|
Plagegeister aller Art und deren Bekämpfung: Virus nach Monatlichem VirenscannWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
01.06.2014, 22:34 | #1 |
| Virus nach Monatlichem Virenscann Hallo, ich melde mich mal wieder bei euch. Ich hoffe ich gehe euch nicht (erneut) auf die nerven. Ich habe meinen Computer bei einem Kumpel abgegeben und habe ihn direkt danach mal nach Viren untersucht (bin da etwas ... paranoid).. Nun, ich habe auch direkt etwas gefunden.... iLivid.setup.exe Aufgefallen ist mir das an einem komischen Prozess.. Wie der Name war kann ich ihnen leider nicht mehr sagen, jedoch hoffe ich nicht, dass es sich hierbei um einen Keylogger oder ähnliches handelt.. Man weiß ja nie... Jedenfalls wollte ich nachfragen, ob wir da mal gemeinsam nachsehen könnten, ob ich da etwas böses auf meinem Computer habe. Wer weiß was da noch so rum lauert.. Würde mich riesig freuen, traue mich schon gar nicht den Pc an zu lassen. Liebe Grüße |
02.06.2014, 07:16 | #2 |
/// the machine /// TB-Ausbilder | Virus nach Monatlichem Virenscann hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
02.06.2014, 08:53 | #3 |
| Virus nach Monatlichem Virenscann Super, dass sie sich die Zeit für mich nehmen.
__________________FRST FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-06-2014 01 Ran by Alex (administrator) on ALEX-PC on 02-06-2014 09:47:19 Running from C:\Users\Alex\Desktop Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe (Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS64.exe (MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Windows\SysWOW64\PnkBstrB.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Spotify Ltd) C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\wmi64.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7204568 2013-11-04] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation) HKLM-x32\...\Run: [AVP] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Spotify Web Helper] => C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1176632 2014-05-13] (Spotify Ltd) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.) HKU\S-1-5-21-992614989-2845173188-1475335217-1006\...\Run: [Spotify Web Helper] => C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1176632 2014-05-13] (Spotify Ltd) HKU\S-1-5-21-992614989-2845173188-1475335217-1006\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.) HKU\S-1-5-21-992614989-2845173188-1475335217-1006\...\Run: [Google Update] => "C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe" /c HKU\S-1-5-21-992614989-2845173188-1475335217-1006\...\Run: [Akamai NetSession Interface] => C:\Users\Alex\AppData\Local\Akamai\netsession_win.exe [4672920 2014-04-17] (Akamai Technologies, Inc.) AppInit_DLLs: => File Not Found AppInit_DLLs-x32: pe9 => "pe9" File Not Found ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.hyrican.de HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll (Perfect World Entertainment Inc) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 155.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.4.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @idsoftware.com/QuakeLive - C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npnxgameEU.dll (Nexon) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @Webzen.com/NPBrowserExt - C:\Program Files (x86)\WEBZEN\BrowserExtension\NPWZCmnCtrl.dll (WEBZEN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Alex\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-16] FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com [2013-08-28] FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com [2013-08-28] FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com [2013-08-28] FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com [2013-08-28] FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt Chrome: ======= CHR Extension: (Google Docs) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-16] CHR Extension: (Google Drive) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-16] CHR Extension: (YouTube) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-16] CHR Extension: (Adblock Plus) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-04-20] CHR Extension: (Google-Suche) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-16] CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-03-16] CHR Extension: (AdBlock) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-04-20] CHR Extension: (Sicherer Zahlungsverkehr) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2014-03-16] CHR Extension: (Content Blocker) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2014-03-16] CHR Extension: (Virtual Keyboard) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2014-03-16] CHR Extension: (Google Wallet) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-16] CHR Extension: (Google Mail) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-16] CHR Extension: (Anti-Banner) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2014-03-16] CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\online_banking_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\content_blocker_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\virtkbd.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [koalekbhpbggkcfhkkbolikjoaobbppi] - C:\Program Files (x86)\PutLockerDownloader\PutLockerDownloader10.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx [2012-12-28] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= S3 ArcService; C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe [88400 2014-04-11] (Perfect World Entertainment Inc) R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-01-24] () S3 BRSptSvc; C:\ProgramData\BitRaider\BRSptSvc.exe [477960 2014-01-06] (BitRaider, LLC) R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () S2 Intel(R) Small Business Advantage; C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [49376 2012-02-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-19] (Intel Corporation) R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [138768 2012-01-03] (MSI) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4784312 2014-01-15] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21009352 2014-04-30] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-05-30] () R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [290184 2014-06-02] () R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 BRDriver64; C:\ProgramData\BitRaider\BRDriver64.sys [75048 2013-10-03] (BitRaider) R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider) S3 hxsyol; C:\Users\Alex\Desktop\Aura kingdom Anime\AuraKingdom\avital\hxsy64.sys [86352 2013-11-27] () R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [24496 2011-12-19] (Intel Corporation) S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [637360 2011-12-19] (Intel Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2014-04-02] (Kaspersky Lab ZAO) U5 klflt; C:\Windows\System32\Drivers\klflt.sys [90208 2013-10-18] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [626272 2013-10-18] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2014-04-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-08-28] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-08-28] (Kaspersky Lab ZAO) R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [14136 2010-01-18] (MSI) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19744 2014-04-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 PciIsaSerial; C:\Windows\system32\drivers\PciIsaSerial.sys [68608 2008-12-19] (Windows (R) Codename Longhorn DDK provider) S3 PciPPorts; C:\Windows\system32\drivers\PciPPorts.sys [96768 2009-07-23] () S3 PciSPorts; C:\Windows\system32\drivers\PciSPorts.sys [122880 2008-12-19] () R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-12-16] (TuneUp Software) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [X] S3 MSICDSetup; \??\D:\CDriver64.sys [X] S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X] S4 NvStUSB; \SystemRoot\system32\drivers\nvstusb.sys [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X] S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [X] S3 X6va017; \??\C:\Windows\SysWOW64\Drivers\X6va017 [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-02 09:47 - 2014-06-02 09:47 - 00023398 _____ () C:\Users\Alex\Desktop\FRST.txt 2014-06-02 09:47 - 2014-06-02 09:47 - 00000000 ____D () C:\FRST 2014-06-02 09:46 - 2014-06-02 09:45 - 02067456 _____ (Farbar) C:\Users\Alex\Desktop\FRST64.exe 2014-06-02 09:45 - 2014-06-02 09:45 - 02067456 _____ (Farbar) C:\Users\Alex\Downloads\FRST64.exe 2014-06-02 09:44 - 2014-06-02 09:44 - 00003014 _____ () C:\Windows\System32\Tasks\MSIAfterburner 2014-06-01 23:03 - 2014-06-01 23:03 - 101480251 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part6.rar 2014-06-01 23:02 - 2014-06-01 23:03 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part5.rar 2014-06-01 23:02 - 2014-06-01 23:02 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part4.rar 2014-06-01 23:01 - 2014-06-01 23:02 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part3.rar 2014-06-01 23:01 - 2014-06-01 23:02 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part2.rar 2014-06-01 23:01 - 2014-06-01 23:01 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part1.rar 2014-06-01 19:00 - 2014-06-01 19:00 - 06114626 _____ () C:\Users\Alex\Downloads\20335-cleo-41130f.zip 2014-06-01 12:59 - 2014-06-01 12:59 - 00001851 _____ () C:\Users\Alex\Desktop\Aura Kingdom.lnk 2014-06-01 12:34 - 2014-06-01 12:34 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Aeria Games & Entertainment 2014-06-01 12:19 - 2014-06-01 12:19 - 00581656 _____ (Aeria Games & Entertainment) C:\Users\Alex\Downloads\aurakingdom_us_downloader.exe 2014-06-01 10:49 - 2014-06-01 12:34 - 00000000 ____D () C:\Users\Alex\Desktop\Aura kingdom Anime 2014-06-01 10:45 - 2014-06-01 10:45 - 00273681 _____ () C:\Users\Alex\AppData\Local\recently-used.xbel 2014-05-31 15:17 - 2014-05-06 07:14 - 19274752 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-31 15:17 - 2014-05-06 07:14 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-31 15:17 - 2014-05-06 05:48 - 14367232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-31 15:17 - 2014-05-06 05:48 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-31 15:17 - 2014-05-06 05:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-31 15:17 - 2014-05-06 05:26 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-31 15:13 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-05-31 15:13 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-31 15:13 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-31 15:13 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-05-31 15:13 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-31 15:13 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-05-31 15:13 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-31 15:13 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-05-31 15:13 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-05-31 15:13 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-31 15:13 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-05-31 15:13 - 2014-03-13 08:33 - 02238976 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-31 15:13 - 2014-03-13 08:33 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-31 15:13 - 2014-03-13 08:33 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-31 15:13 - 2014-03-13 08:32 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-31 15:13 - 2014-03-13 08:32 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-05-31 15:13 - 2014-03-13 08:32 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-31 15:13 - 2014-03-13 08:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-31 15:13 - 2014-03-13 08:32 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-31 15:13 - 2014-03-13 07:10 - 01766400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-05-31 15:13 - 2014-03-13 07:10 - 01140736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 02049536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-05-31 15:13 - 2014-03-13 05:59 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-05-31 15:13 - 2014-03-13 05:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-05-31 15:13 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-31 15:13 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-31 15:13 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-05-31 15:13 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-05-31 15:13 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-05-31 15:13 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-05-31 15:13 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-05-31 15:12 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-05-31 15:12 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-05-31 15:12 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-05-31 15:12 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-05-31 15:12 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-05-31 15:12 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-05-31 15:12 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-05-31 15:12 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-05-31 15:12 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-05-31 15:12 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-05-31 15:12 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-05-31 10:19 - 2014-05-31 10:19 - 00000099 _____ () C:\Users\Alex\AppData\Roaming\LauncherSettings_live.cfg 2014-05-31 09:56 - 2014-05-31 09:56 - 00008145 _____ () C:\Users\Alex\AppData\Roaming\TheHunterSettings_live.bin 2014-05-31 09:50 - 2014-05-31 09:50 - 00000040 _____ () C:\Users\Alex\AppData\Roaming\TheHunterSettings_live.cfg 2014-05-31 09:50 - 2014-05-31 09:50 - 00000000 ____D () C:\Users\Alex\Documents\theHunter 2014-05-31 09:50 - 2014-05-31 09:50 - 00000000 ____D () C:\Users\Alex\AppData\Local\theHunter 2014-05-31 09:29 - 2014-05-31 09:50 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\theHunter 2014-05-31 09:28 - 2014-05-31 09:28 - 00000000 ____D () C:\ProgramData\Hunter 2014-05-31 09:27 - 2014-05-31 10:01 - 00000000 ____D () C:\Program Files (x86)\theHunter 2014-05-31 09:27 - 2014-05-31 09:27 - 19607904 _____ (Expansive Worlds ) C:\Users\Alex\Downloads\theHunterLauncherSetup.exe 2014-05-31 09:27 - 2014-05-31 09:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\theHunter 2014-05-30 17:01 - 2014-05-30 17:01 - 00000000 ____D () C:\Users\Alex\AppData\Local\PAYDAY 2 2014-05-30 16:06 - 2014-05-30 16:07 - 00000000 ____D () C:\Users\Alex\Documents\Battlefield 3 2014-05-30 15:57 - 2014-05-30 15:57 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins 2014-05-30 15:56 - 2014-05-30 15:56 - 02247960 _____ () C:\Users\Alex\Downloads\battlelog-web-plugins_2.4.0_141.exe 2014-05-30 15:54 - 2014-05-30 15:54 - 00001177 _____ () C:\Users\Public\Desktop\Battlefield 3.lnk 2014-05-30 15:54 - 2014-05-30 15:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 2014-05-30 11:30 - 2014-05-30 11:30 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\roi 2014-05-29 23:46 - 2014-05-29 23:46 - 00000073 _____ () C:\Users\Alex\Desktop\Harry Potter.txt 2014-05-29 22:19 - 2014-05-29 22:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Need for Speed World 2014-05-29 21:39 - 2014-05-29 22:17 - 00000000 ____D () C:\Users\Alex\Documents\FIFA World 2014-05-29 20:49 - 2014-05-29 20:49 - 00001317 _____ () C:\Users\Alex\Desktop\Origin.exe - Verknüpfung.lnk 2014-05-29 20:08 - 2014-05-29 20:08 - 00000000 ____D () C:\ProgramData\PopCap Games 2014-05-29 20:05 - 2014-05-29 20:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pflanzen gegen Zombies 2014-05-29 19:54 - 2014-05-29 19:54 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Alex\Downloads\OriginThinSetup.exe 2014-05-29 13:39 - 2014-05-29 13:40 - 00000000 ____D () C:\Users\Alex\Desktop\Tsge 2014-05-29 13:39 - 2014-05-29 13:39 - 01212049 _____ () C:\Users\Alex\Downloads\tsge_2.3.0.1.7z 2014-05-29 13:36 - 2014-05-29 13:36 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer (2).exe 2014-05-29 13:34 - 2014-05-29 13:34 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer.exe 2014-05-29 13:34 - 2014-05-29 13:34 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer (1).exe 2014-05-29 10:54 - 2014-05-29 10:54 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\WizardWars 2014-05-28 16:59 - 2014-05-28 16:59 - 00000000 ____D () C:\Users\Alex\AppData\Local\{00ADAA02-E5C1-4169-B6DA-0E811FB66E7B} 2014-05-27 13:02 - 2014-05-27 13:03 - 00000204 _____ () C:\Users\Alex\Desktop\Gta Video Links Download.txt 2014-05-27 12:55 - 2014-05-27 12:56 - 00000000 ____D () C:\Users\Alex\Desktop\Gta Sa Mods für Video 2014-05-27 12:39 - 2014-05-27 12:39 - 00000000 ____D () C:\Users\Alex\AppData\Local\{F0503272-A36E-4F6E-9CA3-38355A52E03F} 2014-05-26 23:43 - 2014-05-26 23:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snail Games USA 2014-05-26 23:43 - 2014-05-26 23:43 - 00000000 ____D () C:\Program Files (x86)\Snail Games USA 2014-05-26 22:57 - 2014-05-26 23:35 - 2474812150 _____ () C:\Users\Alex\Downloads\BackGoldInstallSetup_0.0.1.008 (1).rar 2014-05-26 22:33 - 2014-05-26 22:52 - 2147487471 _____ () C:\Users\Alex\Downloads\BackGoldInstallSetup_0.0.1.008.rar 2014-05-26 21:35 - 2014-05-26 21:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\Launcher 2014-05-26 21:35 - 2014-05-26 21:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\id Software 2014-05-26 21:32 - 2014-05-26 21:33 - 06024320 _____ () C:\Users\Alex\Downloads\QuakeLiveSetup_841.exe 2014-05-26 21:32 - 2014-05-26 21:32 - 03099552 _____ (Blizzard Entertainment) C:\Users\Alex\Downloads\Hearthstone-Setup-deDE (1).exe 2014-05-26 14:20 - 2014-05-26 14:20 - 00000000 ____D () C:\Users\Alex\Desktop\Neues Projekt ! War Thunder Ground Forces 2014-05-26 14:04 - 2014-05-26 14:04 - 05445905 _____ () C:\Users\Alex\Desktop\WarThunderThumbnail1.xcf 2014-05-26 13:41 - 2014-05-26 13:41 - 00000000 ____D () C:\Users\Alex\AppData\Local\{CE2C0BF8-21A7-4497-9C69-3ABAD5A42AB9} 2014-05-26 10:38 - 2014-06-01 17:24 - 00000000 ____D () C:\Users\Alex\Desktop\Epic Inventor 2014-05-26 10:36 - 2014-05-26 10:37 - 65456922 _____ () C:\Users\Alex\Downloads\ei_win_1.0.1_2492.zip 2014-05-25 20:23 - 2014-05-26 14:31 - 05205178 _____ () C:\Users\Alex\Desktop\Hearthstone THUMBNAIL.xcf 2014-05-25 19:25 - 2014-05-25 19:26 - 00000000 ____D () C:\Users\Alex\AppData\Local\{62978E3B-3C0B-4B2D-B114-6CB1D394D672} 2014-05-24 17:00 - 2014-05-24 17:00 - 00000000 ____D () C:\Users\Alex\AppData\Local\Blizzard 2014-05-24 16:58 - 2014-05-24 17:00 - 00000000 ____D () C:\Program Files (x86)\Hearthstone 2014-05-24 16:58 - 2014-05-24 16:58 - 00001164 _____ () C:\Users\Public\Desktop\Hearthstone.lnk 2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2014-05-24 16:52 - 2014-05-28 17:05 - 00000000 ____D () C:\Users\Alex\AppData\Local\Battle.net 2014-05-24 16:52 - 