|
Plagegeister aller Art und deren Bekämpfung: Bluescreens (diverse), kritischer FehlerWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
23.06.2014, 13:57 | #1 |
| Bluescreens (diverse), kritischer Fehler Hallo, zunächst einmal möchte ich mich für dieses Board und eure Bemühungen bedanken. Obwohl ich mir gar nicht vorstellen kann, dass ich mir einen Virus/Trojaner eingefangen habe, bekomme ich seit Wochen Bluescreens und deswegen poste ich jetzt doch hier. Die Bluescreens waren eigentlich alle einmalig und danach lief der PC für Tage/Wochen, heute allerdings kamen nach dem Bluescreen diverse Stop-Fehler Bluescreens beim Laden von Windows und der PC startete erst nach dem Ausschalten des Netzteils wieder normal. Zudem hatte ich heute am 23.06.2014 noch einen merkwürdigen Fehler, es tauchte ein Fenster auf in dem (in etwa) stand: Kritischer Fehler Sie werden in einer Minute abgemeldet, sichern Sie jetzt ihre Daten. Memtest ergab keine Fehler beim Ram, chkdsk wurde ebenfalls durchgeführt. Microsoft Security Essentials und Spybot S&D lieferten keine Funde. Minidump (alle): ================================================== Dump File : 062314-16302-01.dmp Crash Time : 23.06.2014 11:40:09 Bug Check String : NTFS_FILE_SYSTEM Bug Check Code : 0x00000024 Parameter 1 : 00000000`001904fb Parameter 2 : fffff880`03d493b8 Parameter 3 : fffff880`03d48c10 Parameter 4 : fffff800`0343b768 Caused By Driver : Ntfs.sys Caused By Address : Ntfs.sys+4211 File Description : Product Name : Company : File Version : Processor : x64 Crash Address : ntoskrnl.exe+75bc0 Stack Address 1 : Stack Address 2 : Stack Address 3 : Computer Name : Full Path : C:\Windows\Minidump\062314-16302-01.dmp Processors Count : 4 Major Version : 15 Minor Version : 7601 Dump File Size : 268.624 Dump File Time : 23.06.2014 11:40:54 ================================================== ================================================== Dump File : 062314-17175-01.dmp Crash Time : 23.06.2014 09:35:27 Bug Check String : Bug Check Code : 0xc0000221 Parameter 1 : fffff8a0`002ed3c0 Parameter 2 : 00000000`00000000 Parameter 3 : 00000000`00000000 Parameter 4 : 00000000`00000000 Caused By Driver : ntoskrnl.exe Caused By Address : ntoskrnl.exe+75bc0 File Description : NT Kernel & System Product Name : Microsoft® Windows® Operating System Company : Microsoft Corporation File Version : 6.1.7601.18409 (win7sp1_gdr.140303-2144) Processor : x64 Crash Address : ntoskrnl.exe+75bc0 Stack Address 1 : Stack Address 2 : Stack Address 3 : Computer Name : Full Path : C:\Windows\Minidump\062314-17175-01.dmp Processors Count : 4 Major Version : 15 Minor Version : 7601 Dump File Size : 266.520 Dump File Time : 23.06.2014 09:54:53 ================================================== ================================================== Dump File : 060114-14664-01.dmp Crash Time : 01.06.2014 13:38:34 Bug Check String : IRQL_NOT_LESS_OR_EQUAL Bug Check Code : 0x0000000a Parameter 1 : fffffbeb`06922588 Parameter 2 : 00000000`00000002 Parameter 3 : 00000000`00000000 Parameter 4 : fffff800`0354e1db Caused By Driver : nvlddmkm.sys Caused By Address : nvlddmkm.sys+166765 File Description : Product Name : Company : File Version : Processor : x64 Crash Address : ntoskrnl.exe+75bc0 Stack Address 1 : Stack Address 2 : Stack Address 3 : Computer Name : Full Path : C:\Windows\Minidump\060114-14664-01.dmp Processors Count : 4 Major Version : 15 Minor Version : 7601 Dump File Size : 295.608 Dump File Time : 01.06.2014 13:39:21 ================================================== ================================================== Dump File : 051314-15459-01.dmp Crash Time : 13.05.2014 13:56:37 Bug Check String : SYSTEM_SERVICE_EXCEPTION Bug Check Code : 0x0000003b Parameter 1 : 00000000`c0000005 Parameter 2 : fffff960`00762eb6 Parameter 3 : fffff880`08ee90a0 Parameter 4 : 00000000`00000000 Caused By Driver : cdd.dll Caused By Address : cdd.dll+12eb6 File Description : Product Name : Company : File Version : Processor : x64 Crash Address : ntoskrnl.exe+75bc0 Stack Address 1 : Stack Address 2 : Stack Address 3 : Computer Name : Full Path : C:\Windows\Minidump\051314-15459-01.dmp Processors Count : 4 Major Version : 15 Minor Version : 7601 Dump File Size : 295.576 Dump File Time : 13.05.2014 13:57:25 ================================================== ================================================== Dump File : 050514-15381-01.dmp Crash Time : 05.05.2014 19:08:57 Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA Bug Check Code : 0x00000050 Parameter 1 : ffffefa0`0474c404 Parameter 2 : 00000000`00000000 Parameter 3 : fffff880`04167e2f Parameter 4 : 00000000`00000007 Caused By Driver : nvlddmkm.sys Caused By Address : nvlddmkm.sys+f6faf File Description : Product Name : Company : File Version : Processor : x64 Crash Address : ntoskrnl.exe+75bc0 Stack Address 1 : Stack Address 2 : Stack Address 3 : Computer Name : Full Path : C:\Windows\Minidump\050514-15381-01.dmp Processors Count : 4 Major Version : 15 Minor Version : 7601 Dump File Size : 295.576 Dump File Time : 05.05.2014 19:09:50 ================================================== ================================================== Dump File : 050214-20950-01.dmp Crash Time : 02.05.2014 12:57:05 Bug Check String : IRQL_NOT_LESS_OR_EQUAL Bug Check Code : 0x0000000a Parameter 1 : 00000000`00000040 Parameter 2 : 00000000`00000002 Parameter 3 : 00000000`00000001 Parameter 4 : fffff800`034da0d8 Caused By Driver : ntoskrnl.exe Caused By Address : ntoskrnl.exe+75bc0 File Description : NT Kernel & System Product Name : Microsoft® Windows® Operating System Company : Microsoft Corporation File Version : 6.1.7601.18409 (win7sp1_gdr.140303-2144) Processor : x64 Crash Address : ntoskrnl.exe+75bc0 Stack Address 1 : Stack Address 2 : Stack Address 3 : Computer Name : Full Path : C:\Windows\Minidump\050214-20950-01.dmp Processors Count : 4 Major Version : 15 Minor Version : 7601 Dump File Size : 335.824 Dump File Time : 02.05.2014 12:57:54 ================================================== ================================================== Dump File : 042514-18408-01.dmp Crash Time : 25.04.2014 20:10:23 Bug Check String : DRIVER_IRQL_NOT_LESS_OR_EQUAL Bug Check Code : 0x000000d1 Parameter 1 : fffffa80`51beaf68 Parameter 2 : 00000000`00000002 Parameter 3 : 00000000`00000000 Parameter 4 : fffff880`040f6624 Caused By Driver : afd.sys Caused By Address : afd.sys+50624 File Description : Product Name : Company : File Version : Processor : x64 Crash Address : ntoskrnl.exe+75bc0 Stack Address 1 : Stack Address 2 : Stack Address 3 : Computer Name : Full Path : C:\Windows\Minidump\042514-18408-01.dmp Processors Count : 4 Major Version : 15 Minor Version : 7601 Dump File Size : 295.552 Dump File Time : 25.04.2014 20:11:14 ================================================== FRST: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-06-2014 Ran by Terminal (administrator) on TERMINAL-PC on 23-06-2014 14:51:52 Running from C:\Users\Terminal\Desktop Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Ralink Technology, Corp.) C:\Program Files (x86)\Hama\Common\RaRegistry.exe (Ralink Technology, Corp.) C:\Program Files (x86)\Hama\Common\RaRegistry64.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe () C:\Program Files (x86)\Drakonia Configurator\hid.exe (Ralink Technology, Corp.) C:\Program Files (x86)\Hama\Common\RaUI.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Program Files (x86)\Drakonia Configurator\trayicon.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\System32\taskmgr.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (NirSoft) C:\Program Files (x86)\NirSoft\BlueScreenView\BlueScreenView.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11860072 2011-06-09] (Realtek Semiconductor) HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1271072 2014-03-11] (Microsoft Corporation) HKLM\...\Run: [Nvtmru] => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation) HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD) HKLM-x32\...\Run: [GamingMouse] => C:\Program Files (x86)\Drakonia Configurator\hid.exe [246784 2012-06-07] () Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-1136791980-4218168238-1545556690-1001\...