|
Plagegeister aller Art und deren Bekämpfung: Windows 7 : Keine Netzwerkverbindung - Icon wird angezeigt, jedoch funzt Internet ohne ProblemeWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
21.06.2014, 06:50 | #1 |
Windows 7 : Keine Netzwerkverbindung - Icon wird angezeigt, jedoch funzt Internet ohne Probleme Guten Morgen allerseits Also seit gestern ist es so das dauernd das "Keine-Verbindung" in der Taskleiste angezeigt wird ich aber trotzdem Verbindung habe: Defogger Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 07:41 on 21/06/2014 (Dario) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-06-2014 01 Ran by Dario (administrator) on ASUS-X73S on 21-06-2014 07:42:29 Running from C:\Users\Dario\Desktop 3 Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Logitech, Inc.) C:\Program Files\Logitech\SolarApp\L4301_Solar.exe (ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corporation) C:\Windows\System32\TCPSVCS.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (CyberGhost S.R.L) C:\Program Files\CyberGhost 5\Service.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Locktime Software) C:\Program Files\NetLimiter 3\nlsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (ASUS) C:\Program Files (x86)\ASUS\P4G\BatteryLife.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe () C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Users\Dario\AppData\Local\Apps\Evernote\Evernote\EvernoteClipper.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe (Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (Microsoft Corporation) C:\Windows\System32\taskmgr.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Akamai Technologies, Inc.) C:\Users\Dario\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.) C:\Users\Dario\AppData\Local\Akamai\netsession_win.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Frontend.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-Network.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe () C:\Program Files (x86)\Garmin\Express Self Updater\esu.exe (Garmin Ltd or its subsidiaries) C:\Windows\temp\tmpA98.tmp.exe (Garmin Ltd or its subsidiaries) C:\Windows\temp\tmpA98.tmp.exe (Qihu 360 Software Co., Ltd.) C:\Program Files\360\360 Internet Security\deepscan\QHActiveDefense.exe (Qihu 360 Software Co., Ltd.) C:\Program Files\360\360 Internet Security\360sd.exe (Qihu 360 Software Co., Ltd.) C:\Program Files\360\360 Internet Security\360rp.exe (Qihu 360 Software Co., Ltd.) C:\Program Files\360\360 Internet Security\safemon\360Tray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (dotPDN LLC) C:\Program Files\Paint.NET\PaintDotNet.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\Abloadtool\abloadtool.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Users\Dario\Desktop 3\Defogger.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [1744152 2011-10-07] (Logitech, Inc.) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2277480 2013-05-22] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2587944 2010-12-13] (ELAN Microelectronics Corp.) HKLM\...\Run: [360sd] => C:\Program Files\360\360 Internet Security\360sdrun.exe [273848 2014-01-09] (Qihu 360 Software Co., Ltd.) HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS) HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [832272 2014-05-01] (BlueStack Systems, Inc.) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2099200 2014-04-13] (Dominik Reichl) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-3972431589-2566625243-1631541889-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21446272 2014-05-08] (Skype Technologies S.A.) HKU\S-1-5-21-3972431589-2566625243-1631541889-1001\...\Policies\system: [DisableLockWorkstation] 0 HKU\S-1-5-21-3972431589-2566625243-1631541889-1001\...\Policies\system: [DisableClock] 0 HKU\S-1-5-21-3972431589-2566625243-1631541889-1001\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-3972431589-2566625243-1631541889-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-3972431589-2566625243-1631541889-1001\...\Policies\system: [EnableLUA] 1 HKU\S-1-5-21-3972431589-2566625243-1631541889-1001\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-3972431589-2566625243-1631541889-1001\...\Policies\Explorer: [NoFind] 0 AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [245872 2013-04-08] (NVIDIA Corporation) AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [201576 2013-04-08] (NVIDIA Corporation) AppInit_DLLs-x32: , C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [201576 2013-04-08] (NVIDIA Corporation) Startup: C:\Users\Dario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk ShortcutTarget: EvernoteClipper.lnk -> C:\Users\Dario\AppData\Local\Apps\Evernote\Evernote\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) ShellIconOverlayIdentifiers: SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => No File ShellIconOverlayIdentifiers: AsusWSShellExt_B -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll (eCareme Technologies, Inc.) ShellIconOverlayIdentifiers: AsusWSShellExt_O -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll (eCareme Technologies, Inc.) ShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => No File ShellIconOverlayIdentifiers: OODIIcon -> {14A94384-BBED-47ed-86C0-6BF63FD892D0} => C:\Program Files\OO Software\DiskImage\oodishi.dll (O&O Software GmbH) ShellIconOverlayIdentifiers: SmartFTP Drop -> {EA5A76F7-8138-4B53-B0F5-ADCC730CAFBD} => C:\Program Files\SmartFTP Client\sfShellTools.dll (SmartSoft Ltd.) ShellIconOverlayIdentifiers-x32: SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x28B49E387EC5CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-CH HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://ch.msn.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File DPF: HKLM-x32 {5F519B46-96EF-499F-BF24-C9E1548FA56B} hxxp://sonycam/program/SonySncDf70View.cab Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.210 88.84.16.108 Tcpip\..\Interfaces\{52ACCD0C-CD6E-4B80-B520-286DEEC015E3}: [NameServer]192.168.0.210,192.168.0.220 Tcpip\..\Interfaces\{CC6F69AF-BEC2-436E-AA09-0D9DE562E21B}: [NameServer]192.168.0.210,192.168.0.220 Tcpip\..