|
Log-Analyse und Auswertung: Windows 7: 0xc000007b-Fehler bei diversen ProgrammenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
18.06.2014, 21:27 | #1 |
| Windows 7: 0xc000007b-Fehler bei diversen Programmen Hallo! Ich habe schon seit längerem ein Problem: beim Starten diverser Anwendungen (z.B. Origin) erscheint ein laut Google schon bekannter Fehler: "Die Anwendung konnte nicht korrekt gestartet werden (0xc0000007b). Klicken Sie auf "OK", um die Anwendung zu schließen." Zuallererst hab ich natürlich Google befragt und wurde gleich mit verschiedenen Lösungsvorschlägen bombardiert. Viele davon bezogen sich auf das Microsoft .NET Framework, das nicht korrekt installiert ist. Daher habe ich versucht, alle .NET-Frameworks neu zu installieren. Hat nichts gebracht. Also weitergesucht. (Auch bei Trojaner-Board, hab aber nur http://www.trojaner-board.de/93435-f...rogrammen.html gefunden, was mir nicht viel gebracht hat) Dann kam ich auf eine Seite, wo von der urlmon.dll gesprochen wurde. Die hatte ich letztens auch neu runtergeladen und in System32 gepackt, weil sie gewisse Ordnungszahlen nicht gefunden hatte. Danach hat mein PC eine Weile lang nicht mehr rumgemeckert und jetzt kommt seit Ewigkeiten der o.g. Fehler. Das ist alles, was ich bis jetzt an Ansätzen zusammen hab. (Virenscan hat auch nichts gebracht) Dies ist mein erster Post, von daher klatsch ich jetzt einfach mal alle Logs rein, die in den Anleitungen standen. HijackThis: Code:
ATTFilter Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 21:33:48, on 18.06.2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Unable to get Internet Explorer version! Boot mode: Normal Running processes: C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Program Files (x86)\Stardock\ObjectDockFree\ObjectDock.exe C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe C:\Program Files\AVAST Software\Avast\avastui.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Windows Media Player\wmplayer.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Noah\Downloads\HiJackThis204.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre8\bin\ssv.dll O2 - BHO: ArcPluginIEBHO - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre8\bin\jp2ssv.dll O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files (x86)\Stardock\ObjectDockFree\ObjectDock.exe O4 - Startup: start.lnk = Noah\59knbk4jbsv2zh2\50294.vbs O8 - Extra context menu item: Download with GetRight - C:\Program Files (x86)\GetRight\GRdownload.htm O8 - Extra context menu item: Open with GetRight Browser - C:\Program Files (x86)\GetRight\GRbrowse.htm O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Arc Service (ArcService) - Perfect World Entertainment Inc - C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Foxit Cloud Safe Update Service (FoxitCloudUpdateService) - Foxit Corporation - C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe O23 - Service: Google Update-Dienst (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-Dienst (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: RzKLService - Razer Inc. - C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 8014 bytes Gmer: Code:
ATTFilter GMER 2.1.19357 - hxxp://www.gmer.net Rootkit scan 2014-06-18 21:58:56 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T1L0-b WDC_WD3200AAKS-00UU3A0 rev.01.03B01 298,08GB Running: Gmer-19357.exe; Driver: C:\Users\Noah\AppData\Local\Temp\ufldypoc.sys ---- Kernel code sections - GMER 2.1 ---- INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 528 fffff80002e09000 45 bytes [43, 4D, 33, 31, 05, 00, 00, ...] INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 575 fffff80002e0902f 16 bytes [00, 00, 00, 00, 00, 00, 00, ...] ---- User code sections - GMER 2.1 ---- .text C:\Windows\system32\services.exe[664] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000077a4ef8d 1 byte [62] .text C:\Windows\System32\svchost.exe[384] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000077a4ef8d 1 byte [62] .text C:\Windows\system32\svchost.exe[780] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000077a4ef8d 1 byte [62] .text C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe[2152] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000077a4ef8d 1 byte [62] .text C:\Windows\System32\svchost.exe[1764] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000077a4ef8d 1 byte [62] .text C:\Windows\Explorer.EXE[3340] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000077a4ef8d 1 byte [62] .text C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe[3452] C:\Windows\syswow64\kernel32.dll!GetBinaryTypeW + 112 000000007741a2fd 1 byte [62] .text C:\Program Files\AVAST Software\Avast\avastui.exe[3588] C:\Windows\syswow64\kernel32.dll!SetUnhandledExceptionFilter 00000000773f8791 8 bytes [31, C0, C2, 04, 00, 90, 90, ...] .text C:\Program Files\AVAST Software\Avast\avastui.exe[3588] C:\Windows\syswow64\kernel32.dll!GetBinaryTypeW + 112 000000007741a2fd 1 byte [62] .text C:\Program Files\AVAST Software\Avast\avastui.exe[3588] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000076c31465 2 bytes [C3, 76] .text C:\Program Files\AVAST Software\Avast\avastui.exe[3588] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 0000000076c314bb 2 bytes [C3, 76] .text ... * 2 .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[3804] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000077a4ef8d 1 byte [62] .text C:\Windows\system32\taskhost.exe[3828] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000077a4ef8d 1 byte [62] .text C:\Windows\system32\notepad.exe[5204] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000077a4ef8d 1 byte [62] .text C:\Users\Noah\Downloads\Gmer-19357.exe[5244] C:\Windows\syswow64\kernel32.dll!GetBinaryTypeW + 112 000000007741a2fd 1 byte [62] ---- Threads - GMER 2.1 ---- Thread C:\Program Files\Windows Media Player\wmpnetwk.exe [1700:2936] 000007fefbff2bf8 ---- EOF - GMER 2.1 ---- Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-06-2014 Ran by Noah (administrator) on ZOCKER on 18-06-2014 21:46:54 Running from C:\Users\Noah\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 8 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2350880 2014-05-30] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation) HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3890208 2014-06-06] (AVAST Software) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [224128 2014-03-18] (Oracle Corporation) HKU\S-1-5-21-1700879945-1222271863-2406225941-1000\...\MountPoints2: D - D:\Run.exe HKU\S-1-5-21-1700879945-1222271863-2406225941-1000\...\MountPoints2: J - J:\OriginInstaller.exe HKU\S-1-5-21-1700879945-1222271863-2406225941-1000\...\MountPoints2: {06e20e0e-85ba-11e3-92da-d172a6d4f31d} - J:\setup.exe HKU\S-1-5-21-1700879945-1222271863-2406225941-1000\...\MountPoints2: {06e21165-85ba-11e3-92da-d172a6d4f31d} - I:\setup.exe Startup: C:\Users\Noah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\start.lnk ShortcutTarget: start.lnk -> C:\Users\Noah\59knbk4jbsv2zh2\50294.vbs (No File) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xD987695BA22DCF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de SearchScopes: HKLM-x32 - DefaultScope value is missing. BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll (Perfect World Entertainment Inc) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - No File Hosts: Hosts file not detected in the default directory Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @java.com/DTPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.5.2 - C:\Program Files (x86)\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.5.2 - C:\Program Files (x86)\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Tom Clancy's H.A.W.X. 2\orbit\npuplaypc.dll No File Chrome: ======= CHR HomePage: hxxp://www.ecosia.org/ CHR StartupUrls: "hxxp://www.ecosia.org/" CHR DefaultSearchKeyword: ecosia.org CHR DefaultSearchProvider: Ecosia CHR DefaultSearchURL: hxxp://ecosia.org/search.php?q={searchTerms}&addon=opensearch CHR DefaultNewTabURL: CHR Extension: (Age Bypass for YouTube™) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\agplnpcecljdfdbdgnahngbedjnlbjbf [2014-02-19] CHR Extension: (Google Drive) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-19] CHR Extension: (Session Manager) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbcnbpafconjjigibnhbfmmgdbbkcjfi [2014-02-19] CHR Extension: (YouTube) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-02-19] CHR Extension: (Adblock Plus) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-19] CHR Extension: (Google-Suche) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-02-19] CHR Extension: (FoxyProxy Basic) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\dookpfaalaaappcdneeahomimbllocnb [2014-05-20] CHR Extension: (DoNotTrackMe: Online Privacy Protection) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\epanfjkfahimkgomnigadpkobaefekcd [2014-02-19] CHR Extension: (Sheep Happens) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcmeacimddnfofflgicdgggcbgfpkjci [2014-03-24] CHR Extension: (Falcon Proxy) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\gchhimlnjdafdlkojbffdkogjhhkdepf [2014-02-19] CHR Extension: (Download) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfbckmilnhkcajpjifgbonfkkoekhmnp [2014-02-19] CHR Extension: (Zalmos SSL Web Proxy for Free) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\idefjamndcpplnamdlbodoebjgkpdmpn [2014-02-19] CHR Extension: (Stealthy) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\ieaebnkibonmpbhdaanjkmedikadnoje [2014-02-19] CHR Extension: (Verdun Game) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\khdppkcpilejlgahecofelpoidcnjbdg [2014-02-27] CHR Extension: (BeGone) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndfpieflbjbdpgklkeolbmbdkfdiicfk [2014-02-19] CHR Extension: (BeGone : Last Stand) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\necojdbekhjnilkdlbidaknjjgefbbid [2014-04-05] CHR Extension: (Google Wallet) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-19] CHR Extension: (APK Downloader) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\obhlfmheblhjhkmacldlhdnbgbaiigba [2014-03-28] CHR Extension: (Click&Clean App) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2014-02-19] CHR Extension: (Google Mail) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-02-19] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-05-07] ==================== Services (Whitelisted) ================= S3 ArcService; C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe [88400 2014-06-06] (Perfect World Entertainment Inc) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-07] (AVAST Software) R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [239680 2014-02-19] (Foxit Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.) ==================== Drivers (Whitelisted) ==================== R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-07] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-07] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-05-07] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-07] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-17] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-17] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-17] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-07] () R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 PVUSB; C:\Windows\SysWOW64\DRIVERS\CESG502.sys [40672 2014-02-27] (Hitachi Semiconductor and Devices Sales Co.,Ltd.) [File not signed] U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S3 gdrv; \??\C:\Windows\gdrv.sys [X] S4 sfdrv01; System32\drivers\sfdrv01.sys [X] S4 sfhlp02; System32\drivers\sfhlp02.sys [X] S0 sfsync03; System32\drivers\sfsync03.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-18 21:46 - 2014-06-18 21:47 - 00015036 _____ () C:\Users\Noah\Downloads\FRST.txt 2014-06-18 21:46 - 2014-06-18 21:46 - 00000000 ____D () C:\FRST 2014-06-18 21:45 - 2014-06-18 21:46 - 02082304 _____ (Farbar) C:\Users\Noah\Downloads\FRST64.exe 2014-06-18 21:44 - 2014-06-18 21:44 - 00050477 _____ () C:\Users\Noah\Downloads\Defogger.exe 2014-06-18 21:44 - 2014-06-18 21:44 - 00000470 _____ () C:\Users\Noah\Desktop\defogger_disable.log 2014-06-18 21:44 - 2014-06-18 21:44 - 00000000 _____ () C:\Users\Noah\defogger_reenable 2014-06-18 21:38 - 2014-06-18 21:38 - 129676363 _____ () C:\Users\Noah\Downloads\Nicht bestätigt 611823.crdownload 2014-06-18 21:37 - 2014-06-18 21:37 - 00003154 _____ () C:\Windows\System32\Tasks\{FBB7C956-6B0C-4385-9F4D-574BC1E5A273} 2014-06-18 21:35 - 2014-06-18 21:35 - 00000000 ____D () C:\Users\Noah\AppData\Local\PackageAware 2014-06-18 21:33 - 2014-06-18 21:33 - 00008015 _____ () C:\Users\Noah\Downloads\hijackthis.log 2014-06-18 21:33 - 2014-06-18 21:33 - 00008015 _____ () C:\Users\Noah\Desktop\hijackthis.log 2014-06-18 21:32 - 2014-06-18 21:33 - 00388608 _____ (Trend Micro Inc.) C:\Users\Noah\Downloads\HiJackThis204.exe 2014-06-18 21:31 - 2014-06-18 21:34 - 23510720 _____ (Microsoft Corporation) C:\Users\Noah\Downloads\microsoft-net-framework_4856.exe 2014-06-18 21:31 - 2014-06-18 21:31 - 00002571 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft .NET Compact Framework Installer.lnk 2014-06-18 21:31 - 2014-06-18 21:31 - 00000000 ____D () C:\Program Files (x86)\Microsoft .NET Compact Framework 1.0 SP3 2014-06-18 21:28 - 2014-06-18 21:30 - 15145984 _____ () C:\Users\Noah\Downloads\NETCFSetup.msi 2014-06-18 21:28 - 2014-06-18 21:28 - 01172628 _____ () C:\Users\Noah\Desktop\FixDotNet20140618192824228.cab 2014-06-18 21:26 - 2014-06-18 21:26 - 00879096 _____ (Microsoft Corporation) C:\Users\Noah\Downloads\NetFxRepairTool.exe 2014-06-18 21:15 - 2014-06-18 21:16 - 05718872 _____ (Microsoft Corporation) C:\Users\Noah\Downloads\vcredist_x64.exe 2014-06-18 21:15 - 2014-06-18 21:16 - 05073240 _____ (Microsoft Corporation) C:\Users\Noah\Downloads\vcredist_x86.exe 2014-06-18 21:11 - 2014-06-18 21:11 - 00000983 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-06-18 21:09 - 2014-06-18 21:10 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Noah\Downloads\OriginThinSetup.exe 2014-06-18 16:37 - 2014-06-18 16:37 - 00000000 ____D () C:\Users\Noah\Documents\FLiNGTrainer 2014-06-18 16:37 - 2013-04-21 18:21 - 01167360 _____ (3DMGAME) C:\Users\Noah\Desktop\Mass Effect 3 v1.5.5427.124 Plus 13 Trainer.exe 2014-06-18 16:00 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-06-18 16:00 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-06-18 16:00 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-06-18 16:00 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-06-18 16:00 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-06-18 16:00 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-06-18 16:00 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-06-18 16:00 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-06-18 16:00 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-06-18 16:00 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-06-18 16:00 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-06-18 16:00 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ___HD () C:\ArcTemp 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ____D () C:\Blacklight Retribution 2014-06-17 21:50 - 2014-06-17 21:52 - 00000728 _____ () C:\Users\Noah\Desktop\settings.xml 2014-06-17 21:47 - 2014-06-17 21:51 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Arc 2014-06-17 21:47 - 2012-10-20 15:28 - 00187392 _____ (master131) C:\Users\Noah\Desktop\Extreme Injector v2 by master131.exe 2014-06-17 21:46 - 2010-06-13 17:57 - 00032256 _____ () C:\Users\Noah\Desktop\Salson D3D Pub Hack Fixed Version.dll 2014-06-17 21:44 - 2014-06-17 21:44 - 00001846 _____ () C:\Users\Public\Desktop\Arc.lnk 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect World Entertainment 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\Program Files (x86)\Perfect World Entertainment 2014-06-17 21:42 - 2014-06-17 21:42 - 09686144 _____ (Perfect World Entertainment) C:\Users\Noah\Downloads\ArcInstall_v20140527a.exe 2014-06-17 20:15 - 2014-06-13 02:19 - 00609056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-06-17 20:07 - 2014-06-13 04:59 - 01890264 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434043.dll 2014-06-17 20:07 - 2014-06-13 04:59 - 01542088 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434043.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 13911928 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 13824408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 11272544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 11211224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 04248520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 03989464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00946120 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00909256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00902616 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00869336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00391456 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00348120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 31512352 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 24198616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 17553032 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 16122344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 12860888 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-06-17 20:07 - 2014-06-13 04:47 - 00502048 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 00417568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 22994392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 15294296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00846832 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-06-17 19:25 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-17 19:25 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-17 19:25 - 2014-05-08 11:32 - 03178496 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-06-17 19:25 - 2014-05-08 11:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2014-06-17 19:17 - 2014-06-17 19:17 - 00000338 _____ () C:\Windows\PFRO.log 2014-06-16 15:38 - 2014-06-18 16:07 - 00000000 ____D () C:\Users\Noah\AppData\Local\.filius 2014-06-16 15:35 - 2014-06-16 15:36 - 00000000 ____D () C:\Program Files\Filius 2014-06-16 15:30 - 2014-06-18 16:18 - 00061866 _____ () C:\Users\Noah\Desktop\Test.fls 2014-06-09 14:33 - 2014-06-09 14:36 - 00000000 ____D () C:\Users\Noah\Desktop\mightier.1.4 2014-06-07 10:49 - 2014-06-18 20:50 - 00002455 _____ () C:\Windows\setupact.log 2014-06-07 10:49 - 2014-06-07 10:49 - 00000000 _____ () C:\Windows\setuperr.log 2014-06-06 21:45 - 2014-05-08 13:25 - 00939224 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-06-06 21:45 - 2014-05-08 13:25 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-06-06 16:16 - 2014-05-30 01:00 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-06-06 16:16 - 2014-05-30 00:59 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-06-03 16:09 - 2014-06-03 16:09 - 00000000 ____D () C:\Users\Noah\Documents\Ubisoft 2014-06-03 16:08 - 2014-06-05 22:42 - 00001061 _____ () C:\Users\Noah\Desktop\Splinter Cell Blacklist.lnk 2014-06-03 15:03 - 2014-06-03 15:03 - 00001907 _____ () C:\Users\Public\Desktop\Tom Clancy's Splinter Cell® Blacklist™.lnk 2014-06-03 14:24 - 2014-06-05 22:40 - 00000000 ____D () C:\Tom Clancy's Splinter Cell® Blacklist™ 2014-06-03 13:03 - 2014-05-20 04:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-06-03 13:03 - 2014-05-20 04:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-06-03 12:34 - 2014-06-03 12:34 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe 2014-06-02 19:14 - 2014-06-02 19:14 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\AVAST Software 2014-06-02 19:13 - 2014-06-02 19:13 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Apple Computer 2014-06-02 19:12 - 2014-06-03 13:01 - 00002247 _____ () C:\Users\Administrator\Desktop\Google Chrome.lnk 2014-06-02 19:12 - 2014-06-03 12:59 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA 2014-06-02 19:12 - 2014-06-02 19:12 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Vorlagen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Startmenü 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Netzwerkumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Lokale Einstellungen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Eigene Dateien 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Druckumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Musik 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Bilder 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Verlauf 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA Corporation 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator 2014-06-02 19:12 - 2014-02-03 22:40 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Macromedia 2014-06-02 19:12 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-06-02 19:12 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-25 21:54 - 2010-11-20 15:27 - 01490944 _____ (Microsoft Corporation) C:\Users\Noah\Downloads\urlmon.dll 2014-05-25 21:34 - 2014-05-19 08:51 - 01141248 _____ (Microsoft Corporation) C:\Users\Noah\Desktop\urlmon.dll 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\Documents\Gscreens 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\AppData\Local\GScreens.com 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GScreens 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Program Files (x86)\GScreens 2014-05-25 20:11 - 2014-05-25 20:11 - 01198049 _____ () C:\Windows\unins000.exe 2014-05-25 20:11 - 2014-05-25 20:11 - 00010714 _____ () C:\Windows\unins000.dat 2014-05-25 20:11 - 2014-05-25 20:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-05-25 20:11 - 2014-01-25 13:30 - 00131072 _____ (Sereby Corporation) C:\Windows\SysWOW64\AiORuntimes.dll 2014-05-25 20:11 - 2013-12-20 00:48 - 00617896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00444328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshflxgd.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00416408 _____ (Microsoft Corporation ) C:\Windows\SysWOW64\comct332.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00279192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatgrd.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00259736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msflxgrd.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00253080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatlst.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00219288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\richtx32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00218776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dblist32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00212112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mci32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00179352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmask32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00170920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comct232.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00131728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00130712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstdfmt.dll 2014-05-25 20:11 - 2013-12-20 00:48 - 00127640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswinsck.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00119960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomm32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00108696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstkprp.dll 2014-05-25 20:11 - 2013-12-20 00:48 - 00104088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\picclp32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00084624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysinfo.ocx 2014-05-25 20:11 - 2013-09-19 23:00 - 00269824 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\Windows\SysWOW64\libssl32.dll 2014-05-25 20:11 - 2013-09-11 09:55 - 00458608 _____ (AutoIt Team) C:\Windows\SysWOW64\autoitx3.dll 2014-05-25 20:11 - 2013-08-31 20:40 - 03115385 _____ (Red Hat) C:\Windows\SysWOW64\cygwin1.dll 2014-05-25 20:11 - 2013-02-11 09:35 - 01178624 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\Windows\SysWOW64\libeay32.dll 2014-05-25 20:11 - 2013-02-11 09:35 - 00269824 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\Windows\SysWOW64\ssleay32.dll 2014-05-25 20:11 - 2012-06-14 14:36 - 00107520 _____ () C:\Windows\SysWOW64\zlib1.dll 2014-05-25 20:11 - 2012-04-03 16:11 - 00138752 _____ () C:\Windows\SysWOW64\libpng15.dll 2014-05-25 20:11 - 2011-01-12 13:36 - 01054208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71u.