![]() |
Plagegeister aller Art und deren Bekämpfung: WIN7 - "ungültiges Bild" Error nach Anitmalwarebyte BereinigungWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
![]() | #1 |
| ![]() WIN7 - "ungültiges Bild" Error nach Anitmalwarebyte Bereinigung Habe folgendes Problem: Ich habe im Internet gelesen, antimalewarebytes sei ein guter Virenscanner, und kann so einiges entdecken, was von anderen Virenschutz Programmen unentdeckt bleibt. Ich nutzte sonst MS SE und habe keine Probleme, trotzdem habe ich mal AnitMB geladen, MS SE deaktiviert, und einen scan durchlaufen lassen. Tatsächlich wurden 3-4 Sachen gefunden. Habe diese auch direkt löschen lassen. Das ganze war vor 2 Tagen, habe den PC nachher und bis heute nicht neu gebootet (war einmal in energiesparmodus) Heute hatte ich allerdings einen Blackscreen (passiert alle 2/3 Monate, den Grund kenne ich nicht). Dabei bleibt die Musik immer ganz nett hängen, was in meiner Anlage immer nen ganz gesunden Sound erzeugt ![]() Nachdem ich den PC aber neu gestartet hab, zeigt mir Windows bei 2/3 meiner Programme an "Fehler,...ungültiges Bild ....". Die meisten funktionieren aber nach dieser Fehlermeldung trotzdem tadellos. Hat mein AntiMB Systemrelevante Datein zerschossen? Oder hängt das damit gar nicht zusammen, und ich hab mir einen Virus eingefangen? (dabei wüsste ich allerdings nicht wo/wie, keine Warez geladen, und sonst auch keine "bösen" Seiten besucht). Ist mein System noch zu retten, ohne alle Programme löschen zu müssen? Hab gesehen, dass in diesem Forum Logs erwünscht sind. Ich bitte euch, falls notwendig, mich genau zu instruieren, bin nicht so der Software Experte. |
![]() | #2 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() WIN7 - "ungültiges Bild" Error nach Anitmalwarebyte Bereinigung hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
![]() | #3 |
| ![]() WIN7 - "ungültiges Bild" Error nach Anitmalwarebyte Bereinigung Danke für deine Mühe!
__________________Allerdings habe ich das Problem bereits selbst gelöst. Ich habe mir AntiMB Anit-Rootkit geladen. Gleich beim Programmstart hat mir die Anwendung angeboten, eine bestimmte Datei zu löschen. (Ich glaub das war eine DLL). Ab diesem Zeitpunkt habe ich die Fehlermeldung nicht mehr zu Gesicht bekommen. Schon irgendwie seltsam, aber jetzt funktioniert wieder alles. |
![]() | #4 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() WIN7 - "ungültiges Bild" Error nach Anitmalwarebyte Bereinigung bedeutet nit das alles sauber is.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #5 |
| ![]() WIN7 - "ungültiges Bild" Error nach Anitmalwarebyte Bereinigung Habe aber anschließend einen kompletten Scan mit MB Anti Rootikit durchgeführt. Hat sogar einiges gefunden (im 3 stelligen Bereich, allerdings vieles von einem früheren bewusst installierten Keyloger) Achja, und hier die benötigten Logs: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-06-2014 Ran by Günter Labner (administrator) on GOGO-PC on 03-06-2014 15:34:12 Running from C:\Users\Günter Labner\Downloads Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe () C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe (Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 4\x64\Win64ShellLink.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Almico Software (www.almico.com)) C:\Program Files (x86)\SpeedFan\speedfan.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Realtek) C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\RtlService.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Realtek Semiconductor Corp.) C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\RtWLan.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\taskmgr.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7506136 2013-12-06] (Realtek Semiconductor) HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1271072 2014-03-11] (Microsoft Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1225920 2014-04-30] (NVIDIA Corporation) HKLM-x32\...\Run: [CPUChanger] => C:\Windows\CPUChanger.cmd HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKU\S-1-5-21-304040336-796000464-3015467473-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3671872 2012-04-17] (DT Soft Ltd) HKU\S-1-5-21-304040336-796000464-3015467473-1002\...\MountPoints2: {295cb7dc-fed4-11e2-80c4-6c626d3f47a3} - E:\Startme.exe HKU\S-1-5-21-304040336-796000464-3015467473-1002\...\MountPoints2: {487ce53e-d876-11e0-b806-6c626d3f47a3} - E:\Startme.exe HKU\S-1-5-21-304040336-796000464-3015467473-1002\...\MountPoints2: {4c678c77-c73a-11e0-a98b-6c626d3f47a3} - G:\SETUP.EXE HKU\S-1-5-21-304040336-796000464-3015467473-1002\...\MountPoints2: {7cc50232-55bd-11e2-9b6a-6c626d3f47a3} - G:\SETUP.EXE -autorun Startup: C:\Users\Günter Labner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SpeedFan (2).lnk ShortcutTarget: SpeedFan (2).lnk -> C:\Program Files (x86)\SpeedFan\speedfan.exe (Almico Software (www.almico.com)) SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\system32\CbFsMntNtf3.dll (EldoS Corporation) SSODL-x32: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\SysWOW64\CbFsMntNtf3.dll (EldoS Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://searchy.easylifeapp.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://at.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA5A957D4C83FCC01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-at HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://searchy.easylifeapp.com/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://searchy.easylifeapp.com/ SearchScopes: HKLM - DefaultScope value is missing. BHO: SNT - {1E4A187D-C547-8233-B46D-6679A2B82EC8} - C:\Program Files (x86)\SNT\ldhh.x64.dll No File BHO: MinuimumPrice - {3A167716-E5D6-F4FB-96F8-5538B0A4F011} - C:\ProgramData\MinuimumPrice\wCgJqirwr.x64.dll () BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: AlLCheapPorrice - {9DEA461B-F943-373E-5426-181F21C3D4C5} - C:\ProgramData\AlLCheapPorrice\O92yLnlJ.x64.dll () BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: websave - {C55F45D8-EAD1-7F61-79CA-0362746813C2} - C:\Program Files (x86)\websave\fnPAH2y.x64.dll No File BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: SNT - {1E4A187D-C547-8233-B46D-6679A2B82EC8} - C:\Program Files (x86)\SNT\ldhh.dll No File BHO-x32: MinuimumPrice - {3A167716-E5D6-F4FB-96F8-5538B0A4F011} - C:\ProgramData\MinuimumPrice\wCgJqirwr.dll () BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: AlLCheapPorrice - {9DEA461B-F943-373E-5426-181F21C3D4C5} - C:\ProgramData\AlLCheapPorrice\O92yLnlJ.dll () BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: websave - {C55F45D8-EAD1-7F61-79CA-0362746813C2} - C:\Program Files (x86)\websave\fnPAH2y.dll No File BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Günter Labner\AppData\Roaming\Mozilla\Firefox\Profiles\zievgenh.default FF Homepage: hxxp://searchy.easylifeapp.com/ FF NetworkProxy: "backup.ftp", "" FF NetworkProxy: "backup.ftp_port", 3128 FF NetworkProxy: "backup.socks", "" FF NetworkProxy: "backup.socks_port", 3128 FF NetworkProxy: "backup.ssl", "" FF NetworkProxy: "backup.ssl_port", 3128 FF NetworkProxy: "ftp", "" FF NetworkProxy: "ftp_port", 3128 FF NetworkProxy: "http", "" FF NetworkProxy: "http_port", 3128 FF NetworkProxy: "share_proxy_settings", true FF NetworkProxy: "socks", "" FF NetworkProxy: "socks_port", 3128 FF NetworkProxy: "socks_version", 4 FF NetworkProxy: "ssl", "" FF NetworkProxy: "ssl_port", 3128 FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.21.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.7 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1165635.dll (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @canon.com/EPPEX - C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.) FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Windows\system32\C2MP\npdivx32.dll No File FF Plugin-x32: @esn.me/esnsonar,version=0.70.0 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.0\npesnsonar.dll No File FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=1.118.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.3.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Günter Labner\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Xenotix Keylog X - C:\Users\Günter Labner\AppData\Roaming\Mozilla\Firefox\Profiles\zievgenh.default\Extensions\ajin@ajin.com.xpi [2012-11-10] FF Extension: Play Music - C:\Users\Günter Labner\AppData\Roaming\Mozilla\Firefox\Profiles\zievgenh.default\Extensions\Keylogger@lipo-technologies.com.xpi [2012-11-10] FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\Günter Labner\AppData\Roaming\Mozilla\Firefox\Profiles\zievgenh.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi [2012-11-20] FF Extension: Modify Headers - C:\Users\Günter Labner\AppData\Roaming\Mozilla\Firefox\Profiles\zievgenh.default\Extensions\{b749fc7c-e949-447f-926c-3f4eed6accfe}.xpi [2012-07-28] Chrome: ======= CHR HomePage: hxxp://searchy.easylifeapp.com/ CHR StartupUrls: "https://www.google.at/" CHR Extension: (Google Wallet) - C:\Users\Günter Labner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-21] CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Users\Günter Labner\AppData\Roaming\DVDVideoSoft\dvsYoutubeDownload.crx [2012-10-17] CHR HKLM-x32\...\Chrome\Extension: [aacbndibbcpajfgnkdkaakeiojmmgmnk] - C:\Users\Günter Labner\AppData\Roaming\Media Finder\Extensions\mf_plugin_gc.crx [2012-10-17] CHR HKLM-x32\...\Chrome\Extension: [jpihmmhdcobmllpcnpfbhnipmhamldje] - C:\Users\Günter Labner\AppData\Roaming\Media Finder\Extensions\gencrawler_gc.crx [2012-10-17] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= S2 1a34a8e0; C:\Program Files (x86)\WSSvc.dll [175952 2014-03-02] () S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2014-01-29] (Futuremark) S2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2011-08-10] () S4 mitsijm2012; c:\Program Files\Autodesk\Inventor 2012\Moldflow\bin\mitsijm.exe [848184 2010-12-08] (Autodesk, Inc.) S3 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161776 2013-08-19] (MSI) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2014-03-11] (Microsoft Corporation) R2 MSSQL$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation) S4 msvsmon90; C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe [4466688 2007-11-08] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [347872 2014-03-11] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1617696 2014-04-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21007192 2014-04-30] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2012-12-05] () R2 RealtekCU; C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) S4 BstHdAndroidSvc; "C:\Program Files (x86)\BlueStacks\HD-Service.exe" BstHdAndroidSvc Android [X] S3 Sony PC Companion; "C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe" [X] ==================== Drivers (Whitelisted) ==================== S1 acedrv06; C:\Windows\system32\drivers\acedrv06.sys [147456 2011-12-17] () S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [211456 2011-08-09] () R0 BootDefragDriver; C:\Windows\System32\drivers\BootDefragDriver.sys [17088 2013-12-23] (Glarysoft Ltd) R3 cbfs3; C:\Windows\System32\DRIVERS\cbfs3.sys [352144 2012-04-09] (EldoS Corporation) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-06-03] (DT Soft Ltd) R3 ElbyCDFL; C:\Windows\System32\Drivers\ElbyCDFL.sys [40648 2007-02-16] (SlySoft, Inc.) R3 ElbyCDFL; C:\Windows\SysWOW64\Drivers\ElbyCDFL.sys [40648 2007-02-16] (SlySoft, Inc.) S3 ipadtst; C:\Program Files (x86)\MSI\Super-Charger\ipadtst_64.sys [19952 2013-02-01] (Windows (R) Win 7 DDK provider) S2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [35328 2011-08-09] () S2 lirsgt; C:\Windows\SysWOW64\DRIVERS\lirsgt.sys [18048 2011-08-09] () R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [268512 2014-01-25] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133928 2014-03-11] (Microsoft Corporation) R2 npf; C:\Windows\System32\drivers\npf.sys [47632 2010-01-27] (CACE Technologies, Inc.) S3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-25] (MSI) S3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (MSI) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18776 2014-04-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) R3 RTCore64; C:\Program Files (x86)\EVGA Precision X\RTCore64.sys [15176 2013-07-18] () S3 RTL8192cu; C:\Windows\System32\DRIVERS\rtwlanu.sys [1047144 2011-09-06] (Realtek Semiconductor Corporation ) R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S0 sptd; C:\Windows\System32\Drivers\sptd.sys [867064 2011-12-25] (Duplex Secure Ltd.) S3 USBTINSP; C:\Windows\System32\DRIVERS\tinspusb.sys [142848 2011-10-02] (Texas Instruments) R2 WinRing0_1_2_0; C:\Users\Günter Labner\AppData\Local\Microsoft\Windows Sidebar\Gadgets\IntelCoreSeries25.gadget\WinRing0x64.sys [14544 2011-12-09] (OpenLibSys.org) S3 XPTWOPORT; C:\Windows\System32\DRIVERS\XPTWOPORT.SYS [20992 2010-09-28] (Realtek Semiconductor Corporation ) S2 BstHdDrv; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [X] S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 GPUZ; \??