\Interfaces\{E3B07140-174D-4590-A16C-E4C23E71385D}: [NameServer]192.168.0.220,192.168.0.210 FireFox: ======== FF ProfilePath: C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default FF Homepage: www.google.ch FF NetworkProxy: "backup.ftp", "5.9.203.92" FF NetworkProxy: "backup.ftp_port", 3128 FF NetworkProxy: "backup.socks", "5.9.203.92" FF NetworkProxy: "backup.socks_port", 3128 FF NetworkProxy: "backup.ssl", "5.9.203.92" FF NetworkProxy: "backup.ssl_port", 3128 FF NetworkProxy: "ftp", "91.228.53.28" FF NetworkProxy: "ftp_port", 3128 FF NetworkProxy: "http", "91.228.53.28" FF NetworkProxy: "http_port", 3128 FF NetworkProxy: "no_proxies_on", "" FF NetworkProxy: "share_proxy_settings", true FF NetworkProxy: "socks", "91.228.53.28" FF NetworkProxy: "socks_port", 3128 FF NetworkProxy: "ssl", "91.228.53.28" FF NetworkProxy: "ssl_port", 3128 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll () FF Plugin: @garmin.com/GpsControl - C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.) FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~4\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.1.0-git-20121231-0404 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.1 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.3 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin-x32: @esn/npbattlelog,version=2.4.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @garmin.com/GpsControl - C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3522.0110 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll No File FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @greentube.com/GreenWebPlayer - C:\Games\GreenWebPlayer\npgreenwebplayer.dll (Greentube Internet Entertainment Solutions GmbH) FF Plugin HKCU: @stonetrip.com/ShiVaWebPlayer,version=1.8.0.0 - C:\Users\Dario\AppData\Roaming\..\LocalLow\StoneTrip\Web Player\npShiVa3D.dll (StoneTrip) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Dario\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\searchplugins\anderes-wortde.xml FF SearchPlugin: C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\searchplugins\duckduckgo.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus Pop-up Addon - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\adblockpopups@jessehakanen.net.xpi [2012-12-24] FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\elemhidehelper@adblockplus.org.xpi [2012-12-24] FF Extension: ipFuck - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\ipfuck@p4ul.info.xpi [2013-11-10] FF Extension: ScrapBook - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\{53A03D43-5363-4669-8190-99061B2DEBA5}.xpi [2013-12-26] FF Extension: Google Analytics Opt-out Browser Add-on - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\{6d96bb5e-1175-4ebf-8ab5-5f56f1c79f65}.xpi [2013-05-19] FF Extension: ReloadEvery - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\{888d99e7-e8b5-46a3-851e-1ec45da1e644}.xpi [2012-12-28] FF Extension: XHTML Mobile Profile - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\{8ea9957e-2953-402f-80e0-bceb5f169d6f}.xpi [2014-03-01] FF Extension: Modify Headers - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\{b749fc7c-e949-447f-926c-3f4eed6accfe}.xpi [2014-03-01] FF Extension: wmlbrowser - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\{c4dc572a-3295-40eb-b30f-b54aa4cdc4b7}.xpi [2014-03-01] FF Extension: Adblock Plus - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2012-12-24] FF Extension: BetterPrivacy - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2012-12-26] FF Extension: DownThemAll! - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2013-12-23] FF Extension: Greasemonkey - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-03-04] FF Extension: Adblock Edge - C:\Users\Dario\AppData\Roaming\Mozilla\Firefox\Profiles\koq680jp.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi [2012-12-24] FF HKLM-x32\...\Firefox\Extensions: [{00F0643E-B367-4779-B45D-7046EBA37A88}] - C:\Program Files (x86)\Steganos Password Manager 2012\spmplugin3 Chrome: ======= CHR Extension: (Firebug Lite for Google Chrome™) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmagokdooijbeehmkpknfglimnifench [2014-03-16] CHR Extension: (Ecosia - Die Suchmaschine, die Bäume pflanzt) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\clellnciejhoedgepbdilbkdkaoecgpc [2014-04-26] CHR Extension: (Bitcoin Mining Monitor) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnkonhfangjkibemiedpiahgedlffdma [2014-05-01] CHR Extension: (Tampermonkey) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2014-03-04] CHR Extension: (Video Downloader professional) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2014-03-29] CHR Extension: (FoxyProxy Standard) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcknhkkoolaabfmlnjonogaaifnjlfnp [2014-06-15] CHR Extension: (AdBlock) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-05-14] CHR Extension: (ModHeader) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\idgpnmonknjnojddfkpgkljpfnnfcklj [2014-05-14] CHR Extension: (ChromeReload) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\njoipeaphfnaplplihpbgndfojhdhmjo [2014-05-18] CHR Extension: (Google Wallet) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-23] CHR Extension: (NotScripts) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\odjhifogjcknibkahlpidmdajjpkkcfn [2014-04-30] CHR Extension: (chromeIPass) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\ompiailgknfdndiefoaoiligalphfdae [2014-03-18] CHR Extension: (360 WebShield Plug-in) - C:\Users\Dario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pppagaglfkmlpgobnlenhknilehpmcbo [2014-06-21] CHR HKLM-x32\...\Chrome\Extension: [pppagaglfkmlpgobnlenhknilehpmcbo] - C:\Program Files\360\360 Internet Security\safemon\360webshield.crx [2014-06-21] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= S4 !SASCORE; C:\Program Files\SUPERAntiSpyware2\SASCORE64.EXE [144152 2013-10-11] (SUPERAntiSpyware.com) S2 360rp; C:\Program Files\360\360 Internet Security\360rps.exe [295608 2014-01-09] (Qihu 360 Software Co., Ltd.) S4 Apache2.4; C:\xampp\apache\bin\httpd.exe [22016 2012-08-18] (Apache Software Foundation) [File not signed] R2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [402192 2014-05-01] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385808 2014-05-01] (BlueStack Systems, Inc.) R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [774928 2014-05-01] (BlueStack Systems, Inc.) R3 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [64112 2014-01-16] (CyberGhost S.R.L) S4 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [487936 2013-12-23] (Connectify) [File not signed] S4 DCMessages; C:\Windows\SysWOW64\DCMessages.exe [99720 2009-11-24] (Global Graphics Software Ltd) R2 DirMngr; C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [218112 2013-10-07] () [File not signed] S4 FileZilla Server; c:\xampp\filezillaftp\filezillaserver.exe [632320 2012-05-11] (FileZilla Project) [File not signed] S2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [436056 2014-04-23] (Garmin Ltd or its subsidiaries) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed] R2 L4301_Solar; C:\Program