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71deu.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71ita.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71fra.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71esp.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71enu.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71kor.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71jpn.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71cht.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71chs.dll 2014-05-25 20:11 - 2011-01-12 12:53 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl71.dll 2014-05-25 20:11 - 2010-06-27 17:44 - 00053248 _____ (Adobe Systems, Incorporated) C:\Windows\system\plugin.dll 2014-05-25 20:11 - 2010-03-18 20:21 - 00799568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdia100.dll 2014-05-25 20:11 - 2008-08-26 06:40 - 00162304 _____ () C:\Windows\SysWOW64\libpng13.dll 2014-05-25 20:11 - 2008-03-14 17:21 - 01008128 _____ (GnuWin32 <hxxp://gnuwin32.sourceforge.net>) C:\Windows\SysWOW64\libiconv2.dll 2014-05-25 20:11 - 2007-01-30 22:04 - 00339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr70.dll 2014-05-25 20:11 - 2006-08-26 00:28 - 01017344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70u.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70ita.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70fra.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70esp.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70deu.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70enu.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70kor.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70jpn.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70cht.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70chs.dll 2014-05-25 20:11 - 2006-08-26 00:07 - 01024000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70.dll 2014-05-25 20:11 - 2006-08-25 23:17 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl70.dll 2014-05-25 20:11 - 2005-05-06 13:52 - 00103424 _____ (GNU <www.gnu.org>) C:\Windows\SysWOW64\libintl3.dll 2014-05-25 20:11 - 2005-01-20 19:25 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvci70.dll 2014-05-25 20:11 - 2002-01-05 05:40 - 00487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp70.dll 2014-05-25 20:11 - 1996-01-12 03:00 - 00935632 _____ (Microsoft Corporation) C:\Windows\system\vb40016.dll 2014-05-25 20:11 - 1994-11-17 13:00 - 00210944 _____ () C:\Windows\system\msvcrt10.dll 2014-05-25 20:11 - 1993-05-11 19:00 - 00398416 _____ (Microsoft Corporation) C:\Windows\system\vbrun300.dll 2014-05-25 20:11 - 1992-10-21 00:00 - 00356992 _____ (Microsoft Corporation) C:\Windows\system\vbrun200.dll 2014-05-25 20:11 - 1991-05-10 01:00 - 00271264 _____ () C:\Windows\system\vbrun100.dll 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-05-25 20:09 - 2014-06-18 21:20 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-25 20:09 - 2014-05-25 20:09 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-25 20:09 - 2014-05-25 20:09 - 00000000 ____D () C:\Windows\SysWOW64\Adobe 2014-05-25 20:08 - 2014-05-25 20:09 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-25 20:08 - 2014-05-25 20:09 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-25 20:08 - 2014-05-25 20:09 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-05-25 20:08 - 2014-05-25 20:08 - 00000000 ____D () C:\Windows\system32\Macromed 2014-05-25 20:05 - 2014-05-25 20:05 - 00000000 ____D () C:\Windows\SysWOW64\URTTEMP 2014-05-25 19:49 - 2014-05-25 19:49 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-05-25 19:49 - 2014-05-25 19:49 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-05-25 19:49 - 2014-05-25 19:49 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-05-25 19:49 - 2014-05-25 19:49 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-05-25 19:49 - 2014-05-25 19:49 - 00000000 ____D () C:\Program Files\Java 2014-05-25 19:48 - 2014-05-25 19:48 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-05-25 15:04 - 2014-05-25 15:04 - 00003122 _____ () C:\Windows\System32\Tasks\{CD921BD0-568A-4AEE-A0EF-6898FDBC6A48} 2014-05-25 15:00 - 2014-05-25 15:00 - 00319488 _____ (Realtek Semiconductor Corp.) C:\Windows\HideWin.exe 2014-05-25 15:00 - 2014-05-25 15:00 - 00003080 _____ () C:\Windows\System32\Tasks\{217A672D-BBFF-497B-B0A1-CAA0574464D6} 2014-05-25 15:00 - 2010-03-22 08:22 - 01247776 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-05-25 14:59 - 2014-05-25 14:59 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-05-25 14:28 - 2014-05-25 14:28 - 00000000 ____D () C:\Program Files\Adobe 2014-05-25 14:17 - 2014-05-25 14:26 - 00000000 ____D () C:\After Effects CS6 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Public\Foxit Software 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Foxit Software 2014-05-25 14:04 - 2014-05-25 14:04 - 00000000 ____D () C:\Program Files (x86)\Foxit Software 2014-05-23 18:58 - 2014-05-25 15:48 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-05-23 17:55 - 2014-05-25 13:43 - 00003749 _____ () C:\Windows\system32\Drivers\etc\lmhosts.sam 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\Documents\Razer 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer_Inc 2014-05-23 16:45 - 2014-06-02 17:01 - 00002065 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-23 16:24 - 2014-05-30 01:00 - 01122312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-05-23 16:24 - 2014-05-30 00:59 - 01279480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-05-23 16:23 - 2014-05-23 16:27 - 00000000 ____D () C:\Users\Noah\AppData\Local\NVIDIA 2014-05-23 16:23 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-05-23 16:23 - 2014-03-31 18:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-05-23 16:23 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-05-22 21:17 - 2014-05-22 21:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-05-22 21:17 - 2014-05-22 21:17 - 00000000 ____D () C:\Program Files\7-Zip 2014-05-22 18:16 - 2014-05-22 18:16 - 00000000 ____D () C:\Users\Noah\AppData\Local\CrashRpt 2014-05-21 21:33 - 2013-12-13 13:49 - 01957328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr110d.dll 2014-05-21 21:33 - 2013-12-13 13:49 - 01957328 _____ (Microsoft Corporation) C:\Windows\system32\msvcr110d.dll 2014-05-21 21:28 - 2013-09-24 12:04 - 01505104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100d.dll 2014-05-21 21:28 - 2013-09-24 12:04 - 01505104 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100d.dll 2014-05-21 21:22 - 2013-09-24 09:06 - 00829264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100.dll 2014-05-20 22:32 - 2014-05-21 21:28 - 00000000 ____D () C:\Users\Noah\AppData\Local\ccman32 2014-05-20 22:15 - 2014-05-20 22:15 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Thunderbird 2014-05-20 22:15 - 2014-05-20 22:15 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Mozilla 2014-05-20 22:15 - 2014-05-20 22:15 - 00000000 ____D () C:\Users\Noah\AppData\Local\Thunderbird 2014-05-20 22:14 - 2014-05-20 22:14 - 00002102 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2014-05-20 22:14 - 2014-05-20 22:14 - 00000000 ____D () C:\ProgramData\Mozilla 2014-05-20 22:14 - 2014-05-20 22:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-05-20 22:14 - 2014-05-20 22:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-20 15:22 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-05-20 15:22 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-20 15:22 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-20 15:22 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-05-20 15:22 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-20 15:22 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-05-20 15:22 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-20 15:22 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-05-20 15:22 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-05-20 15:22 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-20 15:22 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-05-20 15:22 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-20 15:22 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-05-20 15:22 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-05-20 15:22 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-05-20 15:22 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-20 15:22 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-05-20 15:22 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-05-20 15:22 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-05-20 15:22 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-05-20 15:22 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-20 15:22 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-05-20 15:22 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-05-20 15:22 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-05-20 15:22 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-05-20 15:22 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-20 15:22 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-05-20 15:22 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-05-20 15:22 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-05-20 15:22 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-05-20 15:22 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-05-20 15:22 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-05-19 21:10 - 2014-05-19 21:10 - 00000000 ___RD () C:\Sandbox 2014-05-19 21:08 - 2014-05-20 20:38 - 00000000 ____D () C:\Program Files\Sandboxie 2014-05-19 17:29 - 2014-06-18 16:23 - 00000000 ____D () C:\Users\Noah\AppData\Local\wf-launcher 2014-05-19 17:29 - 2014-05-19 17:29 - 00001908 _____ () C:\Users\Noah\Desktop\Warface Launcher.lnk 2014-05-19 17:29 - 2014-05-19 17:29 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warface Launcher 2014-05-19 17:29 - 2014-05-19 17:29 - 00000000 ____D () C:\Program Files (x86)\Crytek 2014-05-19 17:04 - 2014-05-19 17:04 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Blender Foundation 2014-05-19 17:03 - 2014-05-19 17:03 - 00000000 ____D () C:\Users\Noah\.thumbnails 2014-05-19 17:02 - 2014-05-19 17:02 - 00000000 ____D () C:\Program Files\Blender Foundation ==================== One Month Modified Files and Folders ======= 2014-06-18 21:47 - 2014-06-18 21:46 - 00015036 _____ () C:\Users\Noah\Downloads\FRST.txt 2014-06-18 21:46 - 2014-06-18 21:46 - 00000000 ____D () C:\FRST 2014-06-18 21:46 - 2014-06-18 21:45 - 02082304 _____ (Farbar) C:\Users\Noah\Downloads\FRST64.exe 2014-06-18 21:44 - 2014-06-18 21:44 - 00050477 _____ () C:\Users\Noah\Downloads\Defogger.exe 2014-06-18 21:44 - 2014-06-18 21:44 - 00000470 _____ () C:\Users\Noah\Desktop\defogger_disable.log 2014-06-18 21:44 - 2014-06-18 21:44 - 00000000 _____ () C:\Users\Noah\defogger_reenable 2014-06-18 21:44 - 2014-01-25 13:22 - 00000000 ____D () C:\Users\Noah 2014-06-18 21:38 - 2014-06-18 21:38 - 129676363 _____ () C:\Users\Noah\Downloads\Nicht bestätigt 611823.crdownload 2014-06-18 21:37 - 2014-06-18 21:37 - 00003154 _____ () C:\Windows\System32\Tasks\{FBB7C956-6B0C-4385-9F4D-574BC1E5A273} 2014-06-18 21:35 - 2014-06-18 21:35 - 00000000 ____D () C:\Users\Noah\AppData\Local\PackageAware 2014-06-18 21:35 - 2014-03-06 20:25 - 00000000 __HDC () C:\ProgramData\~0 2014-06-18 21:34 - 2014-06-18 21:31 - 23510720 _____ (Microsoft Corporation) C:\Users\Noah\Downloads\microsoft-net-framework_4856.exe 2014-06-18 21:33 - 2014-06-18 21:33 - 00008015 _____ () C:\Users\Noah\Downloads\hijackthis.log 2014-06-18 21:33 - 2014-06-18 21:33 - 00008015 _____ () C:\Users\Noah\Desktop\hijackthis.log 2014-06-18 21:33 - 2014-06-18 21:32 - 00388608 _____ (Trend Micro Inc.) C:\Users\Noah\Downloads\HiJackThis204.exe 2014-06-18 21:31 - 2014-06-18 21:31 - 00002571 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft .NET Compact Framework Installer.lnk 2014-06-18 21:31 - 2014-06-18 21:31 - 00000000 ____D () C:\Program Files (x86)\Microsoft .NET Compact Framework 1.0 SP3 2014-06-18 21:30 - 2014-06-18 21:28 - 15145984 _____ () C:\Users\Noah\Downloads\NETCFSetup.msi 2014-06-18 21:28 - 2014-06-18 21:28 - 01172628 _____ () C:\Users\Noah\Desktop\FixDotNet20140618192824228.cab 2014-06-18 21:26 - 2014-06-18 21:26 - 00879096 _____ (Microsoft Corporation) C:\Users\Noah\Downloads\NetFxRepairTool.exe 2014-06-18 21:25 - 2014-01-25 13:22 - 01491133 _____ () C:\Windows\WindowsUpdate.log 2014-06-18 21:24 - 2014-05-17 09:42 - 00000000 ____D () C:\ProgramData\Package Cache 2014-06-18 21:21 - 2009-07-14 06:45 - 00013552 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-18 21:21 - 2009-07-14 06:45 - 00013552 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-18 21:20 - 2014-05-25 20:09 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-18 21:16 - 2014-06-18 21:15 - 05718872 _____ (Microsoft Corporation) C:\Users\Noah\Downloads\vcredist_x64.exe 2014-06-18 21:16 - 2014-06-18 21:15 - 05073240 _____ (Microsoft Corporation) C:\Users\Noah\Downloads\vcredist_x86.exe 2014-06-18 21:11 - 2014-06-18 21:11 - 00000983 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-06-18 21:11 - 2014-02-19 20:45 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-18 21:10 - 2014-06-18 21:09 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Noah\Downloads\OriginThinSetup.exe 2014-06-18 20:54 - 2014-02-19 20:45 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-18 20:50 - 2014-06-07 10:49 - 00002455 _____ () C:\Windows\setupact.log 2014-06-18 20:50 - 2014-01-25 14:10 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-06-18 20:50 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-18 16:37 - 2014-06-18 16:37 - 00000000 ____D () C:\Users\Noah\Documents\FLiNGTrainer 2014-06-18 16:23 - 2014-05-19 17:29 - 00000000 ____D () C:\Users\Noah\AppData\Local\wf-launcher 2014-06-18 16:18 - 2014-06-16 15:30 - 00061866 _____ () C:\Users\Noah\Desktop\Test.fls 2014-06-18 16:07 - 2014-06-16 15:38 - 00000000 ____D () C:\Users\Noah\AppData\Local\.filius 2014-06-18 15:58 - 2014-04-05 17:56 - 00000000 ____D () C:\ProgramData\GFACE 2014-06-17 21:52 - 2014-06-17 21:50 - 00000728 _____ () C:\Users\Noah\Desktop\settings.xml 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ___HD () C:\ArcTemp 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ____D () C:\Blacklight Retribution 2014-06-17 21:51 - 2014-06-17 21:47 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Arc 2014-06-17 21:44 - 2014-06-17 21:44 - 00001846 _____ () C:\Users\Public\Desktop\Arc.lnk 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect World Entertainment 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\Program Files (x86)\Perfect World Entertainment 2014-06-17 21:44 - 2014-01-25 15:26 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-06-17 21:42 - 2014-06-17 21:42 - 09686144 _____ (Perfect World Entertainment) C:\Users\Noah\Downloads\ArcInstall_v20140527a.exe 2014-06-17 20:15 - 2014-01-25 14:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-06-17 20:15 - 2014-01-25 14:10 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-06-17 20:11 - 2014-01-25 14:09 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-06-17 20:06 - 2014-02-19 20:45 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-06-17 20:06 - 2014-02-19 20:45 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-06-17 19:29 - 2014-02-22 00:19 - 00000000 ____D () C:\Windows\system32\MRT 2014-06-17 19:27 - 2014-02-22 00:19 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-06-17 19:26 - 2014-05-03 17:28 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-06-17 19:19 - 2014-01-25 17:37 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-06-17 19:17 - 2014-06-17 19:17 - 00000338 _____ () C:\Windows\PFRO.log 2014-06-16 15:36 - 2014-06-16 15:35 - 00000000 ____D () C:\Program Files\Filius 2014-06-13 04:59 - 2014-06-17 20:07 - 01890264 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434043.dll 2014-06-13 04:59 - 2014-06-17 20:07 - 01542088 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434043.dll 2014-06-13 04:59 - 2014-01-25 14:09 - 00026353 _____ () C:\Windows\system32\nvinfo.pb 2014-06-13 04:48 - 2014-06-17 20:07 - 13911928 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 13824408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 11272544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 11211224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 04248520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 03989464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00946120 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00909256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00902616 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00869336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00391456 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00348120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-06-13 04:48 - 2014-01-25 14:10 - 00075040 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-06-13 04:48 - 2014-01-25 14:10 - 00062920 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 31512352 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 24198616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 17553032 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 16122344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 12860888 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-06-13 04:47 - 2014-06-17 20:07 - 00502048 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 00417568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-06-13 04:47 - 2014-01-25 14:09 - 18625768 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-06-13 04:47 - 2014-01-25 14:09 - 14497528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 22994392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 15294296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00846832 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-06-13 04:46 - 2014-01-25 14:09 - 02814120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-06-13 04:46 - 2014-01-25 14:09 - 00965312 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-06-13 04:45 - 2014-01-25 14:09 - 03196304 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 06783960 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 03523360 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 02560968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 00933208 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-06-13 04:11 - 2014-01-25 14:10 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-06-13 02:19 - 2014-06-17 20:15 - 00609056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-06-10 13:41 - 2014-02-19 21:15 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\GetRight 2014-06-09 16:55 - 2014-03-09 20:41 - 00000000 ____D () C:\Program Files (x86)\JDownloader 2014-06-09 14:36 - 2014-06-09 14:33 - 00000000 ____D () C:\Users\Noah\Desktop\mightier.1.4 2014-06-08 11:13 - 2014-06-17 19:25 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-08 11:08 - 2014-06-17 19:25 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-07 10:49 - 2014-06-07 10:49 - 00000000 _____ () C:\Windows\setuperr.log 2014-06-06 23:26 - 2014-02-04 22:24 - 00000000 ____D () C:\FFOutput 2014-06-06 21:50 - 2014-03-24 22:46 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\IrfanView 2014-06-06 21:45 - 2014-02-19 20:38 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-06-06 19:40 - 2014-01-25 14:10 - 03802247 _____ () C:\Windows\system32\nvcoproc.bin 2014-06-06 16:16 - 2014-01-25 14:14 - 00000000 ____D () C:\Users\Noah\AppData\Local\NVIDIA Corporation 2014-06-05 22:42 - 2014-06-03 16:08 - 00001061 _____ () C:\Users\Noah\Desktop\Splinter Cell Blacklist.lnk 2014-06-05 22:40 - 2014-06-03 14:24 - 00000000 ____D () C:\Tom Clancy's Splinter Cell® Blacklist™ 2014-06-05 21:20 - 2014-02-26 20:58 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-06-05 21:20 - 2014-02-26 20:58 - 00000000 ____D () C:\Program Files\CCleaner 2014-06-03 20:45 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-06-03 16:09 - 2014-06-03 16:09 - 00000000 ____D () C:\Users\Noah\Documents\Ubisoft 2014-06-03 16:09 - 2014-01-25 15:33 - 00000000 ____D () C:\ProgramData\Orbit 2014-06-03 15:03 - 2014-06-03 15:03 - 00001907 _____ () C:\Users\Public\Desktop\Tom Clancy's Splinter Cell® Blacklist™.lnk 2014-06-03 14:23 - 2014-02-04 20:44 - 00000000 ____D () C:\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst 2014-06-03 13:01 - 2014-06-02 19:12 - 00002247 _____ () C:\Users\Administrator\Desktop\Google Chrome.lnk 2014-06-03 12:59 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA 2014-06-03 12:48 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-06-03 12:34 - 2014-06-03 12:34 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe 2014-06-02 19:14 - 2014-06-02 19:14 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\AVAST Software 2014-06-02 19:13 - 2014-06-02 19:13 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Apple Computer 2014-06-02 19:12 - 2014-06-02 19:12 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Vorlagen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Startmenü 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Netzwerkumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Lokale Einstellungen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Eigene Dateien 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Druckumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Musik 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Bilder 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Verlauf 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA Corporation 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator 2014-06-02 17:01 - 2014-05-23 16:45 - 00002065 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-30 01:00 - 2014-06-06 16:16 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-05-30 01:00 - 2014-05-23 16:24 - 01122312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-05-30 00:59 - 2014-06-06 16:16 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-05-30 00:59 - 2014-05-23 16:24 - 01279480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-05-25 21:55 - 2014-04-20 19:25 - 00000000 ____D () C:\Program Files\Unlocker 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\Documents\Gscreens 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\AppData\Local\GScreens.com 2014-05-25 21:28 - 2014-01-25 17:10 - 00069168 _____ () C:\Users\Noah\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GScreens 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Program Files (x86)\GScreens 2014-05-25 20:11 - 2014-05-25 20:11 - 01198049 _____ () C:\Windows\unins000.exe 2014-05-25 20:11 - 2014-05-25 20:11 - 00010714 _____ () C:\Windows\unins000.dat 2014-05-25 20:11 - 2014-05-25 20:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-05-25 20:11 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-05-25 20:09 - 2014-05-25 20:09 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-25 20:09 - 2014-05-25 20:09 - 00000000 ____D () C:\Windows\SysWOW64\Adobe 2014-05-25 20:09 - 2014-05-25 20:08 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-25 20:09 - 2014-05-25 20:08 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-25 20:09 - 2014-05-25 20:08 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-05-25 20:08 - 2014-05-25 20:08 - 00000000 ____D () C:\Windows\system32\Macromed 2014-05-25 20:06 - 2014-01-25 14:06 - 01676574 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-05-25 20:06 - 2009-07-14 19:58 - 00710076 _____ () C:\Windows\system32\perfh007.dat 2014-05-25 20:06 - 2009-07-14 19:58 - 00154512 _____ () C:\Windows\system32\perfc007.dat 2014-05-25 20:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration 2014-05-25 20:05 - 2014-05-25 20:05 - 00000000 ____D () C:\Windows\SysWOW64\URTTEMP 2014-05-25 20:01 - 2009-07-14 07:13 - 01594156 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-25 19:49 - 2014-05-25 19:49 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-05-25 19:49 - 2014-05-25 19:49 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-05-25 19:49 - 2014-05-25 19:49 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-05-25 19:49 - 2014-05-25 19:49 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-05-25 19:49 - 2014-05-25 19:49 - 