\C:\Windows\TEMP\GPUZ.sys [X] S3 MSICDSetup; \??\E:\CDriver64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-03 15:34 - 2014-06-03 15:34 - 00021827 _____ () C:\Users\Günter Labner\Downloads\FRST.txt 2014-06-03 15:34 - 2014-06-03 15:34 - 00000000 ____D () C:\FRST 2014-06-03 15:33 - 2014-06-03 15:33 - 02068992 _____ (Farbar) C:\Users\Günter Labner\Downloads\FRST64.exe 2014-06-02 21:49 - 2014-06-02 21:53 - 00000000 ____D () C:\Users\Günter Labner\Downloads\The Lord of the Rings The Battle for Middle-Earth II [Multi9] RELOADED 2014-06-02 15:17 - 2014-06-02 15:59 - 06523570 _____ () C:\Users\Günter Labner\Downloads\Matura_Fertig.pptx 2014-06-01 00:40 - 2014-06-01 01:22 - 00000000 ____D () C:\Users\Günter Labner\Desktop\mbar 2014-06-01 00:39 - 2014-06-01 00:39 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Günter Labner\Downloads\mbar- 2014-06-01 00:38 - 2014-06-01 00:38 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Günter Labner\Downloads\mbam-setup- (3).exe 2014-06-01 00:37 - 2014-06-01 00:38 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Günter Labner\Downloads\mbam-setup- (2).exe 2014-06-01 00:35 - 2014-06-01 00:35 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\48230029.sys 2014-05-30 22:49 - 2014-05-30 22:57 - 22725876 _____ () C:\Users\Günter Labner\Downloads\NTWR.rar 2014-05-28 18:07 - 2014-05-28 18:08 - 06209136 _____ (TeamViewer GmbH) C:\Users\Günter Labner\Downloads\TeamViewer_Setup_de (2).exe 2014-05-28 17:58 - 2014-05-28 17:58 - 02951567 _____ () C:\Users\Günter Labner\Downloads\MotioninJoy.rar 2014-05-28 17:32 - 2014-05-28 17:32 - 02951567 _____ () C:\Program Files\MotioninJoy.rar 2014-05-28 11:48 - 2014-05-28 11:59 - 00000000 ____D () C:\Users\Günter Labner\Desktop\usb stick 2014-05-28 03:08 - 2014-05-28 03:11 - 235224367 _____ () C:\Users\Günter Labner\Downloads\FK-HZ02.rar 2014-05-26 20:41 - 2014-05-20 01:10 - 00601432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-05-26 20:39 - 2014-05-20 04:44 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-05-26 20:39 - 2014-05-20 04:44 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00492376 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00416712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00382240 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00335704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-05-26 20:39 - 2014-05-20 04:44 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-05-26 20:38 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-05-26 20:37 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-05-26 20:33 - 2014-05-26 20:37 - 333878864 _____ (NVIDIA Corporation) C:\Users\Günter Labner\Downloads\337.88-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-05-26 18:44 - 2014-05-26 18:45 - 46325256 _____ () C:\Users\Günter Labner\Downloads\Akustik_Kriebernegg.pptx 2014-05-26 18:31 - 2014-05-26 18:31 - 00605782 _____ () C:\Users\Günter Labner\Downloads\Matura_psychische Belastung am Arbeitsplatz.pptx 2014-05-26 18:30 - 2014-05-26 18:30 - 02718258 _____ () C:\Users\Günter Labner\Downloads\Matura_Lrm Lrmampel.pptx 2014-05-26 16:45 - 2014-06-03 15:19 - 00000000 ____D () C:\Users\Günter Labner\Desktop\rel 2014-05-26 16:04 - 2014-06-01 00:42 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-26 16:03 - 2014-06-01 00:41 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-05-26 16:03 - 2014-05-26 16:03 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Günter Labner\Downloads\mbam-setup- (1).exe 2014-05-26 16:03 - 2014-05-26 16:03 - 00001102 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-26 16:03 - 2014-05-26 16:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-26 16:03 - 2014-05-26 16:03 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-26 16:03 - 2014-05-26 16:03 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-26 16:03 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-26 16:03 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-26 16:02 - 2014-05-26 16:03 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Günter Labner\Downloads\mbam-setup- 2014-05-26 15:16 - 2014-05-26 15:16 - 00231971 _____ () C:\Users\Günter Labner\Desktop\Paneel- berechnung.rar 2014-05-26 15:05 - 2014-05-02 22:44 - 00342016 _____ () C:\Users\Günter Labner\Desktop\Paneel- berechnung.exe.bak 2014-05-26 15:03 - 2014-05-26 15:05 - 00000000 ____D () C:\Users\Günter Labner\AppData\Roaming\IcoFX 2014-05-26 15:03 - 2014-05-26 15:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IcoFX 1.6 2014-05-26 15:03 - 2014-05-26 15:03 - 00000000 ____D () C:\Program Files (x86)\IcoFX 1.6 2014-05-26 15:02 - 2014-05-26 15:02 - 00961360 _____ (Chip Digital GmbH) C:\Users\Günter Labner\Downloads\IcoFX letzte Freeware Version - CHIP-Installer.exe 2014-05-26 14:56 - 2014-06-03 15:19 - 00003036 _____ () C:\Windows\System32\Tasks\EVGAPrecision 2014-05-26 14:51 - 2014-05-26 14:51 - 00748246 _____ ( ) C:\Users\Günter Labner\Downloads\reshack_setup.exe 2014-05-26 14:51 - 2014-05-26 14:51 - 00748246 _____ ( ) C:\Users\Günter Labner\Downloads\reshack_setup (1).exe 2014-05-26 14:51 - 2014-05-26 14:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Resource Hacker 2014-05-26 14:51 - 2014-05-26 14:51 - 00000000 ____D () C:\Program Files (x86)\Resource Hacker 2014-05-26 14:46 - 2014-05-26 15:05 - 00441856 _____ () C:\Users\Günter Labner\Desktop\Paneel- berechnung.exe 2014-05-26 14:46 - 2014-05-02 22:44 - 00243200 _____ () C:\Users\Günter Labner\Desktop\Paneel- berechnung_original.exe 2014-05-26 13:21 - 2014-05-26 13:21 - 00000063 _____ () C:\Users\Günter Labner\Desktop\31 312 - besprechungszimmer.pdf- (3 MB-).url 2014-05-25 22:25 - 2014-05-25 22:25 - 00003992 _____ () C:\Users\Günter Labner\Downloads\6a9c7e1509b8bef739edb0b3825b17da.dlc 2014-05-25 22:21 - 2014-05-25 22:21 - 02116788 _____ () C:\Users\Günter Labner\Downloads\No.Uplay.rar 2014-05-19 22:14 - 2014-05-30 23:01 - 00000000 ____D () C:\Users\Günter Labner\Desktop\Melbourne;Minimal 2014-05-18 19:04 - 2014-05-18 19:07 - 218533483 _____ () C:\Users\Günter Labner\Downloads\TCC.7z 2014-05-18 19:00 - 2014-05-18 19:00 - 26662700 _____ () C:\Users\Günter Labner\Downloads\s-bahn_salzburg.zip 2014-05-17 17:58 - 2014-05-17 17:58 - 00000000 ____D () C:\Users\Günter Labner\Desktop\phipsi datein 2014-05-16 12:06 - 2014-05-16 12:07 - 96478228 _____ () C:\Users\Günter Labner\Downloads\soad_hpntz.rar 2014-05-14 22:37 - 2014-05-14 22:39 - 191436938 _____ () C:\Users\Günter Labner\Downloads\umrDFp5IlKEuZOpgdVf5L2zR6p_JW20-Z-vraPkNLIg.rar 2014-05-14 22:23 - 2014-05-14 22:23 - 00000000 ____D () C:\Users\Günter Labner\Downloads\Gigi D Agostino Ft. Dj Yrell - La Passion 2010 2014-05-14 18:59 - 2014-05-14 19:06 - 00001244 _____ () C:\Windows\system32\Drivers\etc\hosts.umbrella 2014-05-14 18:59 - 2014-05-14 19:03 - 00008856 _____ () C:\Users\Günter Labner\Downloads\umbrella.log 2014-05-14 18:57 - 2014-05-14 18:57 - 00000000 ____D () C:\ProgramData\Oracle 2014-05-14 18:57 - 2014-05-14 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-14 18:57 - 2014-05-14 18:56 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-05-14 18:57 - 2014-05-14 18:56 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-05-14 18:57 - 2014-05-14 18:56 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-05-14 18:57 - 2014-05-14 18:56 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-05-14 18:55 - 2014-05-14 18:56 - 29164456 _____ (Oracle Corporation) C:\Users\Günter Labner\Downloads\jre-7u55-windows-i586.exe 2014-05-14 18:55 - 2014-05-14 18:55 - 03458048 _____ () C:\Users\Günter Labner\Downloads\tinyumbrella-7.11.00 (1).exe 2014-05-14 18:54 - 2014-05-14 18:55 - 03458048 _____ () C:\Users\Günter Labner\Downloads\tinyumbrella-7.11.00.exe 2014-05-14 18:36 - 2014-05-14 18:36 - 16969459 _____ () C:\Users\Günter Labner\Downloads\evasi0n7-win-1.0.7-633a643e10531c58e7ce18018986b6d14774102d.zip 2014-05-14 18:32 - 2014-05-14 18:32 - 00114473 _____ () C:\Users\Günter Labner\Downloads\evasi0n7_1.0.8.zip 2014-05-14 18:22 - 2014-05-14 18:22 - 00000000 ____D () C:\Users\Günter Labner\Desktop\bild 2014-05-14 17:39 - 2014-05-14 18:07 - 1268348817 _____ () C:\Users\Günter Labner\Downloads\iPhone4,1_7.0.4_11B554a_Restore.ipsw 2014-05-14 17:10 - 2014-05-14 17:10 - 00000000 ____D () C:\Program Files (x86)\iExplorer 2014-05-14 17:09 - 2014-05-14 17:10 - 03147344 _____ (Macroplant, LLC ) C:\Users\Günter Labner\Downloads\iExplorer_Setup_2.2.1.3.exe 2014-05-14 17:08 - 2014-05-14 17:32 - 00000000 ____D () C:\Users\Günter Labner\Desktop\whatsapp 2014-05-14 17:04 - 2014-05-14 17:04 - 04101456 _____ (Marx Softwareentwicklung ) C:\Users\Günter Labner\Downloads\IDMSetup3400.exe 2014-05-14 17:04 - 2014-05-14 17:04 - 00000000 ____D () C:\Users\Günter Labner\AppData\Roaming\Software4u 2014-05-14 17:04 - 2014-05-14 17:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iDevice Manager 2014-05-14 17:04 - 2014-05-14 17:04 - 00000000 ____D () C:\Program Files (x86)\Software4u 2014-05-13 22:26 - 2014-05-06 06:40 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-13 22:26 - 2014-05-06 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-13 22:26 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-13 22:26 - 2014-05-06 05:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-13 22:26 - 2014-05-06 05:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-13 22:26 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-13 22:25 - 2014-05-13 22:25 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2014-05-13 21:57 - 2014-05-13 21:57 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-05-13 21:57 - 2014-05-13 21:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-05-13 21:57 - 2014-05-13 21:57 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-05-13 21:57 - 2014-05-13 21:57 - 00000000 ____D () C:\Program Files\iTunes 2014-05-13 21:57 - 2014-05-13 21:57 - 00000000 ____D () C:\Program Files\iPod 2014-05-13 21:57 - 2014-05-13 21:57 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-05-13 21:52 - 2014-05-13 21:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2014-05-13 21:52 - 2014-05-13 21:52 - 00000000 ____D () C:\Program Files (x86)\QuickTime 2014-05-13 21:50 - 2014-05-13 21:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2014-05-13 21:23 - 2014-05-13 21:40 - 1268480940 _____ () C:\Users\Günter Labner\Downloads\iPhone4,1_7.0.6_11B651_Restore (1).ipsw 2014-05-13 21:19 - 2014-05-13 21:21 - 100581864 _____ () C:\Users\Günter Labner\Downloads\iPhone4,1_7.0.6_11B651_Restore.ipsw 2014-05-13 20:24 - 2014-05-09 08:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-13 20:24 - 2014-05-09 08:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-13 20:24 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-05-13 20:24 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-13 20:24 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-13 20:24 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-05-13 20:24 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-13 20:24 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-05-13 20:24 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-13 20:24 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-05-13 20:24 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-05-13 20:24 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-13 20:24 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-05-13 20:24 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-13 20:24 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-05-13 20:24 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-05-13 20:24 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-05-13 20:24 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-13 20:24 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-05-13 20:24 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-05-13 20:24 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-05-13 20:24 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-05-13 20:24 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-13 20:24 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-05-13 20:24 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-05-13 20:24 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-05-13 20:24 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-05-13 20:24 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-13 