|
Log-Analyse und Auswertung: Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne FunktionWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
19.07.2014, 20:53 | #1 |
| Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion Hallo, heute habe ich festgestellt, dass ich mein Malwarebytes Anti-Malware nicht mehr starten kann. Bin auch schon nach der Anleitung, die hier im Forum kursiert vorgegangen, doch leider ohne Erfolg. Wenn ich nachdem ich im OTH "Kill all Process" gedrück habe und dann per Internetexplorer Malwarebytes runtergeladen habe, waren dann plötzlich zwei gleich große identische Setup-Dateien. Eine Neuinstallation von Malwarebytes Anti-Malware ist ebenfalls nicht ohne Fehler nicht möglich, da während der Installation mehrmals eine Fehlermeldung auftritt (Interner Fehler: Expression Error 'Runtime Error (at 79:1777): External exception E06D7363'). Dann habe ich Malwarebytes Anti-Malware deinstalliert, doch leider lassen sich im Ordner "C:\Program Files (x86)\ Malwarebytes Anti-Malware \Chameleon\Windows\mlymvg" die Dateien "mbam-killer"(MS-Dos Datei) und "master.conf" nicht löschen. Ebenfalls kann ich die mir komisch vorkommende Datei "WS_x64.Enabler" (ENABLER-Date) in "C:\Program Files (x86)" nicht löschen. Auch eine Systemwiederherstellung war nicht erfolgreich, da nach dem Neustart eine Meldung kam, dass ein Anti-Virenprogramm o.Ä. eine Systemwiederherstellung verhindert. Ich habe dann auch noch den Eset-Online-Scanner durchlaufen lassen (nach einer Anleitung hier im Forum). Anbei noch die Standard-Logs. defogger_disable.txt Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 21:07 on 19/07/2014 (Dignitas) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. HKCU:DAEMON Tools Lite -> Removed Checking for services/drivers... SPTD -> Disabled (Service running -> reboot required) -=E.O.F=- FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-07-2014 Ran by Dignitas (administrator) on DIGNITAS on 19-07-2014 21:10:22 Running from D:\Downloads Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe () C:\AMD\amdacpusrsvc.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EWA\tbmux32.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EPC\tbmux32.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase WIS\tbmux32.exe (Alexandria Software Consulting) D:\Programme\EWA net\server\bin\tomcat.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Windows\SysWOW64\PnkBstrA.exe (SafeNet, Inc.) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe (SafeNet, Inc) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe (SafeNet, Inc.) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe (TeamViewer GmbH) D:\Programme\TeamViewer\Version9\TeamViewer_Service.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EWA\tbkern32.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EWA\tbkern32.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EPC\tbkern32.exe (CMedia) C:\Program Files\UNi Xonar Audio\Customapp\AsusAudioCenter.exe () C:\Windows\SysWOW64\HsMgr.exe () C:\Windows\System\HsMgr64.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [36352 2013-09-27] (Intel Corporation) HKLM\...\Run: [Cmaudio8788] => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd HKLM\...\Run: [Cmaudio8788GX] => C:\Windows\syswow64\HsMgr.exe [200704 2008-07-11] () HKLM\...\Run: [Cmaudio8788GX64] => C:\Windows\system\HsMgr64.exe [282112 2008-07-11] () HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-07-09] (Advanced Micro Devices, Inc.) HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1753280 2014-07-16] (Valve Corporation) HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\Run: [Facebook Update] => C:\Users\Dignitas\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-04-03] (Facebook Inc.) HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {039778f2-6e11-11e3-825c-bc5ff43922de} - "F:\PMCsetup.exe" HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {2624e121-90ab-11e3-8297-bc5ff43922de} - "F:\setup.exe" HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {67bc29ac-783c-11e3-8269-bc5ff43922de} - "G:\setup.exe" HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {f9afebdd-67f3-11e3-824f-806e6f6e6963} - "I:\Autorun.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Logitech Media Server-Taskleisten-Tool.lnk ShortcutTarget: Logitech Media Server-Taskleisten-Tool.lnk -> C:\Program Files (x86)\Squeezebox\SqueezeTray.exe (Logitech Inc.) ==================== Internet (Whitelisted) ==================== ProxyServer: www-cache.rz.uni-passau.de:3128 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://localhost:9000/EWA-net/Login/trySSO.do HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x8EFCE29F532ECF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE,de;q=0.5 SearchScopes: HKLM-x32 - DefaultScope value is missing. Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll No File FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Dignitas\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) Chrome: ======= CHR HomePage: CHR StartupUrls: "https://www.google.de/" CHR Extension: (ProxFlow) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-01-10] CHR Extension: (Google Docs) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-18] CHR Extension: (Google Drive) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-18] CHR Extension: (Cookie Killer for Facebook) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgonpegbhnjepleakgjdbaepkfedhhnf [2014-05-29] CHR Extension: (YouTube) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-18] CHR Extension: (Google-Suche) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-18] CHR Extension: (AdBlock) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-05-01] CHR Extension: (ModHeader) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\idgpnmonknjnojddfkpgkljpfnnfcklj [2013-12-18] CHR Extension: (Google Wallet) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-18] CHR Extension: (Google Mail) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-18] ==================== Services (Whitelisted) ================= R2 amdacpusrsvc; C:\AMD\amdacpusrsvc.exe [112640 2014-05-22] () [File not signed] R2 EWA net DB Core; D:\Programme\EWA net\database\TransBase EWA\tbmux32.exe [326616 2011-03-09] (Transaction Software, D 81829 Munich) [File not signed] R2 EWA net DB EPC; D:\Programme\EWA net\database\TransBase EPC\tbmux32.exe [417792 2007-11-27] (Transaction Software, D 81829 Munich) [File not signed] R2 EWA net DB WIS; D:\Programme\EWA net\database\TransBase WIS\tbmux32.exe [326616 2011-03-09] (Transaction Software, D 81829 Munich) [File not signed] R2 EWA net Server; D:\Programme\EWA net\server\bin\tomcat.exe [65536 2003-07-31] (Alexandria Software Consulting) [File not signed] S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [528096 2014-06-08] (Futuremark) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-09-27] (Intel Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed] R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [282096 2014-03-17] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-16] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [32568 2014-04-08] (The OpenVPN Project) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-04-21] () R2 SentinelKeysServer; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe [374304 2011-05-27] (SafeNet, Inc.) R2 SentinelProtectionServer; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe [1250848 2011-05-27] (SafeNet, Inc) R2 SentinelSecurityRuntime; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe [292384 2011-05-27] (SafeNet, Inc.) R2 TeamViewer9; D:\Programme\TeamViewer\Version9\TeamViewer_Service.exe [5037888 2014-07-02] (TeamViewer GmbH) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [276192 2014-07-09] (Advanced Micro Devices) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2014-03-11] (Advanced Micro Devices) R3 cmudaxp; C:\Windows\system32\drivers\cmudaxp.sys [2735616 2013-12-11] (C-Media Inc) U3 dtscsidrv; C:\Windows\System32\Drivers\dtscsidrv.sys [309248 2014-01-08] (Disc Soft Ltd) S3 GPUZ; C:\Windows\TEMP\GPUZ.sys [27008 2014-06-25] () S2 Hardlock; C:\Windows\system32\drivers\hardlock.sys [296448 2005-06-14] (Aladdin Knowledge Systems Ltd.) [File not signed] R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [31648 2014-05-10] (REALiX(tm)) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) S3 NPF; C:\Windows\System32\drivers\NPF.sys [35344 2010-06-26] (CACE Technologies, Inc.) R2 Sentinel64; C:\Windows\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc.) S4 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2013-12-18] (Duplex Secure Ltd.) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) S3 mbamchameleon; \??\C:\Windows\system32\drivers\mbamchameleon.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-19 21:10 - 2014-07-19 21:10 - 00000000 ____D () C:\FRST 2014-07-19 21:07 - 2014-07-19 21:07 - 00000168 _____ () C:\Users\Dignitas\defogger_reenable 2014-07-19 18:20 - 2014-07-19 18:20 - 00001244 _____ () C:\Users\Dignitas\Desktop\Revo Uninstaller.lnk 2014-07-19 18:20 - 2014-07-19 18:20 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-07-19 18:05 - 2014-07-19 18:05 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Dignitas\Desktop\scsadsadsa.exe 2014-07-19 17:53 - 2014-07-19 17:53 - 00259584 _____ (OldTimer Tools) C:\Users\Dignitas\Desktop\OTH.scr 2014-07-18 14:25 - 2014-07-19 18:16 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EPC 2014-07-16 09:52 - 2014-07-16 09:52 - 00004286 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_65-b20.log 2014-07-15 05:38 - 2014-07-15 05:38 - 00000000 ____D () C:\ProgramData\ATI 2014-07-14 23:23 - 2014-07-19 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-07-14 23:23 - 2014-07-14 23:23 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201407142323125472.log 2014-07-14 23:22 - 2014-07-19 18:16 - 00000000 ____D () C:\Windows\LastGood.Tmp 2014-07-09 17:52 - 2014-07-09 17:52 - 09016760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00127872 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 08108312 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 07892000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-07-09 17:47 - 2014-07-09 17:47 - 00276192 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2014-07-09 17:45 - 2014-07-09 17:45 - 15950848 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-07-09 17:35 - 2014-07-09 17:35 - 32876544 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00418304 _____ () C:\Windows\system32\amdmiracast.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00231424 _____ () C:\Windows\system32\clinfo.exe 2014-07-09 17:35 - 2014-07-09 17:35 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 27843072 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 27529216 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00134656 _____ () C:\Windows\system32\amdhdl64.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00123392 _____ () C:\Windows\SysWOW64\amdhdl32.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 05225472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 23028224 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 04180992 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\system32\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00366592 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-07-09 17:28 - 2014-07-09 17:28 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-07-09 17:27 - 2014-07-09 17:27 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 03437632 _____ () C:\Windows\system32\atiumd6a.cap 2014-07-09 17:25 - 2014-07-09 17:25 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00588800 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-07-09 17:23 - 2014-07-09 17:23 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-07-09 17:22 - 2014-07-09 17:22 - 03471376 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-07-09 17:20 - 2014-07-09 17:20 - 01207296 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-07-09 17:20 - 2014-07-09 17:20 - 00898560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00557056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-07-09 17:19 - 2014-07-09 17:19 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-07-09 17:17 - 2014-07-09 17:17 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-07-09 15:42 - 2014-07-19 18:16 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-09 15:42 - 2014-04-14 05:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2014-07-09 11:39 - 2014-07-09 11:39 - 00051200 _____ () C:\Windows\system32\kdbsdk64.dll 2014-07-09 11:37 - 2014-07-09 11:37 - 00038912 _____ () C:\Windows\SysWOW64\kdbsdk32.dll 2014-07-09 08:22 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-09 08:22 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-09 08:22 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-09 08:22 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-09 08:22 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-09 08:22 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-09 08:22 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-09 08:22 - 2014-06-19 01:46 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-09 08:22 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-09 08:22 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-09 08:22 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-09 08:22 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-09 08:22 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-09 08:22 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-09 08:22 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-09 08:22 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-09 08:22 - 2014-06-19 00:57 - 00225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-09 08:22 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-09 08:22 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-09 08:22 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-09 08:22 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-09 08:22 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-09 08:22 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-09 08:22 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-09 08:22 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-09 08:22 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-09 08:22 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-09 08:22 - 2014-06-17 00:26 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-09 08:22 - 2014-06-17 00:24 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-09 08:22 - 2014-06-06 16:20 - 04190720 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-09 08:22 - 2014-05-30 05:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-09 08:22 - 2014-05-29 14:02 - 00565576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-07-09 08:22 - 2014-05-29 09:55 - 00735232 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2014-07-09 08:22 - 2014-05-29 08:40 - 00735232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2014-07-09 08:22 - 2014-05-29 08:37 - 00436224 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2014-07-09 08:22 - 2014-05-29 07:34 - 00318976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2014-07-09 08:22 - 2014-05-29 07:27 - 01417216 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-09 08:21 - 2014-07-01 00:45 - 00688128 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-09 08:21 - 2014-06-28 09:48 - 00527360 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-07-09 08:21 - 2014-06-28 09:07 - 00385536 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-07-09 08:21 - 2014-06-06 15:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-09 08:21 - 2014-06-06 14:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-09 08:21 - 2014-05-31 12:07 - 00054776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-07-09 08:21 - 2014-05-31 12:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2014-07-09 08:21 - 2014-05-31 05:40 - 13287936 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2014-07-09 08:21 - 2014-05-31 05:30 - 11792384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2014-07-09 08:21 - 2014-05-31 05:12 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 08:21 - 2014-05-31 05:06 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-07-09 08:21 - 2014-05-31 05:03 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-07-09 08:21 - 2014-05-31 05:01 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 08:21 - 2014-05-31 04:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-07-09 08:21 - 2014-05-31 04:54 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-07-09 08:21 - 2014-05-31 04:48 - 03463680 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-07-09 08:21 - 2014-05-31 04:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2014-07-09 08:21 - 2014-05-31 04:36 - 00923136 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2014-07-09 08:21 - 2014-05-31 04:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2014-07-09 08:21 - 2014-05-31 04:32 - 00756224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-07-09 08:20 - 2014-07-09 08:20 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2014-07-06 13:59 - 2014-07-19 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-06 13:59 - 2014-07-19 18:16 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-06 13:59 - 2014-07-19 18:16 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-01 15:05 - 2014-07-01 15:05 - 00233912 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-07-01 15:05 - 2014-05-31 08:27 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-07-01 15:05 - 2014-05-15 00:47 - 04720640 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2014-07-01 15:05 - 2014-05-13 09:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe 2014-07-01 15:05 - 2014-05-13 07:07 - 02844160 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2014-07-01 15:05 - 2014-05-13 06:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2014-07-01 15:05 - 2014-05-13 06:27 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2014-07-01 15:05 - 2014-05-13 06:26 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2014-07-01 15:05 - 2014-05-13 05:59 - 01035264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2014-07-01 15:05 - 2014-05-13 05:41 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2014-07-01 15:05 - 2014-05-13 05:31 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2014-07-01 15:05 - 2014-05-05 08:11 - 00440664 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-07-01 15:05 - 2014-05-05 08:11 - 00418136 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-07-01 15:05 - 2014-05-05 08:11 - 00089944 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-07-01 15:05 - 2014-05-05 08:11 - 00027480 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-07-01 15:05 - 2014-05-03 13:29 - 01726224 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-07-01 15:05 - 2014-05-03 11:20 - 01473080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-07-01 15:05 - 2014-05-03 09:40 - 00037376 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-07-01 15:05 - 2014-05-03 07:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2014-07-01 15:05 - 2014-05-03 07:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2014-07-01 15:05 - 2014-05-03 07:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2014-07-01 15:05 - 2014-05-03 07:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2014-07-01 15:05 - 2014-05-03 06:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll 2014-07-01 15:05 - 2014-05-03 06:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2014-07-01 15:05 - 2014-05-03 06:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2014-07-01 15:05 - 2014-05-03 05:30 - 02641920 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-07-01 15:05 - 2014-05-03 05:27 - 02317824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-07-01 15:05 - 2014-05-03 01:26 - 00050745 _____ () C:\Windows\system32\srms.dat 2014-07-01 15:05 - 2014-05-01 07:44 - 01025536 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-07-01 15:05 - 2014-04-30 08:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys 2014-07-01 15:05 - 2014-04-30 08:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-07-01 15:05 - 2014-04-30 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys 2014-07-01 15:05 - 2014-04-30 08:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys 2014-07-01 15:05 - 2014-04-30 07:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2014-07-01 15:05 - 2014-04-30 06:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2014-07-01 15:05 - 2014-04-30 06:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-07-01 15:05 - 2014-04-30 06:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2014-07-01 15:05 - 2014-04-30 06:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2014-07-01 15:05 - 2014-04-30 06:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2014-07-01 15:05 - 2014-04-30 06:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2014-07-01 15:05 - 2014-04-30 05:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-07-01 15:05 - 2014-04-30 05:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2014-07-01 15:05 - 2014-04-30 05:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2014-07-01 15:05 - 2014-04-30 05:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2014-07-01 15:05 - 2014-04-30 05:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2014-07-01 15:05 - 2014-04-30 05:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2014-07-01 15:05 - 2014-04-29 00:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2014-07-01 15:05 - 2014-04-27 00:03 - 02140888 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2014-07-01 15:05 - 2014-04-26 22:14 - 02144984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2014-07-01 15:05 - 2014-04-26 20:41 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfg.exe 2014-07-01 15:05 - 2014-04-26 20:22 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll 2014-07-01 15:05 - 2014-04-26 20:04 - 00311296 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll 2014-07-01 15:05 - 2014-04-26 19:36 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll 2014-07-01 15:05 - 2014-04-26 18:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2014-07-01 15:05 - 2014-04-14 11:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2014-07-01 15:05 - 2014-04-14 10:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2014-07-01 15:05 - 2014-04-14 07:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll 2014-07-01 15:05 - 2014-04-09 08:11 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-07-01 15:05 - 2014-04-09 07:20 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-06-29 10:57 - 2014-07-19 18:30 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-06-26 13:58 - 2014-06-26 13:58 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WIS-ASRA 2014-06-25 13:09 - 2014-06-25 15:02 - 00000022 _____ () C:\Windows\GPU-Z.INI 2014-06-25 13:07 - 2014-06-25 13:07 - 00000963 _____ () C:\Users\Public\Desktop\3DMark.lnk 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Program Files (x86)\Futuremark 2014-06-25 12:56 - 2014-07-19 21:08 - 00003008 _____ () C:\Windows\System32\Tasks\MSIAfterburner 2014-06-25 12:54 - 2014-06-25 12:54 - 00000745 _____ () C:\Users\Dignitas\Desktop\MSI Afterburner.lnk 2014-06-25 10:08 - 2014-06-25 10:08 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201406251008386662.log 2014-06-25 00:15 - 2014-06-25 00:15 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Adobe 2014-06-24 21:49 - 2014-06-24 21:49 - 00000743 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk 2014-06-24 21:49 - 2014-06-24 21:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2014-06-23 16:33 - 2014-06-23 16:33 - 00000000 ____D () C:\Users\Dignitas\Desktop\Grundlagen der Mathematik 2 2014-06-23 16:28 - 2010-10-02 19:34 - 00001654 _____ () C:\Users\Dignitas\Desktop\Analysis Klausur SS2010.txt 2014-06-22 10:27 - 2014-06-22 10:27 - 00283952 _____ () C:\Windows\Minidump\062214-7937-01.dmp 2014-06-21 03:39 - 2014-07-09 17:21 - 00826368 _____ (AMD) C:\Windows\system32\coinst_14.20.dll ==================== One Month Modified Files and Folders ======= 2014-07-19 21:10 - 2014-07-19 21:10 - 00000000 ____D () C:\FRST 2014-07-19 21:10 - 2013-12-18 17:14 - 00002159 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-07-19 21:08 - 2014-06-25 12:56 - 00003008 _____ () C:\Windows\System32\Tasks\MSIAfterburner 2014-07-19 21:08 - 2014-03-27 10:48 - 00065536 _____ () C:\Windows\system32\spu_storage.bin 2014-07-19 21:08 - 2013-12-18 23:56 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-07-19 21:08 - 2013-12-18 21:14 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\TS3Client 2014-07-19 21:08 - 2013-12-18 17:14 - 00001130 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-07-19 21:08 - 2013-09-29 21:05 - 00015130 _____ () C:\Windows\PFRO.log 2014-07-19 21:08 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-07-19 21:07 - 2014-07-19 21:07 - 00000168 _____ () C:\Users\Dignitas\defogger_reenable 2014-07-19 21:07 - 2013-12-18 17:09 - 00000000 ____D () C:\Users\Dignitas 2014-07-19 21:02 - 2014-01-28 20:08 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-07-19 21:00 - 2014-04-22 23:11 - 00000000 ____D () C:\Program Files (x86)\R.G. Freedom 2014-07-19 21:00 - 2013-12-18 17:15 - 00003594 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-726487413-4058879626-644410073-1001 2014-07-19 21:00 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru 2014-07-19 20:47 - 2013-12-18 17:14 - 00001134 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-07-19 19:22 - 2013-12-18 17:01 - 01696242 _____ () C:\Windows\WindowsUpdate.log 2014-07-19 18:43 - 2013-12-18 17:04 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-19 18:43 - 2013-09-30 05:58 - 00765378 _____ () C:\Windows\system32\perfh007.dat 2014-07-19 18:43 - 2013-09-30 05:58 - 00159696 _____ () C:\Windows\system32\perfc007.dat 2014-07-19 18:36 - 2014-04-22 23:19 - 00000000 ____D () C:\AdwCleaner 2014-07-19 18:30 - 2014-06-29 10:57 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-07-19 18:20 - 2014-07-19 18:20 - 00001244 _____ () C:\Users\Dignitas\Desktop\Revo Uninstaller.lnk 2014-07-19 18:20 - 2014-07-19 18:20 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-07-19 18:16 - 2014-07-18 14:25 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EPC 2014-07-19 18:16 - 2014-07-14 23:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-07-19 18:16 - 2014-07-14 23:22 - 00000000 ____D () C:\Windows\LastGood.Tmp 2014-07-19 18:16 - 2014-07-09 15:42 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-19 18:16 - 2014-07-06 13:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-19 18:16 - 2014-07-06 13:59 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-19 18:16 - 2014-07-06 13:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-19 18:16 - 2014-05-01 22:54 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-07-19 18:16 - 2013-12-21 13:07 - 00000000 ____D () C:\Program Files (x86)\Heroes of Newerth 2014-07-19 18:16 - 2013-12-18 17:29 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-07-19 18:16 - 2013-12-18 17:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-07-19 18:16 - 2013-09-30 06:00 - 00000000 ____D () C:\Windows\ShellNew 2014-07-19 18:16 - 2013-09-30 06:00 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 __RSD () C:\Windows\Media 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ___RD () C:\Windows\ToastData 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\WinStore 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\SystemResources 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\rescache 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\MediaViewer 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\FileManager 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\Camera 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-07-19 18:16 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\system32\Sysprep 2014-07-19 18:16 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\servicing 2014-07-19 18:15 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\registration 2014-07-19 18:05 - 2014-07-19 18:05 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Dignitas\Desktop\scsadsadsa.exe 2014-07-19 17:53 - 2014-07-19 17:53 - 00259584 _____ (OldTimer Tools) C:\Users\Dignitas\Desktop\OTH.scr 2014-07-19 17:25 - 2013-08-22 15:25 - 00524288 ___SH () C:\Windows\system32\config\BBI 2014-07-19 09:21 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-07-18 16:03 - 2014-02-20 19:00 - 00000000 ____D () C:\Users\Dignitas\XFER 2014-07-18 16:03 - 2014-02-20 18:32 - 00041415 _____ () C:\Users\Dignitas\ewa_client_0.log 2014-07-18 14:25 - 2014-02-20 19:35 - 00002011 _____ () C:\Users\Dignitas\Desktop\EPC.lnk 2014-07-18 14:25 - 2014-02-20 18:32 - 00000102 _____ () C:\Users\Dignitas\.ewanapi_cookie 2014-07-16 19:47 - 2013-12-18 23:51 - 00000000 ____D () C:\ProgramData\PMS 2014-07-16 19:16 - 2013-08-22 16:46 - 00057705 _____ () C:\Windows\setupact.log 2014-07-16 09:52 - 2014-07-16 09:52 - 00004286 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_65-b20.log 2014-07-16 09:52 - 2014-02-19 21:04 - 00000000 ____D () C:\ProgramData\Oracle 2014-07-15 05:38 - 2014-07-15 05:38 - 00000000 ____D () C:\ProgramData\ATI 2014-07-14 23:23 - 2014-07-14 23:23 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201407142323125472.log 2014-07-14 23:23 - 2014-05-01 22:54 - 00000000 ____D () C:\ProgramData\AMD 2014-07-14 23:23 - 2014-05-01 22:53 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-07-14 23:21 - 2014-05-01 22:53 - 00000000 ____D () C:\AMD 2014-07-12 14:28 - 2013-12-18 22:47 - 00000817 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk 2014-07-12 14:28 - 2013-12-18 22:47 - 00000817 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk 2014-07-10 09:36 - 2013-08-22 16:44 - 00336048 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-09 17:52 - 2014-07-09 17:52 - 09016760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00127872 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-07-09 17:52 - 2014-04-18 04:43 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 10519584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 01330912 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 01110992 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 00099520 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 08108312 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 07892000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-07-09 17:51 - 2014-04-18 04:42 - 07102496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2014-07-09 17:51 - 2014-04-18 04:42 - 06879016 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2014-07-09 17:47 - 2014-07-09 17:47 - 00276192 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2014-07-09 17:45 - 2014-07-09 17:45 - 15950848 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-07-09 17:35 - 2014-07-09 17:35 - 32876544 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00418304 _____ () C:\Windows\system32\amdmiracast.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00231424 _____ () C:\Windows\system32\clinfo.exe 2014-07-09 17:35 - 2014-07-09 17:35 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 27843072 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 27529216 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00134656 _____ () C:\Windows\system32\amdhdl64.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00123392 _____ () C:\Windows\SysWOW64\amdhdl32.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 05225472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 23028224 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 04180992 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\system32\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00366592 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-07-09 17:28 - 2014-07-09 17:28 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-07-09 17:27 - 2014-07-09 17:27 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 03437632 _____ () C:\Windows\system32\atiumd6a.cap 2014-07-09 17:25 - 2014-07-09 17:25 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00588800 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-07-09 17:23 - 2014-07-09 17:23 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-07-09 17:22 - 2014-07-09 17:22 - 03471376 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-07-09 17:21 - 2014-06-21 03:39 - 00826368 _____ (AMD) C:\Windows\system32\coinst_14.20.dll 2014-07-09 17:20 - 2014-07-09 17:20 - 01207296 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-07-09 17:20 - 2014-07-09 17:20 - 00898560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00557056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-07-09 17:19 - 2014-07-09 17:19 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-07-09 17:17 - 2014-07-09 17:17 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-07-09 15:43 - 2013-12-18 17:49 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-09 15:43 - 2013-08-22 17:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-07-09 15:42 - 2013-12-18 17:49 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-07-09 11:39 - 2014-07-09 11:39 - 00051200 _____ () C:\Windows\system32\kdbsdk64.dll 2014-07-09 11:37 - 2014-07-09 11:37 - 00038912 _____ () C:\Windows\SysWOW64\kdbsdk32.dll 2014-07-09 10:29 - 2013-12-21 13:59 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Paint.NET 2014-07-09 08:20 - 2014-07-09 08:20 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2014-07-08 19:02 - 2014-01-28 20:08 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-07-03 19:58 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2014-07-01 15:05 - 2014-07-01 15:05 - 00233912 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-07-01 00:45 - 2014-07-09 08:21 - 00688128 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-01 00:32 - 2013-12-19 00:22 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\NetSpeedMonitor 2014-06-30 20:17 - 2014-05-10 20:10 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\ALLBenchmark 2014-06-29 10:58 - 2014-02-05 15:35 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Malwarebytes 2014-06-29 10:57 - 2014-02-05 15:34 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-06-28 09:48 - 2014-07-09 08:21 - 00527360 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-28 09:07 - 2014-07-09 08:21 - 00385536 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-06-26 22:55 - 2013-08-22 17:38 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-06-26 22:55 - 2013-08-22 17:38 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-06-26 19:52 - 2014-04-18 11:50 - 00280792 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-06-26 19:52 - 2014-04-18 11:49 - 00280856 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-06-26 19:52 - 2014-04-18 11:49 - 00280792 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-06-26 13:58 - 2014-06-26 13:58 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WIS-ASRA 2014-06-26 13:58 - 2014-02-20 18:44 - 00001963 _____ () C:\Users\Dignitas\Desktop\WIS-ASRA.lnk 2014-06-25 18:53 - 2013-12-18 23:50 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-06-25 15:02 - 2014-06-25 13:09 - 00000022 _____ () C:\Windows\GPU-Z.INI 2014-06-25 13:07 - 2014-06-25 13:07 - 00000963 _____ () C:\Users\Public\Desktop\3DMark.lnk 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Program Files (x86)\Futuremark 2014-06-25 13:07 - 2014-03-27 10:48 - 00000000 ____D () C:\ProgramData\Package Cache 2014-06-25 13:07 - 2013-12-19 00:18 - 00065692 _____ () C:\Windows\DirectX.log 2014-06-25 12:54 - 2014-06-25 12:54 - 00000745 _____ () C:\Users\Dignitas\Desktop\MSI Afterburner.lnk 2014-06-25 12:54 - 2013-12-19 22:29 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2014-06-25 10:42 - 2013-12-18 17:14 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-06-25 10:42 - 2013-12-18 17:14 - 00003870 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-06-25 10:08 - 2014-06-25 10:08 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201406251008386662.log 2014-06-25 00:15 - 2014-06-25 00:15 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Adobe 2014-06-24 21:49 - 2014-06-24 21:49 - 00000743 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk 2014-06-24 21:49 - 2014-06-24 21:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2014-06-23 16:33 - 2014-06-23 16:33 - 00000000 ____D () C:\Users\Dignitas\Desktop\Grundlagen der Mathematik 2 2014-06-22 10:27 - 2014-06-22 10:27 - 00283952 _____ () C:\Windows\Minidump\062214-7937-01.dmp 2014-06-22 10:27 - 2014-02-17 12:08 - 546136987 _____ () C:\Windows\MEMORY.DMP 2014-06-22 10:27 - 2014-02-17 12:08 - 00000000 ____D () C:\Windows\Minidump 2014-06-21 23:13 - 2013-12-18 23:08 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\XBMC 2014-06-19 03:39 - 2014-07-09 08:22 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-06-19 02:48 - 2014-07-09 08:22 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-06-19 02:16 - 2014-07-09 08:22 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-06-19 02:09 - 2014-07-09 08:22 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-06-19 01:51 - 2014-07-09 08:22 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-06-19 01:50 - 2014-07-09 08:22 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-06-19 01:48 - 2014-07-09 08:22 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-06-19 01:46 - 2014-07-09 08:22 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-06-19 01:39 - 2014-07-09 08:22 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-06-19 01:33 - 2014-07-09 08:22 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-06-19 01:32 - 2014-07-09 08:22 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-06-19 01:27 - 2014-07-09 08:22 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-06-19 01:12 - 2014-07-09 08:22 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-06-19 00:59 - 2014-07-09 08:22 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-06-19 00:58 - 2014-07-09 08:22 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-06-19 00:58 - 2014-07-09 08:22 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-06-19 00:57 - 2014-07-09 08:22 - 00225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-06-19 00:52 - 2014-07-09 08:22 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-06-19 00:51 - 2014-07-09 08:22 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-06-19 00:49 - 2014-07-09 08:22 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-06-19 00:45 - 2014-07-09 08:22 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-06-19 00:35 - 2014-07-09 08:22 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-06-19 00:34 - 2014-07-09 08:22 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-06-19 00:15 - 2014-07-09 08:22 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-06-19 00:13 - 2014-07-09 08:22 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-06-19 00:09 - 2014-07-09 08:22 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-06-19 00:07 - 2014-07-09 08:22 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll Some content of TEMP: ==================== C:\Users\Dignitas\AppData\Local\Temp\AMDCleanupUtility.exe C:\Users\Dignitas\AppData\Local\Temp\Cleanup.dll C:\Users\Dignitas\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe C:\Users\Dignitas\AppData\Local\Temp\msvcm80.dll C:\Users\Dignitas\AppData\Local\Temp\msvcp80.dll C:\Users\Dignitas\AppData\Local\Temp\msvcr80.dll C:\Users\Dignitas\AppData\Local\Temp\NOSEventMessages.dll C:\Users\Dignitas\AppData\Local\Temp\proxy_vole4686146236557680383.dll C:\Users\Dignitas\AppData\Local\Temp\Quarantine.exe C:\Users\Dignitas\AppData\Local\Temp\raptrpatch.exe C:\Users\Dignitas\AppData\Local\Temp\raptr_stub.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-19 09:21 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-07-2014 Ran by Dignitas at 2014-07-19 21:10:40 Running from D:\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== 3DMark (HKLM-x32\...\{4198fd8f-98bd-4240-9b3a-ab2643e532f6}) (Version: 1.3.708.0 - Futuremark) 3DMark (Version: 1.3.708.0 - Futuremark) Hidden 7-Zip 9.22beta (HKLM-x32\...