\Run: [SpybotSD TeaTimer] => C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480 2009-03-05] (Safer-Networking Ltd.) HKU\S-1-5-21-1136791980-4218168238-1545556690-1001\...\MountPoints2: {1bfa8ac3-a4ce-11e1-86cb-bc5ff40d09e9} - E:\pushinst.exe HKU\S-1-5-21-1136791980-4218168238-1545556690-1001\...\MountPoints2: {1bfa8b12-a4ce-11e1-86cb-bc5ff40d09e9} - E:\LaunchU3.exe -a AppInit_DLLs: C:\PROGRA~1\LUCIDL~1\VIRTU\APPINI~1.DLL => C:\Program Files\Lucidlogix Technologies\VIRTU\appinit_dll.dll [188704 2011-08-08] (Lucidlogix Inc.) AppInit_DLLs: ,C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [166568 2014-05-20] (NVIDIA Corporation) AppInit_DLLs-x32: C:\PROGRA~1\LUCIDL~1\VIRTU\x86\APPINI~1.DLL => C:\Program Files\Lucidlogix Technologies\VIRTU\x86\appinit_dll.dll [158496 2011-08-08] (Lucidlogix Inc.) AppInit_DLLs-x32: ,C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [146480 2014-05-20] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Hama Wireless LAN Utility.lnk ShortcutTarget: Hama Wireless LAN Utility.lnk -> C:\Program Files (x86)\Hama\Common\RaUI.exe (Ralink Technology, Corp.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x39EE9F8A8145CD01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Terminal\AppData\Roaming\Mozilla\Firefox\Profiles\invrc92o.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @idsoftware.com/QuakeLive - C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: WOT - C:\Users\Terminal\AppData\Roaming\Mozilla\Firefox\Profiles\invrc92o.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2013-11-27] FF Extension: NoScript - C:\Users\Terminal\AppData\Roaming\Mozilla\Firefox\Profiles\invrc92o.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2012-05-23] ==================== Services (Whitelisted) ================= R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2014-03-11] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [347872 2014-03-11] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2013-11-20] () R2 RalinkRegistryWriter; C:\Program Files (x86)\Hama\Common\RaRegistry.exe [193888 2010-06-01] (Ralink Technology, Corp.) R2 RalinkRegistryWriter64; C:\Program Files (x86)\Hama\Common\RaRegistry64.exe [211296 2010-06-01] (Ralink Technology, Corp.) S3 DAUpdaterSvc; C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [X] ==================== Drivers (Whitelisted) ==================== S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-22] (AVM Berlin) S3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [460800 2010-10-22] (AVM GmbH) R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [31648 2014-06-20] (REALiX(tm)) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [268512 2014-01-25] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133928 2014-03-11] (Microsoft Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13480 2014-05-19] () S3 ALSysIO; \??\C:\Users\Terminal\AppData\Local\Temp\ALSysIO64.sys [X] S3 MSICDSetup; \??\D:\CDriver64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-23 14:51 - 2014-06-23 14:52 - 00011212 _____ () C:\Users\Terminal\Desktop\FRST.txt 2014-06-23 14:51 - 2014-06-23 14:51 - 02082816 _____ (Farbar) C:\Users\Terminal\Desktop\FRST64.exe 2014-06-23 14:51 - 2014-06-23 14:51 - 00000000 ____D () C:\FRST 2014-06-23 14:45 - 2014-06-23 14:45 - 00013524 _____ () C:\Users\Terminal\Desktop\Test.txt 2014-06-23 14:18 - 2014-06-23 14:18 - 00003150 _____ () C:\Windows\System32\Tasks\{F82F9C51-17F6-402D-9119-A493A4296448} 2014-06-23 14:17 - 2014-06-23 14:17 - 00388608 _____ (Trend Micro Inc.) C:\Users\Terminal\Desktop\HiJackThis204.exe 2014-06-23 12:03 - 2014-06-23 12:03 - 00003352 ____N () C:\bootsqm.dat 2014-06-23 11:40 - 2014-06-23 11:40 - 00268624 _____ () C:\Windows\Minidump\062314-16302-01.dmp 2014-06-23 10:59 - 2010-10-22 02:00 - 00480632 ____N (AVM Berlin) C:\Windows\instwcli.dex 2014-06-23 10:57 - 2014-06-23 10:57 - 00000016 _____ () C:\Users\Terminal\Desktop\Sonstiges Wichtig.txt 2014-06-23 10:41 - 2014-06-23 10:43 - 00005642 _____ () C:\Users\Terminal\Desktop\NTDLL.txt 2014-06-23 10:13 - 2014-06-23 10:17 - 03889354 _____ () C:\Users\Terminal\Desktop\HWINFO.bmp 2014-06-23 09:54 - 2014-06-23 09:54 - 00266520 _____ () C:\Windows\Minidump\062314-17175-01.dmp 2014-06-21 15:49 - 2014-05-30 01:07 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-06-21 15:49 - 2014-05-30 01:07 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-06-21 01:59 - 2014-06-21 01:59 - 00000000 ____D () C:\Users\Terminal\Documents\TecmoKoei 2014-06-20 00:26 - 2014-06-20 00:27 - 00013707 _____ () C:\Users\Terminal\Desktop\Wishlist.txt 2014-06-18 16:37 - 2014-06-18 16:52 - 00000313 _____ () C:\Users\Terminal\Desktop\Neues Textdokument.txt 2014-06-18 16:35 - 2014-06-18 16:35 - 04214754 _____ () C:\Users\Terminal\Desktop\Figuarts VERFUEGBAR UPDATE.bmp 2014-06-18 10:36 - 2014-06-18 10:37 - 00000014 _____ () C:\Users\Terminal\Desktop\Steamnotizen.txt 2014-06-16 13:14 - 2014-06-21 10:15 - 00000000 ____D () C:\Users\Terminal\Desktop\Figuarts Backup 2014-06-16 00:45 - 2014-06-16 01:07 - 16421814 _____ () C:\Users\Terminal\Desktop\Figuarts Wichtigste.bmp 2014-06-13 19:31 - 2014-06-19 18:25 - 08868494 _____ () C:\Users\Terminal\Desktop\Figuarts EU PRICE.bmp 2014-06-13 13:12 - 2014-06-13 13:12 - 00000000 ____D () C:\Users\Terminal\AppData\Roaming\11bitstudios 2014-06-12 08:03 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-06-12 08:03 - 2014-05-30 12:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-06-12 08:03 - 2014-05-30 12:02 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-06-12 08:03 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-06-12 08:03 - 2014-05-30 11:39 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-06-12 08:03 - 2014-05-30 11:39 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-06-12 08:03 - 2014-05-30 11:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-06-12 08:03 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-06-12 08:03 - 2014-05-30 11:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-06-12 08:03 - 2014-05-30 11:24 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-06-12 08:03 - 2014-05-30 11:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-06-12 08:03 - 2014-05-30 11:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-06-12 08:03 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-06-12 08:03 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-06-12 08:03 - 2014-05-30 11:11 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-06-12 08:03 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-06-12 08:03 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-06-12 08:03 - 2014-05-30 11:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-06-12 08:03 - 2014-05-30 10:55 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-06-12 08:03 - 2014-05-30 10:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-06-12 08:03 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-06-12 08:03 - 2014-05-30 10:44 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-06-12 08:03 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-06-12 08:03 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-06-12 08:03 - 2014-05-30 10:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-06-12 08:03 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-06-12 08:03 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-06-12 08:03 - 2014-05-30 10:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-06-12 08:03 - 2014-05-30 10:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-06-12 08:03 - 2014-05-30 10:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-06-12 08:03 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-06-12 08:03 - 2014-05-30 10:28 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-06-12 08:03 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-06-12 08:03 - 2014-05-30 10:24 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-06-12 08:03 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-06-12 08:03 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-06-12 08:03 - 2014-05-30 10:10 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-06-12 