|
Plagegeister aller Art und deren Bekämpfung: nvlddmkm.sys Trojaner hiiiiiiiiilllllfeeeeWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
05.05.2014, 22:37 | #1 |
| nvlddmkm.sys Trojaner hiiiiiiiiilllllfeeee Hallo zusammen habe folgendes Problem und zwar jedes mal wen ein geforce Treiber Installiert wird egal welcher kommt nvlddmkm.sys Davor läuft alles super habe standart Sachen schon alles versucht Die Sachen sind gerade mal 2-3 Wochen alt G1 sniper z87 Mainboard asus GTX 770 nvidia Intel 5 3.1 GHz Weis echt nicht mehr weiter bluescreen laggt Bildschirm schwarz Wäre cool wen mir jemand helfen könnte |
06.05.2014, 07:06 | #2 |
/// the machine /// TB-Ausbilder | nvlddmkm.sys Trojaner hiiiiiiiiilllllfeeee hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
06.05.2014, 09:18 | #3 |
| nvlddmkm.sys Trojaner hiiiiiiiiilllllfeeee FRST Logfile:
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-05-2014 Ran by kai (administrator) on KAI-PC on 06-05-2014 10:08:25 Running from C:\Users\kai\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Creative Technology Ltd) C:\Windows\SysWOW64\CtHdaSvc.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster Recon3Di\Sound Blaster Recon3Di Control Panel\SBRcni.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe () C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster Recon3Di\Sound Blaster Recon3Di Control Panel\CTJckCfg.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.0.0.100\NIS.exe (Google Inc.) C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.0.0.100\NIS.exe (Adobe Systems Incorporated) C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_13_0_0_206_ActiveX.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1225920 2014-04-30] (NVIDIA Corporation) HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [Sound Blaster Recon3Di SBX Control Panel] => C:\Program Files (x86)\Creative\Sound Blaster Recon3Di\Sound Blaster Recon3Di Control Panel\SBRcni.exe [976896 2012-11-28] (Creative Technology Ltd) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-25] (Avira Operations GmbH & Co. KG) HKU\S-1-5-21-3237634999-1084838785-3452804187-1000\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3588952 2014-05-05] (Electronic Arts) HKU\S-1-5-21-3237634999-1084838785-3452804187-1000\...\MountPoints2: {63961bb5-d468-11e3-9402-806e6f6e6963} - D:\Run.exe Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{401FADAA-1C16-4721-9F02-19067E1A1CA8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x10C440D77A68CF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg64.dll (Google Inc.) BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.0.100\coIEPlg.dll (Symantec Corporation) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.0.100\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: Avira Savings Advisor BHO - {A18A516C-AA41-46A9-92DB-60208917E442} - C:\Program Files (x86)\avira\Internet Explorer\avira32.dll () BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.0.100\coIEPlg.dll (Symantec Corporation) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\IPSFFPlgn\ FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\IPSFFPlgn\ [] FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\coFFPlgn\ FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\coFFPlgn\ [] Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR StartupUrls: "hxxp://www.google.com/" CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\pdf.dll () CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Extension: (YouTube) - C:\Users\kai\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-05] CHR Extension: (Avira Sparberater) - C:\Users\kai\AppData\Local\Google\Chrome\User Data\Default\Extensions\cojnmaaohncijldefpkpkkakjonfmgeb [2014-05-05] CHR Extension: (Google-Suche) - C:\Users\kai\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-05] CHR Extension: (Norton Identity Protection) - C:\Users\kai\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2014-05-05] CHR Extension: (Google Wallet) - C:\Users\kai\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-05] CHR Extension: (Google Mail) - C:\Users\kai\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-05] CHR HKLM-x32\...\Chrome\Extension: [cojnmaaohncijldefpkpkkakjonfmgeb] - C:\Program Files (x86)\avira\Chrome\avira-1.5.14.crx [2013-12-11] CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.0.100\Exts\Chrome.crx [2014-05-05] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG) R2 CtHdaSvc; C:\Windows\sysWow64\CtHdaSvc.exe [103936 2013-08-20] (Creative Technology Ltd) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1809720 2014-04-03] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [857912 2014-04-03] (Malwarebytes Corporation) R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\21.0.0.100\NIS.exe [275696 2013-08-16] (Symantec Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21009352 2014-04-30] (NVIDIA Corporation) R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [343040 2013-08-08] (Qualcomm Atheros) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2014-02-25] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2014-02-25] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-02-25] (Avira Operations GmbH & Co. KG) R1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [67888 2013-02-13] (Qualcomm Atheros, Inc.) R3 BHDrvx64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.0.100\Definitions\BASHDefs\20130814.001\BHDrvx64.sys [1525336 2013-08-13] (Symantec Corporation) R3 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1500000.064\ccSetx64.sys [150104 2013-07-30] (Symantec Corporation) R3 cthda; C:\Windows\System32\drivers\cthda.sys [1049880 2013-08-20] (Creative Technology Ltd) R3 IDSVia64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.0.100\Definitions\IPSDefs\20130805.011\IDSVia64.sys [520280 2013-08-06] (Symantec Corporation) R3 Ke2200; C:\Windows\System32\DRIVERS\e22w7x64.sys [154320 2013-03-20] (Qualcomm Atheros, Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-04-03] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2014-05-06] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63192 2014-04-03] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) R3 NAVENG; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.0.100\Definitions\VirusDefs\20130814.018\ENG64.SYS [126040 2013-08-14] (Symantec Corporation) R3 NAVEX15; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.0.100\Definitions\VirusDefs\20130814.018\EX64.SYS [2100312 2013-08-14] (Symantec Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19744 2014-04-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [47632 2013-04-29] (Panda Security, S.L.) R3 SRTSP; C:\Windows\system32\drivers\NISx64\1500000.064\SRTSP64.SYS [854616 2013-07-31] (Symantec Corporation) R3 SRTSPX; C:\Windows\system32\drivers\NISx64\1500000.064\SRTSPX64.SYS [36952 2013-07-31] (Symantec Corporation) R3 SymDS; C:\Windows\system32\drivers\NISx64\1500000.064\SYMDS64.SYS [493656 2013-08-01] (Symantec Corporation) R3 SymEFA; C:\Windows\system32\drivers\NISx64\1500000.064\SYMEFA64.SYS [1147480 2013-08-05] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-05-05] (Symantec Corporation) R3 SymIRON; C:\Windows\system32\drivers\NISx64\1500000.064\Ironx64.SYS [264280 2013-07-31] (Symantec Corporation) R3 SymNetS; C:\Windows\system32\drivers\NISx64\1500000.064\SYMNETS.SYS [590424 2013-07-31] (Symantec Corporation) S3 gdrv; \??