Files\Logitech\SolarApp\L4301_Solar.exe [403536 2010-10-26] (Logitech, Inc.) S4 MSCSPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [File not signed] S2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [22072 2012-09-12] (Microsoft Corporation) S4 mysql; C:\xampp\mysql\bin\mysqld.exe [8186368 2012-07-20] () [File not signed] R2 nlsvc; C:\Program Files\NetLimiter 3\nlsvc.exe [1851008 2013-10-10] (Locktime Software) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-01-21] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [16939296 2014-01-21] (NVIDIA Corporation) S4 OO DiskImage; C:\Program Files\OO Software\DiskImage\oodiag.exe [6258480 2013-09-09] (O&O Software GmbH) S4 PACSPTISVR; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [File not signed] R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-05-31] () S4 PortReporter; C:\Program Files (x86)\PortReporter\portreporter.exe [90183 2004-03-30] () [File not signed] S3 scan; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S4 SPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [File not signed] S4 UPnPService; C:\Program Files (x86)\Common Files\MAGIX Shared\UPnPService\UPnPService.exe [548864 2008-10-21] (Magix AG) [File not signed] S4 Virtual Router; C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe [12288 2013-02-10] (Chris Pietschmann (hxxp://pietschsoft.com)) [File not signed] R2 ZhuDongFangYu; C:\Program Files\360\360 Internet Security\deepscan\QHActiveDefense.exe [228800 2013-12-24] (Qihu 360 Software Co., Ltd.) ==================== Drivers (Whitelisted) ==================== R1 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker64.sys [97480 2013-11-27] (Qihu 360 Software Co., Ltd.) R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [67272 2013-03-28] (Qihu 360 Software Co., Ltd.) R1 360Box64; C:\Windows\System32\DRIVERS\360Box64.sys [305856 2013-11-29] (Qihu 360 Software Co., Ltd.) S1 360Camera; C:\Windows\System32\Drivers\360Camera64.sys [41152 2013-12-09] (Qihu 360 Software Co., Ltd.) R1 360fsflt; C:\Windows\System32\DRIVERS\360FsFlt.sys [286912 2013-12-24] (Qihu 360 Software Co., Ltd.) S1 acedrv05; C:\Windows\system32\drivers\acedrv05.sys [136192 2011-09-27] () [File not signed] U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R1 BAPIDRV; C:\Windows\System32\Drivers\BAPIDRV64.SYS [179904 2013-12-10] (Qihu 360 Software Co., Ltd.) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [123152 2014-05-01] (BlueStack Systems) R1 cnnctfy3; C:\Windows\System32\DRIVERS\cnnctfy3.sys [35352 2014-02-26] (Connectify) R3 ElbyCDFL; C:\Windows\System32\Drivers\ElbyCDFL.sys [40648 2007-02-16] (SlySoft, Inc.) R3 ElbyCDFL; C:\Windows\SysWOW64\Drivers\ElbyCDFL.sys [40648 2007-02-16] (SlySoft, Inc.) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [16776 2011-07-29] () [File not signed] S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [14216 2011-07-29] () [File not signed] S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9096 2011-07-29] () [File not signed] S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [8456 2011-07-29] () [File not signed] R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) R3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [44480 2011-05-17] (hxxp://libusb-win32.sourceforge.net) S3 MEMSWEEP2; No ImagePath R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [228768 2012-08-30] (Microsoft Corporation) R1 nltdi; C:\Program Files\NetLimiter 3\nltdi.sys [87472 2013-06-12] (Locktime Software) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-27] (NVIDIA Corporation) R0 oodisr; C:\Windows\System32\DRIVERS\oodisr.sys [116936 2013-09-09] (O&O Software GmbH) R0 oodisrh; C:\Windows\System32\DRIVERS\oodisrh.sys [41160 2013-09-09] (O&O Software GmbH) R0 oodivd; C:\Windows\System32\DRIVERS\oodivd.sys [255688 2013-09-09] (O&O Software GmbH) R0 oodivdh; C:\Windows\System32\DRIVERS\oodivdh.sys [44744 2013-09-09] (O&O Software GmbH) S3 RivaTuner64; C:\Program Files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys [19952 2013-12-21] () R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware2\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware2\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 UimBus; C:\Windows\System32\DRIVERS\uimx64.sys [90960 2013-03-15] (Windows (R) 2000 DDK provider) R1 Uim_IM; C:\Windows\System32\Drivers\Uim_IMx64.sys [633680 2013-03-15] (Paragon) R1 Uim_VIM; C:\Windows\System32\Drivers\uim_vimx64.sys [390352 2013-03-15] (Paragon) S2 ASInsHelp; \??\C:\Windows\SysWow64\drivers\AsInsHelp64.sys [X] S3 catchme; \??\C:\ComboFix\catchme.sys [X] U3 DfSdkS; S3 getbus; \??\C:\Users\Dario\AppData\Local\Temp\getbus.sys [X] S3 meddmrr; system32\DRIVERS\meddmrr.sys [X] S3 vmci; \SystemRoot\system32\DRIVERS\vmci.sys [X] S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X] S3 WinRing0_1_2_0; \??\C:\Users\Dario\AppData\Local\Temp\tmp77B.tmp [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-21 07:42 - 2014-06-21 07:42 - 00000800 _____ () C:\Users\Dario\Desktop 3\FRST.txt 2014-06-21 07:41 - 2014-06-21 07:41 - 00000472 _____ () C:\Users\Dario\Desktop 3\defogger_disable.log 2014-06-21 07:36 - 2014-06-21 07:36 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Abloadtool 2014-06-21 07:35 - 2014-06-21 07:35 - 08247446 _____ () C:\Users\Dario\Downloads\abloadtool_setup-3_0.exe 2014-06-21 07:32 - 2014-06-21 07:32 - 02083328 _____ (Farbar) C:\Users\Dario\Desktop 3\FRST64.exe 2014-06-21 07:32 - 2014-06-21 07:32 - 00380416 _____ () C:\Users\Dario\Desktop 3\ctqzc1lm.exe 2014-06-21 07:32 - 2014-06-21 07:32 - 00050477 _____ () C:\Users\Dario\Desktop 3\Defogger.exe 2014-06-21 07:18 - 2014-06-21 07:35 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\360safe 2014-06-21 07:18 - 2014-06-21 07:18 - 00000000 _RSHD () C:\360SANDBOX 2014-06-21 07:18 - 2014-06-21 07:18 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\360SD 2014-06-21 07:18 - 2014-06-21 07:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Internet Security 2014-06-21 07:18 - 2014-06-21 07:18 - 00000000 ____D () C:\ProgramData\360SD 2014-06-21 07:18 - 2013-12-24 11:27 - 00286912 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\360FsFlt.sys 2014-06-21 07:18 - 2013-12-10 05:49 - 00179904 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\BAPIDRV64.SYS 2014-06-21 07:18 - 2013-12-09 04:04 - 00041152 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\360Camera64.sys 2014-06-21 07:18 - 2013-12-06 14:03 - 00022584 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\efimon.sys 2014-06-21 07:18 - 2013-11-29 09:55 - 00305856 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\360Box64.sys 2014-06-21 07:18 - 2013-11-27 14:10 - 00097480 