08:03 - 2014-05-30 10:06 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-06-12 08:03 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-06-12 08:03 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-06-12 08:03 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-06-12 08:03 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-06-12 08:03 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-06-12 08:03 - 2014-05-30 09:50 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-06-12 08:03 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-06-12 08:03 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-06-12 08:03 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-06-12 08:03 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-06-12 08:03 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-06-12 08:03 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-06-12 08:03 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-06-12 08:03 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-06-12 08:03 - 2014-05-08 11:32 - 03178496 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-06-12 08:03 - 2014-05-08 11:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2014-06-12 08:03 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-06-12 08:03 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-06-12 08:03 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-06-12 08:03 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-06-12 08:03 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-06-12 08:03 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-06-12 08:03 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-06-12 08:03 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-06-12 08:03 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-06-12 08:03 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-06-12 08:03 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-06-12 08:03 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-06-12 08:02 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-12 08:02 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-11 01:30 - 2014-06-11 01:30 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-06-05 23:58 - 2014-06-18 16:36 - 00000000 ____D () C:\Users\Terminal\Desktop\OP Figuarts 2014-06-01 13:39 - 2014-06-01 13:39 - 00295608 _____ () C:\Windows\Minidump\060114-14664-01.dmp 2014-05-28 18:37 - 2014-05-29 13:32 - 00002166 _____ () C:\Users\Terminal\Desktop\watch_dogs - Verknüpfung.lnk 2014-05-27 12:34 - 2014-05-20 01:10 - 00601432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-05-27 12:31 - 2014-05-20 04:44 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-05-27 12:31 - 2014-05-20 04:44 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 00492376 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 00416712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 00382240 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 00335704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-05-27 12:31 - 2014-05-20 04:44 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-05-27 12:25 - 2014-06-21 17:14 - 00000000 ____D () C:\Program Files (x86)\RivaTuner Statistics Server 2014-05-27 09:08 - 2014-05-27 09:08 - 00001692 _____ () C:\Users\Terminal\Desktop\Uplay - Verknüpfung.lnk 2014-05-24 15:19 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-05-24 15:19 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll ==================== One Month Modified Files and Folders ======= 2014-06-23 14:52 - 2014-06-23 14:51 - 00011212 _____ () C:\Users\Terminal\Desktop\FRST.txt 2014-06-23 14:51 - 2014-06-23 14:51 - 02082816 _____ (Farbar) C:\Users\Terminal\Desktop\FRST64.exe 2014-06-23 14:51 - 2014-06-23 14:51 - 00000000 ____D () C:\FRST 2014-06-23 14:45 - 2014-06-23 14:45 - 00013524 _____ () C:\Users\Terminal\Desktop\Test.txt 2014-06-23 14:42 - 2012-06-14 23:24 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-23 14:33 - 2012-06-03 10:05 - 00000000 ____D () C:\Users\Terminal\Desktop\Wichtige Dokumente 2014-06-23 14:18 - 2014-06-23 14:18 - 00003150 _____ () C:\Windows\System32\Tasks\{F82F9C51-17F6-402D-9119-A493A4296448} 2014-06-23 14:17 - 2014-06-23 14:17 - 00388608 _____ (Trend Micro Inc.) C:\Users\Terminal\Desktop\HiJackThis204.exe 2014-06-23 14:17 - 2012-05-23 13:59 - 00000000 ____D () C:\Users\Terminal\AppData\Local\VirtualStore 2014-06-23 14:15 - 2012-05-22 12:46 - 01407085 _____ () C:\Windows\WindowsUpdate.log 2014-06-23 13:49 - 2009-07-14 06:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-23 13:49 - 2009-07-14 06:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-23 13:46 - 2011-04-12 09:43 - 00699416 _____ () C:\Windows\system32\perfh007.dat 2014-06-23 13:46 - 2011-04-12 09:43 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-06-23 13:46 - 2009-07-14 07:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-06-23 13:42 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-23 13:42 - 2009-07-14 06:51 - 03642481 _____ () C:\Windows\setupact.log 2014-06-23 13:41 - 2012-05-22 12:59 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-06-23 13:33 - 2012-05-25 17:23 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-06-23 12:03 - 2014-06-23 12:03 - 00003352 ____N () C:\bootsqm.dat 2014-06-23 11:55 - 2012-06-09 17:49 - 00000000 ____D () C:\Users\Terminal\Desktop\DLG 2014-06-23 11:40 - 2014-06-23 11:40 - 00268624 _____ () C:\Windows\Minidump\062314-16302-01.dmp 2014-06-23 11:40 - 2014-04-25 20:11 - 201398616 _____ () C:\Windows\MEMORY.DMP 2014-06-23 11:40 - 2014-04-25 20:11 - 00000000 ____D () C:\Windows\Minidump 2014-06-23 11:20 - 2012-06-03 17:51 - 00000000 ____D () C:\Users\Terminal\Desktop\FLAC Auswahl 2014-06-23 10:59 - 2012-05-23 14:11 - 00035363 _____ () C:\Windows\AVMInstall.Log 2014-06-23 10:57 - 2014-06-23 10:57 - 00000016 _____ () C:\Users\Terminal\Desktop\Sonstiges Wichtig.txt 2014-06-23 10:43 - 2014-06-23 10:41 - 00005642 _____ () C:\Users\Terminal\Desktop\NTDLL.txt 2014-06-23 10:17 - 2014-06-23 10:13 - 03889354 _____ () C:\Users\Terminal\Desktop\HWINFO.bmp 2014-06-23 10:07 - 2013-06-15 16:28 - 00000000 ____D () C:\ProgramData\Ralink 2014-06-23 09:54 - 2014-06-23 09:54 - 00266520 _____ () C:\Windows\Minidump\062314-17175-01.dmp 2014-06-22 10:17 - 2012-06-03 10:05 - 00008612 _____ () C:\Users\Terminal\Desktop\Finanzen 2012.txt 2014-06-21 17:14 - 2014-05-27 12:25 - 00000000 ____D () C:\Program Files (x86)\RivaTuner Statistics Server 2014-06-21 15:49 - 2012-05-22 12:57 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-06-21 10:15 - 2014-06-16 13:14 - 00000000 ____D () C:\Users\Terminal\Desktop\Figuarts Backup 2014-06-21 10:14 - 2012-06-03 11:00 - 00000000 ____D () C:\Users\Terminal\Desktop\Installationsdateien 2014-06-21 01:59 - 2014-06-21 01:59 - 00000000 ____D () C:\Users\Terminal\Documents\TecmoKoei 2014-06-20 19:58 - 2013-06-19 17:28 - 00000000 ____D () C:\Users\Terminal\AppData\Roaming\StealthBastard[Steam] 2014-06-20 14:52 - 2012-05-07 13:03 - 01014411 _____ () C:\Windows\DirectX.log 2014-06-20 14:43 - 2013-11-10 10:33 - 00031648 _____ (REALiX(tm)) C:\Windows\system32\Drivers\HWiNFO64A.SYS 2014-06-20 14:42 - 2013-11-10 10:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWiNFO64 2014-06-20 14:42 - 2013-11-10 10:33 - 00000000 ____D () C:\Program Files\HWiNFO64 2014-06-20 00:27 - 2014-06-20 00:26 - 00013707 _____ () C:\Users\Terminal\Desktop\Wishlist.txt 2014-06-19 18:25 - 2014-06-13 19:31 - 08868494 _____ () C:\Users\Terminal\Desktop\Figuarts EU PRICE.bmp 2014-06-18 16:52 - 2014-06-18 16:37 - 00000313 _____ () C:\Users\Terminal\Desktop\Neues Textdokument.txt 2014-06-18 16:36 - 2014-06-05 23:58 - 00000000 ____D () C:\Users\Terminal\Desktop\OP Figuarts 2014-06-18 16:35 - 2014-06-18 16:35 - 04214754 _____ () C:\Users\Terminal\Desktop\Figuarts VERFUEGBAR UPDATE.bmp 2014-06-18 12:27 - 2014-03-14 19:47 - 00001296 _____ () C:\Users\Terminal\Desktop\Rezensionen.txt 2014-06-18 10:37 - 2014-06-18 10:36 - 00000014 _____ () C:\Users\Terminal\Desktop\Steamnotizen.txt 2014-06-16 01:07 - 2014-06-16 00:45 - 16421814 _____ () C:\Users\Terminal\Desktop\Figuarts Wichtigste.bmp 2014-06-15 09:44 - 