|
Log-Analyse und Auswertung: Google lädt nichtWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
13.06.2014, 03:47 | #1 |
| Google lädt nicht Hallo, seit einigen Tagen lädt bei mir Google nicht bzw kaum. Es lädt meistens ewig, in seltenen Fällen klappts, meistens aber nicht. Dies ist sowohl bei Firefox als auch bei Internet Explorer der Fall. Was soll ich tun? Hier HijackThis log file: HiJackthis Logfile: Code:
ATTFilter Logfile of Trend Micro HijackThis v2.0.5 Scan saved at 04:48:52, on 13.06.2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.17126) FIREFOX: 29.0.1 (de) Boot mode: Normal Running processes: C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe C:\Users\johan\AppData\Local\FluxSoftware\Flux\flux.exe C:\Program Files\AVAST Software\Avast\avastui.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe C:\Program Files (x86)\WinTV\WinTV7\WinTV7.exe C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe C:\Program Files (x86)\Connectify\Connectify.exe C:\Users\johan\Downloads\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKCU\..\Run: [f.lux] "C:\Users\johan\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOKALER DIENST') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOKALER DIENST') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETZWERKDIENST') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETZWERKDIENST') O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user') O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O17 - HKLM\System\CCS\Services\Tcpip\..\{B46724C5-5023-4D13-8EF2-3125471A7FAD}: NameServer = 192.168.84.1 O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Connectify - Unknown owner - C:\Program Files (x86)\Connectify\ConnectifyService.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: HauppaugeTVServer - Hauppauge Computer Works - C:\Program Files (x86)\WinTV\TVServer\HauppaugeTVServer.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Motorola Device Manager Service (Motorola Device Manager) - Motorola Mobility LLC - C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: PST Service - Motorola - C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe O23 - Service: Realtek11nSU - Realtek - C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: Cisco AnyConnect Secure Mobility Agent (vpnagent) - Cisco Systems, Inc. - C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe -- End of file - 7658 bytes |
13.06.2014, 06:34 | #2 |
/// the machine /// TB-Ausbilder | Google lädt nicht hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
13.06.2014, 15:23 | #3 |
| Google lädt nicht Bitteschön!
__________________FRST.txt: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-06-2014 02 Ran by johan (administrator) on JOHAN-PC on 13-06-2014 16:22:05 Running from C:\Users\johan\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe () C:\Program Files (x86)\Connectify\ConnectifyService.exe (Hauppauge Computer Works) C:\Program Files (x86)\WinTV\TVServer\HauppaugeTVServer.exe (Connectify) C:\Program Files (x86)\Connectify\Connectifyd.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe (Motorola) C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe (Realtek) C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe (Hauppauge Computer Works) C:\Program Files (x86)\WinTV\TVServer\CaptureGenUSB.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Flux Software LLC) C:\Users\johan\AppData\Local\FluxSoftware\Flux\flux.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe ( ) C:\Users\johan\Desktop\stick\meinedaten\Daten\Miranda IM\miranda64.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe () C:\Program Files\Core Temp\Core Temp.exe (Connectify) C:\Program Files (x86)\Connectify\Connectify.exe (Trend Micro Inc.) C:\Users\johan\Downloads\HijackThis.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe () C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7174728 2013-03-29] (Realtek Semiconductor) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3774312 2014-04-01] (AVAST Software) HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2013-10-20] (Microsoft Corporation) HKU\S-1-5-21-573647432-2857422077-766095095-1000\...\Run: [f.lux] => C:\Users\johan\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-24] (Flux Software LLC) HKU\S-1-5-21-573647432-2857422077-766095095-1000\...\MountPoints2: {ac6d7164-4196-11e3-b67a-0026185fa75a} - D:\MotorolaDeviceManagerSetup.exe -a ==================== Internet (Whitelisted) ==================== SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM-x32 - DefaultScope value is missing. BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 137.248.21.22 137.248.1.5 137.248.1.8 Tcpip\..\Interfaces\{B46724C5-5023-4D13-8EF2-3125471A7FAD}: [NameServer]192.168.84.1 FireFox: ======== FF ProfilePath: C:\Users\johan\AppData\Roaming\Mozilla\Firefox\Profiles\p9kfnh2x.default FF NewTab: www.google.de FF Homepage: about:home FF NetworkProxy: "autoconfig_url", "hxxp://www.uni-marburg.de/proxy.pac" FF NetworkProxy: "http", " www-proxy1.uni-marburg.de" FF NetworkProxy: "http_port", 3128 FF NetworkProxy: "type", 1 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.1.0 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin: wacom.com/WacomTabletPlugin - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll No File FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 - C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin-x32: wacom.com/WacomTabletPlugin - C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Lightbeam - C:\Users\johan\AppData\Roaming\Mozilla\Firefox\Profiles\p9kfnh2x.default\Extensions\jid1-F9UJ2thwoAm5gQ@jetpack.xpi [2014-03-03] FF Extension: NoScript - C:\Users\johan\AppData\Roaming\Mozilla\Firefox\Profiles\p9kfnh2x.