2014-05-24 16:57 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Battle.net 2014-05-24 16:52 - 2014-05-24 16:52 - 00001127 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-05-24 16:52 - 2014-05-24 16:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2014-05-24 16:52 - 2014-05-24 16:52 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-05-24 16:51 - 2014-05-24 16:52 - 03099552 _____ (Blizzard Entertainment) C:\Users\Alex\Downloads\Hearthstone-Setup-deDE.exe 2014-05-24 09:00 - 2014-05-24 09:00 - 00000000 ____D () C:\Users\Alex\AppData\Local\{90A82E10-EFDB-44BE-90FC-14C54820C91E} 2014-05-23 21:27 - 2014-05-23 21:27 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\StunlockStudios 2014-05-23 08:26 - 2014-05-23 08:26 - 00000000 ____D () C:\Users\Alex\AppData\Local\{447F496F-9A43-453B-9470-996ECCD42937} 2014-05-22 11:25 - 2014-05-31 19:40 - 00000000 ____D () C:\Users\Alex\Desktop\Mandy 2014-05-21 13:17 - 2014-05-21 13:17 - 01803922 _____ () C:\Users\Alex\Downloads\awp_mapz_3.rar 2014-05-20 22:52 - 2014-05-20 22:52 - 00431445 _____ () C:\Users\Alex\Downloads\gcfscape185.zip 2014-05-20 19:42 - 2014-05-20 19:44 - 00000000 ____D () C:\Users\Alex\AppData\Local\ascend 2014-05-19 19:45 - 2014-05-19 19:45 - 00000000 ____D () C:\Users\Alex\AppData\Local\Drakerz 2014-05-19 19:34 - 2014-05-19 19:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Peoleo 2014-05-19 14:42 - 2014-05-19 14:55 - 312538296 _____ () C:\Users\Alex\Downloads\NightmareHouse2_1.0.rar 2014-05-19 10:42 - 2014-05-19 10:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\{F433FA37-0ACD-4BA0-93DE-9296E8600D8F} 2014-05-19 09:40 - 2014-05-19 09:40 - 00112777 _____ () C:\Users\Alex\Downloads\infinite-jumping-2.15.zip 2014-05-19 09:29 - 2014-05-19 09:29 - 00002518 _____ () C:\Users\Alex\Downloads\bunnyhop.smx 2014-05-19 00:00 - 2014-05-19 00:00 - 00000000 ____D () C:\Users\Alex\AppData\Local\Ubisoft 2014-05-18 18:08 - 2014-05-18 18:08 - 00026623 _____ () C:\Users\Alex\Downloads\infinite-jumping.smx 2014-05-18 18:07 - 2014-05-18 18:07 - 00000169 _____ () C:\Users\Alex\Downloads\bhop.ahk 2014-05-18 18:01 - 2014-05-18 18:01 - 00003531 _____ () C:\Users\Alex\Downloads\longjump.smx 2014-05-18 17:44 - 2014-05-18 17:44 - 00004890 _____ () C:\Users\Alex\Downloads\quake_bhop.smx 2014-05-18 17:33 - 2014-05-18 17:33 - 00998041 _____ () C:\Users\Alex\Downloads\bhop_eazy_csgo.rar 2014-05-18 17:28 - 2014-05-18 17:28 - 00005373 _____ () C:\Users\Alex\Downloads\abner_bhop.smx 2014-05-18 17:18 - 2014-05-18 17:18 - 10940781 _____ () C:\Users\Alex\Downloads\sourcemod-1.5.4-hg4051-windows.zip 2014-05-18 17:18 - 2014-05-18 17:18 - 01782679 _____ () C:\Users\Alex\Downloads\mmsource-1.10.1-hg886-windows.zip 2014-05-18 17:18 - 2014-05-18 17:18 - 00000061 _____ () C:\Users\Alex\Downloads\metamod.vdf 2014-05-18 16:20 - 2014-05-18 16:20 - 00016391 _____ () C:\Users\Alex\Downloads\gamemodes_server.txt 2014-05-18 15:32 - 2014-05-18 15:32 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd (2).zip 2014-05-18 15:21 - 2014-05-18 15:21 - 00002944 _____ () C:\Windows\System32\Tasks\{607D10F5-73E5-44DD-BCC9-B31EF8ADF5D7} 2014-05-18 15:21 - 2014-05-18 15:21 - 00002944 _____ () C:\Windows\System32\Tasks\{233334F7-275C-4D59-8B08-1689D367F72F} 2014-05-18 14:56 - 2014-05-21 12:35 - 00000000 ____D () C:\Users\Alex\Desktop\SteamCMD1 2014-05-18 14:50 - 2014-05-18 15:42 - 00000000 ____D () C:\Users\Alex\Desktop\SteamCMD 2014-05-18 14:50 - 2014-05-18 14:50 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd (1).zip 2014-05-17 15:32 - 2014-05-17 15:32 - 00000781 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Toribash.lnk 2014-05-17 15:31 - 2014-05-17 15:31 - 47467158 _____ (Nabi Studios Pte Ltd ) C:\Users\Alex\Downloads\Toribash-4.8-Setup.exe 2014-05-17 14:12 - 2014-05-18 23:43 - 00000282 _____ () C:\Users\Alex\AppData\Roaming\BreakingPoint_Login.ini 2014-05-17 14:11 - 2014-05-18 23:47 - 00001301 _____ () C:\Users\Alex\AppData\Roaming\BreakingPoint_Options.ini 2014-05-17 10:23 - 2014-05-18 23:47 - 00000000 ____D () C:\Breaking Point 2014-05-17 10:22 - 2014-05-17 10:22 - 01686528 _____ (Alderon Games) C:\Users\Alex\Downloads\BP_Installer.exe 2014-05-17 10:05 - 2014-05-18 12:05 - 00000000 ____D () C:\Users\Alex\AppData\Local\Arma 3 2014-05-17 10:05 - 2014-05-17 10:06 - 00000000 ____D () C:\Users\Alex\Documents\Arma 3 2014-05-17 10:05 - 2014-05-17 10:05 - 00000000 ____D () C:\ProgramData\Bohemia Interactive 2014-05-17 00:29 - 2014-05-17 00:29 - 00000000 ____D () C:\TempDump 2014-05-16 13:11 - 2014-05-16 13:11 - 06808718 _____ () C:\Users\Alex\Downloads\coop_ch_apocalypse_1_v15.7z 2014-05-15 20:53 - 2014-05-15 20:53 - 00017845 _____ () C:\Users\Alex\Downloads\background.mid 2014-05-15 20:03 - 2014-05-15 20:03 - 00139264 _____ (sun.the9.com) C:\Users\Alex\Downloads\9yin_MD5Check (1).exe 2014-05-15 19:23 - 2014-05-15 19:23 - 00626688 _____ () C:\Users\Alex\Downloads\Detection.msi 2014-05-15 18:25 - 2014-05-15 18:25 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-15 14:09 - 2014-05-15 14:09 - 01131920 _____ (Solid State Networks) C:\Users\Alex\Downloads\gunz2-dlm.exe 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\Documents\Stronghold Kingdoms 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Firefly Studios 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\AppData\Local\Geckofx 2014-05-14 21:49 - 2014-05-14 21:49 - 00000034 _____ () C:\Users\Alex\Desktop\PokerstarsNEUEDATEN.txt 2014-05-14 14:02 - 2014-05-14 14:02 - 17938608 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-05-14 13:52 - 2014-05-14 14:12 - 00000000 ____D () C:\MicroVolts Package 2014-05-14 13:51 - 2014-05-14 13:51 - 01679872 _____ (Rock Hippo Productions) C:\Users\Alex\Downloads\MicroVolts_Package.exe 2014-05-13 22:25 - 2014-05-13 22:29 - 00000000 ____D () C:\Users\Alex\Documents\BIS Core Engine 2014-05-13 22:07 - 2014-05-13 22:07 - 00065097 _____ () C:\Users\Alex\Downloads\smooth360.blk 2014-05-13 20:52 - 2014-05-20 11:28 - 00000075 _____ () C:\Users\Alex\Desktop\Closed BETA Game.TXT 2014-05-13 20:51 - 2014-05-13 20:51 - 00139264 _____ (sun.the9.com) C:\Users\Alex\Downloads\9yin_MD5Check.exe 2014-05-12 22:50 - 2014-05-12 22:50 - 07886712 _____ (Microsoft Corporation) C:\Users\Alex\Downloads\Xbox360_64Deu.exe 2014-05-12 22:45 - 2014-05-12 22:45 - 00062275 _____ () C:\Users\Alex\Downloads\Plane 1 (2).blk 2014-05-12 22:44 - 2014-05-12 22:44 - 00072102 _____ () C:\Users\Alex\Desktop\WAR THUNDER TASTATUR SAVE!.blk 2014-05-12 12:13 - 2014-05-12 12:42 - 08927603 _____ () C:\Users\Alex\Desktop\p_63a_5_usaaf_a.xcf 2014-05-12 11:20 - 2014-05-12 11:20 - 03429653 _____ () C:\Users\Alex\Desktop\MeinDexterWallpaper1.xcf 2014-05-12 10:42 - 2014-05-12 10:42 - 01330256 _____ (Mastheadstudios Ltd.) C:\Users\Alex\Downloads\GaRsetup.exe 2014-05-12 00:24 - 2014-05-12 00:24 - 00000055 _____ () C:\Users\Alex\Desktop\Gronkh Outlast.txt 2014-05-11 20:48 - 2014-05-11 20:48 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Fatshark 2014-05-11 15:36 - 2014-05-11 15:36 - 00956071 _____ () C:\Users\Alex\Downloads\birds_of_paradise.zip 2014-05-11 15:35 - 2014-05-11 15:55 - 16269617 _____ () C:\Users\Alex\Desktop\save2.xcf 2014-05-11 15:35 - 2014-05-11 15:35 - 00077675 _____ () C:\Users\Alex\Downloads\young_beautiful.zip 2014-05-11 15:35 - 2014-05-11 15:35 - 00020629 _____ () C:\Users\Alex\Downloads\karine_aime_les_chocolats.zip 2014-05-11 15:29 - 2014-05-11 15:29 - 18522091 _____ () C:\Users\Alex\Desktop\save1.xcf 2014-05-11 15:24 - 2014-05-11 15:24 - 00104369 _____ () C:\Users\Alex\Downloads\i_love_disaster.zip 2014-05-11 15:14 - 2014-05-11 15:26 - 08277880 _____ () C:\Users\Alex\Desktop\1.xcf 2014-05-11 15:14 - 2014-05-11 15:14 - 00285975 _____ () C:\Users\Alex\Downloads\blambot_youmurderer-bb.zip 2014-05-11 14:24 - 2014-05-11 14:24 - 00001109 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-11 14:24 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-11 14:23 - 2014-05-11 14:23 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Alex\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-11 14:19 - 2014-05-13 11:57 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Bioshock2Steam 2014-05-11 14:19 - 2014-05-11 14:19 - 00000000 ____D () C:\Users\Alex\Documents\Bioshock2 2014-05-11 14:11 - 2014-05-11 14:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\CrashRpt 2014-05-10 20:59 - 2014-05-10 20:59 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd.zip 2014-05-10 20:39 - 2014-05-10 20:39 - 00001159 _____ () C:\Users\Alex\Desktop\GFX_Anfängerpack by Anonymous - Verknüpfung.lnk 2014-05-10 20:38 - 2014-05-10 20:39 - 00000000 ____D () C:\Users\Alex\Desktop\GFX_Anfängerpack by Anonymous 2014-05-10 20:08 - 2014-05-10 20:08 - 00000000 ____D () C:\Program Files (x86)\Valve 2014-05-10 19:58 - 2014-05-10 19:58 - 03513408 _____ () C:\Users\Alex\Downloads\hldsupdatetool.bin 2014-05-10 19:57 - 2014-05-10 19:57 - 00703533 _____ () C:\Users\Alex\Downloads\hldsupdatetool.exe 2014-05-10 15:53 - 2014-05-10 15:53 - 13849377 _____ () C:\Users\Alex\Downloads\P-38G-Lightning-by-aL3xoNe (1).rar 2014-05-10 15:53 - 2014-05-10 15:53 - 04941088 _____ () C:\Users\Alex\Downloads\P-39N-0-Airacobra-by-aL3xoNe.rar.rar 2014-05-10 15:42 - 2014-05-10 15:42 - 13849377 _____ () C:\Users\Alex\Downloads\P-38G-Lightning-by-aL3xoNe.rar 2014-05-10 15:39 - 2014-05-10 15:36 - 00001240 _____ () C:\Users\Alex\Desktop\Readme FÜR SKINS.txt 2014-05-10 14:29 - 2014-05-10 15:47 - 00000000 ____D () C:\Users\Alex\Desktop\P39N Download 2014-05-10 14:28 - 2014-05-10 15:36 - 00000000 ____D () C:\Users\Alex\Desktop\P38-G Download 2014-05-10 14:18 - 2014-05-10 14:19 - 00000000 ____D () C:\Users\Alex\Desktop\Animes 2014-05-09 15:08 - 2014-05-09 15:08 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 2014-05-09 15:07 - 2014-05-09 15:07 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer (1).msi 2014-05-09 15:06 - 2014-05-09 15:06 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-05-08 09:10 - 2014-05-11 14:37 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Bioshock 2014-05-08 09:10 - 2014-05-08 09:27 - 00000000 ____D () C:\Users\Alex\Documents\Bioshock 2014-05-07 16:29 - 2014-05-07 16:29 - 00000000 ____D () C:\Users\Alex\Documents\Activision 2014-05-07 16:23 - 2014-05-07 16:23 - 00001810 _____ () C:\Users\Alex\Desktop\OutlastLauncher.exe - Verknüpfung.lnk 2014-05-07 16:02 - 2014-05-07 16:02 - 01474935 _____ () C:\Users\Alex\Downloads\like-button-plugin-for-wordpress.zip 2014-05-07 10:10 - 2014-05-26 16:21 - 00000000 ____D () C:\Users\Alex\Desktop\test 2014-05-06 23:56 - 2014-05-06 23:56 - 00183026 _____ () C:\Users\Alex\Downloads\resolutions_background (1).jpeg 2014-05-06 18:48 - 2014-05-10 14:20 - 00000000 ____D () C:\Users\Alex\Desktop\GFX 2014-05-06 18:48 - 2014-05-06 18:48 - 311570413 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack (1).zip 2014-05-06 17:45 - 2014-05-06 17:54 - 210144430 _____ () C:\Users\Alex\Downloads\GFXpack (IFuziondesignz).rar 2014-05-06 17:45 - 2014-05-06 17:52 - 209049183 _____ () C:\Users\Alex\Downloads\Sketchartz Massive GFX Pack part 2.rar 2014-05-06 17:45 - 2014-05-06 17:50 - 162514690 _____ () C:\Users\Alex\Downloads\Sketchartz Massive GFX Pack part 1!.rar 2014-05-06 17:43 - 2014-05-06 17:43 - 01759480 _____ (Bandoo Media Inc) C:\Users\Alex\Downloads\iLividSetup-r484-n-bc.exe 2014-05-06 17:42 - 2014-05-06 17:55 - 311570413 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack.zip 2014-05-06 17:42 - 2014-05-06 17:55 - 299537655 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack 2.zip 2014-05-06 17:40 - 2014-05-06 17:41 - 83873708 _____ () C:\Users\Alex\Downloads\AreaFX Ex Pack.rar 2014-05-06 17:35 - 2014-05-06 17:35 - 146067426 _____ () C:\Users\Alex\Downloads\GFX-S_Res-Pack_4.zip 2014-05-06 17:29 - 2014-05-06 17:29 - 08377560 _____ () C:\Users\Alex\Downloads\gfx_render_pack_01.rar 2014-05-06 15:59 - 2014-05-06 15:59 - 00000000 ____D () C:\Users\Alex\AppData\Local\{91F91A62-49C1-4BAC-8C1A-09337162D9FB} 2014-05-06 15:58 - 2014-05-06 15:58 - 00000000 ____D () C:\Users\Alex\AppData\Local\{09A5F1C8-B1B4-45F3-93D4-19390E6019C8} 2014-05-06 13:12 - 2014-05-06 19:26 - 07493223 _____ () C:\Users\Alex\Documents\Airacobra SAVE.xcf 2014-05-06 12:32 - 2014-05-06 12:32 - 00041751 _____ () C:\Users\Alex\Downloads\roughtrade.zip 2014-05-06 11:58 - 2014-05-06 11:58 - 00067447 _____ () C:\Users\Alex\Downloads\flashvortex.swf 2014-05-06 11:50 - 2014-05-06 11:50 - 00183026 _____ () C:\Users\Alex\Downloads\resolutions_background.jpeg 2014-05-05 21:50 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-05-05 21:50 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-05-05 13:24 - 2014-05-05 13:24 - 00000000 ____D () C:\Users\Alex\AppData\Local\{43185202-8B17-4322-A18B-DC3E059BBB51} 2014-05-04 22:59 - 2014-05-04 22:59 - 00206829 _____ () C:\Users\Alex\Downloads\capture_it.zip 2014-05-04 22:20 - 2014-05-10 16:11 - 00000000 ____D () C:\Users\Alex\Desktop\Ich 2014-05-04 15:29 - 2014-05-04 15:30 - 00000000 ____D () C:\Users\Alex\AppData\Local\{AC1B2D7D-CEF2-409E-B752-6E8D0479DAA0} 2014-05-03 18:11 - 2014-05-03 18:11 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-05-03 18:01 - 2014-05-03 18:01 - 02538056 _____ () C:\Users\Alex\Downloads\HeroesAndGenerals-setup-87779.exe 2014-05-03 17:50 - 2014-05-03 17:50 - 00000000 ____D () C:\Users\Alex\Documents\You Have to Win the Game 2014-05-03 17:50 - 2014-05-03 17:50 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\You Have to Win the Game 2014-05-03 17:49 - 2014-05-03 17:50 - 00000000 ____D () C:\Program Files (x86)\You Have to Win the Game 2014-05-03 17:49 - 2014-05-03 17:49 - 03369446 _____ (J. Kyle Pittman) C:\Users\Alex\Downloads\TheGame_Install_2013-10-24_20-01.exe 2014-05-03 14:06 - 2014-05-03 14:06 - 00027997 _____ () C:\Users\Alex\Downloads\jonathan-s-harris_something-strange.zip 2014-05-03 14:04 - 2014-05-03 14:04 - 01070873 _____ () C:\Users\Alex\Downloads\201401210006_7428.net.zip ==================== One Month Modified Files and Folders ======= 2014-06-02 09:47 - 2014-06-02 09:47 - 00023398 _____ () C:\Users\Alex\Desktop\FRST.txt 2014-06-02 09:47 - 2014-06-02 09:47 - 00000000 ____D () C:\FRST 2014-06-02 09:47 - 2013-01-05 01:12 - 00000000 ____D () C:\Users\Alex\AppData\Local\Temp 2014-06-02 09:45 - 2014-06-02 09:46 - 02067456 _____ (Farbar) C:\Users\Alex\Desktop\FRST64.exe 2014-06-02 09:45 - 2014-06-02 09:45 - 02067456 _____ (Farbar) C:\Users\Alex\Downloads\FRST64.exe 2014-06-02 09:44 - 2014-06-02 09:44 - 00003014 _____ () C:\Windows\System32\Tasks\MSIAfterburner 2014-06-02 09:44 - 2013-01-05 01:19 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Skype 2014-06-02 09:43 - 2014-04-20 22:06 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-02 09:43 - 2014-03-17 11:56 - 00026643 _____ () C:\Windows\setupact.log 2014-06-02 09:43 - 2013-08-28 16:14 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-06-02 09:43 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-02 00:27 - 2013-01-05 00:51 - 01133448 _____ () C:\Windows\WindowsUpdate.log 2014-06-02 00:26 - 2014-04-19 00:28 - 00000071 _____ () C:\Users\Alex\Desktop\Dexter Part 3.txt 2014-06-02 00:26 - 2014-03-06 14:30 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Spotify 2014-06-02 00:21 - 2013-10-04 23:54 - 00290184 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-06-02 00:21 - 2013-02-25 21:03 - 00290184 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-06-02 00:21 - 2013-02-25 21:00 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-06-02 00:17 - 2014-04-20 22:06 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-02 00:14 - 2013-02-24 12:07 - 00000000 ____D () C:\ProgramData\Origin 2014-06-02 00:13 - 2014-03-17 17:11 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-06-02 00:02 - 2014-04-20 22:05 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-01 23:16 - 2014-04-17 11:41 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-06-01 23:03 - 2014-06-01 23:03 - 101480251 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part6.rar 2014-06-01 23:03 - 2014-06-01 23:02 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part5.rar 2014-06-01 23:02 - 2014-06-01 23:02 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part4.rar 2014-06-01 23:02 - 2014-06-01 23:01 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part3.rar 2014-06-01 23:02 - 2014-06-01 23:01 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part2.rar 2014-06-01 23:01 - 2014-06-01 23:01 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part1.rar 2014-06-01 21:17 - 2012-09-08 19:12 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-06-01 19:04 - 2013-01-05 02:10 - 00000000 ____D () C:\Users\Alex\AppData\Local\PokerStars.EU 2014-06-01 19:00 - 2014-06-01 19:00 - 06114626 _____ () C:\Users\Alex\Downloads\20335-cleo-41130f.zip 2014-06-01 17:24 - 2014-05-26 10:38 - 00000000 ____D () C:\Users\Alex\Desktop\Epic Inventor 2014-06-01 12:59 - 2014-06-01 12:59 - 00001851 _____ () C:\Users\Alex\Desktop\Aura Kingdom.lnk 2014-06-01 12:59 - 2014-03-27 22:25 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-06-01 12:59 - 2013-11-23 20:37 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames 2014-06-01 12:59 - 2013-02-15 18:21 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-06-01 12:34 - 2014-06-01 12:34 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Aeria Games & Entertainment 2014-06-01 12:34 - 2014-06-01 10:49 - 00000000 ____D () C:\Users\Alex\Desktop\Aura kingdom Anime 2014-06-01 12:34 - 2014-04-21 18:17 - 00000000 __SHD () C:\Windows\SysWOW64\AI_RecycleBin 2014-06-01 12:26 - 2014-05-01 23:28 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\.minecraft 2014-06-01 12:19 - 2014-06-01 12:19 - 00581656 _____ (Aeria Games & Entertainment) C:\Users\Alex\Downloads\aurakingdom_us_downloader.exe 2014-06-01 10:45 - 2014-06-01 10:45 - 00273681 _____ () C:\Users\Alex\AppData\Local\recently-used.xbel 2014-06-01 10:45 - 2013-01-31 15:33 - 00000000 ____D () C:\Users\Alex\.gimp-2.8 2014-06-01 10:28 - 2014-04-14 22:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\Akamai 2014-06-01 10:15 - 2009-07-14 06:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-01 10:15 - 2009-07-14 06:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-31 19:40 - 2014-05-22 11:25 - 00000000 ____D () C:\Users\Alex\Desktop\Mandy 2014-05-31 16:36 - 2014-02-11 14:14 - 00000000 ____D () C:\Users\Alex\Desktop\WoT 2014-05-31 15:20 - 2013-01-05 01:13 - 00000000 ___RD () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-31 15:20 - 2013-01-05 01:13 - 00000000 ___RD () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-31 15:16 - 2013-10-17 02:25 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-31 14:14 - 2013-01-06 18:07 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\TS3Client 2014-05-31 14:11 - 2013-01-05 02:27 - 00000000 ____D () C:\Users\Alex\AppData\Local\CrashDumps 2014-05-31 10:19 - 2014-05-31 10:19 - 00000099 _____ () C:\Users\Alex\AppData\Roaming\LauncherSettings_live.cfg 