\C:\Windows\gdrv.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-06 10:04 - 2014-05-06 10:08 - 00016810 _____ () C:\Users\kai\Downloads\FRST.txt 2014-05-06 10:04 - 2014-05-06 10:08 - 00000000 ____D () C:\FRST 2014-05-06 10:04 - 2014-05-06 10:04 - 00017514 _____ () C:\Users\kai\Downloads\Addition.txt 2014-05-06 10:03 - 2014-05-06 10:03 - 02063872 _____ (Farbar) C:\Users\kai\Downloads\FRST64.exe 2014-05-06 10:00 - 2014-05-06 10:00 - 01053184 _____ (Farbar) C:\Users\kai\Downloads\FRST.exe 2014-05-05 23:06 - 2014-05-06 09:54 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-05 23:06 - 2014-05-05 23:06 - 00001106 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-05 23:06 - 2014-05-05 23:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-05 23:06 - 2014-05-05 23:06 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-05 23:06 - 2014-05-05 23:06 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-05 23:06 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-05-05 23:06 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-05 23:06 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-05 23:05 - 2014-05-05 23:05 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\kai\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-05 23:01 - 2014-05-05 23:01 - 00001298 _____ () C:\Users\kai\Desktop\Event Viewer.lnk 2014-05-05 22:25 - 2014-05-05 22:25 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-05-05 22:22 - 2014-05-05 22:22 - 00002876 _____ () C:\Windows\SysWOW64\BroomData.bit 2014-05-05 22:22 - 2013-04-08 15:30 - 00022752 _____ () C:\Windows\system32\PCloudBroom64.exe 2014-05-05 22:11 - 2014-05-05 22:11 - 00001286 _____ () C:\Users\Public\Desktop\Panda Cloud Cleaner.lnk 2014-05-05 22:11 - 2013-04-29 08:17 - 00047632 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys 2014-05-05 22:10 - 2014-05-05 22:10 - 28413552 _____ (Panda Security ) C:\Users\kai\Downloads\PandaCloudCleaner_1.0.98.exe 2014-05-05 22:10 - 2014-05-05 22:10 - 28413552 _____ (Panda Security ) C:\Users\kai\Downloads\PandaCloudCleaner_1.0.98 (1).exe 2014-05-05 22:10 - 2014-05-05 22:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Security 2014-05-05 22:10 - 2014-05-05 22:10 - 00000000 ____D () C:\Program Files (x86)\Panda Security 2014-05-05 21:05 - 2014-05-05 21:05 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-05-05 21:04 - 2014-03-04 13:32 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-05-05 21:00 - 2013-11-28 15:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-05-05 21:00 - 2013-11-28 15:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-05-05 21:00 - 2013-11-22 10:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-05-05 20:27 - 2014-05-05 20:27 - 00003408 _____ () C:\Windows\System32\Tasks\aviraSWU 2014-05-05 20:27 - 2014-05-05 20:27 - 00000000 ____D () C:\Users\kai\AppData\Roaming\Avira 2014-05-05 20:26 - 2014-05-05 20:27 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-05-05 20:26 - 2014-05-05 20:26 - 00002070 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-05-05 20:26 - 2014-05-05 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-05-05 20:26 - 2014-05-05 20:26 - 00000000 ____D () C:\ProgramData\Avira 2014-05-05 20:26 - 2014-02-25 11:41 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-05-05 20:26 - 2014-02-25 11:41 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-05-05 20:26 - 2014-02-25 11:41 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-05-05 20:02 - 2014-05-05 22:05 - 00000000 ____D () C:\AdwCleaner 2014-05-05 20:02 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-05-05 20:00 - 2014-05-05 20:00 - 01316991 _____ () C:\Users\kai\Downloads\adwcleaner_3.2.0.7.exe 2014-05-05 20:00 - 2014-05-05 20:00 - 01316991 _____ () C:\Users\kai\Downloads\adwcleaner_3.2.0.7 (1).exe 2014-05-05 19:03 - 2014-05-06 09:53 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-05-05 19:03 - 2014-03-04 16:35 - 00062408 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-05-05 19:03 - 2014-03-04 16:35 - 00054216 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-05-05 19:03 - 2014-03-04 15:06 - 06714312 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-05-05 19:03 - 2014-03-04 15:06 - 03497816 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-05-05 19:03 - 2014-03-04 15:05 - 03649185 _____ () C:\Windows\system32\nvcoproc.bin 2014-05-05 19:03 - 2014-03-04 15:05 - 02558808 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-05-05 19:03 - 2014-03-04 15:05 - 00922968 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-05-05 19:03 - 2014-03-04 15:05 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-05-05 19:03 - 2014-03-04 15:05 - 00064968 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 31474976 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 25255256 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 23716640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 18302384 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 17755424 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 15783992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 14709720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 12708128 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-05-05 19:02 - 2014-03-04 16:35 - 11636176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 11589272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 09728064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 09690424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 03143456 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 03093280 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 02958792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 02783008 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 02715264 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 02411976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433523.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 01516488 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433523.