|
Antiviren-, Firewall- und andere Schutzprogramme: DoS like Attacken auf IP 194.25.95.40 von meinem PCWindows 7 Sämtliche Fragen zur Bedienung von Firewalls, Anti-Viren Programmen, Anti Malware und Anti Trojaner Software sind hier richtig. Dies ist ein Diskussionsforum für Sicherheitslösungen für Windows Rechner. Benötigst du Hilfe beim Trojaner entfernen oder weil du dir einen Virus eingefangen hast, erstelle ein Thema in den oberen Bereinigungsforen. |
11.06.2014, 15:33 | #1 |
| DoS like Attacken auf IP 194.25.95.40 von meinem PC Hallo! Ich bin mir nicht sicher wo dieses Thema reingehört, meiner Meinung nach passt es hier möglicherweise rein. Vor einiger Zeit hab ich mir DoS / SYN Tools beschaffen, um meinen FritzBox Router mal zu testen, lustigerweise hat er die Attacken einfach gut weggesteckt (Benutzt habe ich SynGUI, LOIC und selbstgemachte Python-Scripts) Jetzt aber gehen die Attacken anscheinend ohne meine Erlaubnis weiter, mein Ping, CPU-Usage und Upload am PC sind sehr hoch, der Networksniffer ist nach 2 Sekunden überlastet und hat extrem viele Anfragen von meinem PC aus aufgezeichnet die immer außer "Ethernet", TCP und IPv4 keinen Inhalt hatten. Ich hab die IP in der Firewall blockiert, danach gabs weitere unzählige Anfragen an 173.194.65.113, was nach whois Google USA ist... Hier hab ich mal ein paar IPs aufgelistet, die mein PC DoSed 173.194.65.113 = Google USA 194.25.95.40 = Akamai Netzwerk Architektur Frankfurt oder so 23.21.136.205 = Amazon aber da gabs noch weitere. Klingt für mich verdächtig. Ich hoffe mal das mein PC kein Zombie ist Aber ich denk mal ich werde nicht der einzige PC sein, der Amazon angreift, ein PC würde ja gar nichts bringen Was kann ich denn dagegen tun? Es wäre ja dumm, wenn ich alle Remote IPs blocke Danke, KeksArmee |
11.06.2014, 15:53 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | DoS like Attacken auf IP 194.25.95.40 von meinem PC Hallo und
__________________Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
14.06.2014, 19:06 | #3 |
| Meine Logs... Hallo cosinus!
__________________Ich entschludige mich für meine verspätete Antwort Ich hab hier mal die Logs als pastebins FRST.txt: hxxp://pastebin.com/xnrg4mZN Addition.txt: hxxp://pastebin.com/c5fP0fZe Außerdem gab es da, bevor ich etwas geposted hab, Virenfunde von BitDefender Total Sec. PUA (pot. unerwünscht) BrutusA2.exe (Ja das war ich, ich hab meine Fritz!Box mit Telnet gebruteforced, um zu sehen, ob mein Passwort sicher ist) PUA (pot. unerwünscht) LOIC.exe (Das war auch ich. Ich schäme mich langsam, auch die Fritz!box, muss sagen ist UDP Flood sicher) Skia_downloader.exe (Application.Bundler.Somoto.G) Ich hab alle entfernt, ca. eine Woche später trat das DoS Problem auf. Danke, KeksArmee Geändert von KeksArmee (14.06.2014 um 19:15 Uhr) Grund: hxxp? |
14.06.2014, 21:28 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | DoS like Attacken auf IP 194.25.95.40 von meinem PC Bitte poste hier alle Logs direkt und in CODE-Tags. Danke.
__________________ Logfiles bitte immer in CODE-Tags posten |
16.06.2014, 12:36 | #5 |
| DoS like Attacken auf IP 194.25.95.40 von meinem PC FRST.txt FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-06-2014 02 Ran by Richie (administrator) on RICHIEGAMING on 14-06-2014 17:55:39 Running from E:\ Platform: Windows 8.1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Atheros Commnucations) C:\Windows\System32\AdminService.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Micro-Star International Co., Ltd.) C:\Windows\SysWOW64\MSIService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (Razer, Inc.) C:\Program Files (x86)\Razer\Core\64bit\RzOvlMon.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe (CyberGhost S.R.L) C:\Program Files\CyberGhost 5\Service.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe (MSI) C:\Program Files (x86)\SCM\Radio Manager.exe (MSI) C:\Program Files (x86)\SCM\SCM.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe (Razer Inc.) C:\Program Files (x86)\Razer\Comms\ChatApplet.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\KLM\KLM.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken_Driver\Drivers\SysAudio\KrakenSysAudioLauncher.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\main.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [MBCfg64] => C:\Windows\system32\MBCfg64.dll [34432 2013-04-23] (Creative Technology Ltd.) HKLM\...\Run: [Radio Manager] => C:\Program Files (x86)\SCM\Radio Manager.exe [406920 2013-08-22] (MSI) HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [408232 2013-08-22] (MSI) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13651672 2013-09-03] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2893104 2013-08-23] (ELAN Microelectronics Corp.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1743088 2014-05-30] (Bitdefender) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM-x32\...\Run: [KLM] => C:\Program Files (x86)\MSI\KLM\KLM.exe [1567624 2013-05-31] (Micro-Star International Co., Ltd.) HKLM-x32\...\Run: [Sound Blaster Cinema] => C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [711680 2012-11-29] (Creative Technology Ltd) HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2691480 2014-03-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [224128 2014-03-04] (Oracle Corporation) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2099200 2014-04-13] (Dominik Reichl) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [585048 2014-04-17] (Razer Inc.) HKLM-x32\...\Run: [KrakenLauncher] => C:\Program Files (x86)\Razer\Razer_Kraken_Driver\Drivers\SysAudio\KrakenSysAudioLauncher.exe [865624 2013-07-25] (Razer Inc) HKLM-x32\...\Run: [RazerGameBooster] => C:\Program Files (x86)\Razer\Razer Game Booster\RazerGameBooster.exe [61152 2014-02-25] (Razer Inc.) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [132736 2013-07-30] ( (Atheros Communications)) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [568400 2014-05-30] (Bitdefender) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [1002048 2014-05-30] (Bitdefender) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614744 2014-05-30] (Bitdefender) HKU\S-1-5-21-1277998247-1570779864-2512900168-1001\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [568400 2014-05-30] (Bitdefender) HKU\S-1-5-21-1277998247-1570779864-2512900168-1001\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614744 2014-05-30] (Bitdefender) HKU\S-1-5-21-1277998247-1570779864-2512900168-1001\...\Run: [CyberGhost] => C:\Program Files\CyberGhost 5\CyberGhost.EXE [358000 2014-01-16] (CyberGhost S.R.L.) HKU\S-1-5-21-1277998247-1570779864-2512900168-1001\...\Run: [Google Update] => C:\Users\Richie\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-04-24] (Google Inc.) HKU\S-1-5-21-1277998247-1570779864-2512900168-1001\...\Run: [Razer Comms] => C:\Program Files (x86)\Razer\Comms\ChatApplet.exe [11408192 2014-05-12] (Razer Inc.) HKU\S-1-5-21-1277998247-1570779864-2512900168-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3588952 2014-05-30] (Electronic Arts) HKU\S-1-5-21-1277998247-1570779864-2512900168-1001\...\Run: [GoogleChromeAutoLaunch_76894B18E560AA5E1B9A3A60AFA5A9FE] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488 2014-05-14] (Google Inc.) HKU\S-1-5-21-1277998247-1570779864-2512900168-1001\...\MountPoints2: {632970be-e75a-11e3-826a-6c626d353e1d} - "D:\pushinst.exe" HKU\S-1-5-21-1277998247-1570779864-2512900168-1001\...\MountPoints2: {6ba4bfac-b5d4-11e3-824b-806e6f6e6963} - "D:\CDSetup.exe" AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [166568 2014-05-20] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [146480 2014-05-20] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x74871480534FCF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE,de;q=0.8,en-US;q=0.5,en;q=0.3 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank BHO: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm®Atheros®) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll (Bitdefender) FireFox: ======== FF ProfilePath: C:\Users\Richie\AppData\Roaming\Mozilla\Firefox\Profiles\6wx688o5.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @java.com/DTPlugin,version=11.0.2 - C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.0.2 - C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @videolan.org/vlc,version=2.1.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect_x86_64 - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn/npbattlelog,version=2.4.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Richie\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Richie\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Richie\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Richie\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Users\Richie\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Richie\AppData\Roaming\mozilla\plugins\npo1d.dll (Google) FF SearchPlugin: C:\Users\Richie\AppData\Roaming\Mozilla\Firefox\Profiles\6wx688o5.default\searchplugins\duckduckgo.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Google Analytics Opt-out Browser Add-on - C:\Users\Richie\AppData\Roaming\Mozilla\Firefox\Profiles\6wx688o5.default\Extensions\{6d96bb5e-1175-4ebf-8ab5-5f56f1c79f65}.xpi [2014-05-20] FF Extension: Adblock Plus - C:\Users\Richie\AppData\Roaming\Mozilla\Firefox\Profiles\6wx688o5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-03] FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-04-04] FF HKLM-x32\...\Firefox\Extensions: [fmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\ FF Extension: Freemake Video Downloader Plugin - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\ [] FF HKLM-x32\...\Firefox\Extensions: [ytfmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\ FF Extension: Freemake Youtube Download Button - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\ [] FF HKLM-x32\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\ FF Extension: Freemake Video Converter Plugin - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\ [] FF HKLM-x32\...\Firefox\Extensions: [ffpwdman@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\ FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\ [] FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-04-04] Chrome: ======= CHR HomePage: hxxp://www.google.com/ig/redirectdomain?brand=LENN&bmod=LENN CHR StartupUrls: "hxxp://www.google.com/ig/redirectdomain?brand=LENN&bmod=LENN" CHR Extension: (Google Präsentationen) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-03-27] CHR Extension: (Angry Birds) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2014-03-27] CHR Extension: (Google Docs) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-27] CHR Extension: (Google Drive) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-27] CHR Extension: (YouTube) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-27] CHR Extension: (GeoGebra) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee [2014-03-27] CHR Extension: (Freemake Video Downloader) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf [2014-03-29] CHR Extension: (Bitdefender Wallet) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccahoghmggldkcdjiebjkidpfongdfbl [2014-04-05] CHR Extension: (Google-Suche) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-27] CHR Extension: (Freemake Youtube Download Button) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh [2014-03-29] CHR Extension: (Gmail offline) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2014-03-27] CHR Extension: (Google Kalender) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-03-27] CHR Extension: (User-Agent Switcher) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffhkkpnppgnfaobgihpdblnhmmbodake [2014-03-27] CHR Extension: (Collusion for Chrome) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ganlifbpkcplnldliibcbegplfmcfigp [2014-03-27] CHR Extension: (Chrome Remote Desktop) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2014-06-10] CHR Extension: (AdBlock) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-03-27] CHR Extension: (Porsche) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkclphmapdcppbmekmbkcjfanpmoidpg [2014-03-27] CHR Extension: (In Google Drive speichern) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2014-03-27] CHR Extension: (Keep My Opt-Outs) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhnjdplhmcnkiecampfdgfjilccfpfoe [2014-03-27] CHR Extension: (Google Keep) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2014-03-27] CHR Extension: (Google Play Music) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2014-03-27] CHR Extension: (Freemake Video Converter) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj [2014-03-29] CHR Extension: (Google Formulare) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhknlonaankphkkbnmjdlpehkinifeeg [2014-03-27] CHR Extension: (Little Alchemy) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2014-03-27] CHR Extension: (Google Play) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2014-03-27] CHR Extension: (Evernote Web) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2014-03-27] CHR Extension: (Google Maps) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2014-03-27] CHR Extension: (Google Dictionary (by Google)) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2014-03-27] CHR Extension: (Google Play Books) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmimngoggfoobjdlefbcabngfnmieonb [2014-03-27] CHR Extension: (Hangouts) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd [2014-06-10] CHR Extension: (Google Wallet) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-27] CHR Extension: (Google Mail) - C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-27] CHR HKLM-x32\...\Chrome\Extension: [bpegkgagfojjbcpkihigfmkojdmmimdf] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2014-03-29] CHR HKLM-x32\...