2014-05-31 10:01 - 2014-05-31 09:27 - 00000000 ____D () C:\Program Files (x86)\theHunter 2014-05-31 09:56 - 2014-05-31 09:56 - 00008145 _____ () C:\Users\Alex\AppData\Roaming\TheHunterSettings_live.bin 2014-05-31 09:50 - 2014-05-31 09:50 - 00000040 _____ () C:\Users\Alex\AppData\Roaming\TheHunterSettings_live.cfg 2014-05-31 09:50 - 2014-05-31 09:50 - 00000000 ____D () C:\Users\Alex\Documents\theHunter 2014-05-31 09:50 - 2014-05-31 09:50 - 00000000 ____D () C:\Users\Alex\AppData\Local\theHunter 2014-05-31 09:50 - 2014-05-31 09:29 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\theHunter 2014-05-31 09:28 - 2014-05-31 09:28 - 00000000 ____D () C:\ProgramData\Hunter 2014-05-31 09:27 - 2014-05-31 09:27 - 19607904 _____ (Expansive Worlds ) C:\Users\Alex\Downloads\theHunterLauncherSetup.exe 2014-05-31 09:27 - 2014-05-31 09:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\theHunter 2014-05-30 19:54 - 2013-10-04 23:54 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-05-30 17:01 - 2014-05-30 17:01 - 00000000 ____D () C:\Users\Alex\AppData\Local\PAYDAY 2 2014-05-30 16:07 - 2014-05-30 16:06 - 00000000 ____D () C:\Users\Alex\Documents\Battlefield 3 2014-05-30 15:57 - 2014-05-30 15:57 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins 2014-05-30 15:56 - 2014-05-30 15:56 - 02247960 _____ () C:\Users\Alex\Downloads\battlelog-web-plugins_2.4.0_141.exe 2014-05-30 15:54 - 2014-05-30 15:54 - 00001177 _____ () C:\Users\Public\Desktop\Battlefield 3.lnk 2014-05-30 15:54 - 2014-05-30 15:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 2014-05-30 15:54 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-05-30 15:53 - 2014-03-18 00:58 - 00455655 _____ () C:\Windows\DirectX.log 2014-05-30 12:49 - 2013-01-08 20:01 - 00000000 ____D () C:\ProgramData\MTA San Andreas All 2014-05-30 11:30 - 2014-05-30 11:30 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\roi 2014-05-30 10:03 - 2014-03-17 11:55 - 00042814 _____ () C:\Windows\PFRO.log 2014-05-29 23:46 - 2014-05-29 23:46 - 00000073 _____ () C:\Users\Alex\Desktop\Harry Potter.txt 2014-05-29 22:24 - 2013-01-31 16:03 - 00000000 ____D () C:\Users\Alex\AppData\Local\Electronic_Arts_Inc 2014-05-29 22:24 - 2013-01-31 15:59 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-05-29 22:19 - 2014-05-29 22:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Need for Speed World 2014-05-29 22:18 - 2014-04-19 17:08 - 00000000 ____D () C:\Program Files (x86)\Origin Games 2014-05-29 22:17 - 2014-05-29 21:39 - 00000000 ____D () C:\Users\Alex\Documents\FIFA World 2014-05-29 20:49 - 2014-05-29 20:49 - 00001317 _____ () C:\Users\Alex\Desktop\Origin.exe - Verknüpfung.lnk 2014-05-29 20:08 - 2014-05-29 20:08 - 00000000 ____D () C:\ProgramData\PopCap Games 2014-05-29 20:05 - 2014-05-29 20:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pflanzen gegen Zombies 2014-05-29 19:57 - 2013-02-24 12:09 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Origin 2014-05-29 19:54 - 2014-05-29 19:54 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Alex\Downloads\OriginThinSetup.exe 2014-05-29 13:40 - 2014-05-29 13:39 - 00000000 ____D () C:\Users\Alex\Desktop\Tsge 2014-05-29 13:39 - 2014-05-29 13:39 - 01212049 _____ () C:\Users\Alex\Downloads\tsge_2.3.0.1.7z 2014-05-29 13:36 - 2014-05-29 13:36 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer (2).exe 2014-05-29 13:34 - 2014-05-29 13:34 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer.exe 2014-05-29 13:34 - 2014-05-29 13:34 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer (1).exe 2014-05-29 10:54 - 2014-05-29 10:54 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\WizardWars 2014-05-28 23:13 - 2013-02-21 16:57 - 00000000 ____D () C:\Users\Alex\AppData\Local\Spotify 2014-05-28 23:01 - 2013-08-19 17:56 - 00000000 ____D () C:\Program Files (x86)\PokerStars.EU 2014-05-28 17:05 - 2014-05-24 16:52 - 00000000 ____D () C:\Users\Alex\AppData\Local\Battle.net 2014-05-28 16:59 - 2014-05-28 16:59 - 00000000 ____D () C:\Users\Alex\AppData\Local\{00ADAA02-E5C1-4169-B6DA-0E811FB66E7B} 2014-05-27 13:03 - 2014-05-27 13:02 - 00000204 _____ () C:\Users\Alex\Desktop\Gta Video Links Download.txt 2014-05-27 12:56 - 2014-05-27 12:55 - 00000000 ____D () C:\Users\Alex\Desktop\Gta Sa Mods für Video 2014-05-27 12:39 - 2014-05-27 12:39 - 00000000 ____D () C:\Users\Alex\AppData\Local\{F0503272-A36E-4F6E-9CA3-38355A52E03F} 2014-05-26 23:43 - 2014-05-26 23:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snail Games USA 2014-05-26 23:43 - 2014-05-26 23:43 - 00000000 ____D () C:\Program Files (x86)\Snail Games USA 2014-05-26 23:43 - 2012-05-08 07:30 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-05-26 23:35 - 2014-05-26 22:57 - 2474812150 _____ () C:\Users\Alex\Downloads\BackGoldInstallSetup_0.0.1.008 (1).rar 2014-05-26 22:52 - 2014-05-26 22:33 - 2147487471 _____ () C:\Users\Alex\Downloads\BackGoldInstallSetup_0.0.1.008.rar 2014-05-26 22:09 - 2013-02-18 22:39 - 00000000 ____D () C:\Users\Alex\Documents\My Games 2014-05-26 21:35 - 2014-05-26 21:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\Launcher 2014-05-26 21:35 - 2014-05-26 21:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\id Software 2014-05-26 21:33 - 2014-05-26 21:32 - 06024320 _____ () C:\Users\Alex\Downloads\QuakeLiveSetup_841.exe 2014-05-26 21:32 - 2014-05-26 21:32 - 03099552 _____ (Blizzard Entertainment) C:\Users\Alex\Downloads\Hearthstone-Setup-deDE (1).exe 2014-05-26 16:21 - 2014-05-07 10:10 - 00000000 ____D () C:\Users\Alex\Desktop\test 2014-05-26 14:31 - 2014-05-25 20:23 - 05205178 _____ () C:\Users\Alex\Desktop\Hearthstone THUMBNAIL.xcf 2014-05-26 14:20 - 2014-05-26 14:20 - 00000000 ____D () C:\Users\Alex\Desktop\Neues Projekt ! War Thunder Ground Forces 2014-05-26 14:04 - 2014-05-26 14:04 - 05445905 _____ () C:\Users\Alex\Desktop\WarThunderThumbnail1.xcf 2014-05-26 13:41 - 2014-05-26 13:41 - 00000000 ____D () C:\Users\Alex\AppData\Local\{CE2C0BF8-21A7-4497-9C69-3ABAD5A42AB9} 2014-05-26 13:25 - 2013-02-28 20:55 - 00000000 ____D () C:\Program Files (x86)\War Thunder 2014-05-26 10:37 - 2014-05-26 10:36 - 65456922 _____ () C:\Users\Alex\Downloads\ei_win_1.0.1_2492.zip 2014-05-25 19:26 - 2014-05-25 19:25 - 00000000 ____D () C:\Users\Alex\AppData\Local\{62978E3B-3C0B-4B2D-B114-6CB1D394D672} 2014-05-25 12:32 - 2013-10-27 16:01 - 00000000 ____D () C:\Users\Alex\AppData\Local\Paint.NET 2014-05-24 17:00 - 2014-05-24 17:00 - 00000000 ____D () C:\Users\Alex\AppData\Local\Blizzard 2014-05-24 17:00 - 2014-05-24 16:58 - 00000000 ____D () C:\Program Files (x86)\Hearthstone 2014-05-24 16:58 - 2014-05-24 16:58 - 00001164 _____ () C:\Users\Public\Desktop\Hearthstone.lnk 2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2014-05-24 16:57 - 2014-05-24 16:52 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Battle.net 2014-05-24 16:52 - 2014-05-24 16:52 - 00001127 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-05-24 16:52 - 2014-05-24 16:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2014-05-24 16:52 - 2014-05-24 16:52 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-05-24 16:52 - 2014-05-24 16:51 - 03099552 _____ (Blizzard Entertainment) C:\Users\Alex\Downloads\Hearthstone-Setup-deDE.exe 2014-05-24 09:00 - 2014-05-24 09:00 - 00000000 ____D () C:\Users\Alex\AppData\Local\{90A82E10-EFDB-44BE-90FC-14C54820C91E} 2014-05-23 21:27 - 2014-05-23 21:27 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\StunlockStudios 2014-05-23 16:05 - 2014-01-28 23:24 - 00000000 ____D () C:\Users\Alex\Documents\Euro Truck Simulator 2 2014-05-23 08:26 - 2014-05-23 08:26 - 00000000 ____D () C:\Users\Alex\AppData\Local\{447F496F-9A43-453B-9470-996ECCD42937} 2014-05-22 12:35 - 2014-04-20 22:06 - 00002182 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-22 00:46 - 2013-12-03 12:29 - 00012722 _____ () C:\Users\Alex\Documents\TombRaider.log 2014-05-21 13:17 - 2014-05-21 13:17 - 01803922 _____ () C:\Users\Alex\Downloads\awp_mapz_3.rar 2014-05-21 12:35 - 2014-05-18 14:56 - 00000000 ____D () C:\Users\Alex\Desktop\SteamCMD1 2014-05-21 11:04 - 2013-02-14 12:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-20 22:52 - 2014-05-20 22:52 - 00431445 _____ () C:\Users\Alex\Downloads\gcfscape185.zip 2014-05-20 19:44 - 2014-05-20 19:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\ascend 2014-05-20 11:28 - 2014-05-13 20:52 - 00000075 _____ () C:\Users\Alex\Desktop\Closed BETA Game.TXT 2014-05-20 10:53 - 2014-04-25 18:49 - 00000000 ____D () C:\Users\Alex\Documents\NCSOFT 2014-05-20 10:53 - 2014-04-23 10:03 - 00000000 ____D () C:\Program Files (x86)\NCSOFT 2014-05-20 10:53 - 2014-04-23 10:02 - 00000000 ____D () C:\Users\Alex\AppData\Local\NCSOFT 2014-05-20 10:52 - 2014-04-25 19:23 - 00000000 ____D () C:\Users\Alex\Documents\survarium 2014-05-20 10:49 - 2014-03-22 01:19 - 00000000 ____D () C:\Program Files (x86)\Next Car Game Free Technology Demo 2014-05-20 10:49 - 2013-03-06 22:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live 2014-05-20 10:47 - 2013-10-13 16:39 - 00000000 ____D () C:\Users\Alex\Desktop\GTA San Andreas OFFLINE 2014-05-19 20:25 - 2014-01-24 01:16 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 OA 2014-05-19 19:45 - 2014-05-19 19:45 - 00000000 ____D () C:\Users\Alex\AppData\Local\Drakerz 2014-05-19 19:34 - 2014-05-19 19:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Peoleo 2014-05-19 14:55 - 2014-05-19 14:42 - 312538296 _____ () C:\Users\Alex\Downloads\NightmareHouse2_1.0.rar 2014-05-19 10:42 - 2014-05-19 10:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\{F433FA37-0ACD-4BA0-93DE-9296E8600D8F} 2014-05-19 10:02 - 2013-02-15 10:57 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-05-19 09:40 - 2014-05-19 09:40 - 00112777 _____ () C:\Users\Alex\Downloads\infinite-jumping-2.15.zip 2014-05-19 09:29 - 2014-05-19 09:29 - 00002518 _____ () C:\Users\Alex\Downloads\bunnyhop.smx 2014-05-19 00:00 - 2014-05-19 00:00 - 00000000 ____D () C:\Users\Alex\AppData\Local\Ubisoft 2014-05-18 23:47 - 2014-05-17 14:11 - 00001301 _____ () C:\Users\Alex\AppData\Roaming\BreakingPoint_Options.ini 2014-05-18 23:47 - 2014-05-17 10:23 - 00000000 ____D () C:\Breaking Point 2014-05-18 23:43 - 2014-05-17 14:12 - 00000282 _____ () C:\Users\Alex\AppData\Roaming\BreakingPoint_Login.ini 2014-05-18 18:08 - 2014-05-18 18:08 - 00026623 _____ () C:\Users\Alex\Downloads\infinite-jumping.smx 2014-05-18 18:07 - 2014-05-18 18:07 - 00000169 _____ () C:\Users\Alex\Downloads\bhop.ahk 2014-05-18 18:01 - 2014-05-18 18:01 - 00003531 _____ () C:\Users\Alex\Downloads\longjump.smx 2014-05-18 17:44 - 2014-05-18 17:44 - 00004890 _____ () C:\Users\Alex\Downloads\quake_bhop.smx 2014-05-18 17:33 - 2014-05-18 17:33 - 00998041 _____ () C:\Users\Alex\Downloads\bhop_eazy_csgo.rar 2014-05-18 17:28 - 2014-05-18 17:28 - 00005373 _____ () C:\Users\Alex\Downloads\abner_bhop.smx 2014-05-18 17:18 - 2014-05-18 17:18 - 10940781 _____ () C:\Users\Alex\Downloads\sourcemod-1.5.4-hg4051-windows.zip 2014-05-18 17:18 - 2014-05-18 17:18 - 01782679 _____ () C:\Users\Alex\Downloads\mmsource-1.10.1-hg886-windows.zip 2014-05-18 17:18 - 2014-05-18 17:18 - 00000061 _____ () C:\Users\Alex\Downloads\metamod.vdf 2014-05-18 16:51 - 2014-03-15 14:57 - 00000000 ____D () C:\Users\Alex\Desktop\Alles rund um GFX 2014-05-18 16:20 - 2014-05-18 16:20 - 00016391 _____ () C:\Users\Alex\Downloads\gamemodes_server.txt 2014-05-18 15:42 - 2014-05-18 14:50 - 00000000 ____D () C:\Users\Alex\Desktop\SteamCMD 2014-05-18 15:32 - 2014-05-18 15:32 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd (2).zip 2014-05-18 15:21 - 2014-05-18 15:21 - 00002944 _____ () C:\Windows\System32\Tasks\{607D10F5-73E5-44DD-BCC9-B31EF8ADF5D7} 2014-05-18 15:21 - 2014-05-18 15:21 - 00002944 _____ () C:\Windows\System32\Tasks\{233334F7-275C-4D59-8B08-1689D367F72F} 2014-05-18 14:50 - 2014-05-18 14:50 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd (1).zip 2014-05-18 12:05 - 2014-05-17 10:05 - 00000000 ____D () C:\Users\Alex\AppData\Local\Arma 3 2014-05-17 15:37 - 2012-09-01 18:47 - 00000000 ____D () C:\Games 2014-05-17 15:32 - 2014-05-17 15:32 - 00000781 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Toribash.lnk 2014-05-17 15:31 - 2014-05-17 15:31 - 47467158 _____ (Nabi Studios Pte Ltd ) C:\Users\Alex\Downloads\Toribash-4.8-Setup.exe 2014-05-17 10:22 - 2014-05-17 10:22 - 01686528 _____ (Alderon Games) C:\Users\Alex\Downloads\BP_Installer.exe 2014-05-17 10:06 - 2014-05-17 10:05 - 00000000 ____D () C:\Users\Alex\Documents\Arma 3 2014-05-17 10:05 - 2014-05-17 10:05 - 00000000 ____D () C:\ProgramData\Bohemia Interactive 2014-05-17 00:29 - 2014-05-17 00:29 - 00000000 ____D () C:\TempDump 2014-05-16 13:11 - 2014-05-16 13:11 - 06808718 _____ () C:\Users\Alex\Downloads\coop_ch_apocalypse_1_v15.7z 2014-05-15 22:09 - 2014-03-21 21:00 - 00000000 _____ () C:\dfu.log 2014-05-15 22:08 - 2014-04-17 22:59 - 00000000 ____D () C:\Users\Alex\Downloads\Gameforge Live 2014-05-15 22:08 - 2013-03-06 22:41 - 00000000 ____D () C:\Program Files (x86)\GameforgeLive 2014-05-15 20:53 - 2014-05-15 20:53 - 00017845 _____ () C:\Users\Alex\Downloads\background.mid 2014-05-15 20:03 - 2014-05-15 20:03 - 00139264 _____ (sun.the9.com) C:\Users\Alex\Downloads\9yin_MD5Check (1).exe 2014-05-15 19:23 - 2014-05-15 19:23 - 00626688 _____ () C:\Users\Alex\Downloads\Detection.msi 2014-05-15 18:25 - 2014-05-15 18:25 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-15 15:36 - 2014-02-01 13:50 - 00001181 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk 2014-05-15 15:34 - 2013-01-07 15:47 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\TeamViewer 2014-05-15 14:09 - 2014-05-15 14:09 - 01131920 _____ (Solid State Networks) C:\Users\Alex\Downloads\gunz2-dlm.exe 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\Documents\Stronghold Kingdoms 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Firefly Studios 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\AppData\Local\Geckofx 2014-05-15 11:42 - 2013-06-11 00:38 - 00000000 ____D () C:\Users\Alex\AppData\Local\Warframe 2014-05-14 21:49 - 2014-05-14 21:49 - 00000034 _____ () C:\Users\Alex\Desktop\PokerstarsNEUEDATEN.txt 2014-05-14 15:10 - 2014-01-19 17:22 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Sony 2014-05-14 15:10 - 2013-08-01 11:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warplanes 2014-05-14 15:10 - 2013-03-04 00:40 - 00000000 ____D () C:\Users\Alex\Desktop\Desktop zeug usw 2014-05-14 14:12 - 2014-05-14 13:52 - 00000000 ____D () C:\MicroVolts Package 2014-05-14 14:02 - 2014-05-14 14:02 - 17938608 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-05-14 14:02 - 2014-04-20 22:05 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-14 14:02 - 2014-04-20 22:05 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-14 14:02 - 2014-04-20 22:05 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-14 13:51 - 2014-05-14 13:51 - 01679872 _____ (Rock Hippo Productions) C:\Users\Alex\Downloads\MicroVolts_Package.exe 2014-05-14 13:32 - 2013-02-02 18:34 - 00000000 ____D () C:\Users\Alex\Documents\Shiner 2014-05-14 00:04 - 2013-03-25 11:28 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-05-13 22:29 - 2014-05-13 22:25 - 00000000 ____D () C:\Users\Alex\Documents\BIS Core Engine 2014-05-13 22:07 - 2014-05-13 22:07 - 00065097 _____ () C:\Users\Alex\Downloads\smooth360.blk 2014-05-13 20:51 - 2014-05-13 20:51 - 00139264 _____ (sun.the9.com) C:\Users\Alex\Downloads\9yin_MD5Check.exe 2014-05-13 18:11 - 2013-06-18 20:05 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Awesomium 2014-05-13 13:46 - 2011-04-12 09:43 - 00699416 _____ () C:\Windows\system32\perfh007.dat 2014-05-13 13:46 - 2011-04-12 09:43 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-05-13 13:46 - 2009-07-14 07:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-13 11:57 - 2014-05-11 14:19 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Bioshock2Steam 2014-05-13 11:30 - 2013-11-24 16:23 - 00000000 ____D () C:\Users\Alex\AppData\Local\Overwolf 2014-05-12 22:50 - 2014-05-12 22:50 - 07886712 _____ (Microsoft Corporation) C:\Users\Alex\Downloads\Xbox360_64Deu.exe 2014-05-12 22:45 - 2014-05-12 22:45 - 00062275 _____ () C:\Users\Alex\Downloads\Plane 1 (2).blk 2014-05-12 22:44 - 2014-05-12 22:44 - 00072102 _____ () C:\Users\Alex\Desktop\WAR THUNDER TASTATUR SAVE!.blk 2014-05-12 12:42 - 2014-05-12 12:13 - 08927603 _____ () C:\Users\Alex\Desktop\p_63a_5_usaaf_a.xcf 2014-05-12 11:20 - 2014-05-12 11:20 - 03429653 _____ () C:\Users\Alex\Desktop\MeinDexterWallpaper1.xcf 2014-05-12 10:42 - 2014-05-12 10:42 - 01330256 _____ (Mastheadstudios Ltd.) C:\Users\Alex\Downloads\GaRsetup.exe 2014-05-12 09:14 - 2009-07-14 06:45 - 00572048 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-12 00:24 - 2014-05-12 00:24 - 00000055 _____ () C:\Users\Alex\Desktop\Gronkh Outlast.txt 2014-05-11 23:42 - 2013-10-21 10:09 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive 2014-05-11 23:42 - 2013-10-21 10:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive 2014-05-11 20:48 - 2014-05-11 20:48 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Fatshark 2014-05-11 15:55 - 2014-05-11 15:35 - 16269617 _____ () C:\Users\Alex\Desktop\save2.xcf 2014-05-11 15:49 - 2013-01-05 01:15 - 00174064 _____ () C:\Users\Alex\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-11 15:36 - 2014-05-11 15:36 - 00956071 _____ () C:\Users\Alex\Downloads\birds_of_paradise.zip 2014-05-11 15:35 - 2014-05-11 15:35 - 00077675 _____ () C:\Users\Alex\Downloads\young_beautiful.zip 2014-05-11 15:35 - 2014-05-11 15:35 - 00020629 _____ () C:\Users\Alex\Downloads\karine_aime_les_chocolats.zip 2014-05-11 15:29 - 2014-05-11 15:29 - 18522091 _____ () C:\Users\Alex\Desktop\save1.xcf 2014-05-11 15:26 - 2014-05-11 15:14 - 08277880 _____ () C:\Users\Alex\Desktop\1.xcf 2014-05-11 15:24 - 2014-05-11 15:24 - 00104369 _____ () C:\Users\Alex\Downloads\i_love_disaster.zip 2014-05-11 15:14 - 2014-05-11 15:14 - 00285975 _____ () C:\Users\Alex\Downloads\blambot_youmurderer-bb.zip 2014-05-11 14:37 - 2014-05-08 09:10 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Bioshock 2014-05-11 14:24 - 2014-05-11 14:24 - 00001109 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-11 14:24 - 2014-04-17 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-11 14:24 - 2014-04-17 11:38 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-11 14:23 - 2014-05-11 14:23 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Alex\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-11 14:19 - 2014-05-11 14:19 - 00000000 ____D () C:\Users\Alex\Documents\Bioshock2 2014-05-11 14:11 - 2014-05-11 14:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\CrashRpt 2014-05-10 20:59 - 2014-05-10 20:59 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd.zip 2014-05-10 20:39 - 2014-05-10 20:39 - 00001159 _____ () C:\Users\Alex\Desktop\GFX_Anfängerpack by Anonymous - Verknüpfung.lnk 2014-05-10 20:39 - 2014-05-10 20:38 - 00000000 ____D () C:\Users\Alex\Desktop\GFX_Anfängerpack