\7-Zip) (Version: - ) ACP Application (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) AIDA64 Engineer v4.00 (HKLM-x32\...\AIDA64 Engineer_is1) (Version: 4.00 - FinalWire Ltd.) AMD Accelerated Video Transcoding (Version: 13.30.100.40709 - Advanced Micro Devices, Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2014.0709.1135.19003 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (HKLM\...\{EE0B4480-194D-C725-EDF8-6CE3FC4DDC89}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 2.0.2.0000 - Asmedia Technology) ASUS Xonar DX Audio (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392008788}) (Version: - ) Blur Busters Strobe Util (HKLM-x32\...\{57BDAE81-2BE7-4ABA-8B03-1520FBF41AF9}) (Version: 1.0.0 - Blur Busters) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Catzilla 1.2 (HKLM\...\{41EE0CB2-75DE-4FE0-AEB2-4CBC30624FA6}_is1) (Version: 1.2 - ALLPlayer Group Ltd.) CCC Help Chinese Standard (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios) Cisco Powerline AV2 Utility (HKLM-x32\...\{11ED962C-1261-4690-9203-CEE9E57A8138}) (Version: 1.0.05.011 - Cisco Systems) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) CPUID CPU-Z 1.69.2 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CrystalDiskInfo 6.0.4 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.0.4 - Crystal Dew World) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) Dark Souls 2 (HKLM-x32\...\RGFya1NvdWxzMg==_is1) (Version: 1 - ) Document_Installer (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.118 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.118 - Etron Technology) Hidden EWA net (HKLM-x32\...\EWA net) (Version: - ) EWA_net_Admin (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_Client_Applications (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_Core (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_EPC (x32 Version: 1.00.0000 - Daimler) Hidden EWA_net_Server (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_WIS (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_WIS_CaseOnline_Importer (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited) FordEtis IDS 1.4014 (HKLM-x32\...\1492-6894-0638-6774) (Version: 1.4014 - Ford Motor Company) Futuremark SystemInfo (HKLM-x32\...\{4115C9AA-35E0-45D8-9363-47635B8750C7}) (Version: 4.29.438.0 - Futuremark) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 36.0.1985.125 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Heaven Benchmark version 4.0 (HKLM-x32\...\Unigine Heaven Benchmark (Basic Edition)_is1) (Version: 4.0 - Unigine Corp.) Heroes of Newerth (HKLM-x32\...\hon) (Version: 2.3.0 - S2 Games) HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.216 - SurfRight B.V.) ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{0EC7F9CC-4741-45AE-9F55-6E9343F726F5}) (Version: 1.1.0.36960 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3496 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.6.1000 - Intel Corporation) Intel(R) Rapid Storage Technology (Version: 12.8.6.1000 - Intel Corporation) Hidden Intel® Trusted Connect Service Client (Version: 1.31.8.1 - Intel Corporation) Hidden JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Logitech Media Server 7.7.3 (HKLM-x32\...\Logitech Media Server_is1) (Version: 7.7.3 - Logitech) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{51adbf11-493f-431c-a862-967a0fae2944}) (Version: 12.0.21005.1 - Корпорация Майкрософт) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft_VC100_CRT_SP1_x64 (Version: 10.0.40219.1 - Nokia) Hidden Microsoft_VC100_CRT_SP1_x86 (x32 Version: 10.0.40219.1 - Nokia) Hidden Mozilla Thunderbird 24.2.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.2.0 (x86 de)) (Version: 24.2.0 - Mozilla) Mozilla Thunderbird 24.6.0 (x86 de) (HKCU\...\Mozilla Thunderbird 24.6.0 (x86 de)) (Version: 24.6.0 - Mozilla) MPC-HC 1.7.2 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.2 - MPC-HC Team) MPC-HC 1.7.5 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.5 - MPC-HC Team) MSI Afterburner 3.0.1 (HKLM-x32\...\Afterburner) (Version: 3.0.1 - MSI Co., LTD) MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden NetSpeedMonitor 2.5.4.0 x64 (HKLM\...\{88F41EE2-949B-4B52-933D-C7F8F67BC1D2}) (Version: 2.5.4.0 - Florian Gilles) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenVPN 2.3.2 UniPassau (HKLM-x32\...\OpenVPN) (Version: 2.3.2 - ) Outlast (HKLM-x32\...\Outlast_is1) (Version: - ) Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC) PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia) PS3 Media Server (HKLM-x32\...\PS3 Media Server) (Version: 1.90.1 - PS3 Media Server) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.992 - Even Balance, Inc.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Rising Storm/Red Orchestra 2 Multiplayer (HKLM-x32\...\Steam App 35450) (Version: - Tripwire Interactive) Rust (HKLM-x32\...\Steam App 252490) (Version: - Facepunch Studios) Sentinel Protection Installer 7.6.4 (HKLM-x32\...\{7444785E-886F-4989-A69E-6394E36F3982}) (Version: 7.6.4 - SafeNet, Inc.) South Park The Stick of Truth (HKLM-x32\...\South Park The Stick of Truth_is1) (Version: - Ubisoft) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) System Requirements Lab for Intel (HKLM-x32\...\{1EBDF6D2-CEA0-484C-A23E-2DDAD7FD0DD0}) (Version: 4.5.22.0 - Husdawg, LLC) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.29947 - TeamViewer) UNi Xonar Audio Driver (HKLM\...\C-Media Oxygen HD Audio Driver) (Version: - ) Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) Windows Live Communications Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) winLAME 2010 beta 2 (HKLM-x32\...\{63C16E81-327C-49B6-9643-4F5EFD8A6B2D}) (Version: 1.0.2010.2 - Michael Fink) WinRAR 5.01 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) XBMC (HKCU\...\XBMC) (Version: - Team XBMC) ==================== Restore Points ========================= 29-06-2014 16:50:22 Installed Java 7 Update 60 08-07-2014 08:44:18 Geplanter Prüfpunkt 14-07-2014 21:22:27 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 14-07-2014 21:22:31 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 16-07-2014 07:52:10 Installed Java 7 Update 65 19-07-2014 16:14:34 Wiederherstellungsvorgang ==================== Hosts content: ========================== 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {0D63A6E5-E42B-4B91-B739-6F110BFF9E24} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {2BDD42C0-208C-45D8-B5C0-F638F2E0FD76} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation) Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {436787C9-48CA-416D-892E-9E56B3B1E6F1} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: {44409720-55F9-42A2-80BE-F19509E0CFB7} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {473054F7-A1B0-4764-AC93-1D85BC1FFFAE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-08] (Adobe Systems Incorporated) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {568C91B5-2E76-4AB1-83BB-F3D5809C3E8C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-18] (Google Inc.) Task: {5CF0550A-0218-42DB-BBB0-7BD65E31CB5A} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {AA9901DE-0D52-402F-AA91-9DD8325B05F6} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload Task: {BBB7F1C9-89A0-4A7D-BEC4-C5C84E1BD033} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-18] (Google Inc.) Task: {C6081F80-0606-4F89-8537-99BF7B5B4DF1} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D2DCAD93-55A4-4D06-B339-24D4AB20EBA7} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-07-09] (Microsoft Corporation) Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {E3B68223-D2B6-4422-95EB-4FD4AE884E66} - System32\Tasks\MSIAfterburner => D:\Programme\MSI Afterburner\MSIAfterburner.exe [2014-06-10] () Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {FE5DF2C7-6C7C-4612-BF57-F86ADDAB8A86} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-726487413-4058879626-644410073-1001Core.job => C:\Users\Dignitas\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-05-22 21:44 - 2014-05-22 21:44 - 00112640 _____ () C:\AMD\amdacpusrsvc.exe 2014-04-18 11:49 - 2014-04-21 20:35 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-03-14 15:01 - 2014-03-14 15:01 - 00173568 _____ () C:\Program Files\TeamSpeak 3 Client\quazip.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 01080832 _____ () C:\Program Files\TeamSpeak 3 Client\platforms\qwindows.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00833024 _____ () C:\Program Files\TeamSpeak 3 Client\sqldrivers\qsqlite.dll 2013-10-23 14:15 - 2014-06-24 14:17 - 00102344 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2013-10-23 14:15 - 2014-06-24 14:17 - 00108488 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00030208 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qgif.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00233984 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qjpeg.dll 2013-10-23 14:15 - 2014-07-15 23:46 - 00563656 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2013-10-23 14:15 - 2014-07-15 23:46 - 00579016 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00159232 _____ () C:\Program Files\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll 2013-08-22 11:05 - 2013-08-22 14:39 - 00976736 _____ () C:\Windows\System32\speech\engines\tts\MSTTSEngine.dll 2013-08-22 11:00 - 2013-08-22 10:59 - 00513536 _____ () C:\Windows\System32\speech\engines\tts\MSTTSLoc.DLL 2013-12-18 17:26 - 2008-07-11 16:04 - 00200704 ____N () C:\Windows\SysWOW64\HsMgr.exe 2013-12-18 17:26 - 2008-07-11 16:03 - 00282112 ____N () C:\Windows\System\HsMgr64.exe 2014-02-20 16:59 - 2013-06-28 17:24 - 00163840 _____ () D:\Programme\EWA net\apps\jre\private_jre\bin\server\jvm.dll 2014-02-20 16:59 - 2011-03-09 11:48 - 00036864 ____N () D:\Programme\EWA net\database\TransBase EWA\polycsr.dll 2014-02-20 16:59 - 2011-03-09 11:48 - 00166912 ____N () D:\Programme\EWA net\database\TransBase EWA\libmcrypt.dll 2014-02-20 17:00 - 2005-03-21 16:54 - 00036864 ____N () D:\Programme\EWA net\database\TransBase EPC\polycsr.dll 2014-02-20 17:00 - 2007-11-26 17:26 - 00166912 ____N () D:\Programme\EWA net\database\TransBase EPC\libmcrypt.dll 2014-01-09 16:20 - 2012-06-06 10:56 - 00143360 ____N () C:\Program Files\UNi Xonar Audio\Customapp\VmixP8.dll 2014-05-21 20:43 - 2014-07-12 02:53 - 01116672 _____ () C:\Program Files (x86)\Steam\libavcodec-55.dll 2014-05-21 20:43 - 2014-07-12 02:53 - 00399360 _____ () C:\Program Files (x86)\Steam\libavformat-55.dll 2014-01-08 10:11 - 2014-07-12 02:53 - 00331264 _____ () C:\Program Files (x86)\Steam\libavresample-1.dll 2014-04-22 23:21 - 2014-07-12 02:53 - 00438784 _____ () C:\Program Files (x86)\Steam\libavutil-53.dll 2013-12-18 23:56 - 2014-06-27 00:40 - 00764416 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2014-05-21 20:44 - 2014-07-16 04:28 - 02139328 _____ () C:\Program Files (x86)\Steam\video.dll 2014-05-21 20:43 - 2014-04-29 02:37 - 00519168 _____ () C:\Program Files (x86)\Steam\libswscale-2.dll 2013-12-18 23:56 - 2014-07-16 04:28 - 01116864 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2013-12-18 23:56 - 2014-05-02 01:35 - 20628160 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2014-07-17 11:01 - 2014-07-15 11:24 - 00718664 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\libglesv2.dll 2014-07-17 11:01 - 2014-07-15 11:24 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\libegl.dll 2014-07-17 11:01 - 2014-07-15 11:24 - 08537928 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\pdf.dll 2014-07-17 11:01 - 2014-07-15 11:24 - 00353096 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\ppGoogleNaClPluginChrome.dll 2014-07-17 11:01 - 2014-07-15 11:24 - 01732936 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\ffmpegsumo.dll 2013-12-18 21:31 - 2013-09-16 12:20 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Dignitas\SkyDrive:ms-properties AlternateDataStreams: C:\Users\Dignitas\SkyDrive.old:ms-properties ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= HKLM\...\StartupApproved\StartupFolder: => "Logitech Media Server-Taskleisten-Tool.lnk" HKLM\...\StartupApproved\Run: => "NvBackend" HKLM\...\StartupApproved\Run32: => "Adobe ARM" HKCU\...\StartupApproved\Run: => "DAEMON Tools Lite" HKCU\...\StartupApproved\Run: => "Facebook Update" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/19/2014 09:03:55 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (07/19/2014 07:22:35 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (07/19/2014 06:41:53 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (07/19/2014 06:41:53 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (07/19/2014 06:41:50 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (07/19/2014 06:17:32 PM) (Source: System Restore) (EventID: 8210) (User: ) Description: Unbekannter Fehler bei der Systemwiederherstellung: (Installed Java 7 Update 60). Zusätzliche Informationen: 0x80070005. Error: (07/19/2014 06:14:35 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary MsLldp. System Error: Zugriff verweigert . Error: (07/19/2014 06:11:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbam.com, Version: 1.0.0.532, Zeitstempel: 0x53518532 Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e Ausnahmecode: 0x40000015 Fehleroffset: 0x0008d6fd ID des fehlerhaften Prozesses: 0x328 Startzeit der fehlerhaften Anwendung: 0xmbam.com0 Pfad der fehlerhaften Anwendung: mbam.com1 Pfad des fehlerhaften Moduls: mbam.com2 Berichtskennung: mbam.com3 Vollständiger Name des fehlerhaften Pakets: mbam.com4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbam.com5 Error: (07/19/2014 06:10:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.0.532, Zeitstempel: 0x53518532 Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e Ausnahmecode: 0x40000015 Fehleroffset: 0x0008d6fd ID des fehlerhaften Prozesses: 0x198 Startzeit der fehlerhaften Anwendung: 0xmbam.exe0 Pfad der fehlerhaften Anwendung: mbam.exe1 Pfad des fehlerhaften Moduls: mbam.exe2 Berichtskennung: mbam.exe3 Vollständiger Name des fehlerhaften Pakets: mbam.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbam.exe5 Error: (07/19/2014 06:06:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbam.com, Version: 1.0.0.532, Zeitstempel: 0x53518532 Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e Ausnahmecode: 0x40000015 Fehleroffset: 0x0008d6fd ID des fehlerhaften Prozesses: 0x37c Startzeit der fehlerhaften Anwendung: 0xmbam.com0 Pfad der fehlerhaften Anwendung: mbam.com1 Pfad des fehlerhaften Moduls: mbam.com2 Berichtskennung: mbam.com3 Vollständiger Name des fehlerhaften Pakets: mbam.com4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbam.com5 System errors: ============= Error: (07/19/2014 09:08:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Hardlock" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (07/19/2014 06:37:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Hardlock" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (07/19/2014 06:37:00 PM) (Source: DCOM) (EventID: 10010) (User: Dignitas) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (07/19/2014 06:30:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Hardlock" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (07/19/2014 06:26:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Hardlock" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (07/19/2014 06:17:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Hardlock" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (07/19/2014 06:06:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Hardlock" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (07/19/2014 06:05:00 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252. Error: (07/19/2014 06:05:00 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252. Error: (07/19/2014 06:05:00 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252. Microsoft Office Sessions: ========================= Error: (07/19/2014 09:03:55 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe Error: (07/19/2014 07:22:35 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestD:\Downloads\esetsmartinstaller_deu.exe Error: (07/19/2014 06:41:53 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestD:\Downloads\esetsmartinstaller_deu.exe Error: (07/19/2014 06:41:53 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestD:\Downloads\esetsmartinstaller_deu.exe Error: (07/19/2014 06:41:50 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestD:\Downloads\esetsmartinstaller_deu.exe Error: (07/19/2014 06:17:32 PM) (Source: System Restore) (EventID: 8210) (User: ) Description: Installed Java 7 Update 600x80070005 Error: (07/19/2014 06:14:35 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary MsLldp. System Error: Zugriff verweigert Error: (07/19/2014 06:11:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbam.com1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd32801cfa36c0844e1ded:\downloads\mbam-chameleon-3.1.4.0\chameleon\windows\dtb\mbam.comd:\downloads\mbam-chameleon-3.1.4.0\chameleon\windows\dtb\MSVCR100.dll464ad643-0f5f-11e4-8307-bc5ff43922de Error: (07/19/2014 06:10:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd19801cfa36c0619b26fC:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exeC:\Program Files (x86)\ Malwarebytes Anti-Malware \MSVCR100.dll43ddabc8-0f5f-11e4-8307-bc5ff43922de Error: (07/19/2014 06:06:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbam.com1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd37c01cfa36b767d49b6c:\program files (x86)\ malwarebytes anti-malware \chameleon\windows\njsuuoclx\mbam.comc:\program files (x86)\ malwarebytes anti-malware \chameleon\windows\njsuuoclx\MSVCR100.dllb458ef83-0f5e-11e4-8307-bc5ff43922de CodeIntegrity Errors: =================================== Date: 2014-07-19 21:08:19.672 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:37:22.037 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:30:23.889 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:26:15.778 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:17:30.867 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:06:22.860 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 17:51:26.830 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 17:46:02.476 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 17:42:37.148 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 17:32:59.934 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Percentage of memory in use: 22% Total physical RAM: 8072.19 MB Available physical RAM: 6266.59 MB Total Pagefile: 16264.19 MB Available Pagefile: 13820.67 MB Total Virtual: 131072 MB Available Virtual: 131071.79 MB ==================== Drives ================================ Drive c: (BOOT) (Fixed) (Total:238.47 GB) (Free:138.54 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (BACKUP) (Fixed) (Total:1853.25 GB) (Free:1527.42 GB) NTFS Drive e: (RECOVER) (Fixed) (Total:9.75 GB) (Free:9.75 GB) FAT32 Drive i: (CoH_ToV) (CDROM) (Total:6.81 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238 GB) (Disk ID: D0AAF687) Partition 1: (Active) - (Size=238 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 01596CE9) Partition 1: (Not Active) - (Size=-209113317376) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=10 GB) - (Type=0C) ==================== End Of Log ============================ Leider sind die beiden restliche Logs (Gmer und Eset) zu lang. Also habe ich sie in den Anhang gehängt. Die Dateien, die im Eset Log stehen, sind alle schon lange bevor sich Anti-Malware nicht mehr starten lies auf dem Computer gewesen, bis auf die erste Datei (die sich wie oben schon erwähnt nicht löschen lässt) Ich hoffe ihr könnt mir weiterhelfen. Geändert von Dignitas (19.07.2014 um 21:00 Uhr) |
19.07.2014, 20:55 | #2 |
/// the machine /// TB-Ausbilder | Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion Hi,
__________________MBAM Cleanup Tool schon versucht?
__________________ |
19.07.2014, 21:03 | #3 |
| Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion Ok habe die exe im Mbam Forum gefunden. Nach einem Neustart ist der MBam Ordner inkl. der 2 nicht löschbaren Datein weg.
