|
Plagegeister aller Art und deren Bekämpfung: UTADRemovalApp 2.0 entfernenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
24.06.2014, 17:56 | #16 |
/// TB-Ausbilder /// Anleitungs-Guru | UTADRemovalApp 2.0 entfernen Lade Dir von hier mal den Firefox runter und installiere ihn. Arbeite dann mit ihm. Verstehe nicht ganz was Du mit dem Chrome meinst. Daher anschließend bitte frische Logs: Schritt 1 Bitte starte FRST erneut, markiere auch die checkbox und drücke auf Scan. Bitte poste mir den Inhalt der beiden Logs die erstellt werden.
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
24.06.2014, 18:12 | #17 |
| UTADRemovalApp 2.0 entfernen Ich hab mich an meinem Hauptrechner eingeloggt! So geht|s etwas einfacher.
__________________Malwarebytes hat mein Chrome wegen *wahrscheinlich* dem UTADRemovalApp in Quarant'ne gesteckt. Sorry f[r die Rechtschreibfehler/. Meine Tastatur spinnt! Heute hab ich kein Gl[ck mit Technik. Der Log von Malwarebytes wie soll ich ihn verschicken ? Screenshot ? |
24.06.2014, 18:22 | #18 |
/// TB-Ausbilder /// Anleitungs-Guru | UTADRemovalApp 2.0 entfernen Mach doch bitte das was ich geschrieben habe.
__________________
__________________ |
24.06.2014, 18:35 | #19 |
| UTADRemovalApp 2.0 entfernen Hier ist die neue FRST.txt : FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-06-2014 Ran by Jonas (administrator) on JONAS-LAPTOP on 24-06-2014 19:24:50 Running from C:\Users\Jonas.JONASPC1\Desktop Platform: Windows 7 Home Premium (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 8 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe (ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe () C:\Program Files\ATKGFNEX\GFNEXSrv.exe (ATK) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS CopyProtect\ASPG.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (ATK) C:\Program Files\P4G\BatteryLife.exe () C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe () C:\Users\Jonas.JONASPC1\Desktop\Coretemp\Core Temp.exe (Advanced Micro Devices, Inc.) D:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.23.9\GoogleCrashHandler.exe () D:\Program Files\Allway Sync\Bin\SyncService.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.23.9\GoogleCrashHandler64.exe (AVM Berlin) C:\Program Files\FRITZ!DSL\IGDCTRL.EXE ( ) C:\Windows\System32\lxbccoms.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.MOWARE08\MSSQL\Binn\sqlservr.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (AlcorMicro Co., Ltd.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe (ASUS) C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe ( ) C:\Program Files\TargusMouse\TargusMouse.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe () D:\Program Files (x86)\DATA BECKER\TWIN7 2.0\DBDefragSrvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (zoneLink) D:\Program Files (x86)\DATA BECKER\TWIN7 2.0\tw7smartsvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Windows\System32\audiodg.exe (Microsoft Corporation) C:\Users\Jonas.JONASPC1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XT8ELCG8\IE9-Windows7-x64-9.0.6-deu[1].exe (Microsoft Corporation) C:\Windows\Temp\IE9DCD8.tmp\IE9-support\ienrcore.exe () C:\Windows\SysWOW64\bmon.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [2892080 2013-05-27] (ELAN Microelectronics Corp.) HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [323584 2009-09-01] (AlcorMicro Co., Ltd.) HKLM\...\Run: [AutoShutdownManager] => D:\Program Files (x86)\AutoShutdownManager\AutoShutdownManager.exe [2626176 2013-02-28] (EnviProt) HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1271072 2014-03-11] (Microsoft Corporation) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2892080 2013-05-27] (ELAN Microelectronics Corp.) HKLM\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5670448 2013-02-05] (VIA) HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [6859392 2009-08-17] (ASUS) HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [159744 2009-04-20] (ASUS) HKLM-x32\...\Run: [TargusMouse] => C:\Program Files\TargusMouse\TargusMouse.exe [90624 2010-06-04] ( ) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Agent] => "D:\Program Files (x86)\Bitdefender\Bitdefender\pmbxag.exe" HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse] => "D:\Program Files (x86)\Bitdefender\Bitdefender\pwdmanui.exe" --hidden --nowizard HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => "D:\Program Files (x86)\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe" HKU\S-1-5-21-1199298590-743223591-473746691-1064\...\Run: [Download Manager] => D:\Program Files (x86)\EagleGet\EagleGet.exe [1240064 2014-04-04] (EagleGet.com) HKU\S-1-5-21-1199298590-743223591-473746691-1064\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-1199298590-743223591-473746691-1064\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-1199298590-743223591-473746691-1064\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-1199298590-743223591-473746691-1064\...\MountPoints2: F - F:\PcOptions.exe HKU\S-1-5-21-1199298590-743223591-473746691-1064\...\MountPoints2: {1046a513-6823-11e0-9ddc-e0cb4e846bb0} - F:\PcOptions.exe HKU\S-1-5-21-1199298590-743223591-473746691-1064\...\MountPoints2: {1515f9ed-5e16-11e0-b575-e0cb4e846bb0} - G:\PcOptions.exe HKU\S-1-5-21-1199298590-743223591-473746691-1064\...\MountPoints2: {39999b95-a1b2-11e1-b32b-d677d671c26d} - F:\Install.exe HKU\S-1-5-21-1199298590-743223591-473746691-1064\...\MountPoints2: {3a36d280-5dc3-11e0-bbb0-e0cb4e846bb0} - F:\PcOptions.exe HKU\S-1-5-21-1199298590-743223591-473746691-1064\...\MountPoints2: {a8432e6c-0010-11df-8fa5-806e6f6e6963} - E:\zdata\cobi.exe HKU\S-1-5-21-1199298590-743223591-473746691-1064\...\MountPoints2: {de02f978-393b-11e1-a698-e09a7670cb1a} - F:\PcOptions.exe Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> D:\Program Files (x86)\Secunia\PSI\psi_tray.exe (No File) ShellIconOverlayIdentifiers: ADSMOverlayIcon -> {A825576B-0042-4F0F-8FB0-93CE0F054E69} => C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x64\OverlayIconShlExt64.dll () ShellIconOverlayIdentifiers: ADSMOverlayIcon1 -> {A8D448F4-0431-45AC-9F5E-E1B434AB2249} => C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x64\OverlayIconShlExt1_64.dll () ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers-x32: ADSMOverlayIcon -> {A825576B-0042-4F0F-8FB0-93CE0F054E69} => C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt.dll () ShellIconOverlayIdentifiers-x32: ADSMOverlayIcon1 -> {A8D448F4-0431-45AC-9F5E-E1B434AB2249} => C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll () GroupPolicy: Group Policy on Chrome detected <======= ATTENTION GroupPolicyUsers\S-1-5-21-1199298590-743223591-473746691-1070\User: Group Policy restriction detected <======= ATTENTION GroupPolicyUsers\S-1-5-21-1199298590-743223591-473746691-1069\User: Group Policy restriction detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = youtube.com/feed/subscriptions HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = youtube.com/feed/subscriptions HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = youtube.com/feed/subscriptions StartMenuInternet: IEXPLORE.EXE - c:\program files (x86)\internet explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKLM - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope value is missing. SearchScopes: HKLM-x32 - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: No Name - {9030D464-4C02-4ABF-8ECC-5164760863C6} - No File BHO: No Name - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - No File BHO: QTTabBar AutoLoader - {d2bf470e-ed1c-487f-a777-2bd8835eb6ce} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) BHO-x32: EGet Class - {824F251E-D74A-4d56-B998-CA05CF369A13} - d:\Program Files (x86)\EagleGet\eagleSniffer.dll (EagleGet.com) BHO-x32: No Name - {9030D464-4C02-4ABF-8ECC-5164760863C6} - No File BHO-x32: QTTabBar AutoLoader - {d2bf470e-ed1c-487f-a777-2bd8835eb6ce} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM - QTTabBar - {d2bf470e-ed1c-487f-a333-2bd8835eb6ce} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) Toolbar: HKLM - QTTab Standard Buttons - {d2bf470e-ed1c-487f-a666-2bd8835eb6ce} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - No Name - {9C65D12D-CF9D-454D-8049-61965D8C6FFF} - No File Toolbar: HKLM-x32 - QTTabBar - {d2bf470e-ed1c-487f-a333-2bd8835eb6ce} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - QTTab Standard Buttons - {d2bf470e-ed1c-487f-a666-2bd8835eb6ce} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - No File Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw_1206147.dll No File FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @logitech.com/HarmonyRemote,version=1.0.0 - C:\Program Files (x86)\Logitech\Harmony Remote Driver\NprtHarmonyPlugin.dll (Logitech Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.3 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @reiner-sct.com/OWOK,version=2.0.0.4 - C:\Program Files (x86)\REINER SCT\OWOK\NPAPI-20\nprsct_owok_npapi-2004.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=1.1.11 - D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll No File FF Plugin-x32: @videolan.org/vlc,version=2.0.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @protectdisc.com/NPPDLicenseHelper - C:\Users\Jonas.JONASPC1\AppData\Roaming\ProtectDisc\License Helper v2\NPPDLicenseHelper.dll ( ) FF Plugin HKCU: eagleget.com/EagleGet - d:\Program Files (x86)\EagleGet\npEagleget.dll (EagleGet - EG Download Accelerator, Free Video Downloader and more) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\googledesktop.xml FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-04-17] FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010-09-27] FF HKLM-x32\...\Firefox\Extensions: [{5FE7198A-5950-4068-9FBF-1A60395CC4E9}] - D:\Program Files (x86)\1&1\1&1 SoftPhone\Firefox FF Extension: 1&1 SoftPhone - D:\Program Files (x86)\1&1\1&1 SoftPhone\Firefox [2012-02-18] Chrome: ======= CHR HomePage: youtube.com/feed/subscriptions CHR StartupUrls: "youtube.com/feed/subscriptions" CHR Extension: (Magic Actions for YouTube™) - C:\Users\Jonas.JONASPC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2013-07-19] CHR Extension: (Audials Live Radio & Podcast) - C:\Users\Jonas.JONASPC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnjlebpekgoocnhepibpaebimepdhccf [2014-02-15] CHR Extension: (Facebook) - C:\Users\Jonas.JONASPC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm [2014-02-15] CHR Extension: (Adblock Plus) - C:\Users\Jonas.JONASPC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-09] CHR Extension: (Minecraft) - C:\Users\Jonas.JONASPC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\djdhplilccmfpolabmkfijjlpddiammn [2014-06-19] CHR Extension: (AdBlock) - C:\Users\Jonas.JONASPC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-02-15] CHR Extension: (EagleGet Downloader) - C:\Users\Jonas.JONASPC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\kaebhgioafceeldhgjmendlfhbfjefmo [2014-04-14] CHR Extension: (Google Wallet) - C:\Users\Jonas.JONASPC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22] CHR Extension: (Click&Clean App) - C:\Users\Jonas.JONASPC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2014-02-15] CHR HKCU\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - d:\Program Files (x86)\EagleGet\addon\eagleget_cext@eagleget.com.crx [2014-02-04] CHR HKLM-x32\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - d:\Program Files (x86)\EagleGet\addon\eagleget_cext@eagleget.com.crx [2014-02-04] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-03-03] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 ADSMService; C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe [225280 2008-03-31] (ASUSTek Computer Inc.) [File not signed] R2 AMD FUEL Service; D:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-08-30] (Advanced Micro Devices, Inc.) [File not signed] S2 ASDM_Service; D:\Program Files (x86)\AutoShutdownManager\Services\AutoShutdownManager_Service.exe [57344 2013-02-28] (EnviProt) [File not signed] S3 ASDM_UpdateService; D:\Program Files (x86)\AutoShutdownManager\Services\ASDM_Helperservice.exe [32768 2013-02-28] (EnviProt) [File not signed] R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] () [File not signed] R2 BotkindSyncService; d:\Program Files\Allway Sync\Bin\SyncService.exe [261120 2011-12-05] () [File not signed] S2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363584 2014-03-03] (Microsoft Corporation) S2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1748608 2014-03-03] (Microsoft Corporation) S4 DBService; C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe [189776 2010-10-28] (DATA BECKER GmbH & Co KG) S3 DfSdkS; D:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 8\DfsdkS64.exe [544768 2009-08-24] (mst software GmbH, Germany) [File not signed] R2 DriveDefragService; D:\Program Files (x86)\DATA BECKER\TWIN7 2.0\DBDefragSrvc.exe [3125072 2012-07-26] () S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-03-06] (Freemake) [File not signed] S3 FreemakeVideoCapture; d:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [8704 2012-01-19] (Microsoft) [File not signed] S4 Hamachi2Svc; D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2210640 2013-11-29] (LogMeIn Inc.) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed] R2 IGDCTRL; C:\Program Files\FRITZ!DSL\IGDCTRL.EXE [88888 2009-07-28] (AVM Berlin) R2 lxbc_device; C:\Windows\system32\lxbccoms.exe [566704 2007-03-16] ( ) R2 lxbc_device; C:\Windows\SysWOW64\lxbccoms.exe [537520 2007-03-16] ( ) R2 MCMUv2; C:\Windows\syswow64\bmon.exe [220928 2011-09-03] () [File not signed] R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2014-03-11] (Microsoft Corporation) R2 MSSQL$MOWARE08; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.MOWARE08\MSSQL\Binn\sqlservr.exe [43028328 2011-09-22] (Microsoft Corporation) R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [58345832 2011-09-22] (Microsoft Corporation) S3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [347872 2014-03-11] (Microsoft Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4264632 2011-05-15] (INCA Internet Co., Ltd.) [File not signed] S3 Online Shield Starter Service; C:\Program Files (x86)\Steganos Online Shield\OnlineShieldService.exe [315656 2013-07-15] (Steganos Software GmbH) S4 OverwolfUpdaterService; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [99616 2014-03-05] (Overwolf LTD) S3 PrintNotify; C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll [2899968 2013-08-22] (Microsoft Corporation) [File not signed] R2 SABBv1b; C:\Windows\syswow64\sasvc.exe [210176 2011-09-03] () [File not signed] S4 SQLAgent$MOWARE08; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.MOWARE08\MSSQL\Binn\SQLAGENT.EXE [370024 2011-09-22] (Microsoft Corporation) S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [431464 2011-09-22] (Microsoft Corporation) S3 Steganos Volatile Disk; C:\Windows\SysWOW64\STGRAMDiskHandler64.exe [450560 2011-09-12] (Softwareentwicklung Remus - ArchiCrypt) [File not signed] R2 Themes; C:\Windows\system32\themeservice.dll [44544 2012-06-07] (Microsoft Corporation) [File not signed] R2 TW7SmartService; D:\Program Files (x86)\DATA BECKER\TWIN7 2.0\tw7smartsvc.exe [2599760 2010-11-25] (zoneLink) R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27768 2012-12-11] (VIA Technologies, Inc.) S3 WO_LiveService; D:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 8\LiveTunerService.exe [884120 2012-01-09] () S3 ACT2_Service; d:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2Service.exe [X] S2 AMD External Events Utility; %SystemRoot%\system32\atiesrxx.exe [X] S2 iSafeService; C:\Program Files (x86)\iSafe\iSafeSvc.exe [X] S3 testsvc; cmd.exe /k start [X] ==================== Drivers (Whitelisted) ==================== S3 androidusb; C:\Windows\System32\Drivers\smhwadb.sys [31744 2009-12-25] (Google Inc) R2 AODDriver4.2; D:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices) R2 ASMMAP64; C:\Program Files\ATKGFNEX\ASMMAP64.sys [14904 2007-07-24] () R3 athr; C:\Windows\System32\DRIVERS\athrx.sys [3948544 2013-05-24] (Qualcomm Atheros Communications, Inc.) [File not signed] R0 hotcore3; C:\Windows\System32\DRIVERS\hotcore3.sys [39728 2011-11-04] (Paragon Software Group) R3 huawei_enumerator; C:\Windows\System32\DRIVERS\ew_jubusenum.sys [91648 2013-03-09] (MBB Technologies Co., Ltd.) S3 hwdatacard; C:\Windows\System32\DRIVERS\ewusbmdm.sys [226048 2013-06-28] (MBB Technologies Co., Ltd.) S3 iSafeKrnlBoot; C:\Windows\System32\DRIVERS\iSafeKrnlBoot.sys [44544 2014-05-30] (Elex do Brasil Participações Ltda) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) R2 LiveTunerPM; D:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 8\LiveTunerProcessMonitor64.sys [12824 2011-03-08] () R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [268512 2014-01-25] (Microsoft Corporation) R3 MTsensor64; C:\Windows\System32\DRIVERS\PuAcpi64.sys [15880 2009-06-04] () S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133928 2014-03-11] (Microsoft Corporation) S3 NPPTNT2; C:\Windows\SysWOW64\npptNT2.sys [4682 2005-01-04] (INCA Internet Co., Ltd.) [File not signed] S3 RzDxgk; C:\Windows\system32\drivers\RzDxgk.sys [128984 2013-08-26] (Razer USA Ltd) R0 RzFilter; C:\Windows\System32\drivers\RzFilter.sys [74456 2013-08-26] (Razer USA Ltd) R1 SLEE_17_DRIVER; C:\Windows\Sleen1764.sys [108256 2011-09-12] (Softwareentwicklung Remus - ArchiCrypt - ) S3 smhwdev; C:\Windows\System32\DRIVERS\smhwdev.sys [114432 2010-01-14] (Huawei Technologies Co., Ltd.) S3 smhwser; C:\Windows\System32\DRIVERS\smhwser.sys [122624 2010-02-05] (QUALCOMM Incorporated) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1799680 2009-07-18] () R0 sptd; C:\Windows\System32\Drivers\sptd.sys [828912 2012-01-27] () [File not signed] R1 STGMFEngine64; C:\Windows\system32\drivers\STGMFEngine64.sys [28576 2011-09-12] (Softwareentwicklung Remus - ArchiCrypt.com) S3 TargusMouseFilter; C:\Windows\System32\DRIVERS\TargusMouse.sys [20992 2010-03-26] () R1 UimBus; C:\Windows\System32\DRIVERS\uimx64.sys [59184 2011-11-04] (Windows (R) 2000 DDK provider) R1 Uim_IM; C:\Windows\System32\Drivers\Uim_IMx64.sys [572336 2011-11-04] (Paragon) R1 Uim_VIM; C:\Windows\System32\Drivers\uim_vimx64.sys [352816 2011-11-04] (Paragon) S3 usbaudio; C:\Windows\SysWOW64\drivers\usbaudio.sys [39840 1998-08-21] (Microsoft Corporation) [File not signed] R3 usbhub; C:\Windows\SysWOW64\DRIVERS\usbhub.sys [27184 1998-08-21] (Microsoft Corporation) [File not signed] S3 whfltr2k; C:\Windows\System32\DRIVERS\whfltr2k.sys [10368 2009-09-16] () S3 whfltr2k; C:\Windows\SysWOW64\DRIVERS\whfltr2k.sys [10368 2009-09-16] () S3 AF15BDA; system32\DRIVERS\AF15BDA.sys [X] S0 AlfaFF; System32\Drivers\AlfaFF.sys [X] R3 ALSysIO; \??