\Chrome\Extension: [ccahoghmggldkcdjiebjkidpfongdfbl] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxcr.crx [2014-04-04] CHR HKLM-x32\...\Chrome\Extension: [ehgldbbpchgpcfagfpfjgoomddhccfgh] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\ChromeYoutubePlugin.crx [2014-03-29] CHR HKLM-x32\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2014-03-29] ==================== Services (Whitelisted) ================= R2 AtherosSvc; C:\Windows\system32\AdminService.exe [208384 2012-08-29] (Atheros Commnucations) S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [77632 2013-11-21] (Bitdefender) R2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [64112 2014-01-16] (CyberGhost S.R.L) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [99632 2013-08-23] (ELAN Microelectronics Corp.) R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2014-03-12] (Ellora Assets Corp.) [File not signed] S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2013-08-22] (Microsoft Corporation) [File not signed] R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-08-08] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation) R2 Micro Star SCM; C:\Windows\SysWOW64\MSIService.exe [160768 2009-07-09] (Micro-Star International Co., Ltd.) [File not signed] R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-05-31] () R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [343040 2013-08-08] (Qualcomm Atheros) [File not signed] R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [329920 2014-04-29] () R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.) R2 RzOvlMon; C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe [32960 2014-02-21] (Razer, Inc.) R2 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [94624 2013-07-08] (Bitdefender) S3 Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [543424 2014-05-29] (Valve Corporation) [File not signed] S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [File not signed] R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [67320 2013-10-07] (Bitdefender) S3 VsEtwService120; C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87728 2013-10-05] (Microsoft Corporation) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1526800 2014-05-30] (Bitdefender) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) R3 akwbx; C:\Windows\system32\DRIVERS\akwbx64.sys [3862736 2013-07-26] (Qualcomm Atheros, Inc.) R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [893440 2013-12-02] (BitDefender) R3 avchv; C:\Windows\system32\DRIVERS\avchv.sys [261056 2014-04-06] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [635392 2013-12-02] (BitDefender) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender) R1 BdfNdisf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf6.sys [98768 2014-05-30] (BitDefender LLC) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107008 2013-07-29] (BitDefender LLC) S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [121928 2013-07-02] (Bitdefender SRL) S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL) R1 BDVEDISK; C:\Windows\system32\DRIVERS\bdvedisk.sys [79192 2013-07-30] (BitDefender) R1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [75056 2013-02-13] (Qualcomm Atheros, Inc.) S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation) R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [163536 2013-03-20] (Qualcomm Atheros, Inc.) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-08] (Intel Corporation) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.) R1 nvkflt; C:\Windows\system32\DRIVERS\nvkflt.sys [301512 2014-05-20] (NVIDIA Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) R1 PSSDKLBF; C:\Windows\system32\Drivers\pssdklbf.sys [65600 2014-06-07] (microOLAP Technologies LTD) R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924504 2014-02-22] (Microsoft Corporation) S3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [429272 2013-08-21] (Realsil Semiconductor Corporation) R3 RzDxgk; C:\Windows\system32\drivers\RzDxgk.sys [129472 2014-02-21] (Razer, Inc.) R0 RzFilter; C:\Windows\System32\drivers\RzFilter.sys [74432 2014-02-21] (Razer, Inc.) R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2014-04-29] (Razer, Inc.) R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129856 2014-04-25] (Razer, Inc.) R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [389240 2013-08-07] (BitDefender S.R.L.) R3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-03-13] (Microsoft Corporation) S3 cpuz137; \??\C:\Windows\TEMP\cpuz137\cpuz137_x64.sys [X] S3 GPUZ; \??\C:\Windows\TEMP\GPUZ.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-14 17:56 - 2014-06-14 17:56 - 00028672 _____ () C:\Users\Richie\Documents\EasyBCD Backup (2014-06-14).bcd 2014-06-14 17:56 - 2014-06-14 17:56 - 00003950 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{459B261B-86D7-4892-A0C6-57B4626F3079} 2014-06-14 17:55 - 2014-06-14 17:55 - 00001240 _____ () C:\Users\Public\Desktop\EasyBCD 2.2.lnk 2014-06-14 17:55 - 2014-06-14 17:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NeoSmart Technologies 2014-06-14 17:55 - 2014-06-14 17:55 - 00000000 ____D () C:\Program Files (x86)\NeoSmart Technologies 2014-06-14 17:55 - 2014-06-14 17:55 - 00000000 ____D () C:\FRST 2014-06-14 17:38 - 2014-06-14 17:38 - 00000000 ____D () C:\Windows\LastGood 2014-06-12 12:48 - 2014-06-12 14:58 - 00000000 ____D () C:\Users\Richie\AppData\Local\CrashDumps 2014-06-12 12:29 - 2014-06-12 12:49 - 00070209 _____ () C:\Users\Richie\AppData\Local\HDGraph.log 2014-06-12 12:29 - 2014-06-12 12:29 - 00000000 ____D () C:\Users\Richie\AppData\Local\HDGraph.com 2014-06-12 12:24 - 2014-06-12 12:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 3.4 2014-06-12 12:23 - 2014-06-12 12:24 - 00000000 ____D () C:\Python34 2014-06-11 19:57 - 2014-06-11 19:57 - 00301144 _____ () C:\Windows\Minidump\061114-14875-01.dmp 2014-06-11 18:12 - 2014-06-12 12:49 - 00003576 _____ () C:\Windows\System32\Tasks\Bitdefender Auto-Scan 2014-06-11 13:36 - 2014-06-11 13:36 - 01010720 ___RS (Microsoft Corporation) C:\Windows\SysWOW64\MSCHRT20.OCX 2014-06-11 13:36 - 2014-06-11 13:36 - 00224016 ___RS (Microsoft Corporation) C:\Windows\SysWOW64\TABCTL32.OCX 2014-06-11 13:36 - 2014-06-11 13:36 - 00152848 ___RS (Microsoft Corporation) C:\Windows\SysWOW64\COMDLG32.OCX 2014-06-11 13:36 - 2014-06-11 13:36 - 00001241 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TMAC v6.lnk 2014-06-11 13:36 - 2014-06-11 13:36 - 00000000 ____D () C:\Program Files (x86)\Technitium 2014-06-11 13:32 - 2014-06-11 13:32 - 00001956 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SMAC 2.0.lnk 2014-06-11 13:32 - 2002-12-20 12:02 - 01077336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx 2014-06-11 13:32 - 2000-05-22 00:00 - 00203976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RICHTX32.OCX 2014-06-11 13:32 - 1999-12-07 07:00 - 00061491 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wbemdisp.TLB 2014-06-10 20:27 - 2014-06-12 12:49 - 00016529 _____ () C:\Users\Richie\Downloads\brutus-aet2.zip 2014-06-10 15:43 - 2009-04-09 22:09 - 00004685 _____ () C:\Users\Richie\Downloads\SynGUI.class 2014-06-10 15:41 - 2014-06-12 12:49 - 00553515 _____ () C:\Users\Richie\Downloads\loic.v1.1.1.25.zip 2014-06-09 22:31 - 2014-06-09 22:31 - 00112197 _____ () C:\Users\Richie\Downloads\Unbenannt.pdn 2014-06-09 14:57 - 2014-06-09 14:57 - 01506036 _____ () C:\Users\Richie\Downloads\Unbenannt-3.psd 2014-06-09 14:57 - 2014-06-09 14:57 - 00472474 _____ () C:\Users\Richie\Downloads\Unbenannt-2.psd 2014-06-09 14:57 - 2014-06-09 14:57 - 00417536 _____ () C:\Users\Richie\Downloads\Unbenannt-1.psd 2014-06-09 14:57 - 2014-06-09 14:57 - 00313629 _____ () C:\Users\Richie\Downloads\Unbenannt-4.psd 2014-06-07 14:35 - 2014-06-07 14:35 - 00065600 _____ (microOLAP Technologies LTD) C:\Windows\system32\Drivers\pssdklbf.sys 2014-06-07 14:35 - 2014-06-07 14:35 - 00053312 _____ (microOLAP Technologies LTD) C:\Windows\system32\Drivers\pssdk42.sys 2014-06-07 14:35 - 2014-06-07 14:35 - 00001028 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoftPerfect Network Protocol Analyzer.lnk 2014-06-07 14:35 - 2014-06-07 14:35 - 00000000 ____D () C:\Program Files\SoftPerfect Network Protocol Analyzer 2014-06-07 14:13 - 2014-06-07 14:13 - 03005067 _____ () C:\Users\Richie\Downloads\netscan10.zip 2014-06-07 10:02 - 2014-06-07 10:03 - 00000000 ____D () C:\Users\Richie\.idlerc 2014-06-07 10:01 - 2014-06-11 20:46 - 00000000 ____D () C:\Python27 2014-06-05 16:43 - 2014-06-05 16:43 - 00029531 _____ () C:\Users\Richie\Downloads\Skin-Template_5111570.psd 2014-06-05 15:59 - 2014-06-05 15:59 - 00001820 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes.lnk 2014-06-05 15:58 - 2014-06-05 15:59 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-06-05 15:58 - 2014-06-05 15:59 - 00000000 ____D () C:\Program Files\iTunes 2014-06-05 15:58 - 2014-06-05 15:59 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-06-05 15:58 - 2014-06-05 15:58 - 00000000 ____D () C:\Program Files\iPod 2014-06-03 17:34 - 2014-06-03 17:34 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\�Adobe 2014-06-03 16:49 - 2014-05-30 01:07 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-06-03 16:49 - 2014-05-30 01:07 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-05-31 13:11 - 2014-05-31 13:11 - 00000000 ____D () C:\Users\Richie\Documents\Battlefield 3 2014-05-31 13:07 - 2014-05-31 13:07 - 00000000 ____D () C:\Users\Richie\AppData\Local\ESN 2014-05-31 13:07 - 2014-05-31 13:07 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins 2014-05-31 13:00 - 2014-05-31 13:00 - 00000000 ____D () C:\ProgramData\EA Core 2014-05-31 12:52 - 2014-05-31 12:52 - 00001215 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3.lnk 2014-05-31 12:52 - 2014-05-31 12:52 - 00001197 _____ () C:\Users\Public\Desktop\Battlefield 3.lnk 2014-05-30 18:59 - 2014-05-30 18:59 - 00000000 ____D () C:\Users\Richie\Documents\My Cheat Tables 2014-05-30 18:59 - 2014-05-30 18:59 - 00000000 ____D () C:\Program Files (x86)\Cheat Engine 6.3 2014-05-30 14:53 - 2014-05-30 14:53 - 00000000 ____D () C:\Program Files (x86)\Origin Games 2014-05-30 14:39 - 2014-06-03 21:11 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\Origin 2014-05-30 14:39 - 2014-05-31 13:00 - 00000000 ____D () C:\Users\Richie\AppData\Local\Origin 2014-05-30 14:34 - 2014-06-12 12:04 - 00000000 ____D () C:\ProgramData\Origin 2014-05-30 14:34 - 2014-06-11 15:25 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-05-30 14:34 - 2014-05-31 13:00 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-05-30 14:34 - 2014-05-30 14:34 - 00001020 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin.lnk 2014-05-30 14:34 - 2014-05-30 14:34 - 00001002 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-05-29 21:08 - 2014-05-29 21:08 - 00000000 ____D () C:\Users\Richie\AVM_Driver 2014-05-29 20:55 - 2014-05-29 20:55 - 00000617 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cygwin64 Terminal.lnk 2014-05-29 20:55 - 2014-05-29 20:55 - 00000605 _____ () C:\Users\Public\Desktop\Cygwin64 Terminal.lnk 2014-05-29 14:15 - 2014-05-29 14:15 - 00001220 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics DiskDefrag.lnk 2014-05-29 14:15 - 2014-05-29 14:15 - 00000000 ____D () C:\ProgramData\Auslogics 2014-05-29 14:15 - 2014-05-29 14:15 - 00000000 ____D () C:\Program Files (x86)\Auslogics 2014-05-29 13:44 - 2014-05-29 20:55 - 00000000 ____D () C:\cygwin64 2014-05-29 13:41 - 2014-05-29 13:55 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\CodeBlocks 2014-05-29 13:41 - 2014-05-29 13:41 - 00001184 _____ () C:\Users\Richie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks.lnk 2014-05-29 13:41 - 2014-05-29 13:41 - 00001132 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks.lnk 2014-05-29 13:41 - 2014-05-29 13:41 - 00000000 ____D () C:\Program Files (x86)\CodeBlocks 2014-05-29 13:32 - 2014-05-29 13:33 - 00120752 _____ () C:\Users\Richie\Downloads\pigmap-master.zip 2014-05-29 07:32 - 2014-05-29 07:32 - 00080384 _____ (Razer Inc) C:\Windows\system32\RazerCoinstaller.dll 2014-05-27 19:43 - 2014-05-27 19:43 - 48192544 _____ () C:\Users\Richie\Documents\BulletImpactSparksQTRLE.mov 2014-05-27 19:37 - 2014-05-27 19:37 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime Player.lnk 2014-05-27 19:37 - 2014-05-27 19:37 - 00000000 ____D () C:\Program Files (x86)\QuickTime 2014-05-27 17:36 - 2014-06-14 18:53 - 00000000 ____D () C:\Windows\SysWOW64\NV 2014-05-27 17:36 - 2014-06-14 18:53 - 00000000 ____D () C:\Windows\system32\NV 2014-05-27 17:28 - 2014-05-27 17:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2014-05-27 17:13 - 2014-05-20 04:44 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-05-27 17:13 - 2014-05-20 04:44 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 00492376 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 00416712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 00382240 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 00335704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-05-27 17:13 - 2014-05-20 04:44 - 00301512 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvkflt.sys 2014-05-27 17:13 - 2014-05-20 04:44 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-05-27 17:13 - 2014-05-20 04:44 - 00032544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2014-05-27 17:13 - 2014-05-20 04:44 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-05-27 17:11 - 2014-05-27 17:13 - 04965170 _____ () C:\Users\Richie\Downloads\FOOTAGECRATE-RifleShellHitsGround.mov 2014-05-26 18:14 - 2014-05-26 18:14 - 00000000 ____D () C:\Users\Public\Documents\Adobe 2014-05-26 14:43 - 2014-06-14 17:02 - 00003106 _____ () C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1277998247-1570779864-2512900168-1001 2014-05-26 14:43 - 2014-05-26 14:43 - 00000000 ___RD () C:\Users\Richie\OneDrive 2014-05-26 14:43 - 2014-05-26 14:43 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2014-05-25 19:20 - 2014-05-25 