by Anonymous 2014-05-10 20:08 - 2014-05-10 20:08 - 00000000 ____D () C:\Program Files (x86)\Valve 2014-05-10 19:58 - 2014-05-10 19:58 - 03513408 _____ () C:\Users\Alex\Downloads\hldsupdatetool.bin 2014-05-10 19:57 - 2014-05-10 19:57 - 00703533 _____ () C:\Users\Alex\Downloads\hldsupdatetool.exe 2014-05-10 16:11 - 2014-05-04 22:20 - 00000000 ____D () C:\Users\Alex\Desktop\Ich 2014-05-10 15:53 - 2014-05-10 15:53 - 13849377 _____ () C:\Users\Alex\Downloads\P-38G-Lightning-by-aL3xoNe (1).rar 2014-05-10 15:53 - 2014-05-10 15:53 - 04941088 _____ () C:\Users\Alex\Downloads\P-39N-0-Airacobra-by-aL3xoNe.rar.rar 2014-05-10 15:47 - 2014-05-10 14:29 - 00000000 ____D () C:\Users\Alex\Desktop\P39N Download 2014-05-10 15:42 - 2014-05-10 15:42 - 13849377 _____ () C:\Users\Alex\Downloads\P-38G-Lightning-by-aL3xoNe.rar 2014-05-10 15:36 - 2014-05-10 15:39 - 00001240 _____ () C:\Users\Alex\Desktop\Readme FÜR SKINS.txt 2014-05-10 15:36 - 2014-05-10 14:28 - 00000000 ____D () C:\Users\Alex\Desktop\P38-G Download 2014-05-10 14:20 - 2014-05-06 18:48 - 00000000 ____D () C:\Users\Alex\Desktop\GFX 2014-05-10 14:19 - 2014-05-10 14:18 - 00000000 ____D () C:\Users\Alex\Desktop\Animes 2014-05-09 15:08 - 2014-05-09 15:08 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 2014-05-09 15:08 - 2014-01-24 01:16 - 00000000 ____D () C:\Users\Alex\Documents\ArmA 2 2014-05-09 15:07 - 2014-05-09 15:07 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer (1).msi 2014-05-09 15:07 - 2014-01-24 02:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dotjosh Studios 2014-05-09 15:06 - 2014-05-09 15:06 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-05-08 09:27 - 2014-05-08 09:10 - 00000000 ____D () C:\Users\Alex\Documents\Bioshock 2014-05-07 16:29 - 2014-05-07 16:29 - 00000000 ____D () C:\Users\Alex\Documents\Activision 2014-05-07 16:23 - 2014-05-07 16:23 - 00001810 _____ () C:\Users\Alex\Desktop\OutlastLauncher.exe - Verknüpfung.lnk 2014-05-07 16:02 - 2014-05-07 16:02 - 01474935 _____ () C:\Users\Alex\Downloads\like-button-plugin-for-wordpress.zip 2014-05-07 08:42 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-06 23:56 - 2014-05-06 23:56 - 00183026 _____ () C:\Users\Alex\Downloads\resolutions_background (1).jpeg 2014-05-06 20:12 - 2014-04-20 22:06 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-05-06 20:12 - 2014-04-20 22:06 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-05-06 19:26 - 2014-05-06 13:12 - 07493223 _____ () C:\Users\Alex\Documents\Airacobra SAVE.xcf 2014-05-06 18:48 - 2014-05-06 18:48 - 311570413 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack (1).zip 2014-05-06 17:55 - 2014-05-06 17:42 - 311570413 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack.zip 2014-05-06 17:55 - 2014-05-06 17:42 - 299537655 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack 2.zip 2014-05-06 17:54 - 2014-05-06 17:45 - 210144430 _____ () C:\Users\Alex\Downloads\GFXpack (IFuziondesignz).rar 2014-05-06 17:52 - 2014-05-06 17:45 - 209049183 _____ () C:\Users\Alex\Downloads\Sketchartz Massive GFX Pack part 2.rar 2014-05-06 17:50 - 2014-05-06 17:45 - 162514690 _____ () C:\Users\Alex\Downloads\Sketchartz Massive GFX Pack part 1!.rar 2014-05-06 17:43 - 2014-05-06 17:43 - 01759480 _____ (Bandoo Media Inc) C:\Users\Alex\Downloads\iLividSetup-r484-n-bc.exe 2014-05-06 17:41 - 2014-05-06 17:40 - 83873708 _____ () C:\Users\Alex\Downloads\AreaFX Ex Pack.rar 2014-05-06 17:35 - 2014-05-06 17:35 - 146067426 _____ () C:\Users\Alex\Downloads\GFX-S_Res-Pack_4.zip 2014-05-06 17:29 - 2014-05-06 17:29 - 08377560 _____ () C:\Users\Alex\Downloads\gfx_render_pack_01.rar 2014-05-06 15:59 - 2014-05-06 15:59 - 00000000 ____D () C:\Users\Alex\AppData\Local\{91F91A62-49C1-4BAC-8C1A-09337162D9FB} 2014-05-06 15:58 - 2014-05-06 15:58 - 00000000 ____D () C:\Users\Alex\AppData\Local\{09A5F1C8-B1B4-45F3-93D4-19390E6019C8} 2014-05-06 12:32 - 2014-05-06 12:32 - 00041751 _____ () C:\Users\Alex\Downloads\roughtrade.zip 2014-05-06 11:58 - 2014-05-06 11:58 - 00067447 _____ () C:\Users\Alex\Downloads\flashvortex.swf 2014-05-06 11:50 - 2014-05-06 11:50 - 00183026 _____ () C:\Users\Alex\Downloads\resolutions_background.jpeg 2014-05-06 07:14 - 2014-05-31 15:17 - 19274752 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 07:14 - 2014-05-31 15:17 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-06 05:48 - 2014-05-31 15:17 - 14367232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-06 05:48 - 2014-05-31 15:17 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-06 05:37 - 2014-05-31 15:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 05:26 - 2014-05-31 15:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-05 21:51 - 2014-01-27 21:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\NVIDIA Corporation 2014-05-05 13:24 - 2014-05-05 13:24 - 00000000 ____D () C:\Users\Alex\AppData\Local\{43185202-8B17-4322-A18B-DC3E059BBB51} 2014-05-04 22:59 - 2014-05-04 22:59 - 00206829 _____ () C:\Users\Alex\Downloads\capture_it.zip 2014-05-04 22:22 - 2014-03-15 15:01 - 00000000 ____D () C:\Users\Alex\Desktop\Musik 2014-05-04 17:12 - 2012-05-08 09:26 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-05-04 15:30 - 2014-05-04 15:29 - 00000000 ____D () C:\Users\Alex\AppData\Local\{AC1B2D7D-CEF2-409E-B752-6E8D0479DAA0} 2014-05-03 18:11 - 2014-05-03 18:11 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-05-03 18:11 - 2014-04-05 20:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-05-03 18:11 - 2012-05-08 07:56 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-05-03 18:01 - 2014-05-03 18:01 - 02538056 _____ () C:\Users\Alex\Downloads\HeroesAndGenerals-setup-87779.exe 2014-05-03 17:50 - 2014-05-03 17:50 - 00000000 ____D () C:\Users\Alex\Documents\You Have to Win the Game 2014-05-03 17:50 - 2014-05-03 17:50 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\You Have to Win the Game 2014-05-03 17:50 - 2014-05-03 17:49 - 00000000 ____D () C:\Program Files (x86)\You Have to Win the Game 2014-05-03 17:49 - 2014-05-03 17:49 - 03369446 _____ (J. Kyle Pittman) C:\Users\Alex\Downloads\TheGame_Install_2013-10-24_20-01.exe 2014-05-03 14:06 - 2014-05-03 14:06 - 00027997 _____ () C:\Users\Alex\Downloads\jonathan-s-harris_something-strange.zip 2014-05-03 14:04 - 2014-05-03 14:04 - 01070873 _____ () C:\Users\Alex\Downloads\201401210006_7428.net.zip Some content of TEMP: ==================== C:\Users\Alex\AppData\Local\Temp\8198e17764c6b6fe0b4209eace65249d.dll C:\Users\Alex\AppData\Local\Temp\bdfilters.dll C:\Users\Alex\AppData\Local\Temp\devcon64.exe C:\Users\Alex\AppData\Local\Temp\dxwebsetup.exe C:\Users\Alex\AppData\Local\Temp\jansi-64-git-Bukkit-1.7.2-R0.3-b3020jnks.dll C:\Users\Alex\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\Alex\AppData\Local\Temp\LMkRstPt.exe C:\Users\Alex\AppData\Local\Temp\MSIAFTERBURNERSETUP.EXE C:\Users\Alex\AppData\Local\Temp\NGMDll.dll C:\Users\Alex\AppData\Local\Temp\NGMResource.dll C:\Users\Alex\AppData\Local\Temp\NGMSetup.exe C:\Users\Alex\AppData\Local\Temp\Quarantine.exe C:\Users\Alex\AppData\Local\Temp\riftuninstall.exe C:\Users\Alex\AppData\Local\Temp\SETUP_AFTERBURNER.EXE C:\Users\Alex\AppData\Local\Temp\sqlite-3.7.2-sqlitejdbc.dll C:\Users\Alex\AppData\Local\Temp\swt-win32-3349.dll C:\Users\Alex\AppData\Local\Temp\tmp686.exe C:\Users\Alex\AppData\Local\Temp\tmpB825.exe C:\Users\Alex\AppData\Local\Temp\tmpD9F9.exe C:\Users\Alex\AppData\Local\Temp\tmpF18F.exe C:\Users\Alex\AppData\Local\Temp\unicows.dll C:\Users\Alex\AppData\Local\Temp\Uninstaller-5940.exe C:\Users\Alex\AppData\Local\Temp\Uninstaller-6980.exe C:\Users\Alex\AppData\Local\Temp\vcredist_x86.exe C:\Users\Alex\AppData\Local\Temp\Wildstar.exe C:\Users\Alex\AppData\Local\Temp\xmlUpdater.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-06-17 09:11 ==================== End Of Log ============================ |
02.06.2014, 13:32 | #4 |
| Virus nach Monatlichem Virenscann Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-06-2014 01 Ran by Alex at 2014-06-02 09:48:14 Running from C:\Users\Alex\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Kaspersky PURE 3.0 (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5} AS: Kaspersky PURE 3.0 (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky PURE 3.0 (Enabled) {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E} ==================== Installed Programs ====================== Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.2.122 - Adobe Systems, Inc.) Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.13.3296) (Version: 1.13.3296 - Aeria Games & Entertainment) Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.13.3296 - Aeria Games & Entertainment) Aeria Ignite (x32 Version: 1.13.3296 - Aeria Games & Entertainment) Hidden AION Free-to-Play Version 1.0 (HKLM-x32\...\{82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1) (Version: 1.0 - Gameforge) AirMech (HKLM-x32\...\Steam App 206500) (Version: - Carbon Games) AirRivals (HKLM-x32\...\AirRivals_is1) (Version: - Gameforge 4D GmbH) Akamai NetSession Interface (HKCU\...\Akamai) (Version: - Akamai Technologies, Inc) AMD APP SDK Runtime (Version: 10.0.938.2 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{AF88A32E-BC54-2AA3-2FC8-D63D86DF4A7A}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.) applicationupdater (HKCU\...\SOE-C:/Users/Alex/AppData/Local/Sony Online Entertainment/ApplicationUpdater) (Version: - Sony Online Entertainment) Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive) Aura Kingdom (HKLM-x32\...\Aura Kingdom) (Version: - ) Auslogics DiskDefrag (HKLM-x32\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: 4.5.3.0 - Auslogics Labs Pty Ltd) Bandicam (HKLM-x32\...\Bandicam) (Version: 1.9.4.505 - Bandisoft.com) Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandisoft.com) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 1942 (HKLM-x32\...\{698D7E61-E4BF-4CA6-8A09-CF6BDBFDEF65}) (Version: - ) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.4.0 - EA Digital Illusions CE AB) BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - ) BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - ) BitRaider Web Client (HKLM-x32\...\BitRaider Web Client) (Version: 1.1.9.4 - BitRaider, LLC) BlackGold (HKLM-x32\...\{F7731C17-DA4F-440C-9802-00ED509B9F77}) (Version: 0.0.1.008 - Snail Games USA) Borderlands (HKLM-x32\...\Steam App 8980) (Version: - Gearbox Software) Brick-Force (HKLM-x32\...\Brick-Force) (Version: - Infernum Productions AG) CamStudio version 2.7 (HKLM-x32\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7 - CamStudio Open Source) CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Cry of Fear (HKLM-x32\...\Steam App 223710) (Version: - Team Psykskallar) Cube World version 0.0.1 (HKLM-x32\...\{D692A0E0-1BBB-4E9C-826E-4254EE330830}_is1) (Version: 0.0.1 - Picroma) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios) DC Universe Online Live (HKCU\...\SOE-DC Universe Online Live PSG) (Version: - Sony Online Entertainment) Dead Island: Epidemic (HKLM-x32\...\Steam App 222900) (Version: - Stunlock Studios) DEFIANCE (HKLM-x32\...\{2BF4B6A7-9AB3-4A2B-A84E-91B5CBDC0000}_is1) (Version: - Trion Worlds, Inc.) DefianceRuntimes (HKLM-x32\...\{79B1FF35-9EA8-48ED-98D6-19ABE004BE89}) (Version: 1.0.2 - Trion Worlds, Inc.) diclovit's mod pack 1.11.0 (HKLM-x32\...\{28B1238E-1C18-4637-A2B7-95315E94EB29}_is1) (Version: 1.11.0 - diclovit) Dokan Library 0.6.0 (HKLM-x32\...\DokanLibrary) (Version: - ) eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) Euro Truck Simulator 2 (HKLM-x32\...\{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1) (Version: 1.8.2.5 - SCS Software) Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{39AB2E37-1A55-4292-A5D3-971E9F70D0F8}) (Version: 2.1.32.0 - MAGIX AG) FormatFactory 3.0.1 (HKLM-x32\...\FormatFactory) (Version: 3.0.1 - Free Time) Game Booster 3 (HKLM-x32\...\Game Booster_is1) (Version: 3.4 - IObit) Gameforge Live 2.0.2 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.2 - Gameforge) GIMP 2.8.4 (HKLM\...\GIMP-2_is1) (Version: 2.8.4 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden Grand Theft Auto: San Andreas (HKLM-x32\...\Steam App 12120) (Version: - Rockstar Games) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) How to Survive (HKLM-x32\...\Steam App 250400) (Version: - ) IM Lock (HKLM-x32\...\IMLock) (Version: - Comvigo, Inc.) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.1.0.1006 - Intel Corporation) Intel(R) Small Business Advantage (HKLM-x32\...\{6A6D86CD-B004-46b7-8951-7BB75A776F8C}) (Version: - Intel(R) Corporation) Intel(R) Update Manager (x32 Version: 1.0.0.34813 - Intel Corporation) Hidden Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.225 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.738.1 - Intel Corporation) Hidden Java 7 Update 17 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417017FF}) (Version: 7.0.170 - Oracle) Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.550 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Jt's AGQJ Engine&Guns Version 2.1 AGQJ for WOT 0.8.11 (HKLM-x32\...\{1AD3289B-A7F7-409B-B8F9-AF255869676B}_is1) (Version: 2.1 AGQJ for WOT 0.8.11 - JT_Adams's Modwerkstatt) Kaspersky PURE 3.0 (HKLM-x32\...\InstallWIX_{D0702EE9-9DE4-419A-9C6C-4730B1C985BA}) (Version: 13.0.2.558 - Kaspersky Lab) Kaspersky PURE 3.0 (x32 Version: 13.0.2.558 - Kaspersky Lab) Hidden MAGIX Speed burnR (MSI) (HKLM-x32\...\MX.{F6E484FB-BC48-4A63-8186-E25DF4607B3B}) (Version: 7.0.2.6 - MAGIX AG) MAGIX Speed burnR (MSI) (Version: 7.0.2.6 - MAGIX AG) Hidden MAGIX Video deluxe 2014 Premium (HKLM-x32\...\MX.{FBCA50BE-C022-45DA-9261-10230EC1012E}) (Version: 13.0.2.8 - MAGIX AG) MAGIX Video deluxe 2014 Premium (Version: 13.0.2.8 - MAGIX AG) Hidden Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Extended DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Corporation (Version: 9.1.0.0 - Microsoft Corporation) Hidden Microsoft Corporation (x32 Version: 9.1.0.0 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE (HKLM-x32\...\{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}) (Version: 3.1.186.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft LifeCam (HKLM\...\{6965A8D2-465D-4F98-9FAA-0E9E2348F329}) (Version: 3.22.270.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{887868A2-D6DE-3255-AA92-AA0B5A59B874}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Microsoft_VC100_CRT_SP1_x64 (Version: 10.0.40219.1 - Nokia) Hidden Microsoft_VC100_CRT_SP1_x86 (x32 Version: 10.0.40219.1 - Nokia) Hidden Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) MSI Afterburner 2.1.0 (HKLM-x32\...\Afterburner) (Version: 2.1.0 - MSI Co., LTD) MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MTA:SA v1.3.1 (HKLM-x32\...\MTA:SA 1.3) (Version: v1.3.1 - Multi Theft Auto) Need For Speed™ World (HKLM-x32\...\{3AF1B16A-7DC9-4C80-BAEC-70B088A7C5B8}) (Version: 1.0.0.0 - Electronic Arts) Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - ) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.5.5 - Notepad++ Team) NVIDIA Design Garage (HKLM-x32\...\{66C7814A-DBE1-4DE5-85A5-29D5F1D26EC4}) (Version: 1.0.0.0 - NVIDIA Corporation) NVIDIA GeForce Experience 2.0.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.0.1 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.151.1095 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Optimus Update 12.4.67 (Version: 12.4.67 - NVIDIA Corporation) Hidden NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA ShadowPlay 12.4.67 (Version: 12.4.67 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 335.23 (Version: 335.23 - NVIDIA Corporation) Hidden NVIDIA Update 12.4.67 (Version: 12.4.67 - NVIDIA Corporation) Hidden NVIDIA Update Components (Version: 1.15.2 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 12.4.67 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.) Outlast (HKLM-x32\...\Steam App 238320) (Version: - Red Barrels) Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.) PAYDAY 2 (HKLM-x32\...\Steam App 218620) (Version: - OVERKILL - a Starbreeze Studio.) PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia) Pflanzen gegen Zombies™ (HKLM-x32\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: 1.2.0.1093 - Electronic Arts, Inc.) PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Quake Live Mozilla Plugin (HKLM-x32\...\{FA66CFD7-0977-4C45-AACD-A8BB994B1A05}) (Version: 1.0.520 - id Software) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.50.1123.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7083 - Realtek Semiconductor Corp.) Renegade X (HKLM-x32\...\UDK-4fc3a6b6-3d0e-4dce-b127-8e60191e2b1e) (Version: Open Beta 1 - Totem Arts) Robocraft version 0.3.221 (HKCU\...\{9F101691-69D3-422E-BB5C-8CAD7110781B}_is1) (Version: 0.3.221 - Freejam) SHIELD Streaming (Version: 2.1.108 - NVIDIA Corporation) Hidden Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.) Smite (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 1.0.2151.6 - Hi-Rez Studios) Source SDK Base 2007 (HKLM-x32\...\Steam App 218) (Version: - Valve) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spotify (HKCU\...\Spotify) (Version: 0.9.10.14.g578d350b - Spotify AB) Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: 7.0.0.29 - Bioware/EA) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Super-Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.006 - MSI) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamSpeak 3 Client (HKCU\...\TeamSpeak 3 Client) (Version: 3.0.13.1 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.28223 - TeamViewer) Terraria (HKLM-x32\...\Steam App 105600) (Version: - ) The Mighty Quest For Epic Loot Version 1.220469 (HKLM-x32\...\The Mighty Quest For Epic Loot_is1) (Version: 1.220469 - ) The Secret World (HKLM-x32\...\The Secret World_is1) (Version: 1.0.0 - Funcom) theHunter Launcher (HKLM-x32\...\FBDFBE7F-2DB8-47E2-B88E-32F4A2A74AA8_is1) (Version: 635 - Expansive Worlds) TS Notifier (HKLM-x32\...\{18B27ADA-8B84-46B4-8310-586C4FDDCF0A}) (Version: 1.5.5001 - Andreas Gebert) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden TuneUp Utilities 2014 (HKLM-x32\...\TuneUp Utilities) (Version: 14.0.1000.221 - TuneUp Software) TuneUp Utilities 2014 (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Vindictus EU (HKLM-x32\...\Vindictus EU) (Version: - ) War Thunder (HKLM-x32\...\Steam App 236390) (Version: - Gaijin Entertainment) War Thunder Launcher 1.0.1.153 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - 2012 Gaijin Entertainment Corporation) War Thunder Launcher 1.0.1.340 (HKLM-x32\...\{abc8eea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment) Warframe (HKLM-x32\...\Steam App 230410) (Version: - ) WEBZEN Browser Extension (HKLM-x32\...\{95723791-2C44-454B-9220-C65D47D70E9C}) (Version: 1.12.010 - WEBZEN) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) Winki (HKLM-x32\...