\C:\Users\JONAS~1.JON\AppData\Local\Temp\ALSysIO64.sys [X] U3 AppMgmt; S0 AvanquestFltr; system32\DRIVERS\mxRCycle.sys [X] U2 CscService; S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] S1 iSafeKrnlKit; \??\C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys [X] S3 massfilter; system32\drivers\massfilter.sys [X] S3 NPF; system32\drivers\NPF.sys [X] U3 PeerDistSvc; S3 SANDRA; \??\d:\Program Files\SiSoftware\SiSoftware Sandra Lite (Testversion) 2012\WNt500x64\Sandra.sys [X] U3 tmlwf; U3 tmwfp; S3 TuneUpUtilitiesDrv; \??\D:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [X] S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X] S3 WinRing0_1_2_0; \??\D:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [X] S3 ZTEusbmdm6k; system32\DRIVERS\ZTEusbmdm6k.sys [X] S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [X] S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-24 19:28 - 2014-06-24 19:28 - 00000134 _____ () C:\Users\Jonas.JONASPC1\Desktop\Internet Explorer-Problembehebung.url 2014-06-24 18:53 - 2014-06-24 19:28 - 00014664 _____ () C:\Windows\IE9_main.log 2014-06-24 18:51 - 2014-06-24 18:51 - 00001595 _____ () C:\Windows\IE11_main.log 2014-06-24 17:13 - 2014-06-24 18:18 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-06-24 17:13 - 2014-06-24 17:13 - 00000792 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-06-24 17:13 - 2014-06-24 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-06-24 17:13 - 2014-06-24 17:13 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-06-24 17:13 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-06-24 17:13 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-06-24 17:13 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-06-24 17:09 - 2014-06-24 17:10 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jonas.JONASPC1\Downloads\mbam-setup-2.0.2.1012.exe 2014-06-24 17:09 - 2014-06-24 17:10 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jonas.JONASPC1\Desktop\mbam-setup-2.0.2.1012.exe 2014-06-24 17:09 - 2014-06-24 17:09 - 00003216 _____ () C:\Windows\System32\Tasks\SuperEasyDriverUpdaterRunAtStartup 2014-06-24 17:06 - 2014-06-24 17:06 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\Systweak 2014-06-24 16:54 - 2014-06-24 16:59 - 00000000 ____D () C:\AdwCleaner 2014-06-24 16:53 - 2014-06-24 16:53 - 01342659 _____ () C:\Users\Jonas.JONASPC1\Downloads\adwcleaner_3.213.exe 2014-06-24 16:53 - 2014-06-24 16:53 - 01342659 _____ () C:\Users\Jonas.JONASPC1\Desktop\adwcleaner_3.213.exe 2014-06-24 16:35 - 2014-06-24 16:35 - 00139448 _____ () C:\Users\Jonas.JONASPC1\AppData\Local\GDIPFONTCACHEV1.DAT 2014-06-24 16:31 - 2014-06-24 16:31 - 00000000 ____D () C:\Users\Jonas.JONASPC1\Desktop\revouninstaller-portable 2014-06-24 16:27 - 2014-06-24 19:30 - 00027316 _____ () C:\Users\Jonas.JONASPC1\Desktop\FRST.txt 2014-06-24 16:26 - 2014-06-24 16:26 - 00000000 ____D () C:\Users\Jonas.JONASPC1\Desktop\FRST-OlderVersion 2014-06-24 16:25 - 2014-06-24 16:25 - 03007700 _____ () C:\Users\Jonas.JONASPC1\Downloads\revouninstaller.zip 2014-06-21 23:41 - 2014-06-21 23:41 - 01156741 _____ () C:\Users\Jonas.JONASPC1\Downloads\Modular-Force-Field-System-3.6.3.91-core.jar 2014-06-21 23:41 - 2014-06-21 23:41 - 00144140 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.114-core.jar 2014-06-21 22:14 - 2014-06-21 22:14 - 01395032 _____ () C:\Users\Jonas.JONASPC1\Downloads\Pam's HarvestCraft 1.6.4 v1.1.4 (1).zip 2014-06-21 22:13 - 2014-06-21 22:13 - 00386969 _____ () C:\Users\Jonas.JONASPC1\Downloads\RArm-r1.0-1.jar 2014-06-20 21:45 - 2014-06-20 21:45 - 00035546 _____ () C:\Users\Jonas.JONASPC1\Desktop\Logs.zip 2014-06-20 21:38 - 2014-06-24 19:24 - 00000000 ____D () C:\FRST 2014-06-20 21:37 - 2014-06-24 16:26 - 02082816 _____ (Farbar) C:\Users\Jonas.JONASPC1\Desktop\FRST64.exe 2014-06-20 17:15 - 2014-06-20 17:15 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-06-20 17:13 - 2014-06-20 17:13 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-06-20 16:53 - 2014-06-20 16:53 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_ew_jubusenum_01007.Wdf 2014-06-20 16:53 - 2013-06-28 17:10 - 00455680 _____ (MBB Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys 2014-06-20 16:53 - 2013-06-28 17:04 - 00226048 _____ (MBB Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys 2014-06-20 16:53 - 2013-03-09 13:41 - 00014976 _____ (MBB Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys 2014-06-20 16:53 - 2013-03-09 11:18 - 00244736 _____ (MBB Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys 2014-06-20 16:53 - 2013-03-09 11:17 - 00110592 _____ (MBB Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys 2014-06-20 16:53 - 2013-03-09 11:17 - 00091648 _____ (MBB Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys 2014-06-20 16:53 - 2013-03-09 11:17 - 00077312 _____ (MBB Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys 2014-06-20 16:53 - 2013-03-09 11:17 - 00030720 _____ (MBB Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys 2014-06-20 16:53 - 2012-08-20 08:37 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01007.dll 2014-06-20 16:53 - 2012-08-20 08:37 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01007.dll 2014-06-20 11:49 - 2013-05-24 04:59 - 03948544 _____ (Qualcomm Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys 2014-06-20 11:48 - 2014-05-08 13:25 - 00939224 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-06-20 11:48 - 2014-05-08 13:25 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-06-20 11:40 - 2009-07-21 18:15 - 02400477 _____ (Macrovision Corporation) C:\Windows\snuninst.exe 2014-06-20 11:40 - 2009-07-18 00:52 - 01799680 _____ () C:\Windows\system32\Drivers\snp2uvc.sys 2014-06-20 11:37 - 2014-06-20 11:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TargusMouse 2014-06-20 11:37 - 2014-06-20 11:37 - 00000000 ____D () C:\Program Files\TargusMouse 2014-06-20 11:37 - 2010-03-26 11:06 - 00020992 _____ () C:\Windows\system32\Drivers\TargusMouse.sys 2014-06-20 11:32 - 2014-06-20 11:32 - 00000000 ____D () C:\ProgramData\AMD 2014-06-20 11:31 - 2014-06-20 11:31 - 00016561 _____ () C:\Windows\SysWOW64\CCCInstall_201406201131315856.log 2014-06-20 11:27 - 2014-06-20 11:29 - 00000000 ____D () C:\ProgramData\Package Cache 2014-06-20 09:47 - 2014-06-20 09:47 - 00001178 _____ () C:\Users\Public\Desktop\HD VDeck.lnk 2014-06-20 09:47 - 2014-06-20 09:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VIA 2014-06-20 09:47 - 2013-01-29 18:56 - 02210376 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viahduaa.sys 2014-06-20 09:47 - 2013-01-29 17:50 - 00689200 _____ (VIA Technologies, Inc.) C:\Windows\system32\VIASysFx.dll 2014-06-20 09:26 - 2014-06-20 09:26 - 00000000 ____D () C:\Program Files\VIA 2014-06-20 09:25 - 2013-01-27 23:32 - 09208088 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVIA64.dll 2014-06-20 09:25 - 2013-01-22 06:44 - 02099480 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-06-20 09:25 - 2013-01-22 06:43 - 00908056 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-06-20 09:25 - 2012-12-11 17:59 - 02994808 _____ (VIA Technologies, Inc.) C:\Windows\system32\VIAPropPageExt.dll 2014-06-20 09:25 - 2012-12-11 17:59 - 01161336 _____ (VIA Technologies, Inc.) C:\Windows\system32\ViaKaraokeApo.dll 2014-06-20 09:25 - 2012-12-11 17:59 - 01119352 _____ (VIA Technologies, Inc.) C:\Windows\system32\ViaMicArrayAPO.dll 2014-06-20 09:25 - 2012-12-11 17:59 - 00248952 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\Dts2APO.dll 2014-06-20 09:25 - 2012-12-11 17:59 - 00123512 _____ (VIA Technologies,Inc.) C:\Windows\system32\ViaKaraokePropPageExt.dll 2014-06-20 09:25 - 2012-12-11 17:59 - 00095352 _____ (VIA Technologies,Inc.) C:\Windows\system32\ViaMicArrayPropPageExt.dll 2014-06-20 09:25 - 2012-12-11 17:59 - 00092280 _____ (VIA Technologies, Inc.) C:\Windows\system32\Dts2PropPageExt.dll 2014-06-20 09:25 - 2012-12-11 17:59 - 00070776 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\VtSrdAPO.dll 2014-06-20 09:25 - 2012-12-11 17:59 - 00055416 _____ (TODO: <Company name>) C:\Windows\system32\PropPageExt.dll 2014-06-20 09:25 - 2012-12-11 17:59 - 00027768 _____ (VIA Technologies, Inc.) C:\Windows\system32\ViakaraokeSrv.exe 2014-06-20 09:25 - 2012-07-15 13:16 - 00394104 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-06-20 09:25 - 2012-06-28 16:54 - 00086016 _____ (QSound Labs, Inc.) C:\Windows\system32\nQPropPageExt.dll 2014-06-20 09:25 - 2011-12-15 13:16 - 07163744 _____ (Dolby Laboratories) C:\Windows\system32\EEP64H.dll 2014-06-20 09:25 - 2011-12-15 13:16 - 00433504 _____ (Dolby Laboratories) C:\Windows\system32\EED64H.dll 2014-06-20 09:25 - 2011-12-15 13:16 - 00433504 _____ (Dolby Laboratories) C:\Windows\system32\EED64A.dll 2014-06-20 09:25 - 2011-12-15 13:16 - 00137056 _____ (Dolby Laboratories) C:\Windows\system32\EEL64H.dll 2014-06-20 09:25 - 2011-12-15 13:16 - 00137056 _____ (Dolby Laboratories) C:\Windows\system32\EEL64A.dll 2014-06-20 09:25 - 2011-12-15 13:16 - 00120160 _____ (Dolby Laboratories) C:\Windows\system32\EEA64H.dll 2014-06-20 09:25 - 2011-12-15 13:16 - 00120160 _____ (Dolby Laboratories) C:\Windows\system32\EEA64A.dll 2014-06-20 09:25 - 2011-12-15 13:16 - 00075104 _____ (Dolby Laboratories) C:\Windows\system32\EEG64H.dll 2014-06-20 09:25 - 2011-12-15 13:16 - 00075104 _____ (Dolby Laboratories) C:\Windows\system32\EEG64A.dll 2014-06-20 09:25 - 2011-09-27 18:13 - 00879616 _____ (Creative Technology Ltd.) C:\Windows\system32\VMAPO64.DLL 2014-06-20 09:25 - 2011-09-27 18:13 - 00739328 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\VMAPO32.DLL 2014-06-20 09:25 - 2011-09-27 18:13 - 00619520 _____ (Creative Technology Ltd.) C:\Windows\system32\VMTHX64.DLL 2014-06-20 09:25 - 2011-09-27 18:13 - 00554496 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\VMTHX32.DLL 2014-06-20 09:25 - 2011-09-27 18:13 - 00057856 _____ (Creative Technology Ltd.) C:\Windows\system32\VMPPLD64.DLL 2014-06-20 09:25 - 2011-06-08 18:19 - 00083968 _____ (QSound Labs, Inc.) C:\Windows\system32\nQAPO.dll 2014-06-20 09:25 - 2010-10-26 18:55 - 00074240 _____ (Creative Technology Ltd.) C:\Windows\system32\VMWRP64.DLL 2014-06-20 09:25 - 2010-10-26 18:54 - 00053760 _____ (Creative Technology Ltd.) C:\Windows\system32\VMPPCN64.DLL 2014-06-20 09:25 - 2009-07-31 11:40 - 00025600 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\VMfilt64.sys 2014-06-20 09:23 - 2014-06-20 09:45 - 00003220 _____ () C:\Windows\System32\Tasks\ASUS Patch for VIA Audio 2014-06-20 09:23 - 2012-11-07 17:55 - 00160448 _____ (ASUSTek Computer INC.) C:\Windows\system32\AsPatchViaAudio.exe 2014-06-20 09:23 - 2012-11-01 17:14 - 00000216 _____ () C:\Windows\system32\AsPatchViaAudio.ini 2014-06-20 09:23 - 2011-12-15 13:16 - 07163744 _____ (Dolby Laboratories) C:\Windows\system32\EEP64A.dll 2014-06-20 08:43 - 2009-06-04 22:44 - 00015880 _____ () C:\Windows\system32\Drivers\PuAcpi64.sys 2014-06-20 08:42 - 2014-06-20 08:42 - 00000000 ____D () C:\AMD 2014-06-20 08:41 - 2013-05-31 17:49 - 00375088 _____ (ELAN Microelectronics Corp.) C:\Windows\system32\Drivers\ETD.sys 2014-06-20 07:32 - 2014-06-20 07:32 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\Easeware 2014-06-20 07:32 - 2014-06-20 07:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverEasy 2014-06-20 07:31 - 2014-06-21 11:56 - 00000406 _____ () C:\Windows\Tasks\DriverEasy Scheduled Scan.job 2014-06-20 07:31 - 2014-06-20 07:32 - 00000822 _____ () C:\Users\Public\Desktop\DriverEasy.lnk 2014-06-20 07:31 - 2014-06-20 07:31 - 00003812 _____ () C:\Windows\System32\Tasks\DriverEasy Scheduled Scan 2014-06-20 07:29 - 2014-06-20 07:29 - 00961360 _____ (Chip Digital GmbH) C:\Users\Jonas.JONASPC1\Downloads\DriverEasy - CHIP-Installer.exe 2014-06-19 21:39 - 2014-06-19 21:40 - 02596573 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgression_V265 (1).zip 2014-06-19 21:35 - 2014-06-19 21:35 - 00000579 _____ () C:\Users\Jonas.JONASPC1\Downloads\Mods.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 02596573 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgression_V265.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00548821 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionRelationship_V264.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00425064 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionMoney_V265.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00374583 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionCareer_V264.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00370585 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionSkill_V264.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00176174 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionPopulation_V265.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00113191 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionExtra_V264.zip 2014-06-19 21:31 - 2014-06-19 21:31 - 00763579 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_MasterController_V130.zip 2014-06-19 21:31 - 2014-06-19 21:31 - 00191485 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_MasterControllerCheats_V130.zip 2014-06-19 21:31 - 2014-06-19 21:31 - 00022876 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_MasterControllerProgression_V122.zip 2014-06-19 18:56 - 2014-06-19 18:57 - 03686699 _____ () C:\Users\Jonas.JONASPC1\Downloads\witchery-1.6.4-0.19.2.zip 2014-06-19 07:24 - 2014-06-19 07:24 - 00213260 _____ () C:\Users\Jonas.JONASPC1\Downloads\FRITZ.Box Fon WLAN 7320 (UI) 100.06.03_19.06.14_0726.export 2014-06-19 06:56 - 2014-06-19 06:57 - 09897120 _____ () C:\Users\Jonas.JONASPC1\Downloads\Opis_1.2.2.zip 2014-06-19 06:56 - 2014-06-19 06:56 - 00106953 _____ () C:\Users\Jonas.JONASPC1\Downloads\MobiusCore_1.2.1.jar 2014-06-18 21:25 - 2014-06-18 21:26 - 00169730 _____ () C:\Users\Jonas.JONASPC1\Downloads\backpack-1.28.37-1.6.x.jar 2014-06-18 20:41 - 2014-06-18 20:42 - 03224505 _____ () C:\Users\Jonas.JONASPC1\Downloads\ThaumicHistory1.102.jar 2014-06-18 19:34 - 2014-06-18 19:34 - 00057174 _____ () C:\Users\Jonas.JONASPC1\Downloads\OreDictionaryConverter-1.4.3.jar 2014-06-18 19:20 - 2014-06-18 19:20 - 00144198 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.110-core.jar 2014-06-18 19:20 - 2014-06-18 19:20 - 00032170 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.110-api.zip 2014-06-18 19:19 - 2014-06-18 19:19 - 06076896 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-Development-1.4.2.246.jar 2014-06-18 19:12 - 2014-06-18 19:12 - 02923769 _____ () C:\Users\Jonas.JONASPC1\Downloads\Railcraft_1.6.4-8.4.0.0.jar 2014-06-18 19:10 - 2014-06-18 19:10 - 00045450 _____ () C:\Users\Jonas.JONASPC1\Downloads\TiCTooltips-mc1.6.4-1.1.7.jar 2014-06-18 16:29 - 2014-06-24 17:09 - 00003156 _____ () C:\Windows\System32\Tasks\AdvancedDriverUpdaterRunAtStartup 2014-06-17 22:05 - 2014-06-17 22:30 - 00000322 _____ () C:\Windows\Tasks\At35.job 2014-06-17 22:05 - 2014-06-17 22:05 - 00001298 _____ () C:\Windows\System32\Tasks\At35 2014-06-17 21:52 - 2014-06-17 21:52 - 02355739 _____ () C:\Users\Jonas.JONASPC1\Downloads\StevesCarts2.0.0.b11.zip 2014-06-17 17:30 - 2014-06-17 17:30 - 00202444 _____ () C:\Users\Jonas.JONASPC1\Downloads\TMechworks_mc1.6.4_0.1.6.jar 2014-06-17 16:54 - 2014-06-17 16:54 - 00144141 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-core (2).jar 2014-06-17 16:54 - 2014-06-17 16:54 - 00141188 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-dev (2).jar 2014-06-17 16:54 - 2014-06-17 16:54 - 00032136 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-api (1).zip 2014-06-17 16:53 - 2014-06-17 16:53 - 06075516 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (4).jar 