20:24 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-05-13 20:24 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-05-13 20:24 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-05-13 20:24 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-05-13 20:24 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-05-13 20:24 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-05-11 16:21 - 2014-05-18 18:37 - 00000000 ____D () C:\Users\Günter Labner\Downloads\RW4 ES64U Taurus 2014-05-11 16:21 - 2014-05-11 16:36 - 164187981 _____ () C:\Users\Günter Labner\Downloads\Taurus ES64U4.7z 2014-05-11 16:21 - 2014-05-11 16:32 - 114127723 _____ () C:\Users\Günter Labner\Downloads\Taurus ES64U2.7z 2014-05-11 16:06 - 2014-05-11 16:06 - 00017850 _____ () C:\Users\Günter Labner\Downloads\Railworks+4+HRQ+Siemens+Taurus+ES64U2.torrent 2014-05-11 16:06 - 2014-05-11 16:06 - 00012970 _____ () C:\Users\Günter Labner\Downloads\Railworks+4+HRQ+Siemens+Taurus+ES64U4.torrent 2014-05-10 15:02 - 2014-05-10 15:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-10 01:40 - 2014-05-10 01:40 - 00000000 ____D () C:\Users\Günter Labner\AppData\Local\Blizzard 2014-05-10 01:23 - 2014-05-10 01:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2014-05-10 01:22 - 2014-05-10 01:22 - 03099552 _____ (Blizzard Entertainment) C:\Users\Günter Labner\Downloads\Hearthstone-Setup-deDE (1).exe 2014-05-10 01:17 - 2014-06-03 15:19 - 00000000 ____D () C:\Users\Günter Labner\AppData\Local\Battle.net 2014-05-10 01:17 - 2014-05-18 16:20 - 00000000 ____D () C:\Users\Günter Labner\AppData\Roaming\Battle.net 2014-05-10 01:17 - 2014-05-10 01:17 - 00000631 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-05-10 01:17 - 2014-05-10 01:17 - 00000000 ____D () C:\Users\Günter Labner\AppData\Local\Blizzard Entertainment 2014-05-10 01:17 - 2014-05-10 01:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2014-05-10 01:15 - 2014-05-10 01:16 - 03099552 _____ (Blizzard Entertainment) C:\Users\Günter Labner\Downloads\Hearthstone-Setup-deDE.exe 2014-05-07 21:31 - 2014-05-07 21:31 - 06719285 _____ () C:\Users\Günter Labner\Downloads\01 Get It Right.m4a 2014-05-07 16:49 - 2014-05-07 16:49 - 03320320 _____ () C:\Users\Günter Labner\Downloads\8._verbundwerkstoffe (2).ppt 2014-05-07 16:11 - 2014-05-07 16:11 - 00000165 ____H () C:\Users\Günter Labner\Documents\~$Verbund.pptx 2014-05-07 03:01 - 2014-05-14 00:30 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-06 17:41 - 2014-05-06 17:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hasbro Interactive 2014-05-04 02:54 - 2014-05-04 02:54 - 00056280 _____ () C:\Users\Günter Labner\Downloads\llflat.zip 2014-05-04 02:42 - 2014-05-04 02:42 - 00141246 _____ () C:\Users\Günter Labner\Downloads\rcttrainer60 (1).zip 2014-05-04 02:25 - 2014-05-04 02:25 - 00464403 _____ () C:\Users\Günter Labner\Downloads\savedgamemodifier313.zip 2014-05-04 00:41 - 2014-05-04 00:41 - 00152064 _____ () C:\Users\Günter Labner\Downloads\RCTLL-GE.exe 2014-05-04 00:41 - 2014-05-04 00:41 - 00141246 _____ () C:\Users\Günter Labner\Downloads\rcttrainer60.zip 2014-05-04 00:36 - 2014-05-04 00:36 - 00608696 _____ () C:\Users\Günter Labner\Downloads\1905_1332697728_Heide-Park 2012.zip 2014-05-04 00:35 - 2014-05-04 00:35 - 00037943 _____ () C:\Users\Günter Labner\Downloads\rctpatch.zip ==================== One Month Modified Files and Folders ======= 2014-06-03 15:34 - 2014-06-03 15:34 - 00021827 _____ () C:\Users\Günter Labner\Downloads\FRST.txt 2014-06-03 15:34 - 2014-06-03 15:34 - 00000000 ____D () C:\FRST 2014-06-03 15:34 - 2011-07-11 14:00 - 00000000 ____D () C:\Users\Günter Labner\AppData\Local\Temp 2014-06-03 15:33 - 2014-06-03 15:33 - 02068992 _____ (Farbar) C:\Users\Günter Labner\Downloads\FRST64.exe 2014-06-03 15:33 - 2009-07-14 06:45 - 00015168 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-03 15:33 - 2009-07-14 06:45 - 00015168 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-03 15:31 - 2014-03-27 23:35 - 00000000 ____D () C:\Users\Günter Labner\Documents\Outlook-Dateien 2014-06-03 15:29 - 2011-07-11 19:57 - 01300077 _____ () C:\Windows\WindowsUpdate.log 2014-06-03 15:28 - 2011-07-11 17:24 - 00003958 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{F48315A7-D77B-4062-B11C-5B0377605B1C} 2014-06-03 15:24 - 2014-02-18 22:50 - 00000346 _____ () C:\Windows\Tasks\GlaryInitialize 4.job 2014-06-03 15:23 - 2014-03-02 01:48 - 00025280 _____ () C:\Windows\setupact.log 2014-06-03 15:23 - 2013-07-03 16:12 - 00000000 ____D () C:\Program Files (x86)\SpeedFan 2014-06-03 15:22 - 2014-03-02 13:23 - 00000460 ____H () C:\Windows\Tasks\WS.Booster-S-1431105474.job 2014-06-03 15:22 - 2011-09-04 00:46 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-06-03 15:22 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-03 15:19 - 2014-05-26 16:45 - 00000000 ____D () C:\Users\Günter Labner\Desktop\rel 2014-06-03 15:19 - 2014-05-26 14:56 - 00003036 _____ () C:\Windows\System32\Tasks\EVGAPrecision 2014-06-03 15:19 - 2014-05-10 01:17 - 00000000 ____D () C:\Users\Günter Labner\AppData\Local\Battle.net 2014-06-03 15:19 - 2011-07-17 17:47 - 00000000 ____D () C:\Users\Günter Labner\AppData\Roaming\uTorrent 2014-06-02 15:59 - 2014-06-02 15:17 - 06523570 _____ () C:\Users\Günter Labner\Downloads\Matura_Fertig.pptx 2014-06-01 01:24 - 2014-03-02 13:27 - 00443640 _____ () C:\Windows\PFRO.log 2014-06-01 01:23 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\schemas 2014-06-01 01:22 - 2014-06-01 00:40 - 00000000 ____D () C:\Users\Günter Labner\Desktop\mbar 2014-06-01 00:42 - 2014-05-26 16:04 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-06-01 00:41 - 2014-05-26 16:03 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-06-01 00:41 - 2014-01-11 00:39 - 00000000 ____D () C:\Program Files (x86)\EVGA Precision X 2014-06-01 00:39 - 2014-06-01 00:39 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Günter Labner\Downloads\mbar- 2014-06-01 00:38 - 2014-06-01 00:38 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Günter Labner\Downloads\mbam-setup- (3).exe 2014-06-01 00:38 - 2014-06-01 00:37 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Günter Labner\Downloads\mbam-setup- (2).exe 2014-06-01 00:35 - 2014-06-01 00:35 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\48230029.sys 2014-06-01 00:27 - 2011-09-26 22:49 - 05055488 ___SH () C:\Users\Günter Labner\Desktop\Thumbs.db 2014-05-31 19:57 - 2013-10-05 15:23 - 00117843 _____ () C:\Users\Günter Labner\Documents\X.rar 2014-05-31 18:47 - 2012-02-04 23:05 - 00000000 ____D () C:\Program Files (x86)\JDownloader 2014-05-30 23:01 - 2014-05-19 22:14 - 00000000 ____D () C:\Users\Günter Labner\Desktop\Melbourne;Minimal 2014-05-30 22:57 - 2014-05-30 22:49 - 22725876 _____ () C:\Users\Günter Labner\Downloads\NTWR.rar 2014-05-28 18:08 - 2014-05-28 18:07 - 06209136 _____ (TeamViewer GmbH) C:\Users\Günter Labner\Downloads\TeamViewer_Setup_de (2).exe 2014-05-28 18:08 - 2011-09-03 19:53 - 00000000 ____D () C:\Users\Günter Labner\AppData\Roaming\TeamViewer 2014-05-28 17:58 - 2014-05-28 17:58 - 02951567 _____ () C:\Users\Günter Labner\Downloads\MotioninJoy.rar 2014-05-28 17:32 - 2014-05-28 17:32 - 02951567 _____ () C:\Program Files\MotioninJoy.rar 2014-05-28 11:59 - 2014-05-28 11:48 - 00000000 ____D () C:\Users\Günter Labner\Desktop\usb stick 2014-05-28 11:57 - 2009-07-14 19:58 - 00771494 _____ () C:\Windows\system32\perfh007.dat 2014-05-28 11:57 - 2009-07-14 19:58 - 00180000 _____ () C:\Windows\system32\perfc007.dat 2014-05-28 11:57 - 2009-07-14 07:13 - 01810154 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-28 03:11 - 2014-05-28 03:08 - 235224367 _____ () C:\Users\Günter Labner\Downloads\FK-HZ02.rar 2014-05-27 23:39 - 2012-06-06 21:25 - 00000000 ____D () C:\Users\Günter Labner\Documents\d ref 2014-05-27 23:39 - 2012-03-30 21:46 - 00079360 ___SH () C:\Users\Günter Labner\Documents\Thumbs.db 2014-05-26 20:42 - 2013-12-07 22:35 - 00000000 ____D () C:\Users\Günter Labner\AppData\Local\NVIDIA Corporation 2014-05-26 20:42 - 2012-05-22 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-05-26 20:42 - 2011-09-04 00:45 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-05-26 20:42 - 2011-06-07 15:03 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-05-26 20:37 - 2014-05-26 20:33 - 333878864 _____ (NVIDIA Corporation) C:\Users\Günter Labner\Downloads\337.88-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-05-26 18:45 - 2014-05-26 18:44 - 46325256 _____ () C:\Users\Günter Labner\Downloads\Akustik_Kriebernegg.pptx 2014-05-26 18:31 - 2014-05-26 18:31 - 00605782 _____ () C:\Users\Günter Labner\Downloads\Matura_psychische Belastung am Arbeitsplatz.pptx 2014-05-26 18:30 - 2014-05-26 18:30 - 02718258 _____ () C:\Users\Günter Labner\Downloads\Matura_Lrm Lrmampel.pptx 2014-05-26 16:03 - 2014-05-26 16:03 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Günter Labner\Downloads\mbam-setup- (1).exe 2014-05-26 16:03 - 2014-05-26 16:03 - 00001102 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-26 16:03 - 2014-05-26 16:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-26 16:03 - 2014-05-26 16:03 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-26 16:03 - 2014-05-26 16:03 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-26 16:03 - 2014-05-26 16:02 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Günter Labner\Downloads\mbam-setup- 2014-05-26 15:16 - 2014-05-26 15:16 - 00231971 _____ () C:\Users\Günter Labner\Desktop\Paneel- berechnung.rar 2014-05-26 15:05 - 2014-05-26 15:03 - 00000000 ____D () C:\Users\Günter Labner\AppData\Roaming\IcoFX 2014-05-26 15:05 - 2014-05-26 14:46 - 00441856 _____ () C:\Users\Günter Labner\Desktop\Paneel- berechnung.exe 2014-05-26 15:03 - 2014-05-26 15:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IcoFX 1.6 2014-05-26 15:03 - 2014-05-26 15:03 - 00000000 ____D () C:\Program Files (x86)\IcoFX 1.6 2014-05-26 15:02 - 2014-05-26 15:02 - 00961360 _____ (Chip Digital GmbH) C:\Users\Günter Labner\Downloads\IcoFX letzte Freeware Version - CHIP-Installer.exe 2014-05-26 14:51 - 2014-05-26 14:51 - 00748246 _____ ( ) C:\Users\Günter Labner\Downloads\reshack_setup.exe 2014-05-26 14:51 - 2014-05-26 14:51 - 00748246 _____ ( ) C:\Users\Günter Labner\Downloads\reshack_setup (1).exe 2014-05-26 14:51 - 2014-05-26 14:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Resource Hacker 2014-05-26 14:51 - 2014-05-26 14:51 - 00000000 ____D () C:\Program Files (x86)\Resource Hacker 2014-05-26 14:49 - 2011-09-20 20:47 - 00000000 ____D () C:\Users\Günter Labner\Documents\Visual Studio 2008 2014-05-26 13:21 - 2014-05-26 13:21 - 00000063 _____ () C:\Users\Günter Labner\Desktop\31 312 - besprechungszimmer.pdf- (3 MB-).url 2014-05-25 22:25 - 2014-05-25 22:25 - 00003992 _____ () C:\Users\Günter Labner\Downloads\6a9c7e1509b8bef739edb0b3825b17da.dlc 2014-05-25 22:21 - 2014-05-25 22:21 - 02116788 _____ () C:\Users\Günter Labner\Downloads\No.Uplay.rar 2014-05-25 16:19 - 2011-07-12 18:49 - 00000000 ____D () C:\Users\Günter Labner\Documents\My Games 2014-05-21 19:33 - 2013-04-01 18:08 - 00000000 ____D () C:\Program Files (x86)\StarCraft II 2014-05-21 01:55 - 2013-07-04 20:22 - 00000000 ____D () C:\Users\Günter Labner\Downloads\SP682 2014-05-20 04:44 - 2014-05-26 20:39 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-05-20 04:44 - 2014-05-26 20:39 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00492376 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00416712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00382240 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00335704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-05-20 04:44 - 2014-05-26 20:39 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-05-20 04:44 - 2014-03-05 22:20 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-05-20 04:44 - 2014-01-09 16:14 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-05-20 04:44 - 2014-01-09 16:14 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-05-20 04:44 - 2014-01-09 16:14 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-05-20 04:44 - 2011-07-26 18:50 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-05-20 04:44 - 2011-07-26 18:50 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-05-20 04:44 - 2011-07-26 18:50 - 00026069 _____ () C:\Windows\system32\nvinfo.pb 2014-05-20 03:25 - 2011-09-04 00:45 - 06769096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-05-20 03:25 - 2011-09-04 00:45 - 03514144 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-05-20 03:25 - 2011-09-04 00:45 - 02560968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-05-20 03:25 - 2011-09-04 00:45 - 00927520 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-05-20 03:25 - 2011-09-04 00:45 