19:31 - 00704025 _____ () C:\Users\Richie\Downloads\Logo.psd 2014-05-25 18:49 - 2014-05-25 19:10 - 03095121 _____ () C:\Users\Richie\Downloads\Channel Art Template (Photoshop).psd 2014-05-25 18:45 - 2014-06-10 18:34 - 00000132 _____ () C:\Users\Richie\AppData\Roaming\Adobe PNG-Format CC - Voreinstellungen 2014-05-25 17:44 - 2014-05-25 20:42 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\Mp3tag 2014-05-25 17:44 - 2014-05-25 17:44 - 00001020 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag.lnk 2014-05-25 17:42 - 2014-05-25 17:44 - 00000000 ____D () C:\Program Files (x86)\Mp3tag 2014-05-25 17:10 - 2014-05-25 19:40 - 02297801 _____ () C:\Users\Richie\Downloads\Kanalbild.psd 2014-05-25 16:37 - 2014-05-25 16:38 - 00000000 ____D () C:\Users\Richie\Downloads\Overviewer 2014-05-25 15:35 - 2014-05-25 15:35 - 00001034 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Prelude CC.lnk 2014-05-25 14:50 - 2014-05-25 14:50 - 00990670 _____ () C:\Users\Richie\Downloads\Essentials.zip 2014-05-25 14:32 - 2014-05-25 14:32 - 00001061 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Audition CC.lnk 2014-05-25 14:32 - 2014-05-25 14:32 - 00000000 ____D () C:\Program Files (x86)\My Company Name 2014-05-25 14:32 - 2012-06-22 03:01 - 00056336 ____N (Corel Corporation) C:\Windows\system32\Drivers\PxHlpa64.sys 2014-05-25 14:32 - 2012-04-24 03:01 - 00011376 ____N (Corel Corporation) C:\Windows\system32\Drivers\cdralw2k.sys 2014-05-25 14:32 - 2012-04-24 03:01 - 00010864 ____N (Corel Corporation) C:\Windows\system32\Drivers\cdr4_xp.sys 2014-05-25 14:08 - 2014-05-25 14:08 - 00001091 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC (64 Bit).lnk 2014-05-25 13:50 - 2014-05-25 13:50 - 00000000 ____D () C:\Users\Richie\AppData\Local\NBTExplorer 2014-05-25 13:46 - 2014-05-25 13:46 - 00001010 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NBTExplorer.lnk 2014-05-25 13:46 - 2014-05-25 13:46 - 00000000 ____D () C:\Program Files (x86)\NBTExplorer 2014-05-24 20:28 - 2014-05-24 20:28 - 00002226 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 18.0.lnk 2014-05-24 19:36 - 2014-05-24 19:37 - 30864167 _____ () C:\Users\Richie\Downloads\overviewer-0.11.141-win64.zip 2014-05-24 19:18 - 2014-05-24 19:18 - 03700746 _____ () C:\Users\Richie\Downloads\fight_sound_effects.zip 2014-05-24 16:49 - 2014-06-05 16:19 - 00000000 ____D () C:\Users\Richie\Downloads\mcskin3d_1_4_2_255 2014-05-24 16:47 - 2014-05-24 16:47 - 02126809 _____ () C:\Users\Richie\Downloads\FOOTAGECRATE-HandgunMuzzleFlash5.mov 2014-05-24 13:39 - 2014-05-24 13:39 - 06003287 _____ () C:\Users\Richie\Documents\Blood-Slomo-Side.mov 2014-05-24 13:37 - 2014-05-24 13:37 - 13936111 _____ () C:\Users\Richie\Documents\Shockwave-BirdsEyeView.mov 2014-05-24 13:37 - 2014-05-24 13:37 - 02323458 _____ () C:\Users\Richie\Documents\Blood-Slomo-Front.mov 2014-05-24 13:34 - 2014-05-24 13:34 - 65631982 _____ () C:\Users\Richie\Documents\FuturisticSniperHud.mov 2014-05-24 13:34 - 2014-05-24 13:34 - 16421901 _____ () C:\Users\Richie\Documents\Shockwave-1.mov 2014-05-24 13:33 - 2014-05-24 13:33 - 25240423 _____ () C:\Users\Richie\Documents\SmallFire.mov 2014-05-24 13:31 - 2014-05-24 13:31 - 45291029 _____ () C:\Users\Richie\Documents\SlomoExplosion-2.mov 2014-05-24 13:31 - 2014-05-24 13:31 - 30397035 _____ () C:\Users\Richie\Documents\SlomoExplosion-1.mov 2014-05-24 13:28 - 2014-05-24 13:28 - 04588903 _____ () C:\Users\Richie\Documents\MachineGunMuzzleFlashSide-4.mov 2014-05-24 13:28 - 2014-05-24 13:28 - 01779301 _____ () C:\Users\Richie\Documents\MachineGunMuzzleFlashSide-3.mov 2014-05-24 13:26 - 2014-05-24 13:26 - 58671676 _____ () C:\Users\Richie\Documents\ExplosionAndFire.mov 2014-05-24 13:26 - 2014-05-24 13:26 - 06881567 _____ () C:\Users\Richie\Documents\ExplosiveCloudUpwards.mov 2014-05-24 13:25 - 2014-05-24 13:25 - 48192544 _____ () C:\Users\Richie\Documents\BulletImpactSparks.mov 2014-05-24 12:48 - 2014-05-24 12:48 - 31137007 _____ () C:\Users\Richie\Documents\SlomoExplosionBirdsEyeView.mov 2014-05-24 12:47 - 2014-05-24 12:47 - 105651267 _____ () C:\Users\Richie\Documents\SlomoExplosion-3.mov 2014-05-24 12:46 - 2014-05-24 12:46 - 12060146 _____ () C:\Users\Richie\Documents\FastGroundExplosion.mov 2014-05-24 12:44 - 2014-05-17 07:33 - 30993920 _____ () C:\Users\Richie\Documents\ffmpeg.exe 2014-05-24 10:14 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-05-24 10:14 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-05-23 16:30 - 2014-05-23 16:30 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\OpenOffice 2014-05-23 16:24 - 2014-05-23 16:24 - 00001150 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.lnk 2014-05-23 16:23 - 2014-05-23 16:23 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-05-23 15:24 - 2014-05-23 15:35 - 60689638 _____ () C:\Users\Richie\Downloads\lens_fx_free.zip 2014-05-23 15:24 - 2014-05-23 15:32 - 43181059 _____ () C:\Users\Richie\Downloads\lens_fx_fantasy_free.zip 2014-05-23 15:23 - 2014-05-23 15:49 - 164305306 _____ () C:\Users\Richie\Downloads\bonfire_part_2.zip 2014-05-23 15:23 - 2014-05-23 15:44 - 118994863 _____ () C:\Users\Richie\Downloads\rodypolis_film_looks.zip 2014-05-23 15:23 - 2014-05-23 15:23 - 00000000 ____D () C:\Users\Richie\Documents\Grafiken 2014-05-22 20:37 - 2014-05-22 20:43 - 27401479 _____ () C:\Users\Richie\Downloads\rodypolis_9mm_shell.zip 2014-05-22 20:37 - 2014-05-22 20:38 - 11386097 _____ () C:\Users\Richie\Downloads\rodypolis_frag_grenade.zip 2014-05-21 16:55 - 2014-06-11 19:03 - 14124541 _____ () C:\Users\Richie\Downloads\PerfKit_3.2.2.13351.R2.zip 2014-05-20 19:51 - 2014-05-20 19:51 - 00149176 _____ () C:\Users\Richie\Downloads\capslockgoodbye2.zip 2014-05-20 19:17 - 2014-05-20 19:18 - 00000000 ____D () C:\ProgramData\CodedColor Common 2014-05-20 19:16 - 2014-05-20 20:59 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\ps creator 2014-05-20 19:16 - 2014-05-20 19:17 - 00000000 ____D () C:\ProgramData\ps creator 2014-05-20 19:16 - 2014-05-20 19:16 - 00001194 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ps creator.lnk 2014-05-20 19:16 - 2014-05-20 19:16 - 00000986 ____N () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2014-05-20 19:16 - 2014-05-20 19:16 - 00000954 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk 2014-05-20 19:16 - 2014-05-20 19:16 - 00000000 ____D () C:\Users\Richie\AppData\Local\Overwolf 2014-05-20 19:16 - 2014-05-20 19:16 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-05-20 19:16 - 2014-05-20 19:16 - 00000000 ____D () C:\Program Files (x86)\ps creator 2014-05-20 16:55 - 2014-05-20 16:55 - 00000000 ____D () C:\Users\Richie\Documents\Razer 2014-05-20 16:55 - 2014-05-20 16:55 - 00000000 ____D () C:\Users\Richie\AppData\Local\Razer_Inc 2014-05-20 16:52 - 2014-05-20 16:52 - 00002152 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-19 20:55 - 2014-05-19 20:55 - 00591736 _____ () C:\Windows\Minidump\051914-28984-01.dmp 2014-05-19 19:09 - 2014-04-18 16:57 - 00032600 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll 2014-05-19 19:09 - 2014-04-18 16:44 - 01466856 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2014-05-19 19:09 - 2014-04-18 15:29 - 01200288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2014-05-19 19:09 - 2014-04-18 11:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll 2014-05-19 19:09 - 2014-04-18 11:32 - 13287936 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2014-05-19 19:09 - 2014-04-18 10:58 - 11792384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2014-05-19 19:09 - 2014-04-18 10:32 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-05-19 19:09 - 2014-04-18 10:21 - 01126912 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2014-05-19 19:09 - 2014-04-18 10:09 - 08652800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2014-05-19 19:09 - 2014-04-18 09:51 - 00836608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2014-05-19 19:09 - 2014-04-18 09:49 - 05833216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2014-05-19 19:09 - 2014-04-14 11:20 - 00324888 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll 2014-05-19 19:09 - 2014-04-14 10:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll 2014-05-19 19:09 - 2014-04-11 08:13 - 01200128 ____N (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2014-05-19 19:09 - 2014-04-11 06:51 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll 2014-05-19 19:09 - 2014-04-11 06:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll 2014-05-19 19:09 - 2014-04-11 05:30 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll 2014-05-19 19:09 - 2014-04-09 13:53 - 00337240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2014-05-19 19:09 - 2014-04-09 08:39 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2014-05-19 19:09 - 2014-04-09 07:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2014-05-19 19:09 - 2014-04-09 06:35 - 01411584 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-19 19:09 - 2014-04-09 05:33 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2014-05-19 19:09 - 2014-04-08 04:01 - 00589656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2014-05-19 19:09 - 2014-04-06 18:34 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-05-19 19:09 - 2014-04-06 18:34 - 00275800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-05-19 19:09 - 2014-04-06 18:32 - 00125496 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2014-05-19 19:09 - 2014-04-06 18:31 - 21268952 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-19 19:09 - 2014-04-06 18:30 - 00201920 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll 2014-05-19 19:09 - 2014-04-06 18:24 - 00360792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2014-05-19 19:09 - 2014-04-06 18:20 - 02140888 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2014-05-19 19:09 - 2014-04-06 18:20 - 01403856 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2014-05-19 19:09 - 2014-04-06 18:20 - 01379064 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2014-05-19 19:09 - 2014-04-06 18:20 - 00881616 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2014-05-19 19:09 - 2014-04-06 18:20 - 00765408 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2014-05-19 19:09 - 2014-04-06 18:20 - 00609448 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2014-05-19 19:09 - 2014-04-06 18:20 - 00491744 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2014-05-19 19:09 - 2014-04-06 18:20 - 00467496 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2014-05-19 19:09 - 2014-04-06 18:20 - 00463256 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2014-05-19 19:09 - 2014-04-06 18:20 - 00364640 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2014-05-19 19:09 - 2014-04-06 18:20 - 00244880 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2014-05-19 19:09 - 2014-04-06 18:20 - 00233912 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-05-19 19:09 - 2014-04-06 18:20 - 00028408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2014-05-19 19:09 - 2014-04-06 17:23 - 00098584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2014-05-19 19:09 - 2014-04-06 17:22 - 18755672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-05-19 19:09 - 2014-04-06 17:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll 2014-05-19 19:09 - 2014-04-06 17:16 - 02144984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2014-05-19 19:09 - 2014-04-06 17:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2014-05-19 19:09 - 2014-04-06 17:16 - 00707048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2014-05-19 19:09 - 2014-04-06 17:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2014-05-19 19:09 - 2014-04-06 17:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2014-05-19 19:09 - 2014-04-06 17:16 - 00406504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2014-05-19 19:09 - 2014-04-06 17:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2014-05-19 19:09 - 2014-04-06 17:16 - 00326024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2014-05-19 19:09 - 2014-04-06 17:16 - 00305768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2014-05-19 19:09 - 2014-04-06 16:10 - 04190720 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-05-19 19:09 - 2014-04-06 14:58 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2014-05-19 19:09 - 2014-04-06 14:51 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2014-05-19 19:09 - 2014-04-06 14:33 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe 2014-05-19 19:09 - 2014-04-06 14:24 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2014-05-19 19:09 - 2014-04-06 14:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2014-05-19 19:09 - 2014-04-06 13:55 - 16872448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2014-05-19 19:09 - 2014-04-06 13:54 - 12711424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2014-05-19 19:09 - 2014-04-06 13:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll 2014-05-19 19:09 - 2014-04-06 13:20 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2014-05-19 19:09 - 2014-04-06 13:01 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2014-05-19 19:09 - 2014-04-06 12:52 - 00955904 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2014-05-19 19:09 - 2014-04-06 12:51 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2014-05-19 19:09 - 2014-04-06 12:37 - 00800768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2014-05-19 19:09 - 2014-04-06 12:36 - 00888320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2014-05-19 19:09 - 2014-04-06 12:05 - 01222656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll 2014-05-19 19:09 - 2014-04-06 11:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll 2014-05-19 19:09 - 2014-04-03 10:12 - 02124840 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2014-05-19 19:09 - 2014-04-03 10:12 - 00307304 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-05-19 19:09 - 2014-04-03 10:12 - 00130144 