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00947808 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00877856 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00863064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00846168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00832936 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00484296 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00409544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00377688 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00353504 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00333600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00174296 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-05-05 19:02 - 2014-03-04 16:35 - 00024544 _____ () C:\Windows\system32\nvinfo.pb 2014-05-05 18:52 - 2014-05-05 22:53 - 00000000 ____D () C:\Users\kai\Documents\FIFA 14 2014-05-05 18:52 - 2014-05-05 18:52 - 00009933 _____ () C:\Windows\DirectX.log 2014-05-05 18:52 - 2014-05-05 18:52 - 00001250 _____ () C:\Users\Public\Desktop\FIFA 14.lnk 2014-05-05 18:52 - 2014-05-05 18:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 14 2014-05-05 18:52 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-05-05 18:52 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-05-05 18:52 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-05-05 18:52 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-05-05 18:52 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-05-05 18:52 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-05-05 18:52 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-05-05 18:52 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2014-05-05 18:52 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-05-05 18:52 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-05-05 18:52 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-05-05 18:52 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-05-05 18:52 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-05-05 18:52 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-05-05 18:52 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-05-05 18:52 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-05-05 18:52 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-05-05 18:52 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-05-05 18:52 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-05-05 18:52 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-05-05 18:52 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-05-05 18:52 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-05-05 18:52 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-05-05 18:52 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-05-05 18:52 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-05-05 18:52 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-05-05 18:52 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-05-05 18:52 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-05-05 18:52 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-05-05 18:52 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-05-05 18:52 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-05-05 18:52 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-05-05 18:52 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-05-05 18:52 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-05-05 18:52 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-05-05 18:52 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-05-05 18:52 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-05-05 18:52 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-05-05 18:52 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-05-05 18:52 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-05-05 18:52 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-05-05 18:52 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-05-05 18:52 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-05-05 18:52 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-05-05 18:52 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-05-05 18:52 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-05-05 18:52 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-05-05 18:52 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-05-05 18:52 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-05-05 18:52 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-05-05 18:52 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-05-05 18:52 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-05-05 18:52 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-05-05 18:52 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-05-05 18:52 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-05-05 18:52 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-05-05 18:52 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-05-05 18:52 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-05-05 18:52 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-05-05 18:52 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-05-05 18:52 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-05-05 18:52 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-05-05 18:52 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-05-05 18:52 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-05-05 18:52 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-05-05 18:52 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-05-05 18:52 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-05-05 18:52 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-05-05 18:52 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-05-05 18:52 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-05-05 18:52 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-05-05 18:52 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-05-05 18:52 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-05-05 18:52 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-05-05 18:52 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-05-05 18:52 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-05-05 18:52 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-05-05 18:52 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-05-05 18:52 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-05-05 18:52 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-05-05 18:52 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-05-05 18:52 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-05-05 18:52 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-05-05 