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-05-20 03:25 - 2011-09-04 00:45 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-05-20 01:10 - 2014-05-26 20:41 - 00601432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-05-18 19:07 - 2014-05-18 19:04 - 218533483 _____ () C:\Users\Günter Labner\Downloads\TCC.7z 2014-05-18 19:00 - 2014-05-18 19:00 - 26662700 _____ () C:\Users\Günter Labner\Downloads\s-bahn_salzburg.zip 2014-05-18 18:37 - 2014-05-11 16:21 - 00000000 ____D () C:\Users\Günter Labner\Downloads\RW4 ES64U Taurus 2014-05-18 16:20 - 2014-05-10 01:17 - 00000000 ____D () C:\Users\Günter Labner\AppData\Roaming\Battle.net 2014-05-17 17:58 - 2014-05-17 17:58 - 00000000 ____D () C:\Users\Günter Labner\Desktop\phipsi datein 2014-05-17 15:49 - 2013-10-18 17:11 - 00000000 ____D () C:\Users\Günter Labner\Documents\FIFA 14 2014-05-16 12:07 - 2014-05-16 12:06 - 96478228 _____ () C:\Users\Günter Labner\Downloads\soad_hpntz.rar 2014-05-15 12:08 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-05-15 01:49 - 2012-02-21 19:29 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin 2014-05-14 22:39 - 2014-05-14 22:37 - 191436938 _____ () C:\Users\Günter Labner\Downloads\umrDFp5IlKEuZOpgdVf5L2zR6p_JW20-Z-vraPkNLIg.rar 2014-05-14 22:30 - 2014-05-14 22:30 - 00013540 _____ () C:\Users\Günter Labner\Downloads\[kickass.to]gigi.d.agostino.la.passion.torrent 2014-05-14 22:23 - 2014-05-14 22:23 - 00004900 _____ () C:\Users\Günter Labner\Downloads\[kickass.to]gigi.d.agostino.ft.dj.yrell.la.passion.2010.torrent 2014-05-14 22:23 - 2014-05-14 22:23 - 00000000 ____D () C:\Users\Günter Labner\Downloads\Gigi D Agostino Ft. Dj Yrell - La Passion 2010 2014-05-14 19:06 - 2014-05-14 18:59 - 00001244 _____ () C:\Windows\system32\Drivers\etc\hosts.umbrella 2014-05-14 19:06 - 2012-03-15 23:46 - 00008928 _____ () C:\Users\Günter Labner\umbrella0.log 2014-05-14 19:06 - 2011-07-11 14:00 - 00000000 ____D () C:\Users\Günter Labner 2014-05-14 19:03 - 2014-05-14 18:59 - 00008856 _____ () C:\Users\Günter Labner\Downloads\umbrella.log 2014-05-14 19:01 - 2012-03-15 23:45 - 00000000 ____D () C:\Users\Günter Labner\.shsh 2014-05-14 18:57 - 2014-05-14 18:57 - 00000000 ____D () C:\ProgramData\Oracle 2014-05-14 18:57 - 2014-05-14 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-14 18:56 - 2014-05-14 18:57 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-05-14 18:56 - 2014-05-14 18:57 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-05-14 18:56 - 2014-05-14 18:57 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-05-14 18:56 - 2014-05-14 18:57 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-05-14 18:56 - 2014-05-14 18:55 - 29164456 _____ (Oracle Corporation) C:\Users\Günter Labner\Downloads\jre-7u55-windows-i586.exe 2014-05-14 18:56 - 2011-07-11 17:52 - 00000000 ____D () C:\Program Files (x86)\Java 2014-05-14 18:55 - 2014-05-14 18:55 - 03458048 _____ () C:\Users\Günter Labner\Downloads\tinyumbrella-7.11.00 (1).exe 2014-05-14 18:55 - 2014-05-14 18:54 - 03458048 _____ () C:\Users\Günter Labner\Downloads\tinyumbrella-7.11.00.exe 2014-05-14 18:36 - 2014-05-14 18:36 - 16969459 _____ () C:\Users\Günter Labner\Downloads\evasi0n7-win-1.0.7-633a643e10531c58e7ce18018986b6d14774102d.zip 2014-05-14 18:32 - 2014-05-14 18:32 - 00114473 _____ () C:\Users\Günter Labner\Downloads\evasi0n7_1.0.8.zip 2014-05-14 18:22 - 2014-05-14 18:22 - 00000000 ____D () C:\Users\Günter Labner\Desktop\bild 2014-05-14 18:07 - 2014-05-14 17:39 - 1268348817 _____ () C:\Users\Günter Labner\Downloads\iPhone4,1_7.0.4_11B554a_Restore.ipsw 2014-05-14 17:32 - 2014-05-14 17:08 - 00000000 ____D () C:\Users\Günter Labner\Desktop\whatsapp 2014-05-14 17:10 - 2014-05-14 17:10 - 00000000 ____D () C:\Program Files (x86)\iExplorer 2014-05-14 17:10 - 2014-05-14 17:09 - 03147344 _____ (Macroplant, LLC ) C:\Users\Günter Labner\Downloads\iExplorer_Setup_2.2.1.3.exe 2014-05-14 17:10 - 2012-10-07 21:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iExplorer 2014-05-14 17:04 - 2014-05-14 17:04 - 04101456 _____ (Marx Softwareentwicklung ) C:\Users\Günter Labner\Downloads\IDMSetup3400.exe 2014-05-14 17:04 - 2014-05-14 17:04 - 00000000 ____D () C:\Users\Günter Labner\AppData\Roaming\Software4u 2014-05-14 17:04 - 2014-05-14 17:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iDevice Manager 2014-05-14 17:04 - 2014-05-14 17:04 - 00000000 ____D () C:\Program Files (x86)\Software4u 2014-05-14 00:34 - 2011-07-11 14:00 - 00000000 ___RD () C:\Users\Günter Labner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-14 00:34 - 2011-07-11 14:00 - 00000000 ___RD () C:\Users\Günter Labner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-14 00:30 - 2014-05-07 03:01 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-14 00:30 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-05-13 22:28 - 2011-07-12 14:29 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-05-13 22:25 - 2014-05-13 22:25 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2014-05-13 22:23 - 2013-08-14 19:11 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-13 22:15 - 2011-08-26 16:32 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-05-13 21:57 - 2014-05-13 21:57 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-05-13 21:57 - 2014-05-13 21:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-05-13 21:57 - 2014-05-13 21:57 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-05-13 21:57 - 2014-05-13 21:57 - 00000000 ____D () C:\Program Files\iTunes 2014-05-13 21:57 - 2014-05-13 21:57 - 00000000 ____D () C:\Program Files\iPod 2014-05-13 21:57 - 2014-05-13 21:57 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-05-13 21:52 - 2014-05-13 21:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2014-05-13 21:52 - 2014-05-13 21:52 - 00000000 ____D () C:\Program Files (x86)\QuickTime 2014-05-13 21:50 - 2014-05-13 21:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2014-05-13 21:40 - 2014-05-13 21:23 - 1268480940 _____ () C:\Users\Günter Labner\Downloads\iPhone4,1_7.0.6_11B651_Restore (1).ipsw 2014-05-13 21:21 - 2014-05-13 21:19 - 100581864 _____ () C:\Users\Günter Labner\Downloads\iPhone4,1_7.0.6_11B651_Restore.ipsw 2014-05-12 07:26 - 2014-05-26 16:03 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-12 07:25 - 2014-05-26 16:03 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-11 16:36 - 2014-05-11 16:21 - 164187981 _____ () C:\Users\Günter Labner\Downloads\Taurus ES64U4.7z 2014-05-11 16:32 - 2014-05-11 16:21 - 114127723 _____ () C:\Users\Günter Labner\Downloads\Taurus ES64U2.7z 2014-05-11 16:06 - 2014-05-11 16:06 - 00017850 _____ () C:\Users\Günter Labner\Downloads\Railworks+4+HRQ+Siemens+Taurus+ES64U2.torrent 2014-05-11 16:06 - 2014-05-11 16:06 - 00012970 _____ () C:\Users\Günter Labner\Downloads\Railworks+4+HRQ+Siemens+Taurus+ES64U4.torrent 2014-05-10 19:26 - 2013-06-25 22:20 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-10 15:02 - 2014-05-10 15:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-10 01:40 - 2014-05-10 01:40 - 00000000 ____D () C:\Users\Günter Labner\AppData\Local\Blizzard 2014-05-10 01:31 - 2013-04-01 18:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft II 2014-05-10 01:23 - 2014-05-10 01:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2014-05-10 01:22 - 2014-05-10 01:22 - 03099552 _____ (Blizzard Entertainment) C:\Users\Günter Labner\Downloads\Hearthstone-Setup-deDE (1).exe 2014-05-10 01:17 - 2014-05-10 01:17 - 00000631 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-05-10 01:17 - 2014-05-10 01:17 - 00000000 ____D () C:\Users\Günter Labner\AppData\Local\Blizzard Entertainment 2014-05-10 01:17 - 2014-05-10 01:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2014-05-10 01:16 - 2014-05-10 01:15 - 03099552 _____ (Blizzard Entertainment) C:\Users\Günter Labner\Downloads\Hearthstone-Setup-deDE.exe 2014-05-09 08:14 - 2014-05-13 20:24 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-09 08:11 - 2014-05-13 20:24 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-07 21:31 - 2014-05-07 21:31 - 06719285 _____ () C:\Users\Günter Labner\Downloads\01 Get It Right.m4a 2014-05-07 16:49 - 2014-05-07 16:49 - 03320320 _____ () C:\Users\Günter Labner\Downloads\8._verbundwerkstoffe (2).ppt 2014-05-07 16:11 - 2014-05-07 16:11 - 00000165 ____H () C:\Users\Günter Labner\Documents\~$Verbund.pptx 2014-05-06 17:41 - 2014-05-06 17:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hasbro Interactive 2014-05-06 06:40 - 2014-05-13 22:26 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 06:17 - 2014-05-13 22:26 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 05:25 - 2014-05-13 22:26 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-06 05:07 - 2014-05-13 22:26 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-06 05:00 - 2014-05-13 22:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-06 04:10 - 2014-05-13 22:26 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-05 17:02 - 2012-07-10 17:19 - 00000000 ____D () C:\Windows\Minidump 2014-05-05 16:57 - 2013-06-06 19:38 - 945163152 _____ () C:\Windows\MEMORY.DMP 2014-05-04 20:20 - 2014-05-02 00:49 - 00000000 ____D () C:\Users\Günter Labner\Downloads\Project Professional 2013 (x86) European Multilingual 2014-05-04 02:54 - 2014-05-04 02:54 - 00056280 _____ () C:\Users\Günter Labner\Downloads\llflat.zip 2014-05-04 02:53 - 2011-12-28 22:51 - 00013973 _____ () C:\debug.dat 2014-05-04 02:42 - 2014-05-04 02:42 - 00141246 _____ () C:\Users\Günter Labner\Downloads\rcttrainer60 (1).zip 2014-05-04 02:25 - 2014-05-04 02:25 - 00464403 _____ () C:\Users\Günter Labner\Downloads\savedgamemodifier313.zip 2014-05-04 00:41 - 2014-05-04 00:41 - 00152064 _____ () C:\Users\Günter Labner\Downloads\RCTLL-GE.exe 2014-05-04 00:41 - 2014-05-04 00:41 - 00141246 _____ () C:\Users\Günter Labner\Downloads\rcttrainer60.zip 2014-05-04 00:36 - 2014-05-04 00:36 - 00608696 _____ () C:\Users\Günter Labner\Downloads\1905_1332697728_Heide-Park 2012.zip 2014-05-04 00:35 - 2014-05-04 00:35 - 00037943 _____ () C:\Users\Günter Labner\Downloads\rctpatch.zip Some content of TEMP: ==================== C:\Users\Günter Labner\AppData\Local\Temp\AVGTBInstall.exe C:\Users\Günter Labner\AppData\Local\Temp\gusetup7.exe C:\Users\Günter Labner\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Günter Labner\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Günter Labner\AppData\Local\Temp\nvStereoApiI.dll C:\Users\Günter Labner\AppData\Local\Temp\nvStInst.exe C:\Users\Günter Labner\AppData\Local\Temp\Quarantine.exe C:\Users\Günter Labner\AppData\Local\Temp\rlbabcqg.dll C:\Users\Günter Labner\AppData\Local\Temp\sfamcc00001.dll C:\Users\Günter Labner\AppData\Local\Temp\sfamcc00002.dll C:\Users\Günter Labner\AppData\Local\Temp\sfamcc00003.dll C:\Users\Günter Labner\AppData\Local\Temp\sfamcc00004.dll C:\Users\Günter Labner\AppData\Local\Temp\sfamcc00005.dll C:\Users\Günter Labner\AppData\Local\Temp\sfamcc00006.dll C:\Users\Günter Labner\AppData\Local\Temp\sfamcc00007.dll C:\Users\Günter Labner\AppData\Local\Temp\sfareca00001.dll C:\Users\Günter Labner\AppData\Local\Temp\sfareca00004.dll C:\Users\Günter Labner\AppData\Local\Temp\sfareca00005.dll C:\Users\Günter Labner\AppData\Local\Temp\sfareca00006.dll C:\Users\Günter Labner\AppData\Local\Temp\sizlsearch_ad.exe C:\Users\Günter Labner\AppData\Local\Temp\sonarinst.exe C:\Users\Günter Labner\AppData\Local\Temp\sqlite-3.7.2-sqlitejdbc.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-29 01:02 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- Geändert von gogoAustria (03.06.2014 um 14:47 Uhr) |
![]() | #6 |