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\360AntiHacker64.sys 2014-06-21 07:18 - 2013-03-28 04:11 - 00067272 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\360AvFlt.sys 2014-06-21 07:17 - 2014-06-21 07:17 - 00000000 ____D () C:\Program Files\360 2014-06-21 07:13 - 2014-06-21 07:13 - 00961360 _____ (Chip Digital GmbH) C:\Users\Dario\Downloads\360 Internet Security - CHIP-Installer.exe 2014-06-21 07:09 - 2014-06-21 07:10 - 94714880 _____ (AVAST Software) C:\Users\Dario\Downloads\avast_free_antivirus_setup2018.exe 2014-06-20 21:59 - 2014-06-20 21:59 - 00058043 _____ () C:\ProgramData\1403294357.bdinstall.bin 2014-06-20 19:15 - 2014-06-20 19:15 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf 2014-06-20 19:15 - 2014-06-20 19:15 - 00000000 ____D () C:\ProgramData\BDLogging 2014-06-20 19:15 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll 2014-06-20 19:14 - 2014-06-20 19:14 - 00001700 _____ () C:\ProgramData\1403283860.8136.bin 2014-06-20 19:04 - 2014-06-20 22:00 - 00148280 _____ () C:\ProgramData\1403283860.6440.bin 2014-06-20 19:04 - 2014-06-20 21:53 - 00121604 _____ () C:\ProgramData\1403283860.3056.bin 2014-06-20 19:04 - 2014-06-20 19:15 - 00086691 _____ () C:\ProgramData\1403283860.6248.bin 2014-06-20 19:04 - 2014-06-20 19:14 - 00047933 _____ () C:\ProgramData\1403283860.6152.bin 2014-06-20 19:04 - 2014-06-20 19:14 - 00010667 _____ () C:\ProgramData\1403283860.4904.bin 2014-06-20 19:04 - 2014-06-20 19:05 - 00001090 _____ () C:\ProgramData\1403283860.7952.bin 2014-06-20 19:04 - 2014-06-20 19:05 - 00001090 _____ () C:\ProgramData\1403283860.4704.bin 2014-06-20 19:04 - 2014-06-20 19:04 - 00015342 _____ () C:\ProgramData\1403283860.6680.bin 2014-06-20 19:04 - 2014-06-20 19:04 - 00008927 _____ () C:\ProgramData\1403283860.1588.bin 2014-06-20 19:04 - 2014-06-20 19:04 - 00002664 _____ () C:\ProgramData\1403283860.4888.bin 2014-06-20 18:41 - 2014-06-20 18:41 - 00000022 _____ () C:\Windows\S.dirmngr 2014-06-20 18:28 - 2014-06-20 18:28 - 00072115 _____ () C:\Users\Dario\Downloads\FixComet.zip 2014-06-20 18:28 - 2014-06-20 18:28 - 00000000 ____D () C:\Users\Dario\Downloads\FixComet 2014-06-20 18:21 - 2014-06-20 19:13 - 00000000 __SHD () C:\Users\Dario\Documents\Windupdt 2014-06-19 17:55 - 2014-06-19 18:01 - 00000000 ____D () C:\Program Files (x86)\GUM49D0.tmp 2014-06-19 15:47 - 2014-06-19 15:47 - 00000600 _____ () C:\Users\Dario\AppData\Local\PUTTY.RND 2014-06-18 17:55 - 2014-06-18 17:55 - 06774037 _____ () C:\Users\Dario\Downloads\wordpress-3.9.1-de_DE.zip 2014-06-18 17:55 - 2014-06-18 17:55 - 00000000 ____D () C:\Users\Dario\Downloads\wordpress-3.9.1-de_DE 2014-06-18 13:29 - 2014-06-18 13:30 - 01619388 _____ () C:\Users\Dario\Downloads\lightbox-2.7.1.zip 2014-06-18 13:16 - 2014-06-18 13:21 - 00000000 ____D () C:\Users\Dario\Documents\iFree Skype Recorder 2014-06-17 19:28 - 2014-06-17 19:28 - 00000000 ____D () C:\Users\Dario\AppData\Local\TSR_Software_-_www.tsr-so 2014-06-16 19:49 - 2014-06-16 19:49 - 00000000 ____D () C:\Users\Dario\Documents\TSR Software 2014-06-16 19:49 - 2014-06-16 19:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TSR Soft 2014-06-16 19:48 - 2014-06-16 19:48 - 00000000 ____D () C:\Program Files (x86)\TSR Soft 2014-06-11 17:54 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-06-11 17:54 - 2014-05-30 12:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-06-11 17:54 - 2014-05-30 12:02 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-06-11 17:54 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-06-11 17:54 - 2014-05-30 11:39 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-06-11 17:54 - 2014-05-30 11:39 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-06-11 17:54 - 2014-05-30 11:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-06-11 17:54 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-06-11 17:54 - 2014-05-30 11:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-06-11 17:54 - 2014-05-30 11:24 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-06-11 17:54 - 2014-05-30 11:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-06-11 17:54 - 2014-05-30 11:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-06-11 17:54 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-06-11 17:54 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-06-11 17:54 - 2014-05-30 11:11 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-06-11 17:54 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-06-11 17:54 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-06-11 17:54 - 2014-05-30 11:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-06-11 17:54 - 2014-05-30 10:55 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-06-11 17:54 - 2014-05-30 10:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-06-11 17:54 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-06-11 17:54 - 2014-05-30 10:44 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-06-11 17:54 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-06-11 17:54 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-06-11 17:54 - 2014-05-30 10:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-06-11 17:54 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-06-11 17:54 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-06-11 17:54 - 2014-05-30 10:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-06-11 17:54 - 2014-05-30 10:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-06-11 17:54 - 2014-05-30 10:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-06-11 17:54 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-06-11 17:54 - 2014-05-30 10:28 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-06-11 17:54 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-06-11 17:54 - 2014-05-30 10:24 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-06-11 17:54 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-06-11 17:54 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-06-11 17:54 - 2014-05-30 10:10 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-06-11 17:54 - 2014-05-30 10:06 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-06-11 17:54 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-06-11 17:54 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-06-11 17:54 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-06-11 17:54 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-06-11 17:54 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-06-11 17:54 - 2014-05-30 09:50 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-06-11 17:54 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-06-11 17:54 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-06-11 17:54 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-06-11 