18:52 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-05-05 18:52 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-05-05 18:52 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-05-05 18:52 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-05-05 18:52 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-05-05 18:52 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-05-05 18:52 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-05-05 18:52 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-05-05 18:52 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-05-05 18:52 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-05-05 18:52 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-05-05 18:52 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-05-05 18:52 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-05-05 18:52 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-05-05 18:52 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-05-05 18:52 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-05-05 18:52 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-05-05 18:52 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-05-05 18:52 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-05-05 18:52 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-05-05 18:52 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-05-05 18:52 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-05-05 18:52 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-05-05 18:52 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-05-05 18:52 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-05-05 18:52 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-05-05 18:52 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-05-05 18:52 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-05-05 18:52 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-05-05 18:52 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-05-05 18:52 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-05-05 18:52 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-05-05 18:52 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-05-05 18:52 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-05-05 18:52 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-05-05 18:52 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-05-05 18:52 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-05-05 18:52 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-05-05 18:52 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-05-05 18:52 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-05-05 18:52 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-05-05 18:52 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-05-05 18:52 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-05-05 18:52 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-05-05 18:52 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-05-05 18:52 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-05-05 18:52 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-05-05 18:52 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-05-05 18:52 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-05-05 18:52 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-05-05 18:52 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-05-05 18:52 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-05-05 18:52 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-05-05 18:52 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-05-05 18:52 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-05-05 18:52 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-05-05 18:52 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-05-05 18:52 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-05-05 18:52 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-05-05 18:52 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-05-05 18:52 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-05-05 18:52 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-05-05 18:52 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-05-05 18:52 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-05-05 18:52 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-05-05 18:52 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-05-05 18:52 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-05-05 18:52 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-05-05 18:52 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-05-05 18:52 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-05-05 18:52 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-05-05 18:52 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-05-05 18:52 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-05-05 18:52 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-05-05 18:52 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-05-05 18:52 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-05-05 18:52 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-05-05 18:52 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-05-05 18:52 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-05-05 18:52 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-05-05 18:52 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-05-05 18:52 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-05-05 18:52 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-05-05 18:52 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-05-05 18:52 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-05-05 18:52 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-05-05 18:52 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-05-05 18:52 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-05-05 18:52 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-05-05 18:52 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-05-05 18:52 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-05-05 18:52 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-05-05 18:52 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-05-05 18:47 - 2014-05-05 19:47 - 00000000 ____D () C:\Users\kai\AppData\Roaming\Google 2014-05-05 18:46 - 2014-05-05 18:46 - 00000000 ____D () C:\Users\kai\AppData\Roaming\Macromedia 2014-05-05 18:46 - 2014-05-05 18:46 - 00000000 ____D () C:\Users\kai\AppData\Roaming\Adobe 2014-05-05 18:45 - 2014-05-05 22:21 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-05 18:45 - 2014-05-05 18:45 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-05 18:45 - 2014-05-05 18:45 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-05 18:45 - 2014-05-05 18:45 