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-10-19] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-19] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-02-03] (AVAST Software) R2 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [69632 2011-12-01] () [File not signed] R2 HauppaugeTVServer; C:\Program Files (x86)\WinTV\TVServer\HauppaugeTVServer.exe [581632 2013-05-15] (Hauppauge Computer Works) [File not signed] R2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2013-07-31] (Motorola Mobility LLC) R2 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [File not signed] R2 Realtek11nSU; C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [File not signed] R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [635160 2014-04-22] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-02-03] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-10-19] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-10-19] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1038072 2014-02-03] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [421704 2014-02-03] (AVAST Software) R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [80184 2014-02-03] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-02-03] () R1 cnnctfy2; C:\Windows\System32\DRIVERS\cnnctfy2.sys [31344 2013-11-05] (Connectify) R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [494864 2013-08-30] (Intel Corporation) R3 hcw10bda; C:\Windows\System32\drivers\hcw10bda.sys [650352 2013-03-26] (Hauppauge Computer Works, Inc.) R2 hcw10cir; C:\Windows\System32\drivers\hcw10cir.sys [46080 2010-05-10] (Hauppauge Computer Works, Inc.) R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115600 2010-01-29] (EZB Systems, Inc.) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-01-23] () S3 vpnva; C:\Windows\System32\DRIVERS\vpnva64-6.sys [52080 2013-06-19] (Cisco Systems, Inc.) R3 ALSysIO; \??\C:\Users\johan\AppData\Local\Temp\ALSysIO64.sys [X] S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-13 16:22 - 2014-06-13 16:22 - 00011437 _____ () C:\Users\johan\Downloads\FRST.txt 2014-06-13 16:21 - 2014-06-13 16:22 - 00000000 ____D () C:\FRST 2014-06-13 16:21 - 2014-06-13 16:21 - 02081792 _____ (Farbar) C:\Users\johan\Downloads\FRST64.exe 2014-06-13 04:43 - 2014-06-13 04:48 - 00007659 _____ () C:\Users\johan\Downloads\hijackthis.log 2014-06-13 04:43 - 2014-06-13 04:43 - 00388608 _____ (Trend Micro Inc.) C:\Users\johan\Downloads\HijackThis.exe 2014-06-12 16:11 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-06-12 16:11 - 2014-05-30 12:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-06-12 16:11 - 2014-05-30 12:02 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-06-12 16:11 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-06-12 16:11 - 2014-05-30 11:39 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-06-12 16:11 - 2014-05-30 11:39 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-06-12 16:11 - 2014-05-30 11:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-06-12 16:11 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-06-12 16:11 - 2014-05-30 11:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-06-12 16:11 - 2014-05-30 11:24 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-06-12 16:11 - 2014-05-30 11:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-06-12 16:11 - 2014-05-30 11:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-06-12 16:11 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-06-12 16:11 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-06-12 16:11 - 2014-05-30 11:11 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-06-12 16:11 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-06-12 16:11 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-06-12 16:11 - 2014-05-30 11:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-06-12 16:11 - 2014-05-30 10:55 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-06-12 16:11 - 2014-05-30 10:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-06-12 16:11 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-06-12 16:11 - 2014-05-30 10:44 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-06-12 16:11 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-06-12 16:11 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-06-12 16:11 - 2014-05-30 10:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-06-12 16:11 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-06-12 16:11 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-06-12 16:11 - 2014-05-30 10:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-06-12 16:11 - 2014-05-30 10:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-06-12 16:11 - 2014-05-30 10:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-06-12 16:11 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-06-12 16:11 - 2014-05-30 10:28 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-06-12 16:11 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-06-12 16:11 - 2014-05-30 10:24 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-06-12 16:11 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-06-12 16:11 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-06-12 16:11 - 2014-05-30 10:10 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-06-12 16:11 - 2014-05-30 10:06 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-06-12 16:11 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-06-12 16:11 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-06-12 16:11 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-06-12 16:11 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-06-12 16:11 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-06-12 16:11 - 2014-05-30 09:50 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-06-12 16:11 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-06-12 16:11 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-06-12 16:11 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-06-12 16:11 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-06-12 16:11 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-06-12 16:11 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-06-12 16:11 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-06-12 16:11 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-06-12 16:11 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-06-12 16:11 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-06-12 16:11 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-06-12 16:11 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-06-12 16:11 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-06-12 16:11 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-06-12 16:11 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-06-12 16:11 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-06-12 16:11 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-06-12 16:11 