17:54 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-06-11 17:54 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-06-11 17:54 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-06-11 17:54 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-06-11 17:54 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-06-11 17:54 - 2014-05-08 11:32 - 03178496 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-06-11 17:54 - 2014-05-08 11:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2014-06-11 17:54 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-06-11 17:54 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-06-11 17:54 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-06-11 17:54 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-06-11 17:54 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-06-11 17:54 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-06-11 17:54 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-06-11 17:54 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-06-11 17:54 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-06-11 17:54 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-06-11 17:54 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-06-11 17:54 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-06-11 17:51 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-11 17:51 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-07 16:33 - 2014-06-07 19:35 - 00000000 ____D () C:\Users\Dario\Documents\Band 2014-06-04 21:05 - 2014-06-04 21:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GPU Temp 2014-06-04 21:05 - 2014-06-04 21:05 - 00000000 ____D () C:\Program Files (x86)\GPU Temp 2014-06-04 19:00 - 2014-06-04 19:01 - 00000000 ____D () C:\Users\Dario\Documents\Freemake 2014-06-04 18:55 - 2014-06-04 19:04 - 00000000 ____D () C:\Program Files (x86)\StarNotation 2014-06-04 16:43 - 2014-06-04 16:43 - 00000000 ____D () C:\Users\Dario\Documents\Benutzerdefinierte Office-Vorlagen 2014-06-04 12:51 - 2014-06-04 12:51 - 00003154 _____ () C:\Windows\System32\Tasks\{F9CD832F-678F-48B9-8820-1F187A35C286} 2014-06-02 19:23 - 2014-06-02 19:23 - 00003210 _____ () C:\Windows\System32\Tasks\Altium Designer Summer 09 2014-06-01 09:42 - 2014-06-01 09:42 - 00000000 ____D () C:\Users\Dario\YaCy 2014-06-01 09:42 - 2014-06-01 09:42 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YaCy 2014-06-01 09:40 - 2014-06-01 09:40 - 00000000 ____D () C:\Windows\system32\DATA 2014-06-01 09:38 - 2014-06-01 09:38 - 00000000 ____D () C:\Program Files (x86)\YaCy 2014-06-01 09:38 - 2014-06-01 09:38 - 00000000 ____D () C:\Program Files (x86)\Neuer Ordner 2014-05-31 16:53 - 2014-06-08 18:54 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-05-31 16:53 - 2014-05-31 16:53 - 00000000 ____D () C:\Users\Dario\Documents\Battlefield 3 2014-05-31 16:53 - 2014-05-31 16:53 - 00000000 ____D () C:\Users\Dario\AppData\Local\PunkBuster 2014-05-31 16:52 - 2014-05-31 16:52 - 00000000 ____D () C:\Users\Dario\AppData\Local\ESN 2014-05-31 16:51 - 2014-05-31 16:52 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins 2014-05-31 16:50 - 2014-05-31 16:50 - 00000000 ____D () C:\ProgramData\EA Core 2014-05-31 14:33 - 2014-05-31 14:33 - 00000000 ____D () C:\Users\Public\Documents\Logishrd 2014-05-31 10:26 - 2014-06-08 18:54 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-05-31 10:26 - 2014-06-07 17:12 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-05-31 10:26 - 2014-05-31 10:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 2014-05-31 10:25 - 2014-05-31 10:25 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-05-30 19:30 - 2014-05-30 19:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP 2014-05-30 11:02 - 2014-05-30 11:02 - 00013559 _____ () C:\Users\Dario\AppData\Local\recently-used.xbel 2014-05-29 11:54 - 2014-05-29 11:54 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flash Slideshow Maker Professional 2014-05-29 11:54 - 2014-05-29 11:54 - 00000000 ____D () C:\ProgramData\Socusoft 2014-05-29 11:54 - 2014-05-29 11:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flash Slideshow Maker Professional 2014-05-29 11:53 - 2014-05-29 11:54 - 00000000 ____D () C:\Program Files (x86)\Flash Slideshow Maker Professional 2014-05-27 20:06 - 2014-05-27 20:07 - 00000000 ____D () C:\Users\Dario\langpack-de-1.0.1-for-truecrypt-7.1a 2014-05-27 20:06 - 2014-05-27 20:06 - 00069183 _____ () C:\Users\Dario\langpack-de-1.0.1-for-truecrypt-7.1a.zip 2014-05-27 19:58 - 2014-05-27 19:58 - 10485760 _____ () C:\Users\Dario\Desktop 3\kik.trcy 2014-05-26 20:21 - 2014-05-26 20:21 - 00000000 ____D () C:\Windows\SysWOW64\NV 2014-05-26 20:21 - 2014-05-26 20:21 - 00000000 ____D () C:\Windows\system32\NV 2014-05-25 17:09 - 2014-05-25 17:09 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\.kde 2014-05-25 17:09 - 2014-05-25 17:09 - 00000000 ____D () C:\Users\Dario\AppData\Local\GNU 2014-05-25 17:04 - 2001-08-23 13:00 - 00034871 _____ () C:\Windows\system32\gpedit.msc 2014-05-25 17:02 - 2014-05-25 17:02 - 00707354 _____ () C:\Windows\unins000.exe 2014-05-25 17:02 - 2014-05-25 17:02 - 00001506 _____ () C:\Windows\unins000.dat 2014-05-25 16:58 - 2014-05-25 17:02 - 00000000 ____D () C:\Windows\SysWOW64\GPBAK 2014-05-25 16:58 - 2008-04-14 02:11 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appmgr.dll 2014-05-25 16:58 - 2001-08-23 13:00 - 00034871 _____ () C:\Windows\SysWOW64\gpedit.msc ==================== One Month Modified Files and Folders ======= 2014-06-21 07:42 - 2014-06-21 07:42 - 00000800 _____ () C:\Users\Dario\Desktop 3\FRST.txt 2014-06-21 07:42 - 2014-05-05 19:47 - 00000000 ____D () C:\FRST 2014-06-21 07:42 - 2014-02-08 08:05 - 00000000 ____D () C:\Users\Dario\Desktop 3 2014-06-21 07:41 - 2014-06-21 07:41 - 00000472 _____ () C:\Users\Dario\Desktop 3\defogger_disable.log 2014-06-21 07:36 - 2014-06-21 07:36 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Abloadtool 2014-06-21 07:36 - 2012-01-05 23:07 - 00000000 ___HD () C:\Program Files (x86)\Abloadtool 2014-06-21 07:36 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-06-21 07:35 - 2014-06-21 07:35 - 08247446 _____ () C:\Users\Dario\Downloads\abloadtool_setup-3_0.exe 2014-06-21 07:35 - 2014-06-21 07:18 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\360safe 2014-06-21 07:34 - 2011-08-08 17:05 - 00000000 ____D () C:\Users\Dario\AppData\Local\Paint.NET 2014-06-21 07:32 - 2014-06-21 07:32 - 02083328 _____ (Farbar) C:\Users\Dario\Desktop 3\FRST64.exe 2014-06-21 07:32 - 2014-06-21 07:32 - 00380416 _____ () C:\Users\Dario\Desktop 3\ctqzc1lm.exe 2014-06-21 07:32 - 2014-06-21 07:32 - 00050477 _____ () C:\Users\Dario\Desktop 3\Defogger.exe 2014-06-21 07:28 - 