00000000 ____D () C:\Program Files\Java 2014-05-25 19:48 - 2014-05-25 19:48 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-05-25 19:48 - 2014-04-19 19:26 - 00176040 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-05-25 19:48 - 2014-04-19 19:26 - 00176040 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-05-25 19:48 - 2014-04-19 19:26 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-05-25 19:48 - 2014-04-19 19:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-25 19:48 - 2014-03-06 18:42 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\BitTorrent 2014-05-25 19:48 - 2014-02-26 23:58 - 00000000 ____D () C:\Program Files (x86)\Java 2014-05-25 18:17 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-05-25 15:48 - 2014-05-23 18:58 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-05-25 15:17 - 2014-02-26 21:00 - 00000000 ____D () C:\Users\Noah\Desktop\Registry-Sicherung 2014-05-25 15:17 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-05-25 15:10 - 2014-02-19 20:30 - 00000010 _____ () C:\Windows\GSetup.ini 2014-05-25 15:04 - 2014-05-25 15:04 - 00003122 _____ () C:\Windows\System32\Tasks\{CD921BD0-568A-4AEE-A0EF-6898FDBC6A48} 2014-05-25 15:00 - 2014-05-25 15:00 - 00319488 _____ (Realtek Semiconductor Corp.) C:\Windows\HideWin.exe 2014-05-25 15:00 - 2014-05-25 15:00 - 00003080 _____ () C:\Windows\System32\Tasks\{217A672D-BBFF-497B-B0A1-CAA0574464D6} 2014-05-25 14:59 - 2014-05-25 14:59 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-05-25 14:49 - 2009-07-14 06:45 - 04927152 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-25 14:36 - 2014-02-03 22:36 - 00000000 ____D () C:\Users\Noah\AppData\Local\Adobe 2014-05-25 14:28 - 2014-05-25 14:28 - 00000000 ____D () C:\Program Files\Adobe 2014-05-25 14:26 - 2014-05-25 14:17 - 00000000 ____D () C:\After Effects CS6 2014-05-25 14:26 - 2014-02-03 22:37 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Adobe 2014-05-25 14:20 - 2014-02-03 22:37 - 00000000 ____D () C:\ProgramData\Adobe 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Public\Foxit Software 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Foxit Software 2014-05-25 14:04 - 2014-05-25 14:04 - 00000000 ____D () C:\Program Files (x86)\Foxit Software 2014-05-25 13:59 - 2014-02-03 22:40 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-05-25 13:55 - 2014-02-03 22:43 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe 2014-05-25 13:43 - 2014-05-23 17:55 - 00003749 _____ () C:\Windows\system32\Drivers\etc\lmhosts.sam 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\Documents\Razer 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer_Inc 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-23 16:27 - 2014-05-23 16:23 - 00000000 ____D () C:\Users\Noah\AppData\Local\NVIDIA 2014-05-23 16:27 - 2014-01-25 14:10 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-05-22 21:17 - 2014-05-22 21:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-05-22 21:17 - 2014-05-22 21:17 - 00000000 ____D () C:\Program Files\7-Zip 2014-05-22 18:16 - 2014-05-22 18:16 - 00000000 ____D () C:\Users\Noah\AppData\Local\CrashRpt 2014-05-21 21:28 - 2014-05-20 22:32 - 00000000 ____D () C:\Users\Noah\AppData\Local\ccman32 2014-05-20 22:59 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-05-20 22:48 - 2014-05-09 23:42 - 00000000 ____D () C:\Windows\Minidump 2014-05-20 22:15 - 2014-05-20 22:15 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Thunderbird 2014-05-20 22:15 - 2014-05-20 22:15 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Mozilla 2014-05-20 22:15 - 2014-05-20 22:15 - 00000000 ____D () C:\Users\Noah\AppData\Local\Thunderbird 2014-05-20 22:14 - 2014-05-20 22:14 - 00002102 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2014-05-20 22:14 - 2014-05-20 22:14 - 00000000 ____D () C:\ProgramData\Mozilla 2014-05-20 22:14 - 2014-05-20 22:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-05-20 22:14 - 2014-05-20 22:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-20 20:38 - 2014-05-19 21:08 - 00000000 ____D () C:\Program Files\Sandboxie 2014-05-20 17:27 - 2014-02-28 17:56 - 00000000 ____D () C:\ProgramData\Freemake 2014-05-20 16:29 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-05-20 14:37 - 2014-05-18 15:59 - 00000000 _RSHD () C:\Users\Noah\59knbk4jbsv2zh2 2014-05-20 04:44 - 2014-06-03 13:03 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-05-20 04:44 - 2014-06-03 13:03 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-05-19 21:10 - 2014-05-19 21:10 - 00000000 ___RD () C:\Sandbox 2014-05-19 17:29 - 2014-05-19 17:29 - 00001908 _____ () C:\Users\Noah\Desktop\Warface Launcher.lnk 2014-05-19 17:29 - 2014-05-19 17:29 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warface Launcher 2014-05-19 17:29 - 2014-05-19 17:29 - 00000000 ____D () C:\Program Files (x86)\Crytek 2014-05-19 17:04 - 2014-05-19 17:04 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Blender Foundation 2014-05-19 17:03 - 2014-05-19 17:03 - 00000000 ____D () C:\Users\Noah\.thumbnails 2014-05-19 17:02 - 2014-05-19 17:02 - 00000000 ____D () C:\Program Files\Blender Foundation 2014-05-19 08:51 - 2014-05-25 21:34 - 01141248 _____ (Microsoft Corporation) C:\Users\Noah\Desktop\urlmon.dll Some content of TEMP: ==================== C:\Users\Administrator\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Administrator\AppData\Local\Temp\nvStInst.exe C:\Users\Noah\AppData\Local\Temp\iv_uninstall.exe C:\Users\Noah\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Noah\AppData\Local\Temp\nvStInst.exe C:\Users\Noah\AppData\Local\Temp\proxy_vole6985469132311376416.dll C:\Users\Noah\AppData\Local\Temp\SRLDetectionLibrary7799369503227144131.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-17 19:57 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-06-2014 Ran by Noah at 2014-06-18 21:47:57 Running from C:\Users\Noah\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== 7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.111 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 13.0.0.111 - Adobe Systems Incorporated) Hidden Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Help Manager (x32 Version: 4.0.244 - Adobe Systems Incorporated) Hidden Adobe Shockwave Player 12.1 (HKLM-x32\...\{151974E9-9B16-47DC-8B57-5684A1E42127}) (Version: 12.1.1.151 - Adobe Systems, Inc) Allgemeine Runtime Files (x86) (HKLM\...\{1F6D1DB5-82B5-41A4-85A2-0A382C142A35}_is1) (Version: 1.0.3.7 - Sereby Corporation) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) Assassins Creed IV Black Flag Update v1.05 (HKLM-x32\...\QXNzYXNzaW5zQ3JlZWRJVkJsYWNrRmxhZw==_is1) (Version: 1 - ) avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2018 - Avast Software) Bionic Commando (HKLM-x32\...\{E1071C00-B001-4633-B9C3-164C856D5730}) (Version: 1.0 - Capcom Entertainment, Inc) Blender (HKLM\...\Blender) (Version: 2.70a - Blender Foundation) BlueStacks Notification Center (HKLM-x32\...\{62763BAD-53A8-4C9F-B4CF-7CCABFEFD725}) (Version: 0.8.6.3059 - BlueStack Systems, Inc.) Botanicula (HKLM-x32\...\Botanicula) (Version: 1.0 - Daedalic Entertainment) CASIO FA-124 (HKLM-x32\...\{FB47E710-6249-4EFA-BE36-E922B0612AF4}) (Version: 2.00.0001 - CASIO COMPUTER CO., LTD.) CCleaner (HKLM\...\CCleaner) (Version: 4.14 - Piriform) Cheat Engine 6.1 (HKLM-x32\...\Cheat Engine 6.1_is1) (Version: - Dark Byte) ENSLAVED: Odyssey to the West Premium Edition (HKLM-x32\...\ENSLAVED: Odyssey to the West Premium Edition_is1) (Version: - Namco Bandai Games) FormatFactory 3.3.1.0 (HKLM-x32\...\FormatFactory) (Version: 3.3.1.0 - Format Factory) Foxit Cloud (HKLM-x32\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 1.2.75.126 - Foxit Corporation) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.1.4.217 - Foxit Corporation) Fraps (HKLM-x32\...\Fraps) (Version: - ) GetRight (HKLM-x32\...\GetRight_is1) (Version: - Headlight Software, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden GScreens (HKLM-x32\...\{B3CEEF88-C400-47C2-83BA-F4BFAC5ABDC1}) (Version: 0.3.2 - GScreens.com) Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.550 - Oracle) Java 8 Update 5 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418005FF}) (Version: 8.0.50 - Oracle Corporation) Java 8 Update 5 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218005FF}) (Version: 8.0.50 - Oracle Corporation) Java Auto Updater (x32 Version: 2.8.05.13 - Oracle, Inc.) Hidden JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Kick Ass 2 version 1.0 (HKLM-x32\...\Kick Ass 2_is1) (Version: 1.0 - Freedom Factory Studios) Logon Screen (HKLM\...\{1730D13B-7517-4321-A88B-64627CF67CDC}_is1) (Version: - Daniel Rebelo) Mass Effect 3 N7 Collector's Edition DLC (HKLM-x32\...\N7 Collector's Edition DLC_is1) (Version: - ) Mass Effect 3 Update v1.5.5427.124 version 1.00 (HKLM-x32\...\Mass Effect 3 Update v1.5.5427.124_is1) (Version: 1.00 - ) Mass Effect 3 v1.1.5427.4 (HKLM-x32\...\Mass Effect 3 v1.1.5427.4_is1) (Version: - Razor 1911) Mass Effect™ 3 (HKLM-x32\...\{6A9D1594-7791-48f5-9CAA-DE9BCB968320}) (Version: 1.01.0.0 - Electronic Arts) Microsoft .NET Compact Framework 1.0 SP3 (HKLM-x32\...\{32A0FE82-9DE1-4D5E-B860-8018E725AE37}) (Version: 1.0.4294 - Microsoft) Microsoft .NET Framework 1.1 (HKLM-x32\...\Microsoft .NET Framework 1.1 (1033)) (Version: - ) Microsoft .NET Framework 1.1 (x32 Version: 1.1.4322 - Microsoft) Hidden Microsoft .NET Framework 1.1 Security Update (KB2698023) (HKLM-x32\...\M2698023) (Version: - ) Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM-x32\...\M2833941) (Version: - ) Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM-x32\...\M979906) (Version: - ) Microsoft .NET Framework 1.1 SP1 (HKLM\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: - ) Microsoft .NET Framework 1.1 SP1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - ) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{26784146-6E05-3FF9-9335-786C7C0FB5BE}) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60830 (HKLM-x32\...\{c7ed0d4c-89c5-47fc-9e89-1088affe63f3}) (Version: 11.0.60830.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60830 (Version: 11.0.60830 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60830 (Version: 11.0.60830 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{90ffcee5-8608-4e94-8c18-a4feb4f83fb8}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.5.0 - Mozilla) Mozilla Thunderbird 24.5.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.5.0 (x86 de)) (Version: 24.5.0 - Mozilla) NVIDIA 3D Vision Controller-Treiber 340.43 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.43 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 340.43 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.43 - NVIDIA Corporation) NVIDIA GeForce Experience 2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 340.43 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.43 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA ShadowPlay 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 340.43 (Version: 340.43 - NVIDIA Corporation) Hidden NVIDIA Update 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.1.0 (HKLM-x32\...\{E19483E2-6C18-494D-A307-D4498BCFD2C7}) (Version: 4.10.9764 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.) Razer Game Booster (HKLM-x32\...\Razer Game Booster_is1) (Version: 4.2.45.0 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.86.508.2014 - Realtek) ResultsAlpha (HKLM\...\ResultsAlpha) (Version: 2014.02.26.045520 - ResultsAlpha) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Saints Row IV Commander in Chief Edition 1.0 (HKLM-x32\...\Saints Row IV Commander in Chief Edition 1.0) (Version: - ) Saints Row IV Update 8 Incl. DLC (HKLM-x32\...\U2FpbnRzUm93SVY=_is1) (Version: 1 - ) SHIELD Streaming (Version: 2.1.214 - NVIDIA Corporation) Hidden Splinter Cell Blacklist Deluxe Edition Content (HKLM-x32\...\Deluxe Edition Content_is1) (Version: 1.2 - Ubisoft) System Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC) System Requirements Lab Detection (HKLM-x32\...\{A407FC22-36BF-4C82-A516-59D94BC505A9}) (Version: 1.0.5.0 - Husdawg, LLC) Tom Clancy's Splinter Cell® Blacklist™ (HKLM-x32\...\{A6356F2F-D3E1-4D83-9AA2-72871DD0C298}) (Version: 1.03 - Ubisoft) Trapcode Form (HKLM-x32\...\Trapcode Form) (Version: - ) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Uplay (HKLM-x32\...\Uplay) (Version: 4.0 - Ubisoft) VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes) Vista Shortcut Manager (HKLM-x32\...\{47609E69-4C5E-48B1-A889-24C6B82B5C04}) (Version: 2.0 - Frameworkx) Warface Launcher (Beta) (HKLM-x32\...\{28D1723C-31C4-4A83-9799-DFFB3739026D}) (Version: 1.0.0 - Crytek GmbH) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) WinRAR 5.01 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) WRC Powerslide (HKLM-x32\...\WRC Powerslide_is1) (Version: - CODEX) ==================== Restore Points ========================= 17-06-2014 17:25:42 Windows Update 17-06-2014 18:09:11 Gerätetreiber-Paketinstallation: NVIDIA Grafikkarte 17-06-2014 18:14:26 Gerätetreiber-Paketinstallation: NVIDIA USB-Controller 17-06-2014 19:44:03 Installiert Arc 18-06-2014 14:00:35 Windows Update 18-06-2014 19:14:30 Microsoft Visual C++ 2005 Redistributable wird entfernt 18-06-2014 19:18:59 Removed Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 18-06-2014 19:19:36 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 wurde entfernt. 18-06-2014 19:23:39 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 18-06-2014 19:24:22 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 18-06-2014 19:30:48 Microsoft .NET Compact Framework 1.0 SP3 wird installiert 18-06-2014 19:35:17 Revo Uninstaller's restore point - ObjectDock Free ==================== Scheduled Tasks (whitelisted) ============= Task: {0E71B0C9-DF42-46AD-BA27-4B19C090D00A} - \Plus-HD-3.8-chromeinstaller No Task File <==== ATTENTION Task: {19B2B904-81B7-4043-8D23-8E79E164DC0F} - \Plus-HD-3.8-updater No Task File <==== ATTENTION Task: {1C6E6618-9F54-4A43-AC6F-6620738D5CDD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-02-19] (Google Inc.) Task: {2B5B0012-8287-4ECC-B3DA-5B84E5328AC2} - \Plus-HD-3.8-enabler No Task File <==== ATTENTION Task: {361CDFA3-3E00-4CD7-8977-8BEA9B31F24E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-05-07] (AVAST Software) Task: {434B7AE3-0605-4363-9691-4E38154FED83} - \Plus-HD-3.8-codedownloader No Task File <==== ATTENTION Task: {5BC218D6-FAB1-4A3B-B217-72D68F1AC607} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-02-19] (Google Inc.) Task: {8455E88B-20E1-4DB6-BF8A-346F823F7766} - \Plus-HD-3.8-firefoxinstaller No Task File <==== ATTENTION Task: {84EBD312-4A4C-47C7-89D3-D1E214B1B71A} - System32\Tasks\{958BF99A-EC14-48BE-819B-B861A9FAC842} => D:\setup.exe Task: {8A3D5EDC-0F17-4913-90DA-722775B4779B} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {9EA8EB6F-77B3-4429-B5DE-D8106B0E7D74} - System32\Tasks\{6AEDE228-3EA6-46B2-87AD-04A52F4A51CD} => C:\Race Driver 3\RD3.exe Task: {AA1B562F-5A1D-4332-93FE-0A616D7D472E} - System32\Tasks\{D4866E9B-0F95-4F86-ADD5-F2B2882ADE8F} => C:\World of Warplanes\WoWpLauncher.exe Task: {CFBDD769-1AEF-4DA2-B6E7-B01B58295449} - System32\Tasks\{2C31C689-D7AB-4533-B1EF-6911A22F599E} => C:\Games\World_of_Warplanes\WorldOfWarplanes.exe [2014-03-01] (wargaming.net) Task: {E9E0581F-D163-45F6-AFB7-48BCA1A1D0EC} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-05-20] (Piriform Ltd) Task: {F365DAB3-4EDA-4F2C-86C6-3743E80382BF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-25] (Adobe Systems Incorporated) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-01-25 14:10 - 2014-06-13 04:11 - 00118728 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2010-07-15 06:44 - 2010-07-15 06:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2014-06-18 15:58 - 2014-06-18 15:58 - 02776064 _____ () C:\Program Files\AVAST Software\Avast\defs\14061800\algo.dll 2014-01-25 17:37 - 2014-01-25 17:37 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-06-16 16:06 - 2014-06-05 15:58 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libglesv2.dll 2014-06-16 16:06 - 2014-06-05 15:58 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libegl.dll 2014-06-16 16:06 - 2014-06-05 15:58 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll 2014-06-16 16:06 - 2014-06-05 15:58 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll 2014-06-16 16:06 - 2014-06-05 15:58 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\TEMP:5B8C10F3 ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= ==================== Faulty Device Manager Devices ============= Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (06/18/2014 09:37:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Install.exe_Microsoft® Visual Studio® 2005, Version: 8.0.50727.42, Zeitstempel: 0x4333dd00 Name des fehlerhaften Moduls: Install.exe, Version: 8.0.50727.42, Zeitstempel: 0x4333dd00 Ausnahmecode: 0xc000000d Fehleroffset: 0x0003db6a ID des fehlerhaften Prozesses: 0x15f0 Startzeit der fehlerhaften Anwendung: 0xInstall.exe_Microsoft® Visual Studio® 20050 Pfad der fehlerhaften Anwendung: Install.exe_Microsoft® Visual Studio® 20051 Pfad des fehlerhaften Moduls: Install.exe_Microsoft® Visual Studio® 20052 Berichtskennung: Install.exe_Microsoft® Visual Studio® 20053 Error: (06/18/2014 09:36:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Install.exe_Microsoft® Visual Studio® 2005, Version: 8.0.50727.42, Zeitstempel: 0x4333dd00 Name des fehlerhaften Moduls: Install.exe, Version: 8.0.50727.42, Zeitstempel: 0x4333dd00 Ausnahmecode: 0xc000000d Fehleroffset: 0x0003db6a ID des fehlerhaften Prozesses: 0xcdc Startzeit der fehlerhaften Anwendung: 0xInstall.exe_Microsoft® Visual Studio® 20050 Pfad der fehlerhaften Anwendung: Install.exe_Microsoft® Visual Studio® 20051 Pfad des fehlerhaften Moduls: Install.exe_Microsoft® Visual Studio® 20052 Berichtskennung: Install.exe_Microsoft® Visual Studio® 20053 Error: (06/17/2014 10:20:34 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Blacklist_DX11_game.exe, Version: 0.0.0.0, Zeitstempel: 0x5245f25a Name des fehlerhaften Moduls: Blacklist_DX11_game.exe, Version: 0.0.0.0, Zeitstempel: 0x5245f25a Ausnahmecode: 0xc0000005 Fehleroffset: 0x00422c5c ID des fehlerhaften Prozesses: 0xcf0 Startzeit der fehlerhaften Anwendung: 0xBlacklist_DX11_game.exe0 Pfad der fehlerhaften Anwendung: Blacklist_DX11_game.exe1 Pfad des fehlerhaften Moduls: Blacklist_DX11_game.exe2 Berichtskennung: Blacklist_DX11_game.exe3 Error: (06/17/2014 09:45:11 PM) (Source: MsiInstaller) (EventID: 11935) (User: ZOCKER) Description: Produkt: Microsoft Visual C++ 2005 Redistributable -- Error 1935.Während der Installation der Assembly "Microsoft.VC80.ATL,type="win32",version="8.0.50727.4053",publicKeyToken="1fc8b3b9a1e18e3b",processorArchitecture="x86"" ist ein Fehler aufgetreten. Weitere Informationen finden Sie unter Hilfe und Support. HRESULT: 0x80070308, Assemblyschnittstelle: IAssemblyCacheItem, Funktion: Commit, Komponente: {97F81AF1-0E47-DC99-A01F-C8B3B9A1E18E} Error: (06/16/2014 05:16:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Blacklist_DX11_game.exe, Version: 0.0.0.0, Zeitstempel: 0x5245f25a Name des fehlerhaften Moduls: Blacklist_DX11_game.exe, Version: 0.0.0.0, Zeitstempel: 0x5245f25a Ausnahmecode: 0xc0000005 Fehleroffset: 0x00422c5c ID des fehlerhaften Prozesses: 0x5bc Startzeit der fehlerhaften Anwendung: 0xBlacklist_DX11_game.exe0 Pfad der fehlerhaften Anwendung: Blacklist_DX11_game.exe1 Pfad des fehlerhaften Moduls: Blacklist_DX11_game.exe2 Berichtskennung: Blacklist_DX11_game.exe3 Error: (06/10/2014 08:29:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Game.exe, Version: 1.1.1.3356, Zeitstempel: 0x538d8f3f Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x702c2643 ID des fehlerhaften Prozesses: 0xb34 Startzeit der fehlerhaften Anwendung: 0xGame.exe0 Pfad der fehlerhaften Anwendung: Game.exe1 Pfad des fehlerhaften Moduls: Game.exe2 Berichtskennung: Game.exe3 Error: (06/10/2014 07:45:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Game.exe, Version: 1.1.1.3356, Zeitstempel: 0x538d8f3f Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x68e72643 ID des fehlerhaften Prozesses: 0x10b8 Startzeit der fehlerhaften Anwendung: 0xGame.exe0 Pfad der fehlerhaften Anwendung: Game.exe1 Pfad des fehlerhaften Moduls: Game.exe2 Berichtskennung: Game.exe3 Error: (06/10/2014 07:44:52 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Game.exe, Version: 1.1.1.3356, Zeitstempel: 0x538d8f3f Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x66582643 ID des fehlerhaften Prozesses: 0x16b0 Startzeit der fehlerhaften Anwendung: 0xGame.exe0 Pfad der fehlerhaften Anwendung: Game.exe1 Pfad des fehlerhaften Moduls: Game.exe2 Berichtskennung: Game.exe3 Error: (06/10/2014 07:44:04 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Game.exe, Version: 1.1.1.3356, Zeitstempel: 0x538d8f3f Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x6cad2643 ID des fehlerhaften Prozesses: 0x1744 Startzeit der fehlerhaften Anwendung: 0xGame.exe0 Pfad der fehlerhaften Anwendung: Game.exe1 Pfad des fehlerhaften Moduls: Game.exe2 Berichtskennung: Game.exe3 Error: (06/09/2014 10:26:12 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Game.exe, Version: 1.1.1.3356, Zeitstempel: 0x538d8f3f Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x65a32643 ID des fehlerhaften Prozesses: 0x130c Startzeit der fehlerhaften Anwendung: 0xGame.exe0 Pfad der fehlerhaften Anwendung: Game.exe1 Pfad des fehlerhaften Moduls: Game.exe2 Berichtskennung: Game.exe3 System errors: ============= Error: (06/18/2014 08:56:12 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (06/18/2014 08:56:12 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (06/18/2014 08:55:47 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (06/18/2014 08:55:46 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (06/18/2014 08:55:46 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (06/18/2014 08:55:43 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (06/18/2014 08:55:38 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (06/18/2014 08:55:34 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (06/18/2014 08:55:25 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (06/18/2014 08:55:24 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Microsoft Office Sessions: ========================= Error: (06/18/2014 09:37:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Install.exe_Microsoft® Visual Studio® 20058.0.50727.424333dd00Install.exe8.0.50727.424333dd00c000000d0003db6a15f001cf8b2cc29a6e07C:\Users\Noah\AppData\Local\Temp\IXP000.TMP\Install.exeC:\Users\Noah\AppData\Local\Temp\IXP000.TMP\Install.exe010fb2b0-f720-11e3-ba26-1c6f6544efa1 Error: (06/18/2014 09:36:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Install.exe_Microsoft® Visual Studio® 20058.0.50727.424333dd00Install.exe8.0.50727.424333dd00c000000d0003db6acdc01cf8b2c9e74f889C:\Users\Noah\AppData\Local\Temp\IXP000.TMP\Install.exeC:\Users\Noah\AppData\Local\Temp\IXP000.TMP\Install.exee18d22b3-f71f-11e3-ba26-1c6f6544efa1 Error: (06/17/2014 10:20:34 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Blacklist_DX11_game.exe0.0.0.05245f25aBlacklist_DX11_game.exe0.0.0.05245f25ac000000500422c5ccf001cf8a65fee24d69C:\Tom Clancy's Splinter Cell® Blacklist™\src\SYSTEM\Blacklist_DX11_game.exeC:\Tom Clancy's Splinter Cell® Blacklist™\src\SYSTEM\Blacklist_DX11_game.exed5971a32-f65c-11e3-8efc-1c6f6544efa1 Error: (06/17/2014 09:45:11 PM) (Source: MsiInstaller) (EventID: 11935) (User: ZOCKER) Description: Produkt: Microsoft Visual C++ 2005 Redistributable -- Error 1935.Während der Installation der Assembly "Microsoft.VC80.ATL,type="win32",version="8.0.50727.4053",publicKeyToken="1fc8b3b9a1e18e3b",processorArchitecture="x86"" ist ein Fehler aufgetreten. Weitere Informationen finden Sie unter Hilfe und Support. HRESULT: 0x80070308, Assemblyschnittstelle: IAssemblyCacheItem, Funktion: Commit, Komponente: {97F81AF1-0E47-DC99-A01F-C8B3B9A1E18E}(NULL)(NULL)(NULL)(NULL)(NULL) Error: (06/16/2014 05:16:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Blacklist_DX11_game.exe0.0.0.05245f25aBlacklist_DX11_game.exe0.0.0.05245f25ac000000500422c5c5bc01cf897207de0827C:\Tom Clancy's Splinter Cell® Blacklist™\src\SYSTEM\Blacklist_DX11_game.exeC:\Tom Clancy's Splinter Cell® Blacklist™\src\SYSTEM\Blacklist_DX11_game.exe328b6bfb-f569-11e3-8fb6-1c6f6544efa1 Error: (06/10/2014 08:29:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Game.exe1.1.1.3356538d8f3funknown0.0.0.000000000c0000005702c2643b3401cf84d9e6269e95C:\Program Files (x86)\Crytek\Warface Launcher\Crytek\warface\bin32\Game.exeunknown37f63df9-f0cd-11e3-af9d-1c6f6544efa1 Error: (06/10/2014 07:45:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Game.exe1.1.1.3356538d8f3funknown0.0.0.000000000c000000568e7264310b801cf84d3b66f41ecC:\Program Files (x86)\Crytek\Warface Launcher\Crytek\warface\bin32\Game.exeunknown09a83a9b-f0c7-11e3-af9d-1c6f6544efa1 Error: (06/10/2014 07:44:52 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Game.exe1.1.1.3356538d8f3funknown0.0.0.000000000c00000056658264316b001cf84d3998ae63fC:\Program Files (x86)\Crytek\Warface Launcher\Crytek\warface\bin32\Game.exeunknownec8f3999-f0c6-11e3-af9d-1c6f6544efa1 Error: (06/10/2014 07:44:04 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Game.exe1.1.1.3356538d8f3funknown0.0.0.000000000c00000056cad2643174401cf84d37eaf5a82C:\Program Files (x86)\Crytek\Warface Launcher\Crytek\warface\bin32\Game.exeunknowncfc8787b-f0c6-11e3-af9d-1c6f6544efa1 Error: (06/09/2014 10:26:12 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Game.exe1.1.1.3356538d8f3funknown0.0.0.000000000c000000565a32643130c01cf8420f721f32cC:\Program Files (x86)\Crytek\Warface Launcher\Crytek\warface\bin32\Game.exeunknown4ba287c0-f014-11e3-a0bf-1c6f6544efa1 ==================== Memory info =========================== Percentage of memory in use: 51% Total physical RAM: 3959.49 MB Available physical RAM: 1933.27 MB Total Pagefile: 7917.16 MB Available Pagefile: 5272.14 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:298.08 GB) (Free:81.71 GB) NTFS ==>[Drive with boot components (obtained from BCD)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: CCE47C20) Partition 1: (Active) - (Size=298 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 21:44 on 18/06/2014 (Noah) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- PS: hab Win 7 x64 |