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-05 18:45 - 2014-05-05 18:45 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-05-05 18:45 - 2014-05-05 18:45 - 00000000 ____D () C:\Windows\system32\Macromed 2014-05-05 18:45 - 2014-05-05 18:45 - 00000000 ____D () C:\ProgramData\Google 2014-05-05 18:45 - 2014-05-05 18:45 - 00000000 ____D () C:\Program Files\Google 2014-05-05 18:44 - 2014-05-05 18:47 - 00000000 ____D () C:\Users\kai\AppData\Local\Adobe 2014-05-05 18:35 - 2014-05-05 18:35 - 00000000 ____D () C:\Program Files (x86)\Origin Games 2014-05-05 18:32 - 2014-05-05 18:52 - 00000000 ____D () C:\Users\kai\AppData\Local\Origin 2014-05-05 18:32 - 2014-05-05 18:35 - 00000000 ____D () C:\Users\kai\AppData\Roaming\Origin 2014-05-05 18:20 - 2014-05-06 09:53 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-05-05 18:20 - 2014-05-05 22:58 - 00000000 ____D () C:\ProgramData\Origin 2014-05-05 18:20 - 2014-05-05 18:52 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-05-05 18:20 - 2014-05-05 18:20 - 00000983 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-05-05 18:20 - 2014-05-05 18:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2014-05-05 18:18 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-05-05 18:18 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-05-05 18:17 - 2014-05-05 17:24 - 00000000 ____D () C:\Windows\Panther 2014-05-05 18:16 - 2014-05-05 18:19 - 00000000 ____D () C:\Users\kai\AppData\Local\NVIDIA Corporation 2014-05-05 18:12 - 2014-05-05 18:12 - 314584651 _____ () C:\Windows\MEMORY.DMP 2014-05-05 18:05 - 2014-05-05 18:17 - 00000000 ____D () C:\Users\kai\AppData\Local\NVIDIA 2014-05-05 18:05 - 2014-05-05 18:05 - 00001351 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-05-05 18:05 - 2014-04-30 20:29 - 01225920 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-05-05 18:05 - 2014-04-30 20:29 - 01081112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-05-05 18:05 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-05-05 18:05 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2014-05-05 18:05 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-05-05 18:05 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-05-05 18:05 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-05-05 18:05 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-05-05 18:04 - 2014-05-05 21:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-05-05 18:03 - 2014-05-05 21:05 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-05-05 18:03 - 2014-05-05 19:03 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-05-05 18:02 - 2014-03-31 18:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-05-05 18:01 - 2014-05-05 19:03 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-05-05 18:01 - 2014-05-05 18:01 - 276762432 _____ (NVIDIA Corporation) C:\Users\kai\Downloads\335.23-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-05-05 18:01 - 2014-05-05 18:01 - 00000000 ____D () C:\NVIDIA 2014-05-05 17:51 - 2014-05-05 17:51 - 00000000 ____D () C:\Windows\System32\Tasks\Norton Internet Security 2014-05-05 17:44 - 2014-05-05 17:44 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-05-05 17:44 - 2013-04-26 04:24 - 00786416 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3xhc.sys 2014-05-05 17:44 - 2013-04-26 04:24 - 00368112 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hub.sys 2014-05-05 17:44 - 2013-04-26 04:24 - 00020464 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hcs.sys 2014-05-05 17:43 - 2014-05-05 17:44 - 00000000 ____D () C:\ProgramData\Qualcomm 2014-05-05 17:43 - 2014-05-05 17:43 - 00002783 _____ () C:\Users\Public\Desktop\Killer Network Manager.lnk 2014-05-05 17:43 - 2014-05-05 17:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Qualcomm Atheros 2014-05-05 17:42 - 2014-05-05 17:42 - 01588294 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-05-05 17:42 - 2014-05-05 17:42 - 00000000 ____D () C:\Program Files\Qualcomm Atheros 2014-05-05 17:39 - 2014-05-05 17:39 - 00057560 _____ () C:\Users\kai\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-05 17:38 - 2014-05-05 17:38 - 00000000 ____D () C:\ProgramData\Intel 2014-05-05 17:38 - 2014-05-05 17:38 - 00000000 ____D () C:\ProgramData\Downloaded Installations 2014-05-05 17:38 - 2014-05-05 17:38 - 00000000 ____D () C:\Program Files\Intel 2014-05-05 17:38 - 2013-09-16 12:17 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2014-05-05 17:37 - 2014-05-05 17:37 - 00466520 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2014-05-05 17:37 - 2014-05-05 17:37 - 00445016 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2014-05-05 17:37 - 2014-05-05 17:37 - 00123480 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2014-05-05 17:37 - 2014-05-05 17:37 - 00109144 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2014-05-05 17:37 - 2014-05-05 17:37 - 00000184 _____ () C:\Setup.log 2014-05-05 17:37 - 2014-05-05 17:37 - 00000000 ____D () C:\Users\Public\Creative 2014-05-05 17:37 - 2014-05-05 17:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative 2014-05-05 17:37 - 2013-05-14 16:01 - 01947136 ____N (Creative) C:\Windows\system32\Sens_oal.dll 2014-05-05 17:37 - 2013-05-14 15:57 - 02906590 ____N (Creative) C:\Windows\SysWOW64\Sens_oal.dll 2014-05-05 17:37 - 2009-12-24 04:49 - 00809560 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmp2942.tmp 2014-05-05 17:37 - 2003-06-12 23:25 - 00007062 _____ () C:\Windows\SysWOW64\audiopid.vxd 2014-05-05 17:37 - 2000-05-11 01:00 - 00090112 ____N (Creative Technology Ltd.) C:\Windows\Updreg.EXE 2014-05-05 17:36 - 2014-05-05 17:37 - 00000105 ___RH () C:\Windows\ctfile.rfc 2014-05-05 17:36 - 2014-05-05 17:37 - 00000000 ____D () C:\Program Files (x86)\Creative 2014-05-05 17:36 - 2014-05-05 17:36 - 00000000 ____H () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Coinstaller_Critical.Wdf 2014-05-05 17:36 - 2014-05-05 17:36 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-05-05 17:36 - 2013-09-16 12:17 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-05-05 17:36 - 2013-09-16 12:17 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-05-05 17:36 - 2012-07-26 06:55 - 00785512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-05-05 17:36 - 2012-07-26 06:55 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-05-05 17:36 - 2012-07-26 04:36 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-05-05 17:36 - 2012-06-12 11:20 - 00004894 _____ () C:\Windows\cthdaGER.reg 2014-05-05 17:36 - 2012-06-12 11:20 - 00004850 _____ () C:\Windows\cthdaENG.reg 2014-05-05 17:36 - 2012-06-02 16:35 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-05-05 17:35 - 2014-05-05 17:44 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-05-05 