__________________EDIT: Mbam ließ sich jetzt problemlos installieren und startet auch. Scan läuft EDIT2: Quick Scan abgeschlossen, Mbam hat nichts gefunden. Und auch der erweiterte Scan speziell unter "C:\Program Files (x86)" brachte keine Infizierung. Was hat es dann aber mit dieser unlöschbraren "WS_x64.Enabler" (ENABLER-Datei) aufsich, bei dem der Eset Online Scanner Alarm schlägt? Geändert von Dignitas (19.07.2014 um 21:38 Uhr) |
20.07.2014, 16:32 | #4 |
/// the machine /// TB-Ausbilder | Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion Wo genau liegt die Datei? Genauer PFad oder Log von ESET?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
20.07.2014, 17:20 | #5 |
| Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion Hier das ESET Log Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=2e13eeb51fcb69459143369d384ebf18 # engine=19253 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=true # antistealth_checked=true # utc_time=2014-07-19 06:58:38 # local_time=2014-07-19 08:58:38 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 9718 10179839 0 0 # scanned=567295 # found=1 # cleaned=0 # scan_time=8048 sh=A054FEB359229E22B1F18FCCCF803E286740BFD8 ft=1 fh=c71c00114b93155d vn="Variante von Win64/SProtector.A evtl. unerwünschte Anwendung" ac=I fn="C:\Program Files (x86)\WS_x64.Enabler" |
20.07.2014, 21:09 | #6 |
/// the machine /// TB-Ausbilder | Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter C:\Program Files (x86)\WS_x64.Enabler Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ --> Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion |
20.07.2014, 21:43 | #7 |
| Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion Fixlog Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 19-07-2014 Ran by Dignitas at 2014-07-20 22:31:50 Run:1 Running from D:\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** C:\Program Files (x86)\WS_x64.Enabler ***************** C:\Program Files (x86)\WS_x64.Enabler => Moved successfully. ==== End of Fixlog ==== Code:
ATTFilter # AdwCleaner v3.216 - Bericht erstellt am 20/07/2014 um 22:34:13 # Aktualisiert 17/07/2014 von Xplode # Betriebssystem : Windows 8.1 Pro (64 bits) # Benutzername : Dignitas - DIGNITAS # Gestartet von : C:\Users\Dignitas\Desktop\adwcleaner_3.216.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17126 -\\ Google Chrome v36.0.1985.125 [ Datei : C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [1361 octets] - [22/04/2014 23:19:34] AdwCleaner[R1].txt - [1791 octets] - [16/05/2014 20:51:07] AdwCleaner[R2].txt - [1742 octets] - [19/07/2014 18:24:10] AdwCleaner[R3].txt - [1138 octets] - [19/07/2014 18:36:16] AdwCleaner[R4].txt - [1271 octets] - [20/07/2014 22:33:52] AdwCleaner[S0].txt - [1336 octets] - [22/04/2014 23:20:33] AdwCleaner[S1].txt - [1852 octets] - [16/05/2014 20:51:48] AdwCleaner[S2].txt - [1803 octets] - [19/07/2014 18:25:40] AdwCleaner[S3].txt - [1200 octets] - [19/07/2014 18:36:51] AdwCleaner[S4].txt - [1193 octets] - [20/07/2014 22:34:13] ########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1253 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 8.1 Pro x64 Ran by Dignitas on 20.07.2014 at 22:36:15,07 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 20.07.2014 at 22:38:25,50 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-07-2014 Ran by Dignitas (administrator) on DIGNITAS on 20-07-2014 22:45:25 Running from C:\Users\Dignitas\Desktop Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe () C:\AMD\amdacpusrsvc.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EWA\tbmux32.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EPC\tbmux32.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase WIS\tbmux32.exe (Alexandria Software Consulting) D:\Programme\EWA net\server\bin\tomcat.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe () C:\Windows\SysWOW64\PnkBstrA.exe (SafeNet, Inc.) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe (SafeNet, Inc) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe (SafeNet, Inc.) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe (TeamViewer GmbH) D:\Programme\TeamViewer\Version9\TeamViewer_Service.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EWA\tbkern32.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EWA\tbkern32.exe () C:\Windows\SysWOW64\HsMgr.exe (CMedia) C:\Program Files\UNi Xonar Audio\Customapp\AsusAudioCenter.exe () C:\Windows\System\HsMgr64.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EPC\tbkern32.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [36352 2013-09-27] (Intel Corporation) HKLM\...\Run: [Cmaudio8788] => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd HKLM\...\Run: [Cmaudio8788GX] => C:\Windows\syswow64\HsMgr.exe [200704 2008-07-11] () HKLM\...\Run: [Cmaudio8788GX64] => C:\Windows\system\HsMgr64.exe [282112 2008-07-11] () HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-07-09] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-11] (Oracle Corporation) HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1753280 2014-07-16] (Valve Corporation) HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\Run: [Facebook Update] => C:\Users\Dignitas\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-04-03] (Facebook Inc.) HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {039778f2-6e11-11e3-825c-bc5ff43922de} - "F:\PMCsetup.exe" HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {2624e121-90ab-11e3-8297-bc5ff43922de} - "F:\setup.exe" HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {67bc29ac-783c-11e3-8269-bc5ff43922de} - "G:\setup.exe" HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {f9afebdd-67f3-11e3-824f-806e6f6e6963} - "I:\Autorun.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Logitech Media Server-Taskleisten-Tool.lnk ShortcutTarget: Logitech Media Server-Taskleisten-Tool.lnk -> C:\Program Files (x86)\Squeezebox\SqueezeTray.exe (Logitech Inc.) ==================== Internet (Whitelisted) ==================== ProxyServer: www-cache.rz.uni-passau.de:3128 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://localhost:9000/EWA-net/Login/trySSO.do HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x8EFCE29F532ECF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE,de;q=0.5 SearchScopes: HKLM-x32 - DefaultScope value is missing. BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll No File FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Dignitas\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) Chrome: ======= CHR HomePage: CHR StartupUrls: "https://www.google.de/" CHR Extension: (ProxFlow) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-01-10] CHR Extension: (Google Docs) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-18] CHR Extension: (Google Drive) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-18] CHR Extension: (Cookie Killer for Facebook) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgonpegbhnjepleakgjdbaepkfedhhnf [2014-05-29] CHR Extension: (YouTube) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-18] CHR Extension: (Google-Suche) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-18] CHR Extension: (AdBlock) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-05-01] CHR Extension: (ModHeader) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\idgpnmonknjnojddfkpgkljpfnnfcklj [2013-12-18] CHR Extension: (Google Wallet) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-18] CHR Extension: (Google Mail) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-18] ==================== Services (Whitelisted) ================= R2 amdacpusrsvc; C:\AMD\amdacpusrsvc.exe [112640 2014-05-22] () [File not signed] R2 EWA net DB Core; D:\Programme\EWA net\database\TransBase EWA\tbmux32.exe [326616 2011-03-09] (Transaction Software, D 81829 Munich) [File not signed] R2 EWA net DB EPC; D:\Programme\EWA net\database\TransBase EPC\tbmux32.exe [417792 2007-11-27] (Transaction Software, D 81829 Munich) [File not signed] R2 EWA net DB WIS; D:\Programme\EWA net\database\TransBase WIS\tbmux32.exe [326616 2011-03-09] (Transaction Software, D 81829 Munich) [File not signed] R2 EWA net Server; D:\Programme\EWA net\server\bin\tomcat.exe [65536 2003-07-31] (Alexandria Software Consulting) [File not signed] S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [528096 2014-06-08] (Futuremark) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-09-27] (Intel Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed] R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [282096 2014-03-17] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-16] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation) S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [32568 2014-04-08] (The OpenVPN Project) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-04-21] () R2 SentinelKeysServer; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe [374304 2011-05-27] (SafeNet, Inc.) R2 SentinelProtectionServer; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe [1250848 2011-05-27] (SafeNet, Inc) R2 SentinelSecurityRuntime; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe [292384 2011-05-27] (SafeNet, Inc.) R2 TeamViewer9; D:\Programme\TeamViewer\Version9\TeamViewer_Service.exe [5037888 2014-07-02] (TeamViewer GmbH) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [276192 2014-07-09] (Advanced Micro Devices) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2014-03-11] (Advanced Micro Devices) R3 cmudaxp; C:\Windows\system32\drivers\cmudaxp.sys [2735616 2013-12-11] (C-Media Inc) U3 dtscsidrv; C:\Windows\System32\Drivers\dtscsidrv.sys [309248 2014-01-08] (Disc Soft Ltd) S3 GPUZ; C:\Windows\TEMP\GPUZ.sys [27008 2014-06-25] () S2 Hardlock; C:\Windows\system32\drivers\hardlock.sys [296448 2005-06-14] (Aladdin Knowledge Systems Ltd.) [File not signed] R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [31648 2014-05-10] (REALiX(tm)) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [122584 2014-07-20] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-05-12] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) S3 NPF; C:\Windows\System32\drivers\NPF.sys [35344 2010-06-26] (CACE Technologies, Inc.) R2 Sentinel64; C:\Windows\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc.) S4 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2013-12-18] (Duplex Secure Ltd.) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-20 22:45 - 2014-07-20 22:45 - 00015377 _____ () C:\Users\Dignitas\Desktop\FRST.txt 2014-07-20 22:45 - 2014-07-19 21:10 - 02089984 _____ (Farbar) C:\Users\Dignitas\Desktop\FRST64.exe 2014-07-20 22:38 - 2014-07-20 22:38 - 00000621 _____ () C:\Users\Dignitas\Desktop\JRT.txt 2014-07-20 22:36 - 2014-07-20 09:22 - 01016261 _____ (Thisisu) C:\Users\Dignitas\Desktop\JRT.exe 2014-07-20 22:32 - 2014-07-19 18:24 - 01354223 _____ () C:\Users\Dignitas\Desktop\adwcleaner_3.216.exe 2014-07-20 10:18 - 2014-07-20 10:18 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EPC 2014-07-20 09:23 - 2014-07-20 09:23 - 00000000 ____D () C:\Windows\ERUNT 2014-07-19 22:23 - 2014-07-19 22:23 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-07-19 22:23 - 2014-07-19 22:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-07-19 22:23 - 2014-07-19 22:23 - 00000000 ____D () C:\Program Files (x86)\Java 2014-07-19 22:09 - 2014-07-20 22:34 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-07-19 22:09 - 2014-07-19 22:09 - 00001078 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-07-19 22:09 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-07-19 22:09 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-07-19 22:09 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-07-19 22:00 - 2014-07-19 22:00 - 00011776 ___SH () C:\Users\Dignitas\Desktop\Thumbs.db 2014-07-19 21:10 - 2014-07-20 22:45 - 00000000 ____D () C:\FRST 2014-07-19 21:07 - 2014-07-19 21:07 - 00000168 _____ () C:\Users\Dignitas\defogger_reenable 2014-07-19 18:20 - 2014-07-19 18:20 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-07-16 09:52 - 2014-07-16 09:52 - 00004286 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_65-b20.log 2014-07-15 05:38 - 2014-07-15 05:38 - 00000000 ____D () C:\ProgramData\ATI 2014-07-14 23:23 - 2014-07-19 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-07-14 23:23 - 2014-07-14 23:23 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201407142323125472.log 2014-07-14 23:22 - 2014-07-19 18:16 - 00000000 ____D () C:\Windows\LastGood.Tmp 2014-07-09 17:52 - 2014-07-09 17:52 - 09016760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00127872 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 08108312 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 07892000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-07-09 17:47 - 2014-07-09 17:47 - 00276192 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2014-07-09 17:45 - 2014-07-09 17:45 - 15950848 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-07-09 17:35 - 2014-07-09 17:35 - 32876544 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00418304 _____ () C:\Windows\system32\amdmiracast.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00231424 _____ () C:\Windows\system32\clinfo.exe 2014-07-09 17:35 - 2014-07-09 17:35 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 27843072 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 27529216 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00134656 _____ () C:\Windows\system32\amdhdl64.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00123392 _____ () C:\Windows\SysWOW64\amdhdl32.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 05225472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 23028224 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 04180992 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\system32\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00366592 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-07-09 17:28 - 2014-07-09 17:28 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-07-09 17:27 - 2014-07-09 17:27 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 03437632 _____ () C:\Windows\system32\atiumd6a.cap 2014-07-09 17:25 - 2014-07-09 17:25 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00588800 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-07-09 17:23 - 2014-07-09 17:23 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-07-09 17:22 - 2014-07-09 17:22 - 03471376 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-07-09 17:20 - 2014-07-09 17:20 - 01207296 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-07-09 17:20 - 2014-07-09 17:20 - 00898560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00557056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-07-09 17:19 - 2014-07-09 17:19 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-07-09 17:17 - 2014-07-09 17:17 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-07-09 15:42 - 2014-07-19 18:16 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-09 15:42 - 2014-04-14 05:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2014-07-09 11:39 - 2014-07-09 11:39 - 00051200 _____ () C:\Windows\system32\kdbsdk64.dll 2014-07-09 11:37 - 2014-07-09 11:37 - 00038912 _____ () C:\Windows\SysWOW64\kdbsdk32.dll 2014-07-09 08:22 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-09 08:22 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-09 08:22 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-09 08:22 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-09 08:22 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-09 08:22 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-09 08:22 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-09 08:22 - 2014-06-19 01:46 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-09 08:22 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-09 08:22 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-09 08:22 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-09 08:22 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-09 08:22 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-09 08:22 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-09 08:22 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-09 08:22 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-09 08:22 - 2014-06-19 00:57 - 00225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-09 08:22 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-09 08:22 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-09 08:22 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-09 08:22 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-09 08:22 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-09 08:22 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-09 08:22 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-09 08:22 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-09 08:22 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-09 08:22 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-09 08:22 - 2014-06-17 00:26 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-09 08:22 - 2014-06-17 00:24 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-09 08:22 - 2014-06-06 16:20 - 04190720 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-09 08:22 - 2014-05-30 05:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-09 08:22 - 2014-05-29 14:02 - 00565576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-07-09 08:22 - 2014-05-29 09:55 - 00735232 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2014-07-09 08:22 - 2014-05-29 08:40 - 00735232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2014-07-09 08:22 - 2014-05-29 08:37 - 00436224 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2014-07-09 08:22 - 2014-05-29 07:34 - 00318976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2014-07-09 08:22 - 2014-05-29 07:27 - 01417216 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-09 08:21 - 2014-07-01 00:45 - 00688128 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-09 08:21 - 2014-06-28 09:48 - 00527360 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-07-09 08:21 - 2014-06-28 09:07 - 00385536 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-07-09 08:21 - 2014-06-06 15:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-09 08:21 - 2014-06-06 14:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-09 08:21 - 2014-05-31 12:07 - 00054776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-07-09 08:21 - 2014-05-31 12:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2014-07-09 08:21 - 2014-05-31 05:40 - 13287936 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2014-07-09 08:21 - 2014-05-31 05:30 - 11792384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2014-07-09 08:21 - 2014-05-31 05:12 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 08:21 - 2014-05-31 05:06 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-07-09 08:21 - 2014-05-31 05:03 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-07-09 08:21 - 2014-05-31 05:01 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 08:21 - 2014-05-31 04:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-07-09 08:21 - 2014-05-31 04:54 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-07-09 08:21 - 2014-05-31 04:48 - 03463680 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-07-09 08:21 - 2014-05-31 04:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2014-07-09 08:21 - 2014-05-31 04:36 - 00923136 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2014-07-09 08:21 - 2014-05-31 04:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2014-07-09 08:21 - 2014-05-31 04:32 - 00756224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-07-09 08:20 - 2014-07-09 08:20 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2014-07-06 13:59 - 2014-07-19 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-06 13:59 - 2014-07-19 18:16 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-06 13:59 - 2014-07-19 18:16 