 04:30 - 2007-05-16 17:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-03-29 04:30 - 2007-04-04 19:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-03-29 04:30 - 2007-04-04 19:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-03-29 04:30 - 2007-03-15 17:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-03-29 04:30 - 2007-03-12 17:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-03-29 04:30 - 2007-03-12 17:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-03-29 04:30 - 2007-03-05 13:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-03-29 04:30 - 2007-01-24 16:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-03-29 04:30 - 2006-12-08 13:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-03-29 04:30 - 2006-11-29 14:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-03-29 04:30 - 2006-11-29 14:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-03-29 04:30 - 2006-09-28 17:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-03-29 04:30 - 2006-09-28 17:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-03-29 04:30 - 2006-07-28 10:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-03-29 04:30 - 2006-07-28 10:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-03-29 04:30 - 2006-05-31 08:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-03-29 04:30 - 2006-03-31 13:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-03-29 04:30 - 2006-03-31 13:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-03-29 04:29 - 2006-03-31 13:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-03-29 04:29 - 2006-02-03 09:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-03-29 04:29 - 2006-02-03 09:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-03-29 04:29 - 2006-02-03 09:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-03-29 04:29 - 2005-12-05 19:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-03-29 04:29 - 2005-07-22 20:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-03-29 04:29 - 2005-05-26 16:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-03-29 04:29 - 2005-03-18 18:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-03-29 04:29 - 2005-02-05 20:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-03-29 03:37 - 2014-03-29 03:37 - 00000216 _____ () C:\Users\LordDrygin\Desktop\South Park The Stick of Truth.url 2014-03-29 03:37 - 2014-03-29 03:37 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-03-29 03:22 - 2014-04-18 18:21 - 00000000 ____D () C:\Program Files\Steam 2014-03-29 03:22 - 2014-03-30 03:30 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-03-29 03:22 - 2014-03-29 03:22 - 00000925 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-03-27 22:15 - 2014-03-27 23:17 - 00024724 _____ () C:\Users\LordDrygin\Desktop\OpenDocument Tabellendokument (neu).ods 2014-03-24 16:41 - 2014-03-24 16:41 - 00001993 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-03-24 16:40 - 2014-03-25 08:41 - 00000000 ____D () C:\ProgramData\Adobe 2014-03-24 16:40 - 2014-03-24 16:41 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-03-24 16:40 - 2014-03-24 16:40 - 00000000 ____D () C:\Program Files\Adobe 2014-03-24 16:33 - 2014-03-24 16:42 - 00000000 ____D () C:\Users\LordDrygin\Desktop\Bewerbung 2014-03-23 05:50 - 2009-06-10 23:39 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20140323-045017.backup 2014-03-23 05:44 - 2014-03-23 14:47 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-03-23 05:44 - 2014-03-23 05:45 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2 2014-03-23 05:44 - 2014-03-23 05:44 - 00002123 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-03-23 05:44 - 2013-09-20 11:49 - 00018968 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean.exe 2014-03-20 03:44 - 2014-03-20 03:44 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\OpenOffice 2014-03-20 03:17 - 2014-03-20 03:17 - 00000000 ____D () C:\Program Files\Mozilla Firefox ==================== One Month Modified Files and Folders ======= 2014-05-06 08:29 - 2014-05-06 08:29 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\MFAData 2014-05-06 08:29 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-06 08:26 - 2014-05-06 08:25 - 00000000 ____D () C:\Program Files\DriverTuner 2014-05-06 08:20 - 2014-05-06 08:17 - 00000000 ____D () C:\Program Files\Broadcom 2014-05-06 08:18 - 2014-05-06 08:18 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_b57xdbd_01009.Wdf 2014-05-06 08:17 - 2014-05-06 08:17 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-05-06 08:12 - 2014-05-06 08:12 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\DriverTuner 2014-05-06 08:09 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\system32\restore 2014-05-05 18:18 - 2009-07-14 06:57 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-05-05 18:18 - 2009-07-14 06:52 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-05-05 18:18 - 2008-07-17 13:56 - 00008192 __RSH () C:\BOOTSECT.BAK 2014-05-05 17:54 - 2014-05-05 17:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-05-05 17:49 - 2014-05-05 17:48 - 00000000 ____D () C:\Users\LordDrygin 2014-05-05 17:48 - 2014-05-05 17:48 - 00000020 ___SH () C:\Users\LordDrygin\ntuser.ini 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Netzwerkumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Druckumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 __SHD () C:\Recovery 2014-05-05 17:48 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Default 2014-05-05 17:48 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\Recovery 2014-05-05 17:48 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Windows NT 2014-04-19 13:46 - 2014-04-19 13:41 - 00007748 _____ () C:\Users\LordDrygin\Downloads\FRST.txt 2014-04-19 13:46 - 2014-04-19 13:37 - 00000000 ____D () C:\FRST 2014-04-19 13:41 - 2014-04-19 13:41 - 00017919 _____ () C:\Users\LordDrygin\Downloads\Addition.txt 2014-04-19 13:23 - 2014-05-05 17:23 - 02095517 _____ () C:\Windows\WindowsUpdate.log 2014-04-19 13:23 - 2014-03-08 08:11 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-04-19 10:58 - 2014-05-06 08:29 - 00000000 ____D () C:\ProgramData\MFAData 2014-04-19 03:00 - 2014-04-19 03:00 - 00064024 _____ () C:\Users\LordDrygin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-04-19 02:56 - 2014-04-13 20:00 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-04-19 02:55 - 2014-04-13 20:00 - 00000000 ____D () C:\Program Files\WinRAR 2014-04-18 19:15 - 2014-05-05 18:19 - 00000000 ____D () C:\Windows\Panther 2014-04-18 18:35 - 2014-04-18 18:35 - 00000000 ____D () C:\ProgramData\Avg_Update_0414b 2014-04-18 18:21 - 2014-04-18 18:02 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-04-18 18:21 - 2014-03-29 03:22 - 00000000 ____D () C:\Program Files\Steam 2014-04-18 18:12 - 2014-04-18 18:02 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-04-18 18:07 - 2014-04-18 18:07 - 00002159 _____ () C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2014-04-18 18:07 - 2014-04-18 18:07 - 00002139 _____ () C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk 2014-04-18 18:07 - 2014-04-18 18:05 - 00000000 ____D () C:\Program Files\TuneUp Utilities 2014 2014-04-18 18:06 - 2014-05-06 08:33 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\TuneUp Software 2014-04-18 18:06 - 2014-04-18 18:06 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\TuneUp Software 2014-04-16 12:10 - 2009-07-14 06:34 - 00013552 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-04-16 12:10 - 2009-07-14 06:34 - 00013552 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-04-16 12:03 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-04-16 00:57 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF 2014-04-13 20:01 - 2014-04-13 20:01 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\WinRAR 2014-04-13 02:09 - 2014-04-08 14:54 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\PokerStars.EU 2014-04-11 23:02 - 2014-04-08 14:54 - 00000000 ____D () C:\Program Files\PokerStars.EU 2014-04-10 03:55 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache 2014-04-10 03:17 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE 2014-04-09 21:36 - 2014-03-08 08:42 - 00000000 ____D () C:\Windows\system32\MRT 2014-04-09 21:34 - 2014-03-08 08:42 - 88028728 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-04-08 16:02 - 2014-04-08 16:02 - 00000955 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-04-08 16:02 - 2014-03-09 13:37 - 00000000 ____D () C:\ProgramData\AVG2014 2014-04-08 16:00 - 2014-03-09 13:37 - 00000000 ___HD () C:\$AVG 2014-04-08 15:56 - 2014-04-08 15:56 - 00000000 ____D () C:\Program Files\AVG 2014-04-08 15:53 - 2014-03-09 13:35 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Avg2014 2014-04-08 14:54 - 2014-04-08 14:54 - 00001046 _____ () C:\Users\Public\Desktop\PokerStars.eu.lnk 2014-04-08 08:49 - 2014-05-05 17:52 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-04-08 07:01 - 2009-07-14 06:53 - 00013480 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-04-07 20:07 - 2014-04-07 20:07 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-04 11:22 - 2014-03-30 21:10 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Windows Live 2014-03-30 21:19 - 2014-03-30 21:19 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Windows Live Writer 2014-03-30 21:19 - 2014-03-30 21:19 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Windows Live Writer 2014-03-30 21:14 - 2014-03-30 21:13 - 00000000 ____D () C:\Program Files\Windows Live 2014-03-30 21:13 - 2014-03-30 21:13 - 00000000 ____D () C:\Windows\PCHEALTH 2014-03-30 21:13 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-03-30 21:09 - 2014-03-30 21:09 - 00000000 ____D () C:\Program Files\Common Files\Windows Live 2014-03-30 03:30 - 2014-03-30 03:30 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2014-03-30 03:30 - 2014-03-29 03:22 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-03-29 04:31 - 2014-03-29 04:31 - 00000000 ____D () C:\Users\LordDrygin\Documents\My Games 2014-03-29 04:30 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-03-29 03:37 - 2014-03-29 03:37 - 00000216 _____ () C:\Users\LordDrygin\Desktop\South Park The Stick of Truth.url 2014-03-29 03:37 - 2014-03-29 03:37 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-03-29 03:22 - 2014-03-29 03:22 - 00000925 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-03-27 23:17 - 2014-03-27 22:15 - 00024724 _____ () C:\Users\LordDrygin\Desktop\OpenDocument Tabellendokument (neu).ods 2014-03-26 12:46 - 2009-07-14 04:04 - 00450709 ____R () C:\Windows\system32\Drivers\etc\hosts.20140406-045545.backup 2014-03-25 08:41 - 2014-03-24 16:40 - 00000000 ____D () C:\ProgramData\Adobe 2014-03-24 16:42 - 2014-03-24 16:33 - 00000000 ____D () C:\Users\LordDrygin\Desktop\Bewerbung 2014-03-24 16:41 - 2014-03-24 16:41 - 00001993 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-03-24 16:41 - 2014-03-24 16:40 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-03-24 16:41 - 2014-03-09 15:57 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Adobe 2014-03-24 16:41 - 2014-03-08 08:32 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Adobe 2014-03-24 16:40 - 2014-03-24 16:40 - 00000000 ____D () C:\Program Files\Adobe 2014-03-23 14:47 - 2014-03-23 05:44 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-03-23 05:50 - 2009-07-14 04:04 - 00450709 ____R () C:\Windows\system32\Drivers\etc\hosts.20140326-114611.backup 2014-03-23 05:45 - 2014-03-23 05:44 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2 2014-03-23 05:44 - 2014-03-23 05:44 - 00002123 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-03-20 23:13 - 2014-03-15 16:13 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Battle.net 2014-03-20 15:28 - 2014-03-09 12:12 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-03-20 14:44 - 2014-04-18 18:07 - 00036664 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe 2014-03-20 14:44 - 2014-04-18 18:07 - 00025400 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2014-03-20 03:44 - 2014-03-20 03:44 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\OpenOffice 2014-03-20 03:17 - 2014-03-20 03:17 - 00000000 ____D () C:\Program Files\Mozilla Firefox ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe => MD5 is legit C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-04-19 03:55 ==================== End Of Log ============================ --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 17-04-2014 01 Ran by LordDrygin at 2014-04-19 13:46:58 Running from C:\Users\LordDrygin\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} ==================== Installed Programs ====================== Adobe Flash Player 12 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 12.0.0.77 - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 12.0.0.77 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated) AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4355 - AVG Technologies) AVG 2014 (Version: 14.0.3882 - AVG Technologies) Hidden AVG 2014 (Version: 14.0.4355 - AVG Technologies) Hidden Battle.net (HKLM\...