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-06-12 16:11 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-06-12 16:11 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-06-12 16:11 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-06-08 20:00 - 2014-05-13 19:03 - 00004580 _____ () C:\Users\johan\Downloads\reloaded.nfo 2014-06-08 19:57 - 2014-06-08 19:56 - 00105559 _____ () C:\Users\johan\Downloads\rld-thwadese.part26 - Kopie.rar 2014-06-08 19:57 - 2014-05-13 18:59 - 2647752704 _____ () C:\Users\johan\Downloads\rld-thwadese.iso 2014-06-08 19:56 - 2014-06-08 19:56 - 00105559 _____ () C:\Users\johan\Downloads\rld-thwadese.part26.rar 2014-06-08 19:52 - 2014-06-08 19:54 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part08.rar 2014-06-08 19:49 - 2014-06-08 19:53 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part23.rar 2014-06-08 19:49 - 2014-06-08 19:52 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part21.rar 2014-06-08 19:46 - 2014-06-08 19:49 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part17.rar 2014-06-08 19:45 - 2014-06-08 19:49 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part25.rar 2014-06-08 19:42 - 2014-06-08 19:46 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part20.rar 2014-06-08 19:42 - 2014-06-08 19:45 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part15.rar 2014-06-08 19:40 - 2014-06-08 19:42 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part04.rar 2014-06-08 19:38 - 2014-06-08 19:42 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part02.rar 2014-06-08 19:35 - 2014-06-08 19:38 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part16.rar 2014-06-08 19:33 - 2014-06-08 19:40 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part12.rar 2014-06-08 19:33 - 2014-06-08 19:35 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part22.rar 2014-06-08 19:30 - 2014-06-08 19:33 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part09.rar 2014-06-08 19:29 - 2014-06-08 19:56 - 00052779 _____ () C:\Users\johan\Downloads\rld-thwadese.part26.rar.part 2014-06-08 19:29 - 2014-06-08 19:33 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part13.rar 2014-06-08 19:28 - 2014-06-08 19:30 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part07.rar 2014-06-08 19:25 - 2014-06-08 19:27 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part06.rar 2014-06-08 19:24 - 2014-06-08 19:29 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part19.rar 2014-06-08 19:22 - 2014-06-08 19:24 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part03.rar 2014-06-08 19:20 - 2014-06-08 19:22 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part01.rar 2014-06-08 19:17 - 2014-06-08 19:25 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part18.rar 2014-06-08 19:17 - 2014-06-08 19:20 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part24.rar 2014-06-08 19:13 - 2014-06-08 19:17 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part14.rar 2014-06-08 19:13 - 2014-06-08 19:17 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part05.rar 2014-06-08 19:09 - 2014-06-08 19:13 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part11.rar 2014-06-08 19:09 - 2014-06-08 19:13 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part10.rar 2014-06-07 14:19 - 2014-06-07 14:19 - 547447037 _____ () C:\Windows\MEMORY.DMP 2014-06-07 14:19 - 2014-06-07 14:19 - 00292472 _____ () C:\Windows\Minidump\060714-49733-01.dmp 2014-05-18 16:31 - 2014-05-18 16:31 - 00292360 _____ () C:\Windows\Minidump\051814-23649-01.dmp 2014-05-16 00:37 - 2014-05-16 00:37 - 07014472 _____ () C:\Users\johan\Desktop\yusufff(2).odt 2014-05-16 00:31 - 2014-05-16 00:37 - 07014508 _____ () C:\Users\johan\Downloads\yusufff(2).odt 2014-05-15 00:20 - 2014-05-15 00:30 - 03007086 _____ () C:\Users\johan\Desktop\yusufff(1).odt 2014-05-15 00:08 - 2014-05-15 00:20 - 03006432 _____ () C:\Users\johan\Downloads\yusufff(1).odt 2014-05-14 22:32 - 2014-05-14 22:32 - 00000000 ____D () C:\Users\johan\AppData\Roaming\WTablet 2014-05-14 22:32 - 2014-05-14 22:32 - 00000000 ____D () C:\Users\johan\.android 2014-05-14 22:28 - 2014-05-15 00:11 - 66057455 _____ () C:\Users\johan\Desktop\Deckblatt.psd 2014-05-14 22:12 - 2014-05-14 22:12 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wacom Tablett 2014-05-14 22:12 - 2014-05-14 22:12 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_wacomrouterfilter_01009.Wdf 2014-05-14 22:12 - 2014-05-14 22:12 - 00000000 ____D () C:\Program Files\TabletPlugins 2014-05-14 22:12 - 2014-05-14 22:12 - 00000000 ____D () C:\Program Files (x86)\TabletPlugins 2014-05-14 22:11 - 2014-05-14 22:11 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_wachidrouter_01009.Wdf 2014-05-14 22:11 - 2014-03-17 18:13 - 00015160 _____ (Wacom Technology) C:\Windows\system32\Drivers\wacomrouterfilter.sys 2014-05-14 22:10 - 2014-05-14 22:12 - 00000000 ____D () C:\Program Files\Tablet 2014-05-14 22:10 - 2014-04-22 00:30 - 01946904 _____ (Wacom Technology, Corp.) C:\Windows\system32\WacomMT.dll 2014-05-14 22:10 - 2014-04-22 00:30 - 01929496 _____ (Wacom Technology, Corp.) C:\Windows\system32\Wacom_Tablet.dll 2014-05-14 22:10 - 2014-04-22 00:30 - 01922328 _____ (Wacom Technology, Corp.) C:\Windows\system32\Wacom_Touch_Tablet.dll 2014-05-14 22:10 - 2014-04-22 00:30 - 01796888 _____ (Wacom Technology, Corp.) C:\Windows\system32\Wintab32.dll 2014-05-14 22:10 - 2014-04-22 00:30 - 01563416 _____ (Wacom Technology, Corp.) C:\Windows\SysWOW64\Wacom_Tablet.dll 2014-05-14 22:10 - 2014-04-22 00:30 - 01560344 _____ (Wacom Technology, Corp.) C:\Windows\SysWOW64\WacomMT.dll 2014-05-14 22:10 - 2014-04-22 00:30 - 01556760 _____ (Wacom Technology, Corp.) C:\Windows\SysWOW64\Wacom_Touch_Tablet.dll 2014-05-14 22:10 - 2014-04-22 00:30 - 01443096 _____ (Wacom Technology, Corp.) C:\Windows\SysWOW64\Wintab32.dll 2014-05-14 22:10 - 2014-03-17 18:13 - 00095032 _____ (Wacom Technology) C:\Windows\system32\Drivers\wachidrouter.sys 2014-05-14 22:10 - 2014-03-17 18:13 - 00014136 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\hidkmdf.sys 2014-05-14 22:10 - 2012-12-12 00:12 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wdfcoinstaller01009.dll 2014-05-14 22:07 - 2014-05-14 22:08 - 39544032 _____ () C:\Users\johan\Downloads\pro638-4.exe 2014-05-14 22:01 - 2014-05-14 22:01 - 01681536 _____ () C:\Users\johan\Downloads\yusufff.odt ==================== One Month Modified Files and Folders ======= 2014-06-13 16:22 - 2014-06-13 16:22 - 00011437 _____ () C:\Users\johan\Downloads\FRST.txt 2014-06-13 16:22 - 2014-06-13 16:21 - 00000000 ____D () C:\FRST 2014-06-13 16:22 - 2013-10-18 02:41 - 00000000 ____D () C:\Users\johan\AppData\Local\Temp 2014-06-13 16:21 - 2014-06-13 16:21 - 02081792 _____ (Farbar) C:\Users\johan\Downloads\FRST64.exe 2014-06-13 16:20 - 2013-10-18 02:41 - 01081295 _____ () C:\Windows\WindowsUpdate.log 2014-06-13 04:48 - 2014-06-13 04:43 - 00007659 _____ () C:\Users\johan\Downloads\hijackthis.log 2014-06-13 04:43 - 2014-06-13 04:43 - 00388608 _____ (Trend Micro Inc.) C:\Users\johan\Downloads\HijackThis.exe 2014-06-13 04:43 - 2013-10-18 02:41 - 00000000 ____D () C:\Users\johan\AppData\Local\VirtualStore 2014-06-13 04:16 - 2013-10-19 14:33 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-06-13 02:00 - 2013-11-07 03:14 - 00000000 ____D () C:\Users\johan\AppData\Local\Adobe 2014-06-13 01:12 - 2014-05-10 14:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-06-12 20:27 - 2009-07-14 06:45 - 00015792 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-12 20:27 - 2009-07-14 06:45 - 00015792 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-12 20:22 - 2013-11-01 20:03 - 00000000 ____D () C:\Temp 2014-06-12 20:21 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-12 20:20 - 2013-10-18 06:14 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-06-12 20:20 - 2009-07-14 06:51 - 00034937 _____ () C:\Windows\setupact.log 2014-06-12 17:57 - 2013-10-19 19:17 - 00000000 ____D () C:\Windows\system32\MRT 2014-06-12 17:54 - 2013-10-19 19:17 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-06-12 14:30 - 2013-11-13 00:14 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-06-08 20:24 - 2013-10-20 01:11 - 00000000 ____D () C:\Users\johan\Documents\Telltale Games 2014-06-08 20:11 - 2013-12-18 16:03 - 00000000 ____D () C:\Program Files (x86)\The Walking Dead Season 2 2014-06-08 20:06 - 2013-12-18 16:05 - 00000954 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Walking Dead Season 2.lnk 2014-06-08 20:06 - 2013-12-18 16:05 - 00000942 _____ () C:\Users\Public\Desktop\The Walking Dead Season 2.lnk 2014-06-08 19:56 - 2014-06-08 19:57 - 00105559 _____ () C:\Users\johan\Downloads\rld-thwadese.part26 - Kopie.rar 2014-06-08 19:56 - 2014-06-08 19:56 - 00105559 _____ () C:\Users\johan\Downloads\rld-thwadese.part26.rar 2014-06-08 19:56 - 2014-06-08 19:29 - 00052779 _____ () C:\Users\johan\Downloads\rld-thwadese.part26.rar.part 2014-06-08 19:54 - 2014-06-08 19:52 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part08.rar 2014-06-08 19:53 - 2014-06-08 19:49 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part23.rar 2014-06-08 19:52 - 2014-06-08 19:49 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part21.rar 2014-06-08 19:49 - 2014-06-08 19:46 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part17.rar 2014-06-08 19:49 - 2014-06-08 19:45 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part25.rar 2014-06-08 19:46 - 2014-06-08 19:42 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part20.rar 2014-06-08 19:45 - 2014-06-08 19:42 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part15.rar 2014-06-08 19:42 - 2014-06-08 19:40 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part04.rar 2014-06-08 19:42 - 2014-06-08 19:38 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part02.rar 2014-06-08 19:40 - 2014-06-08 19:33 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part12.rar 2014-06-08 19:38 - 2014-06-08 19:35 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part16.rar 2014-06-08 19:35 - 2014-06-08 19:33 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part22.rar 2014-06-08 19:33 - 2014-06-08 19:30 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part09.rar 2014-06-08 19:33 - 2014-06-08 19:29 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part13.rar 2014-06-08 19:30 - 2014-06-08 19:28 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part07.rar 2014-06-08 19:29 - 2014-06-08 19:24 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part19.rar 2014-06-08 19:27 - 2014-06-08 19:25 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part06.rar 2014-06-08 19:25 - 2014-06-08 19:17 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part18.rar 2014-06-08 19:24 - 2014-06-08 19:22 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part03.rar 2014-06-08 19:22 - 2014-06-08 19:20 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part01.rar 2014-06-08 19:20 - 2014-06-08 19:17 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part24.rar 2014-06-08 19:17 - 2014-06-08 19:13 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part14.rar 2014-06-08 19:17 - 2014-06-08 19:13 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part05.rar 2014-06-08 19:13 - 2014-06-08 19:09 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part11.rar 2014-06-08 19:13 - 2014-06-08 19:09 - 105906176 _____ () C:\Users\johan\Downloads\rld-thwadese.part10.rar 2014-06-07 14:19 - 2014-06-07 14:19 - 547447037 _____ () C:\Windows\MEMORY.DMP 2014-06-07 14:19 - 2014-06-07 14:19 - 00292472 _____ () C:\Windows\Minidump\060714-49733-01.dmp 2014-06-07 14:19 - 2013-11-10 20:32 - 00000000 ____D () C:\Windows\Minidump 2014-06-06 02:44 - 2013-10-19 15:56 - 00141576 _____ () C:\Windows\DirectX.log 2014-05-30 12:21 - 2014-06-12 16:11 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-30 12:02 - 2014-06-12 16:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-30 12:02 - 2014-06-12 16:11 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-05-30 11:45 - 2014-06-12 16:11 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-30 11:39 - 2014-06-12 16:11 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-05-30 11:39 - 2014-06-12 16:11 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-30 11:38 - 2014-06-12 16:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-05-30 11:28 - 2014-06-12 16:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-30 11:27 - 2014-06-12 16:11 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-30 11:24 - 2014-06-12 16:11 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-30 11:21 - 2014-06-12 16:11 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-05-30 11:21 - 2014-06-12 16:11 