| ![]() WIN7 - "ungültiges Bild" Error nach Anitmalwarebyte Bereinigung Addition Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-06-2014 Ran by Günter Labner at 2014-06-03 15:35:00 Running from C:\Users\Günter Labner\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} ==================== Installed Programs ====================== 3DMark 11 (HKLM-x32\...\{46EDCFA5-7EDB-46A9-B093-1C6237470CEC}) (Version: 1.0.5 - Futuremark Corporation) 3DMark 11 (HKLM-x32\...\{f9e83b9c-ab7e-4005-8f32-4ea69703a5e4}) (Version: - Futuremark) 3DMark 11 (Version: - Futuremark) Hidden 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: - Igor Pavlov) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: - Adobe Systems Inc.) Adobe AIR (x32 Version: - Adobe Systems Inc.) Hidden Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: - Adobe Systems Incorporated) Adobe Community Help (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: - Adobe Systems Incorporated) Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated) Adobe Media Player (x32 Version: 1.8 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS5 (HKLM-x32\...\{15FEDA5F-141C-4127-8D7E-B962D1742728}) (Version: 12.0 - Adobe Systems Incorporated) Adobe Reader X (10.1.0) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.0 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: - Adobe Systems, Inc.) Age of Empire 2 HD Edition GERMAN (c) Microsoft version 1 (HKLM-x32\...\QWdlIG9mIEVtcGlyZSAyIEhEIEVkaXRpb24=_is1) (Version: 1 - ) Age of Empires II - the Conquerors WideScreen Patcher (HKLM-x32\...\{BA2F3EBC-FE07-4AB5-B906-14DF2C74C523}) (Version: 1.0.40 - Boekabart) AlLCheapPorrice (HKLM-x32\...\{5A1D3F9E-73B5-95EC-1233-6646E1358965}) (Version: - AllCheApPrice) Alpha Protocol (HKLM-x32\...\{D37FE0E3-B1A9-4E41-AB5D-DA62E04D2C42}) (Version: 1.00.0000 - SEGA Corporation) ANNO 2070 (HKLM-x32\...\{B48E264C-C8CD-4617-B0BE-46E977BAD694}) (Version: - Ubisoft) Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: - Apple Inc.) Arma 3 Complete (HKLM-x32\...\QXJtYTM=_is1) (Version: 1 - ) Assassin's Creed Brotherhood (HKLM-x32\...\{BE4BA698-8533-4F77-9559-C7F3F78C0B05}) (Version: 1.00 - Ubisoft) Assassins Creed IV Black Flag Freedom Cry (HKLM-x32\...\QXNzYXNzaW5zQ3JlZWRJVkJsYWNrRmxhZw==_is1) (Version: 1 - ) Audacity 1.2.6 (HKLM-x32\...\Audacity_is1) (Version: - ) Audacity 1.3.13 (Unicode) (HKLM-x32\...\Audacity 1.3 Beta (Unicode)_is1) (Version: - Audacity Team) Autodesk Inventor Content Center Libraries 2012 (Desktop Content) (HKLM\...\{B46DECD1-1664-4EF1-0000-22D71E81877C}) (Version: 16.0.16000.0000 - Autodesk, Inc.) Autodesk Inventor Fusion 2012 (HKLM\...\Autodesk Inventor Fusion 2012) (Version: - Autodesk, Inc.) Autodesk Inventor Fusion 2012 (Version: - Autodesk, Inc.) Hidden Autodesk Inventor Fusion 2012 Language Pack (Version: - Autodesk, Inc.) Hidden Autodesk Inventor Fusion for Inventor 2012 Add-in (HKLM\...\Autodesk Inventor Fusion for Inventor 2012 Zusatzmodul) (Version: - Autodesk) Autodesk Inventor Fusion for Inventor 2012 Zusatzmodul (Version: - Autodesk) Hidden Autodesk Inventor Fusion for Inventor 2012 Zusatzmodul Language Pack (Version: - Autodesk) Hidden Autodesk Inventor Professional 2012 (Version: 16.0.16000.0000 - Autodesk) Hidden Autodesk Inventor Professional 2012 Deutsch (HKLM\...\Autodesk Inventor Professional 2012) (Version: 16.0.16000.0000 - Autodesk) Autodesk Inventor Professional 2012 Language Pack - Deutsch (Version: 16.0.16000.0000 - Autodesk) Hidden Autodesk Material Library 2012 (HKLM-x32\...\{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}) (Version: - Autodesk) Autodesk Material Library Base Resolution Image Library 2012 (HKLM-x32\...\{65420DC9-306E-4371-905F-F4DC3B418E52}) (Version: - Autodesk) Autodesk Material Library Low Resolution Image Library 2012 (HKLM-x32\...\{24FF088D-CDCF-480C-8A4B-98F14A54CAA8}) (Version: - Autodesk) Banished (HKLM-x32\...\QmFuaXNoZWQ=_is1) (Version: 1 - ) Batman: Arkham Asylum Game of the Year Edition (HKLM-x32\...\{CFABC775-5386-4BA5-86B4-505BBD36E812}) (Version: - Square Enix Limited) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: - Electronic Arts) Battlefield Play4Free (HKLM-x32\...\{87686C21-8A15-4b4d-A3F1-11141D9BE094}) (Version: - EA Digital illusions) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.2 - EA Digital Illusions CE AB) BlueStacks (alpha) (HKLM-x32\...\{DF3B927A-8607-4970-A64E-C4EA92FA1298}) (Version: - BlueStack Systems, Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: - Apple Inc.) calibre (HKLM-x32\...\{1752D07B-9BEB-414F-9B51-AA529101F0E5}) (Version: 0.9.12 - Kovid Goyal) Canon MP Navigator EX 3.0 (HKLM-x32\...\MP Navigator EX 3.0) (Version: - ) Canon MP250 series Benutzerregistrierung (HKLM-x32\...\Canon MP250 series Benutzerregistrierung) (Version: - ) Canon MP250 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series) (Version: - ) Canon Utilities Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: - ) Canon Utilities My Printer (HKLM-x32\...\CanonMyPrinter) (Version: - ) Canon Utilities Solution Menu (HKLM-x32\...\CanonSolutionMenu) (Version: - ) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) CloneCD (HKLM-x32\...\CloneCD) (Version: - SlySoft) Connectivity Library and TI-Nspire™ handheld drivers (x32 Version: - Texas Instruments Inc.) Hidden ControlCenter (HKLM-x32\...\{698B7D8B-0F43-4A19-8B9B-47F1EFEB858F}_is1) (Version: 2.2.098 - MSI) Core Damage 0.8h (HKLM-x32\...\Core Damage 0.8h) (Version: - ) CPUID CPU-Z 1.58 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CryEngine(R)2 Sandbox(TM)2 (HKLM-x32\...\{7E4B7FD9-4ECE-4298-A910-3160B7918059}) (Version: 1.00.0000 - Electronic Arts) Crysis(R) (HKLM-x32\...\{000E79B7-E725-4F01-870A-C12942B7F8E4}) (Version: 1.20.0000 - Electronic Arts) Crystal Reports Basic for Visual Studio 2008 (HKLM-x32\...\{AA467959-A1D6-4F45-90CD-11DC57733F32}) (Version: - Business Objects) Crystal Reports Basic German Language Pack for Visual Studio 2008 (HKLM-x32\...\{3924C3E7-C440-4B23-9740-9A9EC0545F21}) (Version: - Business Objects) Crystal Reports Basic Runtime for Visual Studio 2008 (x64) (HKLM\...\{2BFA9B05-7418-4EDE-A6FC-620427BAAAA3}) (Version: - Business Objects) Crystal Reports Basic Runtime German Language Pack for Visual Studio 2008 (x64) (HKLM\...\{1D5F34D0-6329-4D92-B81A-E24E9028910C}) (Version: - Business Objects) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: - DT Soft Ltd) Dark Souls Prepare to Die Edition (HKLM-x32\...\GFWL_{4E4D0FA1-F880-4CCB-999A-501000008200}) (Version: 1.0.0000.130 - NAMCO BANDAI Games Europe S.A.S.) Dark Souls Prepare to Die Edition (x32 Version: 1.0.0000.130 - NAMCO BANDAI Games Europe S.A.S.) Hidden Dead Space™ 2 (HKLM-x32\...\{96D06FDD-6AF4-4309-BC1B-1C9588B0575E}) (Version: 1.0.941.0 - Electronic Arts) Deckadance (HKLM-x32\...\Deckadance) (Version: 2.0 - Image-Line) Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F2CE207D-C146-4BFD-A1C2-219483C58819}) (Version: - Microsoft) Deus EX Human Revolution Version v1.1 (HKLM-x32\...\{2DDC57D4-594D-4F30-8D81-27FDB2243644}_is1) (Version: v1.1 - ZKY) Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.50.56 - Electronic Arts) Die Sims™ 3 70er, 80er & 90er Accessoires (HKLM-x32\...\{E1868CAE-E3B9-4099-8C18-AA8944D336FD}) (Version: 17.0.77 - Electronic Arts) Die Sims™ 3 Design-Garten-Accessoires (HKLM-x32\...\{117B6BF6-82C3-420C-B284-9247C8568E53}) (Version: 7.3.2 - Electronic Arts) Die Sims™ 3 Diesel Accessoires (HKLM-x32\...\{1C9B6173-6DC9-4EEE-9EFC-6BA115CFBE43}) (Version: 14.0.48 - Electronic Arts) Die Sims™ 3 Einfach tierisch (HKLM-x32\...\{C12631C6-804D-4B32-B0DD-8A496462F106}) (Version: 10.0.96 - Electronic Arts) Die Sims™ 3 Gib Gas-Accessoires (HKLM-x32\...\{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}) (Version: 5.0.44 - Electronic Arts) Die Sims™ 3 Jahreszeiten (HKLM-x32\...\{3DE92282-CB49-434F-81BF-94E5B380E889}) (Version: 16.0.136 - Electronic Arts) Die Sims™ 3 Katy Perry Süße Welt (HKLM-x32\...\{9B2506E3-9A3F-45B5-96BF-509CAD584650}) (Version: 13.0.62 - Electronic Arts) Die Sims™ 3 Late Night (HKLM-x32\...\{45057FCE-5784-48BE-8176-D9D00AF56C3C}) (Version: 6.0.81 - Electronic Arts) Die Sims™ 3 Lebensfreude (HKLM-x32\...\{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}) (Version: 8.0.152 - Electronic Arts) Die Sims™ 3 Luxus-Accessoires (HKLM-x32\...\{71828142-5A24-4BD0-97E7-976DA08CE6CF}) (Version: 3.0.38 - Electronic Arts) Die Sims™ 3 Reiseabenteuer (HKLM-x32\...\{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}) (Version: 2.0.86 - Electronic Arts) Die Sims™ 3 Showtime (HKLM-x32\...\{3BBFD444-5FAB-49F6-98B1-A1954E831399}) (Version: 12.0.273 - Electronic Arts) Die Sims™ 3 Stadt-Accessoires (HKLM-x32\...\{7B11296A-F894-449C-8DF6-6AAAA7D4D118}) (Version: 9.0.73 - Electronic Arts) Die Sims™ 3 Traumkarrieren (HKLM-x32\...\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}) (Version: 4.0.87 - Electronic Arts) Die Sims™ 3 Traumsuite-Accessoires (HKLM-x32\...\{08A25478-C5DD-4EA7-B168-3D687CA987FF}) (Version: 11.0.84 - Electronic Arts) Die Sims™ 3 Wildes Studentenleben (HKLM-x32\...\{F26DE8EF-F2CF-40DC-8CDA-CC0D82D11B36}) (Version: 18.0.126 - Electronic Arts) DiRT 3 (HKLM-x32\...\GFWL_{434D0FA0-1558-4D8E-AC3D-BD1000008200}) (Version: 1.0.0000.130 - Codemasters) DiRT 3 (x32 Version: 1.0.0000.130 - Codemasters) Hidden DiRT 3 (x32 Version: 1.0.0001.130 - Codemasters) Hidden DivX-Setup (HKLM-x32\...\DivX Setup.divx.com) (Version: - DivX, Inc. ) DivxToDVD 0.5.2b (HKLM-x32\...\VSO DivxToDVD_is1) (Version: 0.5.2b - VSO-Software SARL) Earth Defense Force Insect Armageddon (HKLM-x32\...\Earth Defense Force Insect Armageddon_is1) (Version: - ) EAX(tm) Unified (SHELL) (HKLM-x32\...\EAX(tm) Unified (SHELL)) (Version: - ) Eco Materials Adviser (x64) (HKLM\...\{E027C59C-4C47-4BE8-8078-BCD3D2680EC3}) (Version: - Granta Design Limited) Edimax Wireless LAN Driver and Utility (HKLM-x32\...\{9C049499-055C-4A0C-A916-1D12314F45EB}) (Version: 1.00.0184 - Edimax Technology Co.) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.0) (Version: 0.70.0 - ESN Social Software AB) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) EVEREST Home Edition v2.20 (HKLM-x32\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc) EVGA Precision X 4.2.1 (HKLM-x32\...\PrecisionX) (Version: 4.2.1 - EVGA Corporation) F1 2011 (HKLM-x32\...\GFWL_{434D0FA1-3E0C-4D03-A5D4-5E1000008100}) (Version: 1.0.0000.129 - Codemasters) F1 2011 (x32 Version: 1.0.0000.129 - Codemasters) Hidden Fable III (HKLM-x32\...\GFWL_{4D53090A-9B45-437B-A66A-831000008300}) (Version: 1.0.0000.131 - Microsoft Game Studios) Fable III (x32 Version: 1.0.0000.131 - Microsoft Game Studios) Hidden Fable III (x32 Version: 1.0.0001.131 - Microsoft Game Studios) Hidden Far Cry 3 (HKLM-x32\...\{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}) (Version: 1.02 - Ubisoft) FIFA 12 FAST START V.1.0 BY DOCTOR+ PRODUCTIONS (HKCU\...\FIFA 12 FAST START V.1.0 BY DOCTOR+ PRODUCTIONS) (Version: - ) FIFA 14 Ultimate Edition MULTI-14 1.2.0 (HKLM-x32\...\FIFA 14 Ultimate Edition MULTI-14 1.2.0) (Version: - ) Final Fantasy VII (HKLM-x32\...\Final Fantasy VII) (Version: - ) Final Fantasy VII v1.02 Update (HKLM-x32\...\{615273F6-A1E4-4A96-BE5B-3F4557E6BAF5}) (Version: 1.02 - United ODC Corporation) FINAL FANTASY VIII (HKLM-x32\...\FINAL FANTASY VIII) (Version: - ) Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{34EB6245-C8D0-4D8A-B8D8-EEBFF7A91485}) (Version: - MAGIX AG) FLAC 1.2.1b (remove only) (HKLM-x32\...\FLAC) (Version: 1.2.1b - Xiph.org) Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fraps (HKLM-x32\...\Fraps) (Version: - ) Free YouTube to MP3 Converter version (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: - DVDVideoSoft Ltd.) From Dust (HKLM-x32\...\{578485F8-60F3-4C61-9183-0698E581B902}) (Version: 1.0.0 - Ubisoft) Futuremark SystemInfo (HKLM-x32\...\{032DC00A-51D1-4D28-BFB7-1D0E85291E11}) (Version: 4.25.366 - Futuremark) Game Dev Tycoon Version 1.3.2 (HKLM-x32\...\{5BBB8682-1335-410F-A79F-8E5611A54BD0}_is1) (Version: 1.3.2 - Greenheart Games Pty. Ltd.) gamelauncher-ps2-psg (HKCU\...\SOE-D:/PlanetsideII) (Version: - Sony Online Entertainment) GameRanger (HKCU\...\GameRanger) (Version: - GameRanger Technologies) Geeks3D.com FurMark 1.10.6 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D.com) Giants (HKLM-x32\...\{97370293-96EC-11D4-9DEF-00104B70C5FB}) (Version: - ) Glary Utilities PRO 4.3 (HKLM-x32\...\Glary Utilities 4) (Version: - Glarysoft Ltd) gmax (HKLM-x32\...\{3FA7A919-87DA-42B1-814B-86DE8DCA17C2}) (Version: - Discreet) Goat Simulator (HKLM-x32\...\R29hdFNpbXVsYXRvcg==_is1) (Version: 1 - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.146 - Google Inc.) Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: - Google) Google Update Helper (x32 Version: - Google Inc.) Hidden Gothic III (HKLM-x32\...\{02B244A2-7F6A-42E8-A36F-8C385D7A1625}) (Version: 1.0.0 - JoWooD Productions Software AG) Grand Theft Auto IV (HKLM-x32\...\{579BA58C-F33D-4970-9953-B94B43768AC3}) (Version: 1.00.0000 - Rockstar Games) Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden GTA San Andreas (HKLM-x32\...\{E0303B6A-C675-4102-95DA-C013625BFA99}) (Version: 1.00.00001 - Rockstar Games) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Hotfix für Microsoft Visual Studio 2008 Professional Edition - DEU (KBKB971091) (HKLM-x32\...\{445174EA-3D3A-308E-84AD-446127E71441}.KB971091) (Version: 1 - Microsoft Corporation) Hotfix für Microsoft Visual Studio 2008 Professional Edition - DEU (KBKB973674) (HKLM-x32\...\{445174EA-3D3A-308E-84AD-446127E71441}.KB973674) (Version: 1 - Microsoft Corporation) I Am Alive (HKLM-x32\...\InstallShield_{62952508-8C6F-4D31-9802-099FC67B41C3}) (Version: 1.00.0 - Ubisoft) I Am Alive (x32 Version: 1.00.0 - Ubisoft) Hidden iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: - Apple Inc.) IcoFX 1.6.4 (HKLM-x32\...\IcoFX_is1) (Version: - ) IDA Pro Free v4.9 (HKLM-x32\...