\{81CF5153-38CF-41e2-AC3C-3D477C987D96}_is1) (Version: 3.2.121 - MSI) WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) World of Tanks (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version: - Wargaming.net) Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) You Have to Win the Game (HKLM-x32\...\TheGame) (Version: - ) Zombie Driver HD (HKLM-x32\...\Steam App 220820) (Version: - Exor Studios) ==================== Restore Points ========================= 31-05-2014 13:13:36 Windows Update ==================== Hosts content: ========================== 2009-07-14 04:34 - 2014-02-17 02:08 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {0211AD9F-6C20-4455-96BF-42E583E43FB2} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated) Task: {06720F04-A083-4602-965B-A8B81494C447} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14] (Adobe Systems Incorporated) Task: {1060B6A7-B474-4CBE-AA3C-8E6788F5AB1B} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe [2013-12-18] (TuneUp Software) Task: {42720A60-DC37-432F-B779-544681FEE9E1} - System32\Tasks\{48A9EF00-04F4-4DFE-B8FB-9F9AE3EC46A1} => C:\Users\Alex\Desktop\SWTOR_setup (1).exe Task: {524B0F5B-2B4D-4D10-AC1B-4680409C7416} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation) Task: {57D8CA6A-00F9-459F-8DA5-9EA70FF538B8} - System32\Tasks\{607D10F5-73E5-44DD-BCC9-B31EF8ADF5D7} => C:\Users\Alex\Desktop\SteamCMD1\srcds.exe [2014-05-18] () Task: {5BE15411-DB39-4FF9-AA35-0ECA4D9DD6A1} - \Desk 365 RunAsStdUser No Task File <==== ATTENTION Task: {76B77F1A-CF31-4FBA-8A2D-18D6C37A8A36} - System32\Tasks\Google Updater and Installer => C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe Task: {7F23482B-05F5-4139-AADF-736E0BD611CE} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [2013-07-23] () Task: {8005C0D7-3BF7-4CC1-8F1F-06A890C22868} - System32\Tasks\{1F1F4FB0-3932-4BAF-B1CC-B1729A279C99} => C:\Users\Alex\Desktop\gta sa neu\gta_sa.exe Task: {8E5F94C8-AF3B-4F94-8E54-7FD006D9B2E8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-20] (Google Inc.) Task: {A4C3C3DE-9C37-4CDC-950A-1D176F9A2539} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2011-02-15] () Task: {C2402378-D9EA-484B-8327-1BAA16B5E75D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd) Task: {C266285A-B4CE-4CB0-AD8D-29179F224472} - System32\Tasks\{233334F7-275C-4D59-8B08-1689D367F72F} => C:\Users\Alex\Desktop\SteamCMD1\srcds.exe [2014-05-18] () Task: {EADF1C57-5D72-4ABF-A976-B8EC8FF63CAA} - \Omiga Plus RunAsStdUser No Task File <==== ATTENTION Task: {ECC2222F-999F-46C5-9E20-8990838F97B4} - System32\Tasks\{96401EEC-B719-45F4-85D3-79C00ABDC861} => C:\Users\Alex\Desktop\SWTOR_setup (1).exe Task: {F20D31A7-5066-4967-A794-408D4F1C2FCB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-20] (Google Inc.) Task: {FB4C7FDF-E6C8-49EF-BA19-F0B7C2C0E6A9} - System32\Tasks\FRAPS => C:\Users\Alex\Desktop\Fraps\fraps.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-03-14 18:08 - 2014-03-04 15:05 - 00116056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2011-01-10 14:49 - 2011-01-10 14:49 - 00014848 _____ () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe 2013-10-04 23:54 - 2014-05-30 19:54 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-10-04 23:54 - 2014-06-02 00:21 - 00290184 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2013-12-18 11:01 - 2013-12-18 11:01 - 00742200 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\avgrepliba.dll 2012-12-20 18:19 - 2012-12-20 18:19 - 00479752 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\dblite.dll 2012-12-20 18:19 - 2012-12-20 18:19 - 01310728 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\kpcengine.2.2.dll 2014-05-22 12:35 - 2014-05-14 01:40 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\libglesv2.dll 2014-05-22 12:35 - 2014-05-14 01:40 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\libegl.dll 2014-05-22 12:35 - 2014-05-14 01:40 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\pdf.dll 2014-05-22 12:35 - 2014-05-14 01:40 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll 2014-05-22 12:35 - 2014-05-14 01:40 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ffmpegsumo.dll 2014-02-19 11:38 - 2014-02-19 11:38 - 00172032 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\00a0b4a9df6e4abf30ae2af3624a77ce\IsdiInterop.ni.dll 2012-05-08 07:30 - 2012-02-01 16:25 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData:NT2 AlternateDataStreams: C:\Users\All Users:NT2 AlternateDataStreams: C:\Users\Alex\Anwendungsdaten:NT AlternateDataStreams: C:\Users\Alex\Anwendungsdaten:NT2 AlternateDataStreams: C:\Users\Alex\AppData\Roaming:NT AlternateDataStreams: C:\Users\Alex\AppData\Roaming:NT2 AlternateDataStreams: C:\ProgramData\Anwendungsdaten:NT2 AlternateDataStreams: C:\ProgramData\Application Data:NT2 AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2 ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Alex\AppData\Local\Akamai\netsession_win.exe" MSCONFIG\startupreg: Overwolf => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/02/2014 09:44:42 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/02/2014 00:27:05 AM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (EventID: 1) (User: ) Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008] Error: (06/01/2014 01:56:06 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Launcher.exe, Version 1.1.1.1 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: c08 Startzeit: 01cf7d8bc67bc797 Endzeit: 3 Anwendungspfad: C:\Users\Alex\Desktop\Aura kingdom Anime\AuraKingdom\Launcher.exe Berichts-ID: b496e612-e983-11e3-94e7-8c89a5e6efbf Error: (06/01/2014 10:07:52 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 03:20:52 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 03:17:44 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (EventID: 1) (User: ) Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008] Error: (05/31/2014 03:06:23 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 02:11:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: bf3.exe, Version: 1.6.0.0, Zeitstempel: 0x511c9356 Name des fehlerhaften Moduls: d3d11.dll, Version: 6.2.9200.16570, Zeitstempel: 0x5153774d Ausnahmecode: 0xc0000005 Fehleroffset: 0x000a65ba ID des fehlerhaften Prozesses: 0x13ac Startzeit der fehlerhaften Anwendung: 0xbf3.exe0 Pfad der fehlerhaften Anwendung: bf3.exe1 Pfad des fehlerhaften Moduls: bf3.exe2 Berichtskennung: bf3.exe3 Error: (05/31/2014 09:49:37 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (05/31/2014 08:59:03 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (05/31/2014 11:06:14 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {3EB3C877-1F16-487C-9050-104DBCD66683} Error: (05/31/2014 03:17:38 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {3EB3C877-1F16-487C-9050-104DBCD66683} Error: (05/31/2014 03:04:34 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 31.05.2014 um 15:03:13 unerwartet heruntergefahren. Error: (05/30/2014 06:29:18 PM) (Source: volsnap) (EventID: 36) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. Error: (05/30/2014 10:22:06 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/30/2014 10:22:06 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (05/29/2014 00:15:11 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {3EB3C877-1F16-487C-9050-104DBCD66683} Error: (05/28/2014 08:27:10 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {ED1D0FDF-4414-470A-A56D-CFB68623FC58} Error: (05/28/2014 03:07:03 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/28/2014 03:07:03 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Microsoft Office Sessions: ========================= Error: (06/02/2014 09:44:42 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/02/2014 00:27:05 AM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (EventID: 1) (User: ) Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008] Error: (06/01/2014 01:56:06 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Launcher.exe1.1.1.1c0801cf7d8bc67bc7973C:\Users\Alex\Desktop\Aura kingdom Anime\AuraKingdom\Launcher.exeb496e612-e983-11e3-94e7-8c89a5e6efbf Error: (06/01/2014 10:07:52 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 03:20:52 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 03:17:44 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (EventID: 1) (User: ) Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008] Error: (05/31/2014 03:06:23 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 02:11:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: bf3.exe1.6.0.0511c9356d3d11.dll6.2.9200.165705153774dc0000005000a65ba13ac01cf7cc4085fa2fdC:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exeC:\Windows\system32\d3d11.dllb1538a09-e8bc-11e3-bc13-8c89a5e6efbf Error: (05/31/2014 09:49:37 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\theHunter\launcher\launcher.exe Error: (05/31/2014 08:59:03 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 CodeIntegrity Errors: =================================== Date: 2014-02-17 01:08:26.910 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-17 01:08:26.878 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-17 01:08:26.846 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-17 01:08:26.814 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-06-25 12:48:51.081 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 12:48:51.079 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 12:48:51.078 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 11:22:29.720 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 11:22:29.719 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-06-25 11:22:29.718 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 36% Total physical RAM: 8127.46 MB Available physical RAM: 5137.22 MB Total Pagefile: 16253.11 MB Available Pagefile: 13138.36 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:921.41 GB) (Free:104.47 GB) NTFS Drive e: () (Fixed) (Total:465.76 GB) (Free:212.13 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 1E2AC9C5) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=921 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=10 GB) - (Type=27) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 083BB526) Partition 1: (Not Active) - (Size=466 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
03.06.2014, 10:06 | #5 |
/// the machine /// TB-Ausbilder | Virus nach Monatlichem Virenscann Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
03.06.2014, 14:11 | #6 |
| Virus nach Monatlichem Virenscann Und, schon etwas böses gefunden? AdwCleaner Code:
ATTFilter # AdwCleaner v3.211 - Bericht erstellt am 03/06/2014 um 12:26:01 # Aktualisiert 26/05/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Alex - ALEX-PC # Gestartet von : C:\Users\Alex\Downloads\adwcleaner_3.211.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Users\Alex\AppData\Local\Temp\OCS ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\LatestDLMgr_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\LatestDLMgr_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548} Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software Schlüssel Gelöscht : HKLM\Software\Software ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.16866 -\\ Mozilla Firefox v29.0.1 (de) [ Datei : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\prefs.js ] -\\ Google Chrome v35.0.1916.114 [ Datei : C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [1453 octets] - [18/04/2014 22:11:37] AdwCleaner[R1].txt - [1722 octets] - [03/06/2014 12:22:36] AdwCleaner[S0].txt - [1480 octets] - [18/04/2014 22:12:52] AdwCleaner[S1].txt - [1593 octets] - [03/06/2014 12:26:01] ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1653 octets] ########## JRT Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 7 Home Premium x64 Ran by Alex on 03.06.2014 at 12:32:46,49 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Users\Alex\appdata\locallow\boost_interprocess" Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin" Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{00ADAA02-E5C1-4169-B6DA-0E811FB66E7B} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{09A5F1C8-B1B4-45F3-93D4-19390E6019C8} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{1C5D9F2F-B30D-470A-AC15-6F17A767ECDB} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{1EAC5586-FA65-4840-807F-CAA43133EF2C} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{22D565FC-46DF-4BFB-A9D4-CFBAF7457BE3} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{23693735-FAF1-4733-974A-8D1182FDC925} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{26BD5C1E-4BFD-42C8-A1DC-DF6693E14E64} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{28EC53A0-4956-443E-86B3-F327C2D91398} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{43185202-8B17-4322-A18B-DC3E059BBB51} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{447F496F-9A43-453B-9470-996ECCD42937} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{4E7CC478-A878-4CEA-ACF7-452985D840F1} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{62978E3B-3C0B-4B2D-B114-6CB1D394D672} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{681BF8C0-3053-4FC9-BA78-DDA2AF7CA508} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{68BD81F0-14B1-4248-907B-5AAFEA971A1B} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{7539253D-9147-4963-BC61-159C707253D4} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{90A82E10-EFDB-44BE-90FC-14C54820C91E} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{90DFD820-B1D5-4F42-BD8D-1AD38BBFE2BF} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{91F91A62-49C1-4BAC-8C1A-09337162D9FB} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{AC1B2D7D-CEF2-409E-B752-6E8D0479DAA0} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{AC808D50-BDA9-4B8F-BA94-018C0777D12C} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{B0D92C71-338A-4B4B-8454-A89F9571772A} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{BE16029D-424B-4E6B-9989-B91C9E03DB2C} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{C002B1B4-1F73-406E-B184-721B808C8924} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{C55CDED8-7C08-4B09-8124-0C855812AF68} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{C5EF493A-CF06-42A2-B57F-B8CCF4C83133} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{CE2C0BF8-21A7-4497-9C69-3ABAD5A42AB9} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{F0503272-A36E-4F6E-9CA3-38355A52E03F} Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{F433FA37-0ACD-4BA0-93DE-9296E8600D8F} ~~~ FireFox Emptied folder: C:\Users\Alex\AppData\Roaming\mozilla\firefox\profiles\8qof1hkw.default\minidumps [13 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 03.06.2014 at 12:37:13,55 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-06-2014 Ran by Alex (administrator) on ALEX-PC on 03-06-2014 15:10:01 Running from C:\Users\Alex\Desktop Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe (Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS64.exe (MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe (Spotify Ltd) C:\Users\Alex\AppData\Roaming\Spotify\spotify.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7204568 2013-11-04] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation) HKLM-x32\...\Run: [AVP] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) HKU\S-1-5-21-992614989-2845173188-1475335217-1003\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.) AppInit_DLLs: => File Not Found AppInit_DLLs-x32: pe9 => "pe9" File Not Found ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.hyrican.de HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll (Perfect World Entertainment Inc) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 155.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.4.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @idsoftware.com/QuakeLive - C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npnxgameEU.dll (Nexon) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @Webzen.com/NPBrowserExt - C:\Program Files (x86)\WEBZEN\BrowserExtension\NPWZCmnCtrl.dll (WEBZEN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Alex\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\8qof1hkw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-16] FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com [2013-08-28] FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com [2013-08-28] FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com [2013-08-28] FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com [2013-08-28] FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com [2013-08-28] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt Chrome: ======= CHR HomePage: CHR Extension: (Google Docs) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-16] CHR Extension: (Google Drive) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-16] CHR Extension: (YouTube) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-16] CHR Extension: (Adblock Plus) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-04-20] CHR Extension: (Google-Suche) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-16] CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-03-16] CHR Extension: (AdBlock) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-04-20] CHR Extension: (Sicherer Zahlungsverkehr) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2014-03-16] CHR Extension: (Content Blocker) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2014-03-16] CHR Extension: (Virtual Keyboard) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2014-03-16] CHR Extension: (Google Wallet) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-16] CHR Extension: (Google Mail) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-16] CHR Extension: (Anti-Banner) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2014-03-16] CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\online_banking_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\content_blocker_chrome.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\virtkbd.