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-05-30 11:20 - 2014-06-12 16:11 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-05-30 11:18 - 2014-06-12 16:11 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-30 11:11 - 2014-06-12 16:11 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-05-30 11:08 - 2014-06-12 16:11 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-30 11:06 - 2014-06-12 16:11 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-05-30 11:02 - 2014-06-12 16:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-30 10:55 - 2014-06-12 16:11 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-05-30 10:49 - 2014-06-12 16:11 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-30 10:46 - 2014-06-12 16:11 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-30 10:44 - 2014-06-12 16:11 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-05-30 10:44 - 2014-06-12 16:11 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-05-30 10:43 - 2014-06-12 16:11 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-05-30 10:42 - 2014-06-12 16:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-05-30 10:38 - 2014-06-12 16:11 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-05-30 10:35 - 2014-06-12 16:11 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-30 10:34 - 2014-06-12 16:11 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-05-30 10:33 - 2014-06-12 16:11 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-05-30 10:30 - 2014-06-12 16:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-05-30 10:29 - 2014-06-12 16:11 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-30 10:28 - 2014-06-12 16:11 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-05-30 10:27 - 2014-06-12 16:11 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-05-30 10:24 - 2014-06-12 16:11 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-05-30 10:23 - 2014-06-12 16:11 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-05-30 10:16 - 2014-06-12 16:11 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-05-30 10:10 - 2014-06-12 16:11 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-05-30 10:06 - 2014-06-12 16:11 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-05-30 10:04 - 2014-06-12 16:11 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-30 10:02 - 2014-06-12 16:11 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-05-30 09:56 - 2014-06-12 16:11 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-05-30 09:56 - 2014-06-12 16:11 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-30 09:54 - 2014-06-12 16:11 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-05-30 09:50 - 2014-06-12 16:11 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-05-30 09:49 - 2014-06-12 16:11 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-05-30 09:43 - 2014-06-12 16:11 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-30 09:40 - 2014-06-12 16:11 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-05-30 09:30 - 2014-06-12 16:11 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-30 09:21 - 2014-06-12 16:11 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-05-30 09:15 - 2014-06-12 16:11 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-05-30 09:13 - 2014-06-12 16:11 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-05-30 09:13 - 2014-06-12 16:11 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-05-28 00:02 - 2013-10-19 18:48 - 00005154 _____ () C:\Users\johan\Downloads\wScreenshot.settings 2014-05-18 17:00 - 2013-11-10 00:20 - 00000000 ____D () C:\Program Files\Core Temp 2014-05-18 16:31 - 2014-05-18 16:31 - 00292360 _____ () C:\Windows\Minidump\051814-23649-01.dmp 2014-05-16 00:37 - 2014-05-16 00:37 - 07014472 _____ () C:\Users\johan\Desktop\yusufff(2).odt 2014-05-16 00:37 - 2014-05-16 00:31 - 07014508 _____ () C:\Users\johan\Downloads\yusufff(2).odt 2014-05-15 01:50 - 2013-10-19 08:22 - 00000000 ____D () C:\Users\johan\AppData\Roaming\vlc 2014-05-15 00:30 - 2014-05-15 00:20 - 03007086 _____ () C:\Users\johan\Desktop\yusufff(1).odt 2014-05-15 00:20 - 2014-05-15 00:08 - 03006432 _____ () C:\Users\johan\Downloads\yusufff(1).odt 2014-05-15 00:11 - 2014-05-14 22:28 - 66057455 _____ () C:\Users\johan\Desktop\Deckblatt.psd 2014-05-14 22:34 - 2013-10-19 14:38 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-14 22:34 - 2013-10-19 14:38 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-14 22:32 - 2014-05-14 22:32 - 00000000 ____D () C:\Users\johan\AppData\Roaming\WTablet 2014-05-14 22:32 - 2014-05-14 22:32 - 00000000 ____D () C:\Users\johan\.android 2014-05-14 22:32 - 2013-10-18 02:41 - 00000000 ____D () C:\Users\johan 2014-05-14 22:12 - 2014-05-14 22:12 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wacom Tablett 2014-05-14 22:12 - 2014-05-14 22:12 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_wacomrouterfilter_01009.Wdf 2014-05-14 22:12 - 2014-05-14 22:12 - 00000000 ____D () C:\Program Files\TabletPlugins 2014-05-14 22:12 - 2014-05-14 22:12 - 00000000 ____D () C:\Program Files (x86)\TabletPlugins 2014-05-14 22:12 - 2014-05-14 22:10 - 00000000 ____D () C:\Program Files\Tablet 2014-05-14 22:11 - 2014-05-14 22:11 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_wachidrouter_01009.Wdf 2014-05-14 22:08 - 2014-05-14 22:07 - 39544032 _____ () C:\Users\johan\Downloads\pro638-4.exe 2014-05-14 22:01 - 2014-05-14 22:01 - 01681536 _____ () C:\Users\johan\Downloads\yusufff.odt 2014-05-14 03:28 - 2013-10-18 02:41 - 00000000 ___RD () C:\Users\johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-14 03:28 - 2013-10-18 02:41 - 00000000 ___RD () C:\Users\johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-14 03:24 - 2013-10-19 14:23 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-14 03:02 - 2009-07-14 19:58 - 00696832 _____ () C:\Windows\system32\perfh007.dat 2014-05-14 03:02 - 2009-07-14 19:58 - 00148128 _____ () C:\Windows\system32\perfc007.dat 2014-05-14 03:02 - 2009-07-14 07:13 - 01634396 _____ () C:\Windows\system32\PerfStringBackup.INI Some content of TEMP: ==================== C:\Users\johan\AppData\Local\Temp\BASSMOD.dll C:\Users\johan\AppData\Local\Temp\Checkupdate.exe C:\Users\johan\AppData\Local\Temp\Foxit Reader Updater.exe C:\Users\johan\AppData\Local\Temp\Foxit Updater.exe C:\Users\johan\AppData\Local\Temp\fp_pl_pfs_installer-1.exe C:\Users\johan\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\johan\AppData\Local\Temp\gcapi_dll.dll C:\Users\johan\AppData\Local\Temp\gtapi_signed.dll C:\Users\johan\AppData\Local\Temp\MotoCast_Installer_2.0403.exe C:\Users\johan\AppData\Local\Temp\nv3DVStreaming.dll C:\Users\johan\AppData\Local\Temp\nvSCPAPI.dll C:\Users\johan\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\johan\AppData\Local\Temp\nvSCPAPISvr.exe C:\Users\johan\AppData\Local\Temp\nvStereoApiI.dll C:\Users\johan\AppData\Local\Temp\nvStInst.exe C:\Users\johan\AppData\Local\Temp\Quarantine.exe C:\Users\johan\AppData\Local\Temp\sfamcc00001.dll C:\Users\johan\AppData\Local\Temp\sfextra.dll C:\Users\johan\AppData\Local\Temp\_is3684.