2014-06-17 16:53 - 2014-06-17 16:53 - 00795784 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.348-universal (1).jar 2014-06-17 16:53 - 2014-06-17 16:53 - 00013834 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.348-api (1).zip 2014-06-17 16:50 - 2014-06-17 16:50 - 00941567 _____ () C:\Users\Jonas.JONASPC1\Downloads\ExtraCells-1.6.9d.jar 2014-06-17 16:50 - 2014-06-17 16:50 - 00936908 _____ () C:\Users\Jonas.JONASPC1\Downloads\ExtraCells-deobf-1.6.9d.jar 2014-06-17 16:50 - 2014-06-17 16:50 - 00755381 _____ () C:\Users\Jonas.JONASPC1\Downloads\JABBA_1.1.4.zip 2014-06-17 16:48 - 2014-06-17 16:48 - 01156730 _____ () C:\Users\Jonas.JONASPC1\Downloads\Modular-Force-Field-System-3.6.3.90-core.jar 2014-06-17 16:45 - 2014-06-17 16:45 - 03686451 _____ () C:\Users\Jonas.JONASPC1\Downloads\witchery-1.6.4-0.19.1.zip 2014-06-15 16:57 - 2014-06-15 16:57 - 00020545 _____ () C:\Users\Jonas.JONASPC1\Downloads\files^MobDismemberment2.0.0.zip 2014-06-14 23:56 - 2014-06-15 00:30 - 00000322 _____ () C:\Windows\Tasks\At34.job 2014-06-14 23:56 - 2014-06-14 23:56 - 00001298 _____ () C:\Windows\System32\Tasks\At34 2014-06-14 18:58 - 2014-06-14 18:58 - 01155938 _____ () C:\Users\Jonas.JONASPC1\Downloads\Modular-Force-Field-System-3.6.3.89-core.jar 2014-06-14 18:49 - 2014-06-14 18:49 - 00074064 _____ () C:\Users\Jonas.JONASPC1\Downloads\TConstruct_Library_1.6.4_6.2.0.zip 2014-06-14 18:46 - 2014-06-14 18:47 - 04735255 _____ () C:\Users\Jonas.JONASPC1\Downloads\TConstruct_mc1.6.4_1.5.5.7.jar 2014-06-14 18:46 - 2014-06-14 18:46 - 00396475 _____ () C:\Users\Jonas.JONASPC1\Downloads\tictweaks-1.6.4-1.0.3.jar 2014-06-14 17:22 - 2014-06-14 17:23 - 04029506 _____ () C:\Users\Jonas.JONASPC1\Downloads\MCA-3.6.1 MC-1.6.4.zip 2014-06-14 17:15 - 2014-06-14 17:15 - 00007087 _____ () C:\Users\Jonas.JONASPC1\Downloads\HarvestCraftWaila-mc1.6.4-1.0.3.jar 2014-06-14 17:14 - 2014-06-14 17:14 - 00041826 _____ () C:\Users\Jonas.JONASPC1\Downloads\TiCTooltips-mc1.6.4-1.1.6.jar 2014-06-14 17:05 - 2014-06-14 17:05 - 00141028 _____ () C:\Users\Jonas.JONASPC1\Downloads\dynamicLinkPanels-1.6.4-1.4a.jar 2014-06-14 15:39 - 2014-06-14 15:39 - 01395032 _____ () C:\Users\Jonas.JONASPC1\Downloads\Pam's HarvestCraft 1.6.4 v1.1.4.zip 2014-06-14 15:39 - 2014-06-14 15:39 - 00002710 _____ () C:\Users\Jonas.JONASPC1\Downloads\Pam's Get all the Seeds 1.6.4.zip 2014-06-14 14:58 - 2014-06-14 14:58 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Jonas.JONASPC1\Downloads\SpyHunter-Installer (3).exe 2014-06-14 12:34 - 2014-06-14 12:34 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\eCyber 2014-06-14 12:33 - 2014-06-14 12:33 - 00001756 _____ () C:\Users\Public\Desktop\YAC.lnk 2014-06-14 12:33 - 2014-06-14 12:33 - 00000000 ____D () C:\Windows\system32\log 2014-06-14 12:33 - 2014-06-14 12:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC 2014-06-14 12:33 - 2014-05-30 12:49 - 00044544 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeKrnlBoot.sys 2014-06-14 12:32 - 2014-06-24 16:52 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\iSafe 2014-06-14 12:29 - 2014-06-14 12:31 - 12787704 _____ (Elex do Brasil Participações Ltda) C:\Users\Jonas.JONASPC1\Downloads\yet_another_cleaner_sk.exe 2014-06-14 11:50 - 2014-06-14 11:50 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Jonas.JONASPC1\Downloads\SpyHunter-Installer (2).exe 2014-06-14 11:38 - 2014-06-14 11:38 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Jonas.JONASPC1\Downloads\SpyHunter-Installer (1).exe 2014-06-14 11:22 - 2014-06-14 11:22 - 00000000 _____ () C:\autoexec.bat 2014-06-14 11:21 - 2014-06-14 12:33 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter 2014-06-14 11:21 - 2014-06-14 11:21 - 00000000 ____D () C:\Program Files\Enigma Software Group 2014-06-14 11:19 - 2014-06-14 12:33 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP 2014-06-14 11:16 - 2014-06-14 11:16 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Jonas.JONASPC1\Downloads\SpyHunter-Installer.exe 2014-06-14 11:13 - 2014-06-14 11:13 - 00000032 _____ () C:\Users\Jonas.JONASPC1\Desktop\Dokument.txt 2014-06-13 23:30 - 2014-06-14 00:07 - 00000322 _____ () C:\Windows\Tasks\At33.job 2014-06-13 23:30 - 2014-06-13 23:30 - 00001298 _____ () C:\Windows\System32\Tasks\At33 2014-06-13 18:05 - 2014-06-13 18:05 - 01381599 _____ () C:\Users\Jonas.JONASPC1\Downloads\Blood Magic v1.0.1g.zip 2014-06-13 17:59 - 2014-06-13 17:59 - 00020929 _____ () C:\Users\Jonas.JONASPC1\Downloads\MobDismemberment-3.0.1.jar 2014-06-13 17:21 - 2014-06-13 17:21 - 00874919 _____ () C:\Users\Jonas.JONASPC1\Downloads\Hats2.1.8.zip 2014-06-13 17:16 - 2014-06-13 17:16 - 00058458 _____ () C:\Users\Jonas.JONASPC1\Downloads\util^iChunUtil2.4.0.zip 2014-06-13 17:13 - 2014-06-13 17:13 - 00950152 _____ () C:\Users\Jonas.JONASPC1\Downloads\PortalGun2.0.2.zip 2014-06-12 15:55 - 2014-06-12 15:55 - 00238603 _____ () C:\Users\Jonas.JONASPC1\Downloads\FRITZ.Box Fon WLAN 7320 (UI) 100.06.03_12.06.14_1557.export 2014-06-11 20:13 - 2014-06-11 20:13 - 00755620 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (2).jar 2014-06-10 19:26 - 2014-06-10 19:26 - 00611548 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (1).zip 2014-06-10 18:58 - 2014-06-10 18:58 - 03648074 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (2).zip 2014-06-10 18:58 - 2014-06-10 18:58 - 00433996 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (3).jar 2014-06-10 18:55 - 2014-06-10 18:55 - 06075516 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (1).jar 2014-06-10 18:55 - 2014-06-10 18:55 - 01155307 _____ () C:\Users\Jonas.JONASPC1\Downloads\Modular-Force-Field-System-3.6.3.88-core.jar 2014-06-10 18:53 - 2014-06-10 18:53 - 00144141 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-core (1).jar 2014-06-10 18:53 - 2014-06-10 18:53 - 00141188 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-dev (1).jar 2014-06-10 18:53 - 2014-06-10 18:53 - 00032136 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-api.zip 2014-06-10 18:52 - 2014-06-10 18:52 - 12898917 _____ () C:\Users\Jonas.JONASPC1\Downloads\Mekanism-6.0.5.46.jar 2014-06-10 18:52 - 2014-06-10 18:52 - 00795784 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.348-universal.jar 2014-06-10 18:52 - 2014-06-10 18:52 - 00103917 _____ () C:\Users\Jonas.JONASPC1\Downloads\MekanismGenerators-6.0.5.46.jar 2014-06-10 18:52 - 2014-06-10 18:52 - 00032795 _____ () C:\Users\Jonas.JONASPC1\Downloads\MekanismTools-6.0.5.46.jar 2014-06-10 18:52 - 2014-06-10 18:52 - 00013834 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.348-api.zip 2014-06-09 18:24 - 2014-06-12 15:48 - 04996210 _____ (Tim Kosse) C:\Users\Jonas.JONASPC1\Downloads\FileZilla_3.8.1_win32-setup.exe 2014-06-09 12:29 - 2014-06-09 12:43 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Local\ftblauncher 2014-06-09 12:28 - 2014-06-09 12:28 - 06411388 _____ () C:\Users\Jonas.JONASPC1\Downloads\Agrarian Skies Map SebiKru 09_06_2014.rar 2014-06-09 09:08 - 2014-06-09 09:09 - 28062081 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax PureBDcraft 128x MC17.zip 2014-06-09 08:01 - 2014-06-09 08:01 - 00204029 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sync2.2.2.zip 2014-06-07 14:50 - 2014-06-07 14:50 - 00194749 _____ () C:\Users\Jonas.JONASPC1\Downloads\FRITZ.Box Fon WLAN 7320 (UI) 100.06.03_07.06.14_1452.export 2014-06-07 12:11 - 2014-06-07 12:11 - 00144141 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-core.jar 2014-06-07 12:11 - 2014-06-07 12:11 - 00141188 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-dev.jar 2014-06-07 12:09 - 2014-06-07 12:09 - 00790716 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.344-universal.jar 2014-06-07 12:08 - 2014-06-07 12:09 - 30984104 _____ (Oracle Corporation) C:\Users\Jonas.JONASPC1\Downloads\jre-7u60-windows-x64 (1).exe 2014-06-07 12:08 - 2014-06-07 12:09 - 29405096 _____ (Oracle Corporation) C:\Users\Jonas.JONASPC1\Downloads\jre-7u60-windows-i586.exe 2014-06-07 12:08 - 2014-06-07 12:08 - 30984104 _____ (Oracle Corporation) C:\Users\Jonas.JONASPC1\Downloads\jre-7u60-windows-x64.exe 2014-06-07 12:07 - 2014-06-07 12:07 - 06075516 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386.jar 2014-06-07 12:07 - 2014-06-07 12:07 - 00918952 _____ (Oracle Corporation) C:\Users\Jonas.JONASPC1\Downloads\chromeinstall-7u60.exe 2014-06-06 18:19 - 2014-06-06 18:19 - 02208014 _____ () C:\Users\Jonas.JONASPC1\Downloads\OpenBlocks-1.2.8.jar 2014-06-06 18:19 - 2014-06-06 18:19 - 00470909 _____ () C:\Users\Jonas.JONASPC1\Downloads\OpenModsLib-0.5.jar 2014-06-06 14:48 - 2014-06-06 14:48 - 00103947 _____ () C:\Users\Jonas.JONASPC1\Downloads\MekanismGenerators-6.0.4.42.jar 2014-06-06 14:42 - 2014-06-06 14:42 - 00032791 _____ () C:\Users\Jonas.JONASPC1\Downloads\MekanismTools-6.0.4.42.jar 2014-06-06 14:41 - 2014-06-06 14:42 - 00064072 _____ () C:\Users\Jonas.JONASPC1\Downloads\Mekanism-6.0.4.42.jar 2014-06-04 14:36 - 2014-06-04 14:40 - 00819346 _____ () C:\Users\Jonas.JONASPC1\Downloads\Technomancy 0.5.0a.zip 2014-06-03 18:57 - 2014-06-03 18:57 - 11836749 _____ () C:\Users\Jonas.JONASPC1\Downloads\Galacticraft-1.6.4-2.0.13.1063.jar 2014-06-03 18:56 - 2014-06-03 18:56 - 00309018 _____ () C:\Users\Jonas.JONASPC1\Downloads\Galacticraft-Planets-1.6.4-2.0.13.1063.jar 2014-06-03 18:56 - 2014-06-03 18:56 - 00018164 _____ () C:\Users\Jonas.JONASPC1\Downloads\MicdoodleCore-1.6.4-2.0.13.1063.jar 2014-06-03 18:55 - 2014-06-03 18:55 - 04448480 _____ () C:\Users\Jonas.JONASPC1\Downloads\LogisticsPipes-MC1.6.4-0.7.4.dev.220.jar 2014-06-03 18:53 - 2014-06-03 18:53 - 01384643 _____ () C:\Users\Jonas.JONASPC1\Downloads\appeng-rv14-finale3-mc16x.jar 2014-06-03 18:51 - 2014-06-03 18:51 - 00753938 _____ () C:\Users\Jonas.JONASPC1\Downloads\EnhancedPortals_1.6.4-universal-3.0.0b-final.jar 2014-06-03 18:50 - 2014-06-03 18:51 - 00143912 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.102-core.jar 2014-06-02 18:39 - 2014-06-02 18:40 - 06988653 _____ () C:\Users\Jonas.JONASPC1\Downloads\EXTRACTTHISGSaintsPackDubGuns0.7.rar 2014-05-31 11:48 - 2014-05-31 11:48 - 04897516 _____ (Michael Müller ) C:\Users\Jonas.JONASPC1\Downloads\pfsetup8.exe 2014-05-31 11:47 - 2014-05-31 11:47 - 00082528 _____ () C:\Users\Jonas.JONASPC1\Downloads\Hamsterrific[1.6.4]V2.1.zip 2014-05-29 23:19 - 2014-05-30 09:35 - 00000322 _____ () C:\Windows\Tasks\At32.job 2014-05-29 23:19 - 2014-05-29 23:19 - 00001298 _____ () C:\Windows\System32\Tasks\At32 2014-05-29 21:39 - 2014-05-29 21:39 - 00065601 _____ () C:\Users\Jonas.JONASPC1\Downloads\industrialcraft-2-api_2.0.397-experimental.zip 2014-05-29 21:38 - 2014-05-29 21:39 - 04392885 _____ () C:\Users\Jonas.JONASPC1\Downloads\industrialcraft-2_2.0.397-experimental.jar 2014-05-29 21:38 - 2014-05-29 21:39 - 04388002 _____ () C:\Users\Jonas.JONASPC1\Downloads\industrialcraft-2-dev-deobf_2.0.397-experimental.jar 2014-05-29 18:32 - 2014-05-29 18:32 - 00120656 _____ () C:\Users\Jonas.JONASPC1\Downloads\SimplyJetpacks-0.3.0.0.jar 2014-05-29 18:32 - 2014-05-29 18:32 - 00050853 _____ () C:\Users\Jonas.JONASPC1\Downloads\AOBD v1.4.0.jar 2014-05-29 18:32 - 2014-05-29 18:32 - 00031627 _____ () C:\Users\Jonas.JONASPC1\Downloads\ThaumcraftGates v1.2.0.jar 2014-05-29 12:50 - 2014-05-29 12:59 - 00000000 ____D () C:\Users\Jonas.JONASPC1\Downloads\Texture Data 2014-05-29 12:49 - 2014-05-29 13:00 - 250365663 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax Texture Version Modpack.zip 2014-05-29 12:48 - 2014-05-29 12:49 - 07588728 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax_ThermalExpansion_128x.zip 2014-05-29 12:47 - 2014-05-29 12:47 - 00270960 _____ () C:\Users\Jonas.JONASPC1\Downloads\SphaxWRCBE128x.zip 2014-05-29 12:47 - 2014-05-29 12:47 - 00175952 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax_NEI_512x-64x.zip 2014-05-29 12:44 - 2014-05-29 12:44 - 00784173 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax_IronChests_128x.zip 2014-05-29 12:43 - 2014-05-29 12:43 - 02881898 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax_BuildCraft_v4.2.1_128x.zip 2014-05-29 12:43 - 2014-05-29 12:43 - 00133337 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax Ender Storage 128x.zip 2014-05-29 12:42 - 2014-05-29 12:45 - 201213489 _____ () C:\Users\Jonas.JONASPC1\Downloads\BDcraft Musics Pack.zip 2014-05-29 12:42 - 2014-05-29 12:43 - 08684905 _____ () C:\Users\Jonas.JONASPC1\Downloads\BDcraft Sounds Pack.zip 2014-05-29 12:42 - 2014-05-29 12:42 - 27805923 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax PureBDcraft 128x MC16 (1).zip 2014-05-29 12:41 - 2014-05-29 12:41 - 00731695 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax 128x ComputerCraft 1.5 francogp v0.5.3.zip 2014-05-29 00:13 - 2014-05-29 06:40 - 00000322 _____ () C:\Windows\Tasks\At31.job 2014-05-29 00:13 - 2014-05-29 00:13 - 00001298 _____ () C:\Windows\System32\Tasks\At31 2014-05-28 21:07 - 2014-05-28 21:07 - 00087296 _____ () C:\Users\Jonas.JONASPC1\Downloads\advfluxiantools-0.0.0.51-universal.jar 2014-05-28 19:25 - 2014-05-28 19:25 - 00021684 _____ () C:\Users\Jonas.JONASPC1\Downloads\yalsm-2.0.2.jar 2014-05-28 16:45 - 2014-05-28 16:45 - 06091150 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.385 (1).jar 2014-05-28 16:45 - 2014-05-28 16:45 - 00790716 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.343-universal (2).jar 2014-05-28 16:45 - 2014-05-28 16:45 - 00013858 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.343-api (3).zip 2014-05-28 16:44 - 2014-05-28 16:45 - 01726921 _____ () C:\Users\Jonas.JONASPC1\Downloads\EnderIO-1.6.4-1.0.6.376.jar 2014-05-28 16:37 - 2014-05-28 16:37 - 00013858 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.343-api (2).zip 2014-05-28 16:36 - 2014-05-28 16:40 - 00143912 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.101-core (1).jar 2014-05-28 16:30 - 2014-05-28 16:30 - 02373782 _____ () C:\Users\Jonas.JONASPC1\Downloads\ThermalExpansion-3.0.0.5.jar 2014-05-28 16:30 - 2014-05-28 16:30 - 00438217 _____ () C:\Users\Jonas.JONASPC1\Downloads\CoFHCore-2.0.0.5.jar 2014-05-28 16:30 - 2014-05-28 16:30 - 00220194 _____ () C:\Users\Jonas.JONASPC1\Downloads\RedstoneArsenal-1.0.0.0.jar 2014-05-27 18:49 - 2014-05-27 18:49 - 00047078 _____ () C:\Users\Jonas.JONASPC1\Downloads\[MC1.6.4]Deconstruction[v2.0.1].jar 2014-05-27 18:44 - 2014-05-27 18:44 - 00839415 _____ () C:\Users\Jonas.JONASPC1\Downloads\advancedgenetics-1.4.3-1.6.jar 2014-05-27 18:44 - 2014-05-27 18:44 - 00005506 _____ () C:\Users\Jonas.JONASPC1\Downloads\advancedGenetics_v1.1_api (1).zip 2014-05-27 14:22 - 2014-05-27 14:22 - 06091150 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.385.jar 2014-05-27 14:22 - 2014-05-27 14:22 - 01309109 _____ () C:\Users\Jonas.JONASPC1\Downloads\ComputerCraft1.63.jar 2014-05-27 14:21 - 2014-05-27 14:21 - 00790716 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.343-universal (1).jar 2014-05-27 14:21 - 2014-05-27 14:21 - 00013858 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.343-api (1).zip 2014-05-27 14:20 - 2014-05-27 14:20 - 00143912 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.101-core.jar 2014-05-26 09:26 - 2014-05-26 09:26 - 00091527 _____ () C:\Users\Jonas.JONASPC1\Downloads\DynamicLights_1.6.4.zip 2014-05-26 09:25 - 2014-05-26 09:25 - 05417116 _____ () C:\Users\Jonas.JONASPC1\Downloads\Minions_1.6.4.zip 2014-05-25 18:24 - 2014-05-25 18:24 - 00104419 _____ () C:\Users\Jonas.JONASPC1\Downloads\SimplyJetpacks-0.2.0.1.jar 2014-05-25 18:24 - 2014-05-25 18:24 - 00009593 _____ () C:\Users\Jonas.JONASPC1\Downloads\fmpintegration-1.2.1-1.6.4.jar 2014-05-25 18:22 - 2014-05-25 18:23 - 03173167 _____ () C:\Users\Jonas.JONASPC1\Downloads\witchery-1.6.4-0.18.4.zip 2014-05-25 17:32 - 2014-05-25 17:32 - 00000000 ____D () C:\Program Files (x86)\RaoBooSaveer 2014-05-25 16:31 - 2014-05-25 16:31 - 00425767 _____ () C:\Users\Jonas.JONASPC1\Downloads\OptiFine_1.6.4_HD_C8.jar 2014-05-25 16:31 - 2014-05-25 16:31 - 00101985 _____ () C:\Users\Jonas.JONASPC1\Downloads\OptiFine_1.6.4_L_C7.jar 2014-05-25 16:30 - 2014-05-25 16:31 - 00427659 _____ () C:\Users\Jonas.JONASPC1\Downloads\OptiFine_1.6.4_HD_U_C8.jar 2014-05-25 14:45 - 2014-05-25 14:45 - 00882639 _____ () C:\Users\Jonas.JONASPC1\Downloads\ForgeMultipart-universal-1.6.4-1.0.0.250.jar 2014-05-25 14:39 - 2014-05-25 14:39 - 06091146 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-Development-1.4.2.218.jar ==================== One Month Modified Files and Folders ======= 2014-06-24 19:30 - 2014-06-24 16:27 - 00027316 _____ () C:\Users\Jonas.JONASPC1\Desktop\FRST.txt 2014-06-24 19:29 - 2012-12-21 17:18 - 01991972 _____ () C:\Windows\WindowsUpdate.log 2014-06-24 19:28 - 2014-06-24 19:28 - 00000134 _____ () C:\Users\Jonas.JONASPC1\Desktop\Internet Explorer-Problembehebung.url 2014-06-24 19:28 - 2014-06-24 18:53 - 00014664 _____ () C:\Windows\IE9_main.log 2014-06-24 19:25 - 2012-03-03 08:55 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla 2014-06-24 19:24 - 2014-06-20 21:38 - 00000000 ____D () C:\FRST 2014-06-24 19:19 - 2012-08-12 10:36 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-24 19:01 - 2012-03-25 12:44 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\vlc 2014-06-24 18:51 - 2014-06-24 18:51 - 00001595 _____ () C:\Windows\IE11_main.log 