|
Plagegeister aller Art und deren Bekämpfung: Regelmäßige Bluescreens nur beim SpielenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
15.07.2014, 15:00 | #1 |
| Regelmäßige Bluescreens nur beim Spielen Hallo, ich habe mit diesem Problem noch nicht auseinandergesetzt. Es ist bereits seit 2 Jahren so. Ich bekomme regelmäßige Bluescreens nur beim spielen. Es passiert aber nur wenn ich wirklich spiele (also Ingame). Sobald ich im Menü rumidle passiert absolut gar nichts, sobald ich aber ein Spiel betrete kommt höchstens nach 5-25 Minuten ein Bluescreen. Kurz bevor ich den Bluescreen bekomme, dreht der CPU Kühler sich auf einmal ganz schnell und dann erscheint er.Manchmal stottert das Spiel auch, also es bleibt kurz hängen für ca. 0.4 Sekunden. Ich habe den Fehlercode auch hier: *** STOP: 0x00000124 (0x0000000000000000, 0xFFFFFA8007A028, 0x00000000B440A000, 0x0000000000000145) Ich bitte um Hilfe da ich gar keine Ahnung von PC's habe. __________ Grafikkarte NVIDIA GeForce GT 520 Laufwerk SeaGate 500GB 7200 RPS AMD Phenom(tm) II X4 975 Prozessor(4x 3,7GHz) 8 GB RAM DDR3 Geändert von parablue (15.07.2014 um 15:12 Uhr) |
15.07.2014, 17:03 | #2 |
/// Malwareteam | Regelmäßige Bluescreens nur beim Spielen Hallo
__________________das hört sich starkt nach einem überhitzten System an. Hast du das Problem auch wenn du die Details in deinem Spiel runterregelst und auch die Auflösung reduzierst?
__________________ |
16.07.2014, 11:38 | #3 |
| Regelmäßige Bluescreens nur beim Spielen Estmal vielen Dank für die Antwort. Ja, das Problem besteht dann weiterhin. Ich spiele jedes Spiel auf niedrigster Stufe.
__________________ |
16.07.2014, 16:07 | #4 |
/// Malwareteam | Regelmäßige Bluescreens nur beim Spielen gut dann schauen wir und dein System mal an... Schritt 1: bitte führe die Tools als Administrator aus, sonst fehlen mir Details Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
|
16.07.2014, 16:52 | #5 |
| Regelmäßige Bluescreens nur beim Spielen FRIST.txt : Code:
ATTFilter ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe () C:\Windows\SysWOW64\PnkBstrA.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Nota Inc.) C:\Program Files (x86)\Gyazo\GyStation.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Valve Corporation) D:\Steam\Steam.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Digital Extremes) D:\Steam\SteamApps\common\Warframe\Warframe.x64.exe (Valve Corporation) D:\Steam\GameOverlayUI.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\taskmgr.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12681320 2011-08-25] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation) HKLM\...\RunOnce: [*WerKernelReporting] - %SYSTEMROOT%\SYSTEM32\WerFault.exe -k -rq [415232 2009-07-14] (Microsoft Corporation) HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2014-04-14] (Microsoft Corporation) HKU\S-1-5-21-3047204303-1143388320-970495031-1001\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [2990304 2013-10-30] (Nota Inc.) ==================== Internet (Whitelisted) ==================== BHO-x32: No Name -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> No File BHO-x32: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2 FireFox: ======== FF ProfilePath: C:\Users\tanju\AppData\Roaming\Mozilla\Firefox\Profiles\2synupcv.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 - D:\Programme\Java\bin\dtplugin\npDeployJava1.dll No File FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 - D:\Programme\Java\bin\plugin2\npjp2.dll No File FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml ==================== Services (Whitelisted) ================= R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation) R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed] R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-07-16] () ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] () S3 HTCAND64; C:\Windows\System32\Drivers\ANDROIDUSB.sys [33736 2009-11-02] (HTC, Corporation) [File not signed] R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-17] () R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 UHSfiltv; C:\Windows\System32\drivers\UHSfiltv.sys [23552 2011-07-15] (Creative Technology Ltd.) [File not signed] U3 DfSdkS; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-16 17:36 - 2014-07-16 17:38 - 00006144 _____ () C:\Users\Internet\Downloads\FRST.txt 2014-07-16 17:36 - 2014-07-16 17:38 - 00000000 ____D () C:\FRST 2014-07-16 17:36 - 2014-07-16 17:36 - 02086912 _____ (Farbar) C:\Users\Internet\Downloads\FRST64.exe 2014-07-16 16:28 - 2014-07-16 16:32 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-07-16 16:28 - 2014-07-16 16:28 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-07-16 16:28 - 2014-07-16 16:28 - 00000000 ____D () C:\Users\tanju\AppData\Local\Chromium 2014-07-16 16:27 - 2014-07-16 16:27 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-07-15 17:55 - 2014-07-15 17:55 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\GHISLER 2014-07-15 17:54 - 2014-07-15 17:55 - 00000000 ____D () C:\totalcmd 2014-07-15 17:54 - 2014-07-15 17:54 - 06370320 _____ (Ghisler Software GmbH) C:\Users\Internet\Downloads\tcm851ax32_64.exe 2014-07-15 17:54 - 2014-07-15 17:54 - 00000646 _____ () C:\Users\Public\Desktop\Total Commander 64 bit.lnk 2014-07-15 17:54 - 2014-07-15 17:54 - 00000632 _____ () C:\Users\Public\Desktop\Total Commander.lnk 2014-07-15 17:54 - 2014-07-15 17:54 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\GHISLER 2014-07-15 17:02 - 2014-05-20 01:10 - 00601432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-07-15 17:00 - 2014-05-20 04:44 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-07-15 17:00 - 2014-05-20 04:44 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-07-15 16:57 - 2014-07-15 16:57 - 00000000 ____D () C:\NVIDIA 2014-07-15 16:55 - 2014-07-15 16:57 - 281478056 _____ (NVIDIA Corporation) C:\Users\Internet\Downloads\337.88-desktop-win8-win7-winvista-64bit-international-whql(2).exe 2014-07-15 15:58 - 2014-07-15 15:58 - 00291344 _____ () C:\Windows\Minidump\071514-13977-01.dmp 2014-07-15 15:40 - 2014-07-15 15:40 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\NVIDIA 2014-07-15 15:37 - 2014-07-15 15:37 - 00000000 ____D () C:\Users\tanju\AppData\Local\Macromedia 2014-07-15 15:35 - 2014-07-15 15:35 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\Mozilla 2014-07-15 15:35 - 2014-07-15 15:35 - 00000000 ____D () C:\Users\tanju\AppData\Local\Mozilla 2014-07-15 15:33 - 2014-07-15 15:33 - 00291336 _____ () C:\Windows\Minidump\071514-13587-01.dmp 2014-07-15 13:35 - 2014-07-15 15:58 - 436792005 _____ () C:\Windows\MEMORY.DMP 2014-07-15 13:35 - 2014-07-15 13:35 - 00291384 _____ () C:\Windows\Minidump\071514-13790-01.dmp 2014-07-15 13:35 - 2014-07-15 13:35 - 00000000 _____ () C:\Windows\setuperr.log 2014-07-15 13:35 - 2014-01-17 17:09 - 00002007 _____ () C:\Windows\setupact.log 2014-07-15 12:36 - 2014-07-15 12:36 - 00000709 _____ () C:\Users\Internet\Desktop\TeamSpeak 3 Client.lnk 2014-07-15 12:36 - 2014-07-15 12:36 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2014-07-15 12:34 - 2014-07-15 12:34 - 27337256 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\TeamSpeak3-Client-win32-3.0.15.1.exe 2014-07-15 12:30 - 2014-07-15 12:30 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-07-15 12:30 - 2014-07-15 12:30 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-15 12:29 - 2014-07-15 12:29 - 03736040 _____ (Piriform Ltd) C:\Users\Internet\Downloads\ccsetup415_slim.exe 2014-07-15 10:04 - 2014-07-15 10:04 - 00000512 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-07-15 10:04 - 2014-07-15 10:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-07-15 10:02 - 2014-07-15 10:02 - 01141680 _____ () C:\Users\Internet\Downloads\SteamSetup.exe 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 4.01 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\VLC Portable 1.17 2014-07-15 08:53 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\TS33 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\TS3 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\Mozilla 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 4.01 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Skype 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Gyazo 2014-07-15 08:51 - 2014-07-04 17:17 - 28431502 _____ () C:\Users\Internet\Downloads\Der Rabe.wav 2014-07-15 08:51 - 2014-04-08 14:42 - 00002991 _____ () C:\Users\Internet\Downloads\Beewee7.odt 2014-07-15 08:51 - 2014-04-08 14:38 - 00003010 _____ () C:\Users\Internet\Downloads\Beewee6.odt 2014-07-15 08:51 - 2014-04-08 14:34 - 00003002 _____ () C:\Users\Internet\Downloads\Beewee5.odt 2014-07-15 08:51 - 2014-04-08 14:29 - 00003011 _____ () C:\Users\Internet\Downloads\Beewee4.odt 2014-07-15 08:51 - 2014-04-08 14:23 - 00003013 _____ () C:\Users\Internet\Downloads\Beewee3.odt 2014-07-15 08:51 - 2014-04-08 14:13 - 00003006 _____ () C:\Users\Internet\Downloads\Beewee2.odt 2014-07-15 08:51 - 2014-04-08 14:08 - 00003011 _____ () C:\Users\Internet\Downloads\Beewee.odt 2014-07-15 08:51 - 2014-04-08 14:07 - 00003052 _____ () C:\Users\Internet\Downloads\Beewee1.odt 2014-07-15 08:51 - 2014-02-28 19:43 - 00014969 _____ () C:\Users\Internet\Downloads\Beewee9.odt 2014-07-15 08:51 - 2014-02-28 19:42 - 00014769 _____ () C:\Users\Internet\Downloads\Beewee8.odt 2014-07-15 08:51 - 2012-11-03 19:10 - 09128944 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\ts3client_win32.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00399344 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\update.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00189936 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\package_inst.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00184320 _____ () C:\Users\Internet\Downloads\QtSql4.dll 2014-07-15 08:51 - 2012-11-03 19:10 - 00110106 _____ () C:\Users\Internet\Downloads\createfileassoc.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00001454 _____ () C:\Users\Internet\Downloads\mirrors.ini 2014-07-15 08:51 - 2012-06-23 13:31 - 00042496 _____ () C:\Users\Internet\Downloads\funnyvoice13.exe 2014-07-15 08:51 - 2012-04-25 15:52 - 08674800 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\_old_ts3client_win32.exe 2014-07-15 08:51 - 2012-04-25 15:52 - 00400368 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\_old_update.exe 2014-07-15 08:51 - 2012-04-25 15:52 - 00180720 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\error_report.exe 2014-07-15 08:51 - 2012-01-01 15:16 - 00121942 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\Uninstall.exe 2014-07-15 08:51 - 2012-01-01 15:15 - 29603832 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\TeamSpeak3-Client-win32-3.0.2.exe 2014-07-15 08:51 - 2011-11-16 10:41 - 07859200 _____ () C:\Users\Internet\Downloads\QtGui4.dll 2014-07-15 08:51 - 2011-11-16 10:41 - 02210816 _____ () C:\Users\Internet\Downloads\QtCore4.dll 2014-07-15 08:51 - 2011-11-16 10:41 - 00814080 _____ () C:\Users\Internet\Downloads\QtNetwork4.dll 2014-07-14 14:41 - 2014-05-20 04:44 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-07-14 14:41 - 2014-05-20 04:44 - 00052056 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 06769096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 03514144 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 02560968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 00927520 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-07-14 14:41 - 2014-05-20 03:25 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-07-14 14:41 - 2014-05-15 01:49 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin 2014-07-14 14:41 - 2014-01-17 17:09 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-07-14 14:40 - 2014-05-20 04:44 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 00026069 _____ () C:\Windows\system32\nvinfo.pb 2014-07-14 14:40 - 2014-03-04 16:35 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433523.dll 2014-07-14 14:40 - 2014-03-04 16:35 - 01516488 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433523.dll 2014-07-14 14:40 - 2013-11-28 15:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-07-14 14:40 - 2013-11-28 15:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-07-14 14:40 - 2013-11-22 10:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-07-13 17:51 - 2014-07-13 20:24 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\EelguyPf 2014-07-13 17:51 - 2014-07-13 17:51 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\0A85EA09-C820-4812-AB12-5F2106E69751 2014-07-13 15:28 - 2014-07-13 15:32 - 00000000 ____D () C:\Users\Internet\Documents\Telltale Games 2014-07-10 12:33 - 2014-06-20 22:14 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-10 12:33 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-10 12:33 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-10 12:33 - 2014-06-19 03:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-10 12:33 - 2014-06-19 03:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-07-10 12:33 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-10 12:33 - 2014-06-19 02:42 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-10 12:33 - 2014-06-19 02:42 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-10 12:33 - 2014-06-19 02:41 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-07-10 12:33 - 2014-06-19 02:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-07-10 12:33 - 2014-06-19 02:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-10 12:33 - 2014-06-19 02:31 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-10 12:33 - 2014-06-19 