\Battle.net) (Version: - Blizzard Entertainment) Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 15.0.7.2 - Broadcom Corporation) Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 15.0.7.1 - Broadcom Corporation) D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden Diablo III (HKLM\...\Diablo III) (Version: - Blizzard Entertainment) Hearthstone (HKLM\...\Hearthstone) (Version: - Blizzard Entertainment) Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation) IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.37 - Irfan Skiljan) Junk Mail filter update (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden League of Legends (HKLM\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (Version: 3.0.1 - Riot Games ) Hidden ManyCam 4.0.63 (HKLM\...\ManyCam) (Version: 4.0.63 - Visicom Media Inc.) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 28.0 (x86 de) (HKLM\...\Mozilla Firefox 28.0 (x86 de)) (Version: 28.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 28.0 - Mozilla) MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (Version: 16.4.1108.0727 - Microsoft) Hidden OpenOffice 4.0.1 (HKLM\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) PokerStars.eu (HKLM\...\PokerStars.eu) (Version: - PokerStars.eu) South Park™: The Stick of Truth™ (HKLM\...\Steam App 213670) (Version: - Obsidian Entertainment) Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.) Steam (HKLM\...\Steam) (Version: - Valve Corporation) TuneUp Utilities 2014 (de-DE) (Version: 14.0.1000.275 - TuneUp Software) Hidden TuneUp Utilities 2014 (HKLM\...\TuneUp Utilities) (Version: 14.0.1000.275 - TuneUp Software) TuneUp Utilities 2014 (Version: 14.0.1000.275 - TuneUp Software) Hidden Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Windows Live Communications Platform (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3522.0110 - Microsoft Corporation) Windows Live Essentials (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Mail (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Photo Common (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live PIMT Platform (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live SOXE (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live UX Platform (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Writer (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Writer Resources (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden WinRAR 5.10 beta 2 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.10.2 - win.rar GmbH) ==================== Restore Points ========================= 18-04-2014 16:03:25 TuneUp Utilities 2014 wird installiert Hosts file not detected in the default directory ==================== Scheduled Tasks (whitelisted) ============= Task: {01017326-F24B-435C-8585-C8F0326D3412} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe Task: {170570AA-9D11-4E5B-8D7E-673589651E27} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe Task: {39CEE8F4-ED28-492B-A2B0-A0DB5850A74B} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files\TuneUp Utilities 2014\OneClick.exe [2014-03-20] (TuneUp Software) Task: {90396E75-7BBC-4191-BA6C-7074800841D3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-12] (Adobe Systems Incorporated) Task: {E071B1A8-C2AE-4D8E-B9F5-BA52211C9043} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe Task: {E55AA914-1C7C-426A-B94B-9423837E8934} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-12-21] (Adobe Systems Incorporated) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2014-03-23 05:44 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll 2014-03-23 05:44 - 2013-05-16 11:55 - 00113496 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-03-23 05:44 - 2013-05-16 11:55 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl 2014-03-23 05:44 - 2013-05-16 11:55 - 00161112 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-03-23 05:44 - 2012-04-03 18:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2014-03-20 14:44 - 2014-03-20 14:44 - 00568120 _____ () C:\Program Files\TuneUp Utilities 2014\avgreplibx.dll 2014-03-20 03:17 - 2014-03-20 03:17 - 03642480 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Netzwerkcontroller Description: Netzwerkcontroller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (04/18/2014 04:30:39 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: SDTray.exe, Version: 2.1.21.129, Zeitstempel: 0x51f0ed9e Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000 ID des fehlerhaften Prozesses: 0x1078 Startzeit der fehlerhaften Anwendung: 0xSDTray.exe0 Pfad der fehlerhaften Anwendung: SDTray.exe1 Pfad des fehlerhaften Moduls: SDTray.exe2 Berichtskennung: SDTray.exe3 Error: (04/10/2014 05:14:24 PM) (Source: BugSplat) (User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/09/2014 08:41:59 PM) (Source: BugSplat) (User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/09/2014 08:15:06 PM) (Source: BugSplat) (User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/08/2014 03:26:37 PM) (Source: BugSplat) (User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/08/2014 01:30:42 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (04/08/2014 08:54:41 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.1.7601.17567, Zeitstempel: 0x4d6727a7 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x063a0fef ID des fehlerhaften Prozesses: 0xd1c Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 Error: (04/07/2014 10:18:44 PM) (Source: BugSplat) (User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/06/2014 02:31:11 PM) (Source: Application Hang) (User: ) Description: Programm OneClick.exe, Version 14.0.1001.295 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 3560 Startzeit: 01cf51399676f2b9 Endzeit: 2844 Anwendungspfad: C:\Program Files\AVG\AVG PC TuneUp\OneClick.exe Berichts-ID: 2e9db699-bd87-11e3-ba4e-68942358c966 Error: (04/06/2014 04:19:58 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 28.0.0.5186, Zeitstempel: 0x53240e37 Name des fehlerhaften Moduls: xul.dll, Version: 28.0.0.5186, Zeitstempel: 0x53240e04 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00184729 ID des fehlerhaften Prozesses: 0x3488 Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0 Pfad der fehlerhaften Anwendung: firefox.exe1 Pfad des fehlerhaften Moduls: firefox.exe2 Berichtskennung: firefox.exe3 System errors: ============= Error: (04/19/2014 01:23:22 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst lmhosts erreicht. Error: (04/19/2014 10:52:52 AM) (Source: Server) (User: ) Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{9142A077-4E62-4396-9E04-485F96D7E296} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden. Error: (04/18/2014 06:09:19 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (04/18/2014 06:09:16 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (04/18/2014 05:10:50 AM) (Source: bowser) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "ANDORON", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{9142A077-4E62-4396-9E04-485F96D7E2-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (04/18/2014 01:31:41 AM) (Source: bowser) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "ANDORON", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{9142A077-4E62-4396-9E04-485F96D7E2-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (04/17/2014 03:04:45 AM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (04/17/2014 03:04:41 AM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (04/16/2014 00:37:04 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (04/16/2014 00:37:01 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Microsoft Office Sessions: ========================= Error: (04/18/2014 04:30:39 PM) (Source: Application Error)(User: ) Description: SDTray.exe2.1.21.12951f0ed9eunknown0.0.0.000000000c000000500000000107801cf596267d69206C:\Program Files\Spybot - Search & Destroy 2\SDTray.exeunknown0312a04b-c706-11e3-b86d-68942358c966 Error: (04/10/2014 05:14:24 PM) (Source: BugSplat)(User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/09/2014 08:41:59 PM) (Source: BugSplat)(User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/09/2014 08:15:06 PM) (Source: BugSplat)(User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/08/2014 03:26:37 PM) (Source: BugSplat)(User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/08/2014 01:30:42 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (04/08/2014 08:54:41 AM) (Source: Application Error)(User: ) Description: Explorer.EXE6.1.7601.175674d6727a7unknown0.0.0.000000000c0000005063a0fefd1c01cf4e6bf745d942C:\Windows\Explorer.EXEunknowna83432a3-beea-11e3-ba4e-68942358c966 Error: (04/07/2014 10:18:44 PM) (Source: BugSplat)(User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/06/2014 02:31:11 PM) (Source: Application Hang)(User: ) Description: OneClick.exe14.0.1001.295356001cf51399676f2b92844C:\Program Files\AVG\AVG PC TuneUp\OneClick.exe2e9db699-bd87-11e3-ba4e-68942358c966 Error: (04/06/2014 04:19:58 AM) (Source: Application Error)(User: ) Description: firefox.exe28.0.0.518653240e37xul.dll28.0.0.518653240e04c000000500184729348801cf50db437787c7C:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Mozilla Firefox\xul.dllf27e0b20-bd31-11e3-ba4e-68942358c966 ==================== Memory info =========================== Percentage of memory in use: 59% Total physical RAM: 2388.36 MB Available physical RAM: 964.89 MB Total Pagefile: 4814.54 MB Available Pagefile: 3084.31 MB Total Virtual: 2047.88 MB Available Virtual: 1868.91 MB ==================== Drives ================================ Drive c: (BOOT) (Fixed) (Total:275.41 GB) (Free:225.82 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (RECOVER) (Fixed) (Total:22.66 GB) (Free:12.3 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 19F509E3) Partition 1: (Not Active) - (Size=23 GB) - (Type=OF Extended) Partition 2: (Active) - (Size=275 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
19.04.2014, 19:50 | #4 |
/// the machine /// TB-Ausbilder | Pc sehr langsam geworden und hoher Ping bei spielen hi, Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.04.2014, 20:09 | #5 |
| Pc sehr langsam geworden und hoher Ping bei spielenCode:
ATTFilter ComboFix 14-04-19.01 - LordDrygin 19.04.2014 20:59:27.1.8 - x86 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.2388.1351 [GMT 2:00] ausgeführt von:: c:\users\LordDrygin\Desktop\ComboFix.exe AV: AVG AntiVirus Free Edition 2014 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} SP: AVG AntiVirus Free Edition 2014 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664} SP: Spybot - Search and Destroy *Disabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . D:\Autorun.inf . . ((((((((((((((((((((((( Dateien erstellt von 2014-03-19 bis 2014-04-19 )))))))))))))))))))))))))))))) . . 2014-05-06 06:38 . 2012-02-17 05:34 826880 ----a-w- c:\windows\system32\rdpcore.dll 2014-05-06 06:38 . 2012-02-17 04:13 24576 ----a-w- c:\windows\system32\drivers\tdtcp.sys 2014-05-06 06:38 . 2010-11-20 10:21 18432 ----a-w- c:\windows\system32\drivers\tdpipe.sys 2014-05-06 06:29 . 2014-05-06 06:29 -------- d--h--w- c:\programdata\Common Files 2014-05-06 06:29 . 2014-04-19 16:19 -------- d-----w- c:\programdata\MFAData 2014-05-06 06:26 . 2012-06-02 22:19 53784 ----a-w- c:\windows\system32\wuauclt.exe 2014-05-06 06:26 . 2012-06-02 22:19 45080 ----a-w- c:\windows\system32\wups2.dll 2014-05-06 06:26 . 2012-06-02 22:19 1933848 ----a-w- c:\windows\system32\wuaueng.dll 2014-05-06 06:26 . 2012-06-02 22:12 2422272 ----a-w- c:\windows\system32\wucltux.dll 2014-05-06 06:25 . 2012-06-02 22:19 35864 ----a-w- c:\windows\system32\wups.dll 2014-05-06 06:25 . 2012-06-02 22:19 577048 ----a-w- c:\windows\system32\wuapi.dll 2014-05-06 06:25 . 2012-06-02 22:12 88576 ----a-w- c:\windows\system32\wudriver.dll 2014-05-06 06:25 . 2012-06-02 13:19 171904 ----a-w- c:\windows\system32\wuwebv.dll 2014-05-06 06:25 . 2012-06-02 13:12 33792 ----a-w- c:\windows\system32\wuapp.exe 2014-05-06 06:25 . 2014-05-06 06:26 -------- d-----w- c:\program files\DriverTuner 2014-05-06 06:18 . 2014-03-08 06:49 -------- d-----w- c:\program files\Intel 2014-05-06 06:18 . 2012-01-31 08:22 53248 ----a-w- c:\windows\system32\CSVer.dll 2014-05-06 06:17 . 2014-05-06 06:20 -------- d-----w- c:\program files\Broadcom 2014-05-06 06:17 . 2014-05-06 06:17 -------- d-----w- c:\windows\Downloaded Installations 2014-05-06 06:08 . 