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-04-22 23:43 ==================== End Of Log ============================ Addition.txt: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-06-2014 02 Ran by johan at 2014-06-13 16:23:06 Running from C:\Users\johan\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) AbiWord 2.9.4 (HKLM-x32\...\AbiWord2) (Version: 2.9.4 - AbiSource Developers) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Photoshop CC (HKLM-x32\...\{2D99B50E-431D-4AA8-85C1-172A6F8BCF09}) (Version: 14.0 - Adobe Systems Incorporated) Android Remote Server (HKLM-x32\...\AndroidRemote) (Version: - ) avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2013 - Avast Software) BGB-Kommentar (HKLM-x32\...\{4D7E3776-89D4-48A9-8FC4-5CECFA7DADF4}) (Version: 1.0 - Wolters Kluwer Deutschland Information Services GmbH) BioShock Infinite (HKLM-x32\...\BioShock Infinite_is1) (Version: - ) BioShock Infinite Burial at Sea Episode One DLC Plus Update v1.1.23.63123 1.0 (HKLM-x32\...\BioShock Infinite Burial at Sea Episode One DLC Plus Update v1.1.23.63123 1.0) (Version: - ) Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 3.1.04059 - Cisco Systems, Inc.) Cisco AnyConnect Secure Mobility Client (x32 Version: 3.1.04059 - Cisco Systems, Inc.) Hidden Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) CloudReading (HKLM-x32\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 1.1.47.1220 - Foxit Corporation) Connectify (HKLM\...\Connectify) (Version: 3.2.0.22201 - Connectify) Core Temp 1.0 RC6 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.0 - Alcpu) CPUID CPU-Z 1.67 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CrystalDiskInfo 6.0.0 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.0.0 - Crystal Dew World) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) f.lux (HKCU\...\Flux) (Version: - ) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.1.2.1224 - Foxit Corporation) Geeks3D FurMark 1.13.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D) Hauppauge WinTV 7 (HKLM-x32\...\Hauppauge WinTV 7) (Version: v7.0.31161 (CD 2.8a) - Hauppauge Computer Works) Hauppauge WinTV Location Manager (HKLM-x32\...\Hauppauge WinTV Location Manager) (Version: - ) Intel(R) Network Connections 18.7.28.0 (HKLM\...\PROSetDX) (Version: 18.7.28.0 - Intel) Intel(R) Network Connections 18.7.28.0 (Version: 18.7.28.0 - Intel) Hidden JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) Kentucky Route Zero (HKLM-x32\...\Steam App 231200) (Version: - Cardboard Computer) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Mark of the Ninja (HKLM-x32\...\Steam App 214560) (Version: - Klei Entertainment) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{D285FC5F-3021-32E9-9C59-24CA325BDC5C}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{86CE1746-9EFF-3C9C-8755-81EA8903AC34}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Motorola Device Manager (HKLM-x32\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.4.3 - Motorola Mobility) Motorola Device Software Update (x32 Version: 13.07.3101 - Motorola Mobility) Hidden Motorola Mobile Drivers Installation 6.2.0 (HKLM\...\{8EC78F02-5C36-4C97-AAC4-95A3D742A285}) (Version: 6.2.0 - Motorola Inc.) Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) MSI Afterburner 2.3.1 (HKLM-x32\...\Afterburner) (Version: 2.3.1 - MSI Co., LTD) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Natural Selection 2 (HKLM-x32\...\Steam App 4920) (Version: - Unknown Worlds Entertainment) NirSoft BlueScreenView (HKLM-x32\...\NirSoft BlueScreenView) (Version: - ) No23 Recorder (HKLM-x32\...\{22B0E143-2B0B-435B-9F56-136A3D16065F}) (Version: 2.1.0.3 - No23) NVIDIA 3D Vision Controller-Treiber 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 331.65 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 331.58 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.58 - NVIDIA Corporation) NVIDIA Grafiktreiber 331.58 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.58 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.140.952 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.0725 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3158 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 331.58 (Version: 331.58 - NVIDIA Corporation) Hidden OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.2.1.4399 - Electronic Arts, Inc.) PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6873 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver and Utility (HKLM-x32\...\{9C049499-055C-4a0c-A916-1D8CA1FF45EB}) (Version: 1.00.0187 - REALTEK Semiconductor Corp.) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) The Elder Scrolls V - Skyrim Legendary AiO Special Mod Edition (HKLM-x32\...\{ABE4A2FD-E0AD-4C84-8007-6F058B0B0734}) (Version: 1.9.32 - Bethesda Softworks) The Stanley Parable (HKLM-x32\...\The Stanley Parable_is1) (Version: - ) The Walking Dead: Season 2 Episode 3 (HKLM-x32\...\VGhlV2Fsa2luZ0RlYWRTZWFzb24y_is1) (Version: 1 - ) The Wolf Among Us (HKLM-x32\...\Steam App 250320) (Version: - ) UltraISO Premium V9.53 (HKLM-x32\...\UltraISO_is1) (Version: - ) Unreal Tournament 2004 (HKLM-x32\...\Unreal Tournament 2004_is1) (Version: - GOG.com) VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden VLC media player 2.1.0 (HKLM\...\VLC media player) (Version: 2.1.0 - VideoLAN) Wacom Tablett (HKLM\...\Wacom Tablet Driver) (Version: 6.3.8-4 - Wacom Technology Corp.) WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.) ==================== Restore Points ========================= ==================== Hosts content: ========================== 2009-07-14 04:34 - 2013-11-07 03:31 - 00001132 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 activate.