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2014-05-19 19:09 - 2014-04-03 06:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-05-19 19:09 - 2014-04-03 06:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll 2014-05-19 19:09 - 2014-04-03 05:53 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2014-05-19 19:09 - 2014-04-03 04:53 - 04269056 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2014-05-19 19:09 - 2014-04-03 04:53 - 00677376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2014-05-19 19:09 - 2014-04-03 04:51 - 01584128 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll 2014-05-19 19:09 - 2014-04-03 04:23 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-05-19 19:09 - 2014-04-03 04:23 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-05-19 19:09 - 2014-04-03 04:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll 2014-05-19 19:09 - 2014-04-03 04:22 - 03359744 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-05-19 19:09 - 2014-04-03 04:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll 2014-05-19 19:09 - 2014-04-01 08:23 - 00384856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2014-05-19 19:09 - 2014-03-31 07:42 - 07425368 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-19 19:09 - 2014-03-31 07:35 - 02518360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-05-19 19:09 - 2014-03-31 07:35 - 00428888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-05-19 19:09 - 2014-03-31 02:41 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll 2014-05-19 19:09 - 2014-03-31 02:01 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll 2014-05-19 19:09 - 2014-03-31 01:43 - 00761856 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll 2014-05-19 19:09 - 2014-03-31 00:54 - 01308160 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2014-05-19 19:09 - 2014-03-31 00:49 - 01287168 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2014-05-19 19:09 - 2014-03-31 00:35 - 01029120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2014-05-19 19:09 - 2014-03-31 00:11 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2014-05-19 19:09 - 2014-03-30 23:47 - 00872448 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2014-05-19 19:09 - 2014-03-28 17:58 - 00407016 _____ (Microsoft Corporation) C:\Windows\system32\services.exe 2014-05-19 19:09 - 2014-03-27 08:16 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2014-05-19 19:09 - 2014-03-27 07:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll 2014-05-19 19:09 - 2014-03-27 06:59 - 00426496 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2014-05-19 19:09 - 2014-03-27 06:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll 2014-05-19 19:09 - 2014-03-27 06:19 - 00313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll 2014-05-19 19:09 - 2014-03-27 05:46 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2014-05-19 19:09 - 2014-03-27 05:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll 2014-05-19 19:09 - 2014-03-27 05:10 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2014-05-19 19:09 - 2014-03-25 00:58 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-05-19 19:09 - 2014-03-20 05:48 - 00263424 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe 2014-05-19 19:09 - 2014-03-20 02:44 - 06645248 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-05-19 19:09 - 2014-03-20 01:33 - 05774848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-05-19 19:09 - 2014-03-19 10:15 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll 2014-05-19 19:09 - 2014-03-19 10:07 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2014-05-19 19:09 - 2014-03-19 09:24 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-05-19 19:09 - 2014-03-19 09:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll 2014-05-19 19:09 - 2014-03-19 08:36 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2014-05-19 19:09 - 2014-03-19 07:56 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2014-05-19 19:09 - 2014-03-19 07:45 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2014-05-19 19:09 - 2014-03-19 07:19 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2014-05-19 19:09 - 2014-03-19 07:07 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2014-05-19 19:09 - 2014-03-19 07:02 - 01527296 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2014-05-19 19:09 - 2014-03-19 07:00 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2014-05-19 19:09 - 2014-03-19 06:51 - 00300544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2014-05-19 19:09 - 2014-03-19 06:31 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll 2014-05-19 19:09 - 2014-03-19 06:18 - 02688000 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll 2014-05-19 19:09 - 2014-03-18 10:19 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2014-05-19 19:09 - 2014-03-18 07:00 - 07173120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2014-05-19 19:09 - 2014-03-18 06:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2014-05-19 19:09 - 2014-03-17 07:09 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-05-19 19:09 - 2014-03-17 06:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-05-19 19:09 - 2014-03-17 05:01 - 00486912 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2014-05-19 19:09 - 2014-03-17 04:47 - 01025024 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-05-19 19:09 - 2014-03-17 04:45 - 00370176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2014-05-19 19:09 - 2014-03-14 08:26 - 00491520 ____N (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll 2014-05-19 19:09 - 2014-03-14 08:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll 2014-05-19 19:09 - 2014-03-06 14:42 - 00310616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2014-05-19 13:59 - 2014-05-19 13:59 - 00001048 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCSkin3D.lnk 2014-05-19 13:59 - 2014-05-19 13:59 - 00000000 ____D () C:\Program Files (x86)\MCSkin3D 2014-05-18 20:40 - 2014-05-18 20:47 - 819726028 _____ () C:\Users\Richie\Downloads\Caillou gesund werden mit Caillou.mp4 2014-05-18 19:20 - 2014-05-18 19:20 - 00000000 ____D () C:\Program Files (x86)\AviSynth 2.5 2014-05-18 19:20 - 2009-09-27 09:39 - 00415744 ___SH (The Public) C:\Windows\SysWOW64\avisynth.dll 2014-05-18 19:20 - 2005-07-14 12:31 - 00032256 ___SH () C:\Windows\SysWOW64\AVSredirect.dll 2014-05-18 19:20 - 2004-02-22 10:11 - 00764416 ___SH (Abysmal Software) C:\Windows\SysWOW64\devil.dll 2014-05-18 19:20 - 2004-01-25 00:00 - 00070656 ___SH (www.helixcommunity.org) C:\Windows\SysWOW64\yv12vfw.dll 2014-05-18 19:20 - 2004-01-25 00:00 - 00070656 ___SH (www.helixcommunity.org) C:\Windows\SysWOW64\i420vfw.dll 2014-05-18 11:24 - 2014-05-18 11:24 - 00000000 ____D () C:\Users\Richie\Documents\eRightSoft 2014-05-18 11:23 - 2014-05-18 11:23 - 00001153 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPER ©.lnk 2014-05-18 11:23 - 2014-05-18 11:23 - 00000000 ____D () C:\Program Files (x86)\eRightSoft 2014-05-18 11:23 - 2014-02-13 14:21 - 00000493 __RSH () C:\Windows\SysWOW64\LAVFilters.Dependencies.manifest 2014-05-18 11:23 - 2014-02-13 14:20 - 03057808 __RSH (FFmpeg Project) C:\Windows\SysWOW64\avcodec-lav-55.dll 2014-05-18 11:23 - 2014-02-13 14:20 - 00539280 __RSH (FFmpeg Project) C:\Windows\SysWOW64\avformat-lav-55.dll 2014-05-18 11:23 - 2014-02-13 14:20 - 00313520 __RSH (1f0.de - Hendrik Leppkes) C:\Windows\SysWOW64\HLvideo.dll 2014-05-18 11:23 - 2014-02-13 14:20 - 00202384 __RSH (1f0.de - Hendrik Leppkes) C:\Windows\SysWOW64\HLsplit.dll 2014-05-18 11:23 - 2014-02-13 14:20 - 00180368 __RSH (FFmpeg Project) C:\Windows\SysWOW64\avutil-lav-52.dll 2014-05-18 11:23 - 2014-02-13 14:20 - 00152720 __RSH (Intel Corp.) C:\Windows\SysWOW64\IntelQuickSyncDecoder.dll 2014-05-18 11:23 - 2014-02-13 14:20 - 00122512 __RSH (1f0.de - Hendrik Leppkes) C:\Windows\SysWOW64\HLaudio.dll 2014-05-18 11:23 - 2014-02-13 14:20 - 00110224 __RSH () C:\Windows\SysWOW64\libbluray.dll 2014-05-18 11:23 - 2014-02-13 14:20 - 00109200 __RSH (FFmpeg Project) C:\Windows\SysWOW64\swscale-lav-2.dll 2014-05-18 11:23 - 2014-02-13 14:20 - 00098960 __RSH (FFmpeg Project) C:\Windows\SysWOW64\avfilter-lav-3.dll 2014-05-18 11:23 - 2014-02-13 14:20 - 00059536 __RSH (FFmpeg Project) C:\Windows\SysWOW64\avresample-lav-1.dll 2014-05-18 11:23 - 2012-10-05 19:54 - 00188416 __RSH () C:\Windows\SysWOW64\winDCE32.dll 2014-05-18 11:23 - 2012-07-11 23:00 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Olepau32.ax 2014-05-18 11:23 - 2011-02-11 10:26 - 00112128 __RSH () C:\Windows\SysWOW64\OptimFROG.dll 2014-05-18 11:23 - 2009-08-10 23:00 - 00352768 __RSH () C:\Windows\SysWOW64\ac3DX.ax 2014-05-18 11:23 - 2005-02-22 17:55 - 00081920 __RSH () C:\Windows\SysWOW64\aac_parser.ax 2014-05-18 11:23 - 2004-10-10 09:50 - 00278528 _____ (Real Networks, Inc) C:\Windows\SysWOW64\pncrt.dll 2014-05-18 11:23 - 2004-07-02 16:33 - 00327749 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\drvc.dll 2014-05-18 11:23 - 2004-04-27 16:03 - 00017408 __RSH (RadLight) C:\Windows\SysWOW64\RLOFRDec.ax 2014-05-18 11:23 - 2003-10-17 12:44 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-05-18 11:23 - 2003-10-17 12:44 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-05-18 10:38 - 2014-05-18 10:38 - 02734592 _____ (Python Software Foundation) C:\Windows\SysWOW64\python34.dll 2014-05-18 10:37 - 2014-05-18 10:37 - 00102912 _____ (Python Software Foundation) C:\Windows\pyw.exe 2014-05-18 10:37 - 2014-05-18 10:37 - 00102400 _____ (Python Software Foundation) C:\Windows\py.exe 2014-05-17 20:39 - 2014-05-17 20:40 - 16246835 _____ () C:\Users\Richie\Downloads\The dropper BY BIGRE.zip 2014-05-17 15:04 - 2014-05-31 23:10 - 00000600 _____ () C:\Users\Richie\AppData\Roaming\winscp.rnd 2014-05-17 14:11 - 2014-05-30 19:29 - 00000000 ____D () C:\Users\Richie\Documents\Special Effects 2014-05-17 14:07 - 2014-05-17 14:07 - 00001098 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk 2014-05-17 14:07 - 2014-05-17 14:07 - 00000000 ____D () C:\Program Files (x86)\WinSCP 2014-05-16 21:33 - 2014-05-16 21:33 - 02420216 _____ () C:\Users\Richie\Downloads\OrbBasic_2_CirclesAndIf.zip 2014-05-16 21:33 - 2014-05-16 21:33 - 02394058 _____ () C:\Users\Richie\Downloads\OrbBasic_1_GotoAndVariables.zip 2014-05-15 20:48 - 2014-05-15 20:48 - 53116790 _____ () C:\Users\Richie\Downloads\zu viel computer.mp4 2014-05-15 20:04 - 2014-05-15 20:04 - 00001225 ____N () C:\Users\Public\Desktop\Razer Comms.lnk 2014-05-15 20:03 - 2014-04-29 23:41 - 00037184 _____ (Razer, Inc.) C:\Windows\system32\Drivers\rzpmgrk.sys 2014-05-15 20:03 - 2014-04-25 20:45 - 00129856 _____ (Razer, Inc.) C:\Windows\system32\Drivers\rzpnk.sys ==================== One Month Modified Files and Folders ======= 2014-06-14 19:04 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\BBI 2014-06-14 19:02 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru 2014-06-14 18:53 - 2014-05-27 17:36 - 00000000 ____D () C:\Windows\SysWOW64\NV 2014-06-14 18:53 - 2014-05-27 17:36 - 00000000 ____D () C:\Windows\system32\NV 2014-06-14 18:53 - 2014-03-27 21:08 - 00001136 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-14 18:53 - 2014-03-27 19:22 - 00339670 _____ () C:\Windows\PFRO.log 2014-06-14 18:53 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2014-06-14 17:56 - 2014-06-14 17:56 - 00028672 _____ () C:\Users\Richie\Documents\EasyBCD Backup (2014-06-14).bcd 2014-06-14 17:56 - 2014-06-14 17:56 - 00003950 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{459B261B-86D7-4892-A0C6-57B4626F3079} 2014-06-14 17:56 - 2014-03-27 19:26 - 00000000 ____D () C:\Users\Richie\AppData\Local\Temp 2014-06-14 17:55 - 2014-06-14 17:55 - 00001240 _____ () C:\Users\Public\Desktop\EasyBCD 2.2.lnk 2014-06-14 17:55 - 2014-06-14 17:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NeoSmart Technologies 2014-06-14 17:55 - 2014-06-14 17:55 - 00000000 ____D () C:\Program Files (x86)\NeoSmart Technologies 2014-06-14 17:55 - 2014-06-14 17:55 - 00000000 ____D () C:\FRST 2014-06-14 17:55 - 2014-03-27 19:26 - 01144901 _____ () C:\Windows\WindowsUpdate.log 2014-06-14 17:54 - 2014-05-01 21:00 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-14 17:43 - 2014-04-07 19:52 - 00000000 ____D () C:\Users\Richie\AppData\Local\Adobe 2014-06-14 17:40 - 2014-03-27 20:51 - 00000000 __RDO () C:\Users\Richie\SkyDrive 2014-06-14 17:39 - 2014-03-27 21:08 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-14 17:38 - 2014-06-14 17:38 - 00000000 ____D () C:\Windows\LastGood 2014-06-14 17:38 - 2013-08-22 16:46 - 00025768 _____ () C:\Windows\setupact.log 2014-06-14 17:38 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-14 17:02 - 2014-05-26 14:43 - 00003106 _____ () C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1277998247-1570779864-2512900168-1001 2014-06-12 22:16 - 2014-04-16 20:01 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\KeePass 2014-06-12 14:58 - 2014-06-12 12:48 - 00000000 ____D () C:\Users\Richie\AppData\Local\CrashDumps 2014-06-12 12:57 - 2014-03-27 19:37 - 00003600 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1277998247-1570779864-2512900168-1001 2014-06-12 12:49 - 2014-06-12 12:29 - 00070209 _____ () C:\Users\Richie\AppData\Local\HDGraph.log 2014-06-12 12:49 - 2014-06-11 18:12 - 00003576 _____ () C:\Windows\System32\Tasks\Bitdefender Auto-Scan 2014-06-12 12:49 - 2014-06-10 20:27 - 00016529 _____ () C:\Users\Richie\Downloads\brutus-aet2.zip 2014-06-12 12:49 - 2014-06-10 15:41 - 00553515 _____ () C:\Users\Richie\Downloads\loic.v1.1.1.25.zip 2014-06-12 12:45 - 2014-03-27 21:14 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-06-12 12:35 - 2014-03-27 19:26 - 00000000 ____D () C:\Users\Richie 2014-06-12 12:29 - 2014-06-12 12:29 - 00000000 ____D () C:\Users\Richie\AppData\Local\HDGraph.com 2014-06-12 12:27 - 2014-05-01 19:39 - 00001647 _____ () C:\Users\Richie\AppData\Roaming\ZeroBraneStudio.ini 2014-06-12 12:24 - 2014-06-12 12:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 