2014-04-18 16:07 -------- d-sh--w- c:\windows\Installer 2014-05-05 16:19 . 2014-04-18 17:15 -------- d-----w- c:\windows\Panther 2014-05-05 15:51 . 2014-04-08 06:49 -------- d-----w- c:\windows\system32\wbem\Performance 2014-04-19 19:05 . 2014-04-19 19:05 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-04-19 11:37 . 2014-04-19 11:47 -------- d-----w- C:\FRST 2014-04-18 16:35 . 2014-04-18 16:35 -------- d-----w- c:\programdata\Avg_Update_0414b 2014-04-18 16:07 . 2014-03-20 12:44 36664 ----a-w- c:\windows\system32\TURegOpt.exe 2014-04-18 16:07 . 2014-03-20 12:44 25400 ----a-w- c:\windows\system32\authuitu.dll 2014-04-18 16:05 . 2014-04-18 16:07 -------- d-----w- c:\program files\TuneUp Utilities 2014 2014-04-18 16:02 . 2014-04-18 16:12 -------- d-----w- c:\programdata\TuneUp Software 2014-04-18 16:02 . 2014-04-18 16:21 -------- d-sh--w- c:\programdata\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-04-10 01:00 . 2014-03-06 07:13 32256 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll 2014-04-09 16:12 . 2014-02-04 02:07 149440 ----a-w- c:\windows\system32\drivers\storport.sys 2014-04-09 16:12 . 2014-02-04 02:07 234432 ----a-w- c:\windows\system32\drivers\msiscsi.sys 2014-04-09 16:12 . 2014-02-04 02:07 27072 ----a-w- c:\windows\system32\drivers\Diskdump.sys 2014-04-09 16:12 . 2014-02-04 02:00 2048 ----a-w- c:\windows\system32\iologmsg.dll 2014-04-09 16:12 . 2014-01-24 02:18 1212352 ----a-w- c:\windows\system32\drivers\ntfs.sys 2014-04-08 13:56 . 2014-04-08 13:56 -------- d-----w- c:\program files\AVG 2014-04-08 12:54 . 2014-04-11 21:02 -------- d-----w- c:\program files\PokerStars.EU 2014-04-07 18:07 . 2014-04-07 18:07 -------- d-----w- c:\program files\Microsoft Silverlight 2014-03-30 19:13 . 2014-03-30 19:13 -------- d-----w- c:\windows\PCHEALTH 2014-03-30 19:13 . 2014-03-30 19:14 -------- d-----w- c:\program files\Windows Live 2014-03-30 19:09 . 2014-03-30 19:09 -------- d-----w- c:\program files\Common Files\Windows Live 2014-03-29 02:30 . 2009-03-16 13:18 235352 ----a-w- c:\windows\system32\xactengine3_4.dll 2014-03-29 02:29 . 2005-05-26 14:34 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll 2014-03-29 01:22 . 2014-03-30 01:30 -------- d-----w- c:\program files\Common Files\Steam 2014-03-29 01:22 . 2014-04-18 16:21 -------- d-----w- c:\program files\Steam 2014-03-24 14:40 . 2014-03-24 14:41 -------- d-----w- c:\program files\Common Files\Adobe 2014-03-23 03:44 . 2013-09-20 09:49 18968 ----a-w- c:\windows\system32\sdnclean.exe 2014-03-23 03:44 . 2014-03-23 12:47 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2014-03-23 03:44 . 2014-03-23 03:45 -------- d-----w- c:\program files\Spybot - Search & Destroy 2 . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-03-30 19:13 . 2012-07-17 12:37 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2014-03-12 17:48 . 2014-03-08 06:11 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2014-03-12 17:48 . 2014-03-08 06:11 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2014-03-10 09:33 . 2014-03-10 09:33 194048 ----a-w- c:\windows\system32\elshyph.dll 2014-03-10 09:33 . 2014-03-10 09:33 645120 ----a-w- c:\windows\system32\jsIntl.dll 2014-03-10 09:32 . 2014-03-10 09:32 71680 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe 2014-03-10 09:32 . 2014-03-10 09:32 182272 ----a-w- c:\windows\system32\msls31.dll 2014-03-10 09:32 . 2014-03-10 09:32 62464 ----a-w- c:\windows\system32\tdc.ocx 2014-03-10 09:32 . 2014-03-10 09:32 337408 ----a-w- c:\windows\system32\html.iec 2014-03-10 09:32 . 2014-03-10 09:32 1051136 ----a-w- c:\windows\system32\mshtmlmedia.dll 2014-03-10 09:32 . 2014-03-10 09:32 24576 ----a-w- c:\windows\system32\licmgr10.dll 2014-03-10 09:32 . 2014-03-10 09:32 139264 ----a-w- c:\windows\system32\wextract.exe 2014-03-10 09:32 . 2014-03-10 09:32 151552 ----a-w- c:\windows\system32\iexpress.exe 2014-03-10 09:32 . 2014-03-10 09:32 13312 ----a-w- c:\windows\system32\mshta.exe 2014-03-10 09:32 . 2014-03-10 09:32 61952 ----a-w- c:\windows\system32\MshtmlDac.dll 2014-03-10 09:32 . 2014-03-10 09:32 36352 ----a-w- c:\windows\system32\imgutil.dll 2014-03-10 09:32 . 2014-03-10 09:32 111616 ----a-w- c:\windows\system32\IEAdvpack.dll 2014-03-10 09:31 . 2014-03-10 09:31 74240 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2014-03-10 09:31 . 2014-03-10 09:31 86016 ----a-w- c:\windows\system32\iesysprep.dll 2014-03-10 09:31 . 2014-03-10 09:31 48640 ----a-w- c:\windows\system32\mshtmler.dll 2014-03-09 11:55 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll 2014-02-17 00:32 . 2014-03-08 06:45 7947048 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{67587ED0-DDA0-45B7-833C-67AE22D9AF42}\mpengine.dll 2014-02-07 01:07 . 2014-03-13 16:17 2349056 ----a-w- c:\windows\system32\win32k.sys 2014-02-04 02:04 . 2014-03-13 16:17 1230336 ----a-w- c:\windows\system32\WindowsCodecs.dll 2014-02-04 02:04 . 2014-03-13 16:17 509440 ----a-w- c:\windows\system32\qedit.dll 2014-01-29 02:06 . 2014-03-13 16:17 381440 ----a-w- c:\windows\system32\wer.dll 2014-01-28 02:07 . 2014-03-13 16:17 185344 ----a-w- c:\windows\system32\wwansvc.dll 2014-01-25 01:02 . 2014-01-25 01:02 733184 ----a-w- c:\windows\system32\MetroIntelGenericUIFramework.dll 2014-01-25 01:02 . 2014-03-08 06:49 60416 ----a-w- c:\windows\system32\OpenCL.DLL 2014-01-25 01:02 . 2014-01-25 01:02 60416 ----a-w- c:\windows\system32\Intel_OpenCL_ICD32.dll 2014-01-25 01:02 . 2014-01-25 01:02 279000 ----a-w- c:\windows\system32\IntelCpHeciSvc.exe 2014-01-25 01:02 . 2014-01-25 01:02 265216 ----a-w- c:\windows\system32\IntelOpenCL32.dll 2014-01-25 01:02 . 2014-01-25 01:02 153600 ----a-w- c:\windows\system32\igfxCoIn_v3412.dll 2014-01-25 01:02 . 2014-01-25 01:02 877528 ----a-w- c:\windows\system32\igfxstarter.exe 2014-01-25 01:02 . 2014-01-25 01:02 308696 ----a-w- c:\windows\system32\igfxtray.exe 2014-01-25 01:02 . 2014-01-25 01:02 280064 ----a-w- c:\windows\system32\igfxTMM.dll 2014-01-25 01:02 . 2014-01-25 01:02 179712 ----a-w- c:\windows\system32\iglhcp32.dll 2014-01-25 01:02 . 2014-01-25 01:02 1123328 ----a-w- c:\windows\system32\iglhsip32.dll 2014-01-25 01:02 . 2014-01-25 01:02 9074176 ----a-w- c:\windows\system32\igfxress.dll 2014-01-25 01:02 . 2014-01-25 01:02 62464 ----a-w- c:\windows\system32\igfxsrvc.dll 2014-01-25 01:02 . 2014-01-25 01:02 502784 ----a-w- c:\windows\system32\igfxrplk.lrc 2014-01-25 01:02 . 2014-01-25 01:02 502784 ----a-w- c:\windows\system32\igfxrfra.lrc 2014-01-25 01:02 . 2014-01-25 01:02 502272 ----a-w- c:\windows\system32\igfxrrus.lrc 2014-01-25 01:02 . 2014-01-25 01:02 501760 ----a-w- c:\windows\system32\igfxrrom.lrc 2014-01-25 01:02 . 2014-01-25 01:02 501760 ----a-w- c:\windows\system32\igfxrnld.lrc 2014-01-25 01:02 . 2014-01-25 01:02 501760 ----a-w- c:\windows\system32\igfxrita.lrc 2014-01-25 01:02 . 2014-01-25 01:02 501248 ----a-w- c:\windows\system32\igfxrsky.lrc 2014-01-25 01:02 . 2014-01-25 01:02 501248 ----a-w- c:\windows\system32\igfxrptg.lrc 2014-01-25 01:02 . 2014-01-25 01:02 501248 ----a-w- c:\windows\system32\igfxrhun.lrc 2014-01-25 01:02 . 2014-01-25 01:02 501248 ----a-w- c:\windows\system32\igfxrhrv.lrc 2014-01-25 01:02 . 2014-01-25 01:02 500736 ----a-w- c:\windows\system32\igfxrsve.lrc 2014-01-25 01:02 . 2014-01-25 01:02 500736 ----a-w- c:\windows\system32\igfxrslv.lrc 2014-01-25 01:02 . 2014-01-25 01:02 500736 ----a-w- c:\windows\system32\igfxrfin.lrc 2014-01-25 01:02 . 2014-01-25 01:02 500224 ----a-w- c:\windows\system32\igfxrtrk.lrc 2014-01-25 01:02 . 2014-01-25 01:02 500224 ----a-w- c:\windows\system32\igfxrptb.lrc 2014-01-25 01:02 . 2014-01-25 01:02 499712 ----a-w- c:\windows\system32\igfxrnor.lrc 2014-01-25 01:02 . 2014-01-25 01:02 499200 ----a-w- c:\windows\system32\igfxrtha.lrc 2014-01-25 01:02 . 2014-01-25 01:02 497664 ----a-w- c:\windows\system32\igfxrheb.lrc 2014-01-25 01:02 . 2014-01-25 01:02 493056 ----a-w- c:\windows\system32\igfxrjpn.lrc 2014-01-25 01:02 . 2014-01-25 01:02 491520 ----a-w- c:\windows\system32\igfxrkor.lrc 2014-01-25 01:02 . 2014-01-25 01:02 394200 ----a-w- c:\windows\system32\igfxsrvc.exe 2014-01-25 01:02 . 2014-01-25 01:02 503296 ----a-w- c:\windows\system32\igfxrell.lrc 2014-01-25 01:02 . 2014-01-25 01:02 502784 ----a-w- c:\windows\system32\igfxresn.lrc 2014-01-25 01:02 . 2014-01-25 01:02 502272 ----a-w- c:\windows\system32\igfxrdeu.lrc 2014-01-25 01:02 . 2014-01-25 01:02 501248 ----a-w- c:\windows\system32\igfxrcsy.lrc 2014-01-25 01:02 . 2014-01-25 01:02 499712 ----a-w- c:\windows\system32\igfxrdan.lrc 2014-01-25 01:02 . 2014-01-25 01:02 497152 ----a-w- c:\windows\system32\igfxrara.lrc 2014-01-25 01:02 . 2014-01-25 01:02 493056 ----a-w- c:\windows\system32\igfxdev.dll 2014-01-25 01:02 . 2014-01-25 01:02 489472 ----a-w- c:\windows\system32\igfxrcht.lrc 2014-01-25 01:02 . 2014-01-25 01:02 488960 ----a-w- c:\windows\system32\igfxrchs.lrc 2014-01-25 01:02 . 2014-01-25 01:02 451584 ----a-w- c:\windows\system32\igfxpph.dll 2014-01-25 01:02 . 2014-01-25 01:02 3558912 ----a-w- c:\windows\system32\igdusc32.dll 2014-01-25 01:02 . 2014-01-25 01:02 346624 ----a-w- c:\windows\system32\igfxrenu.lrc 2014-01-25 01:02 . 2014-01-25 01:02 316376 ----a-w- c:\windows\system32\igfxext.exe 2014-01-25 01:02 . 2014-01-25 01:02 315864 ----a-w- c:\windows\system32\igfxpers.exe 2014-01-25 01:02 . 2014-01-25 01:02 25600 ----a-w- c:\windows\system32\igfxexps.dll 2014-01-25 01:02 . 2014-01-25 01:02 230912 ----a-w- c:\windows\system32\igfxcpl.cpl 2014-01-25 01:02 . 2014-01-25 01:02 205312 ----a-w- c:\windows\system32\igfxdo.dll 2014-01-25 01:02 . 2014-01-25 01:02 1815040 ----a-w- c:\windows\system32\igfxcmjit32.dll 2014-01-25 01:02 . 2014-01-25 01:02 137728 ----a-w- c:\windows\system32\igfxcmrt32.dll 2014-01-25 01:02 . 2014-01-25 01:02 133120 ----a-w- c:\windows\system32\igfx11cmrt32.dll 2014-01-25 01:02 . 2014-01-25 01:02 12288 ----a-w- c:\windows\system32\IGFXDEVLib.dll 2014-01-25 01:02 . 2014-01-25 01:02 3379712 ----a-w- c:\windows\system32\drivers\igdkmd32.sys 2014-01-25 01:02 . 2014-01-25 01:02 299520 ----a-w- c:\windows\system32\igdmd32.dll 2014-01-25 01:02 . 2014-01-25 01:02 2896384 ----a-w- c:\windows\system32\igdrcl32.dll 2014-01-25 01:02 . 2014-01-25 01:02 18629632 ----a-w- c:\windows\system32\igdumdim32.dll 2014-01-25 01:02 . 2014-01-25 01:02 290816 ----a-w- c:\windows\system32\igdbcl32.dll 2014-01-25 01:02 . 2014-01-25 01:02 20954112 ----a-w- c:\windows\system32\igdfcl32.dll 2014-01-25 01:02 . 2014-01-25 01:02 20433408 ----a-w- c:\windows\system32\igd10iumd32.dll 2014-01-25 01:02 . 2014-01-25 01:02 182272 ----a-w- c:\windows\system32\igdde32.dll 2014-01-25 01:02 . 2014-01-25 01:02 142848 ----a-w- c:\windows\system32\igdail32.dll 2014-01-25 01:02 . 2014-01-25 01:02 6216192 ----a-w- c:\windows\system32\ig7icd32.dll 2014-01-25 01:02 . 2014-01-25 01:02 94208 ----a-w- c:\windows\system32\IccLibDll.dll 2014-01-25 01:02 . 2014-01-25 01:02 755160 ----a-w- c:\windows\system32\GfxUIHotKeyMenu.exe 2014-01-25 01:02 . 2014-01-25 01:02 319448 ----a-w- c:\windows\system32\hkcmd.exe 2014-01-25 01:02 . 2014-01-25 01:02 185344 ----a-w- c:\windows\system32\hccutils.dll 2014-01-25 01:02 . 2014-01-25 01:02 7597016 ----a-w- c:\windows\system32\GfxUIEx.exe 2014-01-25 01:02 . 2014-01-25 01:02 529880 ----a-w- c:\windows\system32\DPTopologyApp.exe 2014-01-25 01:02 . 2014-01-25 01:02 397272 ----a-w- c:\windows\system32\CustomModeApp.exe 2014-01-25 01:02 . 2014-01-25 01:02 2585088 ----a-w- c:\windows\system32\GfxRes.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ManyCam"="c:\program files\ManyCam\ManyCam.exe" [2014-03-05 5753832] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AVG_UI"="c:\program files\AVG\AVG2014\avgui.exe" [2014-03-19 4971024] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "SPReview"="c:\windows\System32\SPReview\SPReview.exe" [2014-03-09 280576] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean.exe . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "Logitech Download Assistant"=c:\windows\system32\rundll32.exe c:\windows\System32\LogiLDA.dll,LogiFetch "HotKeysCmds"="c:\windows\system32\hkcmd.exe" "IgfxTray"="c:\windows\system32\igfxtray.exe" "Persistence"="c:\windows\system32\igfxpers.exe" "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "SDTray"="c:\program files\Spybot - Search & Destroy 2\SDTray.exe" . R2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2014\avgidsagent.exe [2014-02-23 3782672] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2014-03-06 108032] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 14848] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2013-10-02 49152] S0 AVGIDSHX;AVGIDSHX;c:\windows\system32\DRIVERS\avgidshx.sys [2013-11-25 149272] S0 Avglogx;AVG Logging Driver;c:\windows\system32\DRIVERS\avglogx.sys [2013-10-31 222520] S0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx86.sys [2013-09-09 27448] S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2013-09-05 25376] S1 Avgdiskx;AVG Disk Driver;c:\windows\system32\DRIVERS\avgdiskx.sys [2013-11-25 120600] S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdriverx.sys [2013-11-25 210712] S1 AVGIDSShim;AVGIDSShim;c:\windows\system32\DRIVERS\avgidsshimx.sys [2014-01-19 22808] S1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx86.sys [2013-10-31 176952] S1 Avgtdix;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdix.sys [2013-08-01 193848] S2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2014\avgwdsvc.exe [2013-09-23 348008] S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-10-15 3921880] S2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-09-20 1042272] S2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-09-13 171416] S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe [2014-03-20 1773368] S3 b57xdbd;Broadcom xD Picture Bus Driver Service;c:\windows\system32\DRIVERS\b57xdbd.sys [2011-11-04 60968] S3 b57xdmp;Broadcom xD Picture vstorp client drv;c:\windows\system32\DRIVERS\b57xdmp.sys [2011-11-04 17960] S3 bScsiMSx;bScsiMSx;c:\windows\system32\DRIVERS\bScsiMSx.sys [2011-09-02 43560] S3 bScsiSDx;bScsiSDx;c:\windows\system32\DRIVERS\bScsiSDx.sys [2012-05-03 47104] S3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [2012-01-18 370728] S3 ManyCam;ManyCam Virtual Webcam;c:\windows\system32\DRIVERS\mcvidrv.sys [2013-11-27 40736] S3 mcaudrv_simple;ManyCam Virtual Microphone;c:\windows\system32\drivers\mcaudrv.sys [2013-12-06 29728] S3 MEI;Intel(R) Management Engine Interface ;c:\windows\system32\DRIVERS\HECI.sys [2012-07-17 55104] S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys [2014-02-10 12320] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - TUNEUPUTILITIESDRV . Inhalt des "geplante Tasks" Ordners . 2014-04-19 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-08 17:48] . . ------- Zusätzlicher Suchlauf ------- . IE: {{07BA1DA9-F501-4796-8728-74D1B91A6CD5} - c:\program files\PokerStars.EU\PokerStarsUpdate.exe TCP: DhcpNameServer = 192.168.2.1 FF - ProfilePath - c:\users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default\ FF - user.js: network.http.max-persistent-connections-per-server - 4 FF - user.js: nglayout.initialpaint.delay - 600 FF - user.js: content.notify.interval - 600000 FF - user.js: content.max.tokenizing.time - 1800000 FF - user.js: content.switch.threshold - 600000 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Notify-SDWinLogon - SDWinLogon.dll . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-817323750-2849227344-2509689014-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice] @Denied: (2) (LocalSystem) "Progid"="WindowsLiveMail.Email.1" . [HKEY_USERS\S-1-5-21-817323750-2849227344-2509689014-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice] @Denied: (2) (LocalSystem) "Progid"="WindowsLiveMail.VCard.1" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2014-04-19 21:07:03 ComboFix-quarantined-files.txt 2014-04-19 19:07 . Vor Suchlauf: 26 Verzeichnis(se), 242.008.088.576 Bytes frei Nach Suchlauf: 33 Verzeichnis(se), 241.986.306.048 Bytes frei . - - End Of File - - EC60268776834BCA3361946F85E8A179 A36C5E4F47E84449FF07ED3517B43A31 Was für ein Neustart? sollte ich den Pc danach neustarten? |
20.04.2014, 18:03 | #6 |
/// the machine /// TB-Ausbilder | Pc sehr langsam geworden und hoher Ping bei spielen Nee, nur wenn Du diesen Fehler haben solltest Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ --> Pc sehr langsam geworden und hoher Ping bei spielen |
21.04.2014, 13:19 | #7 |
| Pc sehr langsam geworden und hoher Ping bei spielen Puh also zu aller erst habe ich wohl Mist gebaut. Hatte gesehen, dass ich durch AVG keine firewall mehr hatte, weil die testversion abgelaufen ist und habe dann nach der besten kostenlose internetsecurity gesucht, die direkt ne firewall dabei hatte. Dies war laut Chip.de Comdodo. Scheint eigentlich ganz in Ordnung zu sein, ABER hat mir auch ne Menge anderer Müll draufgetan. Obwohl ich überall die Häkchen gelöscht habe. Ich werde nichts mehr installieren ohne dass ich dazu aufgefordert werde Zweitens gab es beim Remover mehrere Probleme und er konnte nichts machen dazu später. Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 21.04.2014 Suchlauf-Zeit: 05:40:43 Logdatei: mbam.txt Administrator: Ja Version: 2.00.1.1004 Malware Datenbank: v2014.04.21.02 Rootkit Datenbank: v2014.03.27.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Chameleon: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x86 Dateisystem: NTFS Benutzer: LordDrygin Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 229342 Verstrichene Zeit: 13 Min, 45 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Shuriken: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 0 (No malicious items detected) Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 0 (No malicious items detected) Ordner: 0 (No malicious items detected) Dateien: 0 (No malicious items detected) Physische Sektoren: 0 (No malicious items detected) (end) Code:
ATTFilter # AdwCleaner v3.102 - Bericht erstellt am 21/04/2014 um 13:21:29 # Aktualisiert 21/04/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (32 bits) # Benutzername : LordDrygin - LORDDRYGIN-PC # Gestartet von : C:\Users\LordDrygin\Downloads\AdwCleaner.exe # Option : Suchen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Datei Gefunden : C:\Users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default\user.js Ordner Gefunden C:\DVDVideoSoft Ordner Gefunden C:\Windows\system32\AI_RecycleBin ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gefunden : HKCU\Software\OCS Schlüssel Gefunden : HKLM\Software\AVG Secure Search Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1EC9510D-A439-4950-9399-B6399EDF9EA7} ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17041 -\\ Mozilla Firefox v28.0 (de) [ Datei : C:\Users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default\prefs.js ] Zeile gefunden : user_pref("extensions.trusted-ads.ExLst", "{\"u\":{\"v\":\"1.74\",\"d\":\"041114\"},\"h\":{\"pogo.com\":{\"p\":[{\"e\":\"/.*/\",\"r\":[\"/connect\\\\.facebook\\\\.net\\\\/en_US\\\\/all\\\\.js$/i\"]}]}[...] Zeile gefunden : user_pref("extensions.trusted-ads.serpInject", "{\"u\":{\"v\":\"2.70\",\"d\":\"040814\"},\"l\":\"hxxp://search.adtrustmedia.com/search_safecontent.php\",\"e\":[{\"u\":\"hxxp://ads.adtrustmedia.com/con[...] Zeile gefunden : user_pref("extensions.trusted-ads.serp_mywebsearch", "\"%2F*!%20serp-mywebsearch%20-%20v0.1.10%20-%202014-04-07%2018%3A21%3A58%20*%2F%0D%0Avar%20u%20%3D%20%7B%7D%3B%0A%0Avar%20Util%20%3D%20%7B%0A%09de[...] ************************* AdwCleaner[R0].txt - [1777 octets] - [21/04/2014 13:21:29] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [1837 octets] ########## Code:
ATTFilter # AdwCleaner v3.102 - Bericht erstellt am 21/04/2014 um 13:22:48 # Aktualisiert 21/04/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (32 bits) # Benutzername : LordDrygin - LORDDRYGIN-PC # Gestartet von : C:\Users\LordDrygin\Downloads\AdwCleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\DVDVideoSoft Ordner Gelöscht : C:\Windows\system32\AI_RecycleBin Datei Gelöscht : C:\Users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default\user.js ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1EC9510D-A439-4950-9399-B6399EDF9EA7} Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKLM\Software\AVG Secure Search ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17041 -\\ Mozilla Firefox v28.0 (de) [ Datei : C:\Users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default\prefs.js ] Zeile gelöscht : user_pref("extensions.trusted-ads.ExLst", "{\"u\":{\"v\":\"1.74\",\"d\":\"041114\"},\"h\":{\"pogo.com\":{\"p\":[{\"e\":\"/.*/\",\"r\":[\"/connect\\\\.facebook\\\\.net\\\\/en_US\\\\/all\\\\.js$/i\"]}]}[...] Zeile gelöscht : user_pref("extensions.trusted-ads.serpInject", "{\"u\":{\"v\":\"2.70\",\"d\":\"040814\"},\"l\":\"hxxp://search.adtrustmedia.com/search_safecontent.php\",\"e\":[{\"u\":\"hxxp://ads.adtrustmedia.com/con[...] Zeile gelöscht : user_pref("extensions.trusted-ads.serp_mywebsearch", "\"%2F*!%20serp-mywebsearch%20-%20v0.1.10%20-%202014-04-07%2018%3A21%3A58%20*%2F%0D%0Avar%20u%20%3D%20%7B%7D%3B%0A%0Avar%20Util%20%3D%20%7B%0A%09de[...] ************************* AdwCleaner[R0].txt - [1917 octets] - [21/04/2014 13:21:29] AdwCleaner[S0].txt - [1846 octets] - [21/04/2014 13:22:48] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1906 octets] ########## Jetzt zu JRT Kam immer wieder Error saving file c:\Windows\Erunt\JRT\BCD! Continue with next file? Zum Ausführen waren nicht genug Arbeitsspeicher vorhanden. Habe in taskmanager dann noch Hintergrundsprogramme geschlossen und versucht JRT neuzustarten, aber...trotz Adminrechte... Could not overwrite C:\Users\LORDDR~1\Appdata\Local\Temp\Jrt\ask.bat Bitte um Hilfe und schon mal ein herzlichsten dankeschön für die schnellen Antworten und Hilfe Ps: Wie bekomme ich eigentlich D:\recover gelöscht? Die Festplatte ist nicht von mir, sondern habe ich von einen Bekannten geschenkt bekommen und den Unsinn darauf möchte ich eigentlich nicht mehr haben. |
22.04.2014, 12:18 | #8 |
/// the machine /// TB-Ausbilder | Pc sehr langsam geworden und hoher Ping bei spielen D kannste einfach formatieren. ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.04.2014, 13:12 | #9 |
| Pc sehr langsam geworden und hoher Ping bei spielen Es startet nicht. Can not get upgraded. Is Proxy configured? Was bedeutet dies? Habe Comodo einfach mit rechtsklick beendet. Reicht das aus? |
22.04.2014, 19:11 | #10 |
/// the machine /// TB-Ausbilder | Pc sehr langsam geworden und hoher Ping bei spielen Das liegt nicht daran. Lass ESET weg und mach statt dessen nen Vollscan mit deinem AV PRogramm.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.04.2014, 20:50 | #11 |
| Pc sehr langsam geworden und hoher Ping bei spielen sry dass ich nochmal nachfrage, aber was genau soll ich es jetzt dann in den thread alles posten? Code:
ATTFilter Results of screen317's Security Check version 0.99.82 Windows 7 Service Pack 1 x86 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Spybot - Search & Destroy TuneUp Utilities 2014 TuneUp Utilities 2014 (de-DE) TuneUp Utilities 2014 Adobe Flash Player 12.0.0.77 Flash Player out of Date! Adobe Reader XI Mozilla Firefox (28.0) ````````Process Check: objlist.exe by Laurent```````` `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 22-04-2014 Ran by LordDrygin (administrator) on LORDDRYGIN-PC on 22-04-2014 21:38:28 Running from C:\Users\LordDrygin\Downloads Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe (TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (Comodo Security Solutions, Inc.) C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe (TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TUDefragBackend32.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cistray.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe (Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [PrivDogService] => C:\Program Files\AdTrustMedia\PrivDog\2.1.0.22\trustedadssvc.exe [662696 2014-04-18] (AdTrustMedia) HKLM\...\Run: [COMODO Internet Security] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1225944 2014-03-25] (COMODO) HKLM\...\Run: [tvncontrol] => C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe [2327248 2014-03-20] (Comodo Security Solutions, Inc.) HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [280576 2014-03-09] (Microsoft Corporation) HKU\S-1-5-21-817323750-2849227344-2509689014-1000\...\Run: [ManyCam] => C:\Program Files\ManyCam\ManyCam.exe [5753832 2014-03-05] (Visicom Media Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x06D333CDF368CF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de SearchScopes: HKLM - DefaultScope value is missing. BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: PrivDog Extension - {FB16E5C3-A9E2-47A2-8EFC-319E775E62CC} - C:\Program Files\AdTrustMedia\PrivDog\2.1.0.22\trustedads.dll (AdTrustMedia) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{9142A077-4E62-4396-9E04-485F96D7E296}: [NameServer]156.154.70.25,156.154.71.25 FireFox: ======== FF ProfilePath: C:\Users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: NoScript - C:\Users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-03-09] FF Extension: Adblock Plus - C:\Users\LordDrygin\AppData\Roaming\Mozilla\Firefox\Profiles\f3xusbjb.