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-01 15:05 - 2014-07-01 15:05 - 00233912 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-07-01 15:05 - 2014-05-31 08:27 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-07-01 15:05 - 2014-05-15 00:47 - 04720640 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2014-07-01 15:05 - 2014-05-13 09:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe 2014-07-01 15:05 - 2014-05-13 07:07 - 02844160 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2014-07-01 15:05 - 2014-05-13 06:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2014-07-01 15:05 - 2014-05-13 06:27 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2014-07-01 15:05 - 2014-05-13 06:26 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2014-07-01 15:05 - 2014-05-13 05:59 - 01035264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2014-07-01 15:05 - 2014-05-13 05:41 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2014-07-01 15:05 - 2014-05-13 05:31 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2014-07-01 15:05 - 2014-05-05 08:11 - 00440664 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-07-01 15:05 - 2014-05-05 08:11 - 00418136 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-07-01 15:05 - 2014-05-05 08:11 - 00089944 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-07-01 15:05 - 2014-05-05 08:11 - 00027480 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-07-01 15:05 - 2014-05-03 13:29 - 01726224 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-07-01 15:05 - 2014-05-03 11:20 - 01473080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-07-01 15:05 - 2014-05-03 09:40 - 00037376 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-07-01 15:05 - 2014-05-03 07:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2014-07-01 15:05 - 2014-05-03 07:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2014-07-01 15:05 - 2014-05-03 07:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2014-07-01 15:05 - 2014-05-03 07:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2014-07-01 15:05 - 2014-05-03 06:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll 2014-07-01 15:05 - 2014-05-03 06:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2014-07-01 15:05 - 2014-05-03 06:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2014-07-01 15:05 - 2014-05-03 05:30 - 02641920 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-07-01 15:05 - 2014-05-03 05:27 - 02317824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-07-01 15:05 - 2014-05-03 01:26 - 00050745 _____ () C:\Windows\system32\srms.dat 2014-07-01 15:05 - 2014-05-01 07:44 - 01025536 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-07-01 15:05 - 2014-04-30 08:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys 2014-07-01 15:05 - 2014-04-30 08:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-07-01 15:05 - 2014-04-30 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys 2014-07-01 15:05 - 2014-04-30 08:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys 2014-07-01 15:05 - 2014-04-30 07:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2014-07-01 15:05 - 2014-04-30 06:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2014-07-01 15:05 - 2014-04-30 06:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-07-01 15:05 - 2014-04-30 06:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2014-07-01 15:05 - 2014-04-30 06:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2014-07-01 15:05 - 2014-04-30 06:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2014-07-01 15:05 - 2014-04-30 06:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2014-07-01 15:05 - 2014-04-30 05:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-07-01 15:05 - 2014-04-30 05:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2014-07-01 15:05 - 2014-04-30 05:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2014-07-01 15:05 - 2014-04-30 05:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2014-07-01 15:05 - 2014-04-30 05:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2014-07-01 15:05 - 2014-04-30 05:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2014-07-01 15:05 - 2014-04-29 00:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2014-07-01 15:05 - 2014-04-27 00:03 - 02140888 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2014-07-01 15:05 - 2014-04-26 22:14 - 02144984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2014-07-01 15:05 - 2014-04-26 20:41 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfg.exe 2014-07-01 15:05 - 2014-04-26 20:22 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll 2014-07-01 15:05 - 2014-04-26 20:04 - 00311296 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll 2014-07-01 15:05 - 2014-04-26 19:36 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll 2014-07-01 15:05 - 2014-04-26 18:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2014-07-01 15:05 - 2014-04-14 11:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2014-07-01 15:05 - 2014-04-14 10:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2014-07-01 15:05 - 2014-04-14 07:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll 2014-07-01 15:05 - 2014-04-09 08:11 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-07-01 15:05 - 2014-04-09 07:20 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-06-26 13:58 - 2014-06-26 13:58 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WIS-ASRA 2014-06-25 13:09 - 2014-06-25 15:02 - 00000022 _____ () C:\Windows\GPU-Z.INI 2014-06-25 13:07 - 2014-06-25 13:07 - 00000963 _____ () C:\Users\Public\Desktop\3DMark.lnk 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Program Files (x86)\Futuremark 2014-06-25 12:56 - 2014-07-20 22:34 - 00003008 _____ () C:\Windows\System32\Tasks\MSIAfterburner 2014-06-25 12:54 - 2014-06-25 12:54 - 00000745 _____ () C:\Users\Dignitas\Desktop\MSI Afterburner.lnk 2014-06-25 10:08 - 2014-06-25 10:08 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201406251008386662.log 2014-06-25 00:15 - 2014-06-25 00:15 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Adobe 2014-06-24 21:49 - 2014-06-24 21:49 - 00000743 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk 2014-06-24 21:49 - 2014-06-24 21:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2014-06-23 16:33 - 2014-06-23 16:33 - 00000000 ____D () C:\Users\Dignitas\Desktop\Grundlagen der Mathematik 2 2014-06-23 16:28 - 2010-10-02 19:34 - 00001654 _____ () C:\Users\Dignitas\Desktop\Analysis Klausur SS2010.txt 2014-06-22 10:27 - 2014-06-22 10:27 - 00283952 _____ () C:\Windows\Minidump\062214-7937-01.dmp 2014-06-21 03:39 - 2014-07-09 17:21 - 00826368 _____ (AMD) C:\Windows\system32\coinst_14.20.dll ==================== One Month Modified Files and Folders ======= 2014-07-20 22:45 - 2014-07-20 22:45 - 00015377 _____ () C:\Users\Dignitas\Desktop\FRST.txt 2014-07-20 22:45 - 2014-07-19 21:10 - 00000000 ____D () C:\FRST 2014-07-20 22:42 - 2013-12-18 17:15 - 00003594 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-726487413-4058879626-644410073-1001 2014-07-20 22:40 - 2013-12-18 21:14 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\TS3Client 2014-07-20 22:40 - 2013-12-18 17:04 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-20 22:40 - 2013-09-30 05:58 - 00765378 _____ () C:\Windows\system32\perfh007.dat 2014-07-20 22:40 - 2013-09-30 05:58 - 00159696 _____ () C:\Windows\system32\perfc007.dat 2014-07-20 22:38 - 2014-07-20 22:38 - 00000621 _____ () C:\Users\Dignitas\Desktop\JRT.txt 2014-07-20 22:36 - 2013-12-18 17:14 - 00002159 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-07-20 22:34 - 2014-07-19 22:09 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-07-20 22:34 - 2014-06-25 12:56 - 00003008 _____ () C:\Windows\System32\Tasks\MSIAfterburner 2014-07-20 22:34 - 2014-04-22 23:19 - 00000000 ____D () C:\AdwCleaner 2014-07-20 22:34 - 2014-03-27 10:48 - 00065536 _____ () C:\Windows\system32\spu_storage.bin 2014-07-20 22:34 - 2013-12-18 23:56 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-07-20 22:34 - 2013-12-18 17:14 - 00001130 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-07-20 22:34 - 2013-09-29 21:05 - 00026500 _____ () C:\Windows\PFRO.log 2014-07-20 22:34 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-07-20 22:02 - 2014-01-28 20:08 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-07-20 22:02 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru 2014-07-20 21:47 - 2013-12-18 17:14 - 00001134 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-07-20 19:16 - 2013-12-18 17:01 - 01806559 _____ () C:\Windows\WindowsUpdate.log 2014-07-20 10:18 - 2014-07-20 10:18 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EPC 2014-07-20 10:18 - 2014-02-20 19:35 - 00002011 _____ () C:\Users\Dignitas\Desktop\EPC.lnk 2014-07-20 10:18 - 2014-02-20 19:00 - 00000000 ____D () C:\Users\Dignitas\XFER 2014-07-20 10:18 - 2014-02-20 18:32 - 00024764 _____ () C:\Users\Dignitas\ewa_client_0.log 2014-07-20 10:18 - 2014-02-20 18:32 - 00000102 _____ () C:\Users\Dignitas\.ewanapi_cookie 2014-07-20 10:18 - 2013-12-18 17:09 - 00000000 ____D () C:\Users\Dignitas 2014-07-20 09:23 - 2014-07-20 09:23 - 00000000 ____D () C:\Windows\ERUNT 2014-07-20 09:22 - 2014-07-20 22:36 - 01016261 _____ (Thisisu) C:\Users\Dignitas\Desktop\JRT.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-07-19 22:23 - 2014-07-19 22:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-07-19 22:23 - 2014-07-19 22:23 - 00000000 ____D () C:\Program Files (x86)\Java 2014-07-19 22:23 - 2014-02-19 21:04 - 00000000 ____D () C:\ProgramData\Oracle 2014-07-19 22:09 - 2014-07-19 22:09 - 00001078 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-07-19 22:00 - 2014-07-19 22:00 - 00011776 ___SH () C:\Users\Dignitas\Desktop\Thumbs.db 2014-07-19 21:10 - 2014-07-20 22:45 - 02089984 _____ (Farbar) C:\Users\Dignitas\Desktop\FRST64.exe 2014-07-19 21:07 - 2014-07-19 21:07 - 00000168 _____ () C:\Users\Dignitas\defogger_reenable 2014-07-19 21:00 - 2014-04-22 23:11 - 00000000 ____D () C:\Program Files (x86)\R.G. Freedom 2014-07-19 18:24 - 2014-07-20 22:32 - 01354223 _____ () C:\Users\Dignitas\Desktop\adwcleaner_3.216.exe 2014-07-19 18:20 - 2014-07-19 18:20 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-07-19 18:16 - 2014-07-14 23:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-07-19 18:16 - 2014-07-14 23:22 - 00000000 ____D () C:\Windows\LastGood.Tmp 2014-07-19 18:16 - 2014-07-09 15:42 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-19 18:16 - 2014-07-06 13:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-19 18:16 - 2014-07-06 13:59 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-19 18:16 - 2014-07-06 13:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-19 18:16 - 2014-05-01 22:54 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-07-19 18:16 - 2013-12-21 13:07 - 00000000 ____D () C:\Program Files (x86)\Heroes of Newerth 2014-07-19 18:16 - 2013-12-18 17:29 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-07-19 18:16 - 2013-12-18 17:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-07-19 18:16 - 2013-09-30 06:00 - 00000000 ____D () C:\Windows\ShellNew 2014-07-19 18:16 - 2013-09-30 06:00 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 __RSD () C:\Windows\Media 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ___RD () C:\Windows\ToastData 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\WinStore 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\SystemResources 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\rescache 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\MediaViewer 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\FileManager 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\Camera 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-07-19 18:16 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\system32\Sysprep 2014-07-19 18:16 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\servicing 2014-07-19 18:15 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\registration 2014-07-19 17:25 - 2013-08-22 15:25 - 00524288 ___SH () C:\Windows\system32\config\BBI 2014-07-19 09:21 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-07-16 19:47 - 2013-12-18 23:51 - 00000000 ____D () C:\ProgramData\PMS 2014-07-16 19:16 - 2013-08-22 16:46 - 00057705 _____ () C:\Windows\setupact.log 2014-07-16 09:52 - 2014-07-16 09:52 - 00004286 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_65-b20.log 2014-07-15 05:38 - 2014-07-15 05:38 - 00000000 ____D () C:\ProgramData\ATI 2014-07-14 23:23 - 2014-07-14 23:23 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201407142323125472.log 2014-07-14 23:23 - 2014-05-01 22:54 - 00000000 ____D () C:\ProgramData\AMD 2014-07-14 23:23 - 2014-05-01 22:53 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-07-14 23:21 - 2014-05-01 22:53 - 00000000 ____D () C:\AMD 2014-07-12 14:28 - 2013-12-18 22:47 - 00000817 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk 2014-07-12 14:28 - 2013-12-18 22:47 - 00000817 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk 2014-07-10 09:36 - 2013-08-22 16:44 - 00336048 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-09 17:52 - 2014-07-09 17:52 - 09016760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00127872 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-07-09 17:52 - 2014-04-18 04:43 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 10519584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 01330912 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 01110992 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 00099520 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 08108312 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 07892000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-07-09 17:51 - 2014-04-18 04:42 - 07102496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2014-07-09 17:51 - 2014-04-18 04:42 - 06879016 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2014-07-09 17:47 - 2014-07-09 17:47 - 00276192 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2014-07-09 17:45 - 2014-07-09 17:45 - 15950848 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-07-09 17:35 - 2014-07-09 17:35 - 32876544 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00418304 _____ () C:\Windows\system32\amdmiracast.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00231424 _____ () C:\Windows\system32\clinfo.exe 2014-07-09 17:35 - 2014-07-09 17:35 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 27843072 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 27529216 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00134656 _____ () C:\Windows\system32\amdhdl64.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00123392 _____ () C:\Windows\SysWOW64\amdhdl32.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 05225472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 23028224 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 04180992 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\system32\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00366592 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-07-09 17:28 - 2014-07-09 17:28 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-07-09 17:27 - 2014-07-09 17:27 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 03437632 _____ () C:\Windows\system32\atiumd6a.cap 2014-07-09 17:25 - 2014-07-09 17:25 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00588800 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-07-09 17:23 - 2014-07-09 17:23 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-07-09 17:22 - 2014-07-09 17:22 - 03471376 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-07-09 17:21 - 2014-06-21 03:39 - 00826368 _____ (AMD) C:\Windows\system32\coinst_14.20.dll 2014-07-09 17:20 - 2014-07-09 17:20 - 01207296 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-07-09 17:20 - 2014-07-09 17:20 - 00898560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00557056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-07-09 17:19 - 2014-07-09 17:19 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-07-09 17:17 - 2014-07-09 17:17 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-07-09 15:43 - 2013-12-18 17:49 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-09 15:43 - 2013-08-22 17:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-07-09 15:42 - 2013-12-18 17:49 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-07-09 11:39 - 2014-07-09 11:39 - 00051200 _____ () C:\Windows\system32\kdbsdk64.dll 2014-07-09 11:37 - 2014-07-09 11:37 - 00038912 _____ () C:\Windows\SysWOW64\kdbsdk32.dll 2014-07-09 10:29 - 2013-12-21 13:59 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Paint.NET 2014-07-09 08:20 - 2014-07-09 08:20 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2014-07-08 19:02 - 2014-01-28 20:08 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-07-03 19:58 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2014-07-01 15:05 - 2014-07-01 15:05 - 00233912 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-07-01 00:45 - 2014-07-09 08:21 - 00688128 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-01 00:32 - 2013-12-19 00:22 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\NetSpeedMonitor 2014-06-30 20:17 - 2014-05-10 20:10 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\ALLBenchmark 2014-06-28 09:48 - 2014-07-09 08:21 - 00527360 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-28 09:07 - 2014-07-09 08:21 - 00385536 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-06-26 22:55 - 2013-08-22 17:38 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-06-26 22:55 - 2013-08-22 17:38 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-06-26 19:52 - 2014-04-18 11:50 - 00280792 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-06-26 19:52 - 2014-04-18 11:49 - 00280856 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-06-26 19:52 - 2014-04-18 11:49 - 00280792 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-06-26 13:58 - 2014-06-26 13:58 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WIS-ASRA 2014-06-26 13:58 - 2014-02-20 18:44 - 00001963 _____ () C:\Users\Dignitas\Desktop\WIS-ASRA.lnk 2014-06-25 18:53 - 2013-12-18 23:50 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-06-25 15:02 - 2014-06-25 13:09 - 00000022 _____ () C:\Windows\GPU-Z.INI 2014-06-25 13:07 - 2014-06-25 13:07 - 00000963 _____ () C:\Users\Public\Desktop\3DMark.lnk 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Program Files (x86)\Futuremark 2014-06-25 13:07 - 2014-03-27 10:48 - 00000000 ____D () C:\ProgramData\Package Cache 2014-06-25 13:07 - 2013-12-19 00:18 - 00065692 _____ () C:\Windows\DirectX.log 2014-06-25 12:54 - 2014-06-25 12:54 - 00000745 _____ () C:\Users\Dignitas\Desktop\MSI Afterburner.lnk 2014-06-25 12:54 - 2013-12-19 22:29 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2014-06-25 10:42 - 2013-12-18 17:14 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-06-25 10:42 - 2013-12-18 17:14 - 00003870 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-06-25 10:08 - 2014-06-25 10:08 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201406251008386662.log 2014-06-25 00:15 - 2014-06-25 00:15 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Adobe 2014-06-24 21:49 - 2014-06-24 21:49 - 00000743 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk 2014-06-24 21:49 - 2014-06-24 21:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2014-06-23 16:33 - 2014-06-23 16:33 - 00000000 ____D () C:\Users\Dignitas\Desktop\Grundlagen der Mathematik 2 2014-06-22 10:27 - 2014-06-22 10:27 - 00283952 _____ () C:\Windows\Minidump\062214-7937-01.dmp 2014-06-22 10:27 - 2014-02-17 12:08 - 546136987 _____ () C:\Windows\MEMORY.DMP 2014-06-22 10:27 - 2014-02-17 12:08 - 00000000 ____D () C:\Windows\Minidump 2014-06-21 23:13 - 2013-12-18 23:08 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\XBMC Some content of TEMP: ==================== C:\Users\Dignitas\AppData\Local\Temp\AMDCleanupUtility.exe C:\Users\Dignitas\AppData\Local\Temp\Cleanup.dll C:\Users\Dignitas\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe C:\Users\Dignitas\AppData\Local\Temp\msvcm80.dll C:\Users\Dignitas\AppData\Local\Temp\msvcp80.dll C:\Users\Dignitas\AppData\Local\Temp\msvcr80.dll C:\Users\Dignitas\AppData\Local\Temp\NOSEventMessages.dll C:\Users\Dignitas\AppData\Local\Temp\proxy_vole4686146236557680383.dll C:\Users\Dignitas\AppData\Local\Temp\Quarantine.exe C:\Users\Dignitas\AppData\Local\Temp\raptrpatch.exe C:\Users\Dignitas\AppData\Local\Temp\raptr_stub.