\IDA Pro Free_is1) (Version: - ) iDevice Manager (HKLM-x32\...\FE5AE7DC-7B01-4263-A94C-B4526C276550_is1) (Version: - Marx Software) iExplorer (HKLM-x32\...\{7FD8B0C1-CDDA-4B4D-A577-B2E3570EA3A3}_is1) (Version: - Macroplant, LLC) ImgBurn (HKLM-x32\...\ImgBurn) (Version: - LIGHTNING UK!) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: - Intel Corporation) iPhoneBrowser (HKLM-x32\...\{C1FCDCA1-2759-4E5E-84EE-3A665BB2F513}) (Version: 1.9.3 - Cranium Consulting and Custom Software) iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: - Apple Inc.) Jagd Simulator 2011 (HKLM-x32\...\{732A67B6-2581-4434-AE64-9A34CCF943D1}) (Version: - ) Java 7 Update 21 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417021FF}) (Version: 7.0.210 - Oracle) Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217055FF}) (Version: 7.0.550 - Oracle) Java Auto Updater (x32 Version: - Sun Microsystems, Inc.) Hidden Jaws Unleashed (HKLM-x32\...\{E467A03B-C374-4EB8-A4AC-A3D9F807C6CF}) (Version: 1.00.0000 - Majesco Entertainment) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) King Arthur (HKLM-x32\...\King Arthur_is1) (Version: - ) LAME v3.98.3 for Audacity (HKLM-x32\...\LAME for Audacity_is1) (Version: - ) League of Legends (HKLM-x32\...\{918A9082-6287-4D25-9002-5E5D5E4971CB}) (Version: 1.02.0000 - Riot Games) LEGO® Batman™ 2: DC Super Heroes (HKLM-x32\...\{4E2EA555-3DAE-4BE1-96BF-6A632ACFE8DE}) (Version: - Warner Bros. Interactive Entertainment) Live Update 5 (HKLM-x32\...\{E8BAA541-D161-4C9B-85BF-01F05A56BD7F}}_is1) (Version: 5.0.112 - MSI) MAGIX Music Maker 17 Download-Version (HKLM-x32\...\MAGIX_MSI_mm17) (Version: - MAGIX AG) MAGIX Music Maker 17 Download-Version (x32 Version: - MAGIX AG) Hidden MAGIX Screenshare (HKLM-x32\...\{E04D1AC1-B3AF-4C1A-B7E0-B37A058271CE}) (Version: - MAGIX AG) MAGIX Speed burnR (MSI) (HKLM-x32\...\{300DFCBA-348B-4FD6-AE50-1D3CDFEE6314}) (Version: - MAGIX AG) Malwarebytes Anti-Malware Version (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: - Malwarebytes Corporation) Mass Effect - English 2 German Patch v.1.0 (HKLM-x32\...\{6C37FA93-10B5-4F55-A672-954ECEDA221B}_is1) (Version: - Revan) Mass Effect (HKLM-x32\...\{1B0FBB9A-995D-47cd-87CD-13E68B676E4F}) (Version: 1.00 - Electronic Arts, Inc.) Mass Effect™ 3 (HKLM-x32\...\{6A9D1594-7791-48f5-9CAA-DE9BCB968320}) (Version: - Electronic Arts) Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Age of Empires II (HKLM-x32\...\Age of Empires 2.0) (Version: - ) Microsoft Age of Empires II: The Conquerors Expansion (HKLM-x32\...\Age of Empires II: The Conquerors Expansion 1.0) (Version: - ) Microsoft Antimalware Service DE-DE Language Pack (Version: 3.0.8402.2 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Device Emulator (64 Bit) Version 3.0 - DEU (HKLM\...\{7ECA1AEA-2B61-3DE6-8276-6A9A2693F111}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Document Explorer 2008 (HKLM-x32\...\Microsoft Document Explorer 2008) (Version: - Microsoft Corporation) Microsoft Document Explorer 2008 (x32 Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Document Explorer 2008 Language Pack - DEU (HKLM-x32\...\Microsoft Document Explorer 2008 Language Pack - DEU) (Version: - Microsoft Corporation) Microsoft Document Explorer 2008 Language Pack - DEU (x32 Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: - Microsoft Corporation) Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 (Version: 1.0.30319 - Microsoft Corporation) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Access MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Groove MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Office 32-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 32-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office SharePoint Designer 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Visual Web Developer 2007 (x32 Version: 12.0.4518.1066 - Microsoft Corporation) Hidden Microsoft Office Visual Web Developer MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Security Client (Version: 4.5.0216.0 - Microsoft Corporation) Hidden Microsoft Security Client DE-DE Language Pack (Version: 2.1.1116.0 - Microsoft Corporation) Hidden Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version: - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2005 Express Edition (SQLEXPRESS) (x32 Version: 9.4.5000.00 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 R2 Management Objects (HKLM-x32\...\{4E968D9C-21A7-4915-B698-F7AEB913541D}) (Version: 10.50.1447.4 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 Design Tools DEU (HKLM-x32\...\{E32260E7-0B10-43C7-9B77-AB9F4184676D}) (Version: 3.5.5386.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 DEU (HKLM-x32\...\{159098AF-4EB8-4C10-B0C6-24CDA32B45F9}) (Version: 3.5.5386.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 for Devices DEU (HKLM-x32\...\{1C3ADB5F-750E-4453-AC98-B75C5323845C}) (Version: 3.5.5386.0 - Microsoft Corporation) Microsoft SQL Server Database Publishing Wizard 1.2 (HKLM-x32\...\{9A33B83D-FFC4-44CF-BEEF-632DECEF2FCD}) (Version: - Microsoft Corporation) Microsoft SQL Server Native Client (HKLM\...\{7C39E0D1-E138-42B1-B083-213EC2CF7692}) (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{2A2F3AE8-246A-4252-BB26-1BEB45627074}) (Version: 10.50.1447.4 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{1FBEA8BA-D40B-48BC-85BC-EE2D5575F27C}) (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319 (HKLM-x32\...\{6A86554B-8928-30E4-A53C-D7337689134D}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2005 Tools for Office Runtime (x32 Version: 8.0.60940.0 - Microsoft Corporation) Hidden Microsoft Visual Studio 2005 Tools for Office Runtime Language Pack (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime Language Pack) (Version: - Microsoft Corporation) Microsoft Visual Studio 2005 Tools for Office Runtime Language Pack (x32 Version: 8.0.50727.42 - Microsoft Corporation) Hidden Microsoft Visual Studio 2008 Professional Edition - DEU (HKLM-x32\...\Microsoft Visual Studio 2008 Professional Edition - DEU) (Version: - Microsoft Corporation) Microsoft Visual Studio 2008 Professional Edition - DEU (x32 Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Visual Studio 2008 Remote Debugger - DEU (HKLM\...\Microsoft Visual Studio 2008 Remote Debugger - DEU) (Version: - Microsoft Corporation) Microsoft Visual Studio 2008 Remote Debugger - DEU (Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Shell (Isolated) - ENU (HKLM-x32\...\{D64B6984-242F-32BC-B008-752806E5FC44}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio Web Authoring Component (HKLM-x32\...\VisualWebDeveloper) (Version: 12.0.4518.1066 - Microsoft Corporation) Microsoft Windows SDK for Visual Studio 2008 .NET Framework Tools (HKLM\...\{AC888A60-9557-3B74-B52B-F353D01BD544}) (Version: 3.5.21022 - Microsoft) Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries (HKLM\...\{5DE154DF-A55E-4FA5-BE59-32E78FCACF3E}) (Version: 6.1.5288.17011 - Microsoft Corporation) Microsoft Windows SDK for Visual Studio 2008 SDK Reference Assemblies and IntelliSense (HKLM\...\{9aa5f39c-a8de-46b0-919a-0248f8bc8490}) (Version: 6.1.5288.17011 - Microsoft Corporation) Microsoft Windows SDK for Visual Studio 2008 Tools (HKLM\...\{62EED300-E841-4083-A1D6-60B906271804}) (Version: 6.1.5288.17011 - Microsoft Corporation) Microsoft Windows SDK for Visual Studio 2008 Win32 Tools (HKLM\...\{A992BBAA-723D-4574-A07F-983BF8FAA3E1}) (Version: 6.1.5288.17011 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053 - Adobe) Hidden Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Might & Magic Heroes VI (HKLM-x32\...\{745D37C2-26F4-4B65-BA13-F9840EBFA75B}) (Version: 1.1.1 - Ubisoft) Minecraft 1.7.4 (HKLM-x32\...\Minecraft 1.7.4 1.0.0) (Version: 1.0.0 - Mojang) Minecraft 1.7.4 (x32 Version: 1.0.0 - Mojang) Hidden MinuimumPrice (HKLM-x32\...\{CA1838EF-A497-194E-3850-37A62CEE398B}) (Version: - MMIInimumPraice) MotioninJoy DS3 driver version 0.6.0005 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.6.0005 - www.motioninjoy.com) Mouse Recorder Pro (HKLM-x32\...\{889E44CE-435C-4D37-B302-A7E43339E5FA}_is1) (Version: - Nemex Studios) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) MSI Afterburner 3.0.0 Beta 18 (HKLM-x32\...\Afterburner) (Version: 3.0.0 Beta 18 - MSI Co., LTD) MSI Kombustor 2.5.0 (HKLM-x32\...\{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1) (Version: - MSI Co., LTD) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) NPC-Reconstruction Models Mod (HKLM-x32\...\{8F2FE985-BCA2-44B1-9D05-9853DF8DFE52}) (Version: 0.6 - United ODC Corporation) Nur Deinstallierung der CopyTrans Suite möglich. (HKCU\...\CopyTrans Suite) (Version: 2.27 - WindSolutions) NVIDIA 3D Vision Controller Driver (x32 Version: 275.33 - NVIDIA Corporation) Hidden NVIDIA 3D Vision Controller-Treiber 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 337.88 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 337.88 - NVIDIA Corporation) NVIDIA GeForce Experience 2.0.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.0.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 337.88 - NVIDIA Corporation) NVIDIA HD-Audiotreiber (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.154.1168 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA ShadowPlay 12.4.67 (Version: 12.4.67 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 337.88 (Version: 337.88 - NVIDIA Corporation) Hidden NVIDIA Update 12.4.67 (Version: 12.4.67 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 12.4.67 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden Octodad Dadliest Catch (HKLM-x32\...\Octodad Dadliest Catch_is1) (Version: - CODEX) OpenProj (HKLM-x32\...\{13702021-43FB-480C-912F-D9B74A538288}) (Version: 1.4.0 - Serena Software Inc.) Origin (HKLM-x32\...\Origin) (Version: - Electronic Arts, Inc.) PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5350) (Version: - ) PCSX2 1.1.0-r5761 (HKLM-x32\...\PCSX2 1.1.0-r5761) (Version: 1.1.0-r5761 - Company) PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Port Royale 2 (HKLM-x32\...\Port Royale 2) (Version: - ) Portal 2 (HKLM-x32\...\Postal 2_is1) (Version: - ) Project 64 version (HKLM-x32\...\Project 64_is1) (Version: - ) Project64 1.6 (HKLM-x32\...\{9559F7CA-5E34-4237-A2D9-D856464AD727}) (Version: 1.6 - Project64) Prototype(TM) (HKLM-x32\...\InstallShield_{9322A850-9091-4D0E-B252-3E82EDA3D94A}) (Version: 1.0 - Activision) Prototype(TM) (x32 Version: 1.0 - Activision) Hidden psynetic® Gif-X 3.00 (HKLM-x32\...\psynetic® Gif-X) (Version: 3.00 - Robert Mundt) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: - Apple Inc.) RAD Video Tools (HKLM-x32\...\RADVideo) (Version: - ) Readiris Pro 12 (HKLM-x32\...\{B6214EA9-7BE8-4A91-B8B3-45F42F90188F}) (Version: 12.00.5639 - I.R.I.S.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.72.410.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: - Renesas Electronics Corporation) Hidden RESIDENT EVIL 5 (HKLM-x32\...\{AC08BBA0-96B9-431A-A7D0-D8598E493775}) (Version: - CAPCOM CO., LTD.) Resource Hacker Version 3.6.0 (HKLM-x32\...\ResourceHacker_is1) (Version: - ) RollerCoaster Tycoon (HKLM-x32\...\RollerCoaster Tycoon Setup) (Version: - ) Rome - Total War(TM) (HKLM-x32\...\InstallShield_{A642BB6B-CA1D-4142-8DD4-318C3F3DC834}) (Version: 1.0 - Activision) Rome - Total War(TM) (x32 Version: 1.0 - Activision) Hidden Rome Total War - patch 1.3 (HKLM-x32\...\{A5D65411-8E73-4C85-AD80-9FE8B7391CF9}) (Version: 1.3 - ) s3oc - Sims3 Object Cloner (HKLM-x32\...\s3oc) (Version: 12-1225-1207 - Peter L Jones) s3pe - Sims3 Package Editor (HKLM-x32\...\s3pe) (Version: 12-1225-1206 - Peter L Jones) Samplitude 11 Silver (x32 Version: - MAGIX AG) Hidden San Andreas Mod Installer (HKLM-x32\...\San Andreas Mod Installer1.1) (Version: 1.1 - cpmusick) Schnell-Deinstallations-Tool für Autodesk Inventor 2012 (HKLM\...\{D25FF5C1-1664-469A-9794-69309387C193}) (Version: 16.0.16000.0000 - Autodesk) Serious Sam HD: Gold Edition (HKLM-x32\...\{96AD0CA8-5C04-4D30-9356-4F0670942338}_is1) (Version: 1.0 - RAF) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden SHIELD Streaming (Version: 2.1.108 - NVIDIA Corporation) Hidden Sid Meier's Pirates! (HKLM-x32\...\InstallShield_{1632FD86-1BA4-4FC4-8B25-A8C655D63F68}) (Version: 2.00.0000 - Ihr Firmenname) Sid Meier's Pirates! (x32 Version: 2.00.0000 - Ihr Firmenname) Hidden Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.) SlimDX Redistributable (March 2009) (HKLM-x32\...\{D5395E5F-4D45-4665-8F00-234FA33678AF}) (Version: - SlimDX Group) SlimDX Redistributable for .NET 2.0 (September 2011) (HKLM-x32\...\{7C056FA6-E362-467B-8160-062E9474FEE5}) (Version: - SlimDX Group) Sniper Elite V2 (HKLM-x32\...