2014-06-24 18:43 - 2010-04-12 09:18 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-24 18:22 - 2009-07-14 06:45 - 00015904 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-24 18:22 - 2009-07-14 06:45 - 00015904 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-24 18:18 - 2014-06-24 17:13 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-06-24 18:16 - 2013-06-19 16:33 - 00000000 ____D () C:\Users\Jonas.JONASPC1\Desktop\Coretemp 2014-06-24 18:13 - 2012-05-20 16:29 - 00000290 _____ () C:\Windows\Tasks\AdvancedDriverUpdater_UPDATES.job 2014-06-24 18:13 - 2010-08-23 16:58 - 00065536 _____ () C:\Windows\system32\Ikeext.etl 2014-06-24 18:13 - 2010-04-12 09:18 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-24 18:13 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-24 18:12 - 2013-11-30 14:45 - 00023368 _____ () C:\Windows\setupact.log 2014-06-24 18:12 - 2013-11-30 14:44 - 00028690 _____ () C:\Windows\PFRO.log 2014-06-24 18:00 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\tracing 2014-06-24 17:13 - 2014-06-24 17:13 - 00000792 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-06-24 17:13 - 2014-06-24 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-06-24 17:13 - 2014-06-24 17:13 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-06-24 17:10 - 2014-06-24 17:09 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jonas.JONASPC1\Downloads\mbam-setup-2.0.2.1012.exe 2014-06-24 17:10 - 2014-06-24 17:09 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jonas.JONASPC1\Desktop\mbam-setup-2.0.2.1012.exe 2014-06-24 17:10 - 2012-05-20 16:29 - 00003040 _____ () C:\Windows\System32\Tasks\AdvancedDriverUpdater_UPDATES 2014-06-24 17:09 - 2014-06-24 17:09 - 00003216 _____ () C:\Windows\System32\Tasks\SuperEasyDriverUpdaterRunAtStartup 2014-06-24 17:09 - 2014-06-18 16:29 - 00003156 _____ () C:\Windows\System32\Tasks\AdvancedDriverUpdaterRunAtStartup 2014-06-24 17:06 - 2014-06-24 17:06 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\Systweak 2014-06-24 16:59 - 2014-06-24 16:54 - 00000000 ____D () C:\AdwCleaner 2014-06-24 16:53 - 2014-06-24 16:53 - 01342659 _____ () C:\Users\Jonas.JONASPC1\Downloads\adwcleaner_3.213.exe 2014-06-24 16:53 - 2014-06-24 16:53 - 01342659 _____ () C:\Users\Jonas.JONASPC1\Desktop\adwcleaner_3.213.exe 2014-06-24 16:52 - 2014-06-14 12:32 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\iSafe 2014-06-24 16:49 - 2014-02-09 19:15 - 00000000 ____D () C:\ProgramData\3fd12943b6f9f805 2014-06-24 16:35 - 2014-06-24 16:35 - 00139448 _____ () C:\Users\Jonas.JONASPC1\AppData\Local\GDIPFONTCACHEV1.DAT 2014-06-24 16:31 - 2014-06-24 16:31 - 00000000 ____D () C:\Users\Jonas.JONASPC1\Desktop\revouninstaller-portable 2014-06-24 16:26 - 2014-06-24 16:26 - 00000000 ____D () C:\Users\Jonas.JONASPC1\Desktop\FRST-OlderVersion 2014-06-24 16:26 - 2014-06-20 21:37 - 02082816 _____ (Farbar) C:\Users\Jonas.JONASPC1\Desktop\FRST64.exe 2014-06-24 16:25 - 2014-06-24 16:25 - 03007700 _____ () C:\Users\Jonas.JONASPC1\Downloads\revouninstaller.zip 2014-06-22 17:11 - 2012-10-15 17:24 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\.minecraft 2014-06-21 23:41 - 2014-06-21 23:41 - 01156741 _____ () C:\Users\Jonas.JONASPC1\Downloads\Modular-Force-Field-System-3.6.3.91-core.jar 2014-06-21 23:41 - 2014-06-21 23:41 - 00144140 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.114-core.jar 2014-06-21 22:14 - 2014-06-21 22:14 - 01395032 _____ () C:\Users\Jonas.JONASPC1\Downloads\Pam's HarvestCraft 1.6.4 v1.1.4 (1).zip 2014-06-21 22:13 - 2014-06-21 22:13 - 00386969 _____ () C:\Users\Jonas.JONASPC1\Downloads\RArm-r1.0-1.jar 2014-06-21 11:56 - 2014-06-20 07:31 - 00000406 _____ () C:\Windows\Tasks\DriverEasy Scheduled Scan.job 2014-06-21 11:54 - 2010-01-13 08:52 - 00000000 ____D () C:\Program Files\Elantech 2014-06-20 21:45 - 2014-06-20 21:45 - 00035546 _____ () C:\Users\Jonas.JONASPC1\Desktop\Logs.zip 2014-06-20 17:15 - 2014-06-20 17:15 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-06-20 17:13 - 2014-06-20 17:13 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-06-20 16:53 - 2014-06-20 16:53 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_ew_jubusenum_01007.Wdf 2014-06-20 11:56 - 2014-02-19 17:15 - 00000000 ____D () C:\ProgramData\Origin 2014-06-20 11:48 - 2010-01-13 08:52 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-06-20 11:37 - 2014-06-20 11:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TargusMouse 2014-06-20 11:37 - 2014-06-20 11:37 - 00000000 ____D () C:\Program Files\TargusMouse 2014-06-20 11:37 - 2010-01-13 08:29 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-06-20 11:36 - 2012-03-09 19:35 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Local\Downloaded Installations 2014-06-20 11:32 - 2014-06-20 11:32 - 00000000 ____D () C:\ProgramData\AMD 2014-06-20 11:31 - 2014-06-20 11:31 - 00016561 _____ () C:\Windows\SysWOW64\CCCInstall_201406201131315856.log 2014-06-20 11:29 - 2014-06-20 11:27 - 00000000 ____D () C:\ProgramData\Package Cache 2014-06-20 09:47 - 2014-06-20 09:47 - 00001178 _____ () C:\Users\Public\Desktop\HD VDeck.lnk 2014-06-20 09:47 - 2014-06-20 09:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VIA 2014-06-20 09:45 - 2014-06-20 09:23 - 00003220 _____ () C:\Windows\System32\Tasks\ASUS Patch for VIA Audio 2014-06-20 09:26 - 2014-06-20 09:26 - 00000000 ____D () C:\Program Files\VIA 2014-06-20 08:42 - 2014-06-20 08:42 - 00000000 ____D () C:\AMD 2014-06-20 08:42 - 2013-12-15 11:59 - 00019286 _____ () C:\Windows\DPINST.LOG 2014-06-20 08:37 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Registration 2014-06-20 07:32 - 2014-06-20 07:32 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\Easeware 2014-06-20 07:32 - 2014-06-20 07:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverEasy 2014-06-20 07:32 - 2014-06-20 07:31 - 00000822 _____ () C:\Users\Public\Desktop\DriverEasy.lnk 2014-06-20 07:31 - 2014-06-20 07:31 - 00003812 _____ () C:\Windows\System32\Tasks\DriverEasy Scheduled Scan 2014-06-20 07:29 - 2014-06-20 07:29 - 00961360 _____ (Chip Digital GmbH) C:\Users\Jonas.JONASPC1\Downloads\DriverEasy - CHIP-Installer.exe 2014-06-19 21:40 - 2014-06-19 21:39 - 02596573 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgression_V265 (1).zip 2014-06-19 21:35 - 2014-06-19 21:35 - 00000579 _____ () C:\Users\Jonas.JONASPC1\Downloads\Mods.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 02596573 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgression_V265.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00548821 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionRelationship_V264.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00425064 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionMoney_V265.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00374583 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionCareer_V264.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00370585 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionSkill_V264.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00176174 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionPopulation_V265.zip 2014-06-19 21:33 - 2014-06-19 21:33 - 00113191 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_StoryProgressionExtra_V264.zip 2014-06-19 21:31 - 2014-06-19 21:31 - 00763579 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_MasterController_V130.zip 2014-06-19 21:31 - 2014-06-19 21:31 - 00191485 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_MasterControllerCheats_V130.zip 2014-06-19 21:31 - 2014-06-19 21:31 - 00022876 _____ () C:\Users\Jonas.JONASPC1\Downloads\NRaas_MasterControllerProgression_V122.zip 2014-06-19 18:57 - 2014-06-19 18:56 - 03686699 _____ () C:\Users\Jonas.JONASPC1\Downloads\witchery-1.6.4-0.19.2.zip 2014-06-19 14:00 - 2013-04-02 14:21 - 00002992 _____ () C:\Users\Jonas.JONASPC1\Documents\mcedit.ini 2014-06-19 07:24 - 2014-06-19 07:24 - 00213260 _____ () C:\Users\Jonas.JONASPC1\Downloads\FRITZ.Box Fon WLAN 7320 (UI) 100.06.03_19.06.14_0726.export 2014-06-19 06:57 - 2014-06-19 06:56 - 09897120 _____ () C:\Users\Jonas.JONASPC1\Downloads\Opis_1.2.2.zip 2014-06-19 06:56 - 2014-06-19 06:56 - 00106953 _____ () C:\Users\Jonas.JONASPC1\Downloads\MobiusCore_1.2.1.jar 2014-06-18 21:26 - 2014-06-18 21:25 - 00169730 _____ () C:\Users\Jonas.JONASPC1\Downloads\backpack-1.28.37-1.6.x.jar 2014-06-18 20:42 - 2014-06-18 20:41 - 03224505 _____ () C:\Users\Jonas.JONASPC1\Downloads\ThaumicHistory1.102.jar 2014-06-18 19:34 - 2014-06-18 19:34 - 00057174 _____ () C:\Users\Jonas.JONASPC1\Downloads\OreDictionaryConverter-1.4.3.jar 2014-06-18 19:20 - 2014-06-18 19:20 - 00144198 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.110-core.jar 2014-06-18 19:20 - 2014-06-18 19:20 - 00032170 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.110-api.zip 2014-06-18 19:19 - 2014-06-18 19:19 - 06076896 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-Development-1.4.2.246.jar 2014-06-18 19:12 - 2014-06-18 19:12 - 02923769 _____ () C:\Users\Jonas.JONASPC1\Downloads\Railcraft_1.6.4-8.4.0.0.jar 2014-06-18 19:10 - 2014-06-18 19:10 - 00045450 _____ () C:\Users\Jonas.JONASPC1\Downloads\TiCTooltips-mc1.6.4-1.1.7.jar 2014-06-17 22:30 - 2014-06-17 22:05 - 00000322 _____ () C:\Windows\Tasks\At35.job 2014-06-17 22:05 - 2014-06-17 22:05 - 00001298 _____ () C:\Windows\System32\Tasks\At35 2014-06-17 21:52 - 2014-06-17 21:52 - 02355739 _____ () C:\Users\Jonas.JONASPC1\Downloads\StevesCarts2.0.0.b11.zip 2014-06-17 17:30 - 2014-06-17 17:30 - 00202444 _____ () C:\Users\Jonas.JONASPC1\Downloads\TMechworks_mc1.6.4_0.1.6.jar 2014-06-17 16:54 - 2014-06-17 16:54 - 00144141 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-core (2).jar 2014-06-17 16:54 - 2014-06-17 16:54 - 00141188 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-dev (2).jar 2014-06-17 16:54 - 2014-06-17 16:54 - 00032136 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-api (1).zip 2014-06-17 16:53 - 2014-06-17 16:53 - 06075516 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (4).jar 2014-06-17 16:53 - 2014-06-17 16:53 - 00795784 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.348-universal (1).jar 2014-06-17 16:53 - 2014-06-17 16:53 - 00013834 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.348-api (1).zip 2014-06-17 16:50 - 2014-06-17 16:50 - 00941567 _____ () C:\Users\Jonas.JONASPC1\Downloads\ExtraCells-1.6.9d.jar 2014-06-17 16:50 - 2014-06-17 16:50 - 00936908 _____ () C:\Users\Jonas.JONASPC1\Downloads\ExtraCells-deobf-1.6.9d.jar 2014-06-17 16:50 - 2014-06-17 16:50 - 00755381 _____ () C:\Users\Jonas.JONASPC1\Downloads\JABBA_1.1.4.zip 2014-06-17 16:48 - 2014-06-17 16:48 - 01156730 _____ () C:\Users\Jonas.JONASPC1\Downloads\Modular-Force-Field-System-3.6.3.90-core.jar 2014-06-17 16:45 - 2014-06-17 16:45 - 03686451 _____ () C:\Users\Jonas.JONASPC1\Downloads\witchery-1.6.4-0.19.1.zip 2014-06-15 16:57 - 2014-06-15 16:57 - 00020545 _____ () C:\Users\Jonas.JONASPC1\Downloads\files^MobDismemberment2.0.0.zip 2014-06-15 00:30 - 2014-06-14 23:56 - 00000322 _____ () C:\Windows\Tasks\At34.job 2014-06-14 23:56 - 2014-06-14 23:56 - 00001298 _____ () C:\Windows\System32\Tasks\At34 2014-06-14 18:58 - 2014-06-14 18:58 - 01155938 _____ () C:\Users\Jonas.JONASPC1\Downloads\Modular-Force-Field-System-3.6.3.89-core.jar 2014-06-14 18:49 - 2014-06-14 18:49 - 00074064 _____ () C:\Users\Jonas.JONASPC1\Downloads\TConstruct_Library_1.6.4_6.2.0.zip 2014-06-14 18:47 - 2014-06-14 18:46 - 04735255 _____ () C:\Users\Jonas.JONASPC1\Downloads\TConstruct_mc1.6.4_1.5.5.7.jar 2014-06-14 18:46 - 2014-06-14 18:46 - 00396475 _____ () C:\Users\Jonas.JONASPC1\Downloads\tictweaks-1.6.4-1.0.3.jar 2014-06-14 17:23 - 2014-06-14 17:22 - 04029506 _____ () C:\Users\Jonas.JONASPC1\Downloads\MCA-3.6.1 MC-1.6.4.zip 2014-06-14 17:15 - 2014-06-14 17:15 - 00007087 _____ () C:\Users\Jonas.JONASPC1\Downloads\HarvestCraftWaila-mc1.6.4-1.0.3.jar 2014-06-14 17:14 - 2014-06-14 17:14 - 00041826 _____ () C:\Users\Jonas.JONASPC1\Downloads\TiCTooltips-mc1.6.4-1.1.6.jar 2014-06-14 17:05 - 2014-06-14 17:05 - 00141028 _____ () C:\Users\Jonas.JONASPC1\Downloads\dynamicLinkPanels-1.6.4-1.4a.jar 2014-06-14 15:39 - 2014-06-14 15:39 - 01395032 _____ () C:\Users\Jonas.JONASPC1\Downloads\Pam's HarvestCraft 1.6.4 v1.1.4.zip 2014-06-14 15:39 - 2014-06-14 15:39 - 00002710 _____ () C:\Users\Jonas.JONASPC1\Downloads\Pam's Get all the Seeds 1.6.4.zip 2014-06-14 14:58 - 2014-06-14 14:58 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Jonas.JONASPC1\Downloads\SpyHunter-Installer (3).exe 2014-06-14 12:34 - 2014-06-14 12:34 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\eCyber 2014-06-14 12:34 - 2011-09-03 13:02 - 00001984 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\1und1.lnk 2014-06-14 12:33 - 2014-06-14 12:33 - 00001756 _____ () C:\Users\Public\Desktop\YAC.lnk 2014-06-14 12:33 - 2014-06-14 12:33 - 00000000 ____D () C:\Windows\system32\log 2014-06-14 12:33 - 2014-06-14 12:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC 2014-06-14 12:33 - 2014-06-14 11:21 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter 2014-06-14 12:33 - 2014-06-14 11:19 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP 2014-06-14 12:31 - 2014-06-14 12:29 - 12787704 _____ (Elex do Brasil Participações Ltda) C:\Users\Jonas.JONASPC1\Downloads\yet_another_cleaner_sk.exe 2014-06-14 11:50 - 2014-06-14 11:50 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Jonas.JONASPC1\Downloads\SpyHunter-Installer (2).exe 2014-06-14 11:38 - 2014-06-14 11:38 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Jonas.JONASPC1\Downloads\SpyHunter-Installer (1).exe 2014-06-14 11:22 - 2014-06-14 11:22 - 00000000 _____ () C:\autoexec.bat 2014-06-14 11:21 - 2014-06-14 11:21 - 00000000 ____D () C:\Program Files\Enigma Software Group 2014-06-14 11:16 - 2014-06-14 11:16 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Jonas.JONASPC1\Downloads\SpyHunter-Installer.exe 2014-06-14 11:13 - 2014-06-14 11:13 - 00000032 _____ () C:\Users\Jonas.JONASPC1\Desktop\Dokument.txt 2014-06-14 00:07 - 2014-06-13 23:30 - 00000322 _____ () C:\Windows\Tasks\At33.job 2014-06-13 23:30 - 2014-06-13 23:30 - 00001298 _____ () C:\Windows\System32\Tasks\At33 2014-06-13 18:05 - 2014-06-13 18:05 - 01381599 _____ () C:\Users\Jonas.JONASPC1\Downloads\Blood Magic v1.0.1g.zip 2014-06-13 17:59 - 2014-06-13 17:59 - 00020929 _____ () C:\Users\Jonas.JONASPC1\Downloads\MobDismemberment-3.0.1.jar 2014-06-13 17:21 - 2014-06-13 17:21 - 00874919 _____ () C:\Users\Jonas.JONASPC1\Downloads\Hats2.1.8.zip 2014-06-13 17:16 - 2014-06-13 17:16 - 00058458 _____ () C:\Users\Jonas.JONASPC1\Downloads\util^iChunUtil2.4.0.zip 2014-06-13 17:13 - 2014-06-13 17:13 - 00950152 _____ () C:\Users\Jonas.JONASPC1\Downloads\PortalGun2.0.2.zip 2014-06-12 15:55 - 2014-06-12 15:55 - 00238603 _____ () C:\Users\Jonas.JONASPC1\Downloads\FRITZ.Box Fon WLAN 7320 (UI) 100.06.03_12.06.14_1557.export 2014-06-12 15:53 - 2014-03-29 09:42 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\FileZilla 2014-06-12 15:49 - 2014-03-29 09:34 - 00000902 _____ () C:\Users\Jonas.JONASPC1\Desktop\FileZilla Client.lnk 2014-06-12 15:48 - 2014-06-09 18:24 - 04996210 _____ (Tim Kosse) C:\Users\Jonas.JONASPC1\Downloads\FileZilla_3.8.1_win32-setup.exe 2014-06-12 15:48 - 2014-03-29 09:33 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2014-06-11 22:24 - 2013-08-16 14:25 - 00000000 ____D () C:\Windows\system32\MRT 2014-06-11 22:18 - 2010-04-13 19:56 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-06-11 22:18 - 2010-01-13 08:07 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-06-11 20:13 - 2014-06-11 20:13 - 00755620 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (2).jar 2014-06-10 19:26 - 2014-06-10 19:26 - 00611548 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (1).zip 2014-06-10 18:58 - 2014-06-10 18:58 - 03648074 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (2).zip 2014-06-10 18:58 - 2014-06-10 18:58 - 00433996 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (3).jar 2014-06-10 18:55 - 2014-06-10 18:55 - 06075516 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386 (1).jar 2014-06-10 18:55 - 2014-06-10 18:55 - 01155307 _____ () C:\Users\Jonas.JONASPC1\Downloads\Modular-Force-Field-System-3.6.3.88-core.jar 2014-06-10 18:53 - 2014-06-10 18:53 - 00144141 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-core (1).jar 2014-06-10 18:53 - 2014-06-10 18:53 - 00141188 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-dev (1).jar 2014-06-10 18:53 - 2014-06-10 18:53 - 00032136 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-api.zip 2014-06-10 18:52 - 2014-06-10 18:52 - 12898917 _____ () C:\Users\Jonas.JONASPC1\Downloads\Mekanism-6.0.5.46.jar 2014-06-10 18:52 - 2014-06-10 18:52 - 00795784 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.348-universal.jar 2014-06-10 18:52 - 2014-06-10 18:52 - 00103917 _____ () C:\Users\Jonas.JONASPC1\Downloads\MekanismGenerators-6.0.5.46.jar 2014-06-10 18:52 - 2014-06-10 18:52 - 00032795 _____ () C:\Users\Jonas.JONASPC1\Downloads\MekanismTools-6.0.5.46.jar 2014-06-10 18:52 - 2014-06-10 18:52 - 00013834 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.348-api.zip 2014-06-10 