3.4 2014-06-12 12:24 - 2014-06-12 12:23 - 00000000 ____D () C:\Python34 2014-06-12 12:04 - 2014-05-30 14:34 - 00000000 ____D () C:\ProgramData\Origin 2014-06-12 11:59 - 2014-04-12 21:17 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-06-12 11:59 - 2014-03-31 19:39 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-06-12 11:46 - 2014-03-28 17:20 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\.minecraft 2014-06-11 22:06 - 2014-04-24 13:14 - 00001150 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1277998247-1570779864-2512900168-1001UA.job 2014-06-11 20:46 - 2014-06-07 10:01 - 00000000 ____D () C:\Python27 2014-06-11 20:24 - 2014-03-28 22:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013 2014-06-11 20:24 - 2013-08-22 17:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-06-11 19:57 - 2014-06-11 19:57 - 00301144 _____ () C:\Windows\Minidump\061114-14875-01.dmp 2014-06-11 19:57 - 2014-03-27 20:27 - 659058654 _____ () C:\Windows\MEMORY.DMP 2014-06-11 19:57 - 2014-03-27 20:27 - 00000000 ____D () C:\Windows\Minidump 2014-06-11 19:21 - 2013-08-22 17:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-06-11 19:18 - 2014-05-14 15:34 - 00111616 _____ () C:\Users\Richie\AppData\Roaming\RZR_001069be436aa458e853c2ebaee2.db 2014-06-11 19:03 - 2014-05-21 16:55 - 14124541 _____ () C:\Users\Richie\Downloads\PerfKit_3.2.2.13351.R2.zip 2014-06-11 15:29 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-06-11 15:25 - 2014-05-30 14:34 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-06-11 15:14 - 2014-03-31 19:39 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-06-11 14:24 - 2014-04-24 13:14 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1277998247-1570779864-2512900168-1001Core.job 2014-06-11 14:12 - 2014-03-27 19:30 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-06-11 14:12 - 2013-08-23 01:24 - 00766620 _____ () C:\Windows\system32\perfh007.dat 2014-06-11 14:12 - 2013-08-23 01:24 - 00159902 _____ () C:\Windows\system32\perfc007.dat 2014-06-11 13:36 - 2014-06-11 13:36 - 01010720 ___RS (Microsoft Corporation) C:\Windows\SysWOW64\MSCHRT20.OCX 2014-06-11 13:36 - 2014-06-11 13:36 - 00224016 ___RS (Microsoft Corporation) C:\Windows\SysWOW64\TABCTL32.OCX 2014-06-11 13:36 - 2014-06-11 13:36 - 00152848 ___RS (Microsoft Corporation) C:\Windows\SysWOW64\COMDLG32.OCX 2014-06-11 13:36 - 2014-06-11 13:36 - 00001241 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TMAC v6.lnk 2014-06-11 13:36 - 2014-06-11 13:36 - 00000000 ____D () C:\Program Files (x86)\Technitium 2014-06-11 13:32 - 2014-06-11 13:32 - 00001956 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SMAC 2.0.lnk 2014-06-10 18:34 - 2014-05-25 18:45 - 00000132 _____ () C:\Users\Richie\AppData\Roaming\Adobe PNG-Format CC - Voreinstellungen 2014-06-10 13:07 - 2014-03-28 23:09 - 00000000 ____D () C:\Users\Richie\Documents\Visual Studio 2013 2014-06-09 22:31 - 2014-06-09 22:31 - 00112197 _____ () C:\Users\Richie\Downloads\Unbenannt.pdn 2014-06-09 16:24 - 2014-04-30 16:19 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\Mozilla 2014-06-09 14:57 - 2014-06-09 14:57 - 01506036 _____ () C:\Users\Richie\Downloads\Unbenannt-3.psd 2014-06-09 14:57 - 2014-06-09 14:57 - 00472474 _____ () C:\Users\Richie\Downloads\Unbenannt-2.psd 2014-06-09 14:57 - 2014-06-09 14:57 - 00417536 _____ () C:\Users\Richie\Downloads\Unbenannt-1.psd 2014-06-09 14:57 - 2014-06-09 14:57 - 00313629 _____ () C:\Users\Richie\Downloads\Unbenannt-4.psd 2014-06-09 13:14 - 2014-04-12 14:06 - 00000000 ____D () C:\Users\Richie\AppData\Local\Paint.NET 2014-06-08 09:23 - 2014-03-27 19:26 - 00000000 ____D () C:\Users\Richie\AppData\Local\Packages 2014-06-07 14:35 - 2014-06-07 14:35 - 00065600 _____ (microOLAP Technologies LTD) C:\Windows\system32\Drivers\pssdklbf.sys 2014-06-07 14:35 - 2014-06-07 14:35 - 00053312 _____ (microOLAP Technologies LTD) C:\Windows\system32\Drivers\pssdk42.sys 2014-06-07 14:35 - 2014-06-07 14:35 - 00001028 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoftPerfect Network Protocol Analyzer.lnk 2014-06-07 14:35 - 2014-06-07 14:35 - 00000000 ____D () C:\Program Files\SoftPerfect Network Protocol Analyzer 2014-06-07 14:13 - 2014-06-07 14:13 - 03005067 _____ () C:\Users\Richie\Downloads\netscan10.zip 2014-06-07 10:03 - 2014-06-07 10:02 - 00000000 ____D () C:\Users\Richie\.idlerc 2014-06-05 16:43 - 2014-06-05 16:43 - 00029531 _____ () C:\Users\Richie\Downloads\Skin-Template_5111570.psd 2014-06-05 16:19 - 2014-05-24 16:49 - 00000000 ____D () C:\Users\Richie\Downloads\mcskin3d_1_4_2_255 2014-06-05 15:59 - 2014-06-05 15:59 - 00001820 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes.lnk 2014-06-05 15:59 - 2014-06-05 15:58 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-06-05 15:59 - 2014-06-05 15:58 - 00000000 ____D () C:\Program Files\iTunes 2014-06-05 15:59 - 2014-06-05 15:58 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-06-05 15:58 - 2014-06-05 15:58 - 00000000 ____D () C:\Program Files\iPod 2014-06-04 16:54 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\NDF 2014-06-03 21:11 - 2014-05-30 14:39 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\Origin 2014-06-03 20:50 - 2014-04-03 17:31 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\Audacity 2014-06-03 20:42 - 2014-04-21 20:05 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-06-03 17:34 - 2014-06-03 17:34 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\�Adobe 2014-06-03 16:49 - 2014-03-27 19:58 - 00001392 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GeForce Experience.lnk 2014-06-03 16:49 - 2014-03-27 19:54 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-05-31 23:10 - 2014-05-17 15:04 - 00000600 _____ () C:\Users\Richie\AppData\Roaming\winscp.rnd 2014-05-31 14:12 - 2014-03-31 19:39 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-05-31 13:11 - 2014-05-31 13:11 - 00000000 ____D () C:\Users\Richie\Documents\Battlefield 3 2014-05-31 13:11 - 2014-04-12 21:17 - 00000000 ____D () C:\Users\Richie\AppData\Local\PunkBuster 2014-05-31 13:07 - 2014-05-31 13:07 - 00000000 ____D () C:\Users\Richie\AppData\Local\ESN 2014-05-31 13:07 - 2014-05-31 13:07 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins 2014-05-31 13:00 - 2014-05-31 13:00 - 00000000 ____D () C:\ProgramData\EA Core 2014-05-31 13:00 - 2014-05-30 14:39 - 00000000 ____D () C:\Users\Richie\AppData\Local\Origin 2014-05-31 13:00 - 2014-05-30 14:34 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-05-31 12:52 - 2014-05-31 12:52 - 00001215 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3.lnk 2014-05-31 12:52 - 2014-05-31 12:52 - 00001197 _____ () C:\Users\Public\Desktop\Battlefield 3.lnk 2014-05-31 12:36 - 2014-03-28 17:47 - 00141528 _____ () C:\Windows\DirectX.log 2014-05-30 19:29 - 2014-05-17 14:11 - 00000000 ____D () C:\Users\Richie\Documents\Special Effects 2014-05-30 18:59 - 2014-05-30 18:59 - 00000000 ____D () C:\Users\Richie\Documents\My Cheat Tables 2014-05-30 18:59 - 2014-05-30 18:59 - 00000000 ____D () C:\Program Files (x86)\Cheat Engine 6.3 2014-05-30 17:30 - 2014-04-14 16:39 - 00000000 ____D () C:\Users\Richie\AppData\Local\Warframe 2014-05-30 14:53 - 2014-05-30 14:53 - 00000000 ____D () C:\Program Files (x86)\Origin Games 2014-05-30 14:34 - 2014-05-30 14:34 - 00001020 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin.lnk 2014-05-30 14:34 - 2014-05-30 14:34 - 00001002 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-05-30 01:07 - 2014-06-03 16:49 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-05-30 01:07 - 2014-06-03 16:49 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-05-30 01:07 - 2014-03-28 14:14 - 01279480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-05-30 01:07 - 2014-03-28 14:14 - 01122312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-05-29 21:08 - 2014-05-29 21:08 - 00000000 ____D () C:\Users\Richie\AVM_Driver 2014-05-29 20:55 - 2014-05-29 20:55 - 00000617 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cygwin64 Terminal.lnk 2014-05-29 20:55 - 2014-05-29 20:55 - 00000605 _____ () C:\Users\Public\Desktop\Cygwin64 Terminal.lnk 2014-05-29 20:55 - 2014-05-29 13:44 - 00000000 ____D () C:\cygwin64 2014-05-29 14:15 - 2014-05-29 14:15 - 00001220 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics DiskDefrag.lnk 2014-05-29 14:15 - 2014-05-29 14:15 - 00000000 ____D () C:\ProgramData\Auslogics 2014-05-29 14:15 - 2014-05-29 14:15 - 00000000 ____D () C:\Program Files (x86)\Auslogics 2014-05-29 13:55 - 2014-05-29 13:41 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\CodeBlocks 2014-05-29 13:41 - 2014-05-29 13:41 - 00001184 _____ () C:\Users\Richie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks.lnk 2014-05-29 13:41 - 2014-05-29 13:41 - 00001132 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks.lnk 2014-05-29 13:41 - 2014-05-29 13:41 - 00000000 ____D () C:\Program Files (x86)\CodeBlocks 2014-05-29 13:33 - 2014-05-29 13:32 - 00120752 _____ () C:\Users\Richie\Downloads\pigmap-master.zip 2014-05-29 07:32 - 2014-05-29 07:32 - 00080384 _____ (Razer Inc) C:\Windows\system32\RazerCoinstaller.dll 2014-05-28 20:54 - 2014-04-11 18:42 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\vlc 2014-05-27 19:43 - 2014-05-27 19:43 - 48192544 _____ () C:\Users\Richie\Documents\BulletImpactSparksQTRLE.mov 2014-05-27 19:37 - 2014-05-27 19:37 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime Player.lnk 2014-05-27 19:37 - 2014-05-27 19:37 - 00000000 ____D () C:\Program Files (x86)\QuickTime 2014-05-27 18:49 - 2014-03-28 14:15 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-05-27 17:42 - 2014-03-28 14:15 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\Apple Computer 2014-05-27 17:35 - 2014-03-27 19:57 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-05-27 17:28 - 2014-05-27 17:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2014-05-27 17:28 - 2014-03-28 14:15 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-05-27 17:13 - 2014-05-27 17:11 - 04965170 _____ () C:\Users\Richie\Downloads\FOOTAGECRATE-RifleShellHitsGround.mov 2014-05-27 16:08 - 2013-08-22 16:44 - 05206272 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-26 18:14 - 2014-05-26 18:14 - 00000000 ____D () C:\Users\Public\Documents\Adobe 2014-05-26 18:14 - 2014-04-13 22:02 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe 2014-05-26 18:13 - 2014-04-13 22:03 - 00000000 ____D () C:\Users\Richie\Documents\Adobe 2014-05-26 16:30 - 2014-04-27 14:01 - 00000000 ____D () C:\Users\Richie\.android 2014-05-26 14:43 - 2014-05-26 14:43 - 00000000 ___RD () C:\Users\Richie\OneDrive 2014-05-26 14:43 - 2014-05-26 14:43 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2014-05-25 20:42 - 2014-05-25 17:44 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\Mp3tag 2014-05-25 19:40 - 2014-05-25 17:10 - 02297801 _____ () C:\Users\Richie\Downloads\Kanalbild.psd 2014-05-25 19:31 - 2014-05-25 19:20 - 00704025 _____ () C:\Users\Richie\Downloads\Logo.psd 2014-05-25 19:10 - 2014-05-25 18:49 - 03095121 _____ () C:\Users\Richie\Downloads\Channel Art Template (Photoshop).psd 2014-05-25 17:44 - 2014-05-25 17:44 - 00001020 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag.lnk 2014-05-25 17:44 - 2014-05-25 17:42 - 00000000 ____D () C:\Program Files (x86)\Mp3tag 2014-05-25 16:49 - 2014-03-27 19:26 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\Adobe 2014-05-25 16:38 - 2014-05-25 16:37 - 00000000 ____D () C:\Users\Richie\Downloads\Overviewer 2014-05-25 15:35 - 2014-05-25 15:35 - 00001034 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Prelude CC.lnk 2014-05-25 15:34 - 2014-04-07 20:47 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-05-25 15:34 - 2014-04-07 20:47 - 00000000 ____D () C:\Program Files\Adobe 2014-05-25 14:50 - 2014-05-25 14:50 - 00990670 _____ () C:\Users\Richie\Downloads\Essentials.zip 2014-05-25 14:32 - 2014-05-25 14:32 - 00001061 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Audition CC.lnk 2014-05-25 14:32 - 2014-05-25 14:32 - 00000000 ____D () C:\Program Files (x86)\My Company Name 2014-05-25 14:08 - 2014-05-25 14:08 - 00001091 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC (64 Bit).lnk 2014-05-25 14:04 - 2014-04-07 19:58 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-05-25 13:50 - 2014-05-25 13:50 - 00000000 ____D () C:\Users\Richie\AppData\Local\NBTExplorer 2014-05-25 13:46 - 2014-05-25 13:46 - 00001010 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NBTExplorer.lnk 2014-05-25 13:46 - 2014-05-25 13:46 - 00000000 ____D () C:\Program Files (x86)\NBTExplorer 2014-05-25 11:32 - 2014-05-02 19:51 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\FileZilla 2014-05-24 20:28 - 2014-05-24 20:28 - 00002226 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 18.0.lnk 2014-05-24 19:37 - 2014-05-24 19:36 - 30864167 _____ () C:\Users\Richie\Downloads\overviewer-0.11.141-win64.zip 2014-05-24 19:18 - 2014-05-24 19:18 - 03700746 _____ () C:\Users\Richie\Downloads\fight_sound_effects.zip 2014-05-24 16:47 - 2014-05-24 16:47 - 02126809 _____ () C:\Users\Richie\Downloads\FOOTAGECRATE-HandgunMuzzleFlash5.mov 2014-05-24 15:19 - 2014-03-27 20:26 - 00000000 ____D () C:\Users\Richie\Documents\Bluetooth Folder 2014-05-24 13:39 - 2014-05-24 13:39 - 06003287 _____ () C:\Users\Richie\Documents\Blood-Slomo-Side.mov 2014-05-24 13:37 - 2014-05-24 13:37 - 13936111 _____ () C:\Users\Richie\Documents\Shockwave-BirdsEyeView.mov 2014-05-24 13:37 - 2014-05-24 13:37 - 02323458 _____ () C:\Users\Richie\Documents\Blood-Slomo-Front.mov 2014-05-24 13:34 - 2014-05-24 13:34 - 65631982 _____ () C:\Users\Richie\Documents\FuturisticSniperHud.mov 2014-05-24 13:34 - 2014-05-24 13:34 - 16421901 _____ () C:\Users\Richie\Documents\Shockwave-1.mov 2014-05-24 13:33 - 2014-05-24 13:33 - 25240423 _____ () C:\Users\Richie\Documents\SmallFire.mov 2014-05-24 13:31 - 2014-05-24 13:31 - 45291029 _____ () C:\Users\Richie\Documents\SlomoExplosion-2.mov 2014-05-24 13:31 - 2014-05-24 13:31 - 