18.06.2014, 22:10 | #2 |
/// the machine /// TB-Ausbilder | Windows 7: 0xc000007b-Fehler bei diversen Programmen hi,
__________________Scan mit Combofix
__________________ |
18.06.2014, 23:36 | #3 |
| Windows 7: 0xc000007b-Fehler bei diversen Programmen Danke für die Antwort, hier die Log-Datei von ComboFix:
__________________Code:
ATTFilter ComboFix 14-06-16.01 - Noah 19.06.2014 0:20.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.3959.2027 [GMT 2:00] ausgeführt von:: c:\users\Noah\Desktop\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B} SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\Bc c:\programdata\Bc\0 c:\users\Noah\AppData\Roaming\dclogs c:\users\Noah\AppData\Roaming\dclogs\2014-05-18-1.dc c:\windows\SysWow64\Packet.dll c:\windows\SysWow64\pthreadVC.dll c:\windows\SysWow64\SET38F0.tmp c:\windows\SysWow64\SET48ED.tmp c:\windows\SysWow64\tmp26D1.tmp c:\windows\SysWow64\tmp26E2.tmp c:\windows\SysWow64\wpcap.dll . . ((((((((((((((((((((((((((((((((((((((( Treiber/Dienste ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Legacy_NPF -------\Service_npf . . ((((((((((((((((((((((( Dateien erstellt von 2014-05-18 bis 2014-06-18 )))))))))))))))))))))))))))))) . . 2014-06-18 22:28 . 2014-06-18 22:28 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-06-18 20:16 . 2014-06-18 20:16 -------- d-----w- c:\windows\SysWow64\BestPractices 2014-06-18 20:16 . 2014-06-18 20:16 -------- d-----w- c:\windows\system32\BestPractices 2014-06-18 20:16 . 2014-06-18 20:16 -------- d-----w- C:\inetpub 2014-06-18 19:46 . 2014-06-18 19:48 -------- d-----w- C:\FRST 2014-06-18 19:35 . 2014-06-18 19:35 -------- d-----w- c:\users\Noah\AppData\Local\PackageAware 2014-06-18 19:31 . 2014-06-18 19:31 -------- d-----w- c:\program files (x86)\Microsoft .NET Compact Framework 1.0 SP3 2014-06-18 19:11 . 2014-06-18 19:11 -------- d-----w- c:\programdata\Electronic Arts 2014-06-18 19:11 . 2014-06-18 19:11 -------- d-----w- c:\program files (x86)\Origin 2014-06-18 18:56 . 2014-04-30 23:20 10702536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{89C757E8-7BD2-49A5-BD47-FE121C4A07A9}\mpengine.dll 2014-06-18 14:00 . 2014-04-25 02:34 801280 ----a-w- c:\windows\system32\usp10.dll 2014-06-18 14:00 . 2014-04-25 02:06 626688 ----a-w- c:\windows\SysWow64\usp10.dll 2014-06-18 14:00 . 2014-04-05 02:47 1903552 ----a-w- c:\windows\system32\drivers\tcpip.sys 2014-06-18 14:00 . 2014-04-05 02:47 288192 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS 2014-06-18 14:00 . 2014-03-26 14:44 2002432 ----a-w- c:\windows\system32\msxml6.dll 2014-06-18 14:00 . 2014-03-26 14:44 1882112 ----a-w- c:\windows\system32\msxml3.dll 2014-06-18 14:00 . 2014-03-26 14:41 2048 ----a-w- c:\windows\system32\msxml6r.dll 2014-06-18 14:00 . 2014-03-26 14:41 2048 ----a-w- c:\windows\system32\msxml3r.dll 2014-06-18 14:00 . 2014-03-26 14:27 1389056 ----a-w- c:\windows\SysWow64\msxml6.dll 2014-06-18 14:00 . 2014-03-26 14:27 1237504 ----a-w- c:\windows\SysWow64\msxml3.dll 2014-06-18 14:00 . 2014-03-26 14:25 2048 ----a-w- c:\windows\SysWow64\msxml6r.dll 2014-06-18 14:00 . 2014-03-26 14:25 2048 ----a-w- c:\windows\SysWow64\msxml3r.dll 2014-06-17 19:51 . 2014-06-17 19:51 -------- d-----w- C:\Blacklight Retribution 2014-06-17 19:51 . 2014-06-17 19:51 -------- d-----w- C:\ArcTemp 2014-06-17 19:47 . 2014-06-17 19:51 -------- d-----w- c:\users\Noah\AppData\Roaming\Arc 2014-06-17 19:44 . 2014-06-17 19:44 -------- d-----w- c:\program files (x86)\Perfect World Entertainment 2014-06-17 18:15 . 2014-06-13 00:19 609056 ----a-w- c:\windows\SysWow64\nvStreaming.exe 2014-06-17 18:12 . 2014-06-17 18:12 -------- d-----w- c:\users\Noah\AppData\Local\Programs 2014-06-17 17:25 . 2014-05-08 09:32 3178496 ----a-w- c:\windows\system32\rdpcorets.dll 2014-06-17 17:25 . 2014-05-08 09:32 16384 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll 2014-06-17 17:25 . 2014-06-08 09:13 506368 ----a-w- c:\windows\system32\aepdu.dll 2014-06-17 17:25 . 2014-06-08 09:08 424448 ----a-w- c:\windows\system32\aeinv.dll 2014-06-16 13:38 . 2014-06-18 14:07 -------- d-----w- c:\users\Noah\AppData\Local\.filius 2014-06-16 13:35 . 2014-06-16 13:36 -------- d-----w- c:\program files\Filius 2014-06-06 19:45 . 2014-05-08 11:25 939224 ----a-w- c:\windows\system32\drivers\Rt64win7.sys 2014-06-06 19:45 . 2014-05-08 11:25 73800 ----a-w- c:\windows\system32\RtNicProp64.dll 2014-06-06 14:16 . 2014-05-29 23:00 1291232 ----a-w- c:\windows\SysWow64\nvspbridge.dll 2014-06-06 14:16 . 2014-05-29 22:59 1715176 ----a-w- c:\windows\system32\nvspbridge64.dll 2014-06-03 12:24 . 2014-06-05 20:40 -------- d-----w- C:\Tom Clancy's Splinter Cell® Blacklist™ 2014-06-03 11:03 . 2014-05-20 02:44 1889112 ----a-w- c:\windows\system32\nvdispco6433788.dll 2014-06-03 11:03 . 2014-05-20 02:44 1541576 ----a-w- c:\windows\system32\nvdispgenco6433788.dll 2014-06-02 17:12 . 2014-06-02 17:12 -------- d-----w- c:\users\Administrator 2014-05-25 19:28 . 2014-05-25 19:28 -------- d-----w- c:\users\Noah\AppData\Local\GScreens.com 2014-05-25 18:20 . 2014-05-25 18:20 125952 ----a-r- c:\users\Noah\AppData\Roaming\Microsoft\Installer\{B3CEEF88-C400-47C2-83BA-F4BFAC5ABDC1}\StartMenuIcon.exe 2014-05-25 18:20 . 2014-05-25 18:20 -------- d-----w- c:\program files (x86)\GScreens 2014-05-25 18:10 . 2014-05-25 18:10 -------- d-----w- c:\program files\Microsoft Silverlight 2014-05-25 18:10 . 2014-05-25 18:10 -------- d-----w- c:\program files (x86)\Microsoft Silverlight 2014-05-25 18:09 . 2014-05-25 18:09 -------- d-----w- c:\windows\SysWow64\Adobe 2014-05-25 18:08 . 2014-05-25 18:09 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2014-05-25 18:08 . 2014-05-25 18:09 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-05-25 18:08 . 2014-05-25 18:09 -------- d-----w- c:\windows\SysWow64\Macromed 2014-05-25 18:08 . 2014-05-25 18:08 -------- d-----w- c:\windows\system32\Macromed 2014-05-25 18:05 . 2014-05-25 18:05 -------- d-----w- c:\windows\SysWow64\URTTEMP 2014-05-25 17:49 . 2014-05-25 17:49 313256 ----a-w- c:\windows\system32\javaws.exe 2014-05-25 17:49 . 2014-05-25 17:49 111016 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll 2014-05-25 17:49 . 2014-05-25 17:49 191400 ----a-w- c:\windows\system32\javaw.exe 2014-05-25 17:49 . 2014-05-25 17:49 190888 ----a-w- c:\windows\system32\java.exe 2014-05-25 17:49 . 2014-05-25 17:49 -------- d-----w- c:\program files\Java 2014-05-25 17:49 . 2014-05-25 17:49 -------- d-----w- c:\program files (x86)\Common Files\Java 2014-05-25 13:05 . 2005-04-03 21:02 69714 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\ctor.dll 2014-05-25 13:05 . 2005-04-03 21:01 274432 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iscript.dll 2014-05-25 13:05 . 2005-04-03 21:00 184320 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iuser.dll 2014-05-25 13:05 . 2005-04-03 21:00 63488 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\ISBEW64.exe 2014-05-25 13:05 . 2005-04-03 21:02 753664 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iKernel.dll 2014-05-25 13:05 . 2014-05-25 13:05 331908 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\setup.dll 2014-05-25 13:05 . 2014-05-25 13:05 200836 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iGdi.dll 2014-05-25 13:00 . 2014-05-25 13:00 319488 ----a-w- c:\windows\HideWin.exe 2014-05-25 13:00 . 2010-03-22 06:22 1247776 ------r- c:\windows\RtlExUpd.dll 2014-05-25 13:00 . 2005-11-13 21:19 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\DotNetInstaller.exe 2014-05-25 12:59 . 2014-05-25 12:59 -------- d--h--w- c:\program files (x86)\Temp 2014-05-25 12:59 . 2006-02-07 13:45 757760 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iKernel.dll 2014-05-25 12:59 . 2006-02-07 13:44 65024 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\ISBEW64.exe 2014-05-25 12:59 . 2006-02-07 13:40 204800 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iuser.dll 2014-05-25 12:59 . 2006-02-07 13:40 69715 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\ctor.dll 2014-05-25 12:59 . 2006-02-07 13:40 274432 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iscript.dll 2014-05-25 12:59 . 2014-05-25 12:59 200836 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iGdi.dll 2014-05-25 12:59 . 2014-05-25 12:59 331908 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\setup.dll 2014-05-25 12:28 . 2014-05-25 12:28 -------- d-----w- c:\program files\Adobe 2014-05-25 12:17 . 2014-05-25 12:26 -------- d-----w- C:\After Effects CS6 2014-05-25 12:05 . 2014-05-25 12:05 -------- d-----w- c:\users\Public\Foxit Software 2014-05-25 12:05 . 2014-05-25 12:05 -------- d-----w- c:\users\Noah\AppData\Roaming\Foxit Software 2014-05-25 12:04 . 2014-05-25 12:04 -------- d-----w- c:\program files (x86)\Foxit Software 2014-05-23 16:58 . 2014-05-25 13:48 -------- d-----w- c:\program files\Common Files\Adobe 2014-05-23 14:45 . 2014-05-23 14:45 -------- d-----w- c:\users\Noah\AppData\Local\Razer 2014-05-23 14:45 . 2014-05-23 14:45 -------- d-----w- c:\programdata\Razer 2014-05-23 14:45 . 2014-05-23 14:45 -------- d-----w- c:\program files (x86)\Razer 2014-05-23 14:24 . 2014-05-29 23:00 1122312 ----a-w- c:\windows\SysWow64\nvspcap.dll 2014-05-23 14:24 . 2014-05-29 22:59 1279480 ----a-w- c:\windows\system32\nvspcap64.dll 2014-05-23 14:23 . 2014-05-23 14:27 -------- d-----w- c:\users\Noah\AppData\Local\NVIDIA 2014-05-23 14:23 . 2014-03-31 16:42 40392 ----a-w- c:\windows\system32\drivers\nvvad64v.sys 2014-05-23 14:23 . 2014-03-31 16:42 37320 ----a-w- c:\windows\system32\nvaudcap64v.dll 2014-05-23 14:23 . 2014-03-31 16:42 34760 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll 2014-05-22 19:17 . 2014-05-22 19:17 -------- d-----w- c:\program files\7-Zip 2014-05-22 16:16 . 2014-05-22 16:16 -------- d-----w- c:\users\Noah\AppData\Local\CrashRpt 2014-05-21 19:33 . 2013-12-13 11:49 1957328 ----a-w- c:\windows\SysWow64\msvcr110d.dll 2014-05-21 19:33 . 2013-12-13 11:49 1957328 ----a-w- c:\windows\system32\msvcr110d.dll 2014-05-21 19:28 . 2013-09-24 10:04 1505104 ----a-w- c:\windows\SysWow64\msvcr100d.dll 2014-05-21 19:28 . 2013-09-24 10:04 1505104 ----a-w- c:\windows\system32\msvcr100d.dll 2014-05-21 19:22 . 2013-09-24 07:06 829264 ----a-w- c:\windows\SysWow64\msvcr100.dll 2014-05-20 20:32 . 2014-05-21 19:28 -------- d-----w- c:\users\Noah\AppData\Local\ccman32 2014-05-20 20:15 . 2014-05-20 20:15 -------- d-----w- c:\users\Noah\AppData\Roaming\Thunderbird 2014-05-20 20:15 . 2014-05-20 20:15 -------- d-----w- c:\users\Noah\AppData\Local\Thunderbird 2014-05-20 20:14 . 2014-05-20 20:14 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service 2014-05-20 20:14 . 2014-05-20 20:14 -------- d-----w- c:\program files (x86)\Mozilla Thunderbird . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-06-17 17:27 . 2014-02-21 22:19 95414520 ----a-w- c:\windows\system32\MRT.exe 2014-06-13 02:48 . 2014-01-25 12:10 75040 ----a-w- c:\windows\system32\OpenCL.dll 2014-06-13 02:48 . 2014-01-25 12:10 62920 ----a-w- c:\windows\SysWow64\OpenCL.dll 2014-06-13 02:47 . 2014-01-25 12:09 14497528 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2014-06-13 02:47 . 2014-01-25 12:09 18625768 ----a-w- c:\windows\system32\nvwgf2umx.dll 2014-06-13 02:46 . 2014-01-25 12:09 965312 ----a-w- c:\windows\system32\nvumdshimx.dll 2014-06-13 02:46 . 2014-01-25 12:09 2814120 ----a-w- c:\windows\SysWow64\nvapi.dll 2014-06-13 02:45 . 2014-01-25 12:09 3196304 ----a-w- c:\windows\system32\nvapi64.dll 2014-06-13 02:11 . 2014-01-25 12:10 6783960 ----a-w- c:\windows\system32\nvcpl.dll 2014-06-13 02:11 . 2014-01-25 12:10 3523360 ----a-w- c:\windows\system32\nvsvc64.dll 2014-06-13 02:11 . 2014-01-25 12:10 933208 ----a-w- c:\windows\system32\nvvsvc.exe 2014-06-13 02:11 . 2014-01-25 12:10 62808 ----a-w- c:\windows\system32\nvshext.dll 2014-06-13 02:11 . 2014-01-25 12:10 387528 ----a-w- c:\windows\system32\nvmctray.dll 2014-06-13 02:11 . 2014-01-25 12:10 2560968 ----a-w- c:\windows\system32\nvsvcr.dll 2014-06-06 17:40 . 2014-01-25 12:10 3802247 ----a-w- c:\windows\system32\nvcoproc.bin 2014-05-25 17:48 . 2014-04-19 17:26 98216 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2014-05-17 20:24 . 2014-01-25 15:37 423240 ----a-w- c:\windows\system32\drivers\aswsp.sys 2014-05-17 20:24 . 2014-01-25 15:37 1039096 ----a-w- c:\windows\system32\drivers\aswsnx.sys 2014-05-17 20:24 . 2014-01-25 15:37 85328 ----a-w- c:\windows\system32\drivers\aswstm.sys 2014-05-08 11:25 . 2014-02-19 18:38 107552 ----a-w- c:\windows\system32\RTNUninst64.dll 2014-05-07 12:58 . 2014-05-07 12:58 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys 2014-05-07 12:58 . 2014-05-07 12:58 43152 ----a-w- c:\windows\avastSS.scr 2014-05-07 12:58 . 2014-01-25 15:37 208416 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2014-05-07 12:58 . 2014-01-25 15:37 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2014-05-07 12:58 . 2014-01-25 15:37 79184 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2014-05-07 12:58 . 2014-01-25 15:37 93568 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2014-05-07 12:58 . 2014-01-25 15:37 334648 ----a-w- c:\windows\system32\aswBoot.exe 2014-05-04 16:24 . 2014-01-25 12:38 466456 ----a-w- c:\windows\system32\wrap_oal.dll 2014-05-04 16:24 . 2014-01-25 12:38 122904 ----a-w- c:\windows\system32\OpenAL32.dll 2014-04-11 21:08 . 2014-04-11 21:08 875712 ----a-w- c:\windows\SysWow64\msvcr120_clr0400.dll 2014-04-11 21:08 . 2014-04-11 21:08 536768 ----a-w- c:\windows\SysWow64\msvcp120_clr0400.dll 2014-04-11 21:08 . 2014-04-11 21:08 28352 ----a-w- c:\windows\SysWow64\aspnet_counters.dll 2014-04-11 21:08 . 2014-04-11 21:08 18088 ----a-w- c:\windows\SysWow64\msvcr110_clr0400.dll 2014-04-11 21:08 . 2014-04-11 21:08 18088 ----a-w- c:\windows\SysWow64\msvcr100_clr0400.dll 2014-04-11 21:08 . 2014-04-11 21:08 18088 ----a-w- c:\windows\SysWow64\msvcp110_clr0400.dll 2014-04-11 20:39 . 2014-04-11 20:39 869568 ----a-w- c:\windows\system32\msvcr120_clr0400.dll 2014-04-11 20:39 . 2014-04-11 20:39 678592 ----a-w- c:\windows\system32\msvcp120_clr0400.dll 2014-04-11 20:39 . 2014-04-11 20:39 29888 ----a-w- c:\windows\system32\aspnet_counters.dll 2014-04-11 20:39 . 2014-04-11 20:39 18088 ----a-w- c:\windows\system32\msvcr110_clr0400.dll 2014-04-11 20:39 . 2014-04-11 20:39 18088 ----a-w- c:\windows\system32\msvcr100_clr0400.dll 2014-04-11 20:39 . 2014-04-11 20:39 18088 ----a-w- c:\windows\system32\msvcp110_clr0400.dll 2014-03-31 07:35 . 2014-02-19 18:54 270496 ------w- c:\windows\system32\MpSigStub.exe . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "VirtualCloneDrive"="c:\program files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2013-03-10 88984] "AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-06-06 3890208] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2014-03-17 224128] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . R0 sfsync03;StarForce Protection Synchronization Driver (version 3.x);c:\windows\System32\drivers\sfsync03.sys;c:\windows\SYSNATIVE\drivers\sfsync03.sys [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R3 ArcService;Arc Service;c:\program files (x86)\Perfect World Entertainment\Arc\ArcService.exe;c:\program files (x86)\Perfect World Entertainment\Arc\ArcService.exe [x] R3 PVUSB;CESG502 USB Driver;c:\windows\system32\DRIVERS\CESG502.sys;c:\windows\SYSNATIVE\DRIVERS\CESG502.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] S0 aswRvrt;avast! Revert; [x] S0 aswVmm;avast! VM Monitor; [x] S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x] S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x] S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x] S2 FoxitCloudUpdateService;Foxit Cloud Safe Update Service;c:\program files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe;c:\program files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [x] S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x] S2 RzKLService;RzKLService;c:\program files (x86)\Razer\Razer Game Booster\RzKLService.exe;c:\program files (x86)\Razer\Razer Game Booster\RzKLService.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x] S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost] iissvcs REG_MULTI_SZ w3svc was apphost REG_MULTI_SZ apphostsvc . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2014-06-16 14:05 1091912 ----a-w- c:\program files (x86)\Google\Chrome\Application\35.0.1916.153\Installer\chrmstp.exe . Inhalt des "geplante Tasks" Ordners . 2014-06-18 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-25 18:09] . 2014-06-18 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-02-19 18:45] . 2014-06-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-02-19 18:45] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2014-05-07 12:58 290888 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-05-29 2350880] "ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2014-05-29 1279480] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm IE: Download with GetRight - c:\program files (x86)\GetRight\GRdownload.htm IE: Open with GetRight Browser - c:\program files (x86)\GetRight\GRbrowse.htm TCP: DhcpNameServer = 192.168.1.1 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . c:\users\Noah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\start.lnk - c:\users\Noah\59knbk4jbsv2zh2\50294.vbs AddRemove-LastKnight - c:\lastknight\uninstall.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\software\BlueStacks] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_13_0_0_214_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_13_0_0_214_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_13_0_0_214_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_13_0_0_214_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.13" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files\AVAST Software\Avast\AvastSvc.exe . ************************************************************************** . Zeit der Fertigstellung: 2014-06-19 00:34:53 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2014-06-18 22:34 . Vor Suchlauf: 30 Verzeichnis(se), 87.086.694.400 Bytes frei Nach Suchlauf: 35 Verzeichnis(se), 87.686.144.000 Bytes frei . - - End Of File - - 922459CE9D751A5C35FD34235AABC9A6 A36C5E4F47E84449FF07ED3517B43A31 |
19.06.2014, 20:38 | #4 |
/// the machine /// TB-Ausbilder | Windows 7: 0xc000007b-Fehler bei diversen Programmen Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
20.06.2014, 18:30 | #5 |
| Windows 7: 0xc000007b-Fehler bei diversen Programmen Bitte schön: MBAM: Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 19.06.2014 Suchlauf-Zeit: 21:45:10 Logdatei: mbam.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.06.19.09 Rootkit Datenbank: v2014.06.02.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Self-protection: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Noah Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 307720 Verstrichene Zeit: 21 Min, 17 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 8 PUP.Optional.ResultsAlpha.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{F631E34D-23D3-4ED2-8942-631B8AAF9EA4}, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{B01A1DA4-813F-44BD-B544-77E5DA7EB5A8}, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{B01A1DA4-813F-44BD-B544-77E5DA7EB5A8}, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{F631E34D-23D3-4ED2-8942-631B8AAF9EA4}, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\ResultsAlpha, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, HKLM\SOFTWARE\WOW6432NODE\ResultsAlpha, In Quarantäne, [074e01798af112242ef735b77c87738d], PUP.Optional.PlusHD.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Plus-HD-3.8, In Quarantäne, [4c09f486ee8d80b651cc4d6d62a0bc44], PUP.Optional.ResultsAlpha.A, HKU\S-1-5-21-1700879945-1222271863-2406225941-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\ResultsAlpha, In Quarantäne, [55003e3c67145fd7bb6bd517b15223dd], Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 0 (No malicious items detected) Ordner: 3 PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\bin, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.CrossRider.A, C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ofjgnhihlklpobkaloamkankaaoclfjh, In Quarantäne, [e66f64162d4e48ee5c461886a9592ed2], Dateien: 14 HackTool.Agent.DC, C:\Users\Noah\Desktop\Extreme Injector v2 by master131.exe, Keine Aktion durch Benutzer, [a0b5691143381d19dfe0122b9968fd03], PUP.Optional.PCPerformer.A, C:\Windows\System32\roboot64.exe, In Quarantäne, [f95cd6a484f7e05642ab0fb1be4423dd], PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\ResultsAlpha.ico, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\7za.exe, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\ResultsAlphaBHO.dll, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\ResultsAlphaUninstall.exe, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\updateResultsAlpha.exe, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\updateResultsAlpha.InstallState, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\bin\utilResultsAlpha.exe, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\bin\utilResultsAlpha.InstallState, In Quarantäne, [02532d4d205bf3431113b933e32008f8], PUP.Optional.CrossRider.A, C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ofjgnhihlklpobkaloamkankaaoclfjh\000005.ldb, In Quarantäne, [e66f64162d4e48ee5c461886a9592ed2], PUP.Optional.CrossRider.A, C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ofjgnhihlklpobkaloamkankaaoclfjh\CURRENT, In Quarantäne, [e66f64162d4e48ee5c461886a9592ed2], PUP.Optional.CrossRider.A, C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ofjgnhihlklpobkaloamkankaaoclfjh\LOCK, In Quarantäne, [e66f64162d4e48ee5c461886a9592ed2], PUP.Optional.CrossRider.A, C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ofjgnhihlklpobkaloamkankaaoclfjh\MANIFEST-000004, In Quarantäne, [e66f64162d4e48ee5c461886a9592ed2], Physische Sektoren: 0 (No malicious items detected) (end) Code:
ATTFilter # AdwCleaner v3.212 - Bericht erstellt am 20/06/2014 um 19:09:28 # Aktualisiert 05/06/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Noah - ZOCKER # Gestartet von : C:\Users\Noah\Downloads\adwcleaner_3.212.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Users\Noah\AppData\Local\PackageAware ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs Schlüssel Gelöscht : HKCU\Software\APN PIP Schlüssel Gelöscht : HKCU\Software\Headlight Schlüssel Gelöscht : HKLM\Software\systweak ***** [ Browser ] ***** -\\ Internet Explorer v0.0.0.0 -\\ Google Chrome v35.0.1916.153 [ Datei : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\preferences ] [ Datei : C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=HIP&o=102875&locale=de_DE&apn_uid=a0a59f5a-2f15-48a1-a6ae-2bdfa3d3bc72&apn_ptnrs=%5E6F&apn_sauid=3E4EE059-8221-495A-B4A2-EEF5C0907B88&apn_dtid=%5EYYYYYY%5EYY%5EDE&q={searchTerms} Gelöscht [Search Provider] : hxxp://search.sweetim.com/?src=6&q={searchTerms} Gelöscht [Search Provider] : hxxp://start.iminent.com/?appId=26B1AF83-DD1D-4C51-B62C-A993C60CBEC3&ref=toolbox&q={searchTerms} ************************* AdwCleaner[R0].txt - [6286 octets] - [09/03/2014 12:03:17] AdwCleaner[R1].txt - [1187 octets] - [19/04/2014 16:54:57] AdwCleaner[R2].txt - [2219 octets] - [20/06/2014 19:08:35] AdwCleaner[S0].txt - [5180 octets] - [09/03/2014 13:04:33] AdwCleaner[S1].txt - [1251 octets] - [19/04/2014 16:55:40] AdwCleaner[S2].txt - [2038 octets] - [20/06/2014 19:09:28] ########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [2098 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 7 Home Premium x64 Ran by Noah on 20.06.2014 at 19:18:40,29 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Program Files (x86)\dll-files.com fixer" ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 20.06.2014 at 19:24:07,33 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-06-2014 Ran by Noah (administrator) on ZOCKER on 20-06-2014 19:27:29 Running from C:\Users\Noah\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2350880 2014-05-30] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation) HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3890208 2014-06-06] (AVAST Software) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xD987695BA22DCF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM-x32 - DefaultScope value is missing. BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll (Perfect World Entertainment Inc) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @java.com/DTPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Tom Clancy's H.A.W.X. 2\orbit\npuplaypc.dll No File Chrome: ======= CHR HomePage: hxxp://www.ecosia.org/ CHR StartupUrls: "hxxp://www.ecosia.org/" CHR DefaultSearchKeyword: ecosia.org CHR DefaultSearchProvider: Ecosia CHR DefaultSearchURL: hxxp://ecosia.org/search.php?q={searchTerms}&addon=opensearch CHR DefaultNewTabURL: CHR Extension: (Age Bypass for YouTube™) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\agplnpcecljdfdbdgnahngbedjnlbjbf [2014-02-19] CHR Extension: (Google Drive) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-19] CHR Extension: (Session Manager) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbcnbpafconjjigibnhbfmmgdbbkcjfi [2014-02-19] CHR Extension: (YouTube) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-02-19] CHR Extension: (Adblock Plus) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-19] CHR Extension: (Google-Suche) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-02-19] CHR Extension: (FoxyProxy Basic) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\dookpfaalaaappcdneeahomimbllocnb [2014-05-20] CHR Extension: (DoNotTrackMe: Online Privacy Protection) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\epanfjkfahimkgomnigadpkobaefekcd [2014-02-19] CHR Extension: (Sheep Happens) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcmeacimddnfofflgicdgggcbgfpkjci [2014-03-24] CHR Extension: (Falcon Proxy) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\gchhimlnjdafdlkojbffdkogjhhkdepf [2014-02-19] CHR Extension: (Download) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfbckmilnhkcajpjifgbonfkkoekhmnp [2014-02-19] CHR Extension: (Zalmos SSL Web Proxy for Free) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\idefjamndcpplnamdlbodoebjgkpdmpn [2014-02-19] CHR Extension: (Stealthy) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\ieaebnkibonmpbhdaanjkmedikadnoje [2014-02-19] CHR Extension: (Verdun Game) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\khdppkcpilejlgahecofelpoidcnjbdg [2014-02-27] CHR Extension: (BeGone) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndfpieflbjbdpgklkeolbmbdkfdiicfk [2014-02-19] CHR Extension: (BeGone : Last Stand) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\necojdbekhjnilkdlbidaknjjgefbbid [2014-04-05] CHR Extension: (Google Wallet) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-19] CHR Extension: (APK Downloader) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\obhlfmheblhjhkmacldlhdnbgbaiigba [2014-03-28] CHR Extension: (Click&Clean App) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2014-02-19] CHR Extension: (Google Mail) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-02-19] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-05-07] ==================== Services (Whitelisted) ================= S3 ArcService; C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe [88400 2014-06-06] (Perfect World Entertainment Inc) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-07] (AVAST Software) R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [239680 2014-02-19] (Foxit Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-07] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-07] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-05-07] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-07] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-17] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-17] (AVAST Software) S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-17] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-07] () R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 PVUSB; C:\Windows\SysWOW64\DRIVERS\CESG502.sys [40672 2014-02-27] (Hitachi Semiconductor and Devices Sales Co.,Ltd.) [File not signed] S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 gdrv; \??\C:\Windows\gdrv.sys [X] S4 sfdrv01; System32\drivers\sfdrv01.sys [X] S4 sfhlp02; System32\drivers\sfhlp02.sys [X] S0 sfsync03; System32\drivers\sfsync03.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-20 19:27 - 2014-06-20 19:27 - 00014156 _____ () C:\Users\Noah\Downloads\FRST.txt 2014-06-20 19:26 - 2014-06-20 19:26 - 00067371 _____ () C:\Users\Noah\Desktop\FRST.txt 2014-06-20 19:25 - 2014-06-20 19:25 - 00000000 ____D () C:\Users\Noah\Downloads\FRST-OlderVersion 2014-06-20 19:18 - 2014-06-20 19:18 - 01016261 _____ (Thisisu) C:\Users\Noah\Downloads\JRT.exe 2014-06-20 19:18 - 2014-06-20 19:18 - 00000000 ____D () C:\Windows\ERUNT 2014-06-20 19:09 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-06-20 19:07 - 2014-06-20 19:08 - 01333465 _____ () C:\Users\Noah\Downloads\adwcleaner_3.212.exe 2014-06-20 19:02 - 2014-06-20 19:10 - 00005298 _____ () C:\Windows\PFRO.log 2014-06-20 19:02 - 2014-06-20 19:10 - 00000336 _____ () C:\Windows\setupact.log 2014-06-20 19:02 - 2014-06-20 19:02 - 00000000 _____ () C:\Windows\setuperr.log 2014-06-19 21:43 - 2014-06-20 19:06 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-06-19 21:43 - 2014-06-19 21:43 - 00001106 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-06-19 21:43 - 2014-06-19 21:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-06-19 21:43 - 2014-06-19 21:43 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-06-19 21:43 - 2014-06-19 21:43 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-06-19 21:43 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-06-19 21:43 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-06-19 21:43 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-06-19 21:41 - 2014-06-19 21:43 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Noah\Downloads\mbam-setup-2.0.2.1012.exe 2014-06-19 21:18 - 2014-06-19 21:18 - 00005313 _____ () C:\Users\Noah\AppData\Local\recently-used.xbel 2014-06-19 19:59 - 2014-06-19 21:18 - 00000000 ____D () C:\Users\Noah\AppData\Local\gtk-2.0 2014-06-19 19:50 - 2014-06-19 21:19 - 00000000 ____D () C:\Users\Noah\.gimp-2.8 2014-06-19 19:50 - 2014-06-19 19:50 - 00000000 ____D () C:\Users\Noah\AppData\Local\gegl-0.2 2014-06-19 19:49 - 2014-06-19 19:49 - 00000894 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2014-06-19 19:49 - 2014-06-19 19:49 - 00000882 _____ () C:\Users\Public\Desktop\GIMP 2.lnk 2014-06-19 19:48 - 2014-06-19 19:50 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Ultimate Updater 2014-06-19 19:47 - 2014-06-19 19:49 - 00000000 ____D () C:\Program Files\GIMP 2 2014-06-19 19:40 - 2014-06-19 19:47 - 90396104 _____ (The GIMP Team ) C:\Users\Noah\Downloads\gimp-2.8.10-setup.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-06-19 19:35 - 2014-06-19 19:35 - 00000000 ____D () C:\Program Files\Java 2014-06-19 09:02 - 2014-06-19 09:02 - 05341824 _____ (Dll-Files.com ) C:\Users\Noah\Downloads\dffsetup.exe 2014-06-19 00:18 - 2014-06-19 00:34 - 00000000 ____D () C:\Qoobox 2014-06-19 00:18 - 2014-06-19 00:33 - 00000000 ____D () C:\Windows\erdnt 2014-06-19 00:18 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe 2014-06-19 00:18 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe 2014-06-19 00:18 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-06-19 00:18 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-06-19 00:18 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-06-19 00:18 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe 2014-06-19 00:18 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe 2014-06-19 00:18 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\Windows\SysWOW64\BestPractices 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\Windows\system32\BestPractices 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\inetpub 2014-06-18 21:53 - 2014-06-18 21:53 - 00003154 _____ () C:\Windows\System32\Tasks\{1F6BADF6-436A-4AE3-B4AF-74E0D3056766} 2014-06-18 21:49 - 2014-06-18 21:49 - 00380416 _____ () C:\Users\Noah\Downloads\Gmer-19357.exe 2014-06-18 21:46 - 2014-06-20 19:27 - 00000000 ____D () C:\FRST 2014-06-18 21:45 - 2014-06-20 19:25 - 02083328 _____ (Farbar) C:\Users\Noah\Downloads\FRST64.exe 2014-06-18 21:44 - 2014-06-18 21:44 - 00050477 _____ () C:\Users\Noah\Downloads\Defogger.exe 2014-06-18 21:44 - 2014-06-18 21:44 - 00000000 _____ () C:\Users\Noah\defogger_reenable 2014-06-18 21:37 - 2014-06-18 21:37 - 00003154 _____ () C:\Windows\System32\Tasks\{FBB7C956-6B0C-4385-9F4D-574BC1E5A273} 2014-06-18 21:32 - 2014-06-18 21:33 - 00388608 _____ (Trend Micro Inc.) C:\Users\Noah\Downloads\HiJackThis204.exe 2014-06-18 21:31 - 2014-06-18 21:31 - 00002571 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft .NET Compact Framework Installer.lnk 2014-06-18 21:31 - 2014-06-18 21:31 - 00000000 ____D () C:\Program Files (x86)\Microsoft .NET Compact Framework 1.0 SP3 2014-06-18 21:11 - 2014-06-18 21:11 - 00000983 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-06-18 16:37 - 2014-06-18 16:37 - 00000000 ____D () C:\Users\Noah\Documents\FLiNGTrainer 2014-06-18 16:37 - 2013-04-21 18:21 - 01167360 _____ (3DMGAME) C:\Users\Noah\Desktop\Mass Effect 3 v1.5.5427.124 Plus 13 Trainer.exe 2014-06-18 16:00 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-06-18 16:00 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-06-18 16:00 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-06-18 16:00 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-06-18 16:00 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-06-18 16:00 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-06-18 16:00 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-06-18 16:00 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-06-18 16:00 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-06-18 16:00 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-06-18 16:00 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-06-18 16:00 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ___HD () C:\ArcTemp 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ____D () C:\Blacklight Retribution 2014-06-17 21:50 - 2014-06-19 19:19 - 00000839 _____ () C:\Users\Noah\Desktop\settings.xml 2014-06-17 21:47 - 2014-06-19 08:26 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Arc 2014-06-17 21:47 - 2012-10-20 15:28 - 00187392 _____ (master131) C:\Users\Noah\Desktop\Extreme Injector v2 by master131.exe 2014-06-17 21:46 - 2010-06-13 17:57 - 00032256 _____ () C:\Users\Noah\Desktop\Blacklight Retribution.dll 2014-06-17 21:44 - 2014-06-17 21:44 - 00001846 _____ () C:\Users\Public\Desktop\Arc.lnk 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect World Entertainment 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\Program Files (x86)\Perfect World Entertainment 2014-06-17 20:15 - 2014-06-13 02:19 - 00609056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-06-17 20:07 - 2014-06-13 04:59 - 01890264 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434043.dll 2014-06-17 20:07 - 2014-06-13 04:59 - 01542088 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434043.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 13911928 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 13824408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 11272544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 11211224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 04248520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 03989464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00946120 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00909256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00902616 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00869336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00391456 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00348120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 31512352 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 24198616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 17553032 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 16122344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 12860888 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-06-17 20:07 - 2014-06-13 04:47 - 00502048 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 00417568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 22994392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 15294296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00846832 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-06-17 19:25 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-17 19:25 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-17 19:25 - 2014-05-08 11:32 - 03178496 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-06-17 19:25 - 2014-05-08 11:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2014-06-16 15:38 - 2014-06-18 16:07 - 00000000 ____D () C:\Users\Noah\AppData\Local\.filius 2014-06-16 15:35 - 2014-06-16 15:36 - 00000000 ____D () C:\Program Files\Filius 2014-06-16 15:30 - 2014-06-18 16:18 - 00061866 _____ () C:\Users\Noah\Desktop\Test.fls 2014-06-09 14:33 - 2014-06-09 14:36 - 00000000 ____D () C:\Users\Noah\Desktop\mightier.1.4 2014-06-06 21:45 - 2014-05-08 13:25 - 00939224 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-06-06 21:45 - 2014-05-08 13:25 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-06-06 16:16 - 2014-05-30 01:00 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-06-06 16:16 - 2014-05-30 00:59 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-06-03 16:09 - 2014-06-03 16:09 - 00000000 ____D () C:\Users\Noah\Documents\Ubisoft 2014-06-03 16:08 - 2014-06-05 22:42 - 00001061 _____ () C:\Users\Noah\Desktop\Splinter Cell Blacklist.lnk 2014-06-03 15:03 - 2014-06-03 15:03 - 00001907 _____ () C:\Users\Public\Desktop\Tom Clancy's Splinter Cell® Blacklist™.lnk 2014-06-03 14:24 - 2014-06-05 22:40 - 00000000 ____D () C:\Tom Clancy's Splinter Cell® Blacklist™ 2014-06-03 13:03 - 2014-05-20 04:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-06-03 13:03 - 2014-05-20 04:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-06-03 12:34 - 2014-06-03 12:34 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe 2014-06-02 19:14 - 2014-06-02 19:14 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\AVAST Software 2014-06-02 19:13 - 2014-06-02 19:13 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Apple Computer 2014-06-02 19:12 - 2014-06-03 13:01 - 00002247 _____ () C:\Users\Administrator\Desktop\Google Chrome.lnk 2014-06-02 19:12 - 2014-06-03 12:59 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA 2014-06-02 19:12 - 2014-06-02 19:12 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Vorlagen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Startmenü 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Netzwerkumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Lokale Einstellungen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Eigene Dateien 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Druckumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Musik 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Bilder 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Verlauf 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA Corporation 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator 2014-06-02 19:12 - 2014-02-03 22:40 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Macromedia 2014-06-02 19:12 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-06-02 19:12 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\Documents\Gscreens 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\AppData\Local\GScreens.com 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GScreens 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Program Files (x86)\GScreens 2014-05-25 20:11 - 2014-05-25 20:11 - 01198049 _____ () C:\Windows\unins000.exe 2014-05-25 20:11 - 2014-05-25 20:11 - 00010714 _____ () C:\Windows\unins000.dat 2014-05-25 20:11 - 2014-05-25 20:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-05-25 20:11 - 2014-01-25 13:30 - 00131072 _____ (Sereby Corporation) C:\Windows\SysWOW64\AiORuntimes.dll 2014-05-25 20:11 - 2013-12-20 00:48 - 00617896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00444328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshflxgd.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00416408 _____ (Microsoft Corporation ) C:\Windows\SysWOW64\comct332.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00279192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatgrd.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00259736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msflxgrd.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00253080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatlst.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00219288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\richtx32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00218776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dblist32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00212112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mci32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00179352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmask32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00170920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comct232.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00131728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00130712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstdfmt.dll 2014-05-25 20:11 - 2013-12-20 00:48 - 00127640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswinsck.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00119960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomm32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00108696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstkprp.dll 2014-05-25 20:11 - 2013-12-20 00:48 - 00104088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\picclp32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00084624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysinfo.ocx 2014-05-25 20:11 - 2013-09-19 23:00 - 00269824 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\Windows\SysWOW64\libssl32.dll 2014-05-25 20:11 - 2013-09-11 09:55 - 00458608 _____ (AutoIt Team) C:\Windows\SysWOW64\autoitx3.dll 2014-05-25 20:11 - 2013-08-31 20:40 - 03115385 _____ (Red Hat) C:\Windows\SysWOW64\cygwin1.dll 2014-05-25 20:11 - 2013-02-11 09:35 - 01178624 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\Windows\SysWOW64\libeay32.dll 2014-05-25 20:11 - 2013-02-11 09:35 - 00269824 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\Windows\SysWOW64\ssleay32.dll 2014-05-25 20:11 - 2012-06-14 14:36 - 00107520 _____ () C:\Windows\SysWOW64\zlib1.dll 2014-05-25 20:11 - 2012-04-03 16:11 - 00138752 _____ () C:\Windows\SysWOW64\libpng15.dll 2014-05-25 20:11 - 2011-01-12 13:36 - 01054208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71u.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71deu.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71ita.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71fra.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71esp.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71enu.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71kor.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71jpn.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71cht.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71chs.dll 2014-05-25 20:11 - 2011-01-12 12:53 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl71.dll 2014-05-25 20:11 - 2010-06-27 17:44 - 00053248 _____ (Adobe Systems, Incorporated) C:\Windows\system\plugin.dll 2014-05-25 20:11 - 2010-03-18 20:21 - 00799568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdia100.dll 2014-05-25 20:11 - 2008-08-26 06:40 - 00162304 _____ () C:\Windows\SysWOW64\libpng13.dll 2014-05-25 20:11 - 2008-03-14 17:21 - 01008128 _____ (GnuWin32 <hxxp://gnuwin32.sourceforge.net>) C:\Windows\SysWOW64\libiconv2.dll 2014-05-25 20:11 - 2007-01-30 22:04 - 00339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr70.dll 2014-05-25 20:11 - 2006-08-26 00:28 - 01017344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70u.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70ita.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70fra.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70esp.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70deu.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70enu.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70kor.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70jpn.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70cht.