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-03-09] ========================== Services (Whitelisted) ================= S2 CLPSLauncher; C:\Program Files\Common Files\COMODO\launcher_service.exe [70352 2014-03-20] (Comodo Security Solutions, Inc.) R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5306504 2014-04-16] (COMODO) S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [1663192 2014-03-25] (COMODO) S3 cphs; C:\Windows\system32\IntelCpHeciSvc.exe [279000 2014-01-25] (Intel Corporation) S2 DragonUpdater; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2135232 2014-01-28] () R2 GeekBuddyRSP; C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe [2327248 2014-03-20] (Comodo Security Solutions, Inc.) R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) R2 TuneUp.UtilitiesSvc; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe [1773368 2014-03-20] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== R3 b57xdbd; C:\Windows\System32\DRIVERS\b57xdbd.sys [60968 2011-11-04] (Broadcom Corporation) R3 b57xdmp; C:\Windows\System32\DRIVERS\b57xdmp.sys [17960 2011-11-04] (Broadcom Corporation) R3 bScsiMSx; C:\Windows\System32\DRIVERS\bScsiMSx.sys [43560 2011-09-02] (Broadcom Corporation) R3 bScsiSDx; C:\Windows\System32\DRIVERS\bScsiSDx.sys [47104 2012-05-03] (Broadcom Corporation) R1 CFRMD; C:\Windows\System32\DRIVERS\CFRMD.sys [35064 2013-05-07] (Windows (R) Win 7 DDK provider) R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [20072 2014-04-16] (COMODO) R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [607168 2014-04-16] (COMODO) R1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [43728 2014-04-16] (COMODO) R1 HMD; C:\Windows\System32\DRIVERS\hmd.sys [15400 2013-10-07] () R1 inspect; C:\Windows\System32\DRIVERS\inspect.sys [92656 2014-04-16] (COMODO) R3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [40736 2013-11-27] (Visicom Media Inc.) R3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv.sys [29728 2013-12-06] (Visicom Media Inc.) R3 MEI; C:\Windows\System32\DRIVERS\HECI.sys [55104 2012-07-17] (Intel Corporation) R0 nvpciflt; C:\Windows\System32\DRIVERS\nvpciflt.sys [25376 2013-09-05] (NVIDIA Corporation) R3 TuneUpUtilitiesDrv; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys [12320 2014-02-10] (TuneUp Software) U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\Users\LORDDR~1\AppData\Local\Temp\catchme.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-06 08:38 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2014-05-06 08:38 - 2012-02-17 06:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2014-05-06 08:38 - 2010-11-20 12:21 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdpipe.sys 2014-05-06 08:33 - 2014-04-18 18:06 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\TuneUp Software 2014-05-06 08:29 - 2014-05-06 08:29 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\MFAData 2014-05-06 08:29 - 2014-04-19 21:28 - 00000000 ____D () C:\ProgramData\MFAData 2014-05-06 08:26 - 2012-06-03 00:19 - 01933848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-05-06 08:26 - 2012-06-03 00:19 - 00053784 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-05-06 08:26 - 2012-06-03 00:19 - 00045080 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-05-06 08:26 - 2012-06-03 00:12 - 02422272 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-05-06 08:25 - 2014-05-06 08:26 - 00000000 ____D () C:\Program Files\DriverTuner 2014-05-06 08:25 - 2012-06-03 00:19 - 00577048 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-05-06 08:25 - 2012-06-03 00:19 - 00035864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-05-06 08:25 - 2012-06-03 00:12 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-05-06 08:25 - 2012-06-02 15:19 - 00171904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-05-06 08:25 - 2012-06-02 15:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-05-06 08:18 - 2014-05-06 08:18 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_b57xdbd_01009.Wdf 2014-05-06 08:18 - 2014-03-08 08:49 - 00000000 ____D () C:\Program Files\Intel 2014-05-06 08:18 - 2012-01-31 10:22 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\system32\CSVer.dll 2014-05-06 08:17 - 2014-05-06 08:20 - 00000000 ____D () C:\Program Files\Broadcom 2014-05-06 08:17 - 2014-05-06 08:17 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-05-06 08:12 - 2014-05-06 08:12 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\DriverTuner 2014-05-05 18:19 - 2014-04-18 19:15 - 00000000 ____D () C:\Windows\Panther 2014-05-05 17:54 - 2014-05-05 17:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-05-05 17:52 - 2014-04-08 08:49 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-05 17:49 - 2014-03-09 12:02 - 00001413 _____ () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-05 17:48 - 2014-05-05 17:49 - 00000000 ____D () C:\Users\LordDrygin 2014-05-05 17:48 - 2014-05-05 17:48 - 00000020 ___SH () C:\Users\LordDrygin\ntuser.ini 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Netzwerkumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Druckumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 ____D () C:\Recovery 2014-05-05 17:48 - 2014-03-11 17:41 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\VirtualStore 2014-05-05 17:48 - 2009-07-14 06:42 - 00000000 ___RD () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-05 17:48 - 2009-07-14 06:37 - 00000000 ___RD () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-05 17:23 - 2014-04-22 21:38 - 01152006 _____ () C:\Windows\WindowsUpdate.log 2014-04-22 21:38 - 2014-04-22 21:38 - 00000000 ____D () C:\Users\LordDrygin\Downloads\FRST-OlderVersion 2014-04-22 21:26 - 2014-04-22 21:26 - 00855379 _____ () C:\Users\LordDrygin\Downloads\SecurityCheck.exe 2014-04-22 14:10 - 2014-04-22 14:10 - 02347384 _____ (ESET) C:\Users\LordDrygin\Downloads\esetsmartinstaller_enu.exe 2014-04-22 14:10 - 2014-04-22 14:10 - 00000000 ____D () C:\Program Files\ESET 2014-04-21 13:49 - 2014-04-22 21:39 - 00007964 _____ () C:\Users\LordDrygin\Downloads\FRST.txt 2014-04-21 13:48 - 2014-04-21 13:50 - 00016740 _____ () C:\Users\LordDrygin\Downloads\Addition.txt 2014-04-21 13:30 - 2014-04-21 13:30 - 00000000 ____D () C:\Windows\ERUNT 2014-04-21 13:29 - 2014-04-21 13:29 - 01016261 _____ (Thisisu) C:\Users\LordDrygin\Desktop\JRT.exe 2014-04-21 13:20 - 2014-04-21 13:22 - 00000000 ____D () C:\AdwCleaner 2014-04-21 13:19 - 2014-04-21 13:20 - 01322687 _____ () C:\Users\LordDrygin\Downloads\AdwCleaner.exe 2014-04-21 13:19 - 2014-04-21 13:19 - 00001154 _____ () C:\Users\LordDrygin\Desktop\mbam.txt 2014-04-21 05:25 - 2014-04-21 05:26 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-04-21 05:25 - 2014-04-21 05:25 - 00001064 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-04-21 05:24 - 2014-04-21 05:25 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-04-21 05:24 - 2014-04-21 05:24 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\LordDrygin\Downloads\mbam-setup-2.0.1.1004.exe 2014-04-21 05:24 - 2014-04-21 05:24 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-04-21 05:24 - 2014-04-03 09:51 - 00073432 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-04-21 05:24 - 2014-04-03 09:51 - 00051416 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-04-21 05:24 - 2014-04-03 09:50 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-04-20 01:14 - 2014-04-20 01:14 - 00000000 ____D () C:\Program Files\Common Files\COMODO 2014-04-19 21:51 - 2014-04-19 22:55 - 00029996 _____ () C:\Windows\system32\Drivers\fvstore.dat 2014-04-19 21:51 - 2014-04-19 21:51 - 00000000 ___HD () C:\VTRoot 2014-04-19 21:35 - 2014-04-22 21:30 - 00949040 _____ () C:\Windows\system32\Drivers\sfi.dat 2014-04-19 21:35 - 2014-04-19 22:51 - 00001985 _____ () C:\Users\Public\Desktop\COMODO Internet Security.lnk 2014-04-19 21:32 - 2014-04-19 21:35 - 00000000 ___SD () C:\ProgramData\Shared Space 2014-04-19 21:32 - 2014-04-19 21:32 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\AdTrustMedia 2014-04-19 21:31 - 2014-04-20 01:14 - 00002017 _____ () C:\Users\Public\Desktop\GeekBuddy.lnk 2014-04-19 21:31 - 2014-04-19 21:31 - 00001078 _____ () C:\Users\Public\Desktop\Comodo Dragon.lnk 2014-04-19 21:31 - 2014-04-19 21:31 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Comodo 2014-04-19 21:31 - 2014-04-19 21:31 - 00000000 ____D () C:\Program Files\AdTrustMedia 2014-04-19 21:30 - 2014-04-19 21:32 - 00000000 ____D () C:\Program Files\Comodo 2014-04-19 21:30 - 2014-04-19 21:30 - 00048392 _____ (COMODO CA Limited) C:\Windows\system32\certsentry.dll 2014-04-19 21:30 - 2014-04-19 21:30 - 00000000 ____D () C:\ProgramData\Comodo Downloader 2014-04-19 21:29 - 2014-04-19 21:35 - 00000000 ____D () C:\ProgramData\Comodo 2014-04-19 21:28 - 2014-04-21 13:24 - 00000280 _____ () C:\Windows\setupact.log 2014-04-19 21:28 - 2014-04-19 22:55 - 00024054 _____ () C:\Windows\PFRO.log 2014-04-19 21:28 - 2014-04-19 21:28 - 00295816 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-04-19 21:28 - 2014-04-19 21:28 - 00000000 _____ () C:\Windows\setuperr.log 2014-04-19 21:19 - 2014-04-19 21:22 - 230532272 _____ (COMODO) C:\Users\LordDrygin\Downloads\cispremium_installer_7.0.exe 2014-04-19 21:07 - 2014-04-19 21:07 - 00020153 _____ () C:\ComboFix.txt 2014-04-19 20:58 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe 2014-04-19 20:58 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe 2014-04-19 20:58 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-04-19 20:58 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-04-19 20:58 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-04-19 20:58 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe 2014-04-19 20:58 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe 2014-04-19 20:58 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe 2014-04-19 20:56 - 2014-04-19 21:07 - 00000000 ____D () C:\Qoobox 2014-04-19 20:55 - 2014-04-19 21:06 - 00000000 ____D () C:\Windows\erdnt 2014-04-19 20:54 - 2014-04-19 20:55 - 05195329 ____R (Swearware) C:\Users\LordDrygin\Desktop\ComboFix.exe 2014-04-19 13:37 - 2014-04-22 21:38 - 01048064 _____ (Farbar) C:\Users\LordDrygin\Downloads\FRST.exe 2014-04-19 13:37 - 2014-04-22 21:38 - 00000000 ____D () C:\FRST 2014-04-19 03:00 - 2014-04-19 03:00 - 00064024 _____ () C:\Users\LordDrygin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-04-18 18:35 - 2014-04-18 18:35 - 00000000 ____D () C:\ProgramData\Avg_Update_0414b 2014-04-18 18:07 - 2014-04-18 18:07 - 00002159 _____ () C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2014-04-18 18:07 - 2014-04-18 18:07 - 00002139 _____ () C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk 2014-04-18 18:07 - 2014-03-20 14:44 - 00036664 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe 2014-04-18 18:07 - 2014-03-20 14:44 - 00025400 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2014-04-18 18:06 - 2014-04-18 18:06 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\TuneUp Software 2014-04-18 18:05 - 2014-04-18 18:07 - 00000000 ____D () C:\Program Files\TuneUp Utilities 2014 2014-04-18 18:02 - 2014-04-18 18:21 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-04-18 18:02 - 2014-04-18 18:12 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-04-13 20:01 - 2014-04-13 20:01 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\WinRAR 2014-04-13 20:00 - 2014-04-19 21:28 - 00000000 ____D () C:\Program Files\WinRAR 2014-04-13 20:00 - 2014-04-19 02:56 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-04-10 03:01 - 2014-03-06 10:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-04-10 03:01 - 2014-03-06 10:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-04-10 03:01 - 2014-03-06 10:02 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-04-10 03:01 - 2014-03-06 10:02 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-04-10 03:01 - 2014-03-06 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-04-10 03:01 - 2014-03-06 09:45 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-04-10 03:01 - 2014-03-06 09:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-04-10 03:01 - 2014-03-06 09:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-04-10 03:01 - 2014-03-06 09:22 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-04-10 03:01 - 2014-03-06 09:18 - 00575488 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-04-10 03:01 - 2014-03-06 09:07 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-04-10 03:01 - 2014-03-06 09:01 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-04-10 03:01 - 2014-03-06 08:46 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-04-10 03:01 - 2014-03-06 07:43 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-04-10 03:00 - 2014-03-06 11:19 - 17387008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-10 03:00 - 2014-03-06 10:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-04-10 03:00 - 2014-03-06 09:47 - 02178048 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-04-10 03:00 - 2014-03-06 09:46 