\Sniper Elite V2_is1) (Version: - ) Sony PC Companion 2.10.165 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.165 - Sony) Southpark Stick of Truth (HKLM-x32\...\U291dGhwYXJrU3RpY2tvZlRydXRo_is1) (Version: 1 - ) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) State of Decay - Breakdown (HKLM-x32\...\State of Decay - Breakdown_is1) (Version: - ) State of Decay *UPDATE #1* version (HKLM-x32\...\State of Decay *UPDATE #1*_is1) (Version: - WaLMaRT) State Of Decay version (HKLM-x32\...\State Of Decay_is1) (Version: - WaLMaRT) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: - Valve Corporation) Steinberg Groove Agent ONE Content (HKLM-x32\...\{BD86F1AC-B594-46E4-85DC-1258AC9E2232}) (Version: - Steinberg Media Technologies GmbH) Stronghold Crusader Extreme (HKLM-x32\...\{8C3727F2-8E37-49E4-820C-03B1677F53B6}) (Version: 1.20.0000 - Firefly Studios) Super-Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.019 - MSI) swMSM (x32 Version: - Adobe Systems, Inc) Hidden System Requirements Lab (HKLM-x32\...\SystemRequirementsLab) (Version: - ) Test Tone Generator 4.4 (HKLM-x32\...\A9CD4C7D-6D93-4B56-A226-1D28DB060A87_is1) (Version: - Timo Esser) Text-To-Speech-Runtime (HKLM-x32\...\{7B3F0113-E63C-4D6D-AF19-111A3165CCA2}) (Version: - Magix Development GmbH) The Elder Scrolls V - Skyrim Legendary AiO Special Mod Edition (HKLM-x32\...\{14C6578C-D334-4D35-A0F6-74CA7E63E7BF}) (Version: 1.9.32 - Bethesda Softworks) TI-Nspire(TM) CAS Student Software (HKLM-x32\...\{E8CC9064-8382-4D5C-9E55-F88D9541FFC0}) (Version: - Texas Instruments Inc.) TI-Nspire(TM) Computer Link (HKLM-x32\...\{C0B7C804-B89F-47F7-91CC-21ACDC7D7AAC}) (Version: - Texas Instruments Inc.) Tools für Microsoft SQL Server 2005 Express Edition (x32 Version: 9.4.5000.00 - Microsoft Corporation) Hidden Torchlight (HKLM-x32\...\{4F64A46D-67F7-4497-AEA2-313D4305A5F6}) (Version: 1.0.0 - JoWooD) Torchlight German Patch (HKLM-x32\...\{27B1B784-67A7-452B-A8FF-467E8ADAA8E9}) (Version: 1.0.0 - JoWooD) TP-LINK Wireless Client Utility (HKLM-x32\...\{1E58B969-9BB4-4012-8D8B-D06005D1CD24}) (Version: 7.0 - TP-LINK) Tropico 4 1.00 (HKCU\...\Tropico 4) (Version: 1.00 - Kalypso Media) TSR Merlin (HKLM-x32\...\{773C485E-B148-45CB-BF38-84FC208D960A}) (Version: 1.0.1 - The Sims Resource) TSR Workshop (HKLM-x32\...\{99A841AF-F8CA-41A3-9482-5EE67A0C6D6D}) (Version: 2.0.41 - The Sims Resource) Two Worlds II (HKLM-x32\...\Two Worlds II) (Version: - ) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: - UBISOFT) Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Unterstützungsdateien für das Microsoft SQL Server-Setup (Englisch) (HKLM-x32\...\{07629207-FAA0-4F1A-8092-BF5085BE511F}) (Version: 9.00.5000.00 - Microsoft Corporation) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0021-0000-0000-0000000FF1CE}_VisualWebDeveloper_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft Access 2010 (KB2553446) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{FEF4C57D-0975-4D3C-ACC7-DCD038C3788F}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2878281) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{84B191B5-5319-463A-A305-8C4D53B1D20A}) (Version: - Microsoft) Update for Microsoft InfoPath 2010 (KB2817369) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{DB0B0CDF-77EC-47B0-94E2-4738573A1E58}) (Version: - Microsoft) Update for Microsoft InfoPath 2010 (KB2817396) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{1AA82E2E-7DB7-4C70-910C-BBB657A6B3A5}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{90120000-0021-0000-0000-0000000FF1CE}_VisualWebDeveloper_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-0021-0000-0000-0000000FF1CE}_VisualWebDeveloper_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 System (KB2539530) (HKLM-x32\...\{90120000-0021-0000-0000-0000000FF1CE}_VisualWebDeveloper_{0B4CEEAE-AA88-490C-BCB2-AAC3421981A4}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2494150) (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{428CB7A0-1068-4CE1-8835-39C7ECD297ED}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589298) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{79C725A1-3964-421C-A528-78C1C083C7C7}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{95BE5D45-A3DD-4CB1-8C35-D75DD7B4D862}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{95BE5D45-A3DD-4CB1-8C35-D75DD7B4D862}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589375) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{EBD18DE5-BC84-4B57-9A30-097044871F9A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{4AD36582-256B-433D-8593-F31773A15CA4}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{4AD36582-256B-433D-8593-F31773A15CA4}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F216169C-2B40-429B-8370-B5BA06EC5423}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F216169C-2B40-429B-8370-B5BA06EC5423}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760631) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{B6AD7E27-012A-4B63-82BA-AF62893E5435}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2794737) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{07DC9C6C-E916-4F42-8677-716930ED0393}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2825635) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{6E760BBA-B83F-4C2D-918F-5F91EF6C9861}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2825640) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{43F59F4D-7179-497E-BE99-BC6F7D1DDCBA}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2825640) 64-Bit Edition (HKLM\...\{90140000-0044-0407-1000-0000000FF1CE}_Office14.PROPLUS_{43F59F4D-7179-497E-BE99-BC6F7D1DDCBA}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2850079) 64-Bit Edition (HKLM\...\{90140000-001F-0407-1000-0000000FF1CE}_Office14.PROPLUS_{64D96F30-CF4C-4CCE-AAF2-F8909348BF35}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2850079) 64-Bit Edition (HKLM\...\{90140000-001F-040C-1000-0000000FF1CE}_Office14.PROPLUS_{9F6507AC-7D8F-46C1-B90F-59C7828E0E0D}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2878225) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{8A6BDA63-4D23-4485-A466-8979E10BCF49}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2878225) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{8A6BDA63-4D23-4485-A466-8979E10BCF49}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{3029C408-1DD1-4273-8E58-87CB1B638FC8}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{3029C408-1DD1-4273-8E58-87CB1B638FC8}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{DDDC32A5-9528-4771-B91A-97A8E1D7957B}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 64-Bit Edition (HKLM\...\{90140000-001A-0407-1000-0000000FF1CE}_Office14.PROPLUS_{6164E0E5-C903-488C-93AF-1B7AF7EBC331}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2837579) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A20A650C-F820-4CE4-AEA5-EC140192FAFB}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2837579) 64-Bit Edition (HKLM\...\{90140000-0018-0407-1000-0000000FF1CE}_Office14.PROPLUS_{FD360122-6829-4497-97C1-1BF578EF695B}) (Version: - Microsoft) Update for Microsoft SharePoint Workspace 2010 (KB2760601) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{77374F16-2DC6-4EEF-AFAD-C59FDA2E010D}) (Version: - Microsoft) Update for Microsoft SharePoint Workspace 2010 (KB2760601) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{77374F16-2DC6-4EEF-AFAD-C59FDA2E010D}) (Version: - Microsoft) Update for Microsoft Visio 2010 (KB2880526) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F6F342A1-530B-4D48-A468-1E3F70928984}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2010 (KB2837587) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{C950A55F-82E3-4CC8-8FA2-E8A2A0F651F3}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft) VBA (2627.01) (x32 Version: - Microsoft Corporation) Hidden VC Runtimes MSI (x32 Version: 9.0.21022 - Microsoft) Hidden VC80CRTRedist - 8.0.50727.4053 (x32 Version: 1.1.0 - DivX, Inc) Hidden VDownloader 3.9.1654 (HKLM\...\{A7E19604-93AF-4611-8C9F-CE509C2B286E}_is1) (Version: - Vitzo Limited) Vegas Pro 10.0 (64-bit) (HKLM\...\{7B8F9BF0-A1D5-11E0-B4E5-0013D3D69929}) (Version: 10.0.738 - Sony) Virtua Tennis 4™ (HKLM-x32\...\GFWL_{53450FA2-E900-456E-9715-501000008200}) (Version: 1.0.0000.130 - SEGA) Virtua Tennis 4™ (x32 Version: 1.0.0000.130 - SEGA) Hidden VirtualDJ PRO Full (HKLM-x32\...\{4769E972-2E92-49C5-B6F9-465EFD0C4D94}) (Version: 7.0.5 - Atomix Productions) Visual Studio .NET Prerequisites - English (HKLM\...\{ACD875CC-A146-3125-8F99-D3766F46FD86}) (Version: 9.0.21022 - Microsoft Corporation) Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime (x32 Version: 9.0.21022 - Microsoft Corporation) Hidden Visual Studio Tools for the Office system 3.0 Runtime Language Pack - DEU (x32 Version: 9.0.21022 - Microsoft Corporation) Hidden Visual Studio-Tools für Office System 3.0 Runtime Language Pack - DEU (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime Language Pack - DEU) (Version: - Microsoft Corporation) VLC media player 2.0.1 (HKLM-x32\...\VLC media player) (Version: 2.0.1 - VideoLAN) VLC media player 2.0.7 (HKLM\...\VLC media player) (Version: 2.0.7 - VideoLAN) Vuze (HKLM-x32\...\8461-7759-5462-8226) (Version: 4.7 - Vuze Inc.) websave (HKLM-x32\...\{476D78C4-1DB0-2D88-7FCC-AA6559F59A8D}) (Version: - webSave) <==== ATTENTION Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Mobile 5.0 SDK R2 for Pocket PC (HKLM-x32\...\{721B5CF0-D220-4955-BB6F-EBCFB1096DE7}) (Version: 5.00.1700.5.14343.06 - Microsoft Corporation) Windows Mobile 5.0 SDK R2 for Smartphone (HKLM-x32\...\{DA7F48EF-5F56-45FE-9169-3B8159A7A323}) (Version: 5.00.1700.5.14343.06 - Microsoft Corporation) WinPcap 4.1.1 (HKLM-x32\...\WinPcapInst) (Version: - CACE Technologies) WinRAR 4.01 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.01.0 - win.rar GmbH) Wise Registry Cleaner 5.9.4 (HKLM-x32\...\Wise Registry Cleaner_is1) (Version: 5.9.4 - ZhiQing Soft, Inc.) Worms World Party (HKLM-x32\...\{9A200E68-D5F4-4E70-910F-2871753A0E2B}) (Version: - ) WS.Booster (HKLM-x32\...\S-1431105474) (Version: - PremiumSoft) <==== ATTENTION WS.Sustainer 1.80 (HKLM-x32\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{1a34a8e0}) (Version: - Certified Publisher) <==== ATTENTION x64 Components v3.7.3 (HKLM\...\x64 Components_is1) (Version: 3.7.3 - Shark007) XCOM - Enemy Unknown (HKLM-x32\...\XCOM - Enemy Unknown_is1) (Version: - ) Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) ==================== Restore Points ========================= ==================== Hosts content: ========================== 2009-07-14 04:34 - 2014-05-14 19:06 - 00001244 ____A C:\Windows\system32\Drivers\etc\hosts activate.adobe.com practivate.adobe.com ereg.adobe.com activate.wip3.adobe.com wip3.adobe.com 3dns-3.adobe.com 3dns-2.adobe.com adobe-dns.adobe.com adobe-dns-2.adobe.com adobe-dns-3.adobe.com ereg.wip3.adobe.com activate-sea.adobe.com wwis-dubc1-vip60.adobe.com activate-sjc0.adobe.com wwis-dubc1-vip60.adobe.com gs.apple.com ==================== Scheduled Tasks (whitelisted) ============= Task: {119390F7-7B7D-4ED4-92CE-1CF3D57EB43C} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {1836AAD2-9A7B-4C07-9F8E-ABC6FB356983} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-07-11] (Google Inc.) Task: {3F3C36C4-9F30-451D-827E-6723F4DB8247} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2014-01-02] () Task: {41CC39C7-A73E-4113-89CD-5E1B437DC9E5} - System32\Tasks\EVGAPrecision => C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe [2013-07-18] () Task: {49F0A1A8-3D37-4D6C-85B9-3671954634FA} - System32\Tasks\{5A61E12A-F26D-4525-98DB-74424977ABCA} => C:\Program Files (x86)\TI Education\TI-Nspire CAS\Activator.exe [2010-02-17] (Texas Instruments Incorporated) Task: {5FC4898E-E4B5-4C32-BF0B-7A8C05667ABD} - System32\Tasks\{BCFCD110-43AE-44FF-89D2-08F3AA78E17C} => C:\Program Files (x86)\TI Education\TI-Nspire CAS\Activator.exe [2010-02-17] (Texas Instruments Incorporated) Task: {66F08860-0CA0-4BD7-8B2E-681720D58EF2} - System32\Tasks\{735C3261-AA2B-4F88-B0C0-9CD2EDC290F4} => D:\Fifa 12\Game\fifa.exe Task: {7128CB2A-12F1-46A4-B5B2-960CB5E07845} - System32\Tasks\{1801D6F5-1A1A-4979-87FA-924BDD7C8E84} => D:\Fifa 12\Game\fifa.exe Task: {9D4468A3-85FA-43AF-A02D-30802277AE1E} - System32\Tasks\{C28DF9BB-A866-4B92-BAE0-DCB004731367} => C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe [2014-02-06] (Apple Inc.) Task: {AB101E30-E3BA-43CF-98F8-21E7943779A3} - System32\Tasks\GlaryInitialize => C:\Program Files (x86)\Glary Utilities\initialize.exe Task: {AD133228-2224-453F-8138-D3F915845847} - System32\Tasks\BlueStacks\LogRotator => C:\Program Files (x86)\BlueStacks\HD-LogRotator.exe Task: {AE467826-300C-4AC4-97EE-1355F38C9EB2} - System32\Tasks\WS.Booster-S-1431105474 => c:\programdata\safesoft\ws.booster\WS.Booster.exe Task: {B2358F7A-BA58-416C-BB2A-AE3E02EEA95A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-06] (Adobe Systems Incorporated) Task: {B7C72EA7-565F-4376-8B77-A9986732BE3D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-07-11] (Google Inc.) Task: {C53BF740-B020-4B21-8608-484B398B40DC} - System32\Tasks\AdobeAAMUpdater-1.0-GOGO-PC-Günter Labner => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-07-12] (Adobe Systems Incorporated) Task: {DEA45B4D-185A-4417-8C00-2C48F201FBC6} - System32\Tasks\{FFD1C0D3-C1B9-422B-82B0-432937001CDC} => C:\Program Files (x86)\Rockstar Games\GTA San Andreas\gta_sa.exe [2011-07-17] () Task: {E68A4CE9-F743-4DB3-9ED1-8E7A253E3EAB} - System32\Tasks\GlaryInitialize 4 => C:\Program Files (x86)\Glary Utilities 4\Initialize.exe [2013-12-24] (Glarysoft Ltd) Task: {F01517D3-773F-4505-81E2-BAE58A5BDDD5} - System32\Tasks\{2A924E98-22DF-49FF-87F4-2260DCED5226} => D:\Fifa 12\Game\fifa.exe Task: {FF03F349-9B16-4D4A-9A4E-632DEC69637B} - System32\Tasks\{3AC4AAAF-DF40-41DD-BECC-384DFAC1F6AB} => D:\Fifa 12\Game\fifa.