2012-03-29 12:17 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-21 07:22 - 2012-10-01 07:40 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\Skype 2014-06-21 07:21 - 2013-09-01 20:02 - 01385396 _____ () C:\Windows\WindowsUpdate.log 2014-06-21 07:18 - 2014-06-21 07:18 - 00000000 _RSHD () C:\360SANDBOX 2014-06-21 07:18 - 2014-06-21 07:18 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\360SD 2014-06-21 07:18 - 2014-06-21 07:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Internet Security 2014-06-21 07:18 - 2014-06-21 07:18 - 00000000 ____D () C:\ProgramData\360SD 2014-06-21 07:17 - 2014-06-21 07:17 - 00000000 ____D () C:\Program Files\360 2014-06-21 07:13 - 2014-06-21 07:13 - 00961360 _____ (Chip Digital GmbH) C:\Users\Dario\Downloads\360 Internet Security - CHIP-Installer.exe 2014-06-21 07:10 - 2014-06-21 07:09 - 94714880 _____ (AVAST Software) C:\Users\Dario\Downloads\avast_free_antivirus_setup2018.exe 2014-06-21 07:00 - 2012-09-14 18:23 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-21 06:53 - 2014-02-25 18:30 - 00000433 _____ () C:\Windows\system32\Drivers\etc\hosts.ics 2014-06-20 22:11 - 2014-05-09 12:32 - 00000000 ____D () C:\Users\Dario\AppData\Local\CrashDumps 2014-06-20 22:04 - 2014-06-20 22:04 - 03598784 _____ () C:\Users\Dario\Downloads\BD2013_Uninstall_Tool.exe 2014-06-20 22:03 - 2014-03-25 19:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flash ScreenSaver Builder 2014-06-20 22:03 - 2014-02-15 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPatrol 2014-06-20 22:02 - 2014-02-15 09:21 - 00000000 ____D () C:\Users\Dario\AppData\Local\Akamai 2014-06-20 22:02 - 2013-04-05 14:21 - 00000000 ____D () C:\ProgramData\Origin 2014-06-20 22:01 - 2013-12-08 18:46 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-06-20 22:00 - 2014-06-20 19:04 - 00148280 _____ () C:\ProgramData\1403283860.6440.bin 2014-06-20 22:00 - 2013-07-17 19:29 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce8313387cd85a.job 2014-06-20 22:00 - 2011-06-22 12:42 - 00003258 _____ () C:\Windows\system32\AutoRunFilter.ini 2014-06-20 22:00 - 2011-06-22 12:42 - 00002697 _____ () C:\Windows\system32\ServiceFilter.ini 2014-06-20 21:59 - 2014-06-20 21:59 - 00058043 _____ () C:\ProgramData\1403294357.bdinstall.bin 2014-06-20 21:59 - 2011-08-11 19:51 - 00000000 ____D () C:\Windows\SysWOW64\Adobe 2014-06-20 21:59 - 2011-04-13 04:47 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-06-20 21:53 - 2014-06-20 19:04 - 00121604 _____ () C:\ProgramData\1403283860.3056.bin 2014-06-20 19:16 - 2009-07-14 06:45 - 00009920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-20 19:16 - 2009-07-14 06:45 - 00009920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-20 19:15 - 2014-06-20 19:15 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf 2014-06-20 19:15 - 2014-06-20 19:15 - 00000000 ____D () C:\ProgramData\BDLogging 2014-06-20 19:15 - 2014-06-20 19:04 - 00086691 _____ () C:\ProgramData\1403283860.6248.bin 2014-06-20 19:15 - 2014-04-23 16:28 - 00008766 _____ () C:\Windows\setupact.log 2014-06-20 19:14 - 2014-06-20 19:14 - 00001700 _____ () C:\ProgramData\1403283860.8136.bin 2014-06-20 19:14 - 2014-06-20 19:04 - 00047933 _____ () C:\ProgramData\1403283860.6152.bin 2014-06-20 19:14 - 2014-06-20 19:04 - 00010667 _____ () C:\ProgramData\1403283860.4904.bin 2014-06-20 19:13 - 2014-06-20 18:21 - 00000000 __SHD () C:\Users\Dario\Documents\Windupdt 2014-06-20 19:11 - 2013-03-24 15:14 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\KeePass 2014-06-20 19:05 - 2014-06-20 19:04 - 00001090 _____ () C:\ProgramData\1403283860.7952.bin 2014-06-20 19:05 - 2014-06-20 19:04 - 00001090 _____ () C:\ProgramData\1403283860.4704.bin 2014-06-20 19:04 - 2014-06-20 19:04 - 00015342 _____ () C:\ProgramData\1403283860.6680.bin 2014-06-20 19:04 - 2014-06-20 19:04 - 00008927 _____ () C:\ProgramData\1403283860.1588.bin 2014-06-20 19:04 - 2014-06-20 19:04 - 00002664 _____ () C:\ProgramData\1403283860.4888.bin 2014-06-20 18:41 - 2014-06-20 18:41 - 00000022 _____ () C:\Windows\S.dirmngr 2014-06-20 18:40 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-20 18:38 - 2013-10-26 20:17 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\AVAST Software 2014-06-20 18:38 - 2013-06-12 06:37 - 00000000 ____D () C:\Program Files\AVAST Software 2014-06-20 18:38 - 2013-06-12 06:37 - 00000000 _____ () C:\Windows\SysWOW64\config.nt 2014-06-20 18:28 - 2014-06-20 18:28 - 00072115 _____ () C:\Users\Dario\Downloads\FixComet.zip 2014-06-20 18:28 - 2014-06-20 18:28 - 00000000 ____D () C:\Users\Dario\Downloads\FixComet 2014-06-19 18:01 - 2014-06-19 17:55 - 00000000 ____D () C:\Program Files (x86)\GUM49D0.tmp 2014-06-19 17:55 - 2013-10-09 20:09 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore1ce8313387cd85a 2014-06-19 17:55 - 2011-04-13 04:33 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-06-19 15:47 - 2014-06-19 15:47 - 00000600 _____ () C:\Users\Dario\AppData\Local\PUTTY.RND 2014-06-18 20:12 - 2011-02-19 06:24 - 00736320 _____ () C:\Windows\system32\perfh007.dat 2014-06-18 20:12 - 2011-02-19 06:24 - 00163008 _____ () C:\Windows\system32\perfc007.dat 2014-06-18 20:12 - 2009-07-14 07:13 - 01708906 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-06-18 17:55 - 2014-06-18 17:55 - 06774037 _____ () C:\Users\Dario\Downloads\wordpress-3.9.1-de_DE.zip 2014-06-18 17:55 - 2014-06-18 17:55 - 00000000 ____D () C:\Users\Dario\Downloads\wordpress-3.9.1-de_DE 2014-06-18 13:30 - 2014-06-18 13:29 - 01619388 _____ () C:\Users\Dario\Downloads\lightbox-2.7.1.zip 2014-06-18 13:21 - 2014-06-18 13:16 - 00000000 ____D () C:\Users\Dario\Documents\iFree Skype Recorder 2014-06-18 11:59 - 2013-06-12 06:37 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-06-17 19:28 - 2014-06-17 19:28 - 00000000 ____D () C:\Users\Dario\AppData\Local\TSR_Software_-_www.tsr-so 2014-06-16 19:49 - 2014-06-16 19:49 - 00000000 ____D () C:\Users\Dario\Documents\TSR Software 2014-06-16 19:49 - 2014-06-16 19:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TSR Soft 2014-06-16 19:48 - 2014-06-16 19:48 - 00000000 ____D () C:\Program Files (x86)\TSR Soft 2014-06-14 19:59 - 2012-05-06 09:31 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-06-14 19:46 - 2012-06-02 18:50 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-06-14 19:45 - 2013-09-06 20:23 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-06-13 11:50 - 2013-12-12 17:32 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-06-12 07:19 - 2013-09-05 20:11 - 00000000 ____D () C:\Windows\system32\MRT 2014-06-12 06:43 - 2011-08-08 12:30 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-06-12 06:37 - 2014-05-07 06:35 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-06-11 