02:26 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-10 12:33 - 2014-06-19 02:24 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-10 12:33 - 2014-06-19 02:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-07-10 12:33 - 2014-06-19 02:23 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-07-10 12:33 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-10 12:33 - 2014-06-19 02:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-07-10 12:33 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-10 12:33 - 2014-06-19 01:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-07-10 12:33 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-10 12:33 - 2014-06-19 01:53 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-10 12:33 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-10 12:33 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-10 12:33 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-10 12:33 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-10 12:33 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-10 12:33 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-10 12:33 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-07-10 12:33 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-07-10 12:33 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-10 12:33 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-10 12:33 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-10 12:33 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-10 12:33 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-10 12:33 - 2014-06-19 01:27 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-07-10 12:33 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-10 12:33 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-10 12:33 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-07-10 12:33 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-10 12:33 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-07-10 12:33 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-10 12:33 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-10 12:33 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-10 12:33 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-10 12:33 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-10 12:33 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-10 12:33 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-10 12:33 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-07-10 12:33 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-10 12:33 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-10 12:33 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-10 12:33 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-10 12:33 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-10 12:33 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-10 12:33 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-10 12:33 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-10 12:33 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-10 12:33 - 2014-06-18 03:10 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-10 12:33 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-10 12:33 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-10 12:33 - 2014-06-05 16:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-10 12:33 - 2014-06-05 16:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-07-10 12:33 - 2014-06-05 16:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-07-10 12:33 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-04 13:45 - 2014-07-04 13:45 - 00000000 ____D () C:\Users\tanju\AppData\Local\FalloutNV 2014-07-04 13:40 - 2014-07-16 13:50 - 00000000 ____D () C:\Users\tanju\AppData\Local\Warframe 2014-07-04 13:32 - 2014-07-04 13:32 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\Macromedia 2014-07-04 13:16 - 2014-07-04 13:16 - 00000000 __SHD () C:\Users\tanju\AppData\Local\EmieUserList 2014-07-04 13:16 - 2014-07-04 13:16 - 00000000 __SHD () C:\Users\tanju\AppData\Local\EmieSiteList 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software 2014-06-24 15:58 - 2014-06-24 15:58 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\uTorrent 2014-06-24 15:57 - 2014-07-15 12:33 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\uTorrent 2014-06-23 13:41 - 2014-06-23 13:52 - 00000047 _____ () C:\Users\Internet\jagex_cl_oldschool_LIVE.dat 2014-06-23 13:36 - 2014-06-23 13:36 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-06-23 13:36 - 2014-06-23 13:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-06-18 13:11 - 2014-06-18 13:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox ==================== One Month Modified Files and Folders ======= 2014-07-16 17:38 - 2014-07-16 17:36 - 00006144 _____ () C:\Users\Internet\Downloads\FRST.txt 2014-07-16 17:38 - 2014-07-16 17:36 - 00000000 ____D () C:\FRST 2014-07-16 17:36 - 2014-07-16 17:36 - 02086912 _____ (Farbar) C:\Users\Internet\Downloads\FRST64.exe 2014-07-16 17:21 - 2014-03-18 19:25 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\Skype 2014-07-16 17:09 - 2014-03-30 18:33 - 00000000 ____D () C:\Users\Internet\AppData\Local\Warframe 2014-07-16 17:02 - 2014-03-16 20:39 - 01108139 _____ () C:\Windows\WindowsUpdate.log 2014-07-16 16:32 - 2014-07-16 16:28 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-07-16 16:32 - 2014-03-17 00:08 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-07-16 16:28 - 2014-07-16 16:28 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-07-16 16:28 - 2014-07-16 16:28 - 00000000 ____D () C:\Users\tanju\AppData\Local\Chromium 2014-07-16 16:27 - 2014-07-16 16:27 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-07-16 16:27 - 2014-05-04 15:53 - 00000000 ____D () C:\Users\tanju\AppData\Local\PunkBuster 2014-07-16 16:24 - 2009-07-14 06:45 - 00009920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-07-16 16:24 - 2009-07-14 06:45 - 00009920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-07-16 13:50 - 2014-07-04 13:40 - 00000000 ____D () C:\Users\tanju\AppData\Local\Warframe 2014-07-15 17:55 - 2014-07-15 17:55 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\GHISLER 2014-07-15 17:55 - 2014-07-15 17:54 - 00000000 ____D () C:\totalcmd 2014-07-15 17:54 - 2014-07-15 17:54 - 06370320 _____ (Ghisler Software GmbH) C:\Users\Internet\Downloads\tcm851ax32_64.exe 2014-07-15 17:54 - 2014-07-15 17:54 - 00000646 _____ () C:\Users\Public\Desktop\Total Commander 64 bit.lnk 2014-07-15 17:54 - 2014-07-15 17:54 - 00000632 _____ () C:\Users\Public\Desktop\Total Commander.lnk 2014-07-15 17:54 - 2014-07-15 17:54 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\GHISLER 2014-07-15 17:02 - 2014-06-06 19:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-07-15 17:02 - 2014-03-16 21:30 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-07-15 16:57 - 2014-07-15 16:57 - 00000000 ____D () C:\NVIDIA 2014-07-15 16:57 - 2014-07-15 16:55 - 281478056 _____ (NVIDIA Corporation) C:\Users\Internet\Downloads\337.88-desktop-win8-win7-winvista-64bit-international-whql(2).exe 2014-07-15 15:58 - 2014-07-15 15:58 - 00291344 _____ () C:\Windows\Minidump\071514-13977-01.dmp 2014-07-15 15:58 - 2014-07-15 13:35 - 436792005 _____ () C:\Windows\MEMORY.DMP 2014-07-15 15:40 - 2014-07-15 15:40 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\NVIDIA 2014-07-15 15:37 - 2014-07-15 15:37 - 00000000 ____D () C:\Users\tanju\AppData\Local\Macromedia 2014-07-15 15:35 - 2014-07-15 15:35 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\Mozilla 2014-07-15 15:35 - 2014-07-15 15:35 - 00000000 ____D () C:\Users\tanju\AppData\Local\Mozilla 2014-07-15 15:35 - 2014-05-18 13:37 - 00000000 ____D () C:\Users\tanju\AppData\Local\Nvidia Corporation 2014-07-15 15:34 - 2014-06-09 17:53 - 00000000 ____D () C:\Users\tanju\AppData\Local\NVIDIA 2014-07-15 15:33 - 2014-07-15 15:33 - 00291336 _____ () C:\Windows\Minidump\071514-13587-01.dmp 2014-07-15 13:35 - 2014-07-15 13:35 - 00291384 _____ () C:\Windows\Minidump\071514-13790-01.dmp 2014-07-15 13:35 - 2014-07-15 13:35 - 00000000 _____ () C:\Windows\setuperr.log 2014-07-15 12:36 - 2014-07-15 12:36 - 00000709 _____ () C:\Users\Internet\Desktop\TeamSpeak 3 Client.lnk 2014-07-15 12:36 - 2014-07-15 12:36 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2014-07-15 12:34 - 2014-07-15 12:34 - 27337256 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\TeamSpeak3-Client-win32-3.0.15.1.exe 2014-07-15 12:33 - 2014-06-24 15:57 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\uTorrent 2014-07-15 12:30 - 2014-07-15 12:30 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-07-15 12:30 - 2014-07-15 12:30 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-15 12:30 - 2014-03-16 20:25 - 00000000 ____D () C:\Windows\Panther 2014-07-15 12:29 - 2014-07-15 12:29 - 03736040 _____ (Piriform Ltd) C:\Users\Internet\Downloads\ccsetup415_slim.exe 2014-07-15 10:04 - 2014-07-15 10:04 - 00000512 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-07-15 10:04 - 2014-07-15 10:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-07-15 10:02 - 2014-07-15 10:02 - 01141680 _____ () C:\Users\Internet\Downloads\SteamSetup.exe 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 4.01 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\VLC Portable 1.17 2014-07-15 08:54 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\TS33 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\TS3 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\Mozilla 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 4.01 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Skype 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Gyazo 2014-07-14 15:59 - 2014-05-22 19:54 - 00000000 ____D () C:\ProgramData\AVG2014 2014-07-14 15:59 - 2014-05-22 19:46 - 00000000 ____D () C:\ProgramData\MFAData 2014-07-14 15:54 - 2014-05-22 19:54 - 00000000 ___HD () C:\$AVG 2014-07-14 14:41 - 2014-03-16 21:23 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-07-14 14:41 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help 2014-07-14 14:40 - 2014-03-16 21:30 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-07-13 23:19 - 2014-04-23 14:55 - 00000028 _____ () C:\Users\Internet\Desktop\kfZnN87.txt 2014-07-13 20:24 - 2014-07-13 17:51 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\EelguyPf 2014-07-13 17:51 - 2014-07-13 17:51 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\0A85EA09-C820-4812-AB12-5F2106E69751 2014-07-13 15:32 - 2014-07-13 15:28 - 00000000 ____D () C:\Users\Internet\Documents\Telltale Games 2014-07-10 21:07 - 2009-07-14 06:45 - 00274464 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-10 21:05 - 2009-07-14 20:18 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-10 21:02 - 2014-03-24 00:52 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-10 21:01 - 2014-03-24 00:52 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-07-09 19:06 - 2014-03-16 22:10 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-07-09 19:06 - 2014-03-16 22:10 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-08 17:42 - 2014-03-16 20:39 - 00000000 ____D () C:\Users\tanju 2014-07-04 21:05 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-07-04 17:17 - 2014-07-15 08:51 - 28431502 _____ () C:\Users\Internet\Downloads\Der Rabe.wav 2014-07-04 13:45 - 2014-07-04 13:45 - 00000000 ____D () C:\Users\tanju\AppData\Local\FalloutNV 2014-07-04 13:32 - 2014-07-04 13:32 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\Macromedia 2014-07-04 13:16 - 2014-07-04 13:16 - 00000000 __SHD () C:\Users\tanju\AppData\Local\EmieUserList 2014-07-04 13:16 - 2014-07-04 13:16 - 00000000 __SHD () C:\Users\tanju\AppData\Local\EmieSiteList 2014-07-04 13:15 - 2014-05-04 15:53 - 00000000 ____D () C:\Users\tanju\Documents\My Games 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software 2014-06-24 15:58 - 2014-06-24 15:58 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\uTorrent 2014-06-23 13:55 - 2014-03-19 16:57 - 00000024 _____ () C:\Users\Internet\random.dat 2014-06-23 13:52 - 2014-06-23 13:41 - 00000047 _____ () C:\Users\Internet\jagex_cl_oldschool_LIVE.dat 2014-06-23 13:41 - 2014-03-19 16:57 - 00000000 ____D () C:\Users\Internet\jagexcache 2014-06-23 13:41 - 2014-03-16 20:42 - 00000000 ____D () C:\Users\Internet 2014-06-23 13:36 - 2014-06-23 13:36 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-06-23 13:36 - 2014-06-23 13:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-06-23 13:36 - 2014-03-19 16:56 - 00000000 ____D () C:\ProgramData\Oracle 2014-06-20 22:14 - 2014-07-10 12:33 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-06-20 21:39 - 2014-07-10 12:33 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-06-19 12:23 - 2014-03-29 16:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-06-19 03:39 - 2014-07-10 12:33 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-06-19 03:06 - 2014-07-10 12:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-06-19 03:06 - 2014-07-10 12:33 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-06-19 02:48 - 2014-07-10 12:33 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-06-19 02:42 - 2014-07-10 12:33 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-06-19 02:42 - 2014-07-10 12:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-06-19 02:41 - 2014-07-10 12:33 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-06-19 02:41 - 2014-07-10 12:33 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-06-19 02:32 - 2014-07-10 12:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-06-19 02:31 - 2014-07-10 12:33 