2012-06-05 15:00 - 00000000 ____D () C:\Users\Terminal\AppData\Roaming\foobar2000 2014-06-13 13:12 - 2014-06-13 13:12 - 00000000 ____D () C:\Users\Terminal\AppData\Roaming\11bitstudios 2014-06-13 09:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-06-12 10:04 - 2013-07-22 21:28 - 00000000 ____D () C:\Windows\system32\MRT 2014-06-12 10:03 - 2012-05-07 13:36 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-06-12 10:01 - 2014-04-30 19:51 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-06-12 09:14 - 2014-04-01 15:27 - 00000231 _____ () C:\Users\Terminal\Desktop\Neues Textdokument (2).txt 2014-06-11 11:14 - 2012-06-07 14:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-06-11 01:30 - 2014-06-11 01:30 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-06-09 15:53 - 2009-07-14 07:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-06-08 11:13 - 2014-06-12 08:02 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-08 11:08 - 2014-06-12 08:02 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-03 01:13 - 2012-08-02 08:02 - 00000000 ____D () C:\Users\Terminal\AppData\Roaming\vlc 2014-06-01 13:39 - 2014-06-01 13:39 - 00295608 _____ () C:\Windows\Minidump\060114-14664-01.dmp 2014-05-30 12:21 - 2014-06-12 08:03 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-30 12:02 - 2014-06-12 08:03 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-30 12:02 - 2014-06-12 08:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-05-30 11:45 - 2014-06-12 08:03 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-30 11:39 - 2014-06-12 08:03 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-05-30 11:39 - 2014-06-12 08:03 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-30 11:38 - 2014-06-12 08:03 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-05-30 11:28 - 2014-06-12 08:03 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-30 11:27 - 2014-06-12 08:03 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-30 11:24 - 2014-06-12 08:03 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-30 11:21 - 2014-06-12 08:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-05-30 11:21 - 2014-06-12 08:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-05-30 11:20 - 2014-06-12 08:03 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-05-30 11:18 - 2014-06-12 08:03 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-30 11:11 - 2014-06-12 08:03 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-05-30 11:08 - 2014-06-12 08:03 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-30 11:06 - 2014-06-12 08:03 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-05-30 11:02 - 2014-06-12 08:03 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-30 10:55 - 2014-06-12 08:03 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-05-30 10:49 - 2014-06-12 08:03 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-30 10:46 - 2014-06-12 08:03 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-30 10:44 - 2014-06-12 08:03 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-05-30 10:44 - 2014-06-12 08:03 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-05-30 10:43 - 2014-06-12 08:03 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-05-30 10:42 - 2014-06-12 08:03 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-05-30 10:38 - 2014-06-12 08:03 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-05-30 10:35 - 2014-06-12 08:03 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-30 10:34 - 2014-06-12 08:03 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-05-30 10:33 - 2014-06-12 08:03 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-05-30 10:30 - 2014-06-12 08:03 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-05-30 10:29 - 2014-06-12 08:03 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-30 10:28 - 2014-06-12 08:03 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-05-30 10:27 - 2014-06-12 08:03 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-05-30 10:24 - 2014-06-12 08:03 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-05-30 10:23 - 2014-06-12 08:03 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-05-30 10:16 - 2014-06-12 08:03 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-05-30 10:10 - 2014-06-12 08:03 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-05-30 10:06 - 2014-06-12 08:03 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-05-30 10:04 - 2014-06-12 08:03 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-30 10:02 - 2014-06-12 08:03 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-05-30 09:56 - 2014-06-12 08:03 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-05-30 09:56 - 2014-06-12 08:03 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-30 09:54 - 2014-06-12 08:03 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-05-30 09:50 - 2014-06-12 08:03 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-05-30 09:49 - 2014-06-12 08:03 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-05-30 09:43 - 2014-06-12 08:03 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-30 09:40 - 2014-06-12 08:03 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-05-30 09:30 - 2014-06-12 08:03 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-30 09:21 - 2014-06-12 08:03 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-05-30 09:15 - 2014-06-12 08:03 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-05-30 09:13 - 2014-06-12 08:03 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-05-30 09:13 - 2014-06-12 08:03 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-05-30 01:07 - 2014-06-21 15:49 - 01715176 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-05-30 01:07 - 2014-06-21 15:49 - 01291232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-05-30 01:07 - 2013-11-05 15:55 - 01279480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-05-30 01:07 - 2013-11-05 15:55 - 01122312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-05-29 13:32 - 2014-05-28 18:37 - 00002166 _____ () C:\Users\Terminal\Desktop\watch_dogs - Verknüpfung.lnk 2014-05-29 00:20 - 2012-05-23 14:44 - 00000000 ____D () C:\Program Files (x86)\MSI Afterburner 2014-05-28 09:50 - 2013-11-08 16:56 - 00000000 ____D () C:\Users\Terminal\Desktop\ShadowPower 2014-05-27 12:42 - 2013-11-20 10:29 - 00001351 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-05-27 12:34 - 2013-11-05 15:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-05-27 12:34 - 2012-05-22 12:59 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-05-27 12:25 - 2012-05-23 14:44 - 00001090 _____ () C:\Users\Terminal\Desktop\MSI Afterburner.lnk 2014-05-27 12:25 - 2012-05-23 14:44 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-05-27 12:25 - 2012-05-23 14:44 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-05-27 11:46 - 2012-07-15 16:18 - 00000000 ____D () C:\Users\Terminal\Documents\My Games 2014-05-27 11:45 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-05-27 09:08 - 2014-05-27 09:08 - 00001692 _____ () C:\Users\Terminal\Desktop\Uplay - Verknüpfung.lnk ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-18 10:58 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-06-2014 Ran by Terminal at 2014-06-23 14:52:17 Running from C:\Users\Terminal\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F} AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} ==================== Installed Programs ====================== Activision(R) (x32 Version: 1.00.0000 - Activision) Hidden Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) Alan Wake (HKLM-x32\...\Steam App 108710) (Version: - Remedy Entertainment) Alan Wake's American Nightmare (HKLM-x32\...\Steam App 202750) (Version: - Remedy Entertainment) Alice: Madness Returns (HKLM-x32\...\Steam App 19680) (Version: - Spicy Horse Games) Angry Video Game Nerd Adventures (HKLM-x32\...\Steam App 237740) (Version: - FreakZone Games) Anodyne (HKLM-x32\...\Steam App 234900) (Version: - Sean Hogan and Jonathan Kittaka) Anomaly 2 (HKLM-x32\...\Steam App 236730) (Version: - 11 bit studios) Anomaly Warzone Earth (HKLM-x32\...\Steam App 91200) (Version: - 11 bit studios) Antichamber (HKLM\...