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70chs.dll 2014-05-25 20:11 - 2006-08-26 00:07 - 01024000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70.dll 2014-05-25 20:11 - 2006-08-25 23:17 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl70.dll 2014-05-25 20:11 - 2005-05-06 13:52 - 00103424 _____ (GNU <www.gnu.org>) C:\Windows\SysWOW64\libintl3.dll 2014-05-25 20:11 - 2005-01-20 19:25 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvci70.dll 2014-05-25 20:11 - 2002-01-05 05:40 - 00487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp70.dll 2014-05-25 20:11 - 1996-01-12 03:00 - 00935632 _____ (Microsoft Corporation) C:\Windows\system\vb40016.dll 2014-05-25 20:11 - 1994-11-17 13:00 - 00210944 _____ () C:\Windows\system\msvcrt10.dll 2014-05-25 20:11 - 1993-05-11 19:00 - 00398416 _____ (Microsoft Corporation) C:\Windows\system\vbrun300.dll 2014-05-25 20:11 - 1992-10-21 00:00 - 00356992 _____ (Microsoft Corporation) C:\Windows\system\vbrun200.dll 2014-05-25 20:11 - 1991-05-10 01:00 - 00271264 _____ () C:\Windows\system\vbrun100.dll 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-05-25 20:09 - 2014-06-20 19:20 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-25 20:09 - 2014-05-25 20:09 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-25 20:09 - 2014-05-25 20:09 - 00000000 ____D () C:\Windows\SysWOW64\Adobe 2014-05-25 20:08 - 2014-05-25 20:09 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-25 20:08 - 2014-05-25 20:09 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-25 20:08 - 2014-05-25 20:09 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-05-25 20:08 - 2014-05-25 20:08 - 00000000 ____D () C:\Windows\system32\Macromed 2014-05-25 20:05 - 2014-05-25 20:05 - 00000000 ____D () C:\Windows\SysWOW64\URTTEMP 2014-05-25 15:04 - 2014-05-25 15:04 - 00003122 _____ () C:\Windows\System32\Tasks\{CD921BD0-568A-4AEE-A0EF-6898FDBC6A48} 2014-05-25 15:00 - 2014-05-25 15:00 - 00319488 _____ (Realtek Semiconductor Corp.) C:\Windows\HideWin.exe 2014-05-25 15:00 - 2014-05-25 15:00 - 00003080 _____ () C:\Windows\System32\Tasks\{217A672D-BBFF-497B-B0A1-CAA0574464D6} 2014-05-25 15:00 - 2010-03-22 08:22 - 01247776 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-05-25 14:59 - 2014-05-25 14:59 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-05-25 14:28 - 2014-05-25 14:28 - 00000000 ____D () C:\Program Files\Adobe 2014-05-25 14:17 - 2014-05-25 14:26 - 00000000 ____D () C:\After Effects CS6 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Public\Foxit Software 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Foxit Software 2014-05-25 14:04 - 2014-05-25 14:04 - 00000000 ____D () C:\Program Files (x86)\Foxit Software 2014-05-23 18:58 - 2014-05-25 15:48 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-05-23 17:55 - 2014-05-25 13:43 - 00003749 _____ () C:\Windows\system32\Drivers\etc\lmhosts.sam 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\Documents\Razer 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer_Inc 2014-05-23 16:45 - 2014-06-02 17:01 - 00002065 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-23 16:24 - 2014-05-30 01:00 - 01122312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-05-23 16:24 - 2014-05-30 00:59 - 01279480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-05-23 16:23 - 2014-05-23 16:27 - 00000000 ____D () C:\Users\Noah\AppData\Local\NVIDIA 2014-05-23 16:23 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-05-23 16:23 - 2014-03-31 18:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-05-23 16:23 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-05-22 21:17 - 2014-05-22 21:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-05-22 21:17 - 2014-05-22 21:17 - 00000000 ____D () C:\Program Files\7-Zip 2014-05-22 18:16 - 2014-05-22 18:16 - 00000000 ____D () C:\Users\Noah\AppData\Local\CrashRpt 2014-05-21 21:33 - 2013-12-13 13:49 - 01957328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr110d.dll 2014-05-21 21:33 - 2013-12-13 13:49 - 01957328 _____ (Microsoft Corporation) C:\Windows\system32\msvcr110d.dll 2014-05-21 21:28 - 2013-09-24 12:04 - 01505104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100d.dll 2014-05-21 21:28 - 2013-09-24 12:04 - 01505104 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100d.dll 2014-05-21 21:22 - 2013-09-24 09:06 - 00829264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100.dll ==================== One Month Modified Files and Folders ======= 2014-06-20 19:27 - 2014-06-20 19:27 - 00014156 _____ () C:\Users\Noah\Downloads\FRST.txt 2014-06-20 19:27 - 2014-06-18 21:46 - 00000000 ____D () C:\FRST 2014-06-20 19:26 - 2014-06-20 19:26 - 00067371 _____ () C:\Users\Noah\Desktop\FRST.txt 2014-06-20 19:25 - 2014-06-20 19:25 - 00000000 ____D () C:\Users\Noah\Downloads\FRST-OlderVersion 2014-06-20 19:25 - 2014-06-18 21:45 - 02083328 _____ (Farbar) C:\Users\Noah\Downloads\FRST64.exe 2014-06-20 19:20 - 2014-05-25 20:09 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-20 19:18 - 2014-06-20 19:18 - 01016261 _____ (Thisisu) C:\Users\Noah\Downloads\JRT.exe 2014-06-20 19:18 - 2014-06-20 19:18 - 00000000 ____D () C:\Windows\ERUNT 2014-06-20 19:18 - 2009-07-14 06:45 - 00013552 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-20 19:18 - 2009-07-14 06:45 - 00013552 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-20 19:16 - 2014-02-19 20:45 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-20 19:16 - 2014-01-25 13:22 - 01568282 _____ () C:\Windows\WindowsUpdate.log 2014-06-20 19:11 - 2014-02-19 20:45 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-20 19:10 - 2014-06-20 19:02 - 00005298 _____ () C:\Windows\PFRO.log 2014-06-20 19:10 - 2014-06-20 19:02 - 00000336 _____ () C:\Windows\setupact.log 2014-06-20 19:10 - 2014-01-25 14:10 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-06-20 19:10 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-20 19:09 - 2014-03-09 12:03 - 00000000 ____D () C:\AdwCleaner 2014-06-20 19:08 - 2014-06-20 19:07 - 01333465 _____ () C:\Users\Noah\Downloads\adwcleaner_3.212.exe 2014-06-20 19:06 - 2014-06-19 21:43 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-06-20 19:02 - 2014-06-20 19:02 - 00000000 _____ () C:\Windows\setuperr.log 2014-06-19 21:43 - 2014-06-19 21:43 - 00001106 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-06-19 21:43 - 2014-06-19 21:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-06-19 21:43 - 2014-06-19 21:43 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-06-19 21:43 - 2014-06-19 21:43 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-06-19 21:43 - 2014-06-19 21:41 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Noah\Downloads\mbam-setup-2.0.2.1012.exe 2014-06-19 21:19 - 2014-06-19 19:50 - 00000000 ____D () C:\Users\Noah\.gimp-2.8 2014-06-19 21:18 - 2014-06-19 21:18 - 00005313 _____ () C:\Users\Noah\AppData\Local\recently-used.xbel 2014-06-19 21:18 - 2014-06-19 19:59 - 00000000 ____D () C:\Users\Noah\AppData\Local\gtk-2.0 2014-06-19 19:50 - 2014-06-19 19:50 - 00000000 ____D () C:\Users\Noah\AppData\Local\gegl-0.2 2014-06-19 19:50 - 2014-06-19 19:48 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Ultimate Updater 2014-06-19 19:50 - 2014-01-25 13:22 - 00000000 ____D () C:\Users\Noah 2014-06-19 19:49 - 2014-06-19 19:49 - 00000894 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2014-06-19 19:49 - 2014-06-19 19:49 - 00000882 _____ () C:\Users\Public\Desktop\GIMP 2.lnk 2014-06-19 19:49 - 2014-06-19 19:47 - 00000000 ____D () C:\Program Files\GIMP 2 2014-06-19 19:47 - 2014-06-19 19:40 - 90396104 _____ (The GIMP Team ) C:\Users\Noah\Downloads\gimp-2.8.10-setup.exe 2014-06-19 19:44 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-06-19 19:40 - 2014-05-17 09:42 - 00000000 ____D () C:\ProgramData\Package Cache 2014-06-19 19:36 - 2014-02-19 21:15 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\GetRight 2014-06-19 19:35 - 2014-06-19 19:35 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-06-19 19:35 - 2014-06-19 19:35 - 00000000 ____D () C:\Program Files\Java 2014-06-19 19:34 - 2014-02-26 23:58 - 00000000 ____D () C:\Program Files (x86)\Java 2014-06-19 19:26 - 2009-07-14 19:58 - 00798568 _____ () C:\Windows\system32\perfh007.dat 2014-06-19 19:26 - 2009-07-14 19:58 - 00186966 _____ () C:\Windows\system32\perfc007.dat 2014-06-19 19:26 - 2009-07-14 07:13 - 01874698 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-06-19 19:19 - 2014-06-17 21:50 - 00000839 _____ () C:\Users\Noah\Desktop\settings.xml 2014-06-19 19:19 - 2014-05-19 17:29 - 00000000 ____D () C:\Users\Noah\AppData\Local\wf-launcher 2014-06-19 19:16 - 2014-04-05 17:56 - 00000000 ____D () C:\ProgramData\GFACE 2014-06-19 15:48 - 2014-01-25 17:37 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-06-19 09:02 - 2014-06-19 09:02 - 05341824 _____ (Dll-Files.com ) C:\Users\Noah\Downloads\dffsetup.exe 2014-06-19 08:26 - 2014-06-17 21:47 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Arc 2014-06-19 00:34 - 2014-06-19 00:18 - 00000000 ____D () C:\Qoobox 2014-06-19 00:33 - 2014-06-19 00:18 - 00000000 ____D () C:\Windows\erdnt 2014-06-19 00:30 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini 2014-06-19 00:29 - 2009-07-14 04:34 - 60817408 _____ () C:\Windows\system32\config\software.bak 2014-06-19 00:29 - 2009-07-14 04:34 - 14680064 _____ () C:\Windows\system32\config\system.bak 2014-06-19 00:29 - 2009-07-14 04:34 - 00524288 _____ () C:\Windows\system32\config\default.bak 2014-06-19 00:29 - 2009-07-14 04:34 - 00262144 _____ () C:\Windows\system32\config\security.bak 2014-06-19 00:29 - 2009-07-14 04:34 - 00262144 _____ () C:\Windows\system32\config\sam.bak 2014-06-18 22:17 - 2014-01-25 14:06 - 01759482 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\Windows\SysWOW64\BestPractices 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\Windows\system32\BestPractices 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\inetpub 2014-06-18 22:16 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\inetsrv 2014-06-18 22:16 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\inetsrv 2014-06-18 21:53 - 2014-06-18 21:53 - 00003154 _____ () C:\Windows\System32\Tasks\{1F6BADF6-436A-4AE3-B4AF-74E0D3056766} 2014-06-18 21:49 - 2014-06-18 21:49 - 00380416 _____ () C:\Users\Noah\Downloads\Gmer-19357.exe 2014-06-18 21:44 - 2014-06-18 21:44 - 00050477 _____ () C:\Users\Noah\Downloads\Defogger.exe 2014-06-18 21:44 - 2014-06-18 21:44 - 00000000 _____ () C:\Users\Noah\defogger_reenable 2014-06-18 21:37 - 2014-06-18 21:37 - 00003154 _____ () C:\Windows\System32\Tasks\{FBB7C956-6B0C-4385-9F4D-574BC1E5A273} 2014-06-18 21:33 - 2014-06-18 21:32 - 00388608 _____ (Trend Micro Inc.) C:\Users\Noah\Downloads\HiJackThis204.exe 2014-06-18 21:31 - 2014-06-18 21:31 - 00002571 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft .NET Compact Framework Installer.lnk 2014-06-18 21:31 - 2014-06-18 21:31 - 00000000 ____D () C:\Program Files (x86)\Microsoft .NET Compact Framework 1.0 SP3 2014-06-18 21:11 - 2014-06-18 21:11 - 00000983 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-06-18 16:37 - 2014-06-18 16:37 - 00000000 ____D () C:\Users\Noah\Documents\FLiNGTrainer 2014-06-18 16:18 - 2014-06-16 15:30 - 00061866 _____ () C:\Users\Noah\Desktop\Test.fls 2014-06-18 16:07 - 2014-06-16 15:38 - 00000000 ____D () C:\Users\Noah\AppData\Local\.filius 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ___HD () C:\ArcTemp 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ____D () C:\Blacklight Retribution 2014-06-17 21:44 - 2014-06-17 21:44 - 00001846 _____ () C:\Users\Public\Desktop\Arc.lnk 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect World Entertainment 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\Program Files (x86)\Perfect World Entertainment 2014-06-17 21:44 - 2014-01-25 15:26 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-06-17 20:15 - 2014-01-25 14:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-06-17 20:15 - 2014-01-25 14:10 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-06-17 20:11 - 2014-01-25 14:09 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-06-17 20:06 - 2014-02-19 20:45 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-06-17 20:06 - 2014-02-19 20:45 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-06-17 19:29 - 2014-02-22 00:19 - 00000000 ____D () C:\Windows\system32\MRT 2014-06-17 19:27 - 2014-02-22 00:19 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-06-17 19:26 - 2014-05-03 17:28 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-06-16 15:36 - 2014-06-16 15:35 - 00000000 ____D () C:\Program Files\Filius 2014-06-13 04:59 - 2014-06-17 20:07 - 01890264 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434043.dll 2014-06-13 04:59 - 2014-06-17 20:07 - 01542088 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434043.dll 2014-06-13 04:59 - 2014-01-25 14:09 - 00026353 _____ () C:\Windows\system32\nvinfo.pb 2014-06-13 04:48 - 2014-06-17 20:07 - 13911928 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 13824408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 11272544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 11211224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 04248520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 03989464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00946120 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00909256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00902616 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00869336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00391456 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00348120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-06-13 04:48 - 2014-01-25 14:10 - 00075040 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-06-13 04:48 - 2014-01-25 14:10 - 00062920 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 31512352 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 24198616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 17553032 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 16122344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 12860888 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-06-13 04:47 - 2014-06-17 20:07 - 00502048 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 00417568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-06-13 04:47 - 2014-01-25 14:09 - 18625768 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-06-13 04:47 - 2014-01-25 14:09 - 14497528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 22994392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 15294296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00846832 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-06-13 04:46 - 2014-01-25 14:09 - 02814120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-06-13 04:46 - 2014-01-25 14:09 - 00965312 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-06-13 04:45 - 2014-01-25 14:09 - 03196304 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 06783960 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 03523360 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 02560968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 00933208 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-06-13 04:11 - 2014-01-25 14:10 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-06-13 02:19 - 2014-06-17 20:15 - 00609056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-06-09 16:55 - 2014-03-09 20:41 - 00000000 ____D () C:\Program Files (x86)\JDownloader 2014-06-09 14:36 - 2014-06-09 14:33 - 00000000 ____D () C:\Users\Noah\Desktop\mightier.1.4 2014-06-08 11:13 - 2014-06-17 19:25 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-08 11:08 - 2014-06-17 19:25 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-06 23:26 - 2014-02-04 22:24 - 00000000 ____D () C:\FFOutput 2014-06-06 21:50 - 2014-03-24 22:46 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\IrfanView 2014-06-06 21:45 - 2014-02-19 20:38 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-06-06 19:40 - 2014-01-25 14:10 - 03802247 _____ () C:\Windows\system32\nvcoproc.bin 2014-06-06 16:16 - 2014-01-25 14:14 - 00000000 ____D () C:\Users\Noah\AppData\Local\NVIDIA Corporation 2014-06-05 22:42 - 2014-06-03 16:08 - 00001061 _____ () C:\Users\Noah\Desktop\Splinter Cell Blacklist.lnk 2014-06-05 22:40 - 2014-06-03 14:24 - 00000000 ____D () C:\Tom Clancy's Splinter Cell® Blacklist™ 2014-06-05 21:20 - 2014-02-26 20:58 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-06-05 21:20 - 2014-02-26 20:58 - 00000000 ____D () C:\Program Files\CCleaner 2014-06-03 20:45 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-06-03 16:09 - 2014-06-03 16:09 - 00000000 ____D () C:\Users\Noah\Documents\Ubisoft 2014-06-03 16:09 - 2014-01-25 15:33 - 00000000 ____D () C:\ProgramData\Orbit 2014-06-03 15:03 - 2014-06-03 15:03 - 00001907 _____ () C:\Users\Public\Desktop\Tom Clancy's Splinter Cell® Blacklist™.lnk 2014-06-03 14:23 - 2014-02-04 20:44 - 00000000 ____D () C:\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst 2014-06-03 13:01 - 2014-06-02 19:12 - 00002247 _____ () C:\Users\Administrator\Desktop\Google Chrome.lnk 2014-06-03 12:59 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA 2014-06-03 12:48 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-06-03 12:34 - 2014-06-03 12:34 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe 2014-06-02 19:14 - 2014-06-02 19:14 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\AVAST Software 2014-06-02 19:13 - 2014-06-02 19:13 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Apple Computer 2014-06-02 19:12 - 2014-06-02 19:12 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Vorlagen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Startmenü 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Netzwerkumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Lokale Einstellungen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Eigene Dateien 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Druckumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Musik 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Bilder 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Verlauf 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA Corporation 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator 2014-06-02 17:01 - 2014-05-23 16:45 - 00002065 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-30 01:00 - 2014-06-06 16:16 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-05-30 01:00 - 2014-05-23 16:24 - 01122312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-05-30 00:59 - 2014-06-06 16:16 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-05-30 00:59 - 2014-05-23 16:24 - 01279480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-05-25 21:55 - 2014-04-20 19:25 - 00000000 ____D () C:\Program Files\Unlocker 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\Documents\Gscreens 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\AppData\Local\GScreens.com 2014-05-25 21:28 - 2014-01-25 17:10 - 00069168 _____ () C:\Users\Noah\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GScreens 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Program Files (x86)\GScreens 2014-05-25 20:11 - 2014-05-25 20:11 - 01198049 _____ () C:\Windows\unins000.exe 2014-05-25 20:11 - 2014-05-25 20:11 - 00010714 _____ () C:\Windows\unins000.dat 2014-05-25 20:11 - 2014-05-25 20:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-05-25 20:11 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-05-25 20:09 - 2014-05-25 20:09 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-25 20:09 - 2014-05-25 20:09 - 00000000 ____D () C:\Windows\SysWOW64\Adobe 2014-05-25 20:09 - 2014-05-25 20:08 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-25 20:09 - 2014-05-25 20:08 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-25 20:09 - 2014-05-25 20:08 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-05-25 20:08 - 2014-05-25 20:08 - 00000000 ____D () C:\Windows\system32\Macromed 2014-05-25 20:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration 2014-05-25 20:05 - 2014-05-25 20:05 - 00000000 ____D () C:\Windows\SysWOW64\URTTEMP 2014-05-25 19:48 - 2014-04-19 19:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-25 19:48 - 2014-03-06 18:42 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\BitTorrent 2014-05-25 18:17 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-05-25 15:48 - 2014-05-23 18:58 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-05-25 15:17 - 2014-02-26 21:00 - 00000000 ____D () C:\Users\Noah\Desktop\Registry-Sicherung 2014-05-25 15:17 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-05-25 15:10 - 2014-02-19 20:30 - 00000010 _____ () C:\Windows\GSetup.ini 2014-05-25 15:04 - 2014-05-25 15:04 - 00003122 _____ () C:\Windows\System32\Tasks\{CD921BD0-568A-4AEE-A0EF-6898FDBC6A48} 2014-05-25 15:00 - 2014-05-25 15:00 - 00319488 _____ (Realtek Semiconductor Corp.) C:\Windows\HideWin.exe 2014-05-25 15:00 - 2014-05-25 15:00 - 00003080 _____ () C:\Windows\System32\Tasks\{217A672D-BBFF-497B-B0A1-CAA0574464D6} 2014-05-25 14:59 - 2014-05-25 14:59 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-05-25 14:49 - 2009-07-14 06:45 - 04927152 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-25 14:36 - 2014-02-03 22:36 - 00000000 ____D () C:\Users\Noah\AppData\Local\Adobe 2014-05-25 14:28 - 2014-05-25 14:28 - 00000000 ____D () C:\Program Files\Adobe 2014-05-25 14:26 - 2014-05-25 14:17 - 00000000 ____D () C:\After Effects CS6 2014-05-25 14:26 - 2014-02-03 22:37 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Adobe 2014-05-25 14:20 - 2014-02-03 22:37 - 00000000 ____D () C:\ProgramData\Adobe 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Public\Foxit Software 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Foxit Software 2014-05-25 14:04 - 2014-05-25 14:04 - 00000000 ____D () C:\Program Files (x86)\Foxit Software 2014-05-25 13:59 - 2014-02-03 22:40 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-05-25 13:55 - 2014-02-03 22:43 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe 2014-05-25 13:43 - 2014-05-23 17:55 - 00003749 _____ () C:\Windows\system32\Drivers\etc\lmhosts.sam 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\Documents\Razer 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer_Inc 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-23 16:27 - 2014-05-23 16:23 - 00000000 ____D () C:\Users\Noah\AppData\Local\NVIDIA 2014-05-23 16:27 - 2014-01-25 14:10 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-05-22 21:17 - 2014-05-22 21:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-05-22 21:17 - 2014-05-22 21:17 - 00000000 ____D () C:\Program Files\7-Zip 2014-05-22 18:16 - 2014-05-22 18:16 - 00000000 ____D () C:\Users\Noah\AppData\Local\CrashRpt 2014-05-21 21:28 - 2014-05-20 22:32 - 00000000 ____D () C:\Users\Noah\AppData\Local\ccman32 Some content of TEMP: ==================== C:\Users\Noah\AppData\Local\Temp\62IhdMsLaec8diycWv.exe C:\Users\Noah\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-17 19:57 ==================== End Of Log ============================ LG RipTheJacker |
21.06.2014, 09:35 | #6 |
/// the machine /// TB-Ausbilder | Windows 7: 0xc000007b-Fehler bei diversen ProgrammenESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ --> Windows 7: 0xc000007b-Fehler bei diversen Programmen |
21.06.2014, 23:19 | #7 |
| Windows 7: 0xc000007b-Fehler bei diversen Programmen ESET: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7587 # api_version=3.0.2 # EOSSerial=afeced6ae86cce4fb5cc4a16d3957c33 # engine=18816 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2014-06-21 03:08:50 # local_time=2014-06-21 05:08:50 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='avast! Antivirus' # compatibility_mode=783 16777213 100 92 1282800 12702708 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 69006 154993180 0 0 # scanned=21129 # found=0 # cleaned=0 # scan_time=6807 ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7587 # api_version=3.0.2 # EOSSerial=afeced6ae86cce4fb5cc4a16d3957c33 # engine=18816 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2014-06-21 08:15:38 # local_time=2014-06-21 10:15:38 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='avast! Antivirus' # compatibility_mode=783 16777213 100 92 1301208 12721116 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 87414 155011588 0 0 # scanned=186192 # found=21 # cleaned=0 # scan_time=18312 sh=E5A3C100D2D0FD94482783AF2B2FF94CDFC9923F ft=1 fh=a0ddd0619a504a2e vn="Variante von Win32/Hao123.A evtl. unerwünschte Anwendung" ac=I fn="C:\Program Files (x86)\FreeTime\FormatFactory\FFModules\Package\BaiDu\hao123inst.exe" sh=153BFC626AEE483A53765E1EC5E722A7FA4F7CE0 ft=1 fh=841e0c64fd47062f vn="MSIL/HackTool.Inject.A Trojaner" ac=I fn="C:\Users\Noah\Desktop\Extreme Injector v2 by master131.exe" sh=515B0F69E0047DBD0A945FEAFF1D8797826F6429 ft=1 fh=a509ffdd5d6b7b35 vn="Win32/DownWare.L evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Noah\Downloads\Nicht bestätigt 626173.crdownload" sh=515B0F69E0047DBD0A945FEAFF1D8797826F6429 ft=1 fh=a509ffdd5d6b7b35 vn="Win32/DownWare.L evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Noah\Downloads\Nicht bestätigt 803720.crdownload" sh=D5DA858E67F2A7BE41A2077627779074B79627DD ft=1 fh=83074dbac270ef8b vn="Win32/DownWare.L evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Noah\Downloads\Nicht bestätigt 942242.crdownload" sh=EB2530EDC63D4D9BA178321C36C5477551F8DBA0 ft=1 fh=f18d51d9d3f254f3 vn="Win32/DownWare.L evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Noah\Downloads\Nicht bestätigt 976192.crdownload" sh=B514417733CBC6831AD6E9847F30B2EFFE4B19DC ft=1 fh=c71c0011ffa75b3c vn="Variante von Win32/Amonetize.AW evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Noah\Downloads\Sheep Happens Hack Downloader__3687_i923264019_il5755557.exe" sh=B7D0CB6319A843BCC3CCB5D720754C99981E2E98 ft=1 fh=4de3077045f53a5e vn="Variante von Win32/DownloadSponsor.A evtl. unerwünschte Anwendung" ac=I fn="K:\$RECYCLE.BIN\S-1-5-21-4082323958-663726408-1511143027-1000\$RJBEMSL.exe" sh=4399F5E73219E9247BDB4C0A8A99AC7999A04822 ft=1 fh=49276031bcccda64 vn="Variante von Win32/Packed.VMProtect.AAH Trojaner" ac=I fn="K:\Noah\Far.Cry.3.RELOADED\Trainer\1.01\FCry3+21Tr-LNG\FCry3+21Tr-LNG_DX11.exe" sh=680ACBC65650EF45BF60DAB97D208DC5DD71C77C ft=1 fh=d930b1b0c095d84b vn="Variante von Win32/Packed.VMProtect.AAH Trojaner" ac=I fn="K:\Noah\Far.Cry.3.RELOADED\Trainer\1.01\FCry3+21Tr-LNG\FCry3+21Tr-LNG_DX9.exe" sh=E4B2D478DE000A2FE0706D989404DADF2C7336B4 ft=1 fh=beaa557a0d8074b4 vn="Variante von Win32/Packed.VMProtect.AAH Trojaner" ac=I fn="K:\Noah\Far.Cry.3.RELOADED\Trainer\1.02\FCry3+30Tr-LNG_1.02_x2\FCry3+30Tr-LNG_DX11.exe" sh=5DB4B04C76040FBB70758FF74035BB6074271643 ft=1 fh=464d6f57dad8e4e0 vn="Variante von Win32/Packed.VMProtect.AAH Trojaner" ac=I fn="K:\Noah\Far.Cry.3.RELOADED\Trainer\1.02\FCry3+30Tr-LNG_1.02_x2\FCry3+30Tr-LNG_DX9.exe" sh=7C2A39C75D21D7261F75211015939F07E93C515A ft=1 fh=93ef660e1822e9c6 vn="Variante von Win32/Packed.VMProtect.AAH Trojaner" ac=I fn="K:\Noah\Far.Cry.3.RELOADED\Trainer\1.05\FCry3_1.05+30Tr-LNG_DX11.exe" sh=FDF2BB47132C7FD8D72608EA4ABEA2029F68F77A ft=1 fh=b93e5f2b59300e60 vn="Variante von Win32/Packed.VMProtect.AAH Trojaner" ac=I fn="K:\Noah\Far.Cry.3.RELOADED\Trainer\1.05\FCry3_1.05+30Tr-LNG_DX9.exe" sh=8DC4405F09328A282BA14475930A615B26459D4E ft=1 fh=fc166459dc80649f vn="Variante von Win32/Packed.VMProtect.AAH Trojaner" ac=I fn="K:\Noah\Splinter Cell Blacklist RLD\Trainer\1.01\SplinterCBL+11Tr-LNG_v1.01_DX11.exe" sh=CC7B7223CE8332F76AAA90FD67FD672559F2E582 ft=1 fh=99dc1e76b26aed4f vn="Variante von Win32/Packed.VMProtect.AAH Trojaner" ac=I fn="K:\Noah\Splinter Cell Blacklist RLD\Trainer\1.01\SplinterCBL+11Tr-LNG_v1.01_DX9.exe" sh=1CB493C597089BCE829EBBCBEEA099AD2D8435C5 ft=1 fh=5aca0a21224fa68b vn="Variante von Win32/Packed.VMProtect.AAH Trojaner" ac=I fn="K:\Noah\Splinter Cell Blacklist RLD\Trainer\1.03\SplinterCBL+11Tr-LNG_v1.03_DX11.exe" sh=9284F0787FBCB4F1D2607499B65433A8C728DF2F ft=1 fh=eb190f018f394dcb vn="Variante von Win32/Packed.VMProtect.AAH Trojaner" ac=I fn="K:\Noah\Splinter Cell Blacklist RLD\Trainer\1.03\SplinterCBL+11Tr-LNG_v1.03_DX9.exe" sh=DC99E75F198F2B5170AC65652090E67E51F4F8C3 ft=0 fh=0000000000000000 vn="Variante von MSIL/DownloadGuide.E evtl. unerwünschte Anwendung" ac=I fn="K:\ZOCKER\Backup Set 2014-05-03 172921\Backup Files 2014-05-04 160001\Backup files 16.zip" sh=4DD5D1F567CE343D6B235FA980AE450DCDDC06AA ft=0 fh=0000000000000000 vn="Variante von Win32/Hao123.A evtl. unerwünschte Anwendung" ac=I fn="K:\ZOCKER\Backup Set 2014-05-03 172921\Backup Files 2014-05-04 160001\Backup files 4.zip" sh=186AEB96C9B816E16148FF0C88676952EE8ECEDA ft=0 fh=0000000000000000 vn="Variante von Win32/BrowseFox.F evtl. unerwünschte Anwendung" ac=I fn="K:\ZOCKER\Backup Set 2014-05-03 172921\Backup Files 2014-05-04 160001\Backup files 6.zip" Code:
ATTFilter Results of screen317's Security Check version 0.99.83 Windows 7 Service Pack 1 x64 (UAC is enabled) ``````````````Antivirus/Firewall Check:`````````````` avast! Antivirus Antivirus out of date! `````````Anti-malware/Other Utilities Check:````````` Java 7 Update 55 Adobe Flash Player 13.0.0.214 Mozilla Thunderbird (24.5.0) Google Chrome 35.0.1916.114 Google Chrome 35.0.1916.153 ````````Process Check: objlist.exe by Laurent```````` AVAST Software Avast AvastSvc.exe AVAST Software Avast avastui.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-06-2014 Ran by Noah (administrator) on ZOCKER on 22-06-2014 00:15:15 Running from C:\Users\Noah\Downloads\Trojaner-Board Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2350880 2014-05-30] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation) HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3890208 2014-06-06] (AVAST Software) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xD987695BA22DCF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM-x32 - DefaultScope value is missing. BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll (Perfect World Entertainment Inc) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @java.com/DTPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Noah\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Tom Clancy's H.A.W.X. 2\orbit\npuplaypc.dll No File Chrome: ======= CHR HomePage: hxxp://www.ecosia.org/ CHR StartupUrls: "hxxp://www.ecosia.org/" CHR DefaultSearchKeyword: ecosia.org CHR DefaultSearchProvider: Ecosia CHR DefaultSearchURL: hxxp://ecosia.org/search.php?q={searchTerms}&addon=opensearch CHR DefaultNewTabURL: CHR Extension: (Age Bypass for YouTube™) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\agplnpcecljdfdbdgnahngbedjnlbjbf [2014-02-19] CHR Extension: (Google Drive) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-19] CHR Extension: (Session Manager) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbcnbpafconjjigibnhbfmmgdbbkcjfi [2014-02-19] CHR Extension: (YouTube) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-02-19] CHR Extension: (Adblock Plus) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-19] CHR Extension: (Google-Suche) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-02-19] CHR Extension: (FoxyProxy Basic) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\dookpfaalaaappcdneeahomimbllocnb [2014-05-20] CHR Extension: (DoNotTrackMe: Online Privacy Protection) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\epanfjkfahimkgomnigadpkobaefekcd [2014-02-19] CHR Extension: (Sheep Happens) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcmeacimddnfofflgicdgggcbgfpkjci [2014-03-24] CHR Extension: (Falcon Proxy) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\gchhimlnjdafdlkojbffdkogjhhkdepf [2014-02-19] CHR Extension: (Download) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfbckmilnhkcajpjifgbonfkkoekhmnp [2014-02-19] CHR Extension: (Zalmos SSL Web Proxy for Free) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\idefjamndcpplnamdlbodoebjgkpdmpn [2014-02-19] CHR Extension: (Stealthy) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\ieaebnkibonmpbhdaanjkmedikadnoje [2014-02-19] CHR Extension: (Verdun Game) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\khdppkcpilejlgahecofelpoidcnjbdg [2014-02-27] CHR Extension: (BeGone) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndfpieflbjbdpgklkeolbmbdkfdiicfk [2014-02-19] CHR Extension: (BeGone : Last Stand) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\necojdbekhjnilkdlbidaknjjgefbbid [2014-04-05] CHR Extension: (Google Wallet) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-19] CHR Extension: (APK Downloader) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\obhlfmheblhjhkmacldlhdnbgbaiigba [2014-03-28] CHR Extension: (Click&Clean App) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2014-02-19] CHR Extension: (Google Mail) - C:\Users\Noah\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-02-19] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-05-07] ==================== Services (Whitelisted) ================= S3 ArcService; C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe [88400 2014-06-06] (Perfect World Entertainment Inc) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-07] (AVAST Software) R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [239680 2014-02-19] (Foxit Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-07] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-07] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-05-07] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-07] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-17] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-17] (AVAST Software) S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-17] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-07] () R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 PVUSB; C:\Windows\SysWOW64\DRIVERS\CESG502.sys [40672 2014-02-27] (Hitachi Semiconductor and Devices Sales Co.,Ltd.) [File not signed] R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 gdrv; \??\C:\Windows\gdrv.sys [X] S4 sfdrv01; System32\drivers\sfdrv01.sys [X] S4 sfhlp02; System32\drivers\sfhlp02.sys [X] S0 sfsync03; System32\drivers\sfsync03.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-22 00:10 - 2014-06-22 00:15 - 00000000 ____D () C:\Users\Noah\Downloads\Trojaner-Board 2014-06-21 16:30 - 2014-06-21 16:30 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Unity 2014-06-21 16:28 - 2014-06-21 16:28 - 00000000 ____D () C:\Users\Noah\AppData\Local\Unity 2014-06-20 21:10 - 2014-06-20 21:11 - 13441726 _____ () C:\Users\Administrator\AppData\Roaming\2.wav 2014-06-20 21:09 - 2014-06-20 21:09 - 00000062 _____ () C:\Users\Noah\Downloads\collectionCache.bnk 2014-06-20 21:06 - 2014-06-20 21:06 - 00069168 _____ () C:\Users\Administrator\AppData\Local\GDIPFONTCACHEV1.DAT 2014-06-20 21:06 - 2014-06-20 21:06 - 00000207 _____ () C:\Users\Administrator\AppData\Roaming\SpotifyRecorderSettings.ini 2014-06-20 21:04 - 2014-06-20 21:05 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Spotify 2014-06-20 21:04 - 2014-06-20 21:04 - 00001843 _____ () C:\Users\Administrator\Desktop\Spotify.lnk 2014-06-20 21:04 - 2014-06-20 21:04 - 00001829 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2014-06-20 20:58 - 2014-06-20 21:11 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Spotify 2014-06-20 20:54 - 2014-06-20 20:54 - 00001155 _____ () C:\Users\Public\Desktop\Recorder for Spotify.lnk 2014-06-20 20:54 - 2014-06-20 20:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recorder for Spotify 2014-06-20 20:54 - 2014-06-20 20:54 - 00000000 ____D () C:\Program Files (x86)\Recorder for Spotify 2014-06-20 20:44 - 2014-06-20 20:44 - 00000000 ____D () C:\Windows\Sun 2014-06-20 19:18 - 2014-06-20 19:18 - 00000000 ____D () C:\Windows\ERUNT 2014-06-20 19:09 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-06-20 19:02 - 2014-06-21 15:02 - 00000504 _____ () C:\Windows\setupact.log 2014-06-20 19:02 - 2014-06-20 19:10 - 00005298 _____ () C:\Windows\PFRO.log 2014-06-20 19:02 - 2014-06-20 19:02 - 00000000 _____ () C:\Windows\setuperr.log 2014-06-19 21:43 - 2014-06-19 21:43 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-06-19 21:18 - 2014-06-19 21:18 - 00005313 _____ () C:\Users\Noah\AppData\Local\recently-used.xbel 2014-06-19 19:59 - 2014-06-19 21:18 - 00000000 ____D () C:\Users\Noah\AppData\Local\gtk-2.0 2014-06-19 19:50 - 2014-06-19 21:19 - 00000000 ____D () C:\Users\Noah\.gimp-2.8 2014-06-19 19:50 - 2014-06-19 19:50 - 00000000 ____D () C:\Users\Noah\AppData\Local\gegl-0.2 2014-06-19 19:49 - 2014-06-19 19:49 - 00000894 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2014-06-19 19:49 - 2014-06-19 19:49 - 00000882 _____ () C:\Users\Public\Desktop\GIMP 2.lnk 2014-06-19 19:48 - 2014-06-19 19:50 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Ultimate Updater 2014-06-19 19:47 - 2014-06-19 19:49 - 00000000 ____D () C:\Program Files\GIMP 2 2014-06-19 19:35 - 2014-06-19 19:35 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-06-19 19:35 - 2014-06-19 19:35 - 00000000 ____D () C:\Program Files\Java 2014-06-19 00:18 - 2014-06-19 00:34 - 00000000 ____D () C:\Qoobox 2014-06-19 00:18 - 2014-06-19 00:33 - 00000000 ____D () C:\Windows\erdnt 2014-06-19 00:18 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe 2014-06-19 00:18 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe 2014-06-19 00:18 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-06-19 00:18 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-06-19 00:18 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-06-19 00:18 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe 2014-06-19 00:18 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe 2014-06-19 00:18 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\Windows\SysWOW64\BestPractices 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\Windows\system32\BestPractices 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\inetpub 2014-06-18 21:53 - 2014-06-18 21:53 - 00003154 _____ () C:\Windows\System32\Tasks\{1F6BADF6-436A-4AE3-B4AF-74E0D3056766} 2014-06-18 21:46 - 2014-06-22 00:15 - 00000000 ____D () C:\FRST 2014-06-18 21:44 - 2014-06-18 21:44 - 00000000 _____ () C:\Users\Noah\defogger_reenable 2014-06-18 21:37 - 2014-06-18 21:37 - 00003154 _____ () C:\Windows\System32\Tasks\{FBB7C956-6B0C-4385-9F4D-574BC1E5A273} 2014-06-18 21:31 - 2014-06-18 21:31 - 00002571 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft .NET Compact Framework Installer.lnk 2014-06-18 21:31 - 2014-06-18 21:31 - 00000000 ____D () C:\Program Files (x86)\Microsoft .NET Compact Framework 1.0 SP3 2014-06-18 21:11 - 2014-06-18 21:11 - 00000983 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-06-18 16:37 - 2014-06-18 16:37 - 00000000 ____D () C:\Users\Noah\Documents\FLiNGTrainer 2014-06-18 16:37 - 2013-04-21 18:21 - 01167360 _____ (3DMGAME) C:\Users\Noah\Desktop\Mass Effect 3 v1.5.5427.124 Plus 13 Trainer.exe 2014-06-18 16:00 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-06-18 16:00 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-06-18 16:00 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-06-18 16:00 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-06-18 16:00 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-06-18 16:00 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-06-18 16:00 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-06-18 16:00 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-06-18 16:00 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-06-18 16:00 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-06-18 16:00 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-06-18 16:00 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ___HD () C:\ArcTemp 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ____D () C:\Blacklight Retribution 2014-06-17 21:50 - 2014-06-19 19:19 - 00000839 _____ () C:\Users\Noah\Desktop\settings.xml 2014-06-17 21:47 - 2014-06-19 08:26 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Arc 2014-06-17 21:47 - 2012-10-20 15:28 - 00187392 _____ (master131) C:\Users\Noah\Desktop\Extreme Injector v2 by master131.exe 2014-06-17 21:46 - 2010-06-13 17:57 - 00032256 _____ () C:\Users\Noah\Desktop\Blacklight Retribution.dll 2014-06-17 21:44 - 2014-06-17 21:44 - 00001846 _____ () C:\Users\Public\Desktop\Arc.lnk 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect World Entertainment 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\Program Files (x86)\Perfect World Entertainment 2014-06-17 20:15 - 2014-06-13 02:19 - 00609056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-06-17 20:07 - 2014-06-13 04:59 - 01890264 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434043.dll 2014-06-17 20:07 - 2014-06-13 04:59 - 01542088 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434043.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 13911928 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 13824408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 11272544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 11211224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 04248520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 03989464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00946120 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00909256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00902616 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00869336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00391456 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-06-17 20:07 - 2014-06-13 04:48 - 00348120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 31512352 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 24198616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 17553032 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 16122344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 12860888 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-06-17 20:07 - 2014-06-13 04:47 - 00502048 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-06-17 20:07 - 2014-06-13 04:47 - 00417568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 22994392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 15294296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00846832 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-06-17 20:07 - 2014-06-13 04:46 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-06-17 19:25 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-17 19:25 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-17 19:25 - 2014-05-08 11:32 - 03178496 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-06-17 19:25 - 2014-05-08 11:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2014-06-16 15:38 - 2014-06-18 16:07 - 00000000 ____D () C:\Users\Noah\AppData\Local\.filius 2014-06-16 15:35 - 2014-06-16 15:36 - 00000000 ____D () C:\Program Files\Filius 2014-06-16 15:30 - 2014-06-18 16:18 - 00061866 _____ () C:\Users\Noah\Desktop\Test.fls 2014-06-09 14:33 - 2014-06-09 14:36 - 00000000 ____D () C:\Users\Noah\Desktop\mightier.1.4 2014-06-06 21:45 - 2014-05-08 13:25 - 00939224 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-06-06 21:45 - 2014-05-08 13:25 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-06-06 16:16 - 2014-05-30 01:00 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-06-06 16:16 - 2014-05-30 00:59 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-06-03 16:09 - 2014-06-03 16:09 - 00000000 ____D () C:\Users\Noah\Documents\Ubisoft 2014-06-03 16:08 - 2014-06-05 22:42 - 00001061 _____ () C:\Users\Noah\Desktop\Splinter Cell Blacklist.lnk 2014-06-03 15:03 - 2014-06-03 15:03 - 00001907 _____ () C:\Users\Public\Desktop\Tom Clancy's Splinter Cell® Blacklist™.lnk 2014-06-03 14:24 - 2014-06-05 22:40 - 00000000 ____D () C:\Tom Clancy's Splinter Cell® Blacklist™ 2014-06-03 13:03 - 2014-05-20 04:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-06-03 13:03 - 2014-05-20 04:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-06-03 12:34 - 2014-06-03 12:34 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe 2014-06-02 19:14 - 2014-06-02 19:14 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\AVAST Software 2014-06-02 19:13 - 2014-06-02 19:13 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Apple Computer 2014-06-02 19:12 - 2014-06-03 13:01 - 00002247 _____ () C:\Users\Administrator\Desktop\Google Chrome.lnk 2014-06-02 19:12 - 2014-06-03 12:59 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA 2014-06-02 19:12 - 2014-06-02 19:12 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Vorlagen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Startmenü 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Netzwerkumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Lokale Einstellungen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Eigene Dateien 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Druckumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Musik 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Bilder 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Verlauf 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA Corporation 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator 2014-06-02 19:12 - 2014-02-03 22:40 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Macromedia 2014-06-02 19:12 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-06-02 19:12 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\Documents\Gscreens 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\AppData\Local\GScreens.com 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GScreens 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Program Files (x86)\GScreens 2014-05-25 20:11 - 2014-05-25 20:11 - 01198049 _____ () C:\Windows\unins000.exe 2014-05-25 20:11 - 2014-05-25 20:11 - 00010714 _____ () C:\Windows\unins000.dat 2014-05-25 20:11 - 2014-05-25 20:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-05-25 20:11 - 2014-01-25 13:30 - 00131072 _____ (Sereby Corporation) C:\Windows\SysWOW64\AiORuntimes.dll 2014-05-25 20:11 - 2013-12-20 00:48 - 00617896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00444328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshflxgd.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00416408 _____ (Microsoft Corporation ) C:\Windows\SysWOW64\comct332.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00279192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatgrd.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00259736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msflxgrd.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00253080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatlst.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00219288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\richtx32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00218776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dblist32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00212112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mci32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00179352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmask32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00170920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comct232.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00131728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00130712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstdfmt.dll 2014-05-25 20:11 - 2013-12-20 00:48 - 00127640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswinsck.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00119960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomm32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00108696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstkprp.dll 2014-05-25 20:11 - 2013-12-20 00:48 - 00104088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\picclp32.ocx 2014-05-25 20:11 - 2013-12-20 00:48 - 00084624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysinfo.ocx 2014-05-25 20:11 - 2013-09-19 23:00 - 00269824 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\Windows\SysWOW64\libssl32.dll 2014-05-25 20:11 - 2013-09-11 09:55 - 00458608 _____ (AutoIt Team) C:\Windows\SysWOW64\autoitx3.dll 2014-05-25 20:11 - 2013-08-31 20:40 - 03115385 _____ (Red Hat) C:\Windows\SysWOW64\cygwin1.dll 2014-05-25 20:11 - 2013-02-11 09:35 - 01178624 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\Windows\SysWOW64\libeay32.dll 2014-05-25 20:11 - 2013-02-11 09:35 - 00269824 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\Windows\SysWOW64\ssleay32.dll 2014-05-25 20:11 - 2012-06-14 14:36 - 00107520 _____ () C:\Windows\SysWOW64\zlib1.dll 2014-05-25 20:11 - 2012-04-03 16:11 - 00138752 _____ () C:\Windows\SysWOW64\libpng15.dll 2014-05-25 20:11 - 2011-01-12 13:36 - 01054208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71u.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71deu.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71ita.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71fra.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71esp.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71enu.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71kor.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71jpn.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71cht.dll 2014-05-25 20:11 - 2011-01-12 13:25 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71chs.dll 2014-05-25 20:11 - 2011-01-12 12:53 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl71.dll 2014-05-25 20:11 - 2010-06-27 17:44 - 00053248 _____ (Adobe Systems, Incorporated) C:\Windows\system\plugin.dll 2014-05-25 20:11 - 2010-03-18 20:21 - 00799568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdia100.dll 2014-05-25 20:11 - 2008-08-26 06:40 - 00162304 _____ () C:\Windows\SysWOW64\libpng13.dll 2014-05-25 20:11 - 2008-03-14 17:21 - 01008128 _____ (GnuWin32 <hxxp://gnuwin32.sourceforge.net>) C:\Windows\SysWOW64\libiconv2.dll 2014-05-25 20:11 - 2007-01-30 22:04 - 00339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr70.dll 2014-05-25 20:11 - 2006-08-26 00:28 - 01017344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70u.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70ita.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70fra.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70esp.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70deu.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70enu.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70kor.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70jpn.