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-04-10 03:00 - 2014-03-06 09:38 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-04-10 03:00 - 2014-03-06 09:36 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-04-10 03:00 - 2014-03-06 09:28 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-04-10 03:00 - 2014-03-06 09:13 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-04-10 03:00 - 2014-03-06 08:40 - 01967104 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-04-10 03:00 - 2014-03-06 08:36 - 11745792 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-04-10 03:00 - 2014-03-06 07:41 - 01789440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-04-10 03:00 - 2014-03-06 07:36 - 01143808 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-04-09 18:12 - 2014-03-04 11:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-04-09 18:12 - 2014-02-04 04:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-04-09 18:12 - 2014-02-04 04:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-04-09 18:12 - 2014-02-04 04:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-04-09 18:12 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-04-09 18:12 - 2014-01-24 04:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-04-08 14:54 - 2014-04-22 01:34 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\PokerStars.EU 2014-04-08 14:54 - 2014-04-11 23:02 - 00000000 ____D () C:\Program Files\PokerStars.EU 2014-04-08 14:54 - 2014-04-08 14:54 - 00001046 _____ () C:\Users\Public\Desktop\PokerStars.eu.lnk 2014-04-07 20:07 - 2014-04-07 20:07 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-03-30 21:19 - 2014-03-30 21:19 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Windows Live Writer 2014-03-30 21:19 - 2014-03-30 21:19 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Windows Live Writer 2014-03-30 21:13 - 2014-03-30 21:14 - 00000000 ____D () C:\Program Files\Windows Live 2014-03-30 21:13 - 2014-03-30 21:13 - 00000000 ____D () C:\Windows\PCHEALTH 2014-03-30 21:10 - 2014-04-04 11:22 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Windows Live 2014-03-30 21:09 - 2014-03-30 21:09 - 00000000 ____D () C:\Program Files\Common Files\Windows Live 2014-03-30 03:30 - 2014-03-30 03:30 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2014-03-29 04:31 - 2014-03-29 04:31 - 00000000 ____D () C:\Users\LordDrygin\Documents\My Games 2014-03-29 04:31 - 2010-06-02 05:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-03-29 04:31 - 2010-06-02 05:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-03-29 04:31 - 2010-06-02 05:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-03-29 04:31 - 2010-05-26 12:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-03-29 04:31 - 2010-05-26 12:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-03-29 04:31 - 2010-05-26 12:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-03-29 04:31 - 2010-05-26 12:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-03-29 04:31 - 2010-05-26 12:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-03-29 04:31 - 2010-02-04 11:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-03-29 04:31 - 2010-02-04 11:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-03-29 04:31 - 2010-02-04 11:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-03-29 04:31 - 2010-02-04 11:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-03-29 04:31 - 2009-09-04 18:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-03-29 04:31 - 2009-09-04 18:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-03-29 04:31 - 2009-09-04 18:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-03-29 04:31 - 2009-09-04 18:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-03-29 04:31 - 2009-09-04 18:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-03-29 04:31 - 2009-09-04 18:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-03-29 04:31 - 2009-09-04 18:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-03-29 04:31 - 2009-09-04 18:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-03-29 04:31 - 2009-03-16 15:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-03-29 04:31 - 2009-03-09 16:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-03-29 04:31 - 2009-03-09 16:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-03-29 04:31 - 2009-03-09 16:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-03-29 04:30 - 2009-03-16 15:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-03-29 04:30 - 2009-03-16 15:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-03-29 04:30 - 2008-10-27 11:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-03-29 04:30 - 2008-10-27 11:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-03-29 04:30 - 2008-10-27 11:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-03-29 04:30 - 2008-10-27 11:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-03-29 04:30 - 2008-10-15 07:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-03-29 04:30 - 2008-10-15 07:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-03-29 04:30 - 2008-10-15 07:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-03-29 04:30 - 2008-07-31 11:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-03-29 04:30 - 2008-05-30 15:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-03-29 04:30 - 2008-05-30 15:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-03-29 04:30 - 2008-05-30 15:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-03-29 04:30 - 2008-05-30 15:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-03-29 04:30 - 2008-05-30 15:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-03-29 04:30 - 2008-05-30 15:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-03-29 04:30 - 2008-05-30 15:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-03-29 04:30 - 2008-03-05 17:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-03-29 04:30 - 2008-03-05 17:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-03-29 04:30 - 2008-03-05 17:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-03-29 04:30 - 2008-03-05 16:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-03-29 04:30 - 2008-03-05 16:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-03-29 04:30 - 2008-02-06 00:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-03-29 04:30 - 2007-10-22 04:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-03-29 04:30 - 2007-10-22 04:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-03-29 04:30 - 2007-10-12 16:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-03-29 04:30 - 2007-10-12 16:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-03-29 04:30 - 2007-10-02 10:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-03-29 04:30 - 2007-07-20 01:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-03-29 04:30 - 2007-07-19 19:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-03-29 04:30 - 2007-07-19 19:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-03-29 04:30 - 2007-07-19 19:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-03-29 04:30 - 2007-06-20 21:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-03-29 04:30 - 2007-05-16 17:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-03-29 04:30 - 2007-05-16 17:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-03-29 04:30 - 2007-05-16 17:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-03-29 04:30 - 2007-04-04 19:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-03-29 04:30 - 2007-04-04 19:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-03-29 04:30 - 2007-03-15 17:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-03-29 04:30 - 2007-03-12 17:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-03-29 04:30 - 2007-03-12 17:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-03-29 04:30 - 2007-03-05 13:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-03-29 04:30 - 2007-01-24 16:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-03-29 04:30 - 2006-12-08 13:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-03-29 04:30 - 2006-11-29 14:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-03-29 04:30 - 2006-11-29 14:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-03-29 04:30 - 2006-09-28 17:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-03-29 04:30 - 2006-09-28 17:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-03-29 04:30 - 2006-07-28 10:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-03-29 04:30 - 2006-07-28 10:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-03-29 04:30 - 2006-05-31 08:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-03-29 04:30 - 2006-03-31 13:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-03-29 04:30 - 2006-03-31 13:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-03-29 04:29 - 2006-03-31 13:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-03-29 04:29 - 2006-02-03 09:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-03-29 04:29 - 2006-02-03 09:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-03-29 04:29 - 2006-02-03 09:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-03-29 04:29 - 2005-12-05 19:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-03-29 04:29 - 2005-07-22 20:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-03-29 04:29 - 2005-05-26 16:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-03-29 04:29 - 2005-03-18 18:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-03-29 04:29 - 2005-02-05 20:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-03-29 03:37 - 2014-03-29 03:37 - 00000216 _____ () C:\Users\LordDrygin\Desktop\South Park The Stick of Truth.url 2014-03-29 03:37 - 2014-03-29 03:37 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-03-29 03:22 - 2014-04-18 18:21 - 00000000 ____D () C:\Program Files\Steam 2014-03-29 03:22 - 2014-03-30 03:30 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-03-29 03:22 - 2014-03-29 03:22 - 00000925 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-03-27 22:15 - 2014-03-27 23:17 - 00024724 _____ () C:\Users\LordDrygin\Desktop\OpenDocument Tabellendokument (neu).ods 2014-03-25 20:22 - 2014-04-16 23:12 - 00607168 _____ (COMODO) C:\Windows\system32\Drivers\cmdguard.sys 2014-03-25 20:22 - 2014-04-16 23:12 - 00092656 _____ (COMODO) C:\Windows\system32\Drivers\inspect.sys 2014-03-25 20:22 - 2014-04-16 23:12 - 00043728 _____ (COMODO) C:\Windows\system32\Drivers\cmdhlp.sys 2014-03-25 20:22 - 2014-04-16 23:12 - 00020072 _____ (COMODO) C:\Windows\system32\Drivers\cmderd.sys 2014-03-25 20:22 - 2014-03-25 20:22 - 00363504 _____ (COMODO) C:\Windows\system32\guard32.dll 2014-03-25 20:22 - 2014-03-25 20:22 - 00284888 _____ (COMODO) C:\Windows\system32\cmdvrt32.dll 2014-03-25 20:22 - 2014-03-25 20:22 - 00040664 _____ (COMODO) C:\Windows\system32\cmdkbd32.dll 2014-03-25 20:22 - 2014-03-25 20:22 - 00036000 _____ (COMODO) C:\Windows\system32\cmdcsr.dll 2014-03-24 16:41 - 2014-03-24 16:41 - 00001993 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-03-24 16:40 - 2014-03-25 08:41 - 00000000 ____D () C:\ProgramData\Adobe 2014-03-24 16:40 - 2014-03-24 16:41 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-03-24 16:40 - 2014-03-24 16:40 - 00000000 ____D () C:\Program Files\Adobe 2014-03-24 16:33 - 2014-03-24 16:42 - 00000000 ____D () C:\Users\LordDrygin\Desktop\Bewerbung 2014-03-23 05:50 - 2009-06-10 23:39 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20140323-045017.backup 2014-03-23 05:44 - 2014-03-23 14:47 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-03-23 05:44 - 2014-03-23 05:45 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2 2014-03-23 05:44 - 2014-03-23 05:44 - 00002123 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-03-23 05:44 - 2013-09-20 11:49 - 00018968 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean.exe ==================== One Month Modified Files and Folders ======= 2014-05-06 08:29 - 2014-05-06 08:29 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\MFAData 2014-05-06 08:29 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-06 08:26 - 2014-05-06 08:25 - 00000000 ____D () C:\Program Files\DriverTuner 2014-05-06 08:20 - 2014-05-06 08:17 - 00000000 ____D () C:\Program Files\Broadcom 2014-05-06 08:18 - 2014-05-06 08:18 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_b57xdbd_01009.Wdf 2014-05-06 08:17 - 2014-05-06 08:17 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-05-06 08:12 - 2014-05-06 08:12 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\DriverTuner 2014-05-06 08:09 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\system32\restore 2014-05-05 18:18 - 2009-07-14 06:57 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-05-05 18:18 - 2009-07-14 06:52 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-05-05 18:18 - 2008-07-17 13:56 - 00008192 __RSH () C:\BOOTSECT.BAK 