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-06-19 02:26 - 2014-07-10 12:33 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-06-19 02:24 - 2014-07-10 12:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-06-19 02:24 - 2014-07-10 12:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-06-19 02:23 - 2014-07-10 12:33 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-06-19 02:16 - 2014-07-10 12:33 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-06-19 02:14 - 2014-07-10 12:33 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-06-19 02:09 - 2014-07-10 12:33 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-06-19 01:59 - 2014-07-10 12:33 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-06-19 01:56 - 2014-07-10 12:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-06-19 01:53 - 2014-07-10 12:33 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-06-19 01:51 - 2014-07-10 12:33 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-06-19 01:50 - 2014-07-10 12:33 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-06-19 01:48 - 2014-07-10 12:33 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-06-19 01:39 - 2014-07-10 12:33 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-06-19 01:38 - 2014-07-10 12:33 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-06-19 01:37 - 2014-07-10 12:33 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-06-19 01:36 - 2014-07-10 12:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-06-19 01:35 - 2014-07-10 12:33 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-06-19 01:33 - 2014-07-10 12:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-06-19 01:32 - 2014-07-10 12:33 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-06-19 01:28 - 2014-07-10 12:33 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-06-19 01:28 - 2014-07-10 12:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-06-19 01:27 - 2014-07-10 12:33 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-06-19 01:27 - 2014-07-10 12:33 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-06-19 01:25 - 2014-07-10 12:33 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-06-19 01:23 - 2014-07-10 12:33 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-06-19 01:22 - 2014-07-10 12:33 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-06-19 01:12 - 2014-07-10 12:33 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-06-19 01:06 - 2014-07-10 12:33 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-06-19 01:01 - 2014-07-10 12:33 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-06-19 00:59 - 2014-07-10 12:33 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-06-19 00:58 - 2014-07-10 12:33 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-06-19 00:58 - 2014-07-10 12:33 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-06-19 00:52 - 2014-07-10 12:33 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-06-19 00:51 - 2014-07-10 12:33 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-06-19 00:49 - 2014-07-10 12:33 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-06-19 00:46 - 2014-07-10 12:33 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-06-19 00:45 - 2014-07-10 12:33 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-06-19 00:35 - 2014-07-10 12:33 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-06-19 00:34 - 2014-07-10 12:33 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-06-19 00:15 - 2014-07-10 12:33 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-06-19 00:13 - 2014-07-10 12:33 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-06-19 00:09 - 2014-07-10 12:33 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-06-19 00:07 - 2014-07-10 12:33 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-06-18 13:11 - 2014-06-18 13:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-06-18 04:18 - 2014-07-10 12:33 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-06-18 03:51 - 2014-07-10 12:33 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-06-18 03:10 - 2014-07-10 12:33 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys Files to move or delete: ==================== C:\Users\Internet\jagex_cl_oldschool_LIVE.dat C:\Users\Internet\jagex_cl_runescape_LIVE.dat C:\Users\Internet\random.dat Some content of TEMP: ==================== C:\Users\Internet\AppData\Local\Temp\avgnt.exe C:\Users\tanju\AppData\Local\Temp\nv3DVStreaming.dll C:\Users\tanju\AppData\Local\Temp\nvSCPAPI.dll C:\Users\tanju\AppData\Local\Temp\nvStereoApiI.dll C:\Users\tanju\AppData\Local\Temp\nvStInst.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-05 14:25 ==================== End Of Log ============================ Code:
ATTFilter AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Ashampoo WinOptimizer 10 v.10.3.0 (HKLM-x32\...\{4209F371-88D4-AB00-ED2B-D6520C84D9D5}_is1) (Version: 10.03.00 - Ashampoo GmbH & Co. KG) ATI Catalyst Install Manager (HKLM\...\{62140B07-129A-2BD0-81D2-2A1A7408ADC8}) (Version: 3.0.762.0 - ATI Technologies, Inc.) CCleaner (HKLM\...\CCleaner) (Version: 4.15 - Piriform) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) EPU-4 Engine (HKLM-x32\...\{8F66047B-1AF3-40D9-80D7-106E2EDC2C2A}) (Version: 1.02.01 - ) Gyazo 2.0.2 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.) IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.9 - HTC) Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle) Java Auto Updater (x32 Version: 2.1.60.19 - Oracle, Inc.) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Extended DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) MorphVOX Junior (HKLM-x32\...\{E6C7380F-15DD-445E-BA02-B7A180BA0A5A}) (Version: 2.8.1 - Screaming Bee) Mozilla Firefox 30.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 de)) (Version: 30.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) NVIDIA 3D Vision Controller-Treiber 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 337.88 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 337.88 - NVIDIA Corporation) NVIDIA GeForce Experience 2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 337.88 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA ShadowPlay 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 337.88 (Version: 337.88 - NVIDIA Corporation) Hidden NVIDIA Update 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 14.6.22 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.46.610.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6446 - Realtek Semiconductor Corp.) SHIELD Streaming (Version: 2.1.214 - NVIDIA Corporation) Hidden Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2836939v3) (Version: 3 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2836939v3) (Version: 3 - Microsoft Corporation) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Warframe (HKLM-x32\...\Steam App 230410) (Version: - Digital Extremes) ==================== Restore Points ========================= 21-06-2014 12:50:56 Geplanter Prüfpunkt 23-06-2014 11:35:30 Installed Java 7 Update 60 02-07-2014 14:07:00 DirectX wurde installiert 04-07-2014 11:40:27 DirectX wurde installiert 08-07-2014 11:55:00 DirectX wurde installiert 10-07-2014 19:00:18 Windows Update 14-07-2014 13:51:42 Removed AVG 2014 14-07-2014 13:54:59 Removed AVG 2014 ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {156B5A74-3652-49ED-AA80-94BFDBA94B3F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-06-24] (Piriform Ltd) Task: {189F8912-8E8C-4F67-8F0C-4C5DBA55DC8E} - System32\Tasks\ASUS\ASUS SIX Engine => C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe [2010-02-03] (ASUSTeK Computer Inc.) ==================== Loaded Modules (whitelisted) ============= 2014-07-14 14:41 - 2014-05-20 03:25 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-10-17 15:27 - 2013-10-17 15:27 - 00166912 _____ () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe 2014-07-16 16:27 - 2014-07-16 16:27 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-07-15 10:05 - 2014-07-12 02:53 - 01116672 _____ () D:\Steam\libavcodec-55.dll 2014-07-15 10:05 - 2014-07-12 02:53 - 00438784 _____ () D:\Steam\libavutil-53.dll 2014-07-15 10:05 - 2014-07-12 02:53 - 00399360 _____ () D:\Steam\libavformat-55.dll 2014-07-15 10:05 - 2014-07-12 02:53 - 00331264 _____ () D:\Steam\libavresample-1.dll 2014-07-15 10:05 - 2014-06-27 00:40 - 00764416 _____ () D:\Steam\SDL2.dll 2014-07-15 10:05 - 2014-07-12 02:53 - 02139328 _____ () D:\Steam\video.dll 2014-07-15 10:05 - 2014-04-29 02:37 - 00519168 _____ () D:\Steam\libswscale-2.dll 2014-07-15 10:05 - 2014-07-12 02:53 - 01116864 _____ () D:\Steam\bin\chromehtml.DLL 2014-07-15 10:05 - 2014-05-02 01:35 - 20628160 _____ () D:\Steam\bin\libcef.dll 2014-06-18 13:11 - 2014-06-18 13:11 - 03852912 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/16/2014 05:37:36 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm FRST64.exe, Version 15.7.2014.1 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 408 Startzeit: 01cfa10bad6eb9f9 Endzeit: 3 Anwendungspfad: C:\Users\Internet\Downloads\FRST64.exe Berichts-ID: Error: (07/16/2014 05:04:49 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten. Error: (01/01/2002 00:07:50 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten. Error: (07/15/2014 05:40:58 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten. Error: (07/15/2014 05:05:23 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten. Error: (07/15/2014 04:56:35 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten. Error: (01/01/2002 00:00:50 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (01/01/2002 00:00:50 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (01/01/2002 00:00:50 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD endpoint registration failed [0] Error: (07/15/2014 04:47:49 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcCan't create NSS process. [0] System errors: ============= Error: (01/17/2014 05:09:30 PM) (Source: Microsoft-Windows-WHEA-Logger) (EventID: 18) (User: NT-AUTORITÄT) Description: Schwerwiegender Hardwarefehler. Gemeldet von Komponente: Prozessorkern Fehlerquelle: 3 Fehlertyp: 9 Prozessor-ID: 2 Die Detailansicht dieses Eintrags beinhaltet weitere Informationen. Error: (01/17/2014 05:09:20 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x00000124 (0x0000000000000000, 0xfffffa8007a688f8, 0x0000000000000000, 0x0000000000000000)C:\Windows\Minidump\011714-16302-01.dmp011714-16302-01 Error: (01/17/2014 05:09:19 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 16.07.2014 um 17:06:08 unerwartet heruntergefahren. Error: (07/15/2014 04:47:52 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Server" wurde mit folgendem Fehler beendet: %%1062 Error: (07/15/2014 04:46:53 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Server" wurde mit folgendem Fehler beendet: %%1062 Error: (07/15/2014 04:46:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "WinHTTP-Web Proxy Auto-Discovery-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (07/15/2014 04:46:50 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Der Dienst "WinHttpAutoProxySvc" konnte sich nicht als "NT AUTHORITY\LocalService" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1352 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Error: (07/15/2014 04:46:03 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Server" wurde mit folgendem Fehler beendet: %%1062 Error: (07/15/2014 04:45:10 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Server" wurde mit folgendem Fehler beendet: %%1062 Error: (07/15/2014 03:58:45 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x00000124 (0x0000000000000000, 0xfffffa800770b028, 0x00000000b6004000, 0x00000000e9000135)C:\Windows\MEMORY.DMP071514-13977-01 Microsoft Office Sessions: ========================= Error: (07/16/2014 05:37:36 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: FRST64.exe15.7.2014.140801cfa10bad6eb9f93C:\Users\Internet\Downloads\FRST64.exe Error: (07/16/2014 05:04:49 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: 1600000000FF3B0000FF3B0000980B0000 Error: (01/01/2002 00:07:50 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: 1600000000FF3B0000FF3B0000980B0000 Error: (07/15/2014 05:40:58 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: 1600000000FF3B0000FF3B0000980B0000 Error: (07/15/2014 05:05:23 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: 1600000000FF3B0000FF3B0000980B0000 Error: (07/15/2014 04:56:35 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: 1600000000FF3B0000FF3B0000980B0000 Error: (01/01/2002 00:00:50 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (01/01/2002 00:00:50 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (01/01/2002 00:00:50 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD endpoint registration failed [0] Error: (07/15/2014 04:47:49 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcCan't create NSS process. [0] ==================== Memory info =========================== Percentage of memory in use: 36% Total physical RAM: 8190.12 MB Available physical RAM: 5175.05 MB Total Pagefile: 9212.3 MB Available Pagefile: 5628.09 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:200.75 GB) (Free:160.36 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:265.01 GB) (Free:237.52 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== |
16.07.2014, 17:20 | #6 |
/// Malwareteam | Regelmäßige Bluescreens nur beim Spielen Hallo Schritt 1: Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 2: Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 3: Lade dir TFC (TempFileCleaner von Oldtimer) herunter und speichere es auf den Desktop.