\UDK-eca67e5f-6ae4-40f9-989f-a616082f1da6) (Version: - Epic Games, Inc.) Antichamber (HKLM-x32\...\Steam App 219890) (Version: - Alexander Bruce) ASRock App Charger v1.0.4 (HKLM\...\ASRock App Charger_is1) (Version: - ASRock Inc.) Assassins Creed IV Black Flag Deluxe Edition (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft) Assassin's Creed(R) III v1.06 (HKLM-x32\...\{9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF}) (Version: 1.06 - Ubisoft) Bad Hotel (HKLM-x32\...\Steam App 231720) (Version: - Lucky Frame) Bastion (HKLM-x32\...\Steam App 107100) (Version: - Supergiant Games) Batman: Arkham Asylum GOTY Edition (HKLM-x32\...\Steam App 35140) (Version: - Rocksteady Studios) Batman: Arkham City GOTY (HKLM-x32\...\Steam App 200260) (Version: - Rocksteady Studios) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.2.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Bing Bar (HKLM-x32\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation) BioShock 2 (HKLM-x32\...\Steam App 8850) (Version: - 2K Games) BioShock 2 (x32 Version: 1.0.0005.131 - Take-Two Interactive Software) Hidden BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version: - Irrational Games) BIT.TRIP Presents... Runner2: Future Legend of Rhythm Alien (HKLM-x32\...\Steam App 218060) (Version: - ) BIT.TRIP RUNNER (HKLM-x32\...\Steam App 63710) (Version: - Gaijin Games) Bleed (HKLM-x32\...\Steam App 239800) (Version: - Ian Campbell) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) Braid (HKLM-x32\...\Steam App 26800) (Version: - Number None, Inc.) Brothers - A Tale of Two Sons (HKLM-x32\...\Steam App 225080) (Version: - Starbreeze Studios AB) Brütal Legend (HKLM-x32\...\Steam App 225260) (Version: - ) Call of Duty: Black Ops II - Multiplayer (HKLM-x32\...\Steam App 202990) (Version: - ) Call of Duty: Black Ops II - Zombies (HKLM-x32\...\Steam App 212910) (Version: - ) Call of Duty: Black Ops II (HKLM-x32\...\Steam App 202970) (Version: - ) Call of Juarez Gunslinger (HKLM-x32\...\Steam App 204450) (Version: - ) Castle Crashers (HKLM-x32\...\Steam App 204360) (Version: - ) Castle of Illusion (HKLM-x32\...\Steam App 227600) (Version: - ) CastleStorm (HKLM-x32\...\Steam App 241410) (Version: - Zen Studios) Castlevania: Lords of Shadow – Mirror of Fate HD (HKLM-x32\...\Steam App 282530) (Version: - MercurySteam) Castlevania: Lords of Shadow - Ultimate Edition (HKLM-x32\...\Steam App 234080) (Version: - MercurySteam - Climax Studios) Castlevania: Lords of Shadow 2 (HKLM-x32\...\Steam App 239250) (Version: - MercurySteam) Cave Story+ (HKLM-x32\...\Steam App 200900) (Version: - ) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Contrast (HKLM-x32\...\Steam App 224460) (Version: - Compulsion Games) Core Temp 1.0 RC3 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.0 - Alcpu) Costume Quest (HKLM-x32\...\Steam App 115100) (Version: - ) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version: - ) DARK SOULS™ II (HKLM-x32\...\Steam App 236430) (Version: - FromSoftware, Inc) Darksiders II (HKLM-x32\...\Steam App 50650) (Version: - ) Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland) Dead Space (HKLM-x32\...\Steam App 17470) (Version: - EA Redwood Shores) Deadlight (HKLM-x32\...\Steam App 211400) (Version: - Tequila Works, S.L.) Deadpool (HKLM-x32\...\Steam App 224060) (Version: - High Moon Studios) Deus Ex: Human Revolution (HKLM-x32\...\Steam App 28050) (Version: - Eidos Montreal) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Dishonored (HKLM-x32\...\Steam App 205100) (Version: 1.0 - Bethesda Softworks) Don't Starve (HKLM-x32\...\Steam App 219740) (Version: - Klei Entertainment) Drakonia Configurator (HKLM-x32\...\{A7B243AA-6D4C-4575-A873-6F01A1EFC5E2}}_is1) (Version: - ) Dual-Core Optimizer (HKLM-x32\...\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD) DuckTales Remastered (HKLM-x32\...\Steam App 237630) (Version: - Wayforward) Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - ) Dust: An Elysian Tail (HKLM-x32\...\Steam App 236090) (Version: - Humble Hearts LLC) Dustforce (HKLM-x32\...\Steam App 65300) (Version: - Hitbox Team) DYNASTY WARRIORS 8: Xtreme Legends Complete Edition (HKLM-x32\...\Steam App 278080) (Version: - TECMO KOEI GAMES CO., LTD.) ENSLAVED™: Odyssey to the West™ Premium Edition (HKLM-x32\...\Steam App 245280) (Version: - Ninja Theory) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Etron USB3.0 Host Controller (x32 Version: 0.104 - Etron Technology) Hidden Europa Universalis III (HKLM-x32\...\Steam App 25800) (Version: - Paradox Development Studio) Faerie Solitaire (HKLM-x32\...\Steam App 38600) (Version: - Subsoap) Fairy Bloom Freesia (HKLM-x32\...\Steam App 214590) (Version: - Edelweiss) Far Cry 3 (HKLM-x32\...\{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}) (Version: 1.05 - Ubisoft) foobar2000 v1.1.12a (HKLM-x32\...\foobar2000) (Version: 1.1.12a - Peter Pawlowski) Fortix 2 (HKLM-x32\...\Steam App 45450) (Version: - Nemesys Games) Fractal: Make Blooms Not War (HKLM-x32\...\Steam App 61310) (Version: - Cipher Prime Studios) From Dust (HKLM-x32\...\Steam App 33460) (Version: - ) FTL: Faster Than Light (HKLM-x32\...\Steam App 212680) (Version: - Subset Games) Ghostbusters (TM): The Video Game (HKLM-x32\...\InstallShield_{3A1B1652-D70A-4D19-981E-BB15D0DBF253}) (Version: 1.00.0000 - Atari) Ghostbusters (TM): The Video Game (x32 Version: 1.00.0000 - Atari) Hidden Go Home Dinosaurs! (HKLM-x32\...\Steam App 216090) (Version: - Fire Hose Games) Gone Home (HKLM-x32\...\Steam App 232430) (Version: - The Fullbright Company) Grand Theft Auto IV (HKLM-x32\...\{579BA58C-F33D-4970-9953-B94B43768AC3}) (Version: 1.00.0000 - Rockstar Games) Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden GRID 2 (HKLM-x32\...\Steam App 44350) (Version: - Codemasters Racing) Guacamelee! Gold Edition (HKLM-x32\...\Steam App 214770) (Version: - DrinkBox Studios) Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) Gunpoint (HKLM-x32\...\Steam App 206190) (Version: - Suspicious Developments) Hama Wireless LAN Adapter (HKLM-x32\...\{28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D}) (Version: 10.6.0 - Hama) Hell Yeah! (HKLM-x32\...\Steam App 205230) (Version: - ) Hero Academy (HKLM-x32\...\Steam App 209270) (Version: - Robot Entertainment) Hitman: Absolution (HKLM-x32\...\Steam App 203140) (Version: - ) Hitman: Sniper Challenge (HKLM-x32\...\Steam App 205930) (Version: - IO Interactive) Hotline Miami (HKLM-x32\...\Steam App 219150) (Version: - Dennaton Games) HWiNFO64 Version 4.40 (HKLM\...\HWiNFO64_is1) (Version: 4.40 - Martin Malík - REALiX) Injustice: Gods Among Us Ultimate Edition (HKLM-x32\...\Steam App 242700) (Version: - NetherRealm Studios) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation) Ittle Dew (HKLM-x32\...\Steam App 241320) (Version: - Ludosity) Joe Danger (HKLM-x32\...\Steam App 229890) (Version: - Hello Games) Joe Danger 2: The Movie (HKLM-x32\...\Steam App 242110) (Version: - Hello Games) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Just Cause 2 (HKLM-x32\...\Steam App 8190) (Version: - Avalanche Studios) Killing Floor (HKLM-x32\...\Steam App 1250) (Version: - Tripwire Interactive) Lara Croft and the Guardian of Light (HKLM-x32\...\Steam App 35130) (Version: - Crystal Dynamics) Left 4 Dead (HKLM-x32\...\Steam App 500) (Version: - Valve) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Legend of Grimrock (HKLM-x32\...\Steam App 207170) (Version: - Almost Human Games) Lego Harry Potter (HKLM-x32\...\Steam App 21130) (Version: - ) LEGO Lord of the Rings (HKLM-x32\...\Steam App 214510) (Version: - Traveller's Tales) LIMBO (HKLM-x32\...\Steam App 48000) (Version: - ) Lone Survivor (HKLM-x32\...\Steam App 209830) (Version: - ) Mafia II (HKLM-x32\...\Steam App 50130) (Version: - 2K Czech) Mark of the Ninja (HKLM-x32\...\Steam App 214560) (Version: - ) Marlow Briggs (HKLM-x32\...\Steam App 249680) (Version: - Zootfly) Max Payne 3 (HKLM-x32\...\{1AA94747-3BF6-4237-9E1A-7B3067738FE1}) (Version: 1.0.0.0 - Rockstar Games) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Antimalware Service DE-DE Language Pack (Version: 3.0.8107.0 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Security Client (Version: 4.5.0216.0 - Microsoft Corporation) Hidden Microsoft Security Client DE-DE Language Pack (Version: 2.0.0719.0 - Microsoft Corporation) Hidden Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.5.216.