17:23 - 2010-04-12 18:09 - 00045056 _____ () C:\Windows\system32\acovcnt.exe 2014-06-09 12:43 - 2014-06-09 12:29 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Local\ftblauncher 2014-06-09 12:43 - 2013-04-13 14:43 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Roaming\ftblauncher 2014-06-09 12:29 - 2013-04-17 17:07 - 04916349 _____ () C:\Users\Jonas.JONASPC1\Desktop\FTB_Launcher.exe 2014-06-09 12:28 - 2014-06-09 12:28 - 06411388 _____ () C:\Users\Jonas.JONASPC1\Downloads\Agrarian Skies Map SebiKru 09_06_2014.rar 2014-06-09 09:09 - 2014-06-09 09:08 - 28062081 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax PureBDcraft 128x MC17.zip 2014-06-09 08:01 - 2014-06-09 08:01 - 00204029 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sync2.2.2.zip 2014-06-07 18:40 - 2013-12-05 12:08 - 00000000 ____D () C:\ProgramData\Oracle 2014-06-07 14:50 - 2014-06-07 14:50 - 00194749 _____ () C:\Users\Jonas.JONASPC1\Downloads\FRITZ.Box Fon WLAN 7320 (UI) 100.06.03_07.06.14_1452.export 2014-06-07 12:11 - 2014-06-07 12:11 - 00144141 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-core.jar 2014-06-07 12:11 - 2014-06-07 12:11 - 00141188 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.108-dev.jar 2014-06-07 12:09 - 2014-06-07 12:09 - 00790716 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.344-universal.jar 2014-06-07 12:09 - 2014-06-07 12:08 - 30984104 _____ (Oracle Corporation) C:\Users\Jonas.JONASPC1\Downloads\jre-7u60-windows-x64 (1).exe 2014-06-07 12:09 - 2014-06-07 12:08 - 29405096 _____ (Oracle Corporation) C:\Users\Jonas.JONASPC1\Downloads\jre-7u60-windows-i586.exe 2014-06-07 12:08 - 2014-06-07 12:08 - 30984104 _____ (Oracle Corporation) C:\Users\Jonas.JONASPC1\Downloads\jre-7u60-windows-x64.exe 2014-06-07 12:07 - 2014-06-07 12:07 - 06075516 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.386.jar 2014-06-07 12:07 - 2014-06-07 12:07 - 00918952 _____ (Oracle Corporation) C:\Users\Jonas.JONASPC1\Downloads\chromeinstall-7u60.exe 2014-06-07 09:07 - 2014-04-13 09:48 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-06-06 18:19 - 2014-06-06 18:19 - 02208014 _____ () C:\Users\Jonas.JONASPC1\Downloads\OpenBlocks-1.2.8.jar 2014-06-06 18:19 - 2014-06-06 18:19 - 00470909 _____ () C:\Users\Jonas.JONASPC1\Downloads\OpenModsLib-0.5.jar 2014-06-06 14:48 - 2014-06-06 14:48 - 00103947 _____ () C:\Users\Jonas.JONASPC1\Downloads\MekanismGenerators-6.0.4.42.jar 2014-06-06 14:42 - 2014-06-06 14:42 - 00032791 _____ () C:\Users\Jonas.JONASPC1\Downloads\MekanismTools-6.0.4.42.jar 2014-06-06 14:42 - 2014-06-06 14:41 - 00064072 _____ () C:\Users\Jonas.JONASPC1\Downloads\Mekanism-6.0.4.42.jar 2014-06-05 18:13 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-06-04 14:40 - 2014-06-04 14:36 - 00819346 _____ () C:\Users\Jonas.JONASPC1\Downloads\Technomancy 0.5.0a.zip 2014-06-03 18:57 - 2014-06-03 18:57 - 11836749 _____ () C:\Users\Jonas.JONASPC1\Downloads\Galacticraft-1.6.4-2.0.13.1063.jar 2014-06-03 18:56 - 2014-06-03 18:56 - 00309018 _____ () C:\Users\Jonas.JONASPC1\Downloads\Galacticraft-Planets-1.6.4-2.0.13.1063.jar 2014-06-03 18:56 - 2014-06-03 18:56 - 00018164 _____ () C:\Users\Jonas.JONASPC1\Downloads\MicdoodleCore-1.6.4-2.0.13.1063.jar 2014-06-03 18:55 - 2014-06-03 18:55 - 04448480 _____ () C:\Users\Jonas.JONASPC1\Downloads\LogisticsPipes-MC1.6.4-0.7.4.dev.220.jar 2014-06-03 18:53 - 2014-06-03 18:53 - 01384643 _____ () C:\Users\Jonas.JONASPC1\Downloads\appeng-rv14-finale3-mc16x.jar 2014-06-03 18:51 - 2014-06-03 18:51 - 00753938 _____ () C:\Users\Jonas.JONASPC1\Downloads\EnhancedPortals_1.6.4-universal-3.0.0b-final.jar 2014-06-03 18:51 - 2014-06-03 18:50 - 00143912 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.102-core.jar 2014-06-02 18:40 - 2014-06-02 18:39 - 06988653 _____ () C:\Users\Jonas.JONASPC1\Downloads\EXTRACTTHISGSaintsPackDubGuns0.7.rar 2014-06-01 09:12 - 2012-03-02 18:33 - 00000680 __RSH () C:\Users\Jonas.JONASPC1\ntuser.pol 2014-06-01 09:12 - 2012-03-02 18:32 - 00000000 ____D () C:\Users\Jonas.JONASPC1 2014-05-31 11:48 - 2014-05-31 11:48 - 04897516 _____ (Michael Müller ) C:\Users\Jonas.JONASPC1\Downloads\pfsetup8.exe 2014-05-31 11:47 - 2014-05-31 11:47 - 00082528 _____ () C:\Users\Jonas.JONASPC1\Downloads\Hamsterrific[1.6.4]V2.1.zip 2014-05-30 12:49 - 2014-06-14 12:33 - 00044544 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeKrnlBoot.sys 2014-05-30 09:35 - 2014-05-29 23:19 - 00000322 _____ () C:\Windows\Tasks\At32.job 2014-05-29 23:19 - 2014-05-29 23:19 - 00001298 _____ () C:\Windows\System32\Tasks\At32 2014-05-29 21:39 - 2014-05-29 21:39 - 00065601 _____ () C:\Users\Jonas.JONASPC1\Downloads\industrialcraft-2-api_2.0.397-experimental.zip 2014-05-29 21:39 - 2014-05-29 21:38 - 04392885 _____ () C:\Users\Jonas.JONASPC1\Downloads\industrialcraft-2_2.0.397-experimental.jar 2014-05-29 21:39 - 2014-05-29 21:38 - 04388002 _____ () C:\Users\Jonas.JONASPC1\Downloads\industrialcraft-2-dev-deobf_2.0.397-experimental.jar 2014-05-29 18:32 - 2014-05-29 18:32 - 00120656 _____ () C:\Users\Jonas.JONASPC1\Downloads\SimplyJetpacks-0.3.0.0.jar 2014-05-29 18:32 - 2014-05-29 18:32 - 00050853 _____ () C:\Users\Jonas.JONASPC1\Downloads\AOBD v1.4.0.jar 2014-05-29 18:32 - 2014-05-29 18:32 - 00031627 _____ () C:\Users\Jonas.JONASPC1\Downloads\ThaumcraftGates v1.2.0.jar 2014-05-29 13:00 - 2014-05-29 12:49 - 250365663 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax Texture Version Modpack.zip 2014-05-29 12:59 - 2014-05-29 12:50 - 00000000 ____D () C:\Users\Jonas.JONASPC1\Downloads\Texture Data 2014-05-29 12:49 - 2014-05-29 12:48 - 07588728 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax_ThermalExpansion_128x.zip 2014-05-29 12:47 - 2014-05-29 12:47 - 00270960 _____ () C:\Users\Jonas.JONASPC1\Downloads\SphaxWRCBE128x.zip 2014-05-29 12:47 - 2014-05-29 12:47 - 00175952 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax_NEI_512x-64x.zip 2014-05-29 12:45 - 2014-05-29 12:42 - 201213489 _____ () C:\Users\Jonas.JONASPC1\Downloads\BDcraft Musics Pack.zip 2014-05-29 12:44 - 2014-05-29 12:44 - 00784173 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax_IronChests_128x.zip 2014-05-29 12:43 - 2014-05-29 12:43 - 02881898 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax_BuildCraft_v4.2.1_128x.zip 2014-05-29 12:43 - 2014-05-29 12:43 - 00133337 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax Ender Storage 128x.zip 2014-05-29 12:43 - 2014-05-29 12:42 - 08684905 _____ () C:\Users\Jonas.JONASPC1\Downloads\BDcraft Sounds Pack.zip 2014-05-29 12:42 - 2014-05-29 12:42 - 27805923 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax PureBDcraft 128x MC16 (1).zip 2014-05-29 12:41 - 2014-05-29 12:41 - 00731695 _____ () C:\Users\Jonas.JONASPC1\Downloads\Sphax 128x ComputerCraft 1.5 francogp v0.5.3.zip 2014-05-29 06:40 - 2014-05-29 00:13 - 00000322 _____ () C:\Windows\Tasks\At31.job 2014-05-29 00:13 - 2014-05-29 00:13 - 00001298 _____ () C:\Windows\System32\Tasks\At31 2014-05-28 21:07 - 2014-05-28 21:07 - 00087296 _____ () C:\Users\Jonas.JONASPC1\Downloads\advfluxiantools-0.0.0.51-universal.jar 2014-05-28 19:25 - 2014-05-28 19:25 - 00021684 _____ () C:\Users\Jonas.JONASPC1\Downloads\yalsm-2.0.2.jar 2014-05-28 16:45 - 2014-05-28 16:45 - 06091150 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.385 (1).jar 2014-05-28 16:45 - 2014-05-28 16:45 - 00790716 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.343-universal (2).jar 2014-05-28 16:45 - 2014-05-28 16:45 - 00013858 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.343-api (3).zip 2014-05-28 16:45 - 2014-05-28 16:44 - 01726921 _____ () C:\Users\Jonas.JONASPC1\Downloads\EnderIO-1.6.4-1.0.6.376.jar 2014-05-28 16:40 - 2014-05-28 16:36 - 00143912 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.101-core (1).jar 2014-05-28 16:37 - 2014-05-28 16:37 - 00013858 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.343-api (2).zip 2014-05-28 16:30 - 2014-05-28 16:30 - 02373782 _____ () C:\Users\Jonas.JONASPC1\Downloads\ThermalExpansion-3.0.0.5.jar 2014-05-28 16:30 - 2014-05-28 16:30 - 00438217 _____ () C:\Users\Jonas.JONASPC1\Downloads\CoFHCore-2.0.0.5.jar 2014-05-28 16:30 - 2014-05-28 16:30 - 00220194 _____ () C:\Users\Jonas.JONASPC1\Downloads\RedstoneArsenal-1.0.0.0.jar 2014-05-27 18:49 - 2014-05-27 18:49 - 00047078 _____ () C:\Users\Jonas.JONASPC1\Downloads\[MC1.6.4]Deconstruction[v2.0.1].jar 2014-05-27 18:44 - 2014-05-27 18:44 - 00839415 _____ () C:\Users\Jonas.JONASPC1\Downloads\advancedgenetics-1.4.3-1.6.jar 2014-05-27 18:44 - 2014-05-27 18:44 - 00005506 _____ () C:\Users\Jonas.JONASPC1\Downloads\advancedGenetics_v1.1_api (1).zip 2014-05-27 14:22 - 2014-05-27 14:22 - 06091150 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-1.4.2.385.jar 2014-05-27 14:22 - 2014-05-27 14:22 - 01309109 _____ () C:\Users\Jonas.JONASPC1\Downloads\ComputerCraft1.63.jar 2014-05-27 14:21 - 2014-05-27 14:21 - 00790716 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.343-universal (1).jar 2014-05-27 14:21 - 2014-05-27 14:21 - 00013858 _____ () C:\Users\Jonas.JONASPC1\Downloads\Resonant-Engine-1.2.0.343-api (1).zip 2014-05-27 14:20 - 2014-05-27 14:20 - 00143912 _____ () C:\Users\Jonas.JONASPC1\Downloads\Universal-Electricity-3.1.0.101-core.jar 2014-05-27 13:57 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-26 19:10 - 2013-09-29 10:27 - 00000000 ____D () C:\Users\Jonas.JONASPC1\AppData\Local\CrashDumps 2014-05-26 09:26 - 2014-05-26 09:26 - 00091527 _____ () C:\Users\Jonas.JONASPC1\Downloads\DynamicLights_1.6.4.zip 2014-05-26 09:25 - 2014-05-26 09:25 - 05417116 _____ () C:\Users\Jonas.JONASPC1\Downloads\Minions_1.6.4.zip 2014-05-26 09:12 - 2014-03-08 10:29 - 00000000 ____D () C:\ProgramData\RaoBooSaveer 2014-05-25 18:24 - 2014-05-25 18:24 - 00104419 _____ () C:\Users\Jonas.JONASPC1\Downloads\SimplyJetpacks-0.2.0.1.jar 2014-05-25 18:24 - 2014-05-25 18:24 - 00009593 _____ () C:\Users\Jonas.JONASPC1\Downloads\fmpintegration-1.2.1-1.6.4.jar 2014-05-25 18:23 - 2014-05-25 18:22 - 03173167 _____ () C:\Users\Jonas.JONASPC1\Downloads\witchery-1.6.4-0.18.4.zip 2014-05-25 17:32 - 2014-05-25 17:32 - 00000000 ____D () C:\Program Files (x86)\RaoBooSaveer 2014-05-25 16:31 - 2014-05-25 16:31 - 00425767 _____ () C:\Users\Jonas.JONASPC1\Downloads\OptiFine_1.6.4_HD_C8.jar 2014-05-25 16:31 - 2014-05-25 16:31 - 00101985 _____ () C:\Users\Jonas.JONASPC1\Downloads\OptiFine_1.6.4_L_C7.jar 2014-05-25 16:31 - 2014-05-25 16:30 - 00427659 _____ () C:\Users\Jonas.JONASPC1\Downloads\OptiFine_1.6.4_HD_U_C8.jar 2014-05-25 14:45 - 2014-05-25 14:45 - 00882639 _____ () C:\Users\Jonas.JONASPC1\Downloads\ForgeMultipart-universal-1.6.4-1.0.0.250.jar 2014-05-25 14:39 - 2014-05-25 14:39 - 06091146 _____ () C:\Users\Jonas.JONASPC1\Downloads\ICBM-Development-1.4.2.218.jar Files to move or delete: ==================== C:\ProgramData\aspg.dat C:\Windows\Tasks\At1.job C:\Windows\Tasks\At10.job C:\Windows\Tasks\At11.job C:\Windows\Tasks\At12.job C:\Windows\Tasks\At13.job C:\Windows\Tasks\At14.job C:\Windows\Tasks\At15.job C:\Windows\Tasks\At17.job C:\Windows\Tasks\At18.job C:\Windows\Tasks\At19.job C:\Windows\Tasks\At2.job C:\Windows\Tasks\At21.job C:\Windows\Tasks\At22.job C:\Windows\Tasks\At23.job C:\Windows\Tasks\At24.job C:\Windows\Tasks\At25.job C:\Windows\Tasks\At26.job C:\Windows\Tasks\At27.job C:\Windows\Tasks\At28.job C:\Windows\Tasks\At29.job C:\Windows\Tasks\At3.job C:\Windows\Tasks\At30.job C:\Windows\Tasks\At31.job C:\Windows\Tasks\At32.job C:\Windows\Tasks\At33.job C:\Windows\Tasks\At34.job C:\Windows\Tasks\At35.job C:\Windows\Tasks\At4.job C:\Windows\Tasks\At5.job C:\Windows\Tasks\At6.job C:\Windows\Tasks\At7.job C:\Windows\Tasks\At8.job C:\Windows\Tasks\At9.job Some content of TEMP: ==================== C:\Users\Administrator\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe C:\Users\Administrator\AppData\Local\Temp\SCC.dll C:\Users\Administrator\AppData\Local\Temp\vlc-2.1.1-win32.exe C:\Users\Jonas.JONASPC1\AppData\Local\Temp\jansi-64-git-MCPC-Plus-jenkins-MCPC-Plus-164-251.dll C:\Users\Jonas.JONASPC1\AppData\Local\Temp\Quarantine.exe C:\Users\Jonas.JONASPC1\AppData\Local\Temp\SHSetup.exe C:\Users\Jonas.JONASPC1\AppData\Local\Temp\vlc-2.1.3-win32.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-20 10:56 ==================== End Of Log ============================ |
24.06.2014, 18:36 | #20 |
| UTADRemovalApp 2.0 entfernen Und hier die neue Addition.txt :FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-06-2014 Ran by Jonas at 2014-06-24 19:31:40 Running from C:\Users\Jonas.JONASPC1\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} ==================== Installed Programs ====================== Update for Microsoft Office 2007 (KB2508958) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}) (Version: - Microsoft) 1&1 EasyLogin (HKLM-x32\...\1&1 EasyLogin) (Version: - ) 1&1 SoftPhone (HKLM-x32\...\1&1 SoftPhone) (Version: 2.60.1179 - 1&1 Internet AG) 1-abc.net File Encrypter (Remove only) (HKLM-x32\...\1-abc.net File Encrypter) (Version: - ) 1-abc.net Personal Information Center (Remove only) (HKLM-x32\...\1-abc.net Personal Information Center) (Version: - ) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) ACDSee Pro 3 (HKLM-x32\...\{1B280FAF-AE10-4E31-A41A-DB3917D651DC}) (Version: 3.0.475 - ACD Systems International Inc.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 3.1.0.4880 - Adobe Systems Incorporated) Hidden Adobe Digital Editions (HKLM-x32\...\Digital Editions) (Version: - ) Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.6.147 - Adobe Systems, Inc.) Advanced Driver Updater (HKLM-x32\...\Advanced Driver Updater_is1) (Version: 2.1.1086.11897 - Systweak Inc) Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{F4BF5F6B-F695-4762-AEB2-D095A4C34D89}) (Version: 1.5.17.25482 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 1.5.17.25482 - Alcor Micro Corp.) Hidden Allway Sync version 11.7.0 (HKLM\...\Allway Sync_is1) (Version: - Botkind Inc) AMD Catalyst Install Manager (HKLM\...\{6119B3A6-3603-9695-0398-CDF2AF0A13F8}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD Fuel (Version: 2013.0830.1944.33589 - Ihr Firmenname) Hidden AMD Fuel (Version: 2014.0417.2226.38446 - Ihr Firmenname) Hidden AMD USB Filter Driver (HKLM-x32\...\{4F5B18A3-E921-4FFE-BEF4-ACBB98964FC2}) (Version: 1.0.13.88 - Advanced Micro Devices, Inc.) Apple Software Update (HKLM-x32\...\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}) (Version: 2.1.1.116 - Apple Inc.) AquaSoft DiaShow Deluxe 6 (HKLM-x32\...\AquaSoft DiaShow Deluxe 6) (Version: 6.6.03 - AquaSoft) AquaSoft DiaShow Deluxe 6 (x32 Version: 6.6.03 - AquaSoft) Hidden ArcSoft PhotoStudio 6 (HKLM-x32\...\{B4BD4DFB-0A22-43EC-A2D4-BF515E9A546F}) (Version: 6.0.0.172 - ArcSoft) Ashampoo Burning Studio 2012 v10.0.15 (HKLM-x32\...\Ashampoo Burning Studio 2012_is1) (Version: 10.0.15 - Ashampoo GmbH & Co. KG) Ashampoo Office 2010 (HKLM-x32\...\{8EBB8452-274B-465D-8324-00B0832FBB00}) (Version: 10.0.584 - ashampoo GmbH & Co. KG) Ashampoo WinOptimizer 8 v.8.14.00 (HKLM-x32\...\Ashampoo WinOptimizer 8_is1) (Version: 8.14.00 - Ashampoo GmbH & Co. KG) ASUS AI Recovery (HKLM-x32\...\{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}) (Version: 1.0.7 - ASUS) ASUS CopyProtect (HKLM-x32\...\{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}) (Version: 1.0.0015 - ASUS) ASUS Data Security Manager (HKLM-x32\...\{FA2092C5-7979-412D-A962-6485274AE1EE}) (Version: 1.00.0014 - ASUS) ASUS FancyStart (HKLM-x32\...\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}) (Version: 1.0.6 - ASUSTeK Computer Inc.) ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.20 - ASUS) ASUS MultiFrame (HKLM-x32\...\{9D48531D-2135-49FC-BC29-ACCDA5396A76}) (Version: 1.0.0019 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{1686C4D1-B1FD-42E8-B7A8-FB4C4DBA5BA8}) (Version: 1.1.19 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0028 - ASUS) ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.17 - asus) ATK Generic Function Service (HKLM-x32\...\{D3D54F3E-C5C3-443D-978F-87A72E5616E8}) (Version: 1.00.0008 - ATK) ATK Hotkey (HKLM-x32\...\{7C05592D-424B-46CB-B505-E0013E8E75C9}) (Version: 1.0.0053 - ASUS) ATK Media (HKLM-x32\...\{D1E5870E-E3E5-4475-98A6-ADD614524ADF}) (Version: 2.0.0005 - ASUS) ATKOSD2 (HKLM-x32\...\{3B05F2FB-745B-4012-ADF2-439F36B2E70B}) (Version: 7.0.0006 - ASUS) Audials (HKLM-x32\...\{A67E8EDC-8738-4F47-AD9E-61F3AB0064FA}) (Version: 10.2.29500.0 - Audials AG) AudioCutter Cinema (HKLM-x32\...\AudioCutter) (Version: - ) AutoShutdownManager (HKLM-x32\...\{361CE298-8B86-4049-915C-4A28E2577CE0}) (Version: 4 - EnviProt - www.EnviProt.com) AVM FRITZ!Box AddOn (IE) (x64) (HKLM\...\{CFB4DE27-AEED-4B12-8A3C-A77EBF1AFDDD}) (Version: 1.5.5 - AVM Berlin) Bandicam (HKLM-x32\...\Bandicam) (Version: 1.9.3.492 - Bandisoft.com) Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandisoft.com) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2009.1001.2247.39050 - ATI Technologies, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2013.0830.1943.33589 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2013.0830.1944.33589 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 3.15 - Piriform) Celestia 1.6.1 (HKLM-x32\...