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-20 09:30 ==================== End Of Log ============================ Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-07-2014 Ran by Dignitas at 2014-07-20 22:45:38 Running from C:\Users\Dignitas\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== 3DMark (HKLM-x32\...\{4198fd8f-98bd-4240-9b3a-ab2643e532f6}) (Version: 1.3.708.0 - Futuremark) 3DMark (Version: 1.3.708.0 - Futuremark) Hidden 7-Zip 9.22beta (HKLM-x32\...\7-Zip) (Version: - ) ACP Application (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) AIDA64 Engineer v4.00 (HKLM-x32\...\AIDA64 Engineer_is1) (Version: 4.00 - FinalWire Ltd.) AMD Accelerated Video Transcoding (Version: 13.30.100.40709 - Advanced Micro Devices, Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2014.0709.1135.19003 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (HKLM\...\{EE0B4480-194D-C725-EDF8-6CE3FC4DDC89}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 2.0.2.0000 - Asmedia Technology) ASUS Xonar DX Audio (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392008788}) (Version: - ) Blur Busters Strobe Util (HKLM-x32\...\{57BDAE81-2BE7-4ABA-8B03-1520FBF41AF9}) (Version: 1.0.0 - Blur Busters) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Catzilla 1.2 (HKLM\...\{41EE0CB2-75DE-4FE0-AEB2-4CBC30624FA6}_is1) (Version: 1.2 - ALLPlayer Group Ltd.) CCC Help Chinese Standard (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios) Cisco Powerline AV2 Utility (HKLM-x32\...\{11ED962C-1261-4690-9203-CEE9E57A8138}) (Version: 1.0.05.011 - Cisco Systems) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) CPUID CPU-Z 1.69.2 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CrystalDiskInfo 6.0.4 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.0.4 - Crystal Dew World) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) Dark Souls 2 (HKLM-x32\...\RGFya1NvdWxzMg==_is1) (Version: 1 - ) Document_Installer (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.118 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.118 - Etron Technology) Hidden EWA net (HKLM-x32\...\EWA net) (Version: - ) EWA_net_Admin (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_Client_Applications (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_Core (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_EPC (x32 Version: 1.00.0000 - Daimler) Hidden EWA_net_Server (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_WIS (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_WIS_CaseOnline_Importer (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited) FordEtis IDS 1.4014 (HKLM-x32\...\1492-6894-0638-6774) (Version: 1.4014 - Ford Motor Company) Futuremark SystemInfo (HKLM-x32\...\{4115C9AA-35E0-45D8-9363-47635B8750C7}) (Version: 4.29.438.0 - Futuremark) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 36.0.1985.125 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Heaven Benchmark version 4.0 (HKLM-x32\...\Unigine Heaven Benchmark (Basic Edition)_is1) (Version: 4.0 - Unigine Corp.) Heroes of Newerth (HKLM-x32\...\hon) (Version: 2.3.0 - S2 Games) HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.216 - SurfRight B.V.) ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{0EC7F9CC-4741-45AE-9F55-6E9343F726F5}) (Version: 1.1.0.36960 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3496 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.6.1000 - Intel Corporation) Intel(R) Rapid Storage Technology (Version: 12.8.6.1000 - Intel Corporation) Hidden Intel® Trusted Connect Service Client (Version: 1.31.8.1 - Intel Corporation) Hidden Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217065FF}) (Version: 7.0.650 - Oracle) Java Auto Updater (x32 Version: 2.1.65.20 - Oracle, Inc.) Hidden JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Logitech Media Server 7.7.3 (HKLM-x32\...\Logitech Media Server_is1) (Version: 7.7.3 - Logitech) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{51adbf11-493f-431c-a862-967a0fae2944}) (Version: 12.0.21005.1 - Корпорация Майкрософт) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft_VC100_CRT_SP1_x64 (Version: 10.0.40219.1 - Nokia) Hidden Microsoft_VC100_CRT_SP1_x86 (x32 Version: 10.0.40219.1 - Nokia) Hidden Mozilla Thunderbird 24.2.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.2.0 (x86 de)) (Version: 24.2.0 - Mozilla) Mozilla Thunderbird 24.6.0 (x86 de) (HKCU\...\Mozilla Thunderbird 24.6.0 (x86 de)) (Version: 24.6.0 - Mozilla) MPC-HC 1.7.2 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.2 - MPC-HC Team) MPC-HC 1.7.5 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.5 - MPC-HC Team) MSI Afterburner 3.0.1 (HKLM-x32\...\Afterburner) (Version: 3.0.1 - MSI Co., LTD) MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden NetSpeedMonitor 2.5.4.0 x64 (HKLM\...\{88F41EE2-949B-4B52-933D-C7F8F67BC1D2}) (Version: 2.5.4.0 - Florian Gilles) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenVPN 2.3.2 UniPassau (HKLM-x32\...\OpenVPN) (Version: 2.3.2 - ) Outlast (HKLM-x32\...\Outlast_is1) (Version: - ) Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC) PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia) PS3 Media Server (HKLM-x32\...\PS3 Media Server) (Version: 1.90.1 - PS3 Media Server) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.992 - Even Balance, Inc.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Rising Storm/Red Orchestra 2 Multiplayer (HKLM-x32\...\Steam App 35450) (Version: - Tripwire Interactive) Rust (HKLM-x32\...\Steam App 252490) (Version: - Facepunch Studios) Sentinel Protection Installer 7.6.4 (HKLM-x32\...\{7444785E-886F-4989-A69E-6394E36F3982}) (Version: 7.6.4 - SafeNet, Inc.) South Park The Stick of Truth (HKLM-x32\...\South Park The Stick of Truth_is1) (Version: - Ubisoft) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) System Requirements Lab for Intel (HKLM-x32\...\{1EBDF6D2-CEA0-484C-A23E-2DDAD7FD0DD0}) (Version: 4.5.22.0 - Husdawg, LLC) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.29947 - TeamViewer) UNi Xonar Audio Driver (HKLM\...\C-Media Oxygen HD Audio Driver) (Version: - ) Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) Windows Live Communications Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) winLAME 2010 beta 2 (HKLM-x32\...\{63C16E81-327C-49B6-9643-4F5EFD8A6B2D}) (Version: 1.0.2010.2 - Michael Fink) WinRAR 5.01 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) XBMC (HKCU\...\XBMC) (Version: - Team XBMC) ==================== Restore Points ========================= 29-06-2014 16:50:22 Installed Java 7 Update 60 08-07-2014 08:44:18 Geplanter Prüfpunkt 14-07-2014 21:22:27 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 14-07-2014 21:22:31 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 16-07-2014 07:52:10 Installed Java 7 Update 65 19-07-2014 16:14:34 Wiederherstellungsvorgang ==================== Hosts content: ========================== 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {0D63A6E5-E42B-4B91-B739-6F110BFF9E24} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {13A09168-5F2D-4852-8DF9-B32FA128E42A} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-07-09] (Microsoft Corporation) Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {2BDD42C0-208C-45D8-B5C0-F638F2E0FD76} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation) Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {436787C9-48CA-416D-892E-9E56B3B1E6F1} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: {44409720-55F9-42A2-80BE-F19509E0CFB7} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {473054F7-A1B0-4764-AC93-1D85BC1FFFAE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-08] (Adobe Systems Incorporated) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {568C91B5-2E76-4AB1-83BB-F3D5809C3E8C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-18] (Google Inc.) Task: {5CF0550A-0218-42DB-BBB0-7BD65E31CB5A} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {9D3343AB-84E8-4765-9282-955F1A2FDACE} - System32\Tasks\MSIAfterburner => D:\Programme\MSI Afterburner\MSIAfterburner.exe [2014-06-10] () Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {AA9901DE-0D52-402F-AA91-9DD8325B05F6} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload Task: {BBB7F1C9-89A0-4A7D-BEC4-C5C84E1BD033} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-18] (Google Inc.) Task: {C6081F80-0606-4F89-8537-99BF7B5B4DF1} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {FE5DF2C7-6C7C-4612-BF57-F86ADDAB8A86} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-726487413-4058879626-644410073-1001Core.job => C:\Users\Dignitas\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-05-22 21:44 - 2014-05-22 21:44 - 00112640 _____ () C:\AMD\amdacpusrsvc.exe 2014-04-18 11:49 - 2014-04-21 20:35 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-12-18 17:26 - 2008-07-11 16:04 - 00200704 ____N () C:\Windows\SysWOW64\HsMgr.exe 2013-12-18 17:26 - 2008-07-11 16:03 - 00282112 ____N () C:\Windows\System\HsMgr64.exe 2014-03-14 15:01 - 2014-03-14 15:01 - 00173568 _____ () C:\Program Files\TeamSpeak 3 Client\quazip.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 01080832 _____ () C:\Program Files\TeamSpeak 3 Client\platforms\qwindows.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00833024 _____ () C:\Program Files\TeamSpeak 3 Client\sqldrivers\qsqlite.dll 2013-10-23 14:15 - 2014-06-24 14:17 - 00102344 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2013-10-23 14:15 - 2014-06-24 14:17 - 00108488 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00030208 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qgif.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00233984 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qjpeg.dll 2013-10-23 14:15 - 2014-07-15 23:46 - 00563656 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2013-10-23 14:15 - 2014-07-15 23:46 - 00579016 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00159232 _____ () C:\Program Files\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll 2013-08-22 11:05 - 2013-08-22 14:39 - 00976736 _____ () C:\Windows\System32\speech\engines\tts\MSTTSEngine.dll 2013-08-22 11:00 - 2013-08-22 10:59 - 00513536 _____ () C:\Windows\System32\speech\engines\tts\MSTTSLoc.DLL 2014-02-20 16:59 - 2013-06-28 17:24 - 00163840 _____ () D:\Programme\EWA net\apps\jre\private_jre\bin\server\jvm.dll 2014-02-20 16:59 - 2011-03-09 11:48 - 00036864 ____N () D:\Programme\EWA net\database\TransBase EWA\polycsr.dll 2014-02-20 16:59 - 2011-03-09 11:48 - 00166912 ____N () D:\Programme\EWA net\database\TransBase EWA\libmcrypt.dll 2014-01-09 16:20 - 2012-06-06 10:56 - 00143360 ____N () C:\Program Files\UNi Xonar Audio\Customapp\VmixP8.dll 2014-05-21 20:43 - 2014-07-12 02:53 - 01116672 _____ () C:\Program Files (x86)\Steam\libavcodec-55.dll 2014-05-21 20:43 - 2014-07-12 02:53 - 00399360 _____ () C:\Program Files (x86)\Steam\libavformat-55.dll 2014-01-08 10:11 - 2014-07-12 02:53 - 00331264 _____ () C:\Program Files (x86)\Steam\libavresample-1.dll 2014-04-22 23:21 - 2014-07-12 02:53 - 00438784 _____ () C:\Program Files (x86)\Steam\libavutil-53.dll 2013-12-18 23:56 - 2014-06-27 00:40 - 00764416 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2014-05-21 20:44 - 2014-07-16 04:28 - 02139328 _____ () C:\Program Files (x86)\Steam\video.dll 2014-05-21 20:43 - 2014-04-29 02:37 - 00519168 _____ () C:\Program Files (x86)\Steam\libswscale-2.dll 2013-12-18 23:56 - 2014-07-16 04:28 - 01116864 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2013-12-18 23:56 - 2014-05-02 01:35 - 20628160 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2014-02-20 17:00 - 2005-03-21 16:54 - 00036864 ____N () D:\Programme\EWA net\database\TransBase EPC\polycsr.dll 2014-02-20 17:00 - 2007-11-26 17:26 - 00166912 ____N () D:\Programme\EWA net\database\TransBase EPC\libmcrypt.dll 2013-12-18 21:31 - 2013-09-16 12:20 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Dignitas\SkyDrive:ms-properties AlternateDataStreams: C:\Users\Dignitas\SkyDrive.old:ms-properties ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= HKLM\...\StartupApproved\StartupFolder: => "Logitech Media Server-Taskleisten-Tool.lnk" HKLM\...\StartupApproved\Run: => "NvBackend" HKLM\...\StartupApproved\Run32: => "Adobe ARM" HKCU\...\StartupApproved\Run: => "DAEMON Tools Lite" HKCU\...\StartupApproved\Run: => "Facebook Update" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== System errors: ============= Error: (07/20/2014 10:45:27 PM) (Source: DCOM) (EventID: 10010) (User: Dignitas) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (07/20/2014 10:44:57 PM) (Source: DCOM) (EventID: 10010) (User: Dignitas) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (07/20/2014 10:44:27 PM) (Source: DCOM) (EventID: 10010) (User: Dignitas) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (07/20/2014 10:43:57 PM) (Source: DCOM) (EventID: 10010) (User: Dignitas) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (07/20/2014 10:43:27 PM) (Source: DCOM) (EventID: 10010) (User: Dignitas) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (07/20/2014 10:42:57 PM) (Source: DCOM) (EventID: 10010) (User: Dignitas) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (07/20/2014 10:42:27 PM) (Source: DCOM) (EventID: 10010) (User: Dignitas) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (07/20/2014 10:41:04 PM) (Source: DCOM) (EventID: 10010) (User: Dignitas) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (07/20/2014 10:40:34 PM) (Source: DCOM) (EventID: 10010) (User: Dignitas) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Error: (07/20/2014 10:40:04 PM) (Source: DCOM) (EventID: 10010) (User: Dignitas) Description: {9AA46009-3CE0-458A-A354-715610A075E6} Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2014-07-20 22:34:43.887 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-20 19:16:51.833 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 22:30:59.815 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 22:05:47.930 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 21:08:19.672 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:37:22.037 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:30:23.889 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:26:15.778 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:17:30.867 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:06:22.860 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Percentage of memory in use: 20% Total physical RAM: 8072.19 MB Available physical RAM: 6392.67 MB Total Pagefile: 9352.19 MB Available Pagefile: 7200.11 MB Total Virtual: 131072 MB Available Virtual: 131071.83 MB ==================== Drives ================================ Drive c: (BOOT) (Fixed) (Total:238.47 GB) (Free:143.95 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (BACKUP) (Fixed) (Total:1853.25 GB) (Free:1527.4 GB) NTFS Drive e: (RECOVER) (Fixed) (Total:9.75 GB) (Free:9.75 GB) FAT32 Drive i: (CoH_ToV) (CDROM) (Total:6.81 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238 GB) (Disk ID: D0AAF687) Partition 1: (Active) - (Size=238 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 01596CE9) Partition 1: (Not Active) - (Size=-209113317376) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=10 GB) - (Type=0C) ==================== End Of Log ============================ |
21.07.2014, 12:04 | #8 |
/// the machine /// TB-Ausbilder | Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne FunktionESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
21.07.2014, 16:02 | #9 |
| Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion ESET Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=2e13eeb51fcb69459143369d384ebf18 # engine=19274 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2014-07-21 02:57:00 # local_time=2014-07-21 04:57:00 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 25381 10338141 0 0 # scanned=558107 # found=1 # cleaned=0 # scan_time=7551 sh=A054FEB359229E22B1F18FCCCF803E286740BFD8 ft=1 fh=c71c00114b93155d vn="Variante von Win64/SProtector.A evtl. unerwünschte Anwendung" ac=I fn="C:\FRST\Quarantine\C\Program Files (x86)\WS_x64.Enabler.xBAD" checkup Code:
ATTFilter Results of screen317's Security Check version 0.99.85 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Defender WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Java 7 Update 65 Java version out of Date! Adobe Flash Player 14.0.0.145 Adobe Reader XI Mozilla Thunderbird (24.2.0) Google Chrome 35.0.1916.153 Google Chrome 36.0.1985.125 ````````Process Check: objlist.exe by Laurent```````` Windows Defender MSMpEng.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-07-2014 Ran by Dignitas (administrator) on DIGNITAS on 21-07-2014 17:03:07 Running from C:\Users\Dignitas\Desktop Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe () C:\AMD\amdacpusrsvc.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EWA\tbmux32.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EPC\tbmux32.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase WIS\tbmux32.exe (Alexandria Software Consulting) D:\Programme\EWA net\server\bin\tomcat.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe () C:\Windows\SysWOW64\PnkBstrA.exe (SafeNet, Inc.) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe (SafeNet, Inc) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe (SafeNet, Inc.) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe (TeamViewer GmbH) D:\Programme\TeamViewer\Version9\TeamViewer_Service.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EWA\tbkern32.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EWA\tbkern32.exe (CMedia) C:\Program Files\UNi Xonar Audio\Customapp\AsusAudioCenter.exe () C:\Windows\SysWOW64\HsMgr.exe () C:\Windows\System\HsMgr64.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Transaction Software, D 81829 Munich) D:\Programme\EWA net\database\TransBase EPC\tbkern32.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [36352 2013-09-27] (Intel Corporation) HKLM\...\Run: [Cmaudio8788] => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd HKLM\...\Run: [Cmaudio8788GX] => C:\Windows\syswow64\HsMgr.exe [200704 2008-07-11] () HKLM\...\Run: [Cmaudio8788GX64] => C:\Windows\system\HsMgr64.exe [282112 2008-07-11] () HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-07-09] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-11] (Oracle Corporation) HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1753280 2014-07-16] (Valve Corporation) HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\Run: [Facebook Update] => C:\Users\Dignitas\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-04-03] (Facebook Inc.) HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {039778f2-6e11-11e3-825c-bc5ff43922de} - "F:\PMCsetup.exe" HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {2624e121-90ab-11e3-8297-bc5ff43922de} - "F:\setup.exe" HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {67bc29ac-783c-11e3-8269-bc5ff43922de} - "G:\setup.exe" HKU\S-1-5-21-726487413-4058879626-644410073-1001\...\MountPoints2: {f9afebdd-67f3-11e3-824f-806e6f6e6963} - "I:\Autorun.