30397035 _____ () C:\Users\Richie\Documents\SlomoExplosion-1.mov 2014-05-24 13:28 - 2014-05-24 13:28 - 04588903 _____ () C:\Users\Richie\Documents\MachineGunMuzzleFlashSide-4.mov 2014-05-24 13:28 - 2014-05-24 13:28 - 01779301 _____ () C:\Users\Richie\Documents\MachineGunMuzzleFlashSide-3.mov 2014-05-24 13:26 - 2014-05-24 13:26 - 58671676 _____ () C:\Users\Richie\Documents\ExplosionAndFire.mov 2014-05-24 13:26 - 2014-05-24 13:26 - 06881567 _____ () C:\Users\Richie\Documents\ExplosiveCloudUpwards.mov 2014-05-24 13:25 - 2014-05-24 13:25 - 48192544 _____ () C:\Users\Richie\Documents\BulletImpactSparks.mov 2014-05-24 12:48 - 2014-05-24 12:48 - 31137007 _____ () C:\Users\Richie\Documents\SlomoExplosionBirdsEyeView.mov 2014-05-24 12:47 - 2014-05-24 12:47 - 105651267 _____ () C:\Users\Richie\Documents\SlomoExplosion-3.mov 2014-05-24 12:46 - 2014-05-24 12:46 - 12060146 _____ () C:\Users\Richie\Documents\FastGroundExplosion.mov 2014-05-23 20:27 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\rescache 2014-05-23 16:30 - 2014-05-23 16:30 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\OpenOffice 2014-05-23 16:24 - 2014-05-23 16:24 - 00001150 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.lnk 2014-05-23 16:23 - 2014-05-23 16:23 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-05-23 15:49 - 2014-05-23 15:23 - 164305306 _____ () C:\Users\Richie\Downloads\bonfire_part_2.zip 2014-05-23 15:44 - 2014-05-23 15:23 - 118994863 _____ () C:\Users\Richie\Downloads\rodypolis_film_looks.zip 2014-05-23 15:35 - 2014-05-23 15:24 - 60689638 _____ () C:\Users\Richie\Downloads\lens_fx_free.zip 2014-05-23 15:32 - 2014-05-23 15:24 - 43181059 _____ () C:\Users\Richie\Downloads\lens_fx_fantasy_free.zip 2014-05-23 15:23 - 2014-05-23 15:23 - 00000000 ____D () C:\Users\Richie\Documents\Grafiken 2014-05-22 20:43 - 2014-05-22 20:37 - 27401479 _____ () C:\Users\Richie\Downloads\rodypolis_9mm_shell.zip 2014-05-22 20:38 - 2014-05-22 20:37 - 11386097 _____ () C:\Users\Richie\Downloads\rodypolis_frag_grenade.zip 2014-05-20 20:59 - 2014-05-20 19:16 - 00000000 ____D () C:\Users\Richie\AppData\Roaming\ps creator 2014-05-20 19:51 - 2014-05-20 19:51 - 00149176 _____ () C:\Users\Richie\Downloads\capslockgoodbye2.zip 2014-05-20 19:18 - 2014-05-20 19:17 - 00000000 ____D () C:\ProgramData\CodedColor Common 2014-05-20 19:17 - 2014-05-20 19:16 - 00000000 ____D () C:\ProgramData\ps creator 2014-05-20 19:16 - 2014-05-20 19:16 - 00001194 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ps creator.lnk 2014-05-20 19:16 - 2014-05-20 19:16 - 00000986 ____N () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2014-05-20 19:16 - 2014-05-20 19:16 - 00000954 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk 2014-05-20 19:16 - 2014-05-20 19:16 - 00000000 ____D () C:\Users\Richie\AppData\Local\Overwolf 2014-05-20 19:16 - 2014-05-20 19:16 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-05-20 19:16 - 2014-05-20 19:16 - 00000000 ____D () C:\Program Files (x86)\ps creator 2014-05-20 16:55 - 2014-05-20 16:55 - 00000000 ____D () C:\Users\Richie\Documents\Razer 2014-05-20 16:55 - 2014-05-20 16:55 - 00000000 ____D () C:\Users\Richie\AppData\Local\Razer_Inc 2014-05-20 16:53 - 2014-04-21 20:08 - 00000000 ____D () C:\Users\Richie\AppData\Local\Razer 2014-05-20 16:52 - 2014-05-20 16:52 - 00002152 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-20 16:52 - 2014-04-21 20:05 - 00000000 ____D () C:\ProgramData\Razer 2014-05-20 16:52 - 2014-04-21 20:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-20 04:44 - 2014-05-27 17:13 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-05-20 04:44 - 2014-05-27 17:13 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 00492376 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 00416712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 00382240 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 00335704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-05-20 04:44 - 2014-05-27 17:13 - 00301512 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvkflt.sys 2014-05-20 04:44 - 2014-05-27 17:13 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-05-20 04:44 - 2014-05-27 17:13 - 00032544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2014-05-20 04:44 - 2014-05-27 17:13 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-05-20 04:44 - 2014-03-28 14:12 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-05-20 04:44 - 2014-03-28 14:12 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-05-20 04:44 - 2014-03-28 14:12 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-05-20 04:44 - 2014-03-28 14:12 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-05-20 04:44 - 2014-03-28 14:12 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-05-20 04:44 - 2014-03-27 19:56 - 00026069 _____ () C:\Windows\system32\nvinfo.pb 2014-05-20 04:44 - 2014-03-27 19:55 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-05-20 04:44 - 2014-03-27 19:55 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-05-20 04:44 - 2014-03-27 19:55 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-05-20 04:44 - 2014-03-27 19:55 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-05-20 04:44 - 2014-03-27 19:55 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-05-20 04:44 - 2014-03-27 19:55 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-05-20 04:44 - 2014-03-27 19:55 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-05-20 04:44 - 2014-03-27 19:55 - 00146480 ____N (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-05-20 03:25 - 2014-03-27 19:57 - 06769096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-05-20 03:25 - 2014-03-27 19:57 - 03514144 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-05-20 03:25 - 2014-03-27 19:57 - 02560968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-05-20 03:25 - 2014-03-27 19:57 - 01078616 ____N (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2014-05-20 03:25 - 2014-03-27 19:57 - 00927520 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-05-20 03:25 - 2014-03-27 19:57 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-05-20 03:25 - 2014-03-27 19:57 - 00076064 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2014-05-20 03:25 - 2014-03-27 19:57 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-05-19 20:58 - 2013-08-22 17:36 - 00000000 ___RD () C:\Windows\ToastData 2014-05-19 20:58 - 2013-08-22 17:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel 2014-05-19 20:58 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\system32\oobe 2014-05-19 20:55 - 2014-05-19 20:55 - 00591736 _____ () C:\Windows\Minidump\051914-28984-01.dmp 2014-05-19 13:59 - 2014-05-19 13:59 - 00001048 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCSkin3D.lnk 2014-05-19 13:59 - 2014-05-19 13:59 - 00000000 ____D () C:\Program Files (x86)\MCSkin3D 2014-05-19 13:59 - 2014-03-27 19:26 - 00000000 ____D () C:\Users\Richie\AppData\Local\VirtualStore 2014-05-18 20:47 - 2014-05-18 20:40 - 819726028 _____ () C:\Users\Richie\Downloads\Caillou gesund werden mit Caillou.mp4 2014-05-18 19:20 - 2014-05-18 19:20 - 00000000 ____D () C:\Program Files (x86)\AviSynth 2.5 2014-05-18 11:24 - 2014-05-18 11:24 - 00000000 ____D () C:\Users\Richie\Documents\eRightSoft 2014-05-18 11:23 - 2014-05-18 11:23 - 00001153 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPER ©.lnk 2014-05-18 11:23 - 2014-05-18 11:23 - 00000000 ____D () C:\Program Files (x86)\eRightSoft 2014-05-18 10:38 - 2014-05-18 10:38 - 02734592 _____ (Python Software Foundation) C:\Windows\SysWOW64\python34.dll 2014-05-18 10:37 - 2014-05-18 10:37 - 00102912 _____ (Python Software Foundation) C:\Windows\pyw.exe 2014-05-18 10:37 - 2014-05-18 10:37 - 00102400 _____ (Python Software Foundation) C:\Windows\py.exe 2014-05-17 20:40 - 2014-05-17 20:39 - 16246835 _____ () C:\Users\Richie\Downloads\The dropper BY BIGRE.zip 2014-05-17 19:51 - 2014-03-28 14:15 - 00000000 ____D () C:\Users\Richie\AppData\Local\Apple Computer 2014-05-17 14:07 - 2014-05-17 14:07 - 00001098 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk 2014-05-17 14:07 - 2014-05-17 14:07 - 00000000 ____D () C:\Program Files (x86)\WinSCP 2014-05-17 07:33 - 2014-05-24 12:44 - 30993920 _____ () C:\Users\Richie\Documents\ffmpeg.exe 2014-05-16 21:33 - 2014-05-16 21:33 - 02420216 _____ () C:\Users\Richie\Downloads\OrbBasic_2_CirclesAndIf.zip 2014-05-16 21:33 - 2014-05-16 21:33 - 02394058 _____ () C:\Users\Richie\Downloads\OrbBasic_1_GotoAndVariables.zip 2014-05-15 20:48 - 2014-05-15 20:48 - 53116790 _____ () C:\Users\Richie\Downloads\zu viel computer.mp4 2014-05-15 20:04 - 2014-05-15 20:04 - 00001225 ____N () C:\Users\Public\Desktop\Razer Comms.lnk 2014-05-15 01:49 - 2014-03-27 19:57 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-09 19:21 ==================== End Of Log ============================ |
16.06.2014, 12:37 | #6 |
| DoS like Attacken auf IP 194.25.95.40 von meinem PC Addition.txt: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-06-2014 02 Ran by Richie at 2014-06-14 17:56:27 Running from E:\ Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Bitdefender Antivirus (Enabled - Out of date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Bitdefender Spyware-Schutz (Enabled - Out of date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Bitdefender Firewall (Enabled) {A23392FD-84B9-F933-2C71-81E751F6EF46} ==================== Installed Programs ====================== 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) 8BitMMO (HKLM-x32\...\Steam App 250420) (Version: - Archive Entertainment) A.V.A - Alliance of Valiant Arms (HKLM-x32\...\Steam App 102700) (Version: - RED DUCK Inc.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 4.0.0.1390 - Adobe Systems Incorporated) Hidden Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.5.0.367 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) AirParrot (HKLM\...\{D523F3B0-B5FE-43D0-BFE7-62CA0DD598BD}) (Version: 1.1.7 - Squirrels) Alien Swarm (HKLM-x32\...\Steam App 630) (Version: - Valve) APB Reloaded (HKLM-x32\...\Steam App 113400) (Version: - Reloaded Productions) Apple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) Auslogics DiskDefrag (HKLM-x32\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: 4.5.5.0 - Auslogics Labs Pty Ltd) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.4.0 - EA Digital Illusions CE AB) Behaviors SDK (XAML) for Visual Studio (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Bitdefender Total Security (HKLM\...\Bitdefender) (Version: 17.27.0.1146 - Bitdefender) bl (x32 Version: 1.0.0 - Your Company Name) Hidden Blacklight: Retribution (HKLM-x32\...\Steam App 209870) (Version: - Zombie, Inc.) Blend for Visual Studio 2013 (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio 2013 DEU resources (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Build Tools - amd64 (Version: 12.0.21005 - Microsoft Corporation) Hidden Build Tools - x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Buildtools-Sprachressourcen - amd64 (Version: 12.0.21005 - Microsoft Corporation) Hidden Buildtools-Sprachressourcen - x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden CaptureWizPro 5.40 (HKLM-x32\...\CaptureWiz) (Version: - ) Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version: - Cheat Engine) CodeBlocks (HKCU\...\CodeBlocks) (Version: 13.12 - The Code::Blocks Team) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) CyberGhost 5 (HKLM\...\CyberGhost VPN 5_is1) (Version: - CyberGhost S.R.L.) EasyBCD 2.2 (HKLM-x32\...\EasyBCD) (Version: 2.2 - NeoSmart Technologies) Entity Framework Tools for Visual Studio 2013 (HKLM-x32\...\{08AEF86A-1956-4846-B906-B01350E96E30}) (Version: 12.0.20912.0 - Microsoft Corporation) Erforderliche Komponenten für SSDT (HKLM-x32\...\{3FF082A7-A5DE-4BDA-B56A-1D2BEFD617A3}) (Version: 11.1.3000.0 - Microsoft Corporation) ETDWare PS/2-X64 11.13.4.4_WHQL (HKLM\...\Elantech) (Version: 11.13.4.4 - ELAN Microelectronic Corp.) Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Freemake Audio Converter Version 1.1.0 (HKLM-x32\...\Freemake Audio Converter_is1) (Version: 1.1.0 - Ellora Assets Corporation) Freemake Video Converter Version 4.1.3 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.3 - Ellora Assets Corporation) Freemake Video Downloader (HKLM-x32\...\Freemake Video Downloader_is1) (Version: 3.6.4 - Ellora Assets Corporation) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.) Google Talk Plugin (HKLM-x32\...\{C1E3DFE7-4EAD-3E9E-A826-E06055BA5921}) (Version: 5.4.2.18903 - Google) Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden HAWKEN (HKLM-x32\...\Steam App 271290) (Version: - Adhesive Games) iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: 3.1.0.40 - Apple Inc.) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{0EC7F9CC-4741-45AE-9F55-6E9343F726F5}) (Version: 1.1.0.36960 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.20.1447 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation) Intel(R) Rapid Storage Technology (Version: 12.8.0.1016 - Intel Corporation) Hidden Intel® Trusted Connect Service Client (Version: 1.28.487.1 - Intel Corporation) Hidden iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: 11.2.2.3 - Apple Inc.) Java 8 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418000FF}) (Version: 8.0.0 - Oracle Corporation) Java Auto Updater (x32 Version: 2.8.00.132 - Oracle, Inc.) Hidden Java SE Development Kit 8 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180000}) (Version: 8.0.0 - Oracle Corporation) JavaScript Tooling (Version: 12.0.21005 - Microsoft Corporation) Hidden JavaScript Tooling (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden KeePass Password Safe 2.26 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.26 - Dominik Reichl) KLM (HKLM-x32\...