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [koalekbhpbggkcfhkkbolikjoaobbppi] - C:\Program Files (x86)\PutLockerDownloader\PutLockerDownloader10.crx [2012-12-28] CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx [2012-12-28] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= S3 ArcService; C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe [88400 2014-04-11] (Perfect World Entertainment Inc) R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-18] (Kaspersky Lab ZAO) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-01-24] () S3 BRSptSvc; C:\ProgramData\BitRaider\BRSptSvc.exe [477960 2014-01-06] (BitRaider, LLC) R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () R2 Intel(R) Small Business Advantage; C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [49376 2012-02-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-19] (Intel Corporation) R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [138768 2012-01-03] (MSI) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4784312 2014-01-15] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-05-30] () R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 BRDriver64; C:\ProgramData\BitRaider\BRDriver64.sys [75048 2013-10-03] (BitRaider) R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider) S3 hxsyol; C:\Users\Alex\Desktop\Aura kingdom Anime\AuraKingdom\avital\hxsy64.sys [86352 2013-11-27] () R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [24496 2011-12-19] (Intel Corporation) S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [637360 2011-12-19] (Intel Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2014-04-02] (Kaspersky Lab ZAO) U5 klflt; C:\Windows\System32\Drivers\klflt.sys [90208 2013-10-18] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [626272 2013-10-18] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2014-04-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-18] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-08-28] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-08-28] (Kaspersky Lab ZAO) R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [14136 2010-01-18] (MSI) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 PciIsaSerial; C:\Windows\system32\drivers\PciIsaSerial.sys [68608 2008-12-19] (Windows (R) Codename Longhorn DDK provider) S3 PciPPorts; C:\Windows\system32\drivers\PciPPorts.sys [96768 2009-07-23] () S3 PciSPorts; C:\Windows\system32\drivers\PciSPorts.sys [122880 2008-12-19] () R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-12-16] (TuneUp Software) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [X] S3 MSICDSetup; \??\D:\CDriver64.sys [X] S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X] S4 NvStUSB; \SystemRoot\system32\drivers\nvstusb.sys [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X] S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [X] S3 X6va017; \??\C:\Windows\SysWOW64\Drivers\X6va017 [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-03 15:10 - 2014-06-03 15:10 - 00023086 _____ () C:\Users\Alex\Desktop\FRST.txt 2014-06-03 15:08 - 2014-06-03 15:09 - 02068992 _____ (Farbar) C:\Users\Alex\Desktop\FRST64.exe 2014-06-03 12:37 - 2014-06-03 12:37 - 00003849 _____ () C:\Users\Alex\Desktop\JRT.txt 2014-06-03 12:33 - 2014-06-03 12:33 - 00001737 _____ () C:\Users\Alex\Desktop\AdwCleaner[S1].txt 2014-06-03 12:32 - 2014-06-03 12:32 - 01016261 _____ (Thisisu) C:\Users\Alex\Downloads\JRT.exe 2014-06-03 12:32 - 2014-06-03 12:32 - 01016261 _____ (Thisisu) C:\Users\Alex\Desktop\JRT.exe 2014-06-03 12:23 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-06-03 12:20 - 2014-06-03 12:20 - 01327971 _____ () C:\Users\Alex\Downloads\adwcleaner_3.211.exe 2014-06-03 12:16 - 2014-05-30 01:07 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-06-03 12:16 - 2014-05-30 01:07 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-06-02 15:15 - 2014-06-02 15:15 - 02386648 _____ () C:\Users\Alex\Desktop\Terraria Part1.xcf 2014-06-02 15:15 - 2014-06-02 15:15 - 00275579 _____ () C:\Users\Alex\AppData\Local\recently-used.xbel 2014-06-02 14:08 - 2014-06-02 14:08 - 00018775 _____ () C:\Users\Alex\Downloads\Skin-Aimbot.cs 2014-06-02 13:58 - 2014-06-02 13:58 - 00387930 _____ () C:\Users\Alex\Downloads\CLEO4.1_setup.exe 2014-06-02 09:47 - 2014-06-03 15:10 - 00000000 ____D () C:\FRST 2014-06-02 09:45 - 2014-06-02 09:45 - 02067456 _____ (Farbar) C:\Users\Alex\Downloads\FRST64.exe 2014-06-02 09:44 - 2014-06-03 14:53 - 00003014 _____ () C:\Windows\System32\Tasks\MSIAfterburner 2014-06-01 23:03 - 2014-06-01 23:03 - 101480251 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part6.rar 2014-06-01 23:02 - 2014-06-01 23:03 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part5.rar 2014-06-01 23:02 - 2014-06-01 23:02 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part4.rar 2014-06-01 23:01 - 2014-06-01 23:02 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part3.rar 2014-06-01 23:01 - 2014-06-01 23:02 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part2.rar 2014-06-01 23:01 - 2014-06-01 23:01 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part1.rar 2014-06-01 19:00 - 2014-06-01 19:00 - 06114626 _____ () C:\Users\Alex\Downloads\20335-cleo-41130f.zip 2014-06-01 12:59 - 2014-06-01 12:59 - 00001851 _____ () C:\Users\Alex\Desktop\Aura Kingdom.lnk 2014-06-01 12:34 - 2014-06-01 12:34 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Aeria Games & Entertainment 2014-06-01 12:19 - 2014-06-01 12:19 - 00581656 _____ (Aeria Games & Entertainment) C:\Users\Alex\Downloads\aurakingdom_us_downloader.exe 2014-06-01 10:49 - 2014-06-01 12:34 - 00000000 ____D () C:\Users\Alex\Desktop\Aura kingdom Anime 2014-05-31 15:17 - 2014-05-06 07:14 - 19274752 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-31 15:17 - 2014-05-06 07:14 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-31 15:17 - 2014-05-06 05:48 - 14367232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-31 15:17 - 2014-05-06 05:48 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-31 15:17 - 2014-05-06 05:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-31 15:17 - 2014-05-06 05:26 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-31 15:13 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-05-31 15:13 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-31 15:13 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-31 15:13 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-05-31 15:13 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-31 15:13 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-05-31 15:13 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-31 15:13 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-05-31 15:13 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-05-31 15:13 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-31 15:13 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-05-31 15:13 - 2014-03-13 08:33 - 02238976 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-31 15:13 - 2014-03-13 08:33 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-31 15:13 - 2014-03-13 08:33 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-31 15:13 - 2014-03-13 08:32 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-31 15:13 - 2014-03-13 08:32 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-05-31 15:13 - 2014-03-13 08:32 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-31 15:13 - 2014-03-13 08:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-31 15:13 - 2014-03-13 08:32 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-31 15:13 - 2014-03-13 08:31 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-31 15:13 - 2014-03-13 07:10 - 01766400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-05-31 15:13 - 2014-03-13 07:10 - 01140736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 02049536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-05-31 15:13 - 2014-03-13 07:09 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-05-31 15:13 - 2014-03-13 05:59 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-05-31 15:13 - 2014-03-13 05:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-05-31 15:13 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-31 15:13 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-05-31 15:13 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-31 15:13 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-31 15:13 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-05-31 15:13 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-05-31 15:13 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-05-31 15:13 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-05-31 15:13 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-05-31 15:13 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-05-31 15:12 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-05-31 15:12 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-05-31 15:12 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-05-31 15:12 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-05-31 15:12 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-05-31 15:12 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-05-31 15:12 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-05-31 15:12 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-05-31 15:12 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-05-31 15:12 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-05-31 15:12 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-05-31 10:19 - 2014-05-31 10:19 - 00000099 _____ () C:\Users\Alex\AppData\Roaming\LauncherSettings_live.cfg 2014-05-31 09:56 - 2014-05-31 09:56 - 00008145 _____ () C:\Users\Alex\AppData\Roaming\TheHunterSettings_live.bin 2014-05-31 09:50 - 2014-05-31 09:50 - 00000040 _____ () C:\Users\Alex\AppData\Roaming\TheHunterSettings_live.cfg 2014-05-31 09:50 - 2014-05-31 09:50 - 00000000 ____D () C:\Users\Alex\Documents\theHunter 2014-05-31 09:50 - 2014-05-31 09:50 - 00000000 ____D () C:\Users\Alex\AppData\Local\theHunter 2014-05-31 09:29 - 2014-05-31 09:50 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\theHunter 2014-05-31 09:28 - 2014-05-31 09:28 - 00000000 ____D () C:\ProgramData\Hunter 2014-05-31 09:27 - 2014-05-31 10:01 - 00000000 ____D () C:\Program Files (x86)\theHunter 2014-05-31 09:27 - 2014-05-31 09:27 - 19607904 _____ (Expansive Worlds ) C:\Users\Alex\Downloads\theHunterLauncherSetup.exe 2014-05-31 09:27 - 2014-05-31 09:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\theHunter 2014-05-30 17:01 - 2014-05-30 17:01 - 00000000 ____D () C:\Users\Alex\AppData\Local\PAYDAY 2 2014-05-30 16:06 - 2014-05-30 16:07 - 00000000 ____D () C:\Users\Alex\Documents\Battlefield 3 2014-05-30 15:57 - 2014-05-30 15:57 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins 2014-05-30 15:56 - 2014-05-30 15:56 - 02247960 _____ () C:\Users\Alex\Downloads\battlelog-web-plugins_2.4.0_141.exe 2014-05-30 15:54 - 2014-05-30 15:54 - 00001177 _____ () C:\Users\Public\Desktop\Battlefield 3.lnk 2014-05-30 15:54 - 2014-05-30 15:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 2014-05-30 11:30 - 2014-05-30 11:30 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\roi 2014-05-29 23:46 - 2014-05-29 23:46 - 00000073 _____ () C:\Users\Alex\Desktop\Harry Potter.txt 2014-05-29 22:19 - 2014-05-29 22:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Need for Speed World 2014-05-29 21:39 - 2014-05-29 22:17 - 00000000 ____D () C:\Users\Alex\Documents\FIFA World 2014-05-29 20:49 - 2014-05-29 20:49 - 00001317 _____ () C:\Users\Alex\Desktop\Origin.exe - Verknüpfung.lnk 2014-05-29 20:08 - 2014-05-29 20:08 - 00000000 ____D () C:\ProgramData\PopCap Games 2014-05-29 20:05 - 2014-05-29 20:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pflanzen gegen Zombies 2014-05-29 19:54 - 2014-05-29 19:54 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Alex\Downloads\OriginThinSetup.exe 2014-05-29 13:39 - 2014-05-29 13:40 - 00000000 ____D () C:\Users\Alex\Desktop\Tsge 2014-05-29 13:39 - 2014-05-29 13:39 - 01212049 _____ () C:\Users\Alex\Downloads\tsge_2.3.0.1.7z 2014-05-29 13:36 - 2014-05-29 13:36 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer (2).exe 2014-05-29 13:34 - 2014-05-29 13:34 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer.exe 2014-05-29 13:34 - 2014-05-29 13:34 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer (1).exe 2014-05-29 10:54 - 2014-05-29 10:54 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\WizardWars 2014-05-27 13:02 - 2014-05-27 13:03 - 00000204 _____ () C:\Users\Alex\Desktop\Gta Video Links Download.txt 2014-05-27 12:55 - 2014-05-27 12:56 - 00000000 ____D () C:\Users\Alex\Desktop\Gta Sa Mods für Video 2014-05-26 23:43 - 2014-05-26 23:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snail Games USA 2014-05-26 23:43 - 2014-05-26 23:43 - 00000000 ____D () C:\Program Files (x86)\Snail Games USA 2014-05-26 22:57 - 2014-05-26 23:35 - 2474812150 _____ () C:\Users\Alex\Downloads\BackGoldInstallSetup_0.0.1.008 (1).rar 2014-05-26 22:33 - 2014-05-26 22:52 - 2147487471 _____ () C:\Users\Alex\Downloads\BackGoldInstallSetup_0.0.1.008.rar 2014-05-26 21:35 - 2014-05-26 21:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\Launcher 2014-05-26 21:35 - 2014-05-26 21:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\id Software 2014-05-26 21:32 - 2014-05-26 21:33 - 06024320 _____ () C:\Users\Alex\Downloads\QuakeLiveSetup_841.exe 2014-05-26 21:32 - 2014-05-26 21:32 - 03099552 _____ (Blizzard Entertainment) C:\Users\Alex\Downloads\Hearthstone-Setup-deDE (1).exe 2014-05-26 14:20 - 2014-05-26 14:20 - 00000000 ____D () C:\Users\Alex\Desktop\Neues Projekt ! War Thunder Ground Forces 2014-05-26 14:04 - 2014-05-26 14:04 - 05445905 _____ () C:\Users\Alex\Desktop\WarThunderThumbnail1.xcf 2014-05-26 10:38 - 2014-06-01 17:24 - 00000000 ____D () C:\Users\Alex\Desktop\Epic Inventor 2014-05-26 10:36 - 2014-05-26 10:37 - 65456922 _____ () C:\Users\Alex\Downloads\ei_win_1.0.1_2492.zip 2014-05-25 20:23 - 2014-05-26 14:31 - 05205178 _____ () C:\Users\Alex\Desktop\Hearthstone THUMBNAIL.xcf 2014-05-24 17:00 - 2014-05-24 17:00 - 00000000 ____D () C:\Users\Alex\AppData\Local\Blizzard 2014-05-24 16:58 - 2014-05-24 17:00 - 00000000 ____D () C:\Program Files (x86)\Hearthstone 2014-05-24 16:58 - 2014-05-24 16:58 - 00001164 _____ () C:\Users\Public\Desktop\Hearthstone.lnk 2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2014-05-24 16:52 - 2014-05-28 17:05 - 00000000 ____D () C:\Users\Alex\AppData\Local\Battle.net 2014-05-24 16:52 - 2014-05-24 16:57 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Battle.net 2014-05-24 16:52 - 2014-05-24 16:52 - 00001127 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-05-24 16:52 - 2014-05-24 16:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2014-05-24 16:52 - 2014-05-24 16:52 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-05-24 16:51 - 2014-05-24 16:52 - 03099552 _____ (Blizzard Entertainment) C:\Users\Alex\Downloads\Hearthstone-Setup-deDE.exe 2014-05-23 21:27 - 2014-05-23 21:27 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\StunlockStudios 2014-05-22 11:25 - 2014-05-31 19:40 - 00000000 ____D () C:\Users\Alex\Desktop\Mandy 2014-05-21 13:17 - 2014-05-21 13:17 - 01803922 _____ () C:\Users\Alex\Downloads\awp_mapz_3.rar 2014-05-20 22:52 - 2014-05-20 22:52 - 00431445 _____ () C:\Users\Alex\Downloads\gcfscape185.zip 2014-05-20 19:42 - 2014-05-20 19:44 - 00000000 ____D () C:\Users\Alex\AppData\Local\ascend 2014-05-19 19:45 - 2014-05-19 19:45 - 00000000 ____D () C:\Users\Alex\AppData\Local\Drakerz 2014-05-19 19:34 - 2014-05-19 19:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Peoleo 2014-05-19 14:42 - 2014-05-19 14:55 - 312538296 _____ () C:\Users\Alex\Downloads\NightmareHouse2_1.0.rar 2014-05-19 09:40 - 2014-05-19 09:40 - 00112777 _____ () C:\Users\Alex\Downloads\infinite-jumping-2.15.zip 2014-05-19 09:29 - 2014-05-19 09:29 - 00002518 _____ () C:\Users\Alex\Downloads\bunnyhop.smx 2014-05-19 00:00 - 2014-05-19 00:00 - 00000000 ____D () C:\Users\Alex\AppData\Local\Ubisoft 2014-05-18 18:08 - 2014-05-18 18:08 - 00026623 _____ () C:\Users\Alex\Downloads\infinite-jumping.smx 2014-05-18 18:07 - 2014-05-18 18:07 - 00000169 _____ () C:\Users\Alex\Downloads\bhop.ahk 2014-05-18 18:01 - 2014-05-18 18:01 - 00003531 _____ () C:\Users\Alex\Downloads\longjump.smx 2014-05-18 17:44 - 2014-05-18 17:44 - 00004890 _____ () C:\Users\Alex\Downloads\quake_bhop.smx 2014-05-18 17:33 - 2014-05-18 17:33 - 00998041 _____ () C:\Users\Alex\Downloads\bhop_eazy_csgo.rar 2014-05-18 17:28 - 2014-05-18 17:28 - 00005373 _____ () C:\Users\Alex\Downloads\abner_bhop.smx 2014-05-18 17:18 - 2014-05-18 17:18 - 10940781 _____ () C:\Users\Alex\Downloads\sourcemod-1.5.4-hg4051-windows.zip 2014-05-18 17:18 - 2014-05-18 17:18 - 01782679 _____ () C:\Users\Alex\Downloads\mmsource-1.10.1-hg886-windows.zip 2014-05-18 17:18 - 2014-05-18 17:18 - 00000061 _____ () C:\Users\Alex\Downloads\metamod.vdf 2014-05-18 16:20 - 2014-05-18 16:20 - 00016391 _____ () C:\Users\Alex\Downloads\gamemodes_server.txt 2014-05-18 15:32 - 2014-05-18 15:32 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd (2).zip 2014-05-18 15:21 - 2014-05-18 15:21 - 00002944 _____ () C:\Windows\System32\Tasks\{607D10F5-73E5-44DD-BCC9-B31EF8ADF5D7} 2014-05-18 15:21 - 2014-05-18 15:21 - 00002944 _____ () C:\Windows\System32\Tasks\{233334F7-275C-4D59-8B08-1689D367F72F} 2014-05-18 14:56 - 2014-05-21 12:35 - 00000000 ____D () C:\Users\Alex\Desktop\SteamCMD1 2014-05-18 14:50 - 2014-05-18 15:42 - 00000000 ____D () C:\Users\Alex\Desktop\SteamCMD 2014-05-18 14:50 - 2014-05-18 14:50 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd (1).zip 2014-05-17 15:32 - 2014-05-17 15:32 - 00000781 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Toribash.lnk 2014-05-17 15:31 - 2014-05-17 15:31 - 47467158 _____ (Nabi Studios Pte Ltd ) C:\Users\Alex\Downloads\Toribash-4.8-Setup.exe 2014-05-17 14:12 - 2014-05-18 23:43 - 00000282 _____ () C:\Users\Alex\AppData\Roaming\BreakingPoint_Login.ini 2014-05-17 14:11 - 2014-05-18 23:47 - 00001301 _____ () C:\Users\Alex\AppData\Roaming\BreakingPoint_Options.ini 2014-05-17 10:23 - 2014-05-18 23:47 - 00000000 ____D () C:\Breaking Point 2014-05-17 10:22 - 2014-05-17 10:22 - 01686528 _____ (Alderon Games) C:\Users\Alex\Downloads\BP_Installer.exe 2014-05-17 10:05 - 2014-05-18 12:05 - 00000000 ____D () C:\Users\Alex\AppData\Local\Arma 3 2014-05-17 10:05 - 2014-05-17 10:06 - 00000000 ____D () C:\Users\Alex\Documents\Arma 3 2014-05-17 10:05 - 2014-05-17 10:05 - 00000000 ____D () C:\ProgramData\Bohemia Interactive 2014-05-17 00:29 - 2014-05-17 00:29 - 00000000 ____D () C:\TempDump 2014-05-16 13:11 - 2014-05-16 13:11 - 06808718 _____ () C:\Users\Alex\Downloads\coop_ch_apocalypse_1_v15.7z 2014-05-15 20:53 - 2014-05-15 20:53 - 00017845 _____ () C:\Users\Alex\Downloads\background.mid 2014-05-15 20:03 - 2014-05-15 20:03 - 00139264 _____ (sun.the9.com) C:\Users\Alex\Downloads\9yin_MD5Check (1).exe 2014-05-15 19:23 - 2014-05-15 19:23 - 00626688 _____ () C:\Users\Alex\Downloads\Detection.msi 2014-05-15 18:25 - 2014-05-15 18:25 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-15 14:09 - 2014-05-15 14:09 - 01131920 _____ (Solid State Networks) C:\Users\Alex\Downloads\gunz2-dlm.exe 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\Documents\Stronghold Kingdoms 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Firefly Studios 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\AppData\Local\Geckofx 2014-05-14 21:49 - 2014-05-14 21:49 - 00000034 _____ () C:\Users\Alex\Desktop\PokerstarsNEUEDATEN.txt 2014-05-14 14:02 - 2014-05-14 14:02 - 17938608 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-05-14 13:52 - 2014-05-14 14:12 - 00000000 ____D () C:\MicroVolts Package 2014-05-14 13:51 - 2014-05-14 13:51 - 01679872 _____ (Rock Hippo