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com 127.0.0.1 na1r.services.adobe.com 127.0.0.1 hlrcv.stage.adobe.com ==================== Scheduled Tasks (whitelisted) ============= Task: {129AF4E6-2C14-461A-B5FF-20E2FC0E7E2F} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-02-03] (AVAST Software) Task: {1E767338-A60D-40AB-B64D-690ACE9D831A} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation) Task: {215554A9-EF08-4D6E-81D7-DE8086641C4F} - System32\Tasks\Motorola Device Manager Engine => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-07-31] () Task: {650A2661-F140-44EA-B7D6-82A8E3FC4DAD} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-07-31] () Task: {8896C9CF-2F5F-4CD9-B6AE-4633589CC3D0} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-07-31] () Task: {EC463AF0-C746-4037-AAFD-BF0969E6397A} - System32\Tasks\AdobeAAMUpdater-1.0-johan-PC-johan => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-03-21] (Adobe Systems Incorporated) ==================== Loaded Modules (whitelisted) ============= 2011-12-01 21:55 - 2011-12-01 21:55 - 00069632 _____ () C:\Program Files (x86)\Connectify\ConnectifyService.exe 2013-10-18 06:14 - 2013-10-15 23:47 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-05-14 22:10 - 2014-04-22 00:30 - 01356568 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll 2013-10-18 05:30 - 2013-05-20 23:05 - 00069120 _____ () C:\Users\johan\Desktop\stick\meinedaten\Daten\Miranda IM\zlib.dll 2013-10-18 05:30 - 2013-05-20 23:09 - 00033792 _____ () C:\Users\johan\Desktop\stick\meinedaten\Daten\Miranda IM\Plugins\dbx_mmap.dll 2013-10-18 05:30 - 2013-05-20 23:12 - 00064512 _____ () C:\Users\johan\Desktop\stick\meinedaten\Daten\Miranda IM\Plugins\clist_classic.dll 2013-10-18 05:30 - 2013-05-20 23:10 - 00251904 _____ () C:\Users\johan\Desktop\stick\meinedaten\Daten\Miranda IM\Plugins\chat.dll 2013-10-18 05:30 - 2013-05-20 23:10 - 00427520 _____ () C:\Users\johan\Desktop\stick\meinedaten\Daten\Miranda IM\Plugins\icq.dll 2013-10-18 05:30 - 2013-05-20 23:05 - 00402944 _____ () C:\Users\johan\Desktop\stick\meinedaten\Daten\Miranda IM\Plugins\irc.dll 2013-10-18 05:30 - 2013-05-20 23:11 - 00093184 _____ () C:\Users\johan\Desktop\stick\meinedaten\Daten\Miranda IM\Plugins\srmm.dll 2013-11-10 00:20 - 2013-10-08 14:23 - 00890016 _____ () C:\Program Files\Core Temp\Core Temp.exe 2011-12-01 21:55 - 2011-12-01 21:55 - 00354120 _____ () C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe 2013-06-19 17:00 - 2013-06-19 17:00 - 00063376 _____ () C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\zlib1.dll 2014-06-12 14:31 - 2014-06-12 10:06 - 02775040 _____ () C:\Program Files\AVAST Software\Avast\defs\14061200\algo.dll 2014-06-13 16:20 - 2014-06-13 09:50 - 02775040 _____ () C:\Program Files\AVAST Software\Avast\defs\14061300\algo.dll 2013-10-19 00:35 - 2011-08-23 10:04 - 00057344 _____ () C:\Program Files (x86)\WinTV\TVServer\libhdhomerun.dll 2013-10-19 00:35 - 2013-05-15 13:15 - 00025600 _____ () C:\Program Files (x86)\WinTV\TVServer\HauppaugeTVServerps.dll 2011-12-01 21:55 - 2011-12-01 21:55 - 00021832 _____ () C:\Program Files (x86)\Connectify\DriverLib.dll 2011-12-01 21:55 - 2011-12-01 21:55 - 00441160 _____ () C:\Program Files (x86)\Connectify\ConnectifyNAT.dll 2011-12-01 21:55 - 2011-12-01 21:55 - 00012104 _____ () C:\Program Files (x86)\Connectify\BuildProps.dll 2011-12-01 21:55 - 2011-12-01 21:55 - 00669000 _____ () C:\Program Files (x86)\Connectify\Vendors.dll 2011-12-01 21:55 - 2011-12-01 21:55 - 00066888 _____ () C:\Program Files (x86)\Connectify\NativeLibrary.dll 2011-12-01 21:55 - 2011-12-01 21:55 - 00024904 _____ () C:\Program Files (x86)\Connectify\gma.Windows.Firewall.dll 2013-06-20 23:35 - 2013-06-20 23:35 - 00172032 _____ () C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\css_core.dll 2013-11-05 21:14 - 2009-12-09 22:20 - 00126976 _____ () C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\EnumDevLib.dll 2013-10-19 00:18 - 2013-10-19 00:18 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-05-10 14:45 - 2014-05-10 14:45 - 03839088 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-05-14 22:34 - 2014-05-14 22:34 - 16361136 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll 2011-12-01 21:55 - 2011-12-01 21:55 - 00040264 _____ () C:\Program Files (x86)\Connectify\Scannify.dll 2011-12-01 21:55 - 2011-12-01 21:55 - 00024904 _____ () C:\Program Files (x86)\Connectify\Network.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AutoStart IR.lnk => C:\Windows\pss\AutoStart IR.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WinTV Recording Status.lnk => C:\Windows\pss\WinTV Recording Status.lnk.CommonStartup MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCEPServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: Cisco AnyConnect Secure Mobility Agent for Windows => "C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe" -minimized MSCONFIG\startupreg: Connectify => C:\Program Files (x86)\Connectify\Connectify.exe MSCONFIG\startupreg: Nvtmru => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent ==================== Faulty Device Manager Devices ============= Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: vpnva Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: SM-Bus-Controller Description: SM-Bus-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (06/12/2014 02:37:56 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm dota.exe, Version 0.0.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1de4 Startzeit: 01cf85d66d97c1d0 Endzeit: 181 Anwendungspfad: C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\dota.exe Berichts-ID: Error: (06/11/2014 02:12:37 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Steam.exe, Version 2.25.32.45 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1678 Startzeit: 01cf83516bde6325 Endzeit: 1535 Anwendungspfad: C:\Program Files (x86)\Steam\Steam.exe Berichts-ID: 1352a65e-f0fd-11e3-a5ab-0087341e4916 Error: (06/07/2014 02:21:52 PM) (Source: WTabletServicePro) (EventID: 1) (User: ) Description: Prefs: Failed to get user path Error: (06/07/2014 02:53:32 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm WinTV7.exe, Version 1.0.31116.