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70cht.dll 2014-05-25 20:11 - 2006-08-26 00:15 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70chs.dll 2014-05-25 20:11 - 2006-08-26 00:07 - 01024000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70.dll 2014-05-25 20:11 - 2006-08-25 23:17 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl70.dll 2014-05-25 20:11 - 2005-05-06 13:52 - 00103424 _____ (GNU <www.gnu.org>) C:\Windows\SysWOW64\libintl3.dll 2014-05-25 20:11 - 2005-01-20 19:25 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvci70.dll 2014-05-25 20:11 - 2002-01-05 05:40 - 00487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp70.dll 2014-05-25 20:11 - 1996-01-12 03:00 - 00935632 _____ (Microsoft Corporation) C:\Windows\system\vb40016.dll 2014-05-25 20:11 - 1994-11-17 13:00 - 00210944 _____ () C:\Windows\system\msvcrt10.dll 2014-05-25 20:11 - 1993-05-11 19:00 - 00398416 _____ (Microsoft Corporation) C:\Windows\system\vbrun300.dll 2014-05-25 20:11 - 1992-10-21 00:00 - 00356992 _____ (Microsoft Corporation) C:\Windows\system\vbrun200.dll 2014-05-25 20:11 - 1991-05-10 01:00 - 00271264 _____ () C:\Windows\system\vbrun100.dll 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-05-25 20:09 - 2014-06-22 00:06 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-25 20:09 - 2014-05-25 20:09 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-25 20:09 - 2014-05-25 20:09 - 00000000 ____D () C:\Windows\SysWOW64\Adobe 2014-05-25 20:08 - 2014-05-25 20:09 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-25 20:08 - 2014-05-25 20:09 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-25 20:08 - 2014-05-25 20:09 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-05-25 20:08 - 2014-05-25 20:08 - 00000000 ____D () C:\Windows\system32\Macromed 2014-05-25 20:05 - 2014-05-25 20:05 - 00000000 ____D () C:\Windows\SysWOW64\URTTEMP 2014-05-25 15:04 - 2014-05-25 15:04 - 00003122 _____ () C:\Windows\System32\Tasks\{CD921BD0-568A-4AEE-A0EF-6898FDBC6A48} 2014-05-25 15:00 - 2014-05-25 15:00 - 00319488 _____ (Realtek Semiconductor Corp.) C:\Windows\HideWin.exe 2014-05-25 15:00 - 2014-05-25 15:00 - 00003080 _____ () C:\Windows\System32\Tasks\{217A672D-BBFF-497B-B0A1-CAA0574464D6} 2014-05-25 15:00 - 2010-03-22 08:22 - 01247776 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-05-25 14:59 - 2014-05-25 14:59 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-05-25 14:28 - 2014-05-25 14:28 - 00000000 ____D () C:\Program Files\Adobe 2014-05-25 14:17 - 2014-05-25 14:26 - 00000000 ____D () C:\After Effects CS6 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Public\Foxit Software 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Foxit Software 2014-05-25 14:04 - 2014-05-25 14:04 - 00000000 ____D () C:\Program Files (x86)\Foxit Software 2014-05-23 18:58 - 2014-05-25 15:48 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-05-23 17:55 - 2014-05-25 13:43 - 00003749 _____ () C:\Windows\system32\Drivers\etc\lmhosts.sam 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\Documents\Razer 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer_Inc 2014-05-23 16:45 - 2014-06-02 17:01 - 00002065 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-23 16:24 - 2014-05-30 01:00 - 01122312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-05-23 16:24 - 2014-05-30 00:59 - 01279480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-05-23 16:23 - 2014-05-23 16:27 - 00000000 ____D () C:\Users\Noah\AppData\Local\NVIDIA 2014-05-23 16:23 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-05-23 16:23 - 2014-03-31 18:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-05-23 16:23 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll ==================== One Month Modified Files and Folders ======= 2014-06-22 00:15 - 2014-06-22 00:10 - 00000000 ____D () C:\Users\Noah\Downloads\Trojaner-Board 2014-06-22 00:15 - 2014-06-18 21:46 - 00000000 ____D () C:\FRST 2014-06-22 00:11 - 2014-02-19 20:45 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-22 00:06 - 2014-05-25 20:09 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-22 00:06 - 2014-01-25 13:22 - 01786245 _____ () C:\Windows\WindowsUpdate.log 2014-06-21 20:11 - 2014-02-19 20:45 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-21 20:10 - 2014-05-19 17:29 - 00000000 ____D () C:\Users\Noah\AppData\Local\wf-launcher 2014-06-21 20:04 - 2014-04-05 17:56 - 00000000 ____D () C:\ProgramData\GFACE 2014-06-21 17:09 - 2014-03-07 23:30 - 00000000 ____D () C:\Games 2014-06-21 16:30 - 2014-06-21 16:30 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Unity 2014-06-21 16:28 - 2014-06-21 16:28 - 00000000 ____D () C:\Users\Noah\AppData\Local\Unity 2014-06-21 15:09 - 2009-07-14 19:58 - 00798568 _____ () C:\Windows\system32\perfh007.dat 2014-06-21 15:09 - 2009-07-14 19:58 - 00186966 _____ () C:\Windows\system32\perfc007.dat 2014-06-21 15:09 - 2009-07-14 07:13 - 01874698 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-06-21 15:09 - 2009-07-14 06:45 - 00013552 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-21 15:09 - 2009-07-14 06:45 - 00013552 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-21 15:02 - 2014-06-20 19:02 - 00000504 _____ () C:\Windows\setupact.log 2014-06-21 15:01 - 2014-01-25 14:10 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-06-21 15:01 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-21 00:19 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-06-20 21:11 - 2014-06-20 21:10 - 13441726 _____ () C:\Users\Administrator\AppData\Roaming\2.wav 2014-06-20 21:11 - 2014-06-20 20:58 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Spotify 2014-06-20 21:09 - 2014-06-20 21:09 - 00000062 _____ () C:\Users\Noah\Downloads\collectionCache.bnk 2014-06-20 21:06 - 2014-06-20 21:06 - 00069168 _____ () C:\Users\Administrator\AppData\Local\GDIPFONTCACHEV1.DAT 2014-06-20 21:06 - 2014-06-20 21:06 - 00000207 _____ () C:\Users\Administrator\AppData\Roaming\SpotifyRecorderSettings.ini 2014-06-20 21:05 - 2014-06-20 21:04 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Spotify 2014-06-20 21:04 - 2014-06-20 21:04 - 00001843 _____ () C:\Users\Administrator\Desktop\Spotify.lnk 2014-06-20 21:04 - 2014-06-20 21:04 - 00001829 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2014-06-20 20:54 - 2014-06-20 20:54 - 00001155 _____ () C:\Users\Public\Desktop\Recorder for Spotify.lnk 2014-06-20 20:54 - 2014-06-20 20:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recorder for Spotify 2014-06-20 20:54 - 2014-06-20 20:54 - 00000000 ____D () C:\Program Files (x86)\Recorder for Spotify 2014-06-20 20:44 - 2014-06-20 20:44 - 00000000 ____D () C:\Windows\Sun 2014-06-20 19:18 - 2014-06-20 19:18 - 00000000 ____D () C:\Windows\ERUNT 2014-06-20 19:10 - 2014-06-20 19:02 - 00005298 _____ () C:\Windows\PFRO.log 2014-06-20 19:09 - 2014-03-09 12:03 - 00000000 ____D () C:\AdwCleaner 2014-06-20 19:02 - 2014-06-20 19:02 - 00000000 _____ () C:\Windows\setuperr.log 2014-06-19 21:43 - 2014-06-19 21:43 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-06-19 21:19 - 2014-06-19 19:50 - 00000000 ____D () C:\Users\Noah\.gimp-2.8 2014-06-19 21:18 - 2014-06-19 21:18 - 00005313 _____ () C:\Users\Noah\AppData\Local\recently-used.xbel 2014-06-19 21:18 - 2014-06-19 19:59 - 00000000 ____D () C:\Users\Noah\AppData\Local\gtk-2.0 2014-06-19 19:50 - 2014-06-19 19:50 - 00000000 ____D () C:\Users\Noah\AppData\Local\gegl-0.2 2014-06-19 19:50 - 2014-06-19 19:48 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Ultimate Updater 2014-06-19 19:50 - 2014-01-25 13:22 - 00000000 ____D () C:\Users\Noah 2014-06-19 19:49 - 2014-06-19 19:49 - 00000894 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2014-06-19 19:49 - 2014-06-19 19:49 - 00000882 _____ () C:\Users\Public\Desktop\GIMP 2.lnk 2014-06-19 19:49 - 2014-06-19 19:47 - 00000000 ____D () C:\Program Files\GIMP 2 2014-06-19 19:44 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-06-19 19:40 - 2014-05-17 09:42 - 00000000 ____D () C:\ProgramData\Package Cache 2014-06-19 19:36 - 2014-02-19 21:15 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\GetRight 2014-06-19 19:35 - 2014-06-19 19:35 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-06-19 19:35 - 2014-06-19 19:35 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-06-19 19:35 - 2014-06-19 19:35 - 00000000 ____D () C:\Program Files\Java 2014-06-19 19:34 - 2014-02-26 23:58 - 00000000 ____D () C:\Program Files (x86)\Java 2014-06-19 19:19 - 2014-06-17 21:50 - 00000839 _____ () C:\Users\Noah\Desktop\settings.xml 2014-06-19 15:48 - 2014-01-25 17:37 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-06-19 08:26 - 2014-06-17 21:47 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Arc 2014-06-19 00:34 - 2014-06-19 00:18 - 00000000 ____D () C:\Qoobox 2014-06-19 00:33 - 2014-06-19 00:18 - 00000000 ____D () C:\Windows\erdnt 2014-06-19 00:30 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini 2014-06-19 00:29 - 2009-07-14 04:34 - 60817408 _____ () C:\Windows\system32\config\software.bak 2014-06-19 00:29 - 2009-07-14 04:34 - 14680064 _____ () C:\Windows\system32\config\system.bak 2014-06-19 00:29 - 2009-07-14 04:34 - 00524288 _____ () C:\Windows\system32\config\default.bak 2014-06-19 00:29 - 2009-07-14 04:34 - 00262144 _____ () C:\Windows\system32\config\security.bak 2014-06-19 00:29 - 2009-07-14 04:34 - 00262144 _____ () C:\Windows\system32\config\sam.bak 2014-06-18 22:17 - 2014-01-25 14:06 - 01759482 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\Windows\SysWOW64\BestPractices 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\Windows\system32\BestPractices 2014-06-18 22:16 - 2014-06-18 22:16 - 00000000 ____D () C:\inetpub 2014-06-18 22:16 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\inetsrv 2014-06-18 22:16 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\inetsrv 2014-06-18 21:53 - 2014-06-18 21:53 - 00003154 _____ () C:\Windows\System32\Tasks\{1F6BADF6-436A-4AE3-B4AF-74E0D3056766} 2014-06-18 21:44 - 2014-06-18 21:44 - 00000000 _____ () C:\Users\Noah\defogger_reenable 2014-06-18 21:37 - 2014-06-18 21:37 - 00003154 _____ () C:\Windows\System32\Tasks\{FBB7C956-6B0C-4385-9F4D-574BC1E5A273} 2014-06-18 21:31 - 2014-06-18 21:31 - 00002571 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft .NET Compact Framework Installer.lnk 2014-06-18 21:31 - 2014-06-18 21:31 - 00000000 ____D () C:\Program Files (x86)\Microsoft .NET Compact Framework 1.0 SP3 2014-06-18 21:11 - 2014-06-18 21:11 - 00000983 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-06-18 21:11 - 2014-06-18 21:11 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-06-18 16:37 - 2014-06-18 16:37 - 00000000 ____D () C:\Users\Noah\Documents\FLiNGTrainer 2014-06-18 16:18 - 2014-06-16 15:30 - 00061866 _____ () C:\Users\Noah\Desktop\Test.fls 2014-06-18 16:07 - 2014-06-16 15:38 - 00000000 ____D () C:\Users\Noah\AppData\Local\.filius 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ___HD () C:\ArcTemp 2014-06-17 21:51 - 2014-06-17 21:51 - 00000000 ____D () C:\Blacklight Retribution 2014-06-17 21:44 - 2014-06-17 21:44 - 00001846 _____ () C:\Users\Public\Desktop\Arc.lnk 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect World Entertainment 2014-06-17 21:44 - 2014-06-17 21:44 - 00000000 ____D () C:\Program Files (x86)\Perfect World Entertainment 2014-06-17 21:44 - 2014-01-25 15:26 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-06-17 20:15 - 2014-01-25 14:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-06-17 20:15 - 2014-01-25 14:10 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-06-17 20:11 - 2014-01-25 14:09 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-06-17 20:06 - 2014-02-19 20:45 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-06-17 20:06 - 2014-02-19 20:45 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-06-17 19:29 - 2014-02-22 00:19 - 00000000 ____D () C:\Windows\system32\MRT 2014-06-17 19:27 - 2014-02-22 00:19 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-06-17 19:26 - 2014-05-03 17:28 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-06-16 15:36 - 2014-06-16 15:35 - 00000000 ____D () C:\Program Files\Filius 2014-06-13 04:59 - 2014-06-17 20:07 - 01890264 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434043.dll 2014-06-13 04:59 - 2014-06-17 20:07 - 01542088 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434043.dll 2014-06-13 04:59 - 2014-01-25 14:09 - 00026353 _____ () C:\Windows\system32\nvinfo.pb 2014-06-13 04:48 - 2014-06-17 20:07 - 13911928 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 13824408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 11272544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 11211224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 04248520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 03989464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00946120 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00909256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00902616 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00869336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00391456 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-06-13 04:48 - 2014-06-17 20:07 - 00348120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-06-13 04:48 - 2014-01-25 14:10 - 00075040 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-06-13 04:48 - 2014-01-25 14:10 - 00062920 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 31512352 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 24198616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 17553032 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 16122344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 12860888 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-06-13 04:47 - 2014-06-17 20:07 - 00502048 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-06-13 04:47 - 2014-06-17 20:07 - 00417568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-06-13 04:47 - 2014-01-25 14:09 - 18625768 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-06-13 04:47 - 2014-01-25 14:09 - 14497528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 22994392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 15294296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00846832 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-06-13 04:46 - 2014-06-17 20:07 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-06-13 04:46 - 2014-01-25 14:09 - 02814120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-06-13 04:46 - 2014-01-25 14:09 - 00965312 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-06-13 04:45 - 2014-01-25 14:09 - 03196304 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 06783960 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 03523360 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 02560968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 00933208 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-06-13 04:11 - 2014-01-25 14:10 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-06-13 04:11 - 2014-01-25 14:10 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-06-13 02:19 - 2014-06-17 20:15 - 00609056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-06-09 16:55 - 2014-03-09 20:41 - 00000000 ____D () C:\Program Files (x86)\JDownloader 2014-06-09 14:36 - 2014-06-09 14:33 - 00000000 ____D () C:\Users\Noah\Desktop\mightier.1.4 2014-06-08 11:13 - 2014-06-17 19:25 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-08 11:08 - 2014-06-17 19:25 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-06 23:26 - 2014-02-04 22:24 - 00000000 ____D () C:\FFOutput 2014-06-06 21:50 - 2014-03-24 22:46 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\IrfanView 2014-06-06 21:45 - 2014-02-19 20:38 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-06-06 19:40 - 2014-01-25 14:10 - 03802247 _____ () C:\Windows\system32\nvcoproc.bin 2014-06-06 16:16 - 2014-01-25 14:14 - 00000000 ____D () C:\Users\Noah\AppData\Local\NVIDIA Corporation 2014-06-05 22:42 - 2014-06-03 16:08 - 00001061 _____ () C:\Users\Noah\Desktop\Splinter Cell Blacklist.lnk 2014-06-05 22:40 - 2014-06-03 14:24 - 00000000 ____D () C:\Tom Clancy's Splinter Cell® Blacklist™ 2014-06-05 21:20 - 2014-02-26 20:58 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-06-05 21:20 - 2014-02-26 20:58 - 00000000 ____D () C:\Program Files\CCleaner 2014-06-03 20:45 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-06-03 16:09 - 2014-06-03 16:09 - 00000000 ____D () C:\Users\Noah\Documents\Ubisoft 2014-06-03 16:09 - 2014-01-25 15:33 - 00000000 ____D () C:\ProgramData\Orbit 2014-06-03 15:03 - 2014-06-03 15:03 - 00001907 _____ () C:\Users\Public\Desktop\Tom Clancy's Splinter Cell® Blacklist™.lnk 2014-06-03 14:23 - 2014-02-04 20:44 - 00000000 ____D () C:\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst 2014-06-03 13:01 - 2014-06-02 19:12 - 00002247 _____ () C:\Users\Administrator\Desktop\Google Chrome.lnk 2014-06-03 12:59 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA 2014-06-03 12:48 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-06-03 12:34 - 2014-06-03 12:34 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe 2014-06-02 19:14 - 2014-06-02 19:14 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\AVAST Software 2014-06-02 19:13 - 2014-06-02 19:13 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Apple Computer 2014-06-02 19:12 - 2014-06-02 19:12 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Vorlagen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Startmenü 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Netzwerkumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Lokale Einstellungen 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Eigene Dateien 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Druckumgebung 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Musik 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Documents\Eigene Bilder 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Verlauf 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\AppData\Local\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 _SHDL () C:\Users\Administrator\Anwendungsdaten 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA Corporation 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google 2014-06-02 19:12 - 2014-06-02 19:12 - 00000000 ____D () C:\Users\Administrator 2014-06-02 17:01 - 2014-05-23 16:45 - 00002065 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-30 01:00 - 2014-06-06 16:16 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-05-30 01:00 - 2014-05-23 16:24 - 01122312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-05-30 00:59 - 2014-06-06 16:16 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-05-30 00:59 - 2014-05-23 16:24 - 01279480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-05-25 21:55 - 2014-04-20 19:25 - 00000000 ____D () C:\Program Files\Unlocker 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\Documents\Gscreens 2014-05-25 21:28 - 2014-05-25 21:28 - 00000000 ____D () C:\Users\Noah\AppData\Local\GScreens.com 2014-05-25 21:28 - 2014-01-25 17:10 - 00069168 _____ () C:\Users\Noah\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GScreens 2014-05-25 20:20 - 2014-05-25 20:20 - 00000000 ____D () C:\Program Files (x86)\GScreens 2014-05-25 20:11 - 2014-05-25 20:11 - 01198049 _____ () C:\Windows\unins000.exe 2014-05-25 20:11 - 2014-05-25 20:11 - 00010714 _____ () C:\Windows\unins000.dat 2014-05-25 20:11 - 2014-05-25 20:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-05-25 20:11 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-05-25 20:10 - 2014-05-25 20:10 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-05-25 20:09 - 2014-05-25 20:09 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-25 20:09 - 2014-05-25 20:09 - 00000000 ____D () C:\Windows\SysWOW64\Adobe 2014-05-25 20:09 - 2014-05-25 20:08 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-25 20:09 - 2014-05-25 20:08 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-25 20:09 - 2014-05-25 20:08 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-05-25 20:08 - 2014-05-25 20:08 - 00000000 ____D () C:\Windows\system32\Macromed 2014-05-25 20:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration 2014-05-25 20:05 - 2014-05-25 20:05 - 00000000 ____D () C:\Windows\SysWOW64\URTTEMP 2014-05-25 19:48 - 2014-04-19 19:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-25 19:48 - 2014-03-06 18:42 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\BitTorrent 2014-05-25 18:17 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-05-25 15:48 - 2014-05-23 18:58 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-05-25 15:17 - 2014-02-26 21:00 - 00000000 ____D () C:\Users\Noah\Desktop\Registry-Sicherung 2014-05-25 15:17 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-05-25 15:10 - 2014-02-19 20:30 - 00000010 _____ () C:\Windows\GSetup.ini 2014-05-25 15:04 - 2014-05-25 15:04 - 00003122 _____ () C:\Windows\System32\Tasks\{CD921BD0-568A-4AEE-A0EF-6898FDBC6A48} 2014-05-25 15:00 - 2014-05-25 15:00 - 00319488 _____ (Realtek Semiconductor Corp.) C:\Windows\HideWin.exe 2014-05-25 15:00 - 2014-05-25 15:00 - 00003080 _____ () C:\Windows\System32\Tasks\{217A672D-BBFF-497B-B0A1-CAA0574464D6} 2014-05-25 14:59 - 2014-05-25 14:59 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-05-25 14:49 - 2009-07-14 06:45 - 04927152 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-25 14:36 - 2014-02-03 22:36 - 00000000 ____D () C:\Users\Noah\AppData\Local\Adobe 2014-05-25 14:28 - 2014-05-25 14:28 - 00000000 ____D () C:\Program Files\Adobe 2014-05-25 14:26 - 2014-05-25 14:17 - 00000000 ____D () C:\After Effects CS6 2014-05-25 14:26 - 2014-02-03 22:37 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Adobe 2014-05-25 14:20 - 2014-02-03 22:37 - 00000000 ____D () C:\ProgramData\Adobe 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Public\Foxit Software 2014-05-25 14:05 - 2014-05-25 14:05 - 00000000 ____D () C:\Users\Noah\AppData\Roaming\Foxit Software 2014-05-25 14:04 - 2014-05-25 14:04 - 00000000 ____D () C:\Program Files (x86)\Foxit Software 2014-05-25 13:59 - 2014-02-03 22:40 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-05-25 13:55 - 2014-02-03 22:43 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe 2014-05-25 13:43 - 2014-05-23 17:55 - 00003749 _____ () C:\Windows\system32\Drivers\etc\lmhosts.sam 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\Documents\Razer 2014-05-23 16:47 - 2014-05-23 16:47 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer_Inc 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Users\Noah\AppData\Local\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-23 16:45 - 2014-05-23 16:45 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-23 16:27 - 2014-05-23 16:23 - 00000000 ____D () C:\Users\Noah\AppData\Local\NVIDIA 2014-05-23 16:27 - 2014-01-25 14:10 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation Some content of TEMP: ==================== C:\Users\Noah\AppData\Local\Temp\62IhdMsLaec8diycWv.exe C:\Users\Noah\AppData\Local\Temp\Foxit Reader Updater.exe C:\Users\Noah\AppData\Local\Temp\Quarantine.exe C:\Users\Noah\AppData\Local\Temp\SRLDetectionLibrary5227828859978342069.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-21 00:11 ==================== End Of Log ============================ schon mal für deine Bemühungen! LG RipTheJacker |
22.06.2014, 07:13 | #8 |
/// the machine /// TB-Ausbilder | Windows 7: 0xc000007b-Fehler bei diversen Programmen Deinen Download Ordner leeren, Laufwerk K alle Funde von ESET manuell löschen. Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.06.2014, 10:04 | #9 |
| Windows 7: 0xc000007b-Fehler bei diversen Programmen Der Fehler ist immer noch da! So langsam bekomm ich regelmäßig Wutanfälle... Hast du noch Lösungsvorschläge? verzweifelte Grüße RipTheJacker |
23.06.2014, 07:44 | #10 |
/// the machine /// TB-Ausbilder | Windows 7: 0xc000007b-Fehler bei diversen Programmen Warum ignorierst Du dann meine Frage ob es noch Probleme gibt? http://www.trojaner-board.de/126216-...epair-aio.html Das bitte laufen lassen.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
23.06.2014, 15:39 | #11 |
| Windows 7: 0xc000007b-Fehler bei diversen Programmen Der Fehler ist immer noch da. Die Logs habe ich jetzt mal gepackt, da es diverse Logs waren. |
23.06.2014, 19:49 | #12 |
/// the machine /// TB-Ausbilder | Windows 7: 0xc000007b-Fehler bei diversen Programmen Windows DVD da?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
23.06.2014, 21:10 | #13 |
| Windows 7: 0xc000007b-Fehler bei diversen Programmen Jo. Ich hoffe, ich muss jetzt nicht doch eine Windows-Neuinstallation vornehmen? |
24.06.2014, 17:12 | #14 |
/// the machine /// TB-Ausbilder | Windows 7: 0xc000007b-Fehler bei diversen Programmen Erstmal nur ein Inplace Upgrade
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
24.06.2014, 19:26 | #15 |
| Windows 7: 0xc000007b-Fehler bei diversen Programmen Was ist das? Und wie mach ich das? [EDIT] Okay, hab's gegooglet. Ich versuch's mal. Melde mich dann. Wusste gar nicht, dass das überhaupt geht. |
Themen zu Windows 7: 0xc000007b-Fehler bei diversen Programmen |
anwendungen öffnen nicht mehr, association, errors, fehler, hacktool.agent.dc, msil/downloadguide.e, msil/hacktool.inject.a, problem, pup.optional.crossrider.a, pup.optional.pcperformer.a, pup.optional.plushd.a, pup.optional.resultsalpha.a, software, system, vcredist, win32/amonetize.aw, win32/browsefox.f, win32/downloadsponsor.a, win32/downware.l, win32/hao123.a, win32/packed.vmprotect.aah, windows |