Schritt 4: Downloade Dir bitte Malwarebytes Anti-Malware
Schritt 5: ESET Online Scanner
Schritt 6: erstelle ein neues FRST Logfile und poste es hier.
__________________ --> Regelmäßige Bluescreens nur beim Spielen |
16.07.2014, 17:44 | #7 |
| Regelmäßige Bluescreens nur beim SpielenCode:
ATTFilter ´***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\Software\AVG Secure Search ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17207 -\\ Mozilla Firefox v30.0 (de) [ Datei : C:\Users\Internet\AppData\Roaming\Mozilla\Firefox\Profiles\yqyl6wqc.default\prefs.js ] [ Datei : C:\Users\tanju\AppData\Roaming\Mozilla\Firefox\Profiles\2synupcv.default\prefs.js ] ************************* AdwCleaner[R0].txt - [968 octets] - [01/01/2002 06:31:14] AdwCleaner[S0].txt - [892 octets] - [01/01/2002 06:32:10] ########## EOF - \AdwCleaner\AdwCleaner[S0].txt - [951 octets] ########## Weitere folgen... Mbam -> Code:
ATTFilter Version: 2.00.2.1012 Malware Datenbank: v2014.07.16.06 Rootkit Datenbank: v2014.07.14.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Self-protection: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: tanju Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 306350 Verstrichene Zeit: 6 Min, 35 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 0 (No malicious items detected) Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 0 (No malicious items detected) Ordner: 1 Backdoor.Agent.RND, C:\Users\Internet\AppData\Roaming\EelguyPf, In Quarantäne, [ca6c9b057efd3afcb4a88d1f03ffab55], Dateien: 3 Bifrose.Trace, C:\Users\Internet\AppData\Roaming\logs.dat, In Quarantäne, [80b66c34502bc76fe7e928ed3fc44ab6], Bifrose.Trace, C:\Users\tanju\AppData\Roaming\logs.dat, In Quarantäne, [e254c2dec5b60c2a3b95e53044bfc53b], Backdoor.Agent.RND, C:\Users\Internet\AppData\Roaming\EelguyPf\f1YRdTk.exe.lnk, In Quarantäne, [ca6c9b057efd3afcb4a88d1f03ffab55], Physische Sektoren: 0 (No malicious items detected) (end) Nächste logfile von frst: Code:
ATTFilter ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe () C:\Windows\SysWOW64\PnkBstrA.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12681320 2011-08-25] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation) HKLM\...\RunOnce: [*WerKernelReporting] - %SYSTEMROOT%\SYSTEM32\WerFault.exe -k -rq [415232 2009-07-14] (Microsoft Corporation) HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2014-04-14] (Microsoft Corporation) HKU\S-1-5-21-3047204303-1143388320-970495031-1000\...\RunOnce: [Report] - \AdwCleaner\AdwCleaner[S0].txt HKU\S-1-5-21-3047204303-1143388320-970495031-1001\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [2990304 2013-10-30] (Nota Inc.) ==================== Internet (Whitelisted) ==================== SearchScopes: HKLM-x32 - DefaultScope value is missing. BHO-x32: No Name -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> No File BHO-x32: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2 FireFox: ======== FF ProfilePath: C:\Users\tanju\AppData\Roaming\Mozilla\Firefox\Profiles\2synupcv.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 - D:\Programme\Java\bin\dtplugin\npDeployJava1.dll No File FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 - D:\Programme\Java\bin\plugin2\npjp2.dll No File FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml ==================== Services (Whitelisted) ================= R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation) R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed] R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-07-16] () ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] () S3 HTCAND64; C:\Windows\System32\Drivers\ANDROIDUSB.sys [33736 2009-11-02] (HTC, Corporation) [File not signed] R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-17] () R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 UHSfiltv; C:\Windows\System32\drivers\UHSfiltv.sys [23552 2011-07-15] (Creative Technology Ltd.) [File not signed] U3 DfSdkS; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-16 19:01 - 2014-07-16 19:01 - 02347384 _____ (ESET) C:\Users\Internet\Downloads\esetsmartinstaller_deu.exe 2014-07-16 18:57 - 2014-07-16 18:57 - 00001567 _____ () C:\Users\tanju\Desktop\mbam.txt 2014-07-16 18:47 - 2014-07-16 18:48 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-07-16 18:47 - 2014-07-16 18:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-07-16 18:47 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-07-16 18:47 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-07-16 18:47 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-07-16 18:04 - 2014-07-16 18:04 - 00291344 _____ () C:\Windows\Minidump\071614-17113-01.dmp 2014-07-16 17:44 - 2014-07-16 17:44 - 00291368 _____ () C:\Windows\Minidump\071614-15802-01.dmp 2014-07-16 17:38 - 2014-07-16 17:38 - 00018448 _____ () C:\Users\Internet\Downloads\Addition.txt 2014-07-16 17:36 - 2014-07-16 19:42 - 00005959 _____ () C:\Users\Internet\Downloads\FRST.txt 2014-07-16 17:36 - 2014-07-16 19:42 - 00000000 ____D () C:\FRST 2014-07-16 17:36 - 2014-07-16 17:36 - 02086912 _____ (Farbar) C:\Users\Internet\Downloads\FRST64.exe 2014-07-16 16:28 - 2014-07-16 16:32 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-07-16 16:28 - 2014-07-16 16:28 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-07-16 16:28 - 2014-07-16 16:28 - 00000000 ____D () C:\Users\tanju\AppData\Local\Chromium 2014-07-16 16:27 - 2014-07-16 16:27 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-07-16 06:38 - 2014-07-16 06:39 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Internet\Downloads\mbam-setup-2.0.2.1012.exe 2014-07-15 17:55 - 2014-07-15 17:55 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\GHISLER 2014-07-15 17:54 - 2014-07-15 17:55 - 00000000 ____D () C:\totalcmd 2014-07-15 17:54 - 2014-07-15 17:54 - 06370320 _____ (Ghisler Software GmbH) C:\Users\Internet\Downloads\tcm851ax32_64.exe 2014-07-15 17:54 - 2014-07-15 17:54 - 00000646 _____ () C:\Users\Public\Desktop\Total Commander 64 bit.lnk 2014-07-15 17:54 - 2014-07-15 17:54 - 00000632 _____ () C:\Users\Public\Desktop\Total Commander.lnk 2014-07-15 17:54 - 2014-07-15 17:54 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\GHISLER 2014-07-15 17:02 - 2014-05-20 01:10 - 00601432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-07-15 17:00 - 2014-05-20 04:44 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-07-15 17:00 - 2014-05-20 04:44 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-07-15 16:57 - 2014-07-15 16:57 - 00000000 ____D () C:\NVIDIA 2014-07-15 16:55 - 2014-07-15 16:57 - 281478056 _____ (NVIDIA Corporation) C:\Users\Internet\Downloads\337.88-desktop-win8-win7-winvista-64bit-international-whql(2).exe 2014-07-15 15:58 - 2014-07-15 15:58 - 00291344 _____ () C:\Windows\Minidump\071514-13977-01.dmp 2014-07-15 15:40 - 2014-07-15 15:40 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\NVIDIA 2014-07-15 15:37 - 2014-07-15 15:37 - 00000000 ____D () C:\Users\tanju\AppData\Local\Macromedia 2014-07-15 15:35 - 2014-07-15 15:35 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\Mozilla 2014-07-15 15:35 - 2014-07-15 15:35 - 00000000 ____D () C:\Users\tanju\AppData\Local\Mozilla 2014-07-15 15:33 - 2014-07-15 15:33 - 00291336 _____ () C:\Windows\Minidump\071514-13587-01.dmp 2014-07-15 13:35 - 2014-07-16 18:04 - 427821893 _____ () C:\Windows\MEMORY.DMP 2014-07-15 13:35 - 2014-07-15 13:35 - 00291384 _____ () C:\Windows\Minidump\071514-13790-01.dmp 2014-07-15 13:35 - 2014-07-15 13:35 - 00000000 _____ () C:\Windows\setuperr.log 2014-07-15 13:35 - 2002-01-01 07:33 - 00002847 _____ () C:\Windows\setupact.log 2014-07-15 12:36 - 2014-07-15 12:36 - 00000709 _____ () C:\Users\Internet\Desktop\TeamSpeak 3 Client.lnk 2014-07-15 12:36 - 2014-07-15 12:36 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2014-07-15 12:34 - 2014-07-15 12:34 - 27337256 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\TeamSpeak3-Client-win32-3.0.15.1.exe 2014-07-15 12:30 - 2014-07-15 12:30 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-07-15 12:30 - 2014-07-15 12:30 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-15 12:29 - 2014-07-15 12:29 - 03736040 _____ (Piriform Ltd) C:\Users\Internet\Downloads\ccsetup415_slim.exe 2014-07-15 10:04 - 2014-07-15 10:04 - 00000512 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-07-15 10:04 - 2014-07-15 10:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-07-15 10:02 - 2014-07-15 10:02 - 01141680 _____ () C:\Users\Internet\Downloads\SteamSetup.exe 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 4.01 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\VLC Portable 1.17 2014-07-15 08:53 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\TS33 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\TS3 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\Mozilla 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 4.01 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Skype 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Gyazo 2014-07-15 08:51 - 2014-07-04 17:17 - 28431502 _____ () C:\Users\Internet\Downloads\Der Rabe.wav 2014-07-15 08:51 - 2014-04-08 14:42 - 00002991 _____ () C:\Users\Internet\Downloads\Beewee7.odt 2014-07-15 08:51 - 2014-04-08 14:38 - 00003010 _____ () C:\Users\Internet\Downloads\Beewee6.odt 2014-07-15 08:51 - 2014-04-08 14:34 - 00003002 _____ () C:\Users\Internet\Downloads\Beewee5.odt 2014-07-15 08:51 - 2014-04-08 14:29 - 00003011 _____ () C:\Users\Internet\Downloads\Beewee4.odt 2014-07-15 08:51 - 2014-04-08 14:23 - 00003013 _____ () C:\Users\Internet\Downloads\Beewee3.odt 2014-07-15 08:51 - 2014-04-08 14:13 - 00003006 _____ () C:\Users\Internet\Downloads\Beewee2.odt 2014-07-15 08:51 - 2014-04-08 14:08 - 00003011 _____ () C:\Users\Internet\Downloads\Beewee.odt 2014-07-15 08:51 - 2014-04-08 14:07 - 00003052 _____ () C:\Users\Internet\Downloads\Beewee1.odt 2014-07-15 08:51 - 2014-02-28 19:43 - 00014969 _____ () C:\Users\Internet\Downloads\Beewee9.odt 2014-07-15 08:51 - 2014-02-28 19:42 - 00014769 _____ () C:\Users\Internet\Downloads\Beewee8.odt 2014-07-15 08:51 - 2012-11-03 19:10 - 09128944 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\ts3client_win32.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00399344 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\update.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00189936 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\package_inst.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00184320 _____ () C:\Users\Internet\Downloads\QtSql4.dll 2014-07-15 08:51 - 2012-11-03 19:10 - 00110106 _____ () C:\Users\Internet\Downloads\createfileassoc.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00001454 _____ () C:\Users\Internet\Downloads\mirrors.ini 2014-07-15 08:51 - 2012-06-23 13:31 - 00042496 _____ () C:\Users\Internet\Downloads\funnyvoice13.exe 2014-07-15 08:51 - 2012-04-25 15:52 - 08674800 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\_old_ts3client_win32.exe 2014-07-15 08:51 - 2012-04-25 15:52 - 00400368 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\_old_update.exe 2014-07-15 08:51 - 2012-04-25 15:52 - 00180720 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\error_report.exe 2014-07-15 08:51 - 2012-01-01 15:16 - 00121942 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\Uninstall.exe 2014-07-15 08:51 - 2012-01-01 15:15 - 29603832 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\TeamSpeak3-Client-win32-3.0.2.exe 2014-07-15 08:51 - 2011-11-16 10:41 - 07859200 _____ () C:\Users\Internet\Downloads\QtGui4.dll 2014-07-15 08:51 - 2011-11-16 10:41 - 02210816 _____ () C:\Users\Internet\Downloads\QtCore4.dll 2014-07-15 08:51 - 2011-11-16 10:41 - 00814080 _____ () C:\Users\Internet\Downloads\QtNetwork4.dll 2014-07-14 14:41 - 2014-05-20 04:44 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-07-14 14:41 - 2014-05-20 04:44 - 00052056 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 06769096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 03514144 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 02560968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 00927520 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-07-14 14:41 - 2014-05-20 03:25 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-07-14 14:41 - 2014-05-15 01:49 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin 2014-07-14 14:41 - 2002-01-01 07:33 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-07-14 14:40 - 2014-05-20 04:44 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 00026069 _____ () C:\Windows\system32\nvinfo.pb 2014-07-14 14:40 - 2014-03-04 16:35 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433523.dll 2014-07-14 14:40 - 2014-03-04 16:35 - 01516488 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433523.dll 2014-07-14 14:40 - 2013-11-28 15:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-07-14 14:40 - 2013-11-28 15:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-07-14 14:40 - 2013-11-22 10:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-07-13 17:51 - 2014-07-13 17:51 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\0A85EA09-C820-4812-AB12-5F2106E69751 2014-07-13 15:28 - 2014-07-13 15:32 - 00000000 ____D () C:\Users\Internet\Documents\Telltale Games 2014-07-10 12:33 - 2014-06-20 22:14 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-10 12:33 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-10 12:33 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-10 12:33 - 2014-06-19 03:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-10 12:33 - 2014-06-19 03:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-07-10 12:33 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-10 12:33 - 2014-06-19 02:42 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-10 12:33 - 2014-06-19 02:42 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-10 12:33 - 2014-06-19 02:41 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-07-10 12:33 - 2014-06-19 02:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-07-10 12:33 - 2014-06-19 02:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-10 12:33 - 2014-06-19 02:31 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-10 12:33 - 2014-06-19 02:26 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-10 12:33 - 2014-06-19 02:24 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-10 12:33 - 2014-06-19 02:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-07-10 12:33 - 2014-06-19 02:23 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-07-10 12:33 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-10 12:33 - 2014-06-19 02:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-07-10 12:33 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-10 12:33 - 2014-06-19 01:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-07-10 12:33 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-10 12:33 - 2014-06-19 01:53 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-10 12:33 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-10 12:33 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-10 12:33 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-10 12:33 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-10 12:33 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-10 12:33 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-10 12:33 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-07-10 12:33 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-07-10 12:33 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-10 12:33 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-10 12:33 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-10 12:33 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-10 12:33 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-10 12:33 - 2014-06-19 01:27 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-07-10 12:33 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-10 12:33 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-10 12:33 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-07-10 12:33 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-10 12:33 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-07-10 12:33 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-10 12:33 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-10 12:33 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-10 12:33 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-10 12:33 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-10 12:33 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-10 12:33 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-10 12:33 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-07-10 12:33 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-10 12:33 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-10 12:33 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-10 12:33 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-10 12:33 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-10 12:33 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-10 12:33 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-10 12:33 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-10 12:33 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-10 12:33 - 2014-06-18 03:10 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-10 12:33 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-10 12:33 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-10 12:33 - 2014-06-05 16:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-10 12:33 - 2014-06-05 16:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-07-10 12:33 - 2014-06-05 16:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-07-10 12:33 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-04 13:45 - 2014-07-04 13:45 - 00000000 ____D () C:\Users\tanju\AppData\Local\FalloutNV 2014-07-04 13:40 - 2014-07-16 13:50 - 00000000 ____D () C:\Users\tanju\AppData\Local\Warframe 2014-07-04 13:32 - 2014-07-04 13:32 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\Macromedia 2014-07-04 13:16 - 2014-07-04 13:16 - 00000000 __SHD () C:\Users\tanju\AppData\Local\EmieUserList 2014-07-04 13:16 - 2014-07-04 13:16 - 00000000 __SHD () C:\Users\tanju\AppData\Local\EmieSiteList 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software 2014-06-24 15:58 - 2014-06-24 15:58 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\uTorrent 2014-06-24 15:57 - 2014-07-15 12:33 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\uTorrent 2014-06-23 13:41 - 2014-06-23 13:52 - 00000047 _____ () C:\Users\Internet\jagex_cl_oldschool_LIVE.dat 2014-06-23 13:36 - 2014-06-23 13:36 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-06-23 13:36 - 2014-06-23 13:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-06-18 13:11 - 2014-06-18 13:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox ==================== One Month Modified Files and Folders ======= 2014-07-16 19:42 - 2014-07-16 17:36 - 00005959 _____ () C:\Users\Internet\Downloads\FRST.txt 2014-07-16 19:42 - 2014-07-16 17:36 - 00000000 ____D () C:\FRST 2014-07-16 19:41 - 2009-07-14 06:45 - 00009920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-07-16 19:41 - 2009-07-14 06:45 - 00009920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-07-16 19:13 - 2014-03-18 19:25 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\Skype 2014-07-16 19:01 - 2014-07-16 19:01 - 02347384 _____ (ESET) C:\Users\Internet\Downloads\esetsmartinstaller_deu.exe 2014-07-16 18:57 - 2014-07-16 18:57 - 00001567 _____ () C:\Users\tanju\Desktop\mbam.txt 2014-07-16 18:48 - 2014-07-16 18:47 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-07-16 18:47 - 2014-07-16 18:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-07-16 18:47 - 2014-05-07 19:07 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-07-16 18:04 - 2014-07-16 18:04 - 00291344 _____ () C:\Windows\Minidump\071614-17113-01.dmp 2014-07-16 18:04 - 2014-07-15 13:35 - 427821893 _____ () C:\Windows\MEMORY.DMP 2014-07-16 18:04 - 2014-03-17 14:18 - 00000000 ____D () C:\Windows\Minidump 2014-07-16 17:58 - 2014-03-30 18:33 - 00000000 ____D () C:\Users\Internet\AppData\Local\Warframe 2014-07-16 17:44 - 2014-07-16 17:44 - 00291368 _____ () C:\Windows\Minidump\071614-15802-01.dmp 2014-07-16 17:38 - 2014-07-16 17:38 - 00018448 _____ () C:\Users\Internet\Downloads\Addition.txt 2014-07-16 17:36 - 2014-07-16 17:36 - 02086912 _____ (Farbar) C:\Users\Internet\Downloads\FRST64.exe 2014-07-16 16:32 - 2014-07-16 16:28 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-07-16 16:32 - 2014-03-17 00:08 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-07-16 16:28 - 2014-07-16 16:28 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-07-16 16:28 - 2014-07-16 16:28 - 00000000 ____D () C:\Users\tanju\AppData\Local\Chromium 2014-07-16 16:27 - 2014-07-16 16:27 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-07-16 16:27 - 2014-05-04 15:53 - 00000000 ____D () C:\Users\tanju\AppData\Local\PunkBuster 2014-07-16 13:50 - 2014-07-04 13:40 - 00000000 ____D () C:\Users\tanju\AppData\Local\Warframe 2014-07-16 06:39 - 2014-07-16 06:38 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Internet\Downloads\mbam-setup-2.0.2.1012.exe 2014-07-15 17:55 - 2014-07-15 17:55 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\GHISLER 2014-07-15 17:55 - 2014-07-15 17:54 - 00000000 ____D () C:\totalcmd 2014-07-15 17:54 - 2014-07-15 17:54 - 06370320 _____ (Ghisler Software GmbH) C:\Users\Internet\Downloads\tcm851ax32_64.exe 2014-07-15 17:54 - 2014-07-15 17:54 - 00000646 _____ () C:\Users\Public\Desktop\Total Commander 64 bit.lnk 2014-07-15 17:54 - 2014-07-15 17:54 - 00000632 _____ () C:\Users\Public\Desktop\Total Commander.lnk 2014-07-15 17:54 - 2014-07-15 17:54 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\GHISLER 2014-07-15 17:02 - 2014-06-06 19:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-07-15 17:02 - 2014-03-16 21:30 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-07-15 16:57 - 2014-07-15 16:57 - 00000000 ____D () C:\NVIDIA 2014-07-15 16:57 - 2014-07-15 16:55 - 281478056 _____ (NVIDIA Corporation) C:\Users\Internet\Downloads\337.88-desktop-win8-win7-winvista-64bit-international-whql(2).exe 2014-07-15 15:58 - 2014-07-15 15:58 - 00291344 _____ () C:\Windows\Minidump\071514-13977-01.dmp 2014-07-15 15:40 - 2014-07-15 15:40 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\NVIDIA 2014-07-15 15:37 - 2014-07-15 15:37 - 00000000 ____D () C:\Users\tanju\AppData\Local\Macromedia 2014-07-15 15:35 - 2014-07-15 15:35 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\Mozilla 2014-07-15 15:35 - 2014-07-15 15:35 - 00000000 ____D () C:\Users\tanju\AppData\Local\Mozilla 2014-07-15 15:35 - 2014-05-18 13:37 - 00000000 ____D () C:\Users\tanju\AppData\Local\Nvidia Corporation 2014-07-15 15:34 - 2014-06-09 17:53 - 00000000 ____D () C:\Users\tanju\AppData\Local\NVIDIA 2014-07-15 15:33 - 2014-07-15 15:33 - 00291336 _____ () C:\Windows\Minidump\071514-13587-01.dmp 2014-07-15 13:35 - 2014-07-15 13:35 - 00291384 _____ () C:\Windows\Minidump\071514-13790-01.dmp 2014-07-15 13:35 - 2014-07-15 13:35 - 00000000 _____ () C:\Windows\setuperr.log 2014-07-15 12:36 - 2014-07-15 12:36 - 00000709 _____ () C:\Users\Internet\Desktop\TeamSpeak 3 Client.lnk 2014-07-15 12:36 - 2014-07-15 12:36 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2014-07-15 12:34 - 2014-07-15 12:34 - 27337256 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\TeamSpeak3-Client-win32-3.0.15.1.exe 2014-07-15 12:33 - 2014-06-24 15:57 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\uTorrent 2014-07-15 12:30 - 2014-07-15 12:30 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-07-15 12:30 - 2014-07-15 12:30 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-15 12:30 - 2014-03-16 20:25 - 00000000 ____D () C:\Windows\Panther 2014-07-15 12:29 - 2014-07-15 12:29 - 03736040 _____ (Piriform Ltd) C:\Users\Internet\Downloads\ccsetup415_slim.exe 2014-07-15 10:04 - 2014-07-15 10:04 - 00000512 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-07-15 10:04 - 2014-07-15 10:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-07-15 10:02 - 2014-07-15 10:02 - 01141680 _____ () C:\Users\Internet\Downloads\SteamSetup.exe 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 4.01 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\VLC Portable 1.17 2014-07-15 08:54 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\TS33 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\TS3 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\Mozilla 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 4.01 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Skype 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Gyazo 2014-07-14 15:59 - 2014-05-22 19:54 - 00000000 ____D () C:\ProgramData\AVG2014 2014-07-14 15:59 - 2014-05-22 19:46 - 00000000 ____D () C:\ProgramData\MFAData 2014-07-14 15:54 - 2014-05-22 19:54 - 00000000 ___HD () C:\$AVG 2014-07-14 14:41 - 2014-03-16 21:23 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-07-14 14:41 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help 2014-07-14 14:40 - 2014-03-16 21:30 