17:29 - 2011-08-07 11:00 - 00045056 _____ () C:\Windows\system32\acovcnt.exe 2014-06-08 18:54 - 2014-05-31 16:53 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-06-08 18:54 - 2014-05-31 10:26 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-06-08 11:13 - 2014-06-11 17:51 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-08 11:08 - 2014-06-11 17:51 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-07 19:35 - 2014-06-07 16:33 - 00000000 ____D () C:\Users\Dario\Documents\Band 2014-06-07 17:12 - 2014-05-31 10:26 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-06-06 06:32 - 2014-04-23 16:28 - 00601552 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-06-06 06:31 - 2014-05-18 16:03 - 00003266 _____ () C:\Windows\PFRO.log 2014-06-04 21:05 - 2014-06-04 21:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GPU Temp 2014-06-04 21:05 - 2014-06-04 21:05 - 00000000 ____D () C:\Program Files (x86)\GPU Temp 2014-06-04 21:05 - 2014-04-21 10:54 - 00188712 _____ () C:\Users\Dario\AppData\Local\GDIPFONTCACHEV1.DAT 2014-06-04 19:07 - 2014-05-14 18:16 - 00000000 ____D () C:\Program Files\Stellarium 2014-06-04 19:05 - 2014-02-13 21:06 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-06-04 19:04 - 2014-06-04 18:55 - 00000000 ____D () C:\Program Files (x86)\StarNotation 2014-06-04 19:01 - 2014-06-04 19:00 - 00000000 ____D () C:\Users\Dario\Documents\Freemake 2014-06-04 19:01 - 2014-03-18 18:21 - 00000000 ____D () C:\ProgramData\Freemake 2014-06-04 19:00 - 2014-03-18 18:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2014-06-04 19:00 - 2014-03-18 18:21 - 00000000 ____D () C:\Program Files (x86)\Freemake 2014-06-04 16:43 - 2014-06-04 16:43 - 00000000 ____D () C:\Users\Dario\Documents\Benutzerdefinierte Office-Vorlagen 2014-06-04 13:01 - 2012-10-01 07:40 - 00000000 ____D () C:\ProgramData\Skype 2014-06-04 12:51 - 2014-06-04 12:51 - 00003154 _____ () C:\Windows\System32\Tasks\{F9CD832F-678F-48B9-8820-1F187A35C286} 2014-06-02 19:45 - 2012-10-28 15:28 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\AltiumDesignerSummer09 2014-06-02 19:28 - 2014-04-26 17:22 - 00000000 ____D () C:\ProgramData\VMware 2014-06-02 19:26 - 2014-04-26 17:25 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\VMware 2014-06-02 19:23 - 2014-06-02 19:23 - 00003210 _____ () C:\Windows\System32\Tasks\Altium Designer Summer 09 2014-06-01 09:42 - 2014-06-01 09:42 - 00000000 ____D () C:\Users\Dario\YaCy 2014-06-01 09:42 - 2014-06-01 09:42 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YaCy 2014-06-01 09:42 - 2011-08-07 11:00 - 00000000 ____D () C:\Users\Dario 2014-06-01 09:40 - 2014-06-01 09:40 - 00000000 ____D () C:\Windows\system32\DATA 2014-06-01 09:38 - 2014-06-01 09:38 - 00000000 ____D () C:\Program Files (x86)\YaCy 2014-06-01 09:38 - 2014-06-01 09:38 - 00000000 ____D () C:\Program Files (x86)\Neuer Ordner 2014-06-01 07:56 - 2014-03-03 19:29 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\DS-Timer 2014-06-01 07:56 - 2014-03-02 15:50 - 00000000 ____D () C:\Program Files (x86)\DS-Timer 2014-05-31 16:53 - 2014-05-31 16:53 - 00000000 ____D () C:\Users\Dario\Documents\Battlefield 3 2014-05-31 16:53 - 2014-05-31 16:53 - 00000000 ____D () C:\Users\Dario\AppData\Local\PunkBuster 2014-05-31 16:52 - 2014-05-31 16:52 - 00000000 ____D () C:\Users\Dario\AppData\Local\ESN 2014-05-31 16:52 - 2014-05-31 16:51 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins 2014-05-31 16:50 - 2014-05-31 16:50 - 00000000 ____D () C:\ProgramData\EA Core 2014-05-31 14:33 - 2014-05-31 14:33 - 00000000 ____D () C:\Users\Public\Documents\Logishrd 2014-05-31 10:26 - 2014-05-31 10:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 2014-05-31 10:26 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-05-31 10:25 - 2014-05-31 10:25 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-05-31 10:25 - 2014-05-07 18:42 - 00018856 _____ () C:\Windows\DirectX.log 2014-05-31 07:23 - 2013-01-15 19:57 - 00000000 ____D () C:\Users\Dario\Documents\iMacros 2014-05-31 07:05 - 2013-12-08 18:48 - 00000000 ____D () C:\Users\Dario\AppData\Local\Origin 2014-05-31 07:03 - 2013-09-15 16:41 - 00000000 ____D () C:\Program Files (x86)\Origin Games 2014-05-30 19:30 - 2014-05-30 19:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP 2014-05-30 16:56 - 2012-09-11 05:04 - 00000000 __SHD () C:\xampp 2014-05-30 12:21 - 2014-06-11 17:54 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-30 12:02 - 2014-06-11 17:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-30 12:02 - 2014-06-11 17:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-05-30 11:45 - 2014-06-11 17:54 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-30 11:39 - 2014-06-11 17:54 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-05-30 11:39 - 2014-06-11 17:54 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-30 11:38 - 2014-06-11 17:54 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-05-30 11:28 - 2014-06-11 17:54 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-30 11:27 - 2014-06-11 17:54 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-30 11:24 - 2014-06-11 17:54 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-30 11:21 - 2014-06-11 17:54 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-05-30 11:21 - 2014-06-11 17:54 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-05-30 11:20 - 2014-06-11 17:54 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-05-30 11:18 - 2014-06-11 17:54 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-30 11:11 - 2014-06-11 17:54 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-05-30 11:09 - 2012-08-21 12:31 - 00000000 ____D () C:\Users\Dario\.gimp-2.8 2014-05-30 11:08 - 2014-06-11 17:54 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-30 11:06 - 2014-06-11 17:54 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-05-30 11:02 - 2014-06-11 17:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-30 11:02 - 2014-05-30 11:02 - 00013559 _____ () C:\Users\Dario\AppData\Local\recently-used.xbel 2014-05-30 10:55 - 2014-06-11 17:54 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-05-30 10:49 - 2014-06-11 17:54 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-30 10:46 - 2014-06-11 17:54 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-30 10:44 - 2014-06-11 17:54 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-05-30 10:44 - 2014-06-11 17:54 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-05-30 10:43 - 2014-06-11 17:54 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-05-30 10:42 - 2014-06-11 17:54 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-05-30 10:38 - 2014-06-11 17:54 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-05-30 