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GlaryInitialize 4.job => C:\Program Files (x86)\Glary Utilities 4\Initialize.exe Task: C:\Windows\Tasks\GlaryInitialize.job => C:\Program Files (x86)\Glary Utilities\initialize.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\WS.Booster-S-1431105474.job => c:\programdata\safesoft\ws.booster\WS.Booster.exe ==================== Loaded Modules (whitelisted) ============= 2011-09-30 16:00 - 2014-05-20 03:25 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2013-07-18 02:28 - 2013-07-18 02:28 - 00627016 _____ () C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe 2012-05-16 21:30 - 2012-12-05 19:01 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\office14\Cultures\office.odf 2013-02-15 04:36 - 2013-02-15 04:36 - 01554496 _____ () C:\Program Files\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll 2013-05-15 18:49 - 2013-05-15 18:49 - 00071680 _____ () C:\Program Files (x86)\EVGA Precision X\RTMUI.dll 2013-05-15 18:48 - 2013-05-15 18:48 - 00056832 _____ () C:\Program Files (x86)\EVGA Precision X\RTFC.dll 2013-05-15 18:49 - 2013-05-15 18:49 - 00216064 _____ () C:\Program Files (x86)\EVGA Precision X\RTCore.dll 2013-05-15 18:49 - 2013-05-15 18:49 - 00127488 _____ () C:\Program Files (x86)\EVGA Precision X\RTUI.dll 2013-05-15 18:49 - 2013-05-15 18:49 - 00587776 _____ () C:\Program Files (x86)\EVGA Precision X\RTHAL.dll 2014-02-06 01:52 - 2014-02-06 01:52 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-02-06 01:52 - 2014-02-06 01:52 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-05-26 20:51 - 2014-06-03 15:23 - 00158720 _____ () C:\Users\Günter Labner\AppData\Local\Temp\sfareca00001.dll 2013-07-04 20:49 - 2014-06-03 15:23 - 00192512 _____ () C:\Users\Günter Labner\AppData\Local\Temp\sfamcc00001.dll 2013-07-22 21:18 - 2009-12-09 21:20 - 00126976 _____ () C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\EnumDevLib.dll 2014-03-04 21:18 - 2014-03-02 04:35 - 00051016 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\chrome_elf.dll 2013-09-05 01:14 - 2013-09-05 01:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2014-03-04 21:18 - 2014-03-02 04:35 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\libglesv2.dll 2014-03-04 21:18 - 2014-03-02 04:35 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\libegl.dll 2014-03-04 21:18 - 2014-03-02 04:35 - 04061000 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\pdf.dll 2014-03-04 21:18 - 2014-03-02 04:35 - 00394568 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\ppGoogleNaClPluginChrome.dll 2014-03-04 21:18 - 2014-03-02 04:35 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\ffmpegsumo.dll 2014-03-04 21:18 - 2014-03-02 04:35 - 13632840 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AeLookupSvc => 3 MSCONFIG\Services: Apple Mobile Device => 2 MSCONFIG\Services: AxInstSV => 3 MSCONFIG\Services: Bonjour Service => 2 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: gusvc => 3 MSCONFIG\Services: Hamachi2Svc => 2 MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: Steam Client Service => 3 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Edimax 11n USB Wireless LAN Utility.lnk => C:\Windows\pss\Edimax 11n USB Wireless LAN Utility.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Günter Labner^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^PdaNet Desktop.lnk => C:\Windows\pss\PdaNet Desktop.lnk.Startup MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS5ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: CanonMyPrinter => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon MSCONFIG\startupreg: CanonSolutionMenu => C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon MSCONFIG\startupreg: CloneCDTray => "C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe" /s MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: DS3 Tool => C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe -mini MSCONFIG\startupreg: EADM => "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Live Update 5 => C:\Program Files (x86)\MSI\Live Update 5\BootStartLiveupdate.exe /reminder MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: Media Finder => "C:\Program Files (x86)\Media Finder\MF.exe" /opentotray MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" MSCONFIG\startupreg: Nvtmru => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\Steam.exe" -silent MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: Super-Charger => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe MSCONFIG\startupreg: swg => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" MSCONFIG\startupreg: uTorrent => "C:\Users\Günter Labner\Desktop\down\uSerenity.exe" ==================== Faulty Device Manager Devices ============= Name: BlueStacks Hypervisor Description: BlueStacks Hypervisor Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: BstHdDrv Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (06/03/2014 03:31:12 PM) (Source: Microsoft Office 14) (EventID: 2000) (User: ) Description: Microsoft Outlook: Accepted Safe Mode action : Schwerwiegender Fehler in Outlook beim icloud-outlook-add-in-Add-In. Falls diese Fehlermeldung mehrmals angezeigt wurde, sollten Sie dieses Add-In deaktivieren und überprüfen, ob ein Update verfügbar ist. Möchten Sie dieses Add-In deaktivieren?. Accepted Safe Mode action : Microsoft Outlook. Error: (06/03/2014 03:22:37 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Überspringen: Eap method DLL path name Fehler bei der Überprüfung. Fehler: Type-ID=43, Autor-ID=9, Lieferant-ID=0, Lieferant-Typ=0 Error: (06/03/2014 03:22:37 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Überspringen: Eap method DLL path name Fehler bei der Überprüfung. Fehler: Type-ID=25, Autor-ID=9, Lieferant-ID=0, Lieferant-Typ=0 Error: (06/03/2014 03:22:37 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Überspringen: Eap method DLL path name Fehler bei der Überprüfung. Fehler: Type-ID=17, Autor-ID=9, Lieferant-ID=0, Lieferant-Typ=0 Error: (06/01/2014 01:24:43 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Überspringen: Eap method DLL path name Fehler bei der Überprüfung. Fehler: Type-ID=43, Autor-ID=9, Lieferant-ID=0, Lieferant-Typ=0 Error: (06/01/2014 01:24:43 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Überspringen: Eap method DLL path name Fehler bei der Überprüfung. Fehler: Type-ID=25, Autor-ID=9, Lieferant-ID=0, Lieferant-Typ=0 Error: (06/01/2014 01:24:43 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Überspringen: Eap method DLL path name Fehler bei der Überprüfung. Fehler: Type-ID=17, Autor-ID=9, Lieferant-ID=0, Lieferant-Typ=0 Error: (06/01/2014 00:30:07 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Überspringen: Eap method DLL path name Fehler bei der Überprüfung. Fehler: Type-ID=43, Autor-ID=9, Lieferant-ID=0, Lieferant-Typ=0 Error: (06/01/2014 00:30:07 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Überspringen: Eap method DLL path name Fehler bei der Überprüfung. Fehler: Type-ID=25, Autor-ID=9, Lieferant-ID=0, Lieferant-Typ=0 Error: (06/01/2014 00:30:07 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Überspringen: Eap method DLL path name Fehler bei der Überprüfung. Fehler: Type-ID=17, Autor-ID=9, Lieferant-ID=0, Lieferant-Typ=0 System errors: ============= Error: (06/03/2014 03:26:34 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst Schedule erreicht. Error: (06/03/2014 03:24:25 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (06/03/2014 03:24:25 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (06/03/2014 03:24:25 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (06/03/2014 03:24:25 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (06/03/2014 03:24:25 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (06/03/2014 03:24:25 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (06/03/2014 03:24:16 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (06/03/2014 03:24:16 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (06/03/2014 03:24:16 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Microsoft Office Sessions: ========================= Error: (06/03/2014 03:31:12 PM) (Source: Microsoft Office 14) (EventID: 2000) (User: ) Description: Microsoft OutlookSchwerwiegender Fehler in Outlook beim icloud-outlook-add-in-Add-In. Falls diese Fehlermeldung mehrmals angezeigt wurde, sollten Sie dieses Add-In deaktivieren und überprüfen, ob ein Update verfügbar ist. Möchten Sie dieses Add-In deaktivieren? Error: (06/03/2014 03:22:37 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Eap method DLL path name43900 Error: (06/03/2014 03:22:37 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Eap method DLL path name25900 Error: (06/03/2014 03:22:37 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Eap method DLL path name17900 Error: (06/01/2014 01:24:43 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Eap method DLL path name43900 Error: (06/01/2014 01:24:43 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Eap method DLL path name25900 Error: (06/01/2014 01:24:43 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Eap method DLL path name17900 Error: (06/01/2014 00:30:07 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Eap method DLL path name43900 Error: (06/01/2014 00:30:07 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Eap method DLL path name25900 Error: (06/01/2014 00:30:07 AM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT-AUTORITÄT) Description: Eap method DLL path name17900 CodeIntegrity Errors: =================================== Date: 2014-06-03 15:23:16.323 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-06-03 15:23:16.245 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-06-03 15:23:15.527 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-06-03 15:23:15.402 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-06-03 15:22:15.086 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\acedrv06.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-06-03 15:22:14.962 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\acedrv06.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-06-01 01:25:20.878 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-06-01 01:25:20.800 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-06-01 01:25:20.254 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-06-01 01:25:20.160 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 32% Total physical RAM: 8163.19 MB Available physical RAM: 5481.76 MB Total Pagefile: 16324.56 MB Available Pagefile: 13432.2 MB Total Virtual: 8192 MB Available Virtual: 8191.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:292.87 GB) (Free:6.55 GB) NTFS Drive d: () (Fixed) (Total:638.54 GB) (Free:72.25 GB) NTFS Drive g: (RCTEXP2) (CDROM) (Total:0.45 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 89075DDC) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=293 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=639 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
![]() | #7 | |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() WIN7 - "ungültiges Bild" Error nach Anitmalwarebyte Bereinigung sauber is anders. aber: Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() |
Themen zu WIN7 - "ungültiges Bild" Error nach Anitmalwarebyte Bereinigung |
anlage, bild, datei, error, fehler, fehlermeldung, folge, hängen, hängt, internet, löschen, musik, neu, problem, probleme, programme, scan, schutz, seite, seiten, sound, virenscanner, virenschutz, virus, win7, windows |