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-07-13 23:19 - 2014-04-23 14:55 - 00000028 _____ () C:\Users\Internet\Desktop\kfZnN87.txt 2014-07-13 17:51 - 2014-07-13 17:51 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\0A85EA09-C820-4812-AB12-5F2106E69751 2014-07-13 15:32 - 2014-07-13 15:28 - 00000000 ____D () C:\Users\Internet\Documents\Telltale Games 2014-07-10 21:07 - 2009-07-14 06:45 - 00274464 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-10 21:05 - 2009-07-14 20:18 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-10 21:02 - 2014-03-24 00:52 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-10 21:01 - 2014-03-24 00:52 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-07-09 19:06 - 2014-03-16 22:10 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-07-09 19:06 - 2014-03-16 22:10 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-08 17:42 - 2014-03-16 20:39 - 00000000 ____D () C:\Users\tanju 2014-07-04 21:05 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-07-04 17:17 - 2014-07-15 08:51 - 28431502 _____ () C:\Users\Internet\Downloads\Der Rabe.wav 2014-07-04 13:45 - 2014-07-04 13:45 - 00000000 ____D () C:\Users\tanju\AppData\Local\FalloutNV 2014-07-04 13:32 - 2014-07-04 13:32 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\Macromedia 2014-07-04 13:16 - 2014-07-04 13:16 - 00000000 __SHD () C:\Users\tanju\AppData\Local\EmieUserList 2014-07-04 13:16 - 2014-07-04 13:16 - 00000000 __SHD () C:\Users\tanju\AppData\Local\EmieSiteList 2014-07-04 13:15 - 2014-05-04 15:53 - 00000000 ____D () C:\Users\tanju\Documents\My Games 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software 2014-06-24 15:58 - 2014-06-24 15:58 - 00000000 ____D () C:\Users\tanju\AppData\Roaming\uTorrent 2014-06-23 13:55 - 2014-03-19 16:57 - 00000024 _____ () C:\Users\Internet\random.dat 2014-06-23 13:52 - 2014-06-23 13:41 - 00000047 _____ () C:\Users\Internet\jagex_cl_oldschool_LIVE.dat 2014-06-23 13:41 - 2014-03-19 16:57 - 00000000 ____D () C:\Users\Internet\jagexcache 2014-06-23 13:41 - 2014-03-16 20:42 - 00000000 ____D () C:\Users\Internet 2014-06-23 13:36 - 2014-06-23 13:36 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-06-23 13:36 - 2014-06-23 13:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-06-23 13:36 - 2014-03-19 16:56 - 00000000 ____D () C:\ProgramData\Oracle 2014-06-20 22:14 - 2014-07-10 12:33 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-06-20 21:39 - 2014-07-10 12:33 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-06-19 12:23 - 2014-03-29 16:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-06-19 03:39 - 2014-07-10 12:33 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-06-19 03:06 - 2014-07-10 12:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-06-19 03:06 - 2014-07-10 12:33 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-06-19 02:48 - 2014-07-10 12:33 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-06-19 02:42 - 2014-07-10 12:33 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-06-19 02:42 - 2014-07-10 12:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-06-19 02:41 - 2014-07-10 12:33 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-06-19 02:41 - 2014-07-10 12:33 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-06-19 02:32 - 2014-07-10 12:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-06-19 02:31 - 2014-07-10 12:33 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-06-19 02:26 - 2014-07-10 12:33 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-06-19 02:24 - 2014-07-10 12:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-06-19 02:24 - 2014-07-10 12:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-06-19 02:23 - 2014-07-10 12:33 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-06-19 02:16 - 2014-07-10 12:33 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-06-19 02:14 - 2014-07-10 12:33 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-06-19 02:09 - 2014-07-10 12:33 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-06-19 01:59 - 2014-07-10 12:33 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-06-19 01:56 - 2014-07-10 12:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-06-19 01:53 - 2014-07-10 12:33 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-06-19 01:51 - 2014-07-10 12:33 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-06-19 01:50 - 2014-07-10 12:33 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-06-19 01:48 - 2014-07-10 12:33 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-06-19 01:39 - 2014-07-10 12:33 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-06-19 01:38 - 2014-07-10 12:33 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-06-19 01:37 - 2014-07-10 12:33 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-06-19 01:36 - 2014-07-10 12:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-06-19 01:35 - 2014-07-10 12:33 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-06-19 01:33 - 2014-07-10 12:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-06-19 01:32 - 2014-07-10 12:33 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-06-19 01:28 - 2014-07-10 12:33 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-06-19 01:28 - 2014-07-10 12:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-06-19 01:27 - 2014-07-10 12:33 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-06-19 01:27 - 2014-07-10 12:33 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-06-19 01:25 - 2014-07-10 12:33 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-06-19 01:23 - 2014-07-10 12:33 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-06-19 01:22 - 2014-07-10 12:33 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-06-19 01:12 - 2014-07-10 12:33 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-06-19 01:06 - 2014-07-10 12:33 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-06-19 01:01 - 2014-07-10 12:33 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-06-19 00:59 - 2014-07-10 12:33 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-06-19 00:58 - 2014-07-10 12:33 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-06-19 00:58 - 2014-07-10 12:33 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-06-19 00:52 - 2014-07-10 12:33 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-06-19 00:51 - 2014-07-10 12:33 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-06-19 00:49 - 2014-07-10 12:33 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-06-19 00:46 - 2014-07-10 12:33 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-06-19 00:45 - 2014-07-10 12:33 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-06-19 00:35 - 2014-07-10 12:33 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-06-19 00:34 - 2014-07-10 12:33 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-06-19 00:15 - 2014-07-10 12:33 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-06-19 00:13 - 2014-07-10 12:33 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-06-19 00:09 - 2014-07-10 12:33 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-06-19 00:07 - 2014-07-10 12:33 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-06-18 13:11 - 2014-06-18 13:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-06-18 04:18 - 2014-07-10 12:33 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-06-18 03:51 - 2014-07-10 12:33 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-06-18 03:10 - 2014-07-10 12:33 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys Files to move or delete: ==================== C:\Users\Internet\jagex_cl_oldschool_LIVE.dat C:\Users\Internet\jagex_cl_runescape_LIVE.dat C:\Users\Internet\random.dat ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-05 14:25 ==================== End Of Log ============================ Geändert von parablue (16.07.2014 um 18:43 Uhr) |
16.07.2014, 18:56 | #8 |
/// Malwareteam | Regelmäßige Bluescreens nur beim Spielen Hi ESET Scanned sehr gründlich, es kann mehrere Stunden dauern bis alles gescanned ist. Bitte lass ihn durhlaufen. Das bisher gefundene von MBAM ist nicht wirklich gut. Du hattest der hast Backdoor Viren auf dem System. |
16.07.2014, 21:04 | #9 |
| Regelmäßige Bluescreens nur beim SpielenCode:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=ccfc04f86ff0cb44b662d5ec817b8f46 # engine=19208 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=true # antistealth_checked=true # utc_time=2014-07-16 07:53:18 # local_time=2014-07-16 09:53:18 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 175119 157170248 0 0 # scanned=115330 # found=0 # cleaned=0 # scan_time=2298 Code:
ATTFilter ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Nota Inc.) C:\Program Files (x86)\Gyazo\GyStation.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12681320 2011-08-25] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation) HKLM\...\RunOnce: [*WerKernelReporting] - %SYSTEMROOT%\SYSTEM32\WerFault.exe -k -rq [415232 2009-07-14] (Microsoft Corporation) HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2014-04-14] (Microsoft Corporation) HKU\S-1-5-21-3047204303-1143388320-970495031-1001\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [2990304 2013-10-30] (Nota Inc.) ==================== Internet (Whitelisted) ==================== SearchScopes: HKLM-x32 - DefaultScope value is missing. BHO-x32: No Name -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> No File BHO-x32: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2 FireFox: ======== FF ProfilePath: C:\Users\Internet\AppData\Roaming\Mozilla\Firefox\Profiles\yqyl6wqc.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 - D:\Programme\Java\bin\dtplugin\npDeployJava1.dll No File FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 - D:\Programme\Java\bin\plugin2\npjp2.dll No File FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Internet\AppData\Roaming\Mozilla\Firefox\Profiles\yqyl6wqc.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-04-03] ==================== Services (Whitelisted) ================= R2 lmhosts; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R2 NlaSvc; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R2 nsi; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation) R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed] R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-07-16] () ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] () S3 HTCAND64; C:\Windows\System32\Drivers\ANDROIDUSB.sys [33736 2009-11-02] (HTC, Corporation) [File not signed] R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-17] () R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 UHSfiltv; C:\Windows\System32\drivers\UHSfiltv.sys [23552 2011-07-15] (Creative Technology Ltd.) [File not signed] U3 DfSdkS; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-16 20:54 - 2014-07-16 20:54 - 00000000 ____D () C:\Program Files (x86)\TS33 2014-07-16 20:53 - 2014-07-16 20:53 - 00000000 ____D () C:\Program Files\Registry Files 2014-07-16 20:53 - 2014-07-16 20:53 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-07-16 20:09 - 2014-07-16 20:58 - 00000000 ____D () C:\games 2014-07-16 19:01 - 2014-07-16 19:01 - 02347384 _____ (ESET) C:\Users\Internet\Downloads\esetsmartinstaller_deu.exe 2014-07-16 18:47 - 2014-07-16 18:48 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-07-16 18:47 - 2014-07-16 18:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-07-16 18:47 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-07-16 18:47 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-07-16 18:47 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-07-16 17:38 - 2014-07-16 17:38 - 00018448 _____ () C:\Users\Internet\Downloads\Addition.txt 2014-07-16 17:36 - 2014-07-16 22:02 - 00005607 _____ () C:\Users\Internet\Downloads\FRST.txt 2014-07-16 17:36 - 2014-07-16 22:02 - 00000000 ____D () C:\FRST 2014-07-16 17:36 - 2014-07-16 17:36 - 02086912 _____ (Farbar) C:\Users\Internet\Downloads\FRST64.exe 2014-07-16 16:28 - 2014-07-16 16:32 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-07-16 16:28 - 2014-07-16 16:28 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-07-16 16:27 - 2014-07-16 16:27 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-07-16 06:38 - 2014-07-16 06:39 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Internet\Downloads\mbam-setup-2.0.2.1012.exe 2014-07-15 17:55 - 2014-07-15 17:55 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\GHISLER 2014-07-15 17:54 - 2014-07-15 17:55 - 00000000 ____D () C:\totalcmd 2014-07-15 17:54 - 2014-07-15 17:54 - 06370320 _____ (Ghisler Software GmbH) C:\Users\Internet\Downloads\tcm851ax32_64.exe 