\Celestia_is1) (Version: - Shatters Software) Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version: - Cheat Engine) COMPUTERBILD Alles-Öffner (HKLM-x32\...\{777C64A3-5909-4DBC-B917-F5AD8DFB9B09}) (Version: 1.0.8 - J3S) COMPUTERBILD Alles-Öffner (x32 Version: 1.0.8 - J3S) Hidden COMPUTERBILD Datei-Reparierer (HKLM-x32\...\{113EBE84-73FA-4C44-8C4D-CAAA3AEE960C}) (Version: 1.0.0 - J3S) COMPUTERBILD Datei-Reparierer (x32 Version: 1.0.0 - J3S) Hidden COMPUTERBILD Mein Datensafe (HKLM-x32\...\{FB593624-C72A-43DD-8BA1-32CEDC1677A7}) (Version: 1.0.21 - J3S) COMPUTERBILD PC-Aufräumer 2012 (HKLM-x32\...\{3DAD36E4-5CAB-412C-9FCE-1B265BBBFE7C}) (Version: 2.0.1 - J3S) COMPUTERBILD Vorteil-Center (HKLM-x32\...\{B7E68A6D-1C9B-4F18-B021-949115021714}) (Version: 1.1.23 - J3S) ControlDeck (HKLM-x32\...\{5B65EF64-1DFA-414A-8C94-7BB726158E21}) (Version: 1.0.4 - ASUS) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1908 - CyberLink Corp.) CyberLink LabelPrint (x32 Version: 2.5.1908 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DasTelefonbuch Sync (x32 Version: 6.00.3709 - O3SIS AG) Hidden DATA BECKER TWIN7 2.0 (HKLM-x32\...\TWIN7 2.0_is1) (Version: - DATA BECKER GmbH & Co. KG) DDEalExpressS (HKLM-x32\...\{25F259ED-12F6-429F-5783-527C3E2F8586}) (Version: - DealExpresss) Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) Diswy version 2.0 (HKLM\...\{5CFA3771-6246-42A5-85C9-9D7A3F900EB0}_is1) (Version: 2.0 - Serhiy Perevoznyk) Double Commander 0.5.1 beta (HKLM\...\Double Commander_is1) (Version: - ) Drakensang Online (HKLM-x32\...\Drakensang Online) (Version: - ) Dream Day Wedding Married in Manhattan (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115233673}) (Version: - Oberon Media) DriverEasy 4.7.2 (HKLM\...\DriverEasy_is1) (Version: 4.7.2.0 - Easeware) Drucken in PDF Annotator (novaPDF OEM 7.4 printer) (HKLM\...\Drucken in PDF Annotator_is1) (Version: - Softland) DVDFab 8.2.0.0 (07/08/2012) Qt (HKLM-x32\...\DVDFab 8 Qt_is1) (Version: - Fengtao Software Inc.) Dxtory version 2.0.126 (HKLM-x32\...\Dxtory2.0_is1) (Version: 2.0.126 - ExKode Co. Ltd.) EagleGet version 1.1.8.2 (HKLM-x32\...\{F6D8142A-B30B-454B-9EE0-08A7B997DFE4}_is1) (Version: 1.1.8.2 - EagleGet) East-Tec Eraser 2011 Version 9.9 (HKLM-x32\...\East-Tec Eraser 2011_is1) (Version: 9.9.93.219 - EAST Technologies) EPSON BX525WD Series Handbuch (HKLM-x32\...\EPSON BX525WD Series Manual) (Version: - ) EPSON BX525WD Series Netzwerk-Handbuch (HKLM-x32\...\EPSON BX525WD Series Network Guide) (Version: - ) EPSON BX525WD Series Printer Uninstall (HKLM\...\EPSON BX525WD Series) (Version: - SEIKO EPSON Corporation) ETDWare X64 11.7.13.2_WHQL (HKLM\...\Elantech) (Version: 11.7.13.2 - ELAN Microelectronic Corp.) Euro Truck Simulator 1.3 (HKLM-x32\...\Euro Truck Simulator) (Version: 1.3 - SCS Software) Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.4 - ASUS) Feedback Tool (HKLM-x32\...\{90024193-9F13-4877-89D5-A1CDF0CBBF28}) (Version: 1.1.0 - Microsoft Corporation) FileZilla Client 3.8.1 (HKCU\...\FileZilla Client) (Version: 3.8.1 - Tim Kosse) Freemake Audio Converter Version 1.1.0 (HKLM-x32\...\Freemake Audio Converter_is1) (Version: 1.1.0 - Ellora Assets Corporation) Freemake Video Converter Version 4.1.3 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.3 - Ellora Assets Corporation) Freemake Video Downloader (HKLM-x32\...\Freemake Video Downloader_is1) (Version: 3.0.0 - Ellora Assets Corporation) Gehirnjogging 4 (HKLM-x32\...\Gehirnjogging 4) (Version: 1.0 - SBT) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 32.0.1700.107 - Google Inc.) Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.23.9 - Google Inc.) Hidden Internet-TV für Windows Media Center (HKLM-x32\...\{9D318C86-AF4C-409F-A6AC-7183FF4CF424}) (Version: 4.2.2.0 - Microsoft Corporation) ISO Workshop 2.5 (HKLM-x32\...\ISO Workshop_is1) (Version: - Glorylogic) JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation) Katalog Designer 1 (HKLM-x32\...\Katalog Designer 1) (Version: - ) KeePass Password Safe 2.19 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: - Dominik Reichl) Kernel For PDF Repair ver 9.11.01 (HKLM-x32\...\Kernel For PDF Repair_is1) (Version: - Nucleus Data Recovery .com) K-Lite Codec Pack 7.0.0 (Standard) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 7.0.0 - ) Lexmark Z500-Z600 Series (HKLM\...\Lexmark Z500-Z600 Series) (Version: - Lexmark International, Inc.) Logitech Harmony Remote Software (x86) (HKLM-x32\...\{634F79E1-2A41-4C40-9E8D-89EC740AC9D6}) (Version: 2.0 - Logitech) Logitech Harmony Remote Software 7 (HKLM-x32\...\{5C6F884D-680C-448B-B4C9-22296EE1B206}) (Version: 7.7.0.0 - Logitech) Logitech Harmony Remote Software 7 (x32 Version: 7.7.0.0 - Logitech) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.109 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.109 - LogMeIn, Inc.) Hidden Mail Undelete Recovery Toolbox Free 1.1 (HKLM-x32\...\Mail Undelete Recovery Toolbox Free_is1) (Version: - Recovery Toolbox) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) ManagePC (HKLM-x32\...\{E8621756-D620-474A-A1B8-858DD0AD4A8E}) (Version: 2.5.3 - ManagePC) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Extended DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 (Version: 1.0.30319 - Microsoft Corporation) Hidden Microsoft Mathematics (HKLM-x32\...\{4D090F70-6F08-4B60-9357-A1DFD4458F09}) (Version: 4.0 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Access Runtime (German) 2007 (HKLM-x32\...\{90120000-001C-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel Viewer (HKLM-x32\...\{95120000-003F-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook Connector (HKLM-x32\...\{95120000-0122-0407-0000-0000000FF1CE}) (Version: 12.0.6423.1000 - Microsoft Corporation) Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Report Viewer Redistributable 2008 (KB971119) (HKLM-x32\...\Microsoft Report Viewer Redistributable 2008 (KB971119)) (Version: - Microsoft Corporation) Microsoft Report Viewer Redistributable 2008 (KB971119) (x32 Version: 9.0.30731 - Microsoft Corporation) Hidden Microsoft Security Client (Version: 4.5.0216.0 - Microsoft Corporation) Hidden Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.5.216.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Silverlight 4 SDK (HKLM-x32\...\{45EE5593-B401-42AC-9009-172325748E81}) (Version: 4.0.50630.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2008 (64-bit) (HKLM\...\Microsoft SQL Server 10 Release) (Version: - Microsoft Corporation) Microsoft SQL Server 2008 (64-bit) (Version: - Microsoft Corporation) Hidden Microsoft SQL Server 2008 (HKLM-x32\...\Microsoft SQL Server 10 Release) (Version: - Microsoft Corporation) Microsoft SQL Server 2008 (x32 Version: - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Browser (HKLM-x32\...\{C688457E-03FD-4941-923B-A27F4D42A7DD}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft SQL Server 2008 Common Files (Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Common Files (x32 Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Database Engine Services (Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Database Engine Services (x32 Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Database Engine Shared (Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Database Engine Shared (x32 Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Native Client (HKLM\...\{2738C4AA-420E-4E13-ADEF-B5AB250E3EF1}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Management Objects (HKLM-x32\...\{4E968D9C-21A7-4915-B698-F7AEB913541D}) (Version: 10.50.1447.4 - Microsoft Corporation) Microsoft SQL Server 2008 RsFx Driver (Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 RsFx Driver (x32 Version: 10.3.5500.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Setup Support Files (HKLM\...\{6292D514-17A4-403F-98F9-E150F10C043D}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\...\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{2A2F3AE8-246A-4252-BB26-1BEB45627074}) (Version: 10.50.1447.4 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{0826F9E4-787E-481D-83E0-BC6A57B056D5}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft Team Foundation Server 2010 Object Model - ENU (HKLM\...\Microsoft Team Foundation Server 2010 Object Model - ENU) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Team Foundation Server 2010 Object Model - ENU (Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{4FFA2088-8317-3B14-93CD-4C699DB37843}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{D285FC5F-3021-32E9-9C59-24CA325BDC5C}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (HKLM-x32\...\{B7E38540-E355-3503-AFD7-635B2F2F76E1}) (Version: 9.0.30729.4974 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319 (HKLM\...\{94D70749-4281-39AC-AD90-B56A0E0A402E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319 (HKLM-x32\...\{6A86554B-8928-30E4-A53C-D7337689134D}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio LightSwitch Beta - ENU (HKLM-x32\...\Microsoft Visual Studio LightSwitch Beta Edition - ENU) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio LightSwitch Beta Edition - ENU (x32 Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual Studio LightSwitch Beta Server Runtime (HKLM-x32\...\{57892DBE-F60B-3D74-91A6-930829BA6F2A}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Windows Media Video 9 VCM (HKLM-x32\...\WMV9_VCM) (Version: - ) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Microsoft_VC100_CRT_x64 (HKLM\...\{17106CA8-E65A-4D02-95BE-79AF8C698935}) (Version: 1.0.0 - Microsoft) Minecraft Tweaker for Minecraft 1.6.4, ver. 1.6.4_8.0 (HKLM-x32\...\{6428D19C-67AF-44FB-9496-E255C5D1E553}_is1) (Version: - M. Charvát) Miso 1.0 (HKLM-x32\...\Miso) (Version: 1.0 - ) Mouse driver v1.0 (HKLM-x32\...\uni mouse driver) (Version: - ) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 17.0.7 - Mozilla) Mozilla Thunderbird 17.0.7 (x86 en-US) (HKLM-x32\...\Mozilla Thunderbird 17.0.7 (x86 en-US)) (Version: 17.0.7 - Mozilla) Mozilla Thunderbird 24.6.0 (x86 de) (HKCU\...\Mozilla Thunderbird 24.6.0 (x86 de)) (Version: 24.6.0 - Mozilla) Mozilla Thunderbird 9.0.1 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 9.0.1 (x86 de)) (Version: 9.0.1 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MyMicroBalance (HKLM-x32\...\{CAF30EE3-A2E2-47BE-A37B-96524BCB3EF5}) (Version: 2.5.5 - startzentrum GmbH & Co KG) MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.4 - F.J. Wechselberger) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.5.2 - Notepad++ Team) OOo4Kids 1.3 (HKLM-x32\...\{BAA66FD3-3EBA-4C72-AD3C-7DE08113883E}) (Version: 1.3.131 - OOo4Kids) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.4.5.195 - Electronic Arts, Inc.) Overwolf (HKLM-x32\...\{FB83467F-D8EB-43E6-8B3D-860B045C1C52}) (Version: 0.51.325 - Overwolf) PasswordMaker Desktop Edition 0.4 Beta (HKLM-x32\...\PWMDesktopEdition) (Version: - ) PC Suite (HKLM-x32\...\PC Suite) (Version: 12.09.109.U8120D02SP02 - Huawei Technologies Co.,Ltd) PDF Annotator 3.0.0.333 (HKLM-x32\...\PDFAnnotator_is1) (Version: 3.0.0.333 - GRAHL software design) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.3.2 - Frank Heindörfer, Philip Chinery) Perpustakaan Bibliotheksverwaltung Light 3.4 (HKLM-x32\...\Perpustakaan Bibliotheksverwaltung Light 3.4) (Version: - MÜLLER UND STEIN software) phase-6 2.3.4 (HKLM-x32\...\phase-6) (Version: 2.3.4 - phase-6) Photomizer (HKLM-x32\...\{A00F8237-F496-44D2-0001-E3CCF8CD58AE}) (Version: 1.0.11.333 - Engelmann Media GmbH) Platform (x32 Version: 1.34 - VIA Technologies, Inc.) Hidden PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation) PosBill (HKLM-x32\...\{74CC5FBD-C57B-461F-8F74-053B66234F76}) (Version: 1.0.0 - IDV) Protect Disc License Helper 1.0.125 (IE) (HKCU\...\Protect Disc License Helper) (Version: 1.0.125 - Protect Disc) ProtectDisc Driver, Version 11 (HKLM-x32\...\ProtectDisc Driver 11) (Version: 11.0.0.14 - ProtectDisc Software GmbH) QTTabBar 1.5.0.0 Beta 2 (HKLM-x32\...\{7EDF4F60-E41A-4D55-8400-A633443C0065}) (Version: 1.5.260 - Quizo and Paul Accisano) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.86.508.2014 - Realtek) Recuva (HKLM\...\Recuva) (Version: 1.42 - Piriform) Remote Control USB Driver (HKLM-x32\...\{8471021C-F529-43DE-84DF-3612E10F58C4}) (Version: 2.3.2.317 - ) Service Pack 3 für SQL Server 2008 (KB2546951) (64-bit) (HKLM\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation) Service Pack 3 für SQL Server 2008 (KB2546951) (HKLM-x32\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation) Skype Click to Call (HKLM-x32\...\{BB285C9F-C821-4770-8970-56C4AB52C87E}) (Version: 7.1.15383.6004 - Microsoft Corporation) Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.) SMath Studio (HKLM-x32\...\{059D0971-0D4E-4AEB-8BA7-5316B30613E4}) (Version: 0.95.4594 - SMath) SpeedCommander 12 (HKLM-x32\...\SpeedCommander 12) (Version: 12 - SpeedProject) Sql Server Customer Experience Improvement Program (Version: 10.3.5500.0 - Microsoft Corporation) Hidden Sql Server Customer Experience Improvement Program (x32 Version: 10.3.5500.0 - Microsoft Corporation) Hidden Starbound (HKLM-x32\...\Steam App 211820) (Version: - ) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Steganos Online Shield (HKLM-x32\...\{896614ED-00BD-4E0C-99AB-01C76EE416D9}) (Version: 1.1 - Steganos Software GmbH) Stellarium 0.12.2 (HKLM-x32\...\Stellarium_is1) (Version: 0.12.2 - Stellarium team) Stundenplan 2.0 (HKLM-x32\...\{CF9D257A-4776-4DD7-BCEC-8C46A00BA0F3}_is1) (Version: - Julian Schmidt.inc) Suite (x32 Version: 1.00.0000 - CyberLink Corp.) Hidden SuperEasy Driver Updater (HKLM-x32\...\SuperEasy Driver Updater_is1) (Version: 1.1.1086.11897 - SuperEasy Software) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Targus Mouse Tilt-Wheel Driver (HKLM-x32\...\InstallShield_{BD5AFA00-3AEB-4B9F-A1FA-43DCCC7BD319}) (Version: 1.0.6 - Targus Group International, Inc) Targus Mouse Tilt-Wheel Driver (Version: 1.0.6 - Targus Group International, Inc) Hidden TeamSpeak 3 Client (HKCU\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH) TeamViewer 8 (HKLM-x32\...\TeamViewer 8) (Version: 8.0.22298 - TeamViewer) TeraCopy 2.3 (HKLM\...\TeraCopy_is1) (Version: - Code Sector) TouchRemote (HKLM-x32\...\{73669993-F73F-497D-98CF-23B29F48FA4E}) (Version: 1.4.0 - ONCA development Bernd Wendt) TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation) TuneUp Utilities 2011 (x32 Version: 10.0.4600.4 - TuneUp Software) Hidden TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.2020.4 - TuneUp Software) Hidden Uninstall Abelssoft Backup (HKLM-x32\...\Abelssoft Backup_is1) (Version: 2.1 - Abelssoft) Unterstützungsdateien für Microsoft SQL Server 2008-Setup (HKLM-x32\...\{2A231800-A7CF-4223-B8A3-1FD9057BAE96}) (Version: 10.3.5500.0 - Microsoft Corporation) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2468871) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2468871) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2533523) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2533523) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2600217) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2600217) (Version: 1 - Microsoft Corporation) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) USB 2.0 UVC 1.3M WebCam (HKLM\...\USB 2.0 UVC 1.3M WebCam) (Version: - ) VIA Platform Device Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.) Visual C++ 9.0 CRT (x86) WinSXS MSM (x32 Version: 9.0 - Microsoft Corporation) Hidden VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN) WCF RIA Services V1.0 for Visual Studio 2010 (HKLM-x32\...\{8FFC6175-D2C5-4FA7-91E8-E2A9431A5CDA}) (Version: 4.0.50506.0 - Microsoft Corporation) Web Deployment Tool (HKLM\...\{0F37D969-1260-419E-B308-EF7D29ABDE20}) (Version: 1.1.0618 - Microsoft Corporation) Windows Driver Package - Broadcom Bluetooth (06/15/2009 6.2.0.9000) (HKLM\...\6B8550A319DDC8B17F35F4A89988705E4592349B) (Version: 06/15/2009 6.2.0.9000 - Broadcom) Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) (HKLM\...\6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1) (Version: 07/30/2009 6.2.0.9405 - Broadcom) Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\3BA80AB4C7E9F8497C115C844953A3D4BEB84D21) (Version: 07/28/2009 6.2.0.9800 - Broadcom) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{0BCC3D18-4F05-47D8-8F2E-905E0499782B}) (Version: 15.4.5723.11 - Microsoft Corporation) Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Media Center Add-in for Silverlight (HKLM-x32\...\{0EDBEB2B-7C8D-42E6-8312-0F84394A3223}) (Version: 4.7.2.0 - Microsoft Corporation) Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.29.0 - ASUS) WinRAR 4.20 (32-Bit) (HKLM-x32\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) Wire Pilot Lite 3.0.4 (HKLM-x32\...\Wire Pilot Lite_is1) (Version: 3.0.4 - Two Pilots) Wireless Console 3 (HKLM-x32\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.12 - ASUS) Wizard101(DE) (HKCU\...\Wizard101(DE)_is1) (Version: - Gameforge 4D GmbH) Yet Another Cleaner! (HKLM-x32\...