Productions) C:\Users\Alex\Downloads\MicroVolts_Package.exe 2014-05-13 22:25 - 2014-05-13 22:29 - 00000000 ____D () C:\Users\Alex\Documents\BIS Core Engine 2014-05-13 22:07 - 2014-05-13 22:07 - 00065097 _____ () C:\Users\Alex\Downloads\smooth360.blk 2014-05-13 20:52 - 2014-05-20 11:28 - 00000075 _____ () C:\Users\Alex\Desktop\Closed BETA Game.TXT 2014-05-13 20:51 - 2014-05-13 20:51 - 00139264 _____ (sun.the9.com) C:\Users\Alex\Downloads\9yin_MD5Check.exe 2014-05-12 22:50 - 2014-05-12 22:50 - 07886712 _____ (Microsoft Corporation) C:\Users\Alex\Downloads\Xbox360_64Deu.exe 2014-05-12 22:45 - 2014-05-12 22:45 - 00062275 _____ () C:\Users\Alex\Downloads\Plane 1 (2).blk 2014-05-12 22:44 - 2014-05-12 22:44 - 00072102 _____ () C:\Users\Alex\Desktop\WAR THUNDER TASTATUR SAVE!.blk 2014-05-12 12:13 - 2014-05-12 12:42 - 08927603 _____ () C:\Users\Alex\Desktop\p_63a_5_usaaf_a.xcf 2014-05-12 11:20 - 2014-05-12 11:20 - 03429653 _____ () C:\Users\Alex\Desktop\MeinDexterWallpaper1.xcf 2014-05-12 10:42 - 2014-05-12 10:42 - 01330256 _____ (Mastheadstudios Ltd.) C:\Users\Alex\Downloads\GaRsetup.exe 2014-05-12 00:24 - 2014-05-12 00:24 - 00000055 _____ () C:\Users\Alex\Desktop\Gronkh Outlast.txt 2014-05-11 20:48 - 2014-05-11 20:48 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Fatshark 2014-05-11 15:36 - 2014-05-11 15:36 - 00956071 _____ () C:\Users\Alex\Downloads\birds_of_paradise.zip 2014-05-11 15:35 - 2014-05-11 15:55 - 16269617 _____ () C:\Users\Alex\Desktop\save2.xcf 2014-05-11 15:35 - 2014-05-11 15:35 - 00077675 _____ () C:\Users\Alex\Downloads\young_beautiful.zip 2014-05-11 15:35 - 2014-05-11 15:35 - 00020629 _____ () C:\Users\Alex\Downloads\karine_aime_les_chocolats.zip 2014-05-11 15:29 - 2014-05-11 15:29 - 18522091 _____ () C:\Users\Alex\Desktop\save1.xcf 2014-05-11 15:24 - 2014-05-11 15:24 - 00104369 _____ () C:\Users\Alex\Downloads\i_love_disaster.zip 2014-05-11 15:14 - 2014-05-11 15:26 - 08277880 _____ () C:\Users\Alex\Desktop\1.xcf 2014-05-11 15:14 - 2014-05-11 15:14 - 00285975 _____ () C:\Users\Alex\Downloads\blambot_youmurderer-bb.zip 2014-05-11 14:24 - 2014-05-11 14:24 - 00001109 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-11 14:24 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-11 14:23 - 2014-05-11 14:23 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Alex\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-11 14:19 - 2014-05-13 11:57 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Bioshock2Steam 2014-05-11 14:19 - 2014-05-11 14:19 - 00000000 ____D () C:\Users\Alex\Documents\Bioshock2 2014-05-11 14:11 - 2014-05-11 14:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\CrashRpt 2014-05-10 20:59 - 2014-05-10 20:59 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd.zip 2014-05-10 20:39 - 2014-05-10 20:39 - 00001159 _____ () C:\Users\Alex\Desktop\GFX_Anfängerpack by Anonymous - Verknüpfung.lnk 2014-05-10 20:38 - 2014-05-10 20:39 - 00000000 ____D () C:\Users\Alex\Desktop\GFX_Anfängerpack by Anonymous 2014-05-10 20:08 - 2014-05-10 20:08 - 00000000 ____D () C:\Program Files (x86)\Valve 2014-05-10 19:58 - 2014-05-10 19:58 - 03513408 _____ () C:\Users\Alex\Downloads\hldsupdatetool.bin 2014-05-10 19:57 - 2014-05-10 19:57 - 00703533 _____ () C:\Users\Alex\Downloads\hldsupdatetool.exe 2014-05-10 15:53 - 2014-05-10 15:53 - 13849377 _____ () C:\Users\Alex\Downloads\P-38G-Lightning-by-aL3xoNe (1).rar 2014-05-10 15:53 - 2014-05-10 15:53 - 04941088 _____ () C:\Users\Alex\Downloads\P-39N-0-Airacobra-by-aL3xoNe.rar.rar 2014-05-10 15:42 - 2014-05-10 15:42 - 13849377 _____ () C:\Users\Alex\Downloads\P-38G-Lightning-by-aL3xoNe.rar 2014-05-10 15:39 - 2014-05-10 15:36 - 00001240 _____ () C:\Users\Alex\Desktop\Readme FÜR SKINS.txt 2014-05-10 14:29 - 2014-05-10 15:47 - 00000000 ____D () C:\Users\Alex\Desktop\P39N Download 2014-05-10 14:28 - 2014-05-10 15:36 - 00000000 ____D () C:\Users\Alex\Desktop\P38-G Download 2014-05-10 14:18 - 2014-05-10 14:19 - 00000000 ____D () C:\Users\Alex\Desktop\Animes 2014-05-09 15:08 - 2014-05-09 15:08 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 2014-05-09 15:07 - 2014-05-09 15:07 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer (1).msi 2014-05-09 15:06 - 2014-05-09 15:06 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-05-08 09:10 - 2014-05-11 14:37 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Bioshock 2014-05-08 09:10 - 2014-05-08 09:27 - 00000000 ____D () C:\Users\Alex\Documents\Bioshock 2014-05-07 16:29 - 2014-05-07 16:29 - 00000000 ____D () C:\Users\Alex\Documents\Activision 2014-05-07 16:23 - 2014-05-07 16:23 - 00001810 _____ () C:\Users\Alex\Desktop\OutlastLauncher.exe - Verknüpfung.lnk 2014-05-07 16:02 - 2014-05-07 16:02 - 01474935 _____ () C:\Users\Alex\Downloads\like-button-plugin-for-wordpress.zip 2014-05-07 10:10 - 2014-05-26 16:21 - 00000000 ____D () C:\Users\Alex\Desktop\test 2014-05-06 23:56 - 2014-05-06 23:56 - 00183026 _____ () C:\Users\Alex\Downloads\resolutions_background (1).jpeg 2014-05-06 18:48 - 2014-05-10 14:20 - 00000000 ____D () C:\Users\Alex\Desktop\GFX 2014-05-06 18:48 - 2014-05-06 18:48 - 311570413 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack (1).zip 2014-05-06 17:45 - 2014-05-06 17:54 - 210144430 _____ () C:\Users\Alex\Downloads\GFXpack (IFuziondesignz).rar 2014-05-06 17:45 - 2014-05-06 17:52 - 209049183 _____ () C:\Users\Alex\Downloads\Sketchartz Massive GFX Pack part 2.rar 2014-05-06 17:45 - 2014-05-06 17:50 - 162514690 _____ () C:\Users\Alex\Downloads\Sketchartz Massive GFX Pack part 1!.rar 2014-05-06 17:43 - 2014-05-06 17:43 - 01759480 _____ (Bandoo Media Inc) C:\Users\Alex\Downloads\iLividSetup-r484-n-bc.exe 2014-05-06 17:42 - 2014-05-06 17:55 - 311570413 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack.zip 2014-05-06 17:42 - 2014-05-06 17:55 - 299537655 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack 2.zip 2014-05-06 17:40 - 2014-05-06 17:41 - 83873708 _____ () C:\Users\Alex\Downloads\AreaFX Ex Pack.rar 2014-05-06 17:35 - 2014-05-06 17:35 - 146067426 _____ () C:\Users\Alex\Downloads\GFX-S_Res-Pack_4.zip 2014-05-06 17:29 - 2014-05-06 17:29 - 08377560 _____ () C:\Users\Alex\Downloads\gfx_render_pack_01.rar 2014-05-06 13:12 - 2014-05-06 19:26 - 07493223 _____ () C:\Users\Alex\Documents\Airacobra SAVE.xcf 2014-05-06 12:32 - 2014-05-06 12:32 - 00041751 _____ () C:\Users\Alex\Downloads\roughtrade.zip 2014-05-06 11:58 - 2014-05-06 11:58 - 00067447 _____ () C:\Users\Alex\Downloads\flashvortex.swf 2014-05-06 11:50 - 2014-05-06 11:50 - 00183026 _____ () C:\Users\Alex\Downloads\resolutions_background.jpeg 2014-05-05 21:50 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-05-05 21:50 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-05-04 22:59 - 2014-05-04 22:59 - 00206829 _____ () C:\Users\Alex\Downloads\capture_it.zip 2014-05-04 22:20 - 2014-05-10 16:11 - 00000000 ____D () C:\Users\Alex\Desktop\Ich ==================== One Month Modified Files and Folders ======= 2014-06-03 15:10 - 2014-06-03 15:10 - 00023086 _____ () C:\Users\Alex\Desktop\FRST.txt 2014-06-03 15:10 - 2014-06-02 09:47 - 00000000 ____D () C:\FRST 2014-06-03 15:10 - 2013-01-05 01:12 - 00000000 ____D () C:\Users\Alex\AppData\Local\Temp 2014-06-03 15:09 - 2014-06-03 15:08 - 02068992 _____ (Farbar) C:\Users\Alex\Desktop\FRST64.exe 2014-06-03 15:02 - 2014-04-20 22:05 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-03 15:00 - 2013-01-05 01:19 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Skype 2014-06-03 15:00 - 2009-07-14 06:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-03 15:00 - 2009-07-14 06:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-03 14:58 - 2014-03-06 14:30 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Spotify 2014-06-03 14:54 - 2013-08-28 16:14 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-06-03 14:53 - 2014-06-02 09:44 - 00003014 _____ () C:\Windows\System32\Tasks\MSIAfterburner 2014-06-03 14:52 - 2014-04-20 22:06 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-03 14:52 - 2014-03-17 11:56 - 00028314 _____ () C:\Windows\setupact.log 2014-06-03 14:52 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-03 14:51 - 2014-03-17 17:11 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-06-03 14:51 - 2013-02-24 12:07 - 00000000 ____D () C:\ProgramData\Origin 2014-06-03 14:51 - 2013-01-05 00:51 - 01178715 _____ () C:\Windows\WindowsUpdate.log 2014-06-03 14:17 - 2014-04-20 22:06 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-03 12:37 - 2014-06-03 12:37 - 00003849 _____ () C:\Users\Alex\Desktop\JRT.txt 2014-06-03 12:33 - 2014-06-03 12:33 - 00001737 _____ () C:\Users\Alex\Desktop\AdwCleaner[S1].txt 2014-06-03 12:32 - 2014-06-03 12:32 - 01016261 _____ (Thisisu) C:\Users\Alex\Downloads\JRT.exe 2014-06-03 12:32 - 2014-06-03 12:32 - 01016261 _____ (Thisisu) C:\Users\Alex\Desktop\JRT.exe 2014-06-03 12:26 - 2014-04-18 22:11 - 00000000 ____D () C:\AdwCleaner 2014-06-03 12:26 - 2014-03-17 11:55 - 00043124 _____ () C:\Windows\PFRO.log 2014-06-03 12:20 - 2014-06-03 12:20 - 01327971 _____ () C:\Users\Alex\Downloads\adwcleaner_3.211.exe 2014-06-03 12:16 - 2012-09-08 19:12 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-06-03 12:16 - 2012-05-08 07:53 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-06-02 23:34 - 2014-05-01 23:28 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\.minecraft 2014-06-02 22:07 - 2013-02-21 16:57 - 00000000 ____D () C:\Users\Alex\AppData\Local\Spotify 2014-06-02 21:29 - 2013-01-06 18:07 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\TS3Client 2014-06-02 15:15 - 2014-06-02 15:15 - 02386648 _____ () C:\Users\Alex\Desktop\Terraria Part1.xcf 2014-06-02 15:15 - 2014-06-02 15:15 - 00275579 _____ () C:\Users\Alex\AppData\Local\recently-used.xbel 2014-06-02 15:15 - 2013-01-31 15:33 - 00000000 ____D () C:\Users\Alex\.gimp-2.8 2014-06-02 14:08 - 2014-06-02 14:08 - 00018775 _____ () C:\Users\Alex\Downloads\Skin-Aimbot.cs 2014-06-02 13:58 - 2014-06-02 13:58 - 00387930 _____ () C:\Users\Alex\Downloads\CLEO4.1_setup.exe 2014-06-02 11:16 - 2013-10-04 23:54 - 00290184 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-06-02 11:16 - 2013-02-25 21:03 - 00290184 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-06-02 11:16 - 2013-02-25 21:00 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-06-02 10:30 - 2014-01-28 23:24 - 00000000 ____D () C:\Users\Alex\Documents\Euro Truck Simulator 2 2014-06-02 09:45 - 2014-06-02 09:45 - 02067456 _____ (Farbar) C:\Users\Alex\Downloads\FRST64.exe 2014-06-02 00:26 - 2014-04-19 00:28 - 00000071 _____ () C:\Users\Alex\Desktop\Dexter Part 3.txt 2014-06-01 23:16 - 2014-04-17 11:41 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-06-01 23:03 - 2014-06-01 23:03 - 101480251 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part6.rar 2014-06-01 23:03 - 2014-06-01 23:02 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part5.rar 2014-06-01 23:02 - 2014-06-01 23:02 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part4.rar 2014-06-01 23:02 - 2014-06-01 23:01 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part3.rar 2014-06-01 23:02 - 2014-06-01 23:01 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part2.rar 2014-06-01 23:01 - 2014-06-01 23:01 - 105906176 _____ () C:\Users\Alex\Downloads\TPTB-TFEA.part1.rar 2014-06-01 19:04 - 2013-01-05 02:10 - 00000000 ____D () C:\Users\Alex\AppData\Local\PokerStars.EU 2014-06-01 19:00 - 2014-06-01 19:00 - 06114626 _____ () C:\Users\Alex\Downloads\20335-cleo-41130f.zip 2014-06-01 17:24 - 2014-05-26 10:38 - 00000000 ____D () C:\Users\Alex\Desktop\Epic Inventor 2014-06-01 12:59 - 2014-06-01 12:59 - 00001851 _____ () C:\Users\Alex\Desktop\Aura Kingdom.lnk 2014-06-01 12:59 - 2014-03-27 22:25 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-06-01 12:59 - 2013-11-23 20:37 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames 2014-06-01 12:59 - 2013-02-15 18:21 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-06-01 12:34 - 2014-06-01 12:34 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Aeria Games & Entertainment 2014-06-01 12:34 - 2014-06-01 10:49 - 00000000 ____D () C:\Users\Alex\Desktop\Aura kingdom Anime 2014-06-01 12:19 - 2014-06-01 12:19 - 00581656 _____ (Aeria Games & Entertainment) C:\Users\Alex\Downloads\aurakingdom_us_downloader.exe 2014-06-01 10:28 - 2014-04-14 22:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\Akamai 2014-05-31 19:40 - 2014-05-22 11:25 - 00000000 ____D () C:\Users\Alex\Desktop\Mandy 2014-05-31 16:36 - 2014-02-11 14:14 - 00000000 ____D () C:\Users\Alex\Desktop\WoT 2014-05-31 15:20 - 2013-01-05 01:13 - 00000000 ___RD () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-31 15:20 - 2013-01-05 01:13 - 00000000 ___RD () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-31 15:16 - 2013-10-17 02:25 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-31 14:11 - 2013-01-05 02:27 - 00000000 ____D () C:\Users\Alex\AppData\Local\CrashDumps 2014-05-31 10:19 - 2014-05-31 10:19 - 00000099 _____ () C:\Users\Alex\AppData\Roaming\LauncherSettings_live.cfg 2014-05-31 10:01 - 2014-05-31 09:27 - 00000000 ____D () C:\Program Files (x86)\theHunter 2014-05-31 09:56 - 2014-05-31 09:56 - 00008145 _____ () C:\Users\Alex\AppData\Roaming\TheHunterSettings_live.bin 2014-05-31 09:50 - 2014-05-31 09:50 - 00000040 _____ () C:\Users\Alex\AppData\Roaming\TheHunterSettings_live.cfg 2014-05-31 09:50 - 2014-05-31 09:50 - 00000000 ____D () C:\Users\Alex\Documents\theHunter 2014-05-31 09:50 - 2014-05-31 09:50 - 00000000 ____D () C:\Users\Alex\AppData\Local\theHunter 2014-05-31 09:50 - 2014-05-31 09:29 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\theHunter 2014-05-31 09:28 - 2014-05-31 09:28 - 00000000 ____D () C:\ProgramData\Hunter 2014-05-31 09:27 - 2014-05-31 09:27 - 19607904 _____ (Expansive Worlds ) C:\Users\Alex\Downloads\theHunterLauncherSetup.exe 2014-05-31 09:27 - 2014-05-31 09:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\theHunter 2014-05-30 19:54 - 2013-10-04 23:54 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-05-30 17:01 - 2014-05-30 17:01 - 00000000 ____D () C:\Users\Alex\AppData\Local\PAYDAY 2 2014-05-30 16:07 - 2014-05-30 16:06 - 00000000 ____D () C:\Users\Alex\Documents\Battlefield 3 2014-05-30 15:57 - 2014-05-30 15:57 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins 2014-05-30 15:56 - 2014-05-30 15:56 - 02247960 _____ () C:\Users\Alex\Downloads\battlelog-web-plugins_2.4.0_141.exe 2014-05-30 15:54 - 2014-05-30 15:54 - 00001177 _____ () C:\Users\Public\Desktop\Battlefield 3.lnk 2014-05-30 15:54 - 2014-05-30 15:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 2014-05-30 15:54 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-05-30 15:53 - 2014-03-18 00:58 - 00455655 _____ () C:\Windows\DirectX.log 2014-05-30 12:49 - 2013-01-08 20:01 - 00000000 ____D () C:\ProgramData\MTA San Andreas All 2014-05-30 11:30 - 2014-05-30 11:30 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\roi 2014-05-30 01:07 - 2014-06-03 12:16 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-05-30 01:07 - 2014-06-03 12:16 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-05-30 01:07 - 2014-04-26 21:21 - 01279480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-05-30 01:07 - 2014-04-26 21:21 - 01122312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-05-29 23:46 - 2014-05-29 23:46 - 00000073 _____ () C:\Users\Alex\Desktop\Harry Potter.txt 2014-05-29 22:24 - 2013-01-31 16:03 - 00000000 ____D () C:\Users\Alex\AppData\Local\Electronic_Arts_Inc 2014-05-29 22:24 - 2013-01-31 15:59 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-05-29 22:19 - 2014-05-29 22:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Need for Speed World 2014-05-29 22:18 - 2014-04-19 17:08 - 00000000 ____D () C:\Program Files (x86)\Origin Games 2014-05-29 22:17 - 2014-05-29 21:39 - 00000000 ____D () C:\Users\Alex\Documents\FIFA World 2014-05-29 20:49 - 2014-05-29 20:49 - 00001317 _____ () C:\Users\Alex\Desktop\Origin.exe - Verknüpfung.lnk 2014-05-29 20:08 - 2014-05-29 20:08 - 00000000 ____D () C:\ProgramData\PopCap Games 2014-05-29 20:05 - 2014-05-29 20:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pflanzen gegen Zombies 2014-05-29 19:57 - 2013-02-24 12:09 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Origin 2014-05-29 19:54 - 2014-05-29 19:54 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Alex\Downloads\OriginThinSetup.exe 2014-05-29 13:40 - 2014-05-29 13:39 - 00000000 ____D () C:\Users\Alex\Desktop\Tsge 2014-05-29 13:39 - 2014-05-29 13:39 - 01212049 _____ () C:\Users\Alex\Downloads\tsge_2.3.0.1.7z 2014-05-29 13:36 - 2014-05-29 13:36 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer (2).exe 2014-05-29 13:34 - 2014-05-29 13:34 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer.exe 2014-05-29 13:34 - 2014-05-29 13:34 - 01143808 _____ () C:\Users\Alex\Downloads\TerrariViewer (1).exe 2014-05-29 10:54 - 2014-05-29 10:54 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\WizardWars 2014-05-28 23:01 - 2013-08-19 17:56 - 00000000 ____D () C:\Program Files (x86)\PokerStars.EU 2014-05-28 17:05 - 2014-05-24 16:52 - 00000000 ____D () C:\Users\Alex\AppData\Local\Battle.net 2014-05-27 13:03 - 2014-05-27 13:02 - 00000204 _____ () C:\Users\Alex\Desktop\Gta Video Links Download.txt 2014-05-27 12:56 - 2014-05-27 12:55 - 00000000 ____D () C:\Users\Alex\Desktop\Gta Sa Mods für Video 2014-05-26 23:43 - 2014-05-26 23:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snail Games USA 2014-05-26 23:43 - 2014-05-26 23:43 - 00000000 ____D () C:\Program Files (x86)\Snail Games USA 2014-05-26 23:43 - 2012-05-08 07:30 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-05-26 23:35 - 2014-05-26 22:57 - 2474812150 _____ () C:\Users\Alex\Downloads\BackGoldInstallSetup_0.0.1.008 (1).rar 2014-05-26 22:52 - 2014-05-26 22:33 - 2147487471 _____ () C:\Users\Alex\Downloads\BackGoldInstallSetup_0.0.1.008.rar 2014-05-26 22:09 - 2013-02-18 22:39 - 00000000 ____D () C:\Users\Alex\Documents\My Games 2014-05-26 21:35 - 2014-05-26 21:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\Launcher 2014-05-26 21:35 - 2014-05-26 21:35 - 00000000 ____D () C:\Users\Alex\AppData\Local\id Software 2014-05-26 21:33 - 2014-05-26 21:32 - 06024320 _____ () C:\Users\Alex\Downloads\QuakeLiveSetup_841.exe 2014-05-26 21:32 - 2014-05-26 21:32 - 03099552 _____ (Blizzard Entertainment) C:\Users\Alex\Downloads\Hearthstone-Setup-deDE (1).exe 2014-05-26 16:21 - 2014-05-07 10:10 - 00000000 ____D () C:\Users\Alex\Desktop\test 2014-05-26 14:31 - 2014-05-25 20:23 - 05205178 _____ () C:\Users\Alex\Desktop\Hearthstone THUMBNAIL.xcf 2014-05-26 14:20 - 2014-05-26 14:20 - 00000000 ____D () C:\Users\Alex\Desktop\Neues Projekt ! War Thunder Ground Forces 2014-05-26 14:04 - 2014-05-26 14:04 - 05445905 _____ () C:\Users\Alex\Desktop\WarThunderThumbnail1.xcf 2014-05-26 13:25 - 2013-02-28 20:55 - 00000000 ____D () C:\Program Files (x86)\War Thunder 2014-05-26 10:37 - 2014-05-26 10:36 - 65456922 _____ () C:\Users\Alex\Downloads\ei_win_1.0.1_2492.zip 