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Monaco (HKLM-x32\...\Steam App 113020) (Version: - Pocketwatch Games) Mortal Kombat Komplete Edition (HKLM-x32\...\Steam App 237110) (Version: - NetherRealm Studios) Mozilla Firefox 30.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 de)) (Version: 30.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) MSI Afterburner 3.0.0 (HKLM-x32\...\Afterburner) (Version: 3.0.0 - MSI Co., LTD) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MyMDb 3.6 (HKLM-x32\...\MyMDb_0) (Version: - ) NARUTO SHIPPUDEN: Ultimate Ninja STORM 3 Full Burst (HKLM-x32\...\Steam App 234670) (Version: - CyberConnect 2) Need for Speed: Hot Pursuit (HKLM-x32\...\Steam App 47870) (Version: - Electronic Arts) NirSoft BlueScreenView (HKLM-x32\...\NirSoft BlueScreenView) (Version: - ) NVIDIA 3D Vision Controller Driver (x32 Version: 280.19 - NVIDIA Corporation) Hidden NVIDIA 3D Vision Controller-Treiber 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 337.88 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 337.88 - NVIDIA Corporation) NVIDIA GeForce Experience 2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 337.88 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA ShadowPlay 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 337.88 (Version: 337.88 - NVIDIA Corporation) Hidden NVIDIA Update 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden Offspring Fling! (HKLM-x32\...\Steam App 211360) (Version: - Kyle Pulver) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Orcs Must Die! (HKLM-x32\...\Steam App 102600) (Version: - ) Orcs Must Die! 2 (HKLM-x32\...\Steam App 201790) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.1.3.2636 - Electronic Arts, Inc.) PixelJunk™ Monsters Ultimate (HKLM-x32\...\Steam App 243780) (Version: - ) PixelJunk™ Shooter (HKLM-x32\...\Steam App 255870) (Version: - ) PlanetSide 2 (HKLM-x32\...\Steam App 218230) (Version: - Sony Online Entertainment) Plants vs. Zombies: Game of the Year (HKLM-x32\...\Steam App 3590) (Version: - PopCap Games, Inc.) Portal (HKLM-x32\...\Steam App 400) (Version: - Valve) Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve) Prime World: Defenders (HKLM-x32\...\Steam App 235360) (Version: - ) Proteus (HKLM-x32\...\Steam App 219680) (Version: - ) Prototype(TM) (HKLM-x32\...\InstallShield_{9322A850-9091-4D0E-B252-3E82EDA3D94A}) (Version: 1.0 - Activision) Prototype(TM) (x32 Version: 1.0 - Activision) Hidden PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Quake Live Mozilla Plugin (HKLM-x32\...\{FA66CFD7-0977-4C45-AACD-A8BB994B1A05}) (Version: 1.0.520 - id Software) Rayman Legends (HKLM-x32\...\Steam App 242550) (Version: - ) Rayman Origins (HKLM-x32\...\Steam App 207490) (Version: - ) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6392 - Realtek Semiconductor Corp.) Red Faction Guerrilla (HKLM-x32\...\InstallShield_{A357EF4C-2B6F-4980-ACA9-B1E42A74D7F3}) (Version: 1.00.0000 - Volition Inc.) Red Faction Guerrilla (x32 Version: 1.00.0000 - Volition Inc.) Hidden Red Faction: Guerrilla (x32 Version: 1.0.0003.130 - THQ) Hidden Remember Me (HKLM-x32\...\Steam App 228300) (Version: - DONTNOD Entertainment) Resident Evil 6 Benchmark Tool (HKLM-x32\...\Steam App 229950) (Version: - ) Resident Evil Revelations / Biohazard Revelations UE (HKLM-x32\...\Steam App 222480) (Version: - Capcom) Reus (HKLM-x32\...\Steam App 222730) (Version: - Abbey Games) Risk of Rain (HKLM-x32\...\Steam App 248820) (Version: - ) RivaTuner Statistics Server 6.1.1 (HKLM-x32\...\RTSS) (Version: 6.1.1 - Unwinder) Rochard (HKLM-x32\...\Steam App 107800) (Version: - Recoil Games) Rock of Ages (HKLM-x32\...\Steam App 22230) (Version: - ) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.0.1 - Rockstar Games) Rogue Legacy (HKLM-x32\...\Steam App 241600) (Version: - Cellar Door Games) Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition) Sanctum (HKLM-x32\...\Steam App 91600) (Version: - ) Sanctum 2 (HKLM-x32\...\Steam App 210770) (Version: - ) Sang-Froid - Tales of Werewolves (HKLM-x32\...\Steam App 227220) (Version: - ) Shadow Warrior (HKLM-x32\...\Steam App 233130) (Version: - Flying Wild Hog) Shank 2 (HKLM-x32\...\Steam App 102840) (Version: - klei entertainment) SHIELD Streaming (Version: 2.1.214 - NVIDIA Corporation) Hidden Skulls of the Shogun (HKLM-x32\...\Steam App 228960) (Version: - 17-BIT) Sleeping Dogs™ (HKLM-x32\...\Steam App 202170) (Version: - Square Enix) Sonic & All-Stars Racing Transformed (HKLM-x32\...\Steam App 212480) (Version: - Sumo Digital) Sonic Generations (HKLM-x32\...\Steam App 71340) (Version: - Sega) South Park™: The Stick of Truth™ (HKLM-x32\...\Steam App 213670) (Version: - Obsidian Entertainment) Spelunky (HKLM-x32\...\Steam App 239350) (Version: - ) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited) Star Wars: The Force Unleashed II (HKLM-x32\...\Steam App 32500) (Version: - Lucas Arts) Stealth Bastard Deluxe (HKLM-x32\...\Steam App 209190) (Version: - Curve Studios) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Super Meat Boy (HKLM-x32\...\Steam App 40800) (Version: - ) Super Meat Boy Editor (HKLM-x32\...\Steam App 40810) (Version: - ) Super Sanctum TD (HKLM-x32\...\Steam App 235250) (Version: - ) Tales from Space: Mutant Blobs Attack (HKLM-x32\...\Steam App 206370) (Version: - DrinkBox Studios) Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic) Teslagrad (HKLM-x32\...\Steam App 249590) (Version: - Rain Games) The Book of Unwritten Tales (HKLM-x32\...\Steam App 215160) (Version: - KING Art) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) The Incredible Adventures of Van Helsing (HKLM-x32\...\Steam App 215530) (Version: - NeocoreGames) The Lord of the Rings: War in the North (HKLM-x32\...\Steam App 32800) (Version: - Snowblind) The Mighty Quest For Epic Loot (HKLM-x32\...\Steam App 239220) (Version: - Ubisoft Montreal) The Walking Dead (HKLM-x32\...\Steam App 207610) (Version: - ) The Walking Dead: Season Two (HKLM-x32\...\Steam App 261030) (Version: - Telltale Games) The Wolf Among Us (HKLM-x32\...\Steam App 250320) (Version: - ) They Bleed Pixels (HKLM-x32\...\Steam App 211260) (Version: - Spooky Squid Games Inc.) Thief (HKLM-x32\...\Steam App 239160) (Version: - Eidos-Montréal) Thomas Was Alone (HKLM-x32\...\Steam App 220780) (Version: - ) Titanfall™ (HKLM-x32\...\{347EE0C3-0690-48F6-A231-53853C2A80D6}) (Version: 1.0.0.3 - Electronic Arts) Tomb Raider: Anniversary (HKLM-x32\...\Steam App 8000) (Version: - Eidos) Tomb Raider: Underworld (HKLM-x32\...\Steam App 8140) (Version: - Eidos) Torchlight II (HKLM-x32\...\Steam App 200710) (Version: - ) TrackMania² Stadium (HKLM-x32\...\Steam App 232910) (Version: - Nadeo) Trials Evolution Gold Edition (HKLM-x32\...\Steam App 220160) (Version: - RedLynx and Ubisoft Shanghai) Trials Fusion (HKLM-x32\...\Steam App 245490) (Version: - RedLynx, in collaboration with Ubisoft Shanghai, Ubisoft Kiev) Trine (HKLM-x32\...\Steam App 35700) (Version: - Frozenbyte) Trine 2 (HKLM-x32\...\Steam App 35720) (Version: - ) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Vessel (HKLM-x32\...\Steam App 108500) (Version: - Strange Loop Games) VIRTU 1.2.106 (HKLM\...\VIRTU_is1) (Version: 1.2.106 - Lucfidlogix Technologies LTD) Viscera Cleanup Detail: Shadow Warrior (HKLM-x32\...\Steam App 255520) (Version: - RuneStorm) VLC media player 2.1.0 (HKLM\...\VLC media player) (Version: 2.1.0 - VideoLAN) Warhammer 40,000 Space Marine (HKLM-x32\...\Steam App 55150) (Version: - Relic) Watch_Dogs (HKLM-x32\...\Uplay Install 274) (Version: - Ubisoft) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Family Safety (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden World of Goo (HKLM-x32\...\Steam App 22000) (Version: - 2D Boy) Worms Reloaded (HKLM-x32\...\Steam App 22600) (Version: - Team17) X-Men Origins - Wolverine(TM) (HKLM-x32\...