\iSafe) (Version: - ELEX DO BRASIL PARTICIPAÇÕES LTDA) ==================== Restore Points ========================= 24-06-2014 17:01:21 Windows Update 24-06-2014 17:25:15 Windows Modules Installer 24-06-2014 17:27:32 Windows Modules Installer ==================== Hosts content: ========================== 2009-07-14 04:34 - 2012-02-03 22:33 - 00000796 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 google-analytics.com ==================== Scheduled Tasks (whitelisted) ============= Task: {04F07313-143B-427E-9FB0-C8AA6AC605EE} - System32\Tasks\At35 => shutdown <==== ATTENTION Task: {122F8F8F-ACF8-4BED-8CB5-49F26CE9820A} - System32\Tasks\At2 => shutdown <==== ATTENTION Task: {133884B9-6D59-4EEF-8F2B-76926BE0CFBF} - System32\Tasks\At23 => shutdown <==== ATTENTION Task: {17A00EB4-1F85-4E4D-B1A2-6E96BF770EF5} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2009-07-23] (ATK) Task: {18C31FE4-B0C8-4BB8-85BE-12523B5C4FD8} - System32\Tasks\At9 => shutdown <==== ATTENTION Task: {1B3C04DA-D0A0-497C-8523-A2D152954635} - System32\Tasks\At28 => shutdown <==== ATTENTION Task: {1B690852-1FF8-4927-B948-BD655CA90859} - System32\Tasks\{E8091DA4-8D22-4453-B3E9-3777E0234A46} => D:\Program Files (x86)\Back To Gaya\BackToGaya_Release.exe Task: {237E502E-E9FD-4115-BADB-2B1C1A545C24} - System32\Tasks\{D5BF6A13-904F-410E-806B-BFD465CC3096} => C:\Users\Jonas.JONASPC1\Downloads\3200fvst8511a_xpde\SetupSG.exe Task: {240F1CD2-E6A2-4A30-98B8-83D8C92663F2} - System32\Tasks\{F4AAE6E6-A31B-405F-86B4-D05A02CF1A69} => D:\Program Files (x86)\1&1\1&1 SoftPhone\IPPHONEUI.EXE Task: {2B1C397A-A777-4145-815F-198D5017B7EB} - System32\Tasks\At25 => shutdown <==== ATTENTION Task: {3037F879-C2C1-4D3D-8107-FF470CE6D80C} - System32\Tasks\At11 => shutdown <==== ATTENTION Task: {37A8304B-B264-482B-8D0D-5CFA5CB1B6E3} - System32\Tasks\At27 => shutdown <==== ATTENTION Task: {3AA02EE8-72DC-48C1-887D-232EFF4C9FBC} - System32\Tasks\{9609BAAE-FFA7-48C8-8CA3-52BBE5E1339B} => D:\Program Files (x86)\Back To Gaya\BackToGaya_Release.exe Task: {3BD268DB-D0D4-4E32-803E-88D6C7337CE8} - System32\Tasks\Razer_Game_Booster_AutoUpdate => D:\Program Files (x86)\Razer\Razer Game Booster\AutoUpdate.exe Task: {3D982E7C-410E-4B72-84B3-9D8E93CE3675} - System32\Tasks\Sicherheitsreset => net Task: {3ED3532B-C053-468E-98D1-89E028B48755} - System32\Tasks\At22 => shutdown <==== ATTENTION Task: {3ED8A64F-CC4A-4F94-9EEB-03682E368448} - System32\Tasks\At15 => shutdown <==== ATTENTION Task: {46306CE4-BBA7-4AA7-87C6-5BC69C10DCE3} - System32\Tasks\P4G Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14] (Microsoft Corporation) Task: {46B4718B-26E5-4630-BE10-3A276CA3C895} - System32\Tasks\At1 => shutdown <==== ATTENTION Task: {492A9C51-503D-401B-9752-BFA81B55ED9C} - System32\Tasks\At5 => shutdown <==== ATTENTION Task: {4AC92914-0CDB-444D-8DE9-181565C233B8} - System32\Tasks\AdvancedDriverUpdaterRunAtStartup => C:\Program Files (x86)\Advanced Driver Updater\adu.exe [2012-03-20] (Systweak Inc) Task: {4F969A6A-DEDB-4077-AD90-56A6ADE70EDB} - System32\Tasks\At24 => shutdown <==== ATTENTION Task: {51EB1F4F-01A8-4E25-88DC-FFD721673AE4} - System32\Tasks\At30 => shutdown <==== ATTENTION Task: {5A945165-A49D-4C66-B576-15ABF1B956D7} - System32\Tasks\{69EC2840-4B85-472F-B439-E9341195DB00} => D:\Program Files (x86)\Back To Gaya\BackToGaya_Release.exe Task: {602200AB-CF7D-4E53-887E-C22D038D866E} - System32\Tasks\At7 => shutdown <==== ATTENTION Task: {62929623-6CE9-4994-A4BF-C1A6D93FC77C} - System32\Tasks\At31 => shutdown <==== ATTENTION Task: {66BB19CF-B139-4D7E-9F34-CFDAE3B25072} - System32\Tasks\At6 => shutdown <==== ATTENTION Task: {673908CD-44CE-4222-B421-FDA16EA24385} - System32\Tasks\ASPG => C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe [2009-06-29] (ASUS) Task: {6DE0F31D-5E7B-4D42-B03E-442A270DA401} - System32\Tasks\Core Temp Autostart Jonas => C:\Users\Jonas.JONASPC1\Desktop\Coretemp\Core Temp.exe [2013-03-01] () Task: {700B39E0-A74B-4B66-B470-8800A4FC15FB} - System32\Tasks\WC3 => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2009-09-16] () Task: {7579783C-0143-47A9-B55B-EB7D2AD5890A} - System32\Tasks\At10 => shutdown <==== ATTENTION Task: {7C054BB7-F42D-41D1-8B3C-7F0116D2C662} - System32\Tasks\ASUSControlDeck => C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe [2009-09-24] () Task: {7CF2FE3C-D21F-497E-A12B-E79E0FBFF0EE} - System32\Tasks\At21 => shutdown <==== ATTENTION Task: {7DB97EEE-2DE5-4EF4-953F-E9E946E3AFA6} - \DGChrome29728 Watcher No Task File <==== ATTENTION Task: {844C02CD-247E-4BF8-9E2F-104438D93691} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {85F74359-5382-48F2-BDFA-E9521CCD83EC} - System32\Tasks\At29 => shutdown <==== ATTENTION Task: {8A7F4A88-B6AB-4CA1-8495-E663C393307C} - System32\Tasks\At34 => shutdown <==== ATTENTION Task: {92FBAB37-7AE6-45E8-8A2F-3A69BF1E3509} - System32\Tasks\DriverEasy Scheduled Scan => D:\Program Files\Easeware\DriverEasy\DriverEasy.exe [2014-06-17] (Easeware) Task: {9B6BE2CA-D7BC-4097-99DC-AE06432A9BB2} - System32\Tasks\Microsoft\Support\Microsoft Fix it Center\ConfigExec => Rundll32.exe "C:\Program Files\Microsoft Fix it Center\MatsApi.dll",RunCollectConfigurationInfo Task: {9C105D09-B659-487C-B8BB-AC909DD7D8AE} - System32\Tasks\{51D0CC5A-404C-410C-A562-4A086D1565E6} => C:\Users\Jonas.JONASPC1\Downloads\7154_2_Norton2014.exe Task: {9F6331FF-516E-4843-B838-4867468D23E2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-18] (Adobe Systems Incorporated) Task: {A6066A35-D481-4CB9-85D3-EB741A9D1686} - System32\Tasks\At17 => shutdown <==== ATTENTION Task: {A80166FF-A7AD-4B92-8396-C0C27F7922DD} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2009-07-29] (ATK) Task: {ADA95979-5CA5-41AC-97B9-54C877A93A3B} - System32\Tasks\At13 => shutdown <==== ATTENTION Task: {B1913142-BB7F-4580-B070-341E4747B467} - System32\Tasks\ASUS Patch for VIA Audio => C:\Windows\system32\AsPatchViaAudio.exe [2012-11-07] (ASUSTek Computer INC.) Task: {B4BBFFCA-98FC-4B55-A661-8B545DDAEA31} - System32\Tasks\At26 => shutdown <==== ATTENTION Task: {BBCD3EFB-B229-48EE-BC79-D31316FD7EFB} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-12-21] (Adobe Systems Incorporated) Task: {C0766B81-6CA0-4FDD-BDC4-0CB7DF13CFDD} - System32\Tasks\AdvancedDriverUpdater_UPDATES => C:\Program Files (x86)\Advanced Driver Updater\adu.exe [2012-03-20] (Systweak Inc) Task: {C240DA51-5F73-439E-AF98-214D55A7EDAA} - System32\Tasks\Microsoft\Support\Microsoft Fix it Center\OSUpgrade => Rundll32.exe "C:\Program Files\Microsoft Fix it Center\MatsApi.dll",RunHandleOSUpgrade Task: {C388D32D-E6FC-4D77-B402-F65E963FD6BD} - System32\Tasks\{62867BE4-1B10-4F04-9B45-36CFFBEF58C4} => D:\Program Files (x86)\Back To Gaya\BackToGaya_Release.exe Task: {C400146F-758D-4C6E-9969-20E5B8DAAEEC} - System32\Tasks\At4 => shutdown <==== ATTENTION Task: {C98F4ACB-9A10-4093-B631-266E77FFDD46} - System32\Tasks\{43B8FD28-83CC-44AE-9B3E-C7BEB98EBCF7} => D:\Program Files (x86)\Back To Gaya\BackToGaya_Release.exe Task: {D0250F3F-6480-484F-B719-42F659AC64D5} - System32\Tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting => C:\Windows\system32\wermgr.exe Task: {D17C734C-4DCF-400F-B5EA-FA64EBDB1219} - System32\Tasks\{0D0B84C3-D37C-4CB0-8DB7-1DDAA464C9EA} => C:\Users\Jonas.JONASPC1\Downloads\3200fvst8511a_xpde\SetupSG.exe Task: {D3232D9F-644C-4A00-8662-80E93384BA2F} - System32\Tasks\SuperEasyDriverUpdaterRunAtStartup => C:\Program Files (x86)\SuperEasy Software\SuperEasy Driver Updater\supereasydu.exe [2012-01-17] (SuperEasy Software) Task: {D7231B4D-1308-4A4B-B36E-728ECA147C93} - System32\Tasks\At32 => shutdown <==== ATTENTION Task: {D99A3F0B-8E74-419B-BD07-70FEEC37168C} - System32\Tasks\At12 => shutdown <==== ATTENTION Task: {DB3A0A0F-79FC-4AE7-9874-E76134266E87} - System32\Tasks\At8 => shutdown <==== ATTENTION Task: {DF1FBBAE-CAFD-4045-8736-966A84A12DA5} - System32\Tasks\At3 => shutdown <==== ATTENTION Task: {E63B91BA-6974-4854-B528-CFA1B8295C90} - System32\Tasks\Game_Booster_Startup => D:\Program Files (x86)\Razer\Razer Game Booster\gamebooster.exe Task: {EFDD329E-0CFC-49B2-B055-CBFBA62F9663} - System32\Tasks\{40029D5A-2F37-42AB-B6C9-AA032A8051EA} => D:\Program Files (x86)\Back To Gaya\BackToGaya_Release.exe Task: {F3C6D4EF-EBE4-4C1F-9D0A-BC1CBEACA1FB} - System32\Tasks\At14 => shutdown <==== ATTENTION Task: {F527E651-A688-4C26-8D33-760F69FD472D} - System32\Tasks\{A5BF7A20-5A9A-4A8C-8CD3-46FBB473580F} => D:\Program Files (x86)\1&1\1&1 SoftPhone\IPPHONEUI.EXE Task: {F57B93F1-BA41-4C16-8AB7-7734D6C87707} - System32\Tasks\Microsoft\Support\Microsoft Fix it Center\ReportUpload => Rundll32.exe "C:\Program Files\Microsoft Fix it Center\MatsApi.dll",RunUploadWinReports Task: {F5B85543-986F-46BB-8D9C-2502BEEA05E3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-04-12] (Google Inc.) Task: {F7B740A1-21EE-42D3-93F1-90695A8982FC} - System32\Tasks\At19 => shutdown <==== ATTENTION Task: {FA149A4D-6655-4D25-8B6F-5C8E80D18C38} - System32\Tasks\{F9386FBC-7A79-4701-89EB-451459F0353E} => D:\Program Files (x86)\Back To Gaya\BackToGaya_Release.exe Task: {FB4B63AF-9800-4A25-9599-6FBE5965303E} - System32\Tasks\{A514BD79-C68E-4C01-A3F7-1D515172E90B} => D:\Program Files (x86)\1&1\1&1 SoftPhone\IPPHONEUI.EXE Task: {FCD7C2EC-3F44-416A-91AE-B061C0761A76} - System32\Tasks\At33 => shutdown <==== ATTENTION Task: {FE0EE7A5-7A12-41C6-AFAA-442C3B852CCE} - System32\Tasks\At18 => shutdown <==== ATTENTION Task: {FE902682-AEB2-4A18-8E67-6B176CFC99C6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-04-12] (Google Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\AdvancedDriverUpdater_UPDATES.job => C:\Program Files (x86)\Advanced Driver Updater\adu.exe Task: C:\Windows\Tasks\At1.job => ? Task: C:\Windows\Tasks\At10.job => ? Task: C:\Windows\Tasks\At11.job => ? Task: C:\Windows\Tasks\At12.job => ? Task: C:\Windows\Tasks\At13.job => ? Task: C:\Windows\Tasks\At14.job => ? Task: C:\Windows\Tasks\At15.job => ? Task: C:\Windows\Tasks\At17.job => ? Task: C:\Windows\Tasks\At18.job => ? Task: C:\Windows\Tasks\At19.job => ? Task: C:\Windows\Tasks\At2.job => ? Task: C:\Windows\Tasks\At21.job => ? Task: C:\Windows\Tasks\At22.job => ? Task: C:\Windows\Tasks\At23.job => ? Task: C:\Windows\Tasks\At24.job => ? Task: C:\Windows\Tasks\At25.job => ? Task: C:\Windows\Tasks\At26.job => ? Task: C:\Windows\Tasks\At27.job => ? Task: C:\Windows\Tasks\At28.job => ? Task: C:\Windows\Tasks\At29.job => ? Task: C:\Windows\Tasks\At3.job => ? Task: C:\Windows\Tasks\At30.job => ? Task: C:\Windows\Tasks\At31.job => ? Task: C:\Windows\Tasks\At32.job => ? Task: C:\Windows\Tasks\At33.job => ? Task: C:\Windows\Tasks\At34.job => ? Task: C:\Windows\Tasks\At35.job => ? Task: C:\Windows\Tasks\At4.job => ? Task: C:\Windows\Tasks\At5.job => ? Task: C:\Windows\Tasks\At6.job => ? Task: C:\Windows\Tasks\At7.job => ? Task: C:\Windows\Tasks\At8.job => ? Task: C:\Windows\Tasks\At9.job => ? Task: C:\Windows\Tasks\DriverEasy Scheduled Scan.job => D:\Program Files\Easeware\DriverEasy\DriverEasy.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2010-01-13 08:51 - 2007-08-08 10:08 - 00094208 _____ () C:\Program Files\ATKGFNEX\GFNEXSrv.exe 2011-12-16 16:16 - 2006-02-23 13:35 - 00020480 _____ () C:\Windows\System32\FritzColorPort64.dll 2011-05-20 23:03 - 2005-03-12 01:07 - 00087040 _____ () C:\Windows\System32\pdfcmnnt.dll 2007-06-15 20:28 - 2007-06-15 20:28 - 00104960 _____ () C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x64\OverlayIconShlExt64.dll 2007-06-02 02:52 - 2007-06-02 02:52 - 00159744 _____ () C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x64\OverlayIconShlExt1_64.dll 2014-05-01 21:29 - 2014-05-01 21:29 - 00098304 _____ () D:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2014-02-22 16:55 - 2012-01-20 15:55 - 00678400 _____ () D:\Program Files\TeraCopy\TeraCopyExt64.dll 2012-06-18 17:24 - 2012-06-18 17:24 - 00222720 _____ () d:\Program Files (x86)\Notepad++\NppShell_05.dll 2008-10-01 09:02 - 2008-10-01 09:08 - 00011264 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll 2009-09-16 03:34 - 2009-09-16 03:34 - 01593344 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe 2009-05-05 20:00 - 2009-05-05 20:00 - 00041472 _____ () C:\Program Files\P4G\DevMng.dll 2009-07-27 20:12 - 2009-07-27 20:12 - 00026624 _____ () C:\Program Files\P4G\OvrClk.dll 2010-01-13 08:51 - 2007-03-10 04:58 - 00124416 _____ () C:\Program Files\ATKGFNEX\AGFNEX64.dll 2009-09-24 23:50 - 2009-09-24 23:50 - 00053888 _____ () C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe 2013-06-19 16:32 - 2013-03-01 17:44 - 00763856 _____ () C:\Users\Jonas.JONASPC1\Desktop\Coretemp\Core Temp.exe 2013-08-30 19:47 - 2013-08-30 19:47 - 00127488 _____ () D:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2012-01-29 16:43 - 2011-12-05 13:52 - 00261120 _____ () d:\Program Files\Allway Sync\Bin\SyncService.exe 2014-06-20 09:47 - 2012-11-14 15:22 - 00078456 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll 2014-06-20 09:47 - 2012-11-14 15:22 - 00386168 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll 2012-08-28 17:23 - 2012-07-26 12:51 - 03125072 _____ () D:\Program Files (x86)\DATA BECKER\TWIN7 2.0\DBDefragSrvc.exe 2011-09-03 22:04 - 2011-09-03 22:04 - 00220928 _____ () C:\Windows\syswow64\bmon.exe ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\Temp:15024E60 AlternateDataStreams: C:\ProgramData\Temp:4CF61E54 AlternateDataStreams: C:\ProgramData\Temp:734E442A AlternateDataStreams: C:\ProgramData\Temp:B88E99C8 AlternateDataStreams: C:\ProgramData\Temp:F6829162 ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ksupmgr => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ksupmgr => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service" ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= MSCONFIG\Services: Hamachi2Svc => 2 MSCONFIG\Services: Mcx2Svc => 3 MSCONFIG\Services: OverwolfUpdaterService => 3 MSCONFIG\Services: TeamViewer8 => 3 MSCONFIG\Services: WPCSvc => 3 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^phase-6 Reminder.lnk => C:\Windows\pss\phase-6 Reminder.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Jonas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^FRITZ!DSL Startcenter.lnk => C:\Windows\pss\FRITZ!DSL Startcenter.lnk.Startup MSCONFIG\startupfolder: C:^Users^Jonas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk => C:\Windows\pss\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk.Startup MSCONFIG\startupfolder: C:^Users^Jonas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.2.lnk => C:\Windows\pss\OpenOffice.org 3.2.lnk.Startup MSCONFIG\startupreg: Overwolf => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent MSCONFIG\startupreg: SkyDrive => "C:\Users\Jonas.JONASPC1\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" /background MSCONFIG\startupreg: uni mouse driver => "d:\Mouse driver\mouse_driver.exe" /hide MSCONFIG\startupreg: uni mouse driver tilt => "d:\Mouse driver\wh_exec.exe" ==================== Faulty Device Manager Devices ============= Name: TeamViewer VPN Adapter Description: TeamViewer VPN Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TeamViewer GmbH Service: teamviewervpn Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: TAP-Windows Adapter V9 Description: TAP-Windows Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Windows Provider V9 Service: tap0901 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: iSafeKrnl Kit Driver Description: iSafeKrnl Kit Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: iSafeKrnlKit Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Hamachi Network Interface Description: Hamachi Network Interface Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: LogMeIn, Inc. Service: hamachi Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Microsoft Virtual WiFi Miniport Adapter #2 Description: Microsoft-Adapter für Miniports virtueller WiFis Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: vwifimp Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Teredo Tunneling Pseudo-Interface Description: Microsoft-Teredo-Tunneling-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (06/24/2014 07:32:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Name des fehlerhaften Moduls: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Ausnahmecode: 0xc0000417 Fehleroffset: 0x0000f168 ID des fehlerhaften Prozesses: 0x5c0 Startzeit der fehlerhaften Anwendung: 0xsasvc.exe0 Pfad der fehlerhaften Anwendung: sasvc.exe1 Pfad des fehlerhaften Moduls: sasvc.exe2 Berichtskennung: sasvc.exe3 Error: (06/24/2014 07:32:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Name des fehlerhaften Moduls: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Ausnahmecode: 0xc0000417 Fehleroffset: 0x0000f168 ID des fehlerhaften Prozesses: 0xce8 Startzeit der fehlerhaften Anwendung: 0xsasvc.exe0 Pfad der fehlerhaften Anwendung: sasvc.exe1 Pfad des fehlerhaften Moduls: sasvc.exe2 Berichtskennung: sasvc.exe3 Error: (06/24/2014 07:32:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Name des fehlerhaften Moduls: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Ausnahmecode: 0xc0000417 Fehleroffset: 0x0000f168 ID des fehlerhaften Prozesses: 0x15d8 Startzeit der fehlerhaften Anwendung: 0xsasvc.exe0 Pfad der fehlerhaften Anwendung: sasvc.exe1 Pfad des fehlerhaften Moduls: sasvc.exe2 Berichtskennung: sasvc.exe3 Error: (06/24/2014 07:32:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Name des fehlerhaften