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1514 Startzeit: 01cf81d70f794f71 Endzeit: 49 Anwendungspfad: C:\Program Files (x86)\WinTV\WinTV7\WinTV7.exe Berichts-ID: Error: (06/05/2014 00:12:34 AM) (Source: WTabletServicePro) (EventID: 1) (User: ) Description: Prefs: Failed to get user path Error: (06/03/2014 11:05:53 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: WinTV7.exe, Version: 1.0.31116.0, Zeitstempel: 0x517ea002 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000 ID des fehlerhaften Prozesses: 0x40ec Startzeit der fehlerhaften Anwendung: 0xWinTV7.exe0 Pfad der fehlerhaften Anwendung: WinTV7.exe1 Pfad des fehlerhaften Moduls: WinTV7.exe2 Berichtskennung: WinTV7.exe3 Error: (05/21/2014 10:41:14 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm IEXPLORE.EXE, Version 11.0.9600.17041 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 22f4 Startzeit: 01cf7534efa0cc0a Endzeit: 6 Anwendungspfad: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Berichts-ID: Error: (05/18/2014 03:01:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: WinTV7.exe, Version: 1.0.31116.0, Zeitstempel: 0x517ea002 Name des fehlerhaften Moduls: AcXtrnal.DLL, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bd98a Ausnahmecode: 0xc0000374 Fehleroffset: 0x00008518 ID des fehlerhaften Prozesses: 0x14f0 Startzeit der fehlerhaften Anwendung: 0xWinTV7.exe0 Pfad der fehlerhaften Anwendung: WinTV7.exe1 Pfad des fehlerhaften Moduls: WinTV7.exe2 Berichtskennung: WinTV7.exe3 Error: (05/14/2014 03:26:51 AM) (Source: .NET Runtime Optimization Service) (EventID: 1107) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to execute command from the offline queue: uninstall "System.Web.RegularExpressions, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (05/05/2014 01:43:19 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SndVol.exe, Version: 6.1.7601.17514, Zeitstempel: 0x4ce7aced Name des fehlerhaften Moduls: SndVol.exe, Version: 6.1.7601.17514, Zeitstempel: 0x4ce7aced Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000001d669 ID des fehlerhaften Prozesses: 0x1be8 Startzeit der fehlerhaften Anwendung: 0xSndVol.exe0 Pfad der fehlerhaften Anwendung: SndVol.exe1 Pfad des fehlerhaften Moduls: SndVol.exe2 Berichtskennung: SndVol.exe3 System errors: ============= Error: (06/13/2014 02:27:13 AM) (Source: ipnathlp) (EventID: 30013) (User: ) Description: 192.168.84.1192.168.173.0255.255.255.0 Error: (06/13/2014 01:27:13 AM) (Source: volsnap) (EventID: 36) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. Error: (06/12/2014 08:21:55 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom Error: (06/10/2014 11:21:45 PM) (Source: volsnap) (EventID: 36) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. Error: (06/10/2014 10:29:27 PM) (Source: ipnathlp) (EventID: 30013) (User: ) Description: 192.168.84.1192.168.173.0255.255.255.0 Error: (06/07/2014 07:42:05 PM) (Source: ipnathlp) (EventID: 30013) (User: ) Description: 192.168.84.1192.168.173.0255.255.255.0 Error: (06/07/2014 07:40:10 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom Error: (06/07/2014 06:35:26 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom Error: (06/07/2014 06:34:59 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst vpnagent erreicht. Error: (06/07/2014 02:20:35 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom Microsoft Office Sessions: ========================= Error: (06/12/2014 02:37:56 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: dota.exe0.0.0.01de401cf85d66d97c1d0181C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\dota.exe Error: (06/11/2014 02:12:37 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Steam.exe2.25.32.45167801cf83516bde63251535C:\Program Files (x86)\Steam\Steam.exe1352a65e-f0fd-11e3-a5ab-0087341e4916 Error: (06/07/2014 02:21:52 PM) (Source: WTabletServicePro) (EventID: 1) (User: ) Description: Prefs: Failed to get user path Error: (06/07/2014 02:53:32 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: WinTV7.exe1.0.31116.0151401cf81d70f794f7149C:\Program Files (x86)\WinTV\WinTV7\WinTV7.exe Error: (06/05/2014 00:12:34 AM) (Source: WTabletServicePro) (EventID: 1) (User: ) Description: Prefs: Failed to get user path Error: (06/03/2014 11:05:53 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: WinTV7.exe1.0.31116.0517ea002unknown0.0.0.000000000c00000050000000040ec01cf7f55981bad93C:\Program Files (x86)\WinTV\WinTV7\WinTV7.exeunknownd8de6333-eb62-11e3-bb00-0026185fa75a Error: (05/21/2014 10:41:14 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: IEXPLORE.EXE11.0.9600.1704122f401cf7534efa0cc0a6C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Error: (05/18/2014 03:01:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: WinTV7.exe1.0.31116.0517ea002AcXtrnal.DLL6.1.7600.163854a5bd98ac00003740000851814f001cf71e0276cb7b3C:\Program Files (x86)\WinTV\WinTV7\WinTV7.exeC:\Windows\AppPatch\AcXtrnal.DLLf0a87fcc-de27-11e3-8f68-0026185fa75a Error: (05/14/2014 03:26:51 AM) (Source: .NET Runtime Optimization Service) (EventID: 1107) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to execute command from the offline queue: uninstall "System.Web.RegularExpressions, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (05/05/2014 01:43:19 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: SndVol.exe6.1.7601.175144ce7acedSndVol.exe6.1.7601.175144ce7acedc0000005000000000001d6691be801cf6736692d6308C:\Windows\system32\SndVol.exeC:\Windows\system32\SndVol.exede7940d8-d3e5-11e3-8a86-0026185fa75a ==================== Memory info =========================== Percentage of memory in use: 25% Total physical RAM: 8131.2 MB Available physical RAM: 6044.27 MB Total Pagefile: 16260.59 MB Available Pagefile: 13223.5 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:232.88 GB) (Free:7.67 GB) NTFS ==>[Drive with boot components (obtained from BCD)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 00000001) Partition 1: (Active) - (Size=233 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
14.06.2014, 15:11 | #4 | |
/// the machine /// TB-Ausbilder | Google lädt nichtZitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Google lädt nicht |
adobe, antivirus, avast, bho, computer, explorer, file, google, hijack, hijackthis, hkus\s-1-5-18, internet, internet explorer, log, log file, logfile, microsoft, monitor.exe, mozilla, nvidia, realtek, secure, security, updates, usb, windows, wmp |