17:35 - 2014-05-05 17:43 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-05-05 17:35 - 2014-05-05 17:35 - 00177752 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2014-05-05 17:35 - 2014-05-05 17:35 - 00008222 _____ () C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2014-05-05 17:35 - 2014-05-05 17:35 - 00003236 _____ () C:\Windows\System32\Tasks\Norton WSC Integration 2014-05-05 17:35 - 2014-05-05 17:35 - 00002588 _____ () C:\Users\Public\Desktop\Norton Internet Security.lnk 2014-05-05 17:35 - 2014-05-05 17:35 - 00000000 ____D () C:\Users\kai\AppData\Roaming\InstallShield 2014-05-05 17:35 - 2014-05-05 17:35 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared 2014-05-05 17:35 - 2014-05-05 17:35 - 00000000 ____D () C:\Intel 2014-05-05 17:35 - 2013-08-21 15:16 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll 2014-05-05 17:34 - 2014-05-05 17:50 - 00000000 ____D () C:\ProgramData\Norton 2014-05-05 17:34 - 2014-05-05 17:35 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security 2014-05-05 17:34 - 2014-05-05 17:34 - 00000000 ____D () C:\Windows\system32\Drivers\NISx64 2014-05-05 17:34 - 2014-05-05 17:34 - 00000000 ____D () C:\Program Files (x86)\Norton Internet Security 2014-05-05 17:33 - 2014-05-06 09:59 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-05 17:33 - 2014-05-06 09:53 - 00001100 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-05 17:33 - 2014-05-05 21:34 - 00000000 ____D () C:\Users\kai\AppData\Local\Google 2014-05-05 17:33 - 2014-05-05 19:00 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-05 17:33 - 2014-05-05 19:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-05 17:33 - 2014-05-05 18:52 - 00004100 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-05-05 17:33 - 2014-05-05 18:52 - 00003848 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-05-05 17:33 - 2014-05-05 18:45 - 00000000 ____D () C:\Program Files (x86)\Google 2014-05-05 17:33 - 2014-05-05 17:33 - 00000000 ____D () C:\Users\kai\AppData\LocalGoogle 2014-05-05 17:33 - 2014-05-05 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2014-05-05 17:32 - 2014-05-05 17:32 - 00000010 _____ () C:\Windows\GSetup.ini 2014-05-05 17:28 - 2014-05-05 17:29 - 00002562 _____ () C:\Windows\diagwrn.xml 2014-05-05 17:28 - 2014-05-05 17:29 - 00001908 _____ () C:\Windows\diagerr.xml 2014-05-05 17:24 - 2014-05-05 17:24 - 00001443 _____ () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-05 17:24 - 2014-05-05 17:24 - 00001409 _____ () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-05-05 17:24 - 2014-05-05 17:24 - 00000020 ___SH () C:\Users\kai\ntuser.ini 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Vorlagen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Startmenü 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Netzwerkumgebung 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Lokale Einstellungen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Eigene Dateien 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Druckumgebung 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Documents\Eigene Musik 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Documents\Eigene Bilder 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\AppData\Local\Verlauf 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\AppData\Local\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Programme 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 __SHD () C:\Recovery 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 ___RD () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 ___RD () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 ____D () C:\Users\kai\AppData\Local\VirtualStore 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 ____D () C:\Users\kai 2014-05-05 17:24 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-05 17:24 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-05 17:21 - 2014-05-05 17:21 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-05-05 17:21 - 2014-05-05 17:21 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-05-05 17:20 - 2014-05-06 09:57 - 00077785 _____ () C:\Windows\WindowsUpdate.log 2014-05-05 17:20 - 2014-05-05 17:20 - 00001355 _____ () C:\Windows\TSSysprep.log ==================== One Month Modified Files and Folders ======= 2014-05-06 10:08 - 2014-05-06 10:04 - 00016810 _____ () C:\Users\kai\Downloads\FRST.txt 2014-05-06 10:08 - 2014-05-06 10:04 - 00000000 ____D () C:\FRST 2014-05-06 10:04 - 2014-05-06 10:04 - 00017514 _____ () C:\Users\kai\Downloads\Addition.txt 2014-05-06 10:03 - 2014-05-06 10:03 - 02063872 _____ (Farbar) C:\Users\kai\Downloads\FRST64.exe 2014-05-06 10:00 - 2014-05-06 10:00 - 01053184 _____ (Farbar) C:\Users\kai\Downloads\FRST.exe 2014-05-06 09:59 - 2014-05-05 17:33 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-06 09:57 - 2014-05-05 17:20 - 00077785 _____ () C:\Windows\WindowsUpdate.log 2014-05-06 09:54 - 2014-05-05 23:06 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-06 09:53 - 2014-05-05 19:03 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-05-06 09:53 - 2014-05-05 18:20 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-05-06 09:53 - 2014-05-05 17:33 - 00001100 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-06 09:53 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-06 09:53 - 2009-07-14 06:51 - 00008337 _____ () C:\Windows\setupact.log 2014-05-05 23:13 - 2009-07-14 06:45 - 00020832 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-05 23:13 - 2009-07-14 06:45 - 00020832 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-05 23:06 - 2014-05-05 23:06 - 00001106 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-05 23:06 - 2014-05-05 23:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-05 23:06 - 2014-05-05 23:06 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-05 23:06 - 2014-05-05 23:06 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-05 23:05 - 2014-05-05 23:05 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\kai\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-05 23:01 - 2014-05-05 23:01 - 00001298 _____ () C:\Users\kai\Desktop\Event Viewer.lnk 2014-05-05 22:58 - 2014-05-05 18:20 - 00000000 ____D () C:\ProgramData\Origin 2014-05-05 22:53 - 2014-05-05 18:52 - 00000000 ____D () C:\Users\kai\Documents\FIFA 14 2014-05-05 22:25 - 2014-05-05 22:25 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-05-05 22:24 - 2010-11-21 05:47 - 00105768 _____ () C:\Windows\PFRO.log 2014-05-05 22:22 - 2014-05-05 22:22 - 00002876 _____ () C:\Windows\SysWOW64\BroomData.bit 2014-05-05 22:21 - 2014-05-05 18:45 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-05 22:11 - 2014-05-05 22:11 - 00001286 _____ () C:\Users\Public\Desktop\Panda