2014-05-05 17:54 - 2014-05-05 17:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-05-05 17:49 - 2014-05-05 17:48 - 00000000 ____D () C:\Users\LordDrygin 2014-05-05 17:48 - 2014-05-05 17:48 - 00000020 ___SH () C:\Users\LordDrygin\ntuser.ini 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Netzwerkumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Druckumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\LordDrygin\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-05 17:48 - 2014-05-05 17:48 - 00000000 ____D () C:\Recovery 2014-05-05 17:48 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\Recovery 2014-05-05 17:48 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Windows NT 2014-04-22 21:39 - 2014-04-21 13:49 - 00007964 _____ () C:\Users\LordDrygin\Downloads\FRST.txt 2014-04-22 21:38 - 2014-05-05 17:23 - 01152006 _____ () C:\Windows\WindowsUpdate.log 2014-04-22 21:38 - 2014-04-22 21:38 - 00000000 ____D () C:\Users\LordDrygin\Downloads\FRST-OlderVersion 2014-04-22 21:38 - 2014-04-19 13:37 - 01048064 _____ (Farbar) C:\Users\LordDrygin\Downloads\FRST.exe 2014-04-22 21:38 - 2014-04-19 13:37 - 00000000 ____D () C:\FRST 2014-04-22 21:30 - 2014-04-19 21:35 - 00949040 _____ () C:\Windows\system32\Drivers\sfi.dat 2014-04-22 21:26 - 2014-04-22 21:26 - 00855379 _____ () C:\Users\LordDrygin\Downloads\SecurityCheck.exe 2014-04-22 20:48 - 2014-03-08 08:11 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-04-22 14:10 - 2014-04-22 14:10 - 02347384 _____ (ESET) C:\Users\LordDrygin\Downloads\esetsmartinstaller_enu.exe 2014-04-22 14:10 - 2014-04-22 14:10 - 00000000 ____D () C:\Program Files\ESET 2014-04-22 13:55 - 2009-07-14 06:34 - 00013552 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-04-22 13:55 - 2009-07-14 06:34 - 00013552 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-04-22 01:34 - 2014-04-08 14:54 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\PokerStars.EU 2014-04-21 13:50 - 2014-04-21 13:48 - 00016740 _____ () C:\Users\LordDrygin\Downloads\Addition.txt 2014-04-21 13:30 - 2014-04-21 13:30 - 00000000 ____D () C:\Windows\ERUNT 2014-04-21 13:29 - 2014-04-21 13:29 - 01016261 _____ (Thisisu) C:\Users\LordDrygin\Desktop\JRT.exe 2014-04-21 13:24 - 2014-04-19 21:28 - 00000280 _____ () C:\Windows\setupact.log 2014-04-21 13:24 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-04-21 13:22 - 2014-04-21 13:20 - 00000000 ____D () C:\AdwCleaner 2014-04-21 13:20 - 2014-04-21 13:19 - 01322687 _____ () C:\Users\LordDrygin\Downloads\AdwCleaner.exe 2014-04-21 13:19 - 2014-04-21 13:19 - 00001154 _____ () C:\Users\LordDrygin\Desktop\mbam.txt 2014-04-21 05:26 - 2014-04-21 05:25 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-04-21 05:25 - 2014-04-21 05:25 - 00001064 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-04-21 05:25 - 2014-04-21 05:24 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-04-21 05:24 - 2014-04-21 05:24 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\LordDrygin\Downloads\mbam-setup-2.0.1.1004.exe 2014-04-21 05:24 - 2014-04-21 05:24 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-04-20 01:14 - 2014-04-20 01:14 - 00000000 ____D () C:\Program Files\Common Files\COMODO 2014-04-20 01:14 - 2014-04-19 21:31 - 00002017 _____ () C:\Users\Public\Desktop\GeekBuddy.lnk 2014-04-19 22:55 - 2014-04-19 21:51 - 00029996 _____ () C:\Windows\system32\Drivers\fvstore.dat 2014-04-19 22:55 - 2014-04-19 21:28 - 00024054 _____ () C:\Windows\PFRO.log 2014-04-19 22:51 - 2014-04-19 21:35 - 00001985 _____ () C:\Users\Public\Desktop\COMODO Internet Security.lnk 2014-04-19 21:51 - 2014-04-19 21:51 - 00000000 ___HD () C:\VTRoot 2014-04-19 21:35 - 2014-04-19 21:32 - 00000000 ___SD () C:\ProgramData\Shared Space 2014-04-19 21:35 - 2014-04-19 21:29 - 00000000 ____D () C:\ProgramData\Comodo 2014-04-19 21:32 - 2014-04-19 21:32 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\AdTrustMedia 2014-04-19 21:32 - 2014-04-19 21:30 - 00000000 ____D () C:\Program Files\Comodo 2014-04-19 21:31 - 2014-04-19 21:31 - 00001078 _____ () C:\Users\Public\Desktop\Comodo Dragon.lnk 2014-04-19 21:31 - 2014-04-19 21:31 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Comodo 2014-04-19 21:31 - 2014-04-19 21:31 - 00000000 ____D () C:\Program Files\AdTrustMedia 2014-04-19 21:30 - 2014-04-19 21:30 - 00048392 _____ (COMODO CA Limited) C:\Windows\system32\certsentry.dll 2014-04-19 21:30 - 2014-04-19 21:30 - 00000000 ____D () C:\ProgramData\Comodo Downloader 2014-04-19 21:28 - 2014-05-06 08:29 - 00000000 ____D () C:\ProgramData\MFAData 2014-04-19 21:28 - 2014-04-19 21:28 - 00295816 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-04-19 21:28 - 2014-04-19 21:28 - 00000000 _____ () C:\Windows\setuperr.log 2014-04-19 21:28 - 2014-04-13 20:00 - 00000000 ____D () C:\Program Files\WinRAR 2014-04-19 21:26 - 2014-03-09 13:37 - 00000000 ____D () C:\ProgramData\AVG2014 2014-04-19 21:26 - 2014-03-09 13:37 - 00000000 ____D () C:\$AVG 2014-04-19 21:22 - 2014-04-19 21:19 - 230532272 _____ (COMODO) C:\Users\LordDrygin\Downloads\cispremium_installer_7.0.exe 2014-04-19 21:07 - 2014-04-19 21:07 - 00020153 _____ () C:\ComboFix.txt 2014-04-19 21:07 - 2014-04-19 20:56 - 00000000 ____D () C:\Qoobox 2014-04-19 21:07 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Default 2014-04-19 21:07 - 2009-07-14 04:37 - 00000000 ___RD () C:\Users\Public 2014-04-19 21:06 - 2014-04-19 20:55 - 00000000 ____D () C:\Windows\erdnt 2014-04-19 21:05 - 2009-07-14 04:04 - 00000215 _____ () C:\Windows\system.ini 2014-04-19 20:55 - 2014-04-19 20:54 - 05195329 ____R (Swearware) C:\Users\LordDrygin\Desktop\ComboFix.exe 2014-04-19 03:00 - 2014-04-19 03:00 - 00064024 _____ () C:\Users\LordDrygin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-04-19 02:56 - 2014-04-13 20:00 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-04-18 19:15 - 2014-05-05 18:19 - 00000000 ____D () C:\Windows\Panther 2014-04-18 18:35 - 2014-04-18 18:35 - 00000000 ____D () C:\ProgramData\Avg_Update_0414b 2014-04-18 18:21 - 2014-04-18 18:02 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-04-18 18:21 - 2014-03-29 03:22 - 00000000 ____D () C:\Program Files\Steam 2014-04-18 18:12 - 2014-04-18 18:02 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-04-18 18:07 - 2014-04-18 18:07 - 00002159 _____ () C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2014-04-18 18:07 - 2014-04-18 18:07 - 00002139 _____ () C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk 2014-04-18 18:07 - 2014-04-18 18:05 - 00000000 ____D () C:\Program Files\TuneUp Utilities 2014 2014-04-18 18:06 - 2014-05-06 08:33 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\TuneUp Software 2014-04-18 18:06 - 2014-04-18 18:06 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\TuneUp Software 2014-04-16 23:12 - 2014-03-25 20:22 - 00607168 _____ (COMODO) C:\Windows\system32\Drivers\cmdguard.sys 2014-04-16 23:12 - 2014-03-25 20:22 - 00092656 _____ (COMODO) C:\Windows\system32\Drivers\inspect.sys 2014-04-16 23:12 - 2014-03-25 20:22 - 00043728 _____ (COMODO) C:\Windows\system32\Drivers\cmdhlp.sys 2014-04-16 23:12 - 2014-03-25 20:22 - 00020072 _____ (COMODO) C:\Windows\system32\Drivers\cmderd.sys 2014-04-16 00:57 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF 2014-04-13 20:01 - 2014-04-13 20:01 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\WinRAR 2014-04-11 23:02 - 2014-04-08 14:54 - 00000000 ____D () C:\Program Files\PokerStars.EU 2014-04-10 03:55 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache 2014-04-10 03:17 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE 2014-04-09 21:36 - 2014-03-08 08:42 - 00000000 ____D () C:\Windows\system32\MRT 2014-04-09 21:34 - 2014-03-08 08:42 - 88028728 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-04-08 14:54 - 2014-04-08 14:54 - 00001046 _____ () C:\Users\Public\Desktop\PokerStars.eu.lnk 2014-04-08 08:49 - 2014-05-05 17:52 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-04-08 07:01 - 2009-07-14 06:53 - 00014740 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-04-07 20:07 - 2014-04-07 20:07 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-04 11:22 - 2014-03-30 21:10 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Windows Live 2014-04-03 09:51 - 2014-04-21 05:24 - 00073432 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-04-03 09:51 - 2014-04-21 05:24 - 00051416 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-04-03 09:50 - 2014-04-21 05:24 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-03-30 21:19 - 2014-03-30 21:19 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Windows Live Writer 2014-03-30 21:19 - 2014-03-30 21:19 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Windows Live Writer 2014-03-30 21:14 - 2014-03-30 21:13 - 00000000 ____D () C:\Program Files\Windows Live 2014-03-30 21:13 - 2014-03-30 21:13 - 00000000 ____D () C:\Windows\PCHEALTH 2014-03-30 21:13 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-03-30 21:09 - 2014-03-30 21:09 - 00000000 ____D () C:\Program Files\Common Files\Windows Live 2014-03-30 03:30 - 2014-03-30 03:30 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2014-03-30 03:30 - 2014-03-29 03:22 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-03-29 04:31 - 2014-03-29 04:31 - 00000000 ____D () C:\Users\LordDrygin\Documents\My Games 2014-03-29 04:30 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-03-29 03:37 - 2014-03-29 03:37 - 00000216 _____ () C:\Users\LordDrygin\Desktop\South Park The Stick of Truth.url 2014-03-29 03:37 - 2014-03-29 03:37 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-03-29 03:22 - 2014-03-29 03:22 - 00000925 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-03-27 23:17 - 2014-03-27 22:15 - 00024724 _____ () C:\Users\LordDrygin\Desktop\OpenDocument Tabellendokument (neu).ods 2014-03-26 12:46 - 2009-07-14 04:04 - 00450709 ____R () C:\Windows\system32\Drivers\etc\hosts.20140406-045545.backup 2014-03-25 20:22 - 2014-03-25 20:22 - 00363504 _____ (COMODO) C:\Windows\system32\guard32.dll 2014-03-25 20:22 - 2014-03-25 20:22 - 00284888 _____ (COMODO) C:\Windows\system32\cmdvrt32.dll 2014-03-25 20:22 - 2014-03-25 20:22 - 00040664 _____ (COMODO) C:\Windows\system32\cmdkbd32.dll 2014-03-25 20:22 - 2014-03-25 20:22 - 00036000 _____ (COMODO) C:\Windows\system32\cmdcsr.dll 2014-03-25 08:41 - 2014-03-24 16:40 - 00000000 ____D () C:\ProgramData\Adobe 2014-03-24 16:42 - 2014-03-24 16:33 - 00000000 ____D () C:\Users\LordDrygin\Desktop\Bewerbung 2014-03-24 16:41 - 2014-03-24 16:41 - 00001993 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-03-24 16:41 - 2014-03-24 16:40 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-03-24 16:41 - 2014-03-09 15:57 - 00000000 ____D () C:\Users\LordDrygin\AppData\Local\Adobe 2014-03-24 16:41 - 2014-03-08 08:32 - 00000000 ____D () C:\Users\LordDrygin\AppData\Roaming\Adobe 2014-03-24 16:40 - 2014-03-24 16:40 - 00000000 ____D () C:\Program Files\Adobe 2014-03-23 14:47 - 2014-03-23 05:44 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-03-23 05:50 - 2009-07-14 04:04 - 00450709 ____R () C:\Windows\system32\Drivers\etc\hosts.20140326-114611.backup 2014-03-23 05:45 - 2014-03-23 05:44 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2 2014-03-23 05:44 - 2014-03-23 05:44 - 00002123 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk Some content of TEMP: ==================== C:\Users\LordDrygin\AppData\Local\temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe => MD5 is legit C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-04-19 03:55 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 22-04-2014 Ran by LordDrygin at 2014-04-22 21:40:20 Running from C:\Users\LordDrygin\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: COMODO Antivirus (Enabled - Up to date) {B74CC7D2-B407-E1DC-1033-DD315BCDC8C8} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: COMODO Antivirus (Enabled - Up to date) {0C2D2636-923D-EE52-2A83-E643204A8275} FW: COMODO Firewall (Enabled) {8F7746F7-FE68-E084-3B6C-7404A51E8FB3} ==================== Installed Programs ====================== Adobe Flash Player 12 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 12.0.0.77 - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 12.0.0.77 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated) Battle.net (HKLM\...\Battle.net) (Version: - Blizzard Entertainment) Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 15.0.7.2 - Broadcom Corporation) Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 15.0.7.1 - Broadcom Corporation) Comodo Dragon (HKLM\...\Comodo Dragon) (Version: 31.1.0.0 - COMODO) COMODO Internet Security Premium (HKLM\...\{D32EF4F9-1506-434E-A813-3D4C0AA50300}) (Version: 7.0.53315.4132 - COMODO Security Solutions Inc.) D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden Diablo III (HKLM\...