2014-05-25 12:32 - 2013-10-27 16:01 - 00000000 ____D () C:\Users\Alex\AppData\Local\Paint.NET 2014-05-24 17:00 - 2014-05-24 17:00 - 00000000 ____D () C:\Users\Alex\AppData\Local\Blizzard 2014-05-24 17:00 - 2014-05-24 16:58 - 00000000 ____D () C:\Program Files (x86)\Hearthstone 2014-05-24 16:58 - 2014-05-24 16:58 - 00001164 _____ () C:\Users\Public\Desktop\Hearthstone.lnk 2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2014-05-24 16:57 - 2014-05-24 16:52 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Battle.net 2014-05-24 16:52 - 2014-05-24 16:52 - 00001127 _____ () C:\Users\Public\Desktop\Battle.net.lnk 2014-05-24 16:52 - 2014-05-24 16:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2014-05-24 16:52 - 2014-05-24 16:52 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-05-24 16:52 - 2014-05-24 16:51 - 03099552 _____ (Blizzard Entertainment) C:\Users\Alex\Downloads\Hearthstone-Setup-deDE.exe 2014-05-23 21:27 - 2014-05-23 21:27 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\StunlockStudios 2014-05-22 12:35 - 2014-04-20 22:06 - 00002182 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-22 00:46 - 2013-12-03 12:29 - 00012722 _____ () C:\Users\Alex\Documents\TombRaider.log 2014-05-21 13:17 - 2014-05-21 13:17 - 01803922 _____ () C:\Users\Alex\Downloads\awp_mapz_3.rar 2014-05-21 12:35 - 2014-05-18 14:56 - 00000000 ____D () C:\Users\Alex\Desktop\SteamCMD1 2014-05-21 11:04 - 2013-02-14 12:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-20 22:52 - 2014-05-20 22:52 - 00431445 _____ () C:\Users\Alex\Downloads\gcfscape185.zip 2014-05-20 19:44 - 2014-05-20 19:42 - 00000000 ____D () C:\Users\Alex\AppData\Local\ascend 2014-05-20 11:28 - 2014-05-13 20:52 - 00000075 _____ () C:\Users\Alex\Desktop\Closed BETA Game.TXT 2014-05-20 10:53 - 2014-04-25 18:49 - 00000000 ____D () C:\Users\Alex\Documents\NCSOFT 2014-05-20 10:53 - 2014-04-23 10:03 - 00000000 ____D () C:\Program Files (x86)\NCSOFT 2014-05-20 10:53 - 2014-04-23 10:02 - 00000000 ____D () C:\Users\Alex\AppData\Local\NCSOFT 2014-05-20 10:52 - 2014-04-25 19:23 - 00000000 ____D () C:\Users\Alex\Documents\survarium 2014-05-20 10:49 - 2014-03-22 01:19 - 00000000 ____D () C:\Program Files (x86)\Next Car Game Free Technology Demo 2014-05-20 10:49 - 2013-03-06 22:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live 2014-05-20 10:47 - 2013-10-13 16:39 - 00000000 ____D () C:\Users\Alex\Desktop\GTA San Andreas OFFLINE 2014-05-19 20:25 - 2014-01-24 01:16 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 OA 2014-05-19 19:45 - 2014-05-19 19:45 - 00000000 ____D () C:\Users\Alex\AppData\Local\Drakerz 2014-05-19 19:34 - 2014-05-19 19:34 - 00000000 ____D () C:\Users\Alex\AppData\Local\Peoleo 2014-05-19 14:55 - 2014-05-19 14:42 - 312538296 _____ () C:\Users\Alex\Downloads\NightmareHouse2_1.0.rar 2014-05-19 10:02 - 2013-02-15 10:57 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-05-19 09:40 - 2014-05-19 09:40 - 00112777 _____ () C:\Users\Alex\Downloads\infinite-jumping-2.15.zip 2014-05-19 09:29 - 2014-05-19 09:29 - 00002518 _____ () C:\Users\Alex\Downloads\bunnyhop.smx 2014-05-19 00:00 - 2014-05-19 00:00 - 00000000 ____D () C:\Users\Alex\AppData\Local\Ubisoft 2014-05-18 23:47 - 2014-05-17 14:11 - 00001301 _____ () C:\Users\Alex\AppData\Roaming\BreakingPoint_Options.ini 2014-05-18 23:47 - 2014-05-17 10:23 - 00000000 ____D () C:\Breaking Point 2014-05-18 23:43 - 2014-05-17 14:12 - 00000282 _____ () C:\Users\Alex\AppData\Roaming\BreakingPoint_Login.ini 2014-05-18 18:08 - 2014-05-18 18:08 - 00026623 _____ () C:\Users\Alex\Downloads\infinite-jumping.smx 2014-05-18 18:07 - 2014-05-18 18:07 - 00000169 _____ () C:\Users\Alex\Downloads\bhop.ahk 2014-05-18 18:01 - 2014-05-18 18:01 - 00003531 _____ () C:\Users\Alex\Downloads\longjump.smx 2014-05-18 17:44 - 2014-05-18 17:44 - 00004890 _____ () C:\Users\Alex\Downloads\quake_bhop.smx 2014-05-18 17:33 - 2014-05-18 17:33 - 00998041 _____ () C:\Users\Alex\Downloads\bhop_eazy_csgo.rar 2014-05-18 17:28 - 2014-05-18 17:28 - 00005373 _____ () C:\Users\Alex\Downloads\abner_bhop.smx 2014-05-18 17:18 - 2014-05-18 17:18 - 10940781 _____ () C:\Users\Alex\Downloads\sourcemod-1.5.4-hg4051-windows.zip 2014-05-18 17:18 - 2014-05-18 17:18 - 01782679 _____ () C:\Users\Alex\Downloads\mmsource-1.10.1-hg886-windows.zip 2014-05-18 17:18 - 2014-05-18 17:18 - 00000061 _____ () C:\Users\Alex\Downloads\metamod.vdf 2014-05-18 16:51 - 2014-03-15 14:57 - 00000000 ____D () C:\Users\Alex\Desktop\Alles rund um GFX 2014-05-18 16:20 - 2014-05-18 16:20 - 00016391 _____ () C:\Users\Alex\Downloads\gamemodes_server.txt 2014-05-18 15:42 - 2014-05-18 14:50 - 00000000 ____D () C:\Users\Alex\Desktop\SteamCMD 2014-05-18 15:32 - 2014-05-18 15:32 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd (2).zip 2014-05-18 15:21 - 2014-05-18 15:21 - 00002944 _____ () C:\Windows\System32\Tasks\{607D10F5-73E5-44DD-BCC9-B31EF8ADF5D7} 2014-05-18 15:21 - 2014-05-18 15:21 - 00002944 _____ () C:\Windows\System32\Tasks\{233334F7-275C-4D59-8B08-1689D367F72F} 2014-05-18 14:50 - 2014-05-18 14:50 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd (1).zip 2014-05-18 12:05 - 2014-05-17 10:05 - 00000000 ____D () C:\Users\Alex\AppData\Local\Arma 3 2014-05-17 15:37 - 2012-09-01 18:47 - 00000000 ____D () C:\Games 2014-05-17 15:32 - 2014-05-17 15:32 - 00000781 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Toribash.lnk 2014-05-17 15:31 - 2014-05-17 15:31 - 47467158 _____ (Nabi Studios Pte Ltd ) C:\Users\Alex\Downloads\Toribash-4.8-Setup.exe 2014-05-17 10:22 - 2014-05-17 10:22 - 01686528 _____ (Alderon Games) C:\Users\Alex\Downloads\BP_Installer.exe 2014-05-17 10:06 - 2014-05-17 10:05 - 00000000 ____D () C:\Users\Alex\Documents\Arma 3 2014-05-17 10:05 - 2014-05-17 10:05 - 00000000 ____D () C:\ProgramData\Bohemia Interactive 2014-05-17 00:29 - 2014-05-17 00:29 - 00000000 ____D () C:\TempDump 2014-05-16 13:11 - 2014-05-16 13:11 - 06808718 _____ () C:\Users\Alex\Downloads\coop_ch_apocalypse_1_v15.7z 2014-05-15 22:09 - 2014-03-21 21:00 - 00000000 _____ () C:\dfu.log 2014-05-15 22:08 - 2014-04-17 22:59 - 00000000 ____D () C:\Users\Alex\Downloads\Gameforge Live 2014-05-15 22:08 - 2013-03-06 22:41 - 00000000 ____D () C:\Program Files (x86)\GameforgeLive 2014-05-15 20:53 - 2014-05-15 20:53 - 00017845 _____ () C:\Users\Alex\Downloads\background.mid 2014-05-15 20:03 - 2014-05-15 20:03 - 00139264 _____ (sun.the9.com) C:\Users\Alex\Downloads\9yin_MD5Check (1).exe 2014-05-15 19:23 - 2014-05-15 19:23 - 00626688 _____ () C:\Users\Alex\Downloads\Detection.msi 2014-05-15 18:25 - 2014-05-15 18:25 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-15 15:36 - 2014-02-01 13:50 - 00001181 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk 2014-05-15 15:34 - 2013-01-07 15:47 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\TeamViewer 2014-05-15 14:09 - 2014-05-15 14:09 - 01131920 _____ (Solid State Networks) C:\Users\Alex\Downloads\gunz2-dlm.exe 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\Documents\Stronghold Kingdoms 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Firefly Studios 2014-05-15 11:57 - 2014-05-15 11:57 - 00000000 ____D () C:\Users\Alex\AppData\Local\Geckofx 2014-05-15 11:42 - 2013-06-11 00:38 - 00000000 ____D () C:\Users\Alex\AppData\Local\Warframe 2014-05-14 21:49 - 2014-05-14 21:49 - 00000034 _____ () C:\Users\Alex\Desktop\PokerstarsNEUEDATEN.txt 2014-05-14 15:10 - 2014-01-19 17:22 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Sony 2014-05-14 15:10 - 2013-08-01 11:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warplanes 2014-05-14 15:10 - 2013-03-04 00:40 - 00000000 ____D () C:\Users\Alex\Desktop\Desktop zeug usw 2014-05-14 14:12 - 2014-05-14 13:52 - 00000000 ____D () C:\MicroVolts Package 2014-05-14 14:02 - 2014-05-14 14:02 - 17938608 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-05-14 14:02 - 2014-04-20 22:05 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-14 14:02 - 2014-04-20 22:05 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-14 14:02 - 2014-04-20 22:05 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-14 13:51 - 2014-05-14 13:51 - 01679872 _____ (Rock Hippo Productions) C:\Users\Alex\Downloads\MicroVolts_Package.exe 2014-05-14 13:32 - 2013-02-02 18:34 - 00000000 ____D () C:\Users\Alex\Documents\Shiner 2014-05-14 00:04 - 2013-03-25 11:28 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-05-13 22:29 - 2014-05-13 22:25 - 00000000 ____D () C:\Users\Alex\Documents\BIS Core Engine 2014-05-13 22:07 - 2014-05-13 22:07 - 00065097 _____ () C:\Users\Alex\Downloads\smooth360.blk 2014-05-13 20:51 - 2014-05-13 20:51 - 00139264 _____ (sun.the9.com) C:\Users\Alex\Downloads\9yin_MD5Check.exe 2014-05-13 18:11 - 2013-06-18 20:05 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Awesomium 2014-05-13 13:46 - 2011-04-12 09:43 - 00699416 _____ () C:\Windows\system32\perfh007.dat 2014-05-13 13:46 - 2011-04-12 09:43 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-05-13 13:46 - 2009-07-14 07:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-13 11:57 - 2014-05-11 14:19 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Bioshock2Steam 2014-05-13 11:30 - 2013-11-24 16:23 - 00000000 ____D () C:\Users\Alex\AppData\Local\Overwolf 2014-05-12 22:50 - 2014-05-12 22:50 - 07886712 _____ (Microsoft Corporation) C:\Users\Alex\Downloads\Xbox360_64Deu.exe 2014-05-12 22:45 - 2014-05-12 22:45 - 00062275 _____ () C:\Users\Alex\Downloads\Plane 1 (2).blk 2014-05-12 22:44 - 2014-05-12 22:44 - 00072102 _____ () C:\Users\Alex\Desktop\WAR THUNDER TASTATUR SAVE!.blk 2014-05-12 12:42 - 2014-05-12 12:13 - 08927603 _____ () C:\Users\Alex\Desktop\p_63a_5_usaaf_a.xcf 2014-05-12 11:20 - 2014-05-12 11:20 - 03429653 _____ () C:\Users\Alex\Desktop\MeinDexterWallpaper1.xcf 2014-05-12 10:42 - 2014-05-12 10:42 - 01330256 _____ (Mastheadstudios Ltd.) C:\Users\Alex\Downloads\GaRsetup.exe 2014-05-12 09:14 - 2009-07-14 06:45 - 00572048 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-12 00:24 - 2014-05-12 00:24 - 00000055 _____ () C:\Users\Alex\Desktop\Gronkh Outlast.txt 2014-05-11 23:42 - 2013-10-21 10:09 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive 2014-05-11 23:42 - 2013-10-21 10:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive 2014-05-11 20:48 - 2014-05-11 20:48 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Fatshark 2014-05-11 15:55 - 2014-05-11 15:35 - 16269617 _____ () C:\Users\Alex\Desktop\save2.xcf 2014-05-11 15:49 - 2013-01-05 01:15 - 00174064 _____ () C:\Users\Alex\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-11 15:36 - 2014-05-11 15:36 - 00956071 _____ () C:\Users\Alex\Downloads\birds_of_paradise.zip 2014-05-11 15:35 - 2014-05-11 15:35 - 00077675 _____ () C:\Users\Alex\Downloads\young_beautiful.zip 2014-05-11 15:35 - 2014-05-11 15:35 - 00020629 _____ () C:\Users\Alex\Downloads\karine_aime_les_chocolats.zip 2014-05-11 15:29 - 2014-05-11 15:29 - 18522091 _____ () C:\Users\Alex\Desktop\save1.xcf 2014-05-11 15:26 - 2014-05-11 15:14 - 08277880 _____ () C:\Users\Alex\Desktop\1.xcf 2014-05-11 15:24 - 2014-05-11 15:24 - 00104369 _____ () C:\Users\Alex\Downloads\i_love_disaster.zip 2014-05-11 15:14 - 2014-05-11 15:14 - 00285975 _____ () C:\Users\Alex\Downloads\blambot_youmurderer-bb.zip 2014-05-11 14:37 - 2014-05-08 09:10 - 00000000 ____D () C:\Users\Alex\AppData\Roaming\Bioshock 2014-05-11 14:24 - 2014-05-11 14:24 - 00001109 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-11 14:24 - 2014-04-17 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-11 14:24 - 2014-04-17 11:38 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-11 14:23 - 2014-05-11 14:23 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Alex\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-11 14:19 - 2014-05-11 14:19 - 00000000 ____D () C:\Users\Alex\Documents\Bioshock2 2014-05-11 14:11 - 2014-05-11 14:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\CrashRpt 2014-05-10 20:59 - 2014-05-10 20:59 - 00774825 _____ () C:\Users\Alex\Downloads\steamcmd.zip 2014-05-10 20:39 - 2014-05-10 20:39 - 00001159 _____ () C:\Users\Alex\Desktop\GFX_Anfängerpack by Anonymous - Verknüpfung.lnk 2014-05-10 20:39 - 2014-05-10 20:38 - 00000000 ____D () C:\Users\Alex\Desktop\GFX_Anfängerpack by Anonymous 2014-05-10 20:08 - 2014-05-10 20:08 - 00000000 ____D () C:\Program Files (x86)\Valve 2014-05-10 19:58 - 2014-05-10 19:58 - 03513408 _____ () C:\Users\Alex\Downloads\hldsupdatetool.bin 2014-05-10 19:57 - 2014-05-10 19:57 - 00703533 _____ () C:\Users\Alex\Downloads\hldsupdatetool.exe 2014-05-10 16:11 - 2014-05-04 22:20 - 00000000 ____D () C:\Users\Alex\Desktop\Ich 2014-05-10 15:53 - 2014-05-10 15:53 - 13849377 _____ () C:\Users\Alex\Downloads\P-38G-Lightning-by-aL3xoNe (1).rar 2014-05-10 15:53 - 2014-05-10 15:53 - 04941088 _____ () C:\Users\Alex\Downloads\P-39N-0-Airacobra-by-aL3xoNe.rar.rar 2014-05-10 15:47 - 2014-05-10 14:29 - 00000000 ____D () C:\Users\Alex\Desktop\P39N Download 2014-05-10 15:42 - 2014-05-10 15:42 - 13849377 _____ () C:\Users\Alex\Downloads\P-38G-Lightning-by-aL3xoNe.rar 2014-05-10 15:36 - 2014-05-10 15:39 - 00001240 _____ () C:\Users\Alex\Desktop\Readme FÜR SKINS.txt 2014-05-10 15:36 - 2014-05-10 14:28 - 00000000 ____D () C:\Users\Alex\Desktop\P38-G Download 2014-05-10 14:20 - 2014-05-06 18:48 - 00000000 ____D () C:\Users\Alex\Desktop\GFX 2014-05-10 14:19 - 2014-05-10 14:18 - 00000000 ____D () C:\Users\Alex\Desktop\Animes 2014-05-09 15:08 - 2014-05-09 15:08 - 00000000 ____D () C:\Users\Alex\AppData\Local\ArmA 2 2014-05-09 15:08 - 2014-01-24 01:16 - 00000000 ____D () C:\Users\Alex\Documents\ArmA 2 2014-05-09 15:07 - 2014-05-09 15:07 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer (1).msi 2014-05-09 15:07 - 2014-01-24 02:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dotjosh Studios 2014-05-09 15:06 - 2014-05-09 15:06 - 02945024 _____ () C:\Users\Alex\Downloads\Dotjosh.DayZCommander.Installer.msi 2014-05-08 09:27 - 2014-05-08 09:10 - 00000000 ____D () C:\Users\Alex\Documents\Bioshock 2014-05-07 16:29 - 2014-05-07 16:29 - 00000000 ____D () C:\Users\Alex\Documents\Activision 2014-05-07 16:23 - 2014-05-07 16:23 - 00001810 _____ () C:\Users\Alex\Desktop\OutlastLauncher.exe - Verknüpfung.lnk 2014-05-07 16:02 - 2014-05-07 16:02 - 01474935 _____ () C:\Users\Alex\Downloads\like-button-plugin-for-wordpress.zip 2014-05-07 08:42 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-06 23:56 - 2014-05-06 23:56 - 00183026 _____ () C:\Users\Alex\Downloads\resolutions_background (1).jpeg 2014-05-06 20:12 - 2014-04-20 22:06 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-05-06 20:12 - 2014-04-20 22:06 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-05-06 19:26 - 2014-05-06 13:12 - 07493223 _____ () C:\Users\Alex\Documents\Airacobra SAVE.xcf 2014-05-06 18:48 - 2014-05-06 18:48 - 311570413 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack (1).zip 2014-05-06 17:55 - 2014-05-06 17:42 - 311570413 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack.zip 2014-05-06 17:55 - 2014-05-06 17:42 - 299537655 _____ () C:\Users\Alex\Downloads\PanicArtz 1k GFX Pack 2.zip 2014-05-06 17:54 - 2014-05-06 17:45 - 210144430 _____ () C:\Users\Alex\Downloads\GFXpack (IFuziondesignz).rar 2014-05-06 17:52 - 2014-05-06 17:45 - 209049183 _____ () C:\Users\Alex\Downloads\Sketchartz Massive GFX Pack part 2.rar 2014-05-06 17:50 - 2014-05-06 17:45 - 162514690 _____ () C:\Users\Alex\Downloads\Sketchartz Massive GFX Pack part 1!.rar 2014-05-06 17:43 - 2014-05-06 17:43 - 01759480 _____ (Bandoo Media Inc) C:\Users\Alex\Downloads\iLividSetup-r484-n-bc.exe 2014-05-06 17:41 - 2014-05-06 17:40 - 83873708 _____ () C:\Users\Alex\Downloads\AreaFX Ex Pack.rar 2014-05-06 17:35 - 2014-05-06 17:35 - 146067426 _____ () C:\Users\Alex\Downloads\GFX-S_Res-Pack_4.zip 2014-05-06 17:29 - 2014-05-06 17:29 - 08377560 _____ () C:\Users\Alex\Downloads\gfx_render_pack_01.rar 2014-05-06 12:32 - 2014-05-06 12:32 - 00041751 _____ () C:\Users\Alex\Downloads\roughtrade.zip 2014-05-06 11:58 - 2014-05-06 11:58 - 00067447 _____ () C:\Users\Alex\Downloads\flashvortex.swf 2014-05-06 11:50 - 2014-05-06 11:50 - 00183026 _____ () C:\Users\Alex\Downloads\resolutions_background.jpeg 2014-05-06 07:14 - 2014-05-31 15:17 - 19274752 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 07:14 - 2014-05-31 15:17 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-06 05:48 - 2014-05-31 15:17 - 14367232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-06 05:48 - 2014-05-31 15:17 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-06 05:37 - 2014-05-31 15:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 05:26 - 2014-05-31 15:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-05 21:51 - 2014-01-27 21:11 - 00000000 ____D () C:\Users\Alex\AppData\Local\NVIDIA Corporation 2014-05-04 22:59 - 2014-05-04 22:59 - 00206829 _____ () C:\Users\Alex\Downloads\capture_it.zip 2014-05-04 22:22 - 2014-03-15 15:01 - 00000000 ____D () C:\Users\Alex\Desktop\Musik 2014-05-04 17:12 - 2012-05-08 09:26 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe Some content of TEMP: ==================== C:\Users\Alex\AppData\Local\Temp\8198e17764c6b6fe0b4209eace65249d.dll C:\Users\Alex\AppData\Local\Temp\bdfilters.dll C:\Users\Alex\AppData\Local\Temp\devcon64.exe C:\Users\Alex\AppData\Local\Temp\dxwebsetup.exe C:\Users\Alex\AppData\Local\Temp\jansi-64-git-Bukkit-1.7.2-R0.3-b3020jnks.dll C:\Users\Alex\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\Alex\AppData\Local\Temp\LMkRstPt.exe C:\Users\Alex\AppData\Local\Temp\MSIAFTERBURNERSETUP.EXE C:\Users\Alex\AppData\Local\Temp\NGMDll.dll C:\Users\Alex\AppData\Local\Temp\NGMResource.dll C:\Users\Alex\AppData\Local\Temp\NGMSetup.exe C:\Users\Alex\AppData\Local\Temp\Quarantine.exe C:\Users\Alex\AppData\Local\Temp\riftuninstall.exe C:\Users\Alex\AppData\Local\Temp\SETUP_AFTERBURNER.EXE C:\Users\Alex\AppData\Local\Temp\sqlite-3.7.2-sqlitejdbc.dll C:\Users\Alex\AppData\Local\Temp\swt-win32-3349.dll C:\Users\Alex\AppData\Local\Temp\tmp686.exe C:\Users\Alex\AppData\Local\Temp\tmpB825.exe C:\Users\Alex\AppData\Local\Temp\tmpD9F9.exe C:\Users\Alex\AppData\Local\Temp\tmpF18F.exe C:\Users\Alex\AppData\Local\Temp\unicows.dll C:\Users\Alex\AppData\Local\Temp\Uninstaller-5940.exe C:\Users\Alex\AppData\Local\Temp\Uninstaller-6980.exe C:\Users\Alex\AppData\Local\Temp\vcredist_x86.exe C:\Users\Alex\AppData\Local\Temp\Wildstar.exe C:\Users\Alex\AppData\Local\Temp\xmlUpdater.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-06-17 09:11 ==================== End Of Log ============================ --- --- --- |
04.06.2014, 08:32 | #7 |
/// the machine /// TB-Ausbilder | Virus nach Monatlichem VirenscannESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Virus nach Monatlichem Virenscann |
computer, direkt, erneut, freue, hierbei, hoffe, keylogger, komische, kumpel, melde, nachfrage, nachsehen, nerve, nicht mehr, paranoid, riesig, rum, scan, scann, viren, virenscan, virenscann, virus, würde, ähnliches |