Cloud Cleaner.lnk 2014-05-05 22:10 - 2014-05-05 22:10 - 28413552 _____ (Panda Security ) C:\Users\kai\Downloads\PandaCloudCleaner_1.0.98.exe 2014-05-05 22:10 - 2014-05-05 22:10 - 28413552 _____ (Panda Security ) C:\Users\kai\Downloads\PandaCloudCleaner_1.0.98 (1).exe 2014-05-05 22:10 - 2014-05-05 22:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Security 2014-05-05 22:10 - 2014-05-05 22:10 - 00000000 ____D () C:\Program Files (x86)\Panda Security 2014-05-05 22:05 - 2014-05-05 20:02 - 00000000 ____D () C:\AdwCleaner 2014-05-05 21:34 - 2014-05-05 17:33 - 00000000 ____D () C:\Users\kai\AppData\Local\Google 2014-05-05 21:05 - 2014-05-05 21:05 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-05-05 21:05 - 2014-05-05 18:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-05-05 21:05 - 2014-05-05 18:03 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-05-05 20:27 - 2014-05-05 20:27 - 00003408 _____ () C:\Windows\System32\Tasks\aviraSWU 2014-05-05 20:27 - 2014-05-05 20:27 - 00000000 ____D () C:\Users\kai\AppData\Roaming\Avira 2014-05-05 20:27 - 2014-05-05 20:26 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-05-05 20:27 - 2011-04-12 09:43 - 00696132 _____ () C:\Windows\system32\perfh007.dat 2014-05-05 20:27 - 2011-04-12 09:43 - 00147428 _____ () C:\Windows\system32\perfc007.dat 2014-05-05 20:27 - 2009-07-14 07:13 - 01611160 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-05 20:26 - 2014-05-05 20:26 - 00002070 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-05-05 20:26 - 2014-05-05 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-05-05 20:26 - 2014-05-05 20:26 - 00000000 ____D () C:\ProgramData\Avira 2014-05-05 20:00 - 2014-05-05 20:00 - 01316991 _____ () C:\Users\kai\Downloads\adwcleaner_3.2.0.7.exe 2014-05-05 20:00 - 2014-05-05 20:00 - 01316991 _____ () C:\Users\kai\Downloads\adwcleaner_3.2.0.7 (1).exe 2014-05-05 19:47 - 2014-05-05 18:47 - 00000000 ____D () C:\Users\kai\AppData\Roaming\Google 2014-05-05 19:03 - 2014-05-05 18:03 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-05-05 19:03 - 2014-05-05 18:01 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-05-05 19:03 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help 2014-05-05 19:00 - 2014-05-05 17:33 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-05 19:00 - 2014-05-05 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-05 18:52 - 2014-05-05 18:52 - 00009933 _____ () C:\Windows\DirectX.log 2014-05-05 18:52 - 2014-05-05 18:52 - 00001250 _____ () C:\Users\Public\Desktop\FIFA 14.lnk 2014-05-05 18:52 - 2014-05-05 18:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 14 2014-05-05 18:52 - 2014-05-05 18:32 - 00000000 ____D () C:\Users\kai\AppData\Local\Origin 2014-05-05 18:52 - 2014-05-05 18:20 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-05-05 18:52 - 2014-05-05 17:33 - 00004100 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-05-05 18:52 - 2014-05-05 17:33 - 00003848 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-05-05 18:52 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-05-05 18:47 - 2014-05-05 18:44 - 00000000 ____D () C:\Users\kai\AppData\Local\Adobe 2014-05-05 18:46 - 2014-05-05 18:46 - 00000000 ____D () C:\Users\kai\AppData\Roaming\Macromedia 2014-05-05 18:46 - 2014-05-05 18:46 - 00000000 ____D () C:\Users\kai\AppData\Roaming\Adobe 2014-05-05 18:45 - 2014-05-05 18:45 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-05 18:45 - 2014-05-05 18:45 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-05 18:45 - 2014-05-05 18:45 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-05 18:45 - 2014-05-05 18:45 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-05-05 18:45 - 2014-05-05 18:45 - 00000000 ____D () C:\Windows\system32\Macromed 2014-05-05 18:45 - 2014-05-05 18:45 - 00000000 ____D () C:\ProgramData\Google 2014-05-05 18:45 - 2014-05-05 18:45 - 00000000 ____D () C:\Program Files\Google 2014-05-05 18:45 - 2014-05-05 17:33 - 00000000 ____D () C:\Program Files (x86)\Google 2014-05-05 18:35 - 2014-05-05 18:35 - 00000000 ____D () C:\Program Files (x86)\Origin Games 2014-05-05 18:35 - 2014-05-05 18:32 - 00000000 ____D () C:\Users\kai\AppData\Roaming\Origin 2014-05-05 18:20 - 2014-05-05 18:20 - 00000983 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-05-05 18:20 - 2014-05-05 18:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2014-05-05 18:19 - 2014-05-05 18:16 - 00000000 ____D () C:\Users\kai\AppData\Local\NVIDIA Corporation 2014-05-05 18:17 - 2014-05-05 18:05 - 00000000 ____D () C:\Users\kai\AppData\Local\NVIDIA 2014-05-05 18:17 - 2009-07-14 07:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-05-05 18:17 - 2009-07-14 07:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-05-05 18:12 - 2014-05-05 18:12 - 314584651 _____ () C:\Windows\MEMORY.DMP 2014-05-05 18:10 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-05-05 18:05 - 2014-05-05 18:05 - 00001351 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-05-05 18:01 - 2014-05-05 18:01 - 276762432 _____ (NVIDIA Corporation) C:\Users\kai\Downloads\335.23-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-05-05 18:01 - 2014-05-05 18:01 - 00000000 ____D () C:\NVIDIA 2014-05-05 17:51 - 2014-05-05 17:51 - 00000000 ____D () C:\Windows\System32\Tasks\Norton Internet Security 2014-05-05 17:50 - 2014-05-05 17:34 - 00000000 ____D () C:\ProgramData\Norton 2014-05-05 17:45 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-05 17:44 - 2014-05-05 17:44 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-05-05 17:44 - 2014-05-05 17:43 - 00000000 ____D () C:\ProgramData\Qualcomm 2014-05-05 17:44 - 2014-05-05 17:35 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-05-05 17:43 - 2014-05-05 17:43 - 00002783 _____ () C:\Users\Public\Desktop\Killer Network Manager.lnk 2014-05-05 17:43 - 2014-05-05 17:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Qualcomm Atheros 2014-05-05 17:43 - 2014-05-05 17:35 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-05-05 17:43 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-05 17:42 - 2014-05-05 17:42 - 01588294 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-05-05 17:42 - 2014-05-05 17:42 - 00000000 ____D () C:\Program Files\Qualcomm Atheros 2014-05-05 17:39 - 2014-05-05 17:39 - 00057560 _____ () C:\Users\kai\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-05 17:38 - 2014-05-05 17:38 - 00000000 ____D () C:\ProgramData\Intel 2014-05-05 17:38 - 2014-05-05 17:38 - 00000000 ____D () C:\ProgramData\Downloaded Installations 2014-05-05 17:38 - 2014-05-05 17:38 - 00000000 ____D () C:\Program Files\Intel 2014-05-05 17:38 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-05-05 17:37 - 2014-05-05 17:37 - 00466520 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2014-05-05 17:37 - 2014-05-05 17:37 - 00445016 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2014-05-05 17:37 - 2014-05-05 17:37 - 00123480 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2014-05-05 17:37 - 2014-05-05 17:37 - 00109144 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2014-05-05 17:37 - 2014-05-05 17:37 - 00000184 _____ () C:\Setup.log 2014-05-05 17:37 - 2014-05-05 17:37 - 00000000 ____D () C:\Users\Public\Creative 2014-05-05 17:37 - 2014-05-05 17:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative 2014-05-05 17:37 - 2014-05-05 17:36 - 00000105 ___RH () C:\Windows\ctfile.rfc 2014-05-05 17:37 - 2014-05-05 17:36 - 00000000 ____D () C:\Program Files (x86)\Creative 2014-05-05 17:37 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\restore 2014-05-05 17:36 - 2014-05-05 17:36 - 00000000 ____H () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Coinstaller_Critical.Wdf 2014-05-05 17:36 - 2014-05-05 17:36 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-05-05 17:35 - 2014-05-05 17:35 - 00177752 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2014-05-05 17:35 - 2014-05-05 17:35 - 00008222 _____ () C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2014-05-05 17:35 - 2014-05-05 17:35 - 00003236 _____ () C:\Windows\System32\Tasks\Norton WSC Integration 2014-05-05 17:35 - 2014-05-05 17:35 - 00002588 _____ () C:\Users\Public\Desktop\Norton Internet Security.lnk 2014-05-05 17:35 - 2014-05-05 17:35 - 00000000 ____D () C:\Users\kai\AppData\Roaming\InstallShield 2014-05-05 17:35 - 2014-05-05 17:35 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared 2014-05-05 17:35 - 2014-05-05 17:35 - 00000000 ____D () C:\Intel 2014-05-05 17:35 - 2014-05-05 17:34 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security 2014-05-05 17:34 - 2014-05-05 17:34 - 00000000 ____D () C:\Windows\system32\Drivers\NISx64 2014-05-05 17:34 - 2014-05-05 17:34 - 00000000 ____D () C:\Program Files (x86)\Norton Internet Security 2014-05-05 17:33 - 2014-05-05 17:33 - 00000000 ____D () C:\Users\kai\AppData\LocalGoogle 2014-05-05 17:33 - 2014-05-05 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2014-05-05 17:32 - 2014-05-05 17:32 - 00000010 _____ () C:\Windows\GSetup.ini 2014-05-05 17:30 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-05-05 17:29 - 2014-05-05 17:28 - 00002562 _____ () C:\Windows\diagwrn.xml 2014-05-05 17:29 - 2014-05-05 17:28 - 00001908 _____ () C:\Windows\diagerr.xml 2014-05-05 17:28 - 2009-07-14 06:51 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-05 17:24 - 2014-05-05 18:17 - 00000000 ____D () C:\Windows\Panther 2014-05-05 17:24 - 2014-05-05 17:24 - 00001443 _____ () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-05 17:24 - 2014-05-05 17:24 - 00001409 _____ () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-05-05 17:24 - 2014-05-05 17:24 - 00000020 ___SH () C:\Users\kai\ntuser.ini 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Vorlagen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Startmenü 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Netzwerkumgebung 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Lokale Einstellungen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Eigene Dateien 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Druckumgebung 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Documents\Eigene Musik 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Documents\Eigene Bilder 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\AppData\Local\Verlauf 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\AppData\Local\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\kai\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Programme 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 __SHD () C:\Recovery 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 ___RD () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 ___RD () C:\Users\kai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 ____D () C:\Users\kai\AppData\Local\VirtualStore 2014-05-05 17:24 - 2014-05-05 17:24 - 00000000 ____D () C:\Users\kai 2014-05-05 17:24 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-05-05 17:24 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-05-05 17:23 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-05-05 17:22 - 2009-07-14 06:45 - 00274464 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-05 17:21 - 2014-05-05 17:21 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-05-05 17:21 - 2014-05-05 17:21 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-05-05 17:21 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-05 17:20 - 2014-05-05 17:20 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-05-05 17:20 - 2009-07-14 06:46 - 00002790 _____ () C:\Windows\DtcInstall.log 2014-05-05 17:20 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-04-30 20:29 - 2014-05-05 18:05 - 01225920 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-04-30 20:29 - 2014-05-05 18:05 - 01081112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll Some content of TEMP: ==================== C:\Users\kai\AppData\Local\Temp\avgnt.exe C:\Users\kai\AppData\Local\Temp\nvSCPAPI.dll C:\Users\kai\AppData\Local\Temp\nvStInst.exe C:\Users\kai\AppData\Local\Temp\Quarantine.exe C:\Users\kai\AppData\Local\Temp\_is5F8D.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-05 17:17 ==================== End Of Log ============================ --- --- --- die addition lässt sich nicht abschicken im thread |
07.05.2014, 07:08 | #4 |
/// the machine /// TB-Ausbilder | nvlddmkm.sys Trojaner hiiiiiiiiilllllfeeee Um das zu verstehen: Du denkst nvlddmkm.sys sei ein Virus? Das ist eine Nvidia Datei. Addition.txt bitte in Stücke teilen und mehrere Posts nutzen.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
07.05.2014, 12:55 | #5 |
| nvlddmkm.sys Trojaner hiiiiiiiiilllllfeeee Hallo noch mal habe den Fehler gefunden jop lag nicht an trojaner es lag an der gen 3 unterstützung wen ich auf gen 2 unterstützung laufen lasse ist alles stabil sobald ich umstelle auf gen 3 ist der fehler sofort wieder da obwohl die Karte auf gen 3 tauglich ist^^ |
08.05.2014, 08:28 | #6 |
/// the machine /// TB-Ausbilder | nvlddmkm.sys Trojaner hiiiiiiiiilllllfeeee ok
__________________ --> nvlddmkm.sys Trojaner hiiiiiiiiilllllfeeee |
Themen zu nvlddmkm.sys Trojaner hiiiiiiiiilllllfeeee |
bildschirm, bildschirm schwarz, bluescree, bluescreen, folge, folgendes, geforce, hallo zusammen, laggt, nicht mehr, nvidia, nvlddmkm.sys, problem, sache, sachen, schwarz, standart, super, treiber, troja, trojaner, versuch, versucht, woche, wochen, zusammen |