\InstallShield_{7F0B94C6-828C-4EDE-A86B-ECF4D792B68D}) (Version: 1.00.0000 - Activision) Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.2 - Xvid Team) ==================== Restore Points ========================= ==================== Hosts content: ========================== 2009-07-14 04:34 - 2014-03-17 12:28 - 00450712 ____R C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 127.0.0.1 www.0scan.com 127.0.0.1 0scan.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com 127.0.0.1 www.100sexlinks.com 127.0.0.1 100sexlinks.com 127.0.0.1 www.10sek.com 127.0.0.1 10sek.com 127.0.0.1 www.1-2005-search.com 127.0.0.1 1-2005-search.com 127.0.0.1 www.123fporn.info 127.0.0.1 123fporn.info 127.0.0.1 123haustiereundmehr.com 127.0.0.1 www.123haustiereundmehr.com 127.0.0.1 123moviedownload.com There are 1000 more lines. ==================== Scheduled Tasks (whitelisted) ============= Task: {AB39A3DD-F7A6-455E-A749-8E61000E6988} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14] (Adobe Systems Incorporated) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2012-05-23 14:57 - 2014-05-20 03:25 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2012-11-10 11:49 - 2013-11-20 14:45 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2012-03-19 22:09 - 2012-03-19 22:09 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-05-07 13:35 - 2012-06-07 10:24 - 00246784 _____ () C:\Program Files (x86)\Drakonia Configurator\hid.exe 2013-05-07 13:35 - 2012-06-14 10:44 - 00240640 _____ () C:\Program Files (x86)\Drakonia Configurator\trayicon.exe 2013-05-07 13:35 - 2011-11-22 14:18 - 00061440 _____ () C:\Program Files (x86)\Drakonia Configurator\HidDevice.dll 2013-06-15 16:28 - 2010-06-14 14:38 - 00984416 _____ () C:\Program Files (x86)\Hama\Common\RaWLAPI.dll 2013-05-07 13:35 - 2011-11-22 14:18 - 00249856 _____ () C:\Program Files (x86)\Drakonia Configurator\language.dll 2014-06-11 01:30 - 2014-06-11 01:30 - 03852912 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= MSCONFIG\startupreg: RGSC => C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/23/2014 01:40:02 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: lsass.exe, Version: 6.1.7601.18443, Zeitstempel: 0x5348920c Name des fehlerhaften Moduls: RPCRT4.dll, Version: 6.1.7601.18205, Zeitstempel: 0x51dba4dc Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000040797 ID des fehlerhaften Prozesses: 0x2a4 Startzeit der fehlerhaften Anwendung: 0xlsass.exe0 Pfad der fehlerhaften Anwendung: lsass.exe1 Pfad des fehlerhaften Moduls: lsass.exe2 Berichtskennung: lsass.exe3 Error: (06/23/2014 01:40:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: services.exe, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc10e Name des fehlerhaften Moduls: RPCRT4.dll, Version: 6.1.7601.18205, Zeitstempel: 0x51dba4dc Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000040797 ID des fehlerhaften Prozesses: 0x268 Startzeit der fehlerhaften Anwendung: 0xservices.exe0 Pfad der fehlerhaften Anwendung: services.exe1 Pfad des fehlerhaften Moduls: services.exe2 Berichtskennung: services.exe3 Error: (06/23/2014 01:40:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: svchost.exe_PlugPlay, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc3c1 Name des fehlerhaften Moduls: RPCRT4.dll, Version: 6.1.7601.18205, Zeitstempel: 0x51dba4dc Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000040797 ID des fehlerhaften Prozesses: 0x310 Startzeit der fehlerhaften Anwendung: 0xsvchost.exe_PlugPlay0 Pfad der fehlerhaften Anwendung: svchost.exe_PlugPlay1 Pfad des fehlerhaften Moduls: svchost.exe_PlugPlay2 Berichtskennung: svchost.exe_PlugPlay3 Error: (06/23/2014 01:25:35 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm memtest.exe, Version 1.0.0.1 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: fa0 Startzeit: 01cf8ecb285a27dd Endzeit: 109 Anwendungspfad: C:\Users\Terminal\Desktop\MEMTEST\memtest.exe Berichts-ID: 08a7c635-fac9-11e3-aaba-bc5ff40d09e9 Error: (06/23/2014 11:49:43 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm memtest.exe, Version 1.0.0.1 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: aa0 Startzeit: 01cf8ec797cb461a Endzeit: 93 Anwendungspfad: C:\Users\Terminal\Desktop\MEMTEST\memtest.exe Berichts-ID: 6402f824-fabb-11e3-8411-801f0263fe08 Error: (06/20/2014 02:52:58 PM) (Source: MsiInstaller) (EventID: 1013) (User: Terminal-PC) Description: Produkt: NVIDIA PhysX -- Installation terminated Error: (06/20/2014 02:51:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: UDK.exe, Version: 1.0.7977.0, Zeitstempel: 0x4d6c3d3a Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18409, Zeitstempel: 0x53159a86 Ausnahmecode: 0x00000001 Fehleroffset: 0x0000c42d ID des fehlerhaften Prozesses: 0x12b4 Startzeit der fehlerhaften Anwendung: 0xUDK.exe0 Pfad der fehlerhaften Anwendung: UDK.exe1 Pfad des fehlerhaften Moduls: UDK.exe2 Berichtskennung: UDK.exe3 Error: (06/14/2014 04:15:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Anomaly 2.exe, Version: 0.0.0.0, Zeitstempel: 0x51cda4f3 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea8e7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0003bcc8 ID des fehlerhaften Prozesses: 0x5e4 Startzeit der fehlerhaften Anwendung: 0xAnomaly 2.exe0 Pfad der fehlerhaften Anwendung: Anomaly 2.exe1 Pfad des fehlerhaften Moduls: Anomaly 2.exe2 Berichtskennung: Anomaly 2.exe3 Error: (06/03/2014 01:03:07 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: vlc.exe, Version: 2.1.0.0, Zeitstempel: 0x52432b75 Name des fehlerhaften Moduls: vlc.exe, Version: 2.1.0.0, Zeitstempel: 0x52432b75 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000018ad ID des fehlerhaften Prozesses: 0xa24 Startzeit der fehlerhaften Anwendung: 0xvlc.exe0 Pfad der fehlerhaften Anwendung: vlc.exe1 Pfad des fehlerhaften Moduls: vlc.exe2 Berichtskennung: vlc.exe3 Error: (05/29/2014 06:03:33 PM) (Source: MsiInstaller) (EventID: 11316) (User: Terminal-PC) Description: Product: Microsoft XNA Framework Redistributable 4.0 Refresh -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Steam\steamapps\common\Skulls of the Shogun\_CommonRedist\XNA\4.0\xnafx40_refresh_redist.msi System errors: ============= Error: (06/23/2014 01:41:44 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 23.06.2014 um 13:39:52 unerwartet heruntergefahren. Error: (06/23/2014 00:03:53 PM) (Source: NetBT) (EventID: 4321) (User: ) Description: Der Name "TERMINAL-PC :0" konnte nicht auf der Schnittstelle mit IP-Adresse 192.168.178.26 registriert werden. Der Computer mit IP-Adresse 192.168.178.23 hat nicht zugelassen, dass dieser Computer diesen Namen verwendet. Error: (06/23/2014 11:51:28 AM) (Source: Microsoft Antimalware) (EventID: 2001) (User: ) Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt. Neue Signaturversion: Vorherige Signaturversion: 1.177.477.0 Aktualisierungsquelle: %NT-AUTORITÄT59 Aktualisierungsphase: 4.5.0216.00 Quellpfad: 4.5.0216.01 Signaturtyp: %NT-AUTORITÄT602 Aktualisierungstyp: %NT-AUTORITÄT604 Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %NT-AUTORITÄT605 Vorherige Modulversion: %NT-AUTORITÄT606 Fehlercode: %NT-AUTORITÄT607 Fehlerbeschreibung: %NT-AUTORITÄT608 Error: (06/23/2014 11:40:59 AM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x00000024 (0x00000000001904fb, 0xfffff88003d493b8, 0xfffff88003d48c10, 0xfffff8000343b768)C:\Windows\MEMORY.DMP062314-16302-01 Error: (06/23/2014 10:06:55 AM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (06/23/2014 10:06:55 AM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (06/23/2014 10:06:54 AM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (06/23/2014 10:06:51 AM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (06/23/2014 10:06:50 AM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (06/23/2014 10:06:49 AM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Microsoft Office Sessions: ========================= Error: (06/23/2014 01:40:02 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: lsass.exe6.1.7601.184435348920cRPCRT4.dll6.1.7601.1820551dba4dcc000000500000000000407972a401cf8eca6b2b6f01C:\Windows\system32\lsass.exeC:\Windows\system32\RPCRT4.dll1c83ba72-facb-11e3-aaba-bc5ff40d09e9 Error: (06/23/2014 01:40:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: services.exe6.1.7600.163854a5bc10eRPCRT4.dll6.1.7601.1820551dba4dcc0000005000000000004079726801cf8eca6b1d26c0C:\Windows\system32\services.exeC:\Windows\system32\RPCRT4.dll1c00cec3-facb-11e3-aaba-bc5ff40d09e9 Error: (06/23/2014 01:40:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: svchost.exe_PlugPlay6.1.7600.163854a5bc3c1RPCRT4.dll6.1.7601.1820551dba4dcc0000005000000000004079731001cf8eca6b4a60e5C:\Windows\system32\svchost.exeC:\Windows\system32\RPCRT4.dll1b934f76-facb-11e3-aaba-bc5ff40d09e9 Error: (06/23/2014 01:25:35 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: memtest.exe1.0.0.1fa001cf8ecb285a27dd109C:\Users\Terminal\Desktop\MEMTEST\memtest.exe08a7c635-fac9-11e3-aaba-bc5ff40d09e9 Error: (06/23/2014 11:49:43 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: memtest.exe1.0.0.1aa001cf8ec797cb461a93C:\Users\Terminal\Desktop\MEMTEST\memtest.exe6402f824-fabb-11e3-8411-801f0263fe08 Error: (06/20/2014 02:52:58 PM) (Source: MsiInstaller) (EventID: 1013) (User: Terminal-PC) Description: Produkt: NVIDIA PhysX -- Installation terminated(NULL)(NULL)(NULL)(NULL)(NULL) Error: (06/20/2014 02:51:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: UDK.exe1.0.7977.04d6c3d3aKERNELBASE.dll6.1.7601.1840953159a86000000010000c42d12b401cf8c865a850280C:\Program Files (x86)\Steam\steamapps\common\Antichamber\Binaries\Win32\UDK.exeC:\Windows\syswow64\KERNELBASE.dll9ff8aeec-f879-11e3-8239-bc5ff40d09e9 Error: (06/14/2014 04:15:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Anomaly 2.exe0.0.0.051cda4f3ntdll.dll6.1.7601.18247521ea8e7c00000050003bcc85e401cf87d8a6994d71C:\Program Files (x86)\Steam\steamapps\common\Anomaly 2\Anomaly 2.exeC:\Windows\SysWOW64\ntdll.dll44bd76ac-f3ce-11e3-b14b-bc5ff40d09e9 Error: (06/03/2014 01:03:07 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: vlc.exe2.1.0.052432b75vlc.exe2.1.0.052432b75c000000500000000000018ada2401cf7eb51c7a332fC:\Program Files\VideoLAN\VLC\vlc.exeC:\Program Files\VideoLAN\VLC\vlc.exe0e949c30-eaaa-11e3-bd9c-bc5ff40d09e9 Error: (05/29/2014 06:03:33 PM) (Source: MsiInstaller) (EventID: 11316) (User: Terminal-PC) Description: Product: Microsoft XNA Framework Redistributable 4.0 Refresh -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Steam\steamapps\common\Skulls of the Shogun\_CommonRedist\XNA\4.0\xnafx40_refresh_redist.msi(NULL)(NULL)(NULL)(NULL)(NULL) ==================== Memory info =========================== Percentage of memory in use: 24% Total physical RAM: 8104.67 MB Available physical RAM: 6129.96 MB Total Pagefile: 16207.52 MB Available Pagefile: 14238.89 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:1862.92 GB) (Free:644.27 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: AD4C6DB0) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=-198731366400) - (Type=07 NTFS) ==================== End Of Log ============================ |
23.06.2014, 14:02 | #2 |
/// the machine /// TB-Ausbilder | Bluescreens (diverse), kritischer Fehler Hi,
__________________keine Malware. Festplatte prüfen mit Seatools und schon mal Daten sichern.
__________________ |
23.06.2014, 14:12 | #3 |
| Bluescreens (diverse), kritischer Fehler Danke für die schnelle Antwort, was genau soll ich für Tests durchführen? Hatte schon Data Life Guard Diagnostics laufen lassen, hat aber keine Fehler festgestellt.
__________________ |
23.06.2014, 19:08 | #4 |
/// the machine /// TB-Ausbilder | Bluescreens (diverse), kritischer Fehler mit Seatools alle Tests machen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
24.06.2014, 07:55 | #5 |
| Bluescreens (diverse), kritischer Fehler Hi, die Tests mit SeaTools waren soweit alle erfolglos (keine Fehler), heute morgen dann der nächste Bluescreen. ================================================== Dump File : 062414-13899-01.dmp Crash Time : 24.06.2014 08:46:25 Bug Check String : KMODE_EXCEPTION_NOT_HANDLED Bug Check Code : 0x0000001e Parameter 1 : ffffffff`c0000094 Parameter 2 : fffff960`00117a14 Parameter 3 : fffff900`c2c66010 Parameter 4 : 00000000`00000398 Caused By Driver : win32k.sys Caused By Address : win32k.sys+f7a14 File Description : Product Name : Company : File Version : Processor : x64 Crash Address : ntoskrnl.exe+75bc0 Stack Address 1 : Stack Address 2 : Stack Address 3 : Computer Name : Full Path : C:\Windows\Minidump\062414-13899-01.dmp Processors Count : 4 Major Version : 15 Minor Version : 7601 Dump File Size : 295.608 Dump File Time : 24.06.2014 08:47:18 ================================================== Ist es trotzdem sicher, dass es die Festplatte ist? Daten habe ich bereits gesichert. Noch einmal vielen Dank für den tollen Support Grüße Ara Geändert von AraBeg (24.06.2014 um 08:36 Uhr) |
24.06.2014, 11:11 | #6 |
| Bluescreens (diverse), kritischer Fehler Und noch ein neuer Fehler, irgendwie ist es merkwürdig, die Rechtschreibung ist nicht korrekt, zudem macht die Meldung nicht wirklich Sinn? Sie werden in Kürze abgemeldet Windows muss jetzt neu gestartet werden, da der Dienst Stromversorgung unerwartet beendet wurde Habe es mal als Anhang hinzugefügt, steht aber nicht mehr drin als oben beschrieben. |
24.06.2014, 17:46 | #7 |
/// the machine /// TB-Ausbilder | Bluescreens (diverse), kritischer Fehler Versuch mal ein Inplace Upgrade.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
25.06.2014, 16:23 | #8 |
| Bluescreens (diverse), kritischer Fehler An eine Reparaturinstallation hatte ich auch gedacht, ist diese auch sinnvoll, wenn sfc /scannow keine Integritätsverletzungen gefunden hat? Ist es eigentlich gar nicht merkwürdig, dass zwischen den Abstürzen teilweise 3 Wochen liegen? PC läuft täglich 4-16 Stunden. Update: Hallo, der nächste Bluescreen: ================================================== Dump File : 062514-16848-01.dmp Crash Time : 25.06.2014 17:12:56 Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA Bug Check Code : 0x00000050 Parameter 1 : fffffca8`05d9a920 Parameter 2 : 00000000`00000000 Parameter 3 : fffff800`03501ea5 Parameter 4 : 00000000`00000007 Caused By Driver : ntoskrnl.exe Caused By Address : ntoskrnl.exe+75bc0 File Description : NT Kernel & System Product Name : Microsoft® Windows® Operating System Company : Microsoft Corporation File Version : 6.1.7601.18409 (win7sp1_gdr.140303-2144) Processor : x64 Crash Address : ntoskrnl.exe+75bc0 Stack Address 1 : Stack Address 2 : Stack Address 3 : Computer Name : Full Path : C:\Windows\Minidump\062514-16848-01.dmp Processors Count : 4 Major Version : 15 Minor Version : 7601 Dump File Size : 266.520 Dump File Time : 25.06.2014 17:16:28 ================================================== Danach fuhr der PC nicht mehr hoch (Bluescreens während der Systemreparatur und beim normalen Starten) und irgendwann kam dann ein Bluescreen mit "Memory Management" oder sowas, also habe ich einen Ram-Baustein entfernt, danach startete Windows ganz normal. Ich werde einfach mal einige Zeit mit 4 GB Ram rumprobieren, sollten die Bluescreens ausbleiben, ist der Schuldige wohl gefunden? Oder kann es gar nicht am Ram liegen? Geändert von AraBeg (25.06.2014 um 16:42 Uhr) |
26.06.2014, 14:57 | #9 |
/// the machine /// TB-Ausbilder | Bluescreens (diverse), kritischer Fehler ja kann am RAM liegen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
26.06.2014, 23:25 | #10 |
| Bluescreens (diverse), kritischer Fehler Nachdem wieder Stopfehler beim Bootvorgang auftraten, habe ich einen Ram-Riegel entfernt, seitdem läuft der PC ohne Probleme. Werde noch einmal Memtest86+ vom USB-Stick laufen lassen, hoffe mal es war der Ram! Danke für deine Hilfe. |
27.06.2014, 13:47 | #11 |
/// the machine /// TB-Ausbilder | Bluescreens (diverse), kritischer Fehler Klingt schon schwer nach RAM.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Bluescreens (diverse), kritischer Fehler |
administrator, association, bingbar, bluescreen 0x00000024, bluescreen system_service_exception, browser, explorer, fehler, fehlercode %nt-autorität607, fehlercode 0x00000001, fehlercode 0xc0000005, fehlercode windows, firefox, flash player, geforce, helper, hijack, hijackthis, mozilla, nvidia, realtek, refresh, robot, safer networking, security, services.exe, software, svchost.exe, windows, winlogon.exe |