2014-07-15 17:54 - 2014-07-15 17:54 - 00000646 _____ () C:\Users\Public\Desktop\Total Commander 64 bit.lnk 2014-07-15 17:54 - 2014-07-15 17:54 - 00000632 _____ () C:\Users\Public\Desktop\Total Commander.lnk 2014-07-15 17:02 - 2014-05-20 01:10 - 00601432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-07-15 17:00 - 2014-05-20 04:44 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-07-15 17:00 - 2014-05-20 04:44 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-07-15 17:00 - 2014-05-20 04:44 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-07-15 16:57 - 2014-07-15 16:57 - 00000000 ____D () C:\NVIDIA 2014-07-15 16:55 - 2014-07-15 16:57 - 281478056 _____ (NVIDIA Corporation) C:\Users\Internet\Downloads\337.88-desktop-win8-win7-winvista-64bit-international-whql(2).exe 2014-07-15 13:35 - 2014-07-16 20:08 - 583813957 _____ () C:\Windows\MEMORY.DMP 2014-07-15 13:35 - 2014-07-16 20:08 - 00003015 _____ () C:\Windows\setupact.log 2014-07-15 13:35 - 2014-07-15 13:35 - 00000000 _____ () C:\Windows\setuperr.log 2014-07-15 12:36 - 2014-07-15 12:36 - 00000709 _____ () C:\Users\Internet\Desktop\TeamSpeak 3 Client.lnk 2014-07-15 12:36 - 2014-07-15 12:36 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2014-07-15 12:34 - 2014-07-15 12:34 - 27337256 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\TeamSpeak3-Client-win32-3.0.15.1.exe 2014-07-15 12:30 - 2014-07-15 12:30 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-15 12:29 - 2014-07-15 12:29 - 03736040 _____ (Piriform Ltd) C:\Users\Internet\Downloads\ccsetup415_slim.exe 2014-07-15 10:04 - 2014-07-15 10:04 - 00000512 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-07-15 10:04 - 2014-07-15 10:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-07-15 10:02 - 2014-07-15 10:02 - 01141680 _____ () C:\Users\Internet\Downloads\SteamSetup.exe 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 4.01 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\VLC Portable 1.17 2014-07-15 08:53 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\TS33 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\TS3 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\Mozilla 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 4.01 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Skype 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Gyazo 2014-07-15 08:51 - 2014-07-04 17:17 - 28431502 _____ () C:\Users\Internet\Downloads\Der Rabe.wav 2014-07-15 08:51 - 2014-04-08 14:42 - 00002991 _____ () C:\Users\Internet\Downloads\Beewee7.odt 2014-07-15 08:51 - 2014-04-08 14:38 - 00003010 _____ () C:\Users\Internet\Downloads\Beewee6.odt 2014-07-15 08:51 - 2014-04-08 14:34 - 00003002 _____ () C:\Users\Internet\Downloads\Beewee5.odt 2014-07-15 08:51 - 2014-04-08 14:29 - 00003011 _____ () C:\Users\Internet\Downloads\Beewee4.odt 2014-07-15 08:51 - 2014-04-08 14:23 - 00003013 _____ () C:\Users\Internet\Downloads\Beewee3.odt 2014-07-15 08:51 - 2014-04-08 14:13 - 00003006 _____ () C:\Users\Internet\Downloads\Beewee2.odt 2014-07-15 08:51 - 2014-04-08 14:08 - 00003011 _____ () C:\Users\Internet\Downloads\Beewee.odt 2014-07-15 08:51 - 2014-04-08 14:07 - 00003052 _____ () C:\Users\Internet\Downloads\Beewee1.odt 2014-07-15 08:51 - 2014-02-28 19:43 - 00014969 _____ () C:\Users\Internet\Downloads\Beewee9.odt 2014-07-15 08:51 - 2014-02-28 19:42 - 00014769 _____ () C:\Users\Internet\Downloads\Beewee8.odt 2014-07-15 08:51 - 2012-11-03 19:10 - 09128944 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\ts3client_win32.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00399344 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\update.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00189936 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\package_inst.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00184320 _____ () C:\Users\Internet\Downloads\QtSql4.dll 2014-07-15 08:51 - 2012-11-03 19:10 - 00110106 _____ () C:\Users\Internet\Downloads\createfileassoc.exe 2014-07-15 08:51 - 2012-11-03 19:10 - 00001454 _____ () C:\Users\Internet\Downloads\mirrors.ini 2014-07-15 08:51 - 2012-06-23 13:31 - 00042496 _____ () C:\Users\Internet\Downloads\funnyvoice13.exe 2014-07-15 08:51 - 2012-04-25 15:52 - 08674800 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\_old_ts3client_win32.exe 2014-07-15 08:51 - 2012-04-25 15:52 - 00400368 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\_old_update.exe 2014-07-15 08:51 - 2012-04-25 15:52 - 00180720 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\error_report.exe 2014-07-15 08:51 - 2012-01-01 15:16 - 00121942 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\Uninstall.exe 2014-07-15 08:51 - 2012-01-01 15:15 - 29603832 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\TeamSpeak3-Client-win32-3.0.2.exe 2014-07-15 08:51 - 2011-11-16 10:41 - 07859200 _____ () C:\Users\Internet\Downloads\QtGui4.dll 2014-07-15 08:51 - 2011-11-16 10:41 - 02210816 _____ () C:\Users\Internet\Downloads\QtCore4.dll 2014-07-15 08:51 - 2011-11-16 10:41 - 00814080 _____ () C:\Users\Internet\Downloads\QtNetwork4.dll 2014-07-14 14:41 - 2014-07-16 20:08 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-07-14 14:41 - 2014-05-20 04:44 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-07-14 14:41 - 2014-05-20 04:44 - 00052056 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 06769096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 03514144 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 02560968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 00927520 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-07-14 14:41 - 2014-05-20 03:25 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-07-14 14:41 - 2014-05-20 03:25 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-07-14 14:41 - 2014-05-15 01:49 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin 2014-07-14 14:40 - 2014-05-20 04:44 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-07-14 14:40 - 2014-05-20 04:44 - 00026069 _____ () C:\Windows\system32\nvinfo.pb 2014-07-14 14:40 - 2014-03-04 16:35 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433523.dll 2014-07-14 14:40 - 2014-03-04 16:35 - 01516488 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433523.dll 2014-07-14 14:40 - 2013-11-28 15:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-07-14 14:40 - 2013-11-28 15:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-07-14 14:40 - 2013-11-22 10:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-07-13 17:51 - 2014-07-13 17:51 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\0A85EA09-C820-4812-AB12-5F2106E69751 2014-07-13 15:28 - 2014-07-13 15:32 - 00000000 ____D () C:\Users\Internet\Documents\Telltale Games 2014-07-10 12:33 - 2014-06-20 22:14 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-10 12:33 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-10 12:33 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-10 12:33 - 2014-06-19 03:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-10 12:33 - 2014-06-19 03:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-07-10 12:33 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-10 12:33 - 2014-06-19 02:42 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-10 12:33 - 2014-06-19 02:42 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-10 12:33 - 2014-06-19 02:41 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-07-10 12:33 - 2014-06-19 02:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-07-10 12:33 - 2014-06-19 02:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-10 12:33 - 2014-06-19 02:31 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-10 12:33 - 2014-06-19 02:26 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-10 12:33 - 2014-06-19 02:24 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-10 12:33 - 2014-06-19 02:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-07-10 12:33 - 2014-06-19 02:23 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-07-10 12:33 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-10 12:33 - 2014-06-19 02:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-07-10 12:33 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-10 12:33 - 2014-06-19 01:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-07-10 12:33 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-10 12:33 - 2014-06-19 01:53 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-10 12:33 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-10 12:33 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-10 12:33 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-10 12:33 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-10 12:33 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-10 12:33 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-10 12:33 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-07-10 12:33 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-07-10 12:33 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-10 12:33 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-10 12:33 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-10 12:33 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-10 12:33 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-10 12:33 - 2014-06-19 01:27 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-07-10 12:33 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-10 12:33 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-10 12:33 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-07-10 12:33 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-10 12:33 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-07-10 12:33 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-10 12:33 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-10 12:33 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-10 12:33 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-10 12:33 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-10 12:33 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-10 12:33 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-10 12:33 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-07-10 12:33 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-10 12:33 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-10 12:33 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-10 12:33 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-10 12:33 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-10 12:33 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-10 12:33 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-10 12:33 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-10 12:33 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-10 12:33 - 2014-06-18 03:10 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-10 12:33 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-10 12:33 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-10 12:33 - 2014-06-05 16:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-10 12:33 - 2014-06-05 16:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-07-10 12:33 - 2014-06-05 16:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-07-10 12:33 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software 2014-06-24 15:57 - 2014-07-15 12:33 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\uTorrent 2014-06-23 13:41 - 2014-06-23 13:52 - 00000047 _____ () C:\Users\Internet\jagex_cl_oldschool_LIVE.dat 2014-06-23 13:36 - 2014-06-23 13:36 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-06-23 13:36 - 2014-06-23 13:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-06-18 13:11 - 2014-06-18 13:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox ==================== One Month Modified Files and Folders ======= 2014-07-16 22:03 - 2014-07-16 17:36 - 00005607 _____ () C:\Users\Internet\Downloads\FRST.txt 2014-07-16 22:02 - 2014-07-16 17:36 - 00000000 ____D () C:\FRST 2014-07-16 21:08 - 2009-07-14 06:45 - 00009920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-07-16 21:08 - 2009-07-14 06:45 - 00009920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-07-16 21:00 - 2014-03-16 20:39 - 01150824 _____ () C:\Windows\WindowsUpdate.log 2014-07-16 20:58 - 2014-07-16 20:09 - 00000000 ____D () C:\games 2014-07-16 20:54 - 2014-07-16 20:54 - 00000000 ____D () C:\Program Files (x86)\TS33 2014-07-16 20:53 - 2014-07-16 20:53 - 00000000 ____D () C:\Program Files\Registry Files 2014-07-16 20:53 - 2014-07-16 20:53 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-07-16 20:49 - 2014-03-30 18:33 - 00000000 ____D () C:\Users\Internet\AppData\Local\Warframe 2014-07-16 20:08 - 2014-07-15 13:35 - 583813957 _____ () C:\Windows\MEMORY.DMP 2014-07-16 20:08 - 2014-07-15 13:35 - 00003015 _____ () C:\Windows\setupact.log 2014-07-16 20:08 - 2014-07-14 14:41 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-07-16 20:08 - 2014-03-17 14:18 - 00000000 ____D () C:\Windows\Minidump 2014-07-16 20:08 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-07-16 20:08 - 2002-01-01 07:33 - 00001124 _____ () C:\Windows\PFRO.log 2014-07-16 19:52 - 2014-03-18 19:25 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\Skype 2014-07-16 19:01 - 2014-07-16 19:01 - 02347384 _____ (ESET) C:\Users\Internet\Downloads\esetsmartinstaller_deu.exe 2014-07-16 18:48 - 2014-07-16 18:47 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-07-16 18:47 - 2014-07-16 18:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-07-16 18:47 - 2014-05-07 19:07 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-07-16 17:38 - 2014-07-16 17:38 - 00018448 _____ () C:\Users\Internet\Downloads\Addition.txt 2014-07-16 17:36 - 2014-07-16 17:36 - 02086912 _____ (Farbar) C:\Users\Internet\Downloads\FRST64.exe 2014-07-16 16:32 - 2014-07-16 16:28 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-07-16 16:32 - 2014-03-17 00:08 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-07-16 16:28 - 2014-07-16 16:28 - 00283032 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-07-16 16:27 - 2014-07-16 16:27 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-07-16 06:39 - 2014-07-16 06:38 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Internet\Downloads\mbam-setup-2.0.2.1012.exe 2014-07-15 17:55 - 2014-07-15 17:55 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\GHISLER 2014-07-15 17:55 - 2014-07-15 17:54 - 00000000 ____D () C:\totalcmd 2014-07-15 17:54 - 2014-07-15 17:54 - 06370320 _____ (Ghisler Software GmbH) C:\Users\Internet\Downloads\tcm851ax32_64.exe 2014-07-15 17:54 - 2014-07-15 17:54 - 00000646 _____ () C:\Users\Public\Desktop\Total Commander 64 bit.lnk 2014-07-15 17:54 - 2014-07-15 17:54 - 00000632 _____ () C:\Users\Public\Desktop\Total Commander.lnk 2014-07-15 17:02 - 2014-06-06 19:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-07-15 17:02 - 2014-03-16 21:30 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-07-15 16:57 - 2014-07-15 16:57 - 00000000 ____D () C:\NVIDIA 2014-07-15 16:57 - 2014-07-15 16:55 - 281478056 _____ (NVIDIA Corporation) C:\Users\Internet\Downloads\337.88-desktop-win8-win7-winvista-64bit-international-whql(2).exe 2014-07-15 13:35 - 2014-07-15 13:35 - 00000000 _____ () C:\Windows\setuperr.log 2014-07-15 12:36 - 2014-07-15 12:36 - 00000709 _____ () C:\Users\Internet\Desktop\TeamSpeak 3 Client.lnk 2014-07-15 12:36 - 2014-07-15 12:36 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2014-07-15 12:34 - 2014-07-15 12:34 - 27337256 _____ (TeamSpeak Systems GmbH) C:\Users\Internet\Downloads\TeamSpeak3-Client-win32-3.0.15.1.exe 2014-07-15 12:33 - 2014-06-24 15:57 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\uTorrent 2014-07-15 12:30 - 2014-07-15 12:30 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-15 12:30 - 2014-03-16 20:25 - 00000000 ____D () C:\Windows\Panther 2014-07-15 12:29 - 2014-07-15 12:29 - 03736040 _____ (Piriform Ltd) C:\Users\Internet\Downloads\ccsetup415_slim.exe 2014-07-15 10:04 - 2014-07-15 10:04 - 00000512 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-07-15 10:04 - 2014-07-15 10:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-07-15 10:02 - 2014-07-15 10:02 - 01141680 _____ () C:\Users\Internet\Downloads\SteamSetup.exe 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 4.01 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\WinRAR 2014-07-15 08:54 - 2014-07-15 08:54 - 00000000 ____D () C:\Program Files\VLC Portable 1.17 2014-07-15 08:54 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\TS33 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\TS3 2014-07-15 08:53 - 2014-07-15 08:53 - 00000000 ____D () C:\Program Files\Mozilla 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 4.01 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\WinRAR 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Skype 2014-07-15 08:51 - 2014-07-15 08:51 - 00000000 ____D () C:\Users\Internet\Downloads\Gyazo 2014-07-14 15:59 - 2014-05-22 19:54 - 00000000 ____D () C:\ProgramData\AVG2014 2014-07-14 15:59 - 2014-05-22 19:46 - 00000000 ____D () C:\ProgramData\MFAData 2014-07-14 15:54 - 2014-05-22 19:54 - 00000000 ___HD () C:\$AVG 2014-07-14 14:41 - 2014-03-16 21:23 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-07-14 14:41 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help 2014-07-14 14:40 - 2014-03-16 21:30 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-07-13 23:19 - 2014-04-23 14:55 - 00000028 _____ () C:\Users\Internet\Desktop\kfZnN87.txt 2014-07-13 17:51 - 2014-07-13 17:51 - 00000000 ____D () C:\Users\Internet\AppData\Roaming\0A85EA09-C820-4812-AB12-5F2106E69751 2014-07-13 15:32 - 2014-07-13 15:28 - 00000000 ____D () C:\Users\Internet\Documents\Telltale Games 2014-07-10 21:07 - 2009-07-14 06:45 - 00274464 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-10 21:05 - 2009-07-14 20:18 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-10 21:02 - 2014-03-24 00:52 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-10 21:01 - 2014-03-24 00:52 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-07-09 19:06 - 2014-03-16 22:10 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-07-09 19:06 - 2014-03-16 22:10 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-08 17:42 - 2014-03-16 20:39 - 00000000 ____D () C:\Users\tanju 2014-07-04 21:05 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-07-04 17:17 - 2014-07-15 08:51 - 28431502 _____ () C:\Users\Internet\Downloads\Der Rabe.wav 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software 2014-07-03 11:24 - 2014-07-03 11:24 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software 2014-06-23 13:55 - 2014-03-19 16:57 - 00000024 _____ () C:\Users\Internet\random.dat 2014-06-23 13:52 - 2014-06-23 13:41 - 00000047 _____ () C:\Users\Internet\jagex_cl_oldschool_LIVE.dat 2014-06-23 13:41 - 2014-03-19 16:57 - 00000000 ____D () C:\Users\Internet\jagexcache 2014-06-23 13:41 - 2014-03-16 20:42 - 00000000 ____D () C:\Users\Internet 2014-06-23 13:36 - 2014-06-23 13:36 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-06-23 13:36 - 2014-06-23 13:36 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-06-23 13:36 - 2014-06-23 13:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-06-23 13:36 - 2014-03-19 16:56 - 00000000 ____D () C:\ProgramData\Oracle 2014-06-20 22:14 - 2014-07-10 12:33 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-06-20 21:39 - 2014-07-10 12:33 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-06-19 12:23 - 2014-03-29 16:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-06-19 03:39 - 2014-07-10 12:33 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-06-19 03:06 - 2014-07-10 12:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-06-19 03:06 - 2014-07-10 12:33 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-06-19 02:48 - 2014-07-10 12:33 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-06-19 02:42 - 2014-07-10 12:33 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-06-19 02:42 - 2014-07-10 12:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-06-19 02:41 - 2014-07-10 12:33 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-06-19 02:41 - 2014-07-10 12:33 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-06-19 02:32 - 2014-07-10 12:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-06-19 02:31 - 2014-07-10 12:33 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-06-19 02:26 - 2014-07-10 12:33 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-06-19 02:24 - 2014-07-10 12:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-06-19 02:24 - 2014-07-10 12:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-06-19 02:23 - 2014-07-10 12:33 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-06-19 02:16 - 2014-07-10 12:33 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-06-19 02:14 - 2014-07-10 12:33 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-06-19 02:09 - 2014-07-10 12:33 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-06-19 01:59 - 2014-07-10 12:33 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-06-19 01:56 - 2014-07-10 12:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-06-19 01:53 - 2014-07-10 12:33 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-06-19 01:51 - 2014-07-10 12:33 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-06-19 01:50 - 2014-07-10 12:33 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-06-19 01:48 - 2014-07-10 12:33 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-06-19 01:39 - 2014-07-10 12:33 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-06-19 01:38 - 2014-07-10 12:33 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-06-19 01:37 - 2014-07-10 12:33 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-06-19 01:36 - 2014-07-10 12:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-06-19 01:35 - 2014-07-10 12:33 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-06-19 01:33 - 2014-07-10 12:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-06-19 01:32 - 2014-07-10 12:33 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-06-19 01:28 - 2014-07-10 12:33 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-06-19 01:28 - 2014-07-10 12:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-06-19 01:27 - 2014-07-10 12:33 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-06-19 01:27 - 2014-07-10 12:33 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-06-19 01:25 - 2014-07-10 12:33 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-06-19 01:23 - 2014-07-10 12:33 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-06-19 01:22 - 2014-07-10 12:33 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-06-19 01:12 - 2014-07-10 12:33 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-06-19 01:06 - 2014-07-10 12:33 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-06-19 01:01 - 2014-07-10 12:33 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-06-19 00:59 - 2014-07-10 12:33 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-06-19 00:58 - 2014-07-10 12:33 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-06-19 00:58 - 2014-07-10 12:33 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-06-19 00:52 - 2014-07-10 12:33 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-06-19 00:51 - 2014-07-10 12:33 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-06-19 00:49 - 2014-07-10 12:33 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-06-19 00:46 - 2014-07-10 12:33 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-06-19 00:45 - 2014-07-10 12:33 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-06-19 00:35 - 2014-07-10 12:33 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-06-19 00:34 - 2014-07-10 12:33 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-06-19 00:15 - 2014-07-10 12:33 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-06-19 00:13 - 2014-07-10 12:33 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-06-19 00:09 - 2014-07-10 12:33 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-06-19 00:07 - 2014-07-10 12:33 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-06-18 13:11 - 2014-06-18 13:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-06-18 04:18 - 2014-07-10 12:33 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-06-18 03:51 - 2014-07-10 12:33 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-06-18 03:10 - 2014-07-10 12:33 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys Files to move or delete: ==================== C:\Users\Internet\jagex_cl_oldschool_LIVE.dat C:\Users\Internet\jagex_cl_runescape_LIVE.dat C:\Users\Internet\random.dat ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed ==================== End Of Log ============================ |
16.07.2014, 21:55 | #10 |
/// Malwareteam | Regelmäßige Bluescreens nur beim Spielen es sieht start danach aus, dass es sich hier um Hardwareprobleme handelt. Rein Malwaretechnisch ist nichts zu sehen |
Themen zu Regelmäßige Bluescreens nur beim Spielen |
absolut, ahnung, auf einmal, bereits, bitte um hilfe, bluescree, bluescreens, cpu, dreht, erschein, erscheint, fehlercode, gen, hänge, hängen, jahre, kühler, minute, minuten, nichts, problem, schnell, sobald, spiele, wirklich |