10:35 - 2014-06-11 17:54 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-30 10:34 - 2014-06-11 17:54 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-05-30 10:33 - 2014-06-11 17:54 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-05-30 10:30 - 2014-06-11 17:54 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-05-30 10:29 - 2014-06-11 17:54 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-30 10:28 - 2014-06-11 17:54 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-05-30 10:27 - 2014-06-11 17:54 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-05-30 10:24 - 2014-06-11 17:54 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-05-30 10:23 - 2014-06-11 17:54 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-05-30 10:16 - 2014-06-11 17:54 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-05-30 10:10 - 2014-06-11 17:54 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-05-30 10:06 - 2014-06-11 17:54 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-05-30 10:04 - 2014-06-11 17:54 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-30 10:02 - 2014-06-11 17:54 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-05-30 09:56 - 2014-06-11 17:54 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-05-30 09:56 - 2014-06-11 17:54 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-30 09:54 - 2014-06-11 17:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-05-30 09:50 - 2014-06-11 17:54 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-05-30 09:49 - 2014-06-11 17:54 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-05-30 09:43 - 2014-06-11 17:54 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-30 09:40 - 2014-06-11 17:54 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-05-30 09:30 - 2014-06-11 17:54 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-30 09:21 - 2014-06-11 17:54 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-05-30 09:15 - 2014-06-11 17:54 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-05-30 09:13 - 2014-06-11 17:54 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-05-30 09:13 - 2014-06-11 17:54 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-05-29 20:40 - 2014-02-07 18:58 - 00000000 ____D () C:\Users\Dario\Desktop 2 2014-05-29 11:56 - 2011-06-22 12:45 - 00000000 ____D () C:\ProgramData\Temp 2014-05-29 11:54 - 2014-05-29 11:54 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flash Slideshow Maker Professional 2014-05-29 11:54 - 2014-05-29 11:54 - 00000000 ____D () C:\ProgramData\Socusoft 2014-05-29 11:54 - 2014-05-29 11:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flash Slideshow Maker Professional 2014-05-29 11:54 - 2014-05-29 11:53 - 00000000 ____D () C:\Program Files (x86)\Flash Slideshow Maker Professional 2014-05-27 20:07 - 2014-05-27 20:06 - 00000000 ____D () C:\Users\Dario\langpack-de-1.0.1-for-truecrypt-7.1a 2014-05-27 20:07 - 2014-05-08 21:07 - 00000000 ____D () C:\Program Files\TrueCrypt 2014-05-27 20:06 - 2014-05-27 20:06 - 00069183 _____ () C:\Users\Dario\langpack-de-1.0.1-for-truecrypt-7.1a.zip 2014-05-27 19:58 - 2014-05-27 19:58 - 10485760 _____ () C:\Users\Dario\Desktop 3\kik.trcy 2014-05-27 18:18 - 2014-05-19 16:57 - 00000000 ____D () C:\ProgramData\BlueStacks 2014-05-26 20:21 - 2014-05-26 20:21 - 00000000 ____D () C:\Windows\SysWOW64\NV 2014-05-26 20:21 - 2014-05-26 20:21 - 00000000 ____D () C:\Windows\system32\NV 2014-05-26 20:21 - 2011-06-22 12:39 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-05-25 17:14 - 2011-08-21 10:06 - 00000680 __RSH () C:\Users\Dario\ntuser.pol 2014-05-25 17:10 - 2014-04-09 10:59 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\gnupg 2014-05-25 17:09 - 2014-05-25 17:09 - 00000000 ____D () C:\Users\Dario\AppData\Roaming\.kde 2014-05-25 17:09 - 2014-05-25 17:09 - 00000000 ____D () C:\Users\Dario\AppData\Local\GNU 2014-05-25 17:05 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy 2014-05-25 17:04 - 2009-07-14 05:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy 2014-05-25 17:02 - 2014-05-25 17:02 - 00707354 _____ () C:\Windows\unins000.exe 2014-05-25 17:02 - 2014-05-25 17:02 - 00001506 _____ () C:\Windows\unins000.dat 2014-05-25 17:02 - 2014-05-25 16:58 - 00000000 ____D () C:\Windows\SysWOW64\GPBAK 2014-05-25 17:02 - 2013-06-27 19:42 - 00188712 _____ () C:\Users\Administrator\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-25 17:01 - 2013-02-10 07:17 - 00000680 __RSH () C:\Users\Administrator\ntuser.pol 2014-05-25 17:01 - 2013-02-10 07:16 - 00000000 ____D () C:\Users\Administrator 2014-05-25 09:05 - 2014-03-18 20:05 - 00011294 _____ () C:\Users\Dario\Passwoerter.kdbx 2014-05-24 17:54 - 2013-03-24 15:01 - 00001123 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk 2014-05-24 17:54 - 2013-03-24 15:01 - 00000000 ____D () C:\Program Files (x86)\KeePass Password Safe 2 2014-05-24 17:51 - 2011-12-08 21:37 - 00000000 ____D () C:\TEMP Files to move or delete: ==================== C:\Users\Dario\AppData\Roaming\CamData.ini C:\Users\Dario\AppData\Roaming\CamLayout.ini C:\Users\Dario\AppData\Roaming\CamShapes.ini C:\Users\Dario\AppData\Roaming\CamStudio.Producer.Data.ini Some content of TEMP: ==================== C:\Users\Dario\AppData\Local\Temp\FreemakeAudioConverter_1.1.0.59.exe C:\Users\Dario\AppData\Local\Temp\SkypeSetup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-08 16:13 ==================== End Of Log ============================ Gmer hängt sich beim Start auf (auch mit Admin) Kriegt man dieses Icon wieder weg? Gruss Baldoius |
21.06.2014, 08:33 | #2 |
/// the machine /// TB-Ausbilder | Windows 7 : Keine Netzwerkverbindung - Icon wird angezeigt, jedoch funzt Internet ohne Probleme Hi,
__________________Addition.txt fehlt. Also du kannst trotz der Anzeige ganz normal im Inet surfen?
__________________ |
21.06.2014, 08:55 | #3 |
Windows 7 : Keine Netzwerkverbindung - Icon wird angezeigt, jedoch funzt Internet ohne Probleme Hallo schrauber,
__________________Sorry, das Problem hat sich nach 10x neustarten erledigt. Frag mich nicht wie Ein schönes Wochenende dir, Gruss Baldoius |
21.06.2014, 22:05 | #4 |
/// the machine /// TB-Ausbilder | Windows 7 : Keine Netzwerkverbindung - Icon wird angezeigt, jedoch funzt Internet ohne Probleme ok
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Windows 7 : Keine Netzwerkverbindung - Icon wird angezeigt, jedoch funzt Internet ohne Probleme |
192.168.0.2, akamai, antivirus, bitcoin, bluestacks, browser, combofix, cyberghost, desktop, downloader, flash player, ftp, google, google analytics, home, homepage, hängt, internet, mozilla, problem, realtek, registry, scan, security, software, suchmaschine, svchost.exe, system, windows |