\InstallShield_{4DEA5B85-6C56-45F3-AE00-FED756B0D3B4}) (Version: 1.0.1305.3101 - Micro-Star International Co., Ltd.) KLM (x32 Version: 1.0.1305.3101 - Micro-Star International Co., Ltd.) Hidden Language Pack (DEU) für freigegebene Windows Azure-Komponenten für Microsoft Visual Studio 2013 - v1.0 (x32 Version: 1.0.10829.1601 - Microsoft Corporation) Hidden MCSkin3D version 1.4 (HKLM-x32\...\{39B8EE1D-82D5-4DF0-A619-2C84844254D1}_is1) (Version: 1.4 - Altered Softworks) Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{21B0F482-5EF9-45DA-8840-340AFE705A6C}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft Advertising SDK for Windows 8.1 - ENU (x32 Version: 8.1.30809.0 - Microsoft Corporation) Hidden Microsoft Advertising Service Extension for Visual Studio (x32 Version: 12.0.30809.0 - Microsoft Corporation) Hidden Microsoft C++ Azure Mobile SDK for Visual Studio 2013 (x32 Version: 1.0 - Microsoft Corporation) Hidden Microsoft C++ REST SDK for Visual Studio 2013 (x32 Version: 1.0 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 (x32 Version: 2.1.21005 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.1 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.1 Sprachpaket - DEU) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 Sprachpaket - DEU (x32 Version: 2.1.21005 - Microsoft Corporation) Hidden Microsoft Mathematics (64-bit) (HKLM\...\{E57B7E0A-8BE5-42E2-BE60-C07ED680A063}) (Version: 4.0 - Microsoft Corporation) Microsoft NuGet - Visual Studio Express 2013 for Windows (x32 Version: 2.7.40911.287 - Microsoft Corporation) Hidden Microsoft NuGet - Visual Studio Express 2013 for Windows Desktop (x32 Version: 2.7.40911.287 - Microsoft Corporation) Hidden Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.0.4041.0512 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{F09DEB00-9F41-4BC9-BA81-9F131B12B3D5}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{D4E30517-FE6F-491E-942F-AE10E1B18F38}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x64) (HKLM\...\{B4EDAE03-DB34-4DD0-BA7E-2ED80DEA50B1}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{269A8DF6-BBDA-441F-932B-233F9B746D72}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{EC75BD20-F9CA-4E77-825F-ABD77E95BE91}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{0BF65908-D137-4A9E-B7C9-78F32F74F6FD}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{93945D16-4C3D-433E-B7E4-3D0D86B284C8}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{6F173435-3F19-4043-BA3D-A46AA8472859}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL-Sprachdienst (HKLM-x32\...\{1D812D86-D8EF-41AC-A518-BA12E1913747}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (12.0.30919.1) (HKLM-x32\...\{7CC03C58-3471-43D2-A251-EC9AE225E772}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (12.0.30919.1) (HKLM-x32\...\{BCB8A870-2B3D-4CC0-87D6-F931E065AC0C}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft Team Foundation Server 2013 Object Model (x64) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Team Foundation Server 2013-Objektmodell Sprachpaket (x64) - DEU (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64 Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x86 Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 32bit Compilers - DEU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Compilers - DEU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Core Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Debug Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Debug Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86-x64 Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Express Prerequisites x64 - DEU (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Profiling Tools (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell (Minimum) (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell (Minimum) Interop Assemblies (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell-(Mindest)-Ressourcen (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Team Explorer Sprachpaket - DEU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 VsGraphics Helper Dependencies (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013-Vorbereitung (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Express 2013 for Windows (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Express 2013 for Windows Desktop (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Express 2013 für Windows - DEU (HKLM-x32\...\{5626bd5c-91ed-4cbb-98e8-2aa80a3ab129}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio Express 2013 für Windows - DEU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Express 2013 für Windows Desktop - DEU (HKLM-x32\...\{31e4d2a5-b246-4c2d-a7fb-aee157c26b02}) (Version: 12.0.21005.13 - Microsoft Corporation) Microsoft Visual Studio Express 2013 für Windows Desktop - DEU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2013 XAML UI Designer Core (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2013 XAML UI Designer deu Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (HKLM-x32\...\{43341417-7882-4F34-8390-53DFD00F6C0F}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (HKLM\...\{24440413-490E-41CA-BD33-0B30FD3EBE3A}) (Version: 11.1.3366.16 - Microsoft Corporation) Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) Mp3tag v2.59a (HKLM-x32\...\Mp3tag) (Version: v2.59a - Florian Heidenreich) MSI Afterburner 2.3.1 (HKLM-x32\...\Afterburner) (Version: 2.3.1 - MSI Co., LTD) NBTExplorer (HKLM-x32\...\{06107EDA-5B85-4CEC-AB1E-8350DEC15231}) (Version: 2.7.4.0 - Justin Aquadro) NetSpeedMonitor 2.5.4.0 x64 (HKLM\...\{88F41EE2-949B-4B52-933D-C7F8F67BC1D2}) (Version: 2.5.4.0 - Florian Gilles) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.5.5 - Notepad++ Team) NVIDIA GeForce Experience 2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 337.88 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Optimus Update 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA ShadowPlay 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 337.88 (Version: 337.88 - NVIDIA Corporation) Hidden NVIDIA Update 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.) Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 RC für Windows Store-Apps (Deutsch) (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden ph (x32 Version: 1.0.0 - Your Company Name) Hidden PlanetSide 2 (HKLM-x32\...\Steam App 218230) (Version: - Sony Online Entertainment) ps creator 3.7.2 (HKLM-x32\...\ps-printsolution1_is1) (Version: - 1STEIN Corp.) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Python 3.4.1 (HKLM-x32\...\{df32bb9e-3ed8-36b5-a649-e8c845c5f3a2}) (Version: 3.4.1150 - Python Software Foundation) Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.0.30.1003 - Qualcomm Atheros) Hidden Qualcomm Atheros Bluetooth Suite (64) (Version: 8.0.1.232 - Qualcomm Atheros Communications) Hidden Qualcomm Atheros Killer E220x Drivers (Version: 1.0.30.1003 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer Wireless-N Drivers (Version: 1.0.30.1003 - Qualcomm Atheros) Hidden Qualcomm Atheros Network Manager (Version: 1.0.30.1003 - Qualcomm Atheros) Hidden QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) Razer Comms (HKLM-x32\...\Razer Comms) (Version: 1.9 - Razer Inc.) Razer Core (HKLM-x32\...\Razer Core) (Version: 1.0.1.61 - Razer Inc) Razer Game Booster (HKLM-x32\...\Razer Game Booster_is1) (Version: 4.2.45.0 - Razer Inc.) Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.02 - Razer Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.21239 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7032 - Realtek Semiconductor Corp.) SCM (HKLM\...\{9CDAA328-143C-4D36-8379-D4A5D05CA9BE}) (Version: 13.013.08221 - Application) SHIELD Streaming (Version: 2.1.214 - NVIDIA Corporation) Hidden SoftPerfect Network Protocol Analyzer 2.9 (HKLM\...\SoftPerfect Network Protocol Analyzer_is1) (Version: - SoftPerfect Research) Sound Blaster Cinema (HKLM-x32\...\{8801CA65-921A-4CCC-9D63-879D1D0BAA97}) (Version: 1.00.02 - Creative Technology Limited) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) SUPER © v2014.build.60+Recorder (2014/02/18) Version v2014.buil (HKLM-x32\...\{8E2A18E2-96AF-8549-4DE7-5C06B75719A4}_is1) (Version: v2014.build.60+Recorder - eRightSoft) Tactical Intervention (HKLM-x32\...\Steam App 51100) (Version: - FIX Games) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) Team Explorer for Microsoft Visual Studio 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.28223 - TeamViewer) Techne (HKCU\...\244a1e8693fd9c7e) (Version: 1.3.0.15 - ZeuX and r4wk) Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic) TrackMania Nations Forever (HKLM-x32\...\Steam App 11020) (Version: - Nadeo) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Visual Studio Extensions for Windows Library for JavaScript (x32 Version: 1.0.9600.16408 - Microsoft Corporation) Hidden VLC media player 2.1.4 (HKLM\...\VLC media player) (Version: 2.1.4 - VideoLAN) War Inc. Battlezone (HKLM-x32\...\Steam App 107900) (Version: - Online Warmongers Group Inc.) Warframe (HKLM-x32\...\Steam App 230410) (Version: - Digital Extremes) Windows App Certification Kit Native Components (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows App Certification Kit x64 (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Azure Mobile Services SDK (x32 Version: 1.0.10815.0 - Microsoft Corporation) Hidden Windows Azure Mobile Services Tools for Visual Studio 2013 Preview - v1.0 (x32 Version: 1.0.60906.1602 - Microsoft Corporation) Hidden Windows Azure Mobile Services Tools für Visual Studio 2013 Preview Language Pack - v1.0 (x32 Version: 1.0.60906.1602 - Microsoft Corporation) Hidden Windows Azure Shared Components for Microsoft Visual Studio 2013 - v1.0 (x32 Version: 1.0.10829.1601 - Microsoft Corporation) Hidden Windows Runtime Intellisense Content - de-de (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x64 Remote (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows XP Targeting with C++ (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Windows-Treiberpaket - ENE TECHNOLOGY INC. (WUDFRd) HIDClass (02/08/2013 1.1.0.0) (HKLM\...\5AADE1068CF70DD983F763B20CF2CAAB72883915) (Version: 02/08/2013 1.1.0.0 - ENE TECHNOLOGY INC.) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) WinSCP 5.5.3 (HKLM-x32\...\winscp3_is1) (Version: 5.5.3 - Martin Prikryl) ==================== Restore Points ========================= 07-06-2014 07:47:00 Installed Python 3.4.1 11-06-2014 18:39:31 Removed Bonjour ==================== Hosts content: ========================== 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {08E2E861-E4E2-433C-9F5B-DC23058FFEF9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-13] (Adobe Systems Incorporated) Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {0E03C623-06EC-4255-AC17-B01948C00B21} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-27] (Google Inc.) Task: {13967062-9C20-4A9D-A1C1-733D443278D9} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-05-14] (Microsoft Corporation) Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {24413ABA-7432-4F1A-9FD3-4E5A8AFEDAF2} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {75DA9551-BF47-4B01-8B5E-76150D66E572} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1277998247-1570779864-2512900168-1001 => %localappdata%\Microsoft\SkyDrive\SkyDrive.exe Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {7DAD807A-AF62-4858-8602-508F869465FB} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8B59BBF8-44BD-40A6-82FA-27D355BF7303} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {A990319C-5EC3-491B-9525-272EE78324A3} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: {B7C00D9F-1BE4-482B-BC7F-2875B6A60E7C} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1277998247-1570779864-2512900168-1001Core => C:\Users\Richie\AppData\Local\Google\Update\GoogleUpdate.exe [2014-04-24] (Google Inc.) Task: {C17F323F-75B0-4BB0-9FC3-4EEDC7317382} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D40D04F8-A827-40AF-835B-DD85CA63F681} - System32\Tasks\Bitdefender Auto-Scan => C:\Program Files\Bitdefender\Bitdefender\mtasklaunch.exe [2013-06-19] (Bitdefender) Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {D98127D2-B80C-4736-A393-495EB3F09315} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1277998247-1570779864-2512900168-1001UA => C:\Users\Richie\AppData\Local\Google\Update\GoogleUpdate.exe [2014-04-24] (Google Inc.) Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {F0F1AD70-4FAA-4925-B6C4-8E392F48C8BA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-27] (Google Inc.) Task: {F65B966E-E7A7-4E23-84E2-A2979D271B3C} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {FABC4DC0-6BAD-466C-B8F1-856DB75FA507} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation) Task: {FBFFFAE1-2D8B-42D9-9506-4CCECDD4007B} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-die-keks-armee@hotmail.de => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27] (Adobe Systems Incorporated) Task: {FD1D7ABE-9E46-404E-8198-F68BE8693763} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1277998247-1570779864-2512900168-1001Core.job => C:\Users\Richie\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1277998247-1570779864-2512900168-1001UA.job => C:\Users\Richie\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-04-04 22:08 - 2013-06-19 11:45 - 00265080 _____ () C:\Program Files\Bitdefender\Bitdefender\txmlutil.dll 2014-04-04 22:08 - 2014-03-27 19:18 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\accessl.ui 2014-04-04 22:08 - 2011-11-14 19:17 - 00153680 _____ () C:\Program Files\Bitdefender\Bitdefender\bdfwcore.dll 2014-04-04 22:08 - 2014-03-27 19:18 - 00005120 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\IMSecurityAL.ui 2014-06-07 11:07 - 2014-06-07 11:08 - 00775936 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00044_003\ashttpbr.mdl 2014-06-07 11:07 - 2014-06-07 11:07 - 00568400 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00044_003\ashttpdsp.mdl 2014-06-07 11:07 - 2014-06-07 11:08 - 02598560 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00044_003\ashttpph.mdl 2014-06-07 11:07 - 2014-06-07 11:08 - 01321872 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_00044_003\ashttprbl.mdl 2014-03-27 19:57 - 2014-05-20 03:25 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-03-31 19:39 - 2014-05-31 14:12 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-04-29 23:41 - 2014-04-29 23:42 - 00329920 ____N () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 2014-04-04 22:08 - 2013-03-25 15:16 - 01117920 _____ () C:\Program Files\Bitdefender\Bitdefender SafeBox\System.Data.SQLite.dll 2014-03-20 11:24 - 2014-03-20 11:24 - 00667808 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll 2013-07-30 06:42 - 2013-07-30 06:42 - 00011264 ____N () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2013-07-30 06:38 - 2013-07-30 06:38 - 00086016 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll 2013-07-30 06:48 - 2013-07-30 06:48 - 00012928 _____ () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe 2014-02-12 21:58 - 2014-02-12 21:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-02-12 21:58 - 2014-02-12 21:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-05-20 16:52 - 2012-11-20 16:13 - 00264192 _____ () C:\Program Files (x86)\Razer\Razer Game Booster\D3DX8Wrapper.dll 2014-05-20 16:52 - 2013-11-12 09:57 - 00098304 _____ () C:\Program Files (x86)\Razer\Razer Game Booster\EasyHook32.dll 2013-07-25 03:31 - 2013-07-25 03:31 - 00615256 _____ () C:\Program Files (x86)\Razer\Razer_Kraken_Driver\Drivers\SysAudio\KrakenDevProps.dll 2014-04-04 22:08 - 2014-03-15 00:05 - 00204280 _____ () C:\Program Files\Bitdefender\Bitdefender\antispam32\txmlutil.dll 2012-03-23 12:15 - 2012-03-23 12:15 - 00988160 _____ () C:\Program Files (x86)\Razer\Comms\libssh2.dll 2012-03-02 10:23 - 2012-03-02 10:23 - 00577621 _____ () C:\Program Files (x86)\Razer\Comms\sqlite3.dll 2014-03-27 20:40 - 2013-08-08 14:25 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Richie\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= HKLM\...\StartupApproved\StartupFolder: => "Killer Network Manager.lnk" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "MBCfg64" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "amd_dc_opt" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKCU\...\StartupApproved\StartupFolder: => "CaptureWiz.lnk" HKCU\...\StartupApproved\Run: => "CyberGhost" HKCU\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_76894B18E560AA5E1B9A3A60AFA5A9FE" HKCU\...\StartupApproved\Run: => "Google Update" HKCU\...\StartupApproved\Run: => "EADM" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/14/2014 06:54:03 PM) (Source: RazerGameScanner) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Der Dienstprozess konnte keine Verbindung mit dem Dienstcontroller herstellen Error: (06/14/2014 05:04:41 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm LiveComm.exe, Version 17.5.9600.20498 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 3b48 Startzeit: 01cf87e141516cff Endzeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\LiveComm.exe Berichts-ID: 350f4a2a-f3d5-11e3-8276-d830629be718 Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ppleae38af2e007f4358a809ac99a64a67c1 Error: (06/14/2014 05:00:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: ChatApplet.exe, Version: 1.61.7.0, Zeitstempel: 0x537065fe Name des fehlerhaften Moduls: AVRT.dll, Version: 6.3.9600.16384, Zeitstempel: 0x52157da6 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00001ce2 ID des fehlerhaften Prozesses: 0x2640 Startzeit der fehlerhaften Anwendung: 0xChatApplet.exe0 Pfad der fehlerhaften Anwendung: ChatApplet.exe1 Pfad des fehlerhaften Moduls: ChatApplet.exe2 Berichtskennung: ChatApplet.exe3 Vollständiger Name des fehlerhaften Pakets: ChatApplet.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ChatApplet.exe5 Error: (06/14/2014 05:00:18 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: ChatApplet.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: Ausnahmecode c0000005, Ausnahmeadresse 6B5E1CE2 Error: (06/12/2014 02:58:24 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: skydrive.exe, Version: 6.3.9600.17085, Zeitstempel: 0x533890f0 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0x00000000 Fehleroffset: 0x0000000000000000 ID des fehlerhaften Prozesses: 0x3ff0 Startzeit der fehlerhaften Anwendung: 0xskydrive.exe0 Pfad der fehlerhaften Anwendung: skydrive.exe1 Pfad des fehlerhaften Moduls: skydrive.exe2 Berichtskennung: skydrive.exe3 Vollständiger Name des fehlerhaften Pakets: skydrive.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: skydrive.exe5 Error: (06/12/2014 02:48:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: skydrive.exe, Version: 6.3.9600.17085, Zeitstempel: 0x533890f0 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0x00000000 Fehleroffset: 0x0000000000000000 ID des fehlerhaften Prozesses: 0x2d44 Startzeit der fehlerhaften Anwendung: 0xskydrive.exe0 Pfad der fehlerhaften Anwendung: skydrive.exe1 Pfad des fehlerhaften Moduls: skydrive.exe2 Berichtskennung: skydrive.exe3 Vollständiger Name des fehlerhaften Pakets: skydrive.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: skydrive.exe5 Error: (06/12/2014 02:44:38 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm LiveComm.exe, Version 17.5.9600.20498 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: bd8 Startzeit: 01cf863b4fb31bdd Endzeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\LiveComm.exe Berichts-ID: 433c89e0-f22f-11e3-8276-d830629be718 Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ppleae38af2e007f4358a809ac99a64a67c1 Error: (06/12/2014 02:31:56 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm LiveComm.exe, Version 17.5.9600.20498 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 2f28 Startzeit: 01cf863993e246a6 Endzeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\LiveComm.exe Berichts-ID: 89cf26e8-f22d-11e3-8276-d830629be718 Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ppleae38af2e007f4358a809ac99a64a67c1 Error: (06/12/2014 02:28:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: skydrive.exe, Version: 6.3.9600.17085, Zeitstempel: 0x533890f0 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0x00000000 Fehleroffset: 0x0000000000000000 ID des fehlerhaften Prozesses: 0x1e20 Startzeit der fehlerhaften Anwendung: 0xskydrive.exe0 Pfad der fehlerhaften Anwendung: skydrive.exe1 Pfad des fehlerhaften Moduls: skydrive.exe2 Berichtskennung: skydrive.exe3 Vollständiger Name des fehlerhaften Pakets: skydrive.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: skydrive.exe5 Error: (06/12/2014 00:26:07 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: skydrive.exe, Version: 6.3.9600.17085, Zeitstempel: 0x533890f0 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0x00000000 Fehleroffset: 0x0000000000000000 ID des fehlerhaften Prozesses: 0x1db4 Startzeit der fehlerhaften Anwendung: 0xskydrive.exe0 Pfad der fehlerhaften Anwendung: skydrive.exe1 Pfad des fehlerhaften Moduls: skydrive.exe2 Berichtskennung: skydrive.exe3 Vollständiger Name des fehlerhaften Pakets: skydrive.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: skydrive.exe5 System errors: ============= Error: (06/14/2014 07:04:25 PM) (Source: DCOM) (EventID: 10010) (User: RICHIEGAMING) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (06/14/2014 05:08:40 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Superfetch" wurde mit folgendem Fehler beendet: %%1062 Error: (06/14/2014 05:08:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Gruppenrichtlinienclient" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/14/2014 05:08:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Gruppenrichtlinienclient" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/14/2014 05:08:18 PM) (Source: DCOM) (EventID: 10010) (User: RICHIEGAMING) Description: {82C49192-BE68-467F-BF50-971FD01DABF3} Error: (06/14/2014 05:06:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Anmelde-Assistent für Microsoft-Konten" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/14/2014 05:04:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Gruppenrichtlinienclient" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/14/2014 05:03:35 PM) (Source: DCOM) (EventID: 10010) (User: RICHIEGAMING) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/14/2014 05:03:22 PM) (Source: DCOM) (EventID: 10010) (User: RICHIEGAMING) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (06/14/2014 05:02:52 PM) (Source: DCOM) (EventID: 10010) (User: RICHIEGAMING) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Microsoft Office Sessions: ========================= Error: (06/14/2014 06:54:03 PM) (Source: RazerGameScanner) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Der Dienstprozess konnte keine Verbindung mit dem Dienstcontroller herstellen Error: (06/14/2014 05:04:41 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: LiveComm.exe17.5.9600.204983b4801cf87e141516cff4294967295C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\LiveComm.exe350f4a2a-f3d5-11e3-8276-d830629be718microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbweppleae38af2e007f4358a809ac99a64a67c1 Error: (06/14/2014 05:00:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: ChatApplet.exe1.61.7.0537065feAVRT.dll6.3.9600.1638452157da6c000000500001ce2264001cf87e14dbebacfC:\Program Files (x86)\Razer\Comms\ChatApplet.exeC:\Windows\SYSTEM32\AVRT.dll993ccaa2-f3d4-11e3-8276-d830629be718 Error: (06/14/2014 05:00:18 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: ChatApplet.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: Ausnahmecode c0000005, Ausnahmeadresse 6B5E1CE2 Error: (06/12/2014 02:58:24 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: skydrive.exe6.3.9600.17085533890f0unknown0.0.0.0000000000000000000000000000000003ff001cf863de013d063C:\Windows\System32\skydrive.exeunknown3cd5e539-f231-11e3-8276-d830629be718 Error: (06/12/2014 02:48:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: skydrive.exe6.3.9600.17085533890f0unknown0.0.0.0000000000000000000000000000000002d4401cf863c925c6f0dC:\Windows\System32\skydrive.exeunknownd62fcc78-f22f-11e3-8276-d830629be718 Error: (06/12/2014 02:44:38 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: LiveComm.exe17.5.9600.20498bd801cf863b4fb31bdd4294967295C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\LiveComm.exe433c89e0-f22f-11e3-8276-d830629be718microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbweppleae38af2e007f4358a809ac99a64a67c1 Error: (06/12/2014 02:31:56 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: LiveComm.exe17.5.9600.204982f2801cf863993e246a64294967295C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\LiveComm.exe89cf26e8-f22d-11e3-8276-d830629be718microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbweppleae38af2e007f4358a809ac99a64a67c1 Error: (06/12/2014 02:28:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: skydrive.exe6.3.9600.17085533890f0unknown0.0.0.0000000000000000000000000000000001e2001cf862d23672db1C:\Windows\System32\skydrive.exeunknown0740c646-f22d-11e3-8276-d830629be718 Error: (06/12/2014 00:26:07 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: skydrive.exe6.3.9600.17085533890f0unknown0.0.0.0000000000000000000000000000000001db401cf862877f1094cC:\Windows\System32\skydrive.exeunknownf68ae6d8-f21b-11e3-8276-d830629be718 ==================== Memory info =========================== Percentage of memory in use: 41% Total physical RAM: 8112.04 MB Available physical RAM: 4761.55 MB Total Pagefile: 16304.04 MB Available Pagefile: 13636.15 MB Total Virtual: 131072 MB Available Virtual: 131071.78 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:686.86 GB) (Free:445.51 GB) NTFS Drive e: (USB-Stick) (Removable) (Total:29.81 GB) (Free:29.8 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 932 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ======================================================== Disk: 1 (Size: 30 GB) (Disk ID: 000120C1) Partition 1: (Not Active) - (Size=30 GB) - (Type=0B) ==================== End Of Log ============================ |
16.06.2014, 12:46 | #7 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | DoS like Attacken auf IP 194.25.95.40 von meinem PCZitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
16.06.2014, 17:51 | #8 |
| DoS like Attacken auf IP 194.25.95.40 von meinem PC Leider war ich so dumm und habe nach den Scans nie die Logfile abgespeichert. Doch die zwei Programme: Brutus und LOIC, die BitDefender gefunden hat, sind ganz sicher harmlos Laut Google ist die Somoto Toolbar, die BitDefender gemeldet hat, ist entfernt. Das ist meine einzige Info dazu: Code:
ATTFilter Application.Bundler.Somoto.A Dateiname: 00000000 C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000000 |
16.06.2014, 22:49 | #9 |
/// Winkelfunktion /// TB-Süch-Tiger™ | DoS like Attacken auf IP 194.25.95.40 von meinem PC Dann bitte jetzt Combofix ausführen: Scan mit Combofix
__________________ Logfiles bitte immer in CODE-Tags posten |
23.06.2014, 17:05 | #10 |
| DoS like Attacken auf IP 194.25.95.40 von meinem PC Bei mir läuft ComboFix leider nicht, da ich auf Windows 8.1 bin |
24.06.2014, 08:08 | #11 |
/// Winkelfunktion /// TB-Süch-Tiger™ | DoS like Attacken auf IP 194.25.95.40 von meinem PC Adware/Junkware/Toolbars entfernen 1. Schritt: Malwarebytes Downloade Dir bitte Malwarebytes Anti-Malware
2. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
3. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
4. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu DoS like Attacken auf IP 194.25.95.40 von meinem PC |
akamai, anfrage, attacke, blockiert, ddos-attacke, dos, einfach, erlaubnis, firewall, frage, fragen, fritzbox, google, inhalt, netzwerk, nichts, remote, router, sekunden, tcp, testen, thema, tools, upload, works, zombie, zombierechner |