Moduls: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Ausnahmecode: 0xc0000417 Fehleroffset: 0x0000f168 ID des fehlerhaften Prozesses: 0x1078 Startzeit der fehlerhaften Anwendung: 0xsasvc.exe0 Pfad der fehlerhaften Anwendung: sasvc.exe1 Pfad des fehlerhaften Moduls: sasvc.exe2 Berichtskennung: sasvc.exe3 Error: (06/24/2014 07:32:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Name des fehlerhaften Moduls: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Ausnahmecode: 0xc0000417 Fehleroffset: 0x0000f168 ID des fehlerhaften Prozesses: 0x1560 Startzeit der fehlerhaften Anwendung: 0xsasvc.exe0 Pfad der fehlerhaften Anwendung: sasvc.exe1 Pfad des fehlerhaften Moduls: sasvc.exe2 Berichtskennung: sasvc.exe3 Error: (06/24/2014 07:32:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Name des fehlerhaften Moduls: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Ausnahmecode: 0xc0000417 Fehleroffset: 0x0000f168 ID des fehlerhaften Prozesses: 0x66c Startzeit der fehlerhaften Anwendung: 0xsasvc.exe0 Pfad der fehlerhaften Anwendung: sasvc.exe1 Pfad des fehlerhaften Moduls: sasvc.exe2 Berichtskennung: sasvc.exe3 Error: (06/24/2014 07:32:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Name des fehlerhaften Moduls: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Ausnahmecode: 0xc0000417 Fehleroffset: 0x0000f168 ID des fehlerhaften Prozesses: 0x1608 Startzeit der fehlerhaften Anwendung: 0xsasvc.exe0 Pfad der fehlerhaften Anwendung: sasvc.exe1 Pfad des fehlerhaften Moduls: sasvc.exe2 Berichtskennung: sasvc.exe3 Error: (06/24/2014 07:32:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Name des fehlerhaften Moduls: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Ausnahmecode: 0xc0000417 Fehleroffset: 0x0000f168 ID des fehlerhaften Prozesses: 0xb34 Startzeit der fehlerhaften Anwendung: 0xsasvc.exe0 Pfad der fehlerhaften Anwendung: sasvc.exe1 Pfad des fehlerhaften Moduls: sasvc.exe2 Berichtskennung: sasvc.exe3 Error: (06/24/2014 07:32:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Name des fehlerhaften Moduls: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Ausnahmecode: 0xc0000417 Fehleroffset: 0x0000f168 ID des fehlerhaften Prozesses: 0x11d8 Startzeit der fehlerhaften Anwendung: 0xsasvc.exe0 Pfad der fehlerhaften Anwendung: sasvc.exe1 Pfad des fehlerhaften Moduls: sasvc.exe2 Berichtskennung: sasvc.exe3 Error: (06/24/2014 07:32:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Name des fehlerhaften Moduls: sasvc.exe, Version: 0.0.0.0, Zeitstempel: 0x4d33a6c3 Ausnahmecode: 0xc0000417 Fehleroffset: 0x0000f168 ID des fehlerhaften Prozesses: 0x13ec Startzeit der fehlerhaften Anwendung: 0xsasvc.exe0 Pfad der fehlerhaften Anwendung: sasvc.exe1 Pfad des fehlerhaften Moduls: sasvc.exe2 Berichtskennung: sasvc.exe3 System errors: ============= Error: (06/24/2014 07:32:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "USB Device Adapter" wurde unerwartet beendet. Dies ist bereits 18618 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/24/2014 07:32:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "USB Device Adapter" wurde unerwartet beendet. Dies ist bereits 18617 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/24/2014 07:32:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "USB Device Adapter" wurde unerwartet beendet. Dies ist bereits 18616 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/24/2014 07:32:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "USB Device Adapter" wurde unerwartet beendet. Dies ist bereits 18615 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/24/2014 07:32:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "USB Device Adapter" wurde unerwartet beendet. Dies ist bereits 18614 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/24/2014 07:32:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "USB Device Adapter" wurde unerwartet beendet. Dies ist bereits 18613 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/24/2014 07:32:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "USB Device Adapter" wurde unerwartet beendet. Dies ist bereits 18612 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/24/2014 07:32:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "USB Device Adapter" wurde unerwartet beendet. Dies ist bereits 18611 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/24/2014 07:32:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "USB Device Adapter" wurde unerwartet beendet. Dies ist bereits 18610 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/24/2014 07:32:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "USB Device Adapter" wurde unerwartet beendet. Dies ist bereits 18609 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2011-06-15 17:42:36.251 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Spyware Process Detector\spd322.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2011-06-15 17:42:36.157 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Spyware Process Detector\spd322.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2011-06-15 07:25:42.855 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Spyware Process Detector\spd322.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2011-06-15 07:25:42.746 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Spyware Process Detector\spd322.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2011-06-14 20:36:35.920 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Spyware Process Detector\spd322.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2011-06-14 20:36:35.842 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Spyware Process Detector\spd322.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2011-06-14 19:57:47.069 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Spyware Process Detector\spd322.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2011-06-14 19:57:46.975 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Spyware Process Detector\spd322.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2011-06-12 09:58:42.737 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Spyware Process Detector\spd322.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2011-06-12 09:58:42.534 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Spyware Process Detector\spd322.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 42% Total physical RAM: 4095.12 MB Available physical RAM: 2341.41 MB Total Pagefile: 8188.37 MB Available Pagefile: 6209.11 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: (ZUGRIFF VERBOTEN) (Fixed) (Total:74.52 GB) (Free:4.99 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (Meine Daten) (Fixed) (Total:208.92 GB) (Free:94.6 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 298 GB) (Disk ID: 76692CA8) Partition 1: (Not Active) - (Size=15 GB) - (Type=1C) Partition 2: (Active) - (Size=75 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=209 GB) - (Type=OF Extended) ==================== End Of Log ============================ |
24.06.2014, 18:39 | #21 |
/// TB-Ausbilder /// Anleitungs-Guru | UTADRemovalApp 2.0 entfernen Ok und gleich noch das MBAM-Protokoll bitte...
__________________ --> UTADRemovalApp 2.0 entfernen |
24.06.2014, 19:05 | #22 |
| UTADRemovalApp 2.0 entfernen Ich kann dieses Protokoll wegen zuvielen Grafiken nicht hier reintun! Ich splitte ihn in 3 Stücke. Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 24.06.2014 Suchlauf-Zeit: 17:15:14 Logdatei: Suchlauf Protokoll.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.06.24.10 Rootkit Datenbank: v2014.06.23.02 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Self-protection: Deaktiviert Betriebssystem: Windows 7 CPU: x64 Dateisystem: NTFS Benutzer: Jonas Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 431375 Verstrichene Zeit: 36 Min, 8 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Tiefer Rootkit-Suchlauf: Aktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 8 Backdoor.Bot, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, 2512, Löschen bei Neustart, [95555f1c3a413303560e4af6f3108977] Backdoor.Bot, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, 2896, Löschen bei Neustart, [95555f1c3a413303560e4af6f3108977] Backdoor.Bot, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, 3152, Löschen bei Neustart, [95555f1c3a413303560e4af6f3108977] Backdoor.Bot, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, 3204, Löschen bei Neustart, [95555f1c3a413303560e4af6f3108977] Backdoor.Bot, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, 3212, Löschen bei Neustart, [95555f1c3a413303560e4af6f3108977] Backdoor.Bot, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, 3220, Löschen bei Neustart, [95555f1c3a413303560e4af6f3108977] Backdoor.Bot, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, 3232, Löschen bei Neustart, [95555f1c3a413303560e4af6f3108977] Backdoor.Bot, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, 4460, Löschen bei Neustart, [95555f1c3a413303560e4af6f3108977] Module: 0 (No malicious items detected) Registrierungsschlüssel: 1 Refog.Keylogger, HKLM\SOFTWARE\Refog Software, In Quarantäne, [8268bcbf3348e84e190a64fb18eb926e], Registrierungswerte: 1 Backdoor.Bot, HKU\S-1-5-21-1199298590-743223591-473746691-1064-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Internet, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, In Quarantäne, [95555f1c3a413303560e4af6f3108977] Registrierungsdaten: 2 Refog.Keylogger, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON|Userinit, c:\windows\system32\userinit.exe,d:\Windows\SysWOW64\MPK\mpk.exe, Gut: (Userinit.exe), Schlecht: (c:\windows\system32\userinit.exe,d:\Windows\SysWOW64\MPK\mpk.exe),Ersetzt,[a24834477704f83e28f5c4bff60ef010] PUM.Hijack.System.Hidden, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\ADVANCED\FOLDER\HIDDEN\SHOWALL|CheckedValue, 0, Gut: (1), Schlecht: (0),Ersetzt,[edfd502bf2894aec81cfbac8e321936d] Ordner: 1 Teil 2 kommt gleich Refog.Keylogger, C:\ProgramData\MPK, In Quarantäne, [fceea6d5106bce68bc1a6819748e0ef2], Dateien: 50 PUP.Optional.VbatesHelper.A, C:\Windows\Temp\INJ001\ExtensionUpdate.exe, In Quarantäne, [12d82853186379bd84ffa270887c30d0], PUP.Optional.Wajam.A, C:\Windows\Temp\INJ005\ExtensionUpdate.exe, In Quarantäne, [af3b81fae19ae74f96d7193bce363dc3], PUP.Optional.VbatesHelper.A, C:\Windows\System32\Tasks\DGChrome29728 Watcher, In Quarantäne, [52982853d6a5a1950878e3c5dc26738d], PUP.Optional.Superfish.A, C:\Users\Jonas.JONASPC1\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, In Quarantäne, [b63459226b10cf6754ea288cbe4414ec], PUP.Optional.Superfish.A, C:\Users\Jonas.JONASPC1\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, In Quarantäne, [08e286f5ceadd6608db1bafa837f5aa6], PUP.Optional.Superfish.A, C:\Users\Vater\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, In Quarantäne, [0fdb2655e49747ef4ef09f15e51da35d], PUP.Optional.Superfish.A, C:\Users\Vater\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, In Quarantäne, [e00ab9c2a7d4b482de602b89788a0df3], Backdoor.Bot, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Löschen bei Neustart, [95555f1c3a413303560e4af6f3108977], Refog.Keylogger, C:\ProgramData\MPK\S0000, In Quarantäne, [fceea6d5106bce68bc1a6819748e0ef2], PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.admin", false), Ersetzt,[0ae0e794e2990630e2e1357e897be917] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.aflt", "babsst"), Ersetzt,[0fdb5922017a092d7251e1d2ed17e719] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.babExt", ""), Ersetzt,[707ae794483389adecd76b48ea1a14ec] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.babTrack", "affID=111304"), Ersetzt,[c822bebd4932a3934a797142d034738d] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.bbDpng", 4), Ersetzt,[0ae02b50bfbc46f0d6ed9122af55c13f] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.dfltSrch", false), Ersetzt,[658503785a21300651722b88857f1de3] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.hmpg", false), Ersetzt,[aa400f6cd1aa71c501c203b0c93bb848] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.id", "c8d25bc900000000000000ffa9f66d28"), Ersetzt,[8b5f15665e1d69cddae9b4ff06fef808] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.instlDay", "15459"), Ersetzt,[7a7003788af183b39330595a20e45ea2] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.instlRef", "sst"), Ersetzt,[00ead1aa4e2d8da9a71c10a307fdc739] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.lastDP", 4), Ersetzt,[f5f5b8c3b5c61a1c3390595aa4606799] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.5.3.1719:45:25"), Ersetzt,[a04a3b408cefb58181420ba8a95b6997] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "11.0"), Ersetzt,[5b8f4239cfac0e28c4ff169d2bd9f10f] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.newTab", true), Ersetzt,[44a67308106bf442b112288bf60e29d7] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.newTabUrl", "hxxp://search.babylon.com/?babsrc=NT_bb"), Ersetzt,[44a6a5d6ec8ff93d556e248f47bd4cb4] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.noFFXTlbr", false), Ersetzt,[6c7e80fb1b60f93de0e3575c50b46e92] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar"), Ersetzt,[04e6d6a598e36ec8f5cefeb5ba4aea16] |
24.06.2014, 19:06 | #23 |
| UTADRemovalApp 2.0 entfernen PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.propectorlck", 74719422), Ersetzt,[f1f92d4ef68554e28d36b7fc877d4cb4] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.prtnrId", "babylon"), Ersetzt,[e6045625a7d48caa556e7241bb49eb15] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.ptch_0717", true), Ersetzt,[36b4fa81473441f540839e15b74d8878] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.smplGrp", "none"), Ersetzt,[44a6b9c2f88383b3824104af5ea63ac6] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.srcExt", "ss"), Ersetzt,[4f9bc5b696e57cba17ac2f84c24249b7] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.tlbrId", "base"), Ersetzt,[03e7700b4734c3733c876152d3314cb4] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.vrsn", "1.5.3.17"), Ersetzt,[55953d3ef2899f976e55b1029272f30d] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.vrsnTs", "1.5.3.1719:45:25"), Ersetzt,[44a6b1ca2d4e86b03f846b48ea1aa35d] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar.vrsni", "1.5.3.17"), Ersetzt,[4b9fd1aaf982cc6a92315e5541c37888] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.aflt", "babsst"), Ersetzt,[48a2e596cead90a6f2d108abc440b34d] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.babExt", ""), Ersetzt,[15d5bcbf8deedd59893a9221a85cc838] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.babTrack", "affID=111304"), Ersetzt,[37b33942eb9057dfd3f0f0c320e44eb2] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.hardId", "c8d25bc900000000000000ffa9f66d28"), Ersetzt,[0edc2f4cb4c75dd918ab8c270bf938c8] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.id", "c8d25bc900000000000000ffa9f66d28"), Ersetzt,[00eaaecd3d3e2313368d446f768e8b75] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.instlDay", "15459"), Ersetzt,[ad3d5c1f354680b6c201674c90740df3] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.instlRef", "sst"), Ersetzt,[0ae0afcce39865d1457ec6eda1638b75] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar"), Ersetzt,[b634c0bbec8f49ed4281ad06b252fe02] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon"), Ersetzt,[f9f11c5fb5c6c1756261585b976dc739] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.smplGrp", "none"), Ersetzt,[ba304932ff7c71c5e8db4c6722e2b64a] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.srcExt", "ss"), Ersetzt,[10da0a717b0022149f24446f4eb66997] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.tlbrId", "base"), Ersetzt,[05e5ccaff4870630269dac075ba9a957] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17"), Ersetzt,[2ac0a9d2e29975c16261ac0762a29b65] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.1719:45:25"), Ersetzt,[42a836451269f14514af83307094f808] PUP.Optional.Babylon.A, C:\Users\Jonas.JONASPC1\AppData\Roaming\Mozilla\Firefox\Profiles\wn1vqrnz.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17"), Ersetzt,[c22896e54d2e6accc300ae05de26649c] Physische Sektoren: 0 (No malicious items detected) (end) |
24.06.2014, 19:12 | #24 |
/// TB-Ausbilder /// Anleitungs-Guru | UTADRemovalApp 2.0 entfernen Ok, weiter mit dem nächsten Schritt... Frage: Der Keylogger, kam der von Dir? Oder wirst Du überwacht?
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
24.06.2014, 19:36 | #25 |
| UTADRemovalApp 2.0 entfernen Ich hatte mal nen Keylogger installiert um meinen Computer zu überwachen da ich glaubte das sich jemand zugang zu meinem Computer verschafft hat,aber ich dachte ich hätte ihn schon deinstalliert. Falls du den REFOG Keylogger meinst ist der von mir. |
24.06.2014, 19:46 | #26 |
/// TB-Ausbilder /// Anleitungs-Guru | UTADRemovalApp 2.0 entfernen OK... Was macht der letzte Schritt?
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
Themen zu UTADRemovalApp 2.0 entfernen |
backdoor.bot, pum.hijack.system.hidden, pup.optional.babylon.a, pup.optional.superfish.a, pup.optional.vbateshelper.a, pup.optional.wajam.a, refog.keylogger, unternehmensrichtlinie, utadremovalapp |