\Diablo III) (Version: - Blizzard Entertainment) GeekBuddy (HKLM\...\{B11635F3-55E6-4E40-B0A0-E026AAA4F9E1}) (Version: 4.11.94 - Comodo Security Solutions Inc) Hearthstone (HKLM\...\Hearthstone) (Version: - Blizzard Entertainment) Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation) IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.37 - Irfan Skiljan) Junk Mail filter update (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden League of Legends (HKLM\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (Version: 3.0.1 - Riot Games ) Hidden Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation) ManyCam 4.0.63 (HKLM\...\ManyCam) (Version: 4.0.63 - Visicom Media Inc.) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 28.0 (x86 de) (HKLM\...\Mozilla Firefox 28.0 (x86 de)) (Version: 28.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 28.0 - Mozilla) MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (Version: 16.4.1108.0727 - Microsoft) Hidden OpenOffice 4.0.1 (HKLM\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) PokerStars.eu (HKLM\...\PokerStars.eu) (Version: - PokerStars.eu) PrivDog (HKLM\...\PrivDog) (Version: 2.1.0.22 - privdog.com) South Park™: The Stick of Truth™ (HKLM\...\Steam App 213670) (Version: - Obsidian Entertainment) Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.) Steam (HKLM\...\Steam) (Version: - Valve Corporation) TuneUp Utilities 2014 (de-DE) (Version: 14.0.1000.275 - TuneUp Software) Hidden TuneUp Utilities 2014 (HKLM\...\TuneUp Utilities) (Version: 14.0.1000.275 - TuneUp Software) TuneUp Utilities 2014 (Version: 14.0.1000.275 - TuneUp Software) Hidden Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Windows Live Communications Platform (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3522.0110 - Microsoft Corporation) Windows Live Essentials (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Mail (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Photo Common (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live PIMT Platform (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live SOXE (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live UX Platform (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Writer (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Writer Resources (Version: 16.4.3522.0110 - Microsoft Corporation) Hidden WinRAR 5.10 beta 2 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.10.2 - win.rar GmbH) ==================== Restore Points ========================= 18-04-2014 16:03:25 TuneUp Utilities 2014 wird installiert 19-04-2014 19:24:07 Removed AVG 2014 19-04-2014 19:26:31 Removed AVG 2014 19-04-2014 19:33:33 Gerätetreiber-Paketinstallation: COMODO Netzwerkdienst ==================== Hosts content: ========================== 2014-04-19 21:05 - 2014-04-19 21:05 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {01017326-F24B-435C-8585-C8F0326D3412} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe Task: {170570AA-9D11-4E5B-8D7E-673589651E27} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe Task: {39CEE8F4-ED28-492B-A2B0-A0DB5850A74B} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files\TuneUp Utilities 2014\OneClick.exe [2014-03-20] (TuneUp Software) Task: {8F66A61E-D877-40D2-A084-D32D1D085C18} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {90396E75-7BBC-4191-BA6C-7074800841D3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-12] (Adobe Systems Incorporated) Task: {960E127B-976C-4D06-B0B2-F1196996DEFC} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {DA299E99-5E4F-4F86-AC5B-8096E5B01E47} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {E071B1A8-C2AE-4D8E-B9F5-BA52211C9043} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe Task: {E55AA914-1C7C-426A-B94B-9423837E8934} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-12-21] (Adobe Systems Incorporated) Task: {E8BE5C4F-E9FD-433A-91BB-DCAE3DC6D89F} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2014-03-20 14:44 - 2014-03-20 14:44 - 00568120 _____ () C:\Program Files\TuneUp Utilities 2014\avgreplibx.dll 2014-03-23 05:44 - 2013-05-16 11:55 - 00113496 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-03-23 05:44 - 2013-05-16 11:55 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl 2014-03-23 05:44 - 2013-05-16 11:55 - 00161112 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-03-23 05:44 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll 2014-03-23 05:44 - 2012-04-03 18:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2014-03-20 03:17 - 2014-03-20 03:17 - 03642480 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll 2014-03-12 19:48 - 2014-03-12 19:48 - 16276872 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll 2013-04-15 18:39 - 2013-04-15 18:39 - 00070352 _____ () C:\Program Files\COMODO\COMODO Internet Security\scanners\smart.cav ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Netzwerkcontroller Description: Netzwerkcontroller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (04/22/2014 09:26:45 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Objlist.exe, Version: 0.0.9.0, Zeitstempel: 0x47dac32a Name des fehlerhaften Moduls: Objlist.exe, Version: 0.0.9.0, Zeitstempel: 0x47dac32a Ausnahmecode: 0xc0000005 Fehleroffset: 0x00033e18 ID des fehlerhaften Prozesses: 0x4f80 Startzeit der fehlerhaften Anwendung: 0xObjlist.exe0 Pfad der fehlerhaften Anwendung: Objlist.exe1 Pfad des fehlerhaften Moduls: Objlist.exe2 Berichtskennung: Objlist.exe3 Error: (04/19/2014 09:57:09 PM) (Source: Application Hang) (User: ) Description: Programm firefox.exe, Version 28.0.0.5186 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: e2c Startzeit: 01cf5c08d31026c5 Endzeit: 81 Anwendungspfad: C:\Program Files\Mozilla Firefox\firefox.exe Berichts-ID: c2595979-c7fc-11e3-b5cd-68942358c966 Error: (04/19/2014 09:30:10 PM) (Source: ESENT) (User: ) Description: taskhost (384) WebCacheLocal: Fehler -1811 (0xfffff8ed) beim Öffnen von Protokolldatei C:\Users\LordDrygin\AppData\Local\Microsoft\Windows\WebCache\V01.log. Error: (04/18/2014 04:30:39 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: SDTray.exe, Version: 2.1.21.129, Zeitstempel: 0x51f0ed9e Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000 ID des fehlerhaften Prozesses: 0x1078 Startzeit der fehlerhaften Anwendung: 0xSDTray.exe0 Pfad der fehlerhaften Anwendung: SDTray.exe1 Pfad des fehlerhaften Moduls: SDTray.exe2 Berichtskennung: SDTray.exe3 Error: (04/10/2014 05:14:24 PM) (Source: BugSplat) (User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/09/2014 08:41:59 PM) (Source: BugSplat) (User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/09/2014 08:15:06 PM) (Source: BugSplat) (User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/08/2014 03:26:37 PM) (Source: BugSplat) (User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/08/2014 01:30:42 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (04/08/2014 08:54:41 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.1.7601.17567, Zeitstempel: 0x4d6727a7 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x063a0fef ID des fehlerhaften Prozesses: 0xd1c Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 System errors: ============= Error: (04/22/2014 02:10:58 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "GeekBuddyRSP Server" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 5000 Millisekunden durchgeführt: Neustart des Diensts. Error: (04/22/2014 02:09:25 PM) (Source: Service Control Manager) (User: ) Description: Dienst "COMODO LPS Launcher" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (04/22/2014 02:09:18 PM) (Source: Service Control Manager) (User: ) Description: Dienst "COMODO Dragon Update Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (04/22/2014 02:09:08 PM) (Source: Service Control Manager) (User: ) Description: Dienst "COMODO Internet Security Helper Service" wurde unerwartet beendet. Dies ist bereits 2 Mal passiert. Error: (04/22/2014 02:32:37 AM) (Source: bowser) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "ANDORON", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{9142A077-4E62-4396-9E04-485F96D7E2-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (04/21/2014 06:15:33 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst lmhosts erreicht. Error: (04/21/2014 01:34:25 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts. Error: (04/21/2014 01:34:03 PM) (Source: Service Control Manager) (User: ) Description: Dienst "COMODO Internet Security Helper Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (04/21/2014 01:33:58 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (04/21/2014 08:43:08 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst lmhosts erreicht. Microsoft Office Sessions: ========================= Error: (04/22/2014 09:26:45 PM) (Source: Application Error)(User: ) Description: Objlist.exe0.0.9.047dac32aObjlist.exe0.0.9.047dac32ac000000500033e184f8001cf5e60caef08fbC:\Users\LORDDR~1\AppData\Local\temp\RarSFX0\SecurityCheck\Objlist.exeC:\Users\LORDDR~1\AppData\Local\temp\RarSFX0\SecurityCheck\Objlist.exe09e0f988-ca54-11e3-a782-68942358c966 Error: (04/19/2014 09:57:09 PM) (Source: Application Hang)(User: ) Description: firefox.exe28.0.0.5186e2c01cf5c08d31026c581C:\Program Files\Mozilla Firefox\firefox.exec2595979-c7fc-11e3-b5cd-68942358c966 Error: (04/19/2014 09:30:10 PM) (Source: ESENT)(User: ) Description: taskhost384WebCacheLocal: C:\Users\LordDrygin\AppData\Local\Microsoft\Windows\WebCache\V01.log-1811 (0xfffff8ed) Error: (04/18/2014 04:30:39 PM) (Source: Application Error)(User: ) Description: SDTray.exe2.1.21.12951f0ed9eunknown0.0.0.000000000c000000500000000107801cf596267d69206C:\Program Files\Spybot - Search & Destroy 2\SDTray.exeunknown0312a04b-c706-11e3-b86d-68942358c966 Error: (04/10/2014 05:14:24 PM) (Source: BugSplat)(User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/09/2014 08:41:59 PM) (Source: BugSplat)(User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/09/2014 08:15:06 PM) (Source: BugSplat)(User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/08/2014 03:26:37 PM) (Source: BugSplat)(User: ) Description: lol_beta_riotgames_comLOL_Public-1 Error: (04/08/2014 01:30:42 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (04/08/2014 08:54:41 AM) (Source: Application Error)(User: ) Description: Explorer.EXE6.1.7601.175674d6727a7unknown0.0.0.000000000c0000005063a0fefd1c01cf4e6bf745d942C:\Windows\Explorer.EXEunknowna83432a3-beea-11e3-ba4e-68942358c966 ==================== Memory info =========================== Percentage of memory in use: 63% Total physical RAM: 2388.36 MB Available physical RAM: 880.79 MB Total Pagefile: 4775 MB Available Pagefile: 2302.24 MB Total Virtual: 2047.88 MB Available Virtual: 1910.24 MB ==================== Drives ================================ Drive c: (BOOT) (Fixed) (Total:275.41 GB) (Free:220.8 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (RECOVER) (Fixed) (Total:22.66 GB) (Free:12.3 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 19F509E3) Partition 1: (Not Active) - (Size=23 GB) - (Type=OF Extended) Partition 2: (Active) - (Size=275 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Bekannter meinte zu mir, dass auch der Router zugemüllt sein kann und dass man dies auch beheben kann. |
23.04.2014, 13:39 | #12 |
/// the machine /// TB-Ausbilder | Pc sehr langsam geworden und hoher Ping bei spielen Jetzt ist schon mal der Rechner sauber. Was haste denn noch an Problemen?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
23.04.2014, 14:55 | #13 |
| Pc sehr langsam geworden und hoher Ping bei spielen Ja also habe beim spielen immer noch einen ping ab 200 was zu disconnects führt und Verzögerungen von mehreren Sekunden immer wieder mal...was es unmöglich macht zu spielen. Kann es sein, dass es gar nicht mehr am Rechner liegt? Sondern am Rounter? Habe gelesen, dass sich dort auch die spyware festsetzt. Aber danke aufjedenfall )) Sie werden eine echt große Hilfe ) |
24.04.2014, 10:57 | #14 |
/// the machine /// TB-Ausbilder | Pc sehr langsam geworden und hoher Ping bei spielen Keine Spyware, es gibt aber malware für nen Router. Trenn das Ding mal 30 minuten vom Strom.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
24.04.2014, 13:05 | #15 |
| Pc sehr langsam geworden und hoher Ping bei spielen Okay werde ich machen. Ich sag dann nachher nochmal Bescheid ob es Fortschritte gibt. |
Themen zu Pc sehr langsam geworden und hoher Ping bei spielen |
beim spielen, dauert, disconnects, folge, folgendes, führt, hoher, hoher ping, hören, kurze, lange, langsam, league, league of legends, musik, offen, pc sehr langsam, sehr langsam, spiele, spielen, starte |