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Logitech Media Server-Taskleisten-Tool.lnk ShortcutTarget: Logitech Media Server-Taskleisten-Tool.lnk -> C:\Program Files (x86)\Squeezebox\SqueezeTray.exe (Logitech Inc.) ==================== Internet (Whitelisted) ==================== ProxyServer: www-cache.rz.uni-passau.de:3128 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://localhost:9000/EWA-net/Login/trySSO.do HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x8EFCE29F532ECF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE,de;q=0.5 SearchScopes: HKLM-x32 - DefaultScope value is missing. BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll No File FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Dignitas\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) Chrome: ======= CHR HomePage: CHR StartupUrls: "https://www.google.de/" CHR Extension: (ProxFlow) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-01-10] CHR Extension: (Google Docs) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-18] CHR Extension: (Google Drive) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-18] CHR Extension: (Cookie Killer for Facebook) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgonpegbhnjepleakgjdbaepkfedhhnf [2014-05-29] CHR Extension: (YouTube) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-18] CHR Extension: (Google-Suche) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-18] CHR Extension: (AdBlock) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-05-01] CHR Extension: (ModHeader) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\idgpnmonknjnojddfkpgkljpfnnfcklj [2013-12-18] CHR Extension: (Google Wallet) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-18] CHR Extension: (Google Mail) - C:\Users\Dignitas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-18] ==================== Services (Whitelisted) ================= R2 amdacpusrsvc; C:\AMD\amdacpusrsvc.exe [112640 2014-05-22] () [File not signed] R2 EWA net DB Core; D:\Programme\EWA net\database\TransBase EWA\tbmux32.exe [326616 2011-03-09] (Transaction Software, D 81829 Munich) [File not signed] R2 EWA net DB EPC; D:\Programme\EWA net\database\TransBase EPC\tbmux32.exe [417792 2007-11-27] (Transaction Software, D 81829 Munich) [File not signed] R2 EWA net DB WIS; D:\Programme\EWA net\database\TransBase WIS\tbmux32.exe [326616 2011-03-09] (Transaction Software, D 81829 Munich) [File not signed] R2 EWA net Server; D:\Programme\EWA net\server\bin\tomcat.exe [65536 2003-07-31] (Alexandria Software Consulting) [File not signed] S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [528096 2014-06-08] (Futuremark) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-09-27] (Intel Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed] R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [282096 2014-03-17] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-16] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) S2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation) S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [32568 2014-04-08] (The OpenVPN Project) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-04-21] () R2 SentinelKeysServer; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe [374304 2011-05-27] (SafeNet, Inc.) R2 SentinelProtectionServer; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe [1250848 2011-05-27] (SafeNet, Inc) R2 SentinelSecurityRuntime; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe [292384 2011-05-27] (SafeNet, Inc.) R2 TeamViewer9; D:\Programme\TeamViewer\Version9\TeamViewer_Service.exe [5037888 2014-07-02] (TeamViewer GmbH) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [276192 2014-07-09] (Advanced Micro Devices) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2014-03-11] (Advanced Micro Devices) R3 cmudaxp; C:\Windows\system32\drivers\cmudaxp.sys [2735616 2013-12-11] (C-Media Inc) U3 dtscsidrv; C:\Windows\System32\Drivers\dtscsidrv.sys [309248 2014-01-08] (Disc Soft Ltd) S3 GPUZ; C:\Windows\TEMP\GPUZ.sys [27008 2014-06-25] () S2 Hardlock; C:\Windows\system32\drivers\hardlock.sys [296448 2005-06-14] (Aladdin Knowledge Systems Ltd.) [File not signed] R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [31648 2014-05-10] (REALiX(tm)) S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-05-12] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) S3 NPF; C:\Windows\System32\drivers\NPF.sys [35344 2010-06-26] (CACE Technologies, Inc.) R2 Sentinel64; C:\Windows\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc.) S4 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2013-12-18] (Duplex Secure Ltd.) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-21 16:59 - 2014-07-21 16:59 - 00854390 _____ () C:\Users\Dignitas\Desktop\SecurityCheck.exe 2014-07-21 13:06 - 2014-07-21 13:06 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-07-20 22:45 - 2014-07-21 17:03 - 00015816 _____ () C:\Users\Dignitas\Desktop\FRST.txt 2014-07-20 22:45 - 2014-07-20 22:45 - 00033754 _____ () C:\Users\Dignitas\Desktop\Addition.txt 2014-07-20 22:45 - 2014-07-19 21:10 - 02089984 _____ (Farbar) C:\Users\Dignitas\Desktop\FRST64.exe 2014-07-20 22:38 - 2014-07-20 22:38 - 00000621 _____ () C:\Users\Dignitas\Desktop\JRT.txt 2014-07-20 22:36 - 2014-07-20 09:22 - 01016261 _____ (Thisisu) C:\Users\Dignitas\Desktop\JRT.exe 2014-07-20 22:32 - 2014-07-19 18:24 - 01354223 _____ () C:\Users\Dignitas\Desktop\adwcleaner_3.216.exe 2014-07-20 10:18 - 2014-07-20 10:18 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EPC 2014-07-20 09:23 - 2014-07-20 09:23 - 00000000 ____D () C:\Windows\ERUNT 2014-07-19 22:23 - 2014-07-19 22:23 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-07-19 22:23 - 2014-07-19 22:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-07-19 22:23 - 2014-07-19 22:23 - 00000000 ____D () C:\Program Files (x86)\Java 2014-07-19 22:09 - 2014-07-21 14:45 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-07-19 22:09 - 2014-07-19 22:09 - 00001078 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-07-19 22:09 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-07-19 22:09 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-07-19 22:09 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-07-19 22:00 - 2014-07-19 22:00 - 00011776 ___SH () C:\Users\Dignitas\Desktop\Thumbs.db 2014-07-19 21:10 - 2014-07-21 17:03 - 00000000 ____D () C:\FRST 2014-07-19 21:07 - 2014-07-19 21:07 - 00000168 _____ () C:\Users\Dignitas\defogger_reenable 2014-07-19 18:20 - 2014-07-19 18:20 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-07-16 09:52 - 2014-07-16 09:52 - 00004286 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_65-b20.log 2014-07-15 05:38 - 2014-07-15 05:38 - 00000000 ____D () C:\ProgramData\ATI 2014-07-14 23:23 - 2014-07-19 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-07-14 23:23 - 2014-07-14 23:23 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201407142323125472.log 2014-07-14 23:22 - 2014-07-19 18:16 - 00000000 ____D () C:\Windows\LastGood.Tmp 2014-07-09 17:52 - 2014-07-09 17:52 - 09016760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00127872 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 08108312 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 07892000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-07-09 17:47 - 2014-07-09 17:47 - 00276192 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2014-07-09 17:45 - 2014-07-09 17:45 - 15950848 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-07-09 17:35 - 2014-07-09 17:35 - 32876544 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00418304 _____ () C:\Windows\system32\amdmiracast.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00231424 _____ () C:\Windows\system32\clinfo.exe 2014-07-09 17:35 - 2014-07-09 17:35 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 27843072 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 27529216 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00134656 _____ () C:\Windows\system32\amdhdl64.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00123392 _____ () C:\Windows\SysWOW64\amdhdl32.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 05225472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 23028224 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 04180992 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\system32\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00366592 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-07-09 17:28 - 2014-07-09 17:28 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-07-09 17:27 - 2014-07-09 17:27 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 03437632 _____ () C:\Windows\system32\atiumd6a.cap 2014-07-09 17:25 - 2014-07-09 17:25 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00588800 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-07-09 17:23 - 2014-07-09 17:23 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-07-09 17:22 - 2014-07-09 17:22 - 03471376 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-07-09 17:20 - 2014-07-09 17:20 - 01207296 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-07-09 17:20 - 2014-07-09 17:20 - 00898560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00557056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-07-09 17:19 - 2014-07-09 17:19 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-07-09 17:17 - 2014-07-09 17:17 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-07-09 15:42 - 2014-07-19 18:16 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-09 15:42 - 2014-04-14 05:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2014-07-09 11:39 - 2014-07-09 11:39 - 00051200 _____ () C:\Windows\system32\kdbsdk64.dll 2014-07-09 11:37 - 2014-07-09 11:37 - 00038912 _____ () C:\Windows\SysWOW64\kdbsdk32.dll 2014-07-09 08:22 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-09 08:22 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-09 08:22 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-09 08:22 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-09 08:22 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-09 08:22 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-09 08:22 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-09 08:22 - 2014-06-19 01:46 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-09 08:22 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-09 08:22 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-09 08:22 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-09 08:22 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-09 08:22 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-09 08:22 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-09 08:22 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-09 08:22 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-09 08:22 - 2014-06-19 00:57 - 00225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-09 08:22 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-09 08:22 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-09 08:22 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-09 08:22 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-09 08:22 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-09 08:22 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-09 08:22 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-09 08:22 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-09 08:22 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-09 08:22 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-09 08:22 - 2014-06-17 00:26 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-09 08:22 - 2014-06-17 00:24 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-09 08:22 - 2014-06-06 16:20 - 04190720 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-09 08:22 - 2014-05-30 05:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-09 08:22 - 2014-05-29 14:02 - 00565576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-07-09 08:22 - 2014-05-29 09:55 - 00735232 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2014-07-09 08:22 - 2014-05-29 08:40 - 00735232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2014-07-09 08:22 - 2014-05-29 08:37 - 00436224 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2014-07-09 08:22 - 2014-05-29 07:34 - 00318976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2014-07-09 08:22 - 2014-05-29 07:27 - 01417216 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-09 08:21 - 2014-07-01 00:45 - 00688128 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-09 08:21 - 2014-06-28 09:48 - 00527360 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-07-09 08:21 - 2014-06-28 09:07 - 00385536 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-07-09 08:21 - 2014-06-06 15:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-09 08:21 - 2014-06-06 14:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-09 08:21 - 2014-05-31 12:07 - 00054776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-07-09 08:21 - 2014-05-31 12:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2014-07-09 08:21 - 2014-05-31 05:40 - 13287936 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2014-07-09 08:21 - 2014-05-31 05:30 - 11792384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2014-07-09 08:21 - 2014-05-31 05:12 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 08:21 - 2014-05-31 05:06 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-07-09 08:21 - 2014-05-31 05:03 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-07-09 08:21 - 2014-05-31 05:01 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 08:21 - 2014-05-31 04:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-07-09 08:21 - 2014-05-31 04:54 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-07-09 08:21 - 2014-05-31 04:48 - 03463680 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-07-09 08:21 - 2014-05-31 04:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2014-07-09 08:21 - 2014-05-31 04:36 - 00923136 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2014-07-09 08:21 - 2014-05-31 04:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2014-07-09 08:21 - 2014-05-31 04:32 - 00756224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-07-09 08:20 - 2014-07-09 08:20 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2014-07-06 13:59 - 2014-07-19 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-06 13:59 - 2014-07-19 18:16 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-06 13:59 - 2014-07-19 18:16 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-01 15:05 - 2014-07-01 15:05 - 00233912 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-07-01 15:05 - 2014-05-31 08:27 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-07-01 15:05 - 2014-05-15 00:47 - 04720640 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2014-07-01 15:05 - 2014-05-13 09:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe 2014-07-01 15:05 - 2014-05-13 07:07 - 02844160 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2014-07-01 15:05 - 2014-05-13 06:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2014-07-01 15:05 - 2014-05-13 06:27 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2014-07-01 15:05 - 2014-05-13 06:26 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2014-07-01 15:05 - 2014-05-13 05:59 - 01035264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2014-07-01 15:05 - 2014-05-13 05:41 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2014-07-01 15:05 - 2014-05-13 05:31 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2014-07-01 15:05 - 2014-05-05 08:11 - 00440664 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-07-01 15:05 - 2014-05-05 08:11 - 00418136 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-07-01 15:05 - 2014-05-05 08:11 - 00089944 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-07-01 15:05 - 2014-05-05 08:11 - 00027480 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-07-01 15:05 - 2014-05-03 13:29 - 01726224 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-07-01 15:05 - 2014-05-03 11:20 - 01473080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-07-01 15:05 - 2014-05-03 09:40 - 00037376 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-07-01 15:05 - 2014-05-03 07:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2014-07-01 15:05 - 2014-05-03 07:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2014-07-01 15:05 - 2014-05-03 07:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2014-07-01 15:05 - 2014-05-03 07:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2014-07-01 15:05 - 2014-05-03 06:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll 2014-07-01 15:05 - 2014-05-03 06:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2014-07-01 15:05 - 2014-05-03 06:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2014-07-01 15:05 - 2014-05-03 05:30 - 02641920 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-07-01 15:05 - 2014-05-03 05:27 - 02317824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-07-01 15:05 - 2014-05-03 01:26 - 00050745 _____ () C:\Windows\system32\srms.dat 2014-07-01 15:05 - 2014-05-01 07:44 - 01025536 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-07-01 15:05 - 2014-04-30 08:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys 2014-07-01 15:05 - 2014-04-30 08:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-07-01 15:05 - 2014-04-30 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys 2014-07-01 15:05 - 2014-04-30 08:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys 2014-07-01 15:05 - 2014-04-30 07:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2014-07-01 15:05 - 2014-04-30 06:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2014-07-01 15:05 - 2014-04-30 06:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-07-01 15:05 - 2014-04-30 06:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2014-07-01 15:05 - 2014-04-30 06:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2014-07-01 15:05 - 2014-04-30 06:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2014-07-01 15:05 - 2014-04-30 06:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2014-07-01 15:05 - 2014-04-30 05:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-07-01 15:05 - 2014-04-30 05:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2014-07-01 15:05 - 2014-04-30 05:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2014-07-01 15:05 - 2014-04-30 05:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2014-07-01 15:05 - 2014-04-30 05:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2014-07-01 15:05 - 2014-04-30 05:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2014-07-01 15:05 - 2014-04-29 00:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2014-07-01 15:05 - 2014-04-27 00:03 - 02140888 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2014-07-01 15:05 - 2014-04-26 22:14 - 02144984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2014-07-01 15:05 - 2014-04-26 20:41 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfg.exe 2014-07-01 15:05 - 2014-04-26 20:22 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll 2014-07-01 15:05 - 2014-04-26 20:04 - 00311296 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll 2014-07-01 15:05 - 2014-04-26 19:36 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll 2014-07-01 15:05 - 2014-04-26 18:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2014-07-01 15:05 - 2014-04-14 11:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2014-07-01 15:05 - 2014-04-14 10:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2014-07-01 15:05 - 2014-04-14 07:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll 2014-07-01 15:05 - 2014-04-09 08:11 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-07-01 15:05 - 2014-04-09 07:20 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-06-26 13:58 - 2014-06-26 13:58 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WIS-ASRA 2014-06-25 13:09 - 2014-06-25 15:02 - 00000022 _____ () C:\Windows\GPU-Z.INI 2014-06-25 13:07 - 2014-06-25 13:07 - 00000963 _____ () C:\Users\Public\Desktop\3DMark.lnk 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Program Files (x86)\Futuremark 2014-06-25 12:56 - 2014-07-21 14:45 - 00003008 _____ () C:\Windows\System32\Tasks\MSIAfterburner 2014-06-25 12:54 - 2014-06-25 12:54 - 00000745 _____ () C:\Users\Dignitas\Desktop\MSI Afterburner.lnk 2014-06-25 10:08 - 2014-06-25 10:08 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201406251008386662.log 2014-06-25 00:15 - 2014-06-25 00:15 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Adobe 2014-06-24 21:49 - 2014-06-24 21:49 - 00000743 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk 2014-06-24 21:49 - 2014-06-24 21:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2014-06-23 16:33 - 2014-06-23 16:33 - 00000000 ____D () C:\Users\Dignitas\Desktop\Grundlagen der Mathematik 2 2014-06-23 16:28 - 2010-10-02 19:34 - 00001654 _____ () C:\Users\Dignitas\Desktop\Analysis Klausur SS2010.txt 2014-06-22 10:27 - 2014-06-22 10:27 - 00283952 _____ () C:\Windows\Minidump\062214-7937-01.dmp 2014-06-21 03:39 - 2014-07-09 17:21 - 00826368 _____ (AMD) C:\Windows\system32\coinst_14.20.dll ==================== One Month Modified Files and Folders ======= 2014-07-21 17:03 - 2014-07-20 22:45 - 00015816 _____ () C:\Users\Dignitas\Desktop\FRST.txt 2014-07-21 17:03 - 2014-07-19 21:10 - 00000000 ____D () C:\FRST 2014-07-21 17:02 - 2014-01-28 20:08 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-07-21 17:00 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru 2014-07-21 16:59 - 2014-07-21 16:59 - 00854390 _____ () C:\Users\Dignitas\Desktop\SecurityCheck.exe 2014-07-21 16:47 - 2013-12-18 17:14 - 00001134 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-07-21 16:44 - 2013-12-18 23:56 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-07-21 15:15 - 2013-12-18 17:15 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-726487413-4058879626-644410073-1001 2014-07-21 15:09 - 2013-12-18 21:14 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\TS3Client 2014-07-21 14:51 - 2013-12-18 17:04 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-21 14:51 - 2013-09-30 05:58 - 00765378 _____ () C:\Windows\system32\perfh007.dat 2014-07-21 14:51 - 2013-09-30 05:58 - 00159696 _____ () C:\Windows\system32\perfc007.dat 2014-07-21 14:47 - 2013-12-18 17:14 - 00002159 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-07-21 14:45 - 2014-07-19 22:09 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-07-21 14:45 - 2014-06-25 12:56 - 00003008 _____ () C:\Windows\System32\Tasks\MSIAfterburner 2014-07-21 14:45 - 2013-12-18 17:14 - 00001130 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-07-21 14:45 - 2013-12-18 17:09 - 00000000 ____D () C:\Users\Dignitas 2014-07-21 14:45 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-07-21 13:06 - 2014-07-21 13:06 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-07-21 12:54 - 2013-12-18 17:01 - 01905729 _____ () C:\Windows\WindowsUpdate.log 2014-07-20 22:45 - 2014-07-20 22:45 - 00033754 _____ () C:\Users\Dignitas\Desktop\Addition.txt 2014-07-20 22:38 - 2014-07-20 22:38 - 00000621 _____ () C:\Users\Dignitas\Desktop\JRT.txt 2014-07-20 22:34 - 2014-04-22 23:19 - 00000000 ____D () C:\AdwCleaner 2014-07-20 22:34 - 2014-03-27 10:48 - 00065536 _____ () C:\Windows\system32\spu_storage.bin 2014-07-20 22:34 - 2013-09-29 21:05 - 00026500 _____ () C:\Windows\PFRO.log 2014-07-20 10:18 - 2014-07-20 10:18 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EPC 2014-07-20 10:18 - 2014-02-20 19:35 - 00002011 _____ () C:\Users\Dignitas\Desktop\EPC.lnk 2014-07-20 10:18 - 2014-02-20 19:00 - 00000000 ____D () C:\Users\Dignitas\XFER 2014-07-20 10:18 - 2014-02-20 18:32 - 00024764 _____ () C:\Users\Dignitas\ewa_client_0.log 2014-07-20 10:18 - 2014-02-20 18:32 - 00000102 _____ () C:\Users\Dignitas\.ewanapi_cookie 2014-07-20 09:23 - 2014-07-20 09:23 - 00000000 ____D () C:\Windows\ERUNT 2014-07-20 09:22 - 2014-07-20 22:36 - 01016261 _____ (Thisisu) C:\Users\Dignitas\Desktop\JRT.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-07-19 22:23 - 2014-07-19 22:23 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-07-19 22:23 - 2014-07-19 22:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-07-19 22:23 - 2014-07-19 22:23 - 00000000 ____D () C:\Program Files (x86)\Java 2014-07-19 22:23 - 2014-02-19 21:04 - 00000000 ____D () C:\ProgramData\Oracle 2014-07-19 22:09 - 2014-07-19 22:09 - 00001078 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-07-19 22:09 - 2014-07-19 22:09 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-07-19 22:00 - 2014-07-19 22:00 - 00011776 ___SH () C:\Users\Dignitas\Desktop\Thumbs.db 2014-07-19 21:10 - 2014-07-20 22:45 - 02089984 _____ (Farbar) C:\Users\Dignitas\Desktop\FRST64.exe 2014-07-19 21:07 - 2014-07-19 21:07 - 00000168 _____ () C:\Users\Dignitas\defogger_reenable 2014-07-19 21:00 - 2014-04-22 23:11 - 00000000 ____D () C:\Program Files (x86)\R.G. Freedom 2014-07-19 18:24 - 2014-07-20 22:32 - 01354223 _____ () C:\Users\Dignitas\Desktop\adwcleaner_3.216.exe 2014-07-19 18:20 - 2014-07-19 18:20 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-07-19 18:16 - 2014-07-14 23:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-07-19 18:16 - 2014-07-14 23:22 - 00000000 ____D () C:\Windows\LastGood.Tmp 2014-07-19 18:16 - 2014-07-09 15:42 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-19 18:16 - 2014-07-06 13:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-19 18:16 - 2014-07-06 13:59 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-19 18:16 - 2014-07-06 13:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-19 18:16 - 2014-05-01 22:54 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-07-19 18:16 - 2013-12-21 13:07 - 00000000 ____D () C:\Program Files (x86)\Heroes of Newerth 2014-07-19 18:16 - 2013-12-18 17:29 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-07-19 18:16 - 2013-12-18 17:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-07-19 18:16 - 2013-09-30 06:00 - 00000000 ____D () C:\Windows\ShellNew 2014-07-19 18:16 - 2013-09-30 06:00 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 __RSD () C:\Windows\Media 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ___RD () C:\Windows\ToastData 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\WinStore 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\SystemResources 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\rescache 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\MediaViewer 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\FileManager 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\Camera 2014-07-19 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-07-19 18:16 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\system32\Sysprep 2014-07-19 18:16 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\servicing 2014-07-19 18:15 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\registration 2014-07-19 17:25 - 2013-08-22 15:25 - 00524288 ___SH () C:\Windows\system32\config\BBI 2014-07-19 09:21 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-07-16 19:47 - 2013-12-18 23:51 - 00000000 ____D () C:\ProgramData\PMS 2014-07-16 19:16 - 2013-08-22 16:46 - 00057705 _____ () C:\Windows\setupact.log 2014-07-16 09:52 - 2014-07-16 09:52 - 00004286 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_65-b20.log 2014-07-15 05:38 - 2014-07-15 05:38 - 00000000 ____D () C:\ProgramData\ATI 2014-07-14 23:23 - 2014-07-14 23:23 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201407142323125472.log 2014-07-14 23:23 - 2014-05-01 22:54 - 00000000 ____D () C:\ProgramData\AMD 2014-07-14 23:23 - 2014-05-01 22:53 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-07-14 23:21 - 2014-05-01 22:53 - 00000000 ____D () C:\AMD 2014-07-12 14:28 - 2013-12-18 22:47 - 00000817 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk 2014-07-12 14:28 - 2013-12-18 22:47 - 00000817 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk 2014-07-10 09:36 - 2013-08-22 16:44 - 00336048 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-09 17:52 - 2014-07-09 17:52 - 09016760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00127872 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00117560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-07-09 17:52 - 2014-07-09 17:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-07-09 17:52 - 2014-04-18 04:43 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 10519584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 01330912 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 01110992 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2014-07-09 17:52 - 2014-04-18 04:42 - 00099520 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 08108312 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-07-09 17:51 - 2014-07-09 17:51 - 07892000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-07-09 17:51 - 2014-04-18 04:42 - 07102496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2014-07-09 17:51 - 2014-04-18 04:42 - 06879016 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2014-07-09 17:47 - 2014-07-09 17:47 - 00276192 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2014-07-09 17:45 - 2014-07-09 17:45 - 15950848 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-07-09 17:35 - 2014-07-09 17:35 - 32876544 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00418304 _____ () C:\Windows\system32\amdmiracast.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00231424 _____ () C:\Windows\system32\clinfo.exe 2014-07-09 17:35 - 2014-07-09 17:35 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-07-09 17:35 - 2014-07-09 17:35 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 27843072 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-07-09 17:34 - 2014-07-09 17:34 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 27529216 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00134656 _____ () C:\Windows\system32\amdhdl64.dll 2014-07-09 17:33 - 2014-07-09 17:33 - 00123392 _____ () C:\Windows\SysWOW64\amdhdl32.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 05225472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-07-09 17:31 - 2014-07-09 17:31 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 23028224 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 04180992 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00598112 _____ () C:\Windows\system32\atiapfxx.blb 2014-07-09 17:28 - 2014-07-09 17:28 - 00366592 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-07-09 17:28 - 2014-07-09 17:28 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-07-09 17:28 - 2014-07-09 17:28 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-07-09 17:27 - 2014-07-09 17:27 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-07-09 17:26 - 2014-07-09 17:26 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 03437632 _____ () C:\Windows\system32\atiumd6a.cap 2014-07-09 17:25 - 2014-07-09 17:25 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-07-09 17:25 - 2014-07-09 17:25 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00588800 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-07-09 17:24 - 2014-07-09 17:24 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-07-09 17:24 - 2014-07-09 17:24 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-07-09 17:23 - 2014-07-09 17:23 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-07-09 17:22 - 2014-07-09 17:22 - 03471376 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-07-09 17:21 - 2014-06-21 03:39 - 00826368 _____ (AMD) C:\Windows\system32\coinst_14.20.dll 2014-07-09 17:20 - 2014-07-09 17:20 - 01207296 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-07-09 17:20 - 2014-07-09 17:20 - 00898560 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00557056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-07-09 17:19 - 2014-07-09 17:19 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-07-09 17:19 - 2014-07-09 17:19 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-07-09 17:17 - 2014-07-09 17:17 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-07-09 15:43 - 2013-12-18 17:49 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-09 15:43 - 2013-08-22 17:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-07-09 15:42 - 2013-12-18 17:49 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-07-09 11:39 - 2014-07-09 11:39 - 00051200 _____ () C:\Windows\system32\kdbsdk64.dll 2014-07-09 11:37 - 2014-07-09 11:37 - 00038912 _____ () C:\Windows\SysWOW64\kdbsdk32.dll 2014-07-09 10:29 - 2013-12-21 13:59 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Paint.NET 2014-07-09 08:20 - 2014-07-09 08:20 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2014-07-08 19:02 - 2014-01-28 20:08 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-07-03 19:58 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2014-07-01 15:05 - 2014-07-01 15:05 - 00233912 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-07-01 00:45 - 2014-07-09 08:21 - 00688128 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-01 00:32 - 2013-12-19 00:22 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\NetSpeedMonitor 2014-06-30 20:17 - 2014-05-10 20:10 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\ALLBenchmark 2014-06-28 09:48 - 2014-07-09 08:21 - 00527360 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-28 09:07 - 2014-07-09 08:21 - 00385536 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2014-06-26 22:55 - 2013-08-22 17:38 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-06-26 22:55 - 2013-08-22 17:38 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-06-26 19:52 - 2014-04-18 11:50 - 00280792 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-06-26 19:52 - 2014-04-18 11:49 - 00280856 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-06-26 19:52 - 2014-04-18 11:49 - 00280792 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-06-26 13:58 - 2014-06-26 13:58 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WIS-ASRA 2014-06-26 13:58 - 2014-02-20 18:44 - 00001963 _____ () C:\Users\Dignitas\Desktop\WIS-ASRA.lnk 2014-06-25 18:53 - 2013-12-18 23:50 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-06-25 15:02 - 2014-06-25 13:09 - 00000022 _____ () C:\Windows\GPU-Z.INI 2014-06-25 13:07 - 2014-06-25 13:07 - 00000963 _____ () C:\Users\Public\Desktop\3DMark.lnk 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Futuremark 2014-06-25 13:07 - 2014-06-25 13:07 - 00000000 ____D () C:\Program Files (x86)\Futuremark 2014-06-25 13:07 - 2014-03-27 10:48 - 00000000 ____D () C:\ProgramData\Package Cache 2014-06-25 13:07 - 2013-12-19 00:18 - 00065692 _____ () C:\Windows\DirectX.log 2014-06-25 12:54 - 2014-06-25 12:54 - 00000745 _____ () C:\Users\Dignitas\Desktop\MSI Afterburner.lnk 2014-06-25 12:54 - 2013-12-19 22:29 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2014-06-25 10:42 - 2013-12-18 17:14 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-06-25 10:42 - 2013-12-18 17:14 - 00003870 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-06-25 10:08 - 2014-06-25 10:08 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201406251008386662.log 2014-06-25 00:15 - 2014-06-25 00:15 - 00000000 ____D () C:\Users\Dignitas\AppData\Local\Adobe 2014-06-24 21:49 - 2014-06-24 21:49 - 00000743 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk 2014-06-24 21:49 - 2014-06-24 21:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2014-06-23 16:33 - 2014-06-23 16:33 - 00000000 ____D () C:\Users\Dignitas\Desktop\Grundlagen der Mathematik 2 2014-06-22 10:27 - 2014-06-22 10:27 - 00283952 _____ () C:\Windows\Minidump\062214-7937-01.dmp 2014-06-22 10:27 - 2014-02-17 12:08 - 546136987 _____ () C:\Windows\MEMORY.DMP 2014-06-22 10:27 - 2014-02-17 12:08 - 00000000 ____D () C:\Windows\Minidump 2014-06-21 23:13 - 2013-12-18 23:08 - 00000000 ____D () C:\Users\Dignitas\AppData\Roaming\XBMC Some content of TEMP: ==================== C:\Users\Dignitas\AppData\Local\Temp\AMDCleanupUtility.exe C:\Users\Dignitas\AppData\Local\Temp\Cleanup.dll C:\Users\Dignitas\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe C:\Users\Dignitas\AppData\Local\Temp\msvcm80.dll C:\Users\Dignitas\AppData\Local\Temp\msvcp80.dll C:\Users\Dignitas\AppData\Local\Temp\msvcr80.dll C:\Users\Dignitas\AppData\Local\Temp\NOSEventMessages.dll C:\Users\Dignitas\AppData\Local\Temp\proxy_vole4686146236557680383.dll C:\Users\Dignitas\AppData\Local\Temp\Quarantine.exe C:\Users\Dignitas\AppData\Local\Temp\raptrpatch.exe C:\Users\Dignitas\AppData\Local\Temp\raptr_stub.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-20 09:30 ==================== End Of Log ============================ --- --- --- --- --- --- Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-07-2014 Ran by Dignitas at 2014-07-21 17:03:24 Running from C:\Users\Dignitas\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== 3DMark (HKLM-x32\...\{4198fd8f-98bd-4240-9b3a-ab2643e532f6}) (Version: 1.3.708.0 - Futuremark) 3DMark (Version: 1.3.708.0 - Futuremark) Hidden 7-Zip 9.22beta (HKLM-x32\...\7-Zip) (Version: - ) ACP Application (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) AIDA64 Engineer v4.00 (HKLM-x32\...\AIDA64 Engineer_is1) (Version: 4.00 - FinalWire Ltd.) AMD Accelerated Video Transcoding (Version: 13.30.100.40709 - Advanced Micro Devices, Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2014.0709.1135.19003 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (HKLM\...\{EE0B4480-194D-C725-EDF8-6CE3FC4DDC89}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 2.0.2.0000 - Asmedia Technology) ASUS Xonar DX Audio (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392008788}) (Version: - ) Blur Busters Strobe Util (HKLM-x32\...\{57BDAE81-2BE7-4ABA-8B03-1520FBF41AF9}) (Version: 1.0.0 - Blur Busters) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Catzilla 1.2 (HKLM\...\{41EE0CB2-75DE-4FE0-AEB2-4CBC30624FA6}_is1) (Version: 1.2 - ALLPlayer Group Ltd.) CCC Help Chinese Standard (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2014.0709.1134.19003 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2014.0709.1135.19003 - Advanced Micro Devices, Inc.) Hidden Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios) Cisco Powerline AV2 Utility (HKLM-x32\...\{11ED962C-1261-4690-9203-CEE9E57A8138}) (Version: 1.0.05.011 - Cisco Systems) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) CPUID CPU-Z 1.69.2 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CrystalDiskInfo 6.0.4 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.0.4 - Crystal Dew World) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) Dark Souls 2 (HKLM-x32\...\RGFya1NvdWxzMg==_is1) (Version: 1 - ) Document_Installer (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.118 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.118 - Etron Technology) Hidden EWA net (HKLM-x32\...\EWA net) (Version: - ) EWA_net_Admin (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_Client_Applications (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_Core (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_EPC (x32 Version: 1.00.0000 - Daimler) Hidden EWA_net_Server (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_WIS (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden EWA_net_WIS_CaseOnline_Importer (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited) FordEtis IDS 1.4014 (HKLM-x32\...\1492-6894-0638-6774) (Version: 1.4014 - Ford Motor Company) Futuremark SystemInfo (HKLM-x32\...\{4115C9AA-35E0-45D8-9363-47635B8750C7}) (Version: 4.29.438.0 - Futuremark) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 36.0.1985.125 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Heaven Benchmark version 4.0 (HKLM-x32\...\Unigine Heaven Benchmark (Basic Edition)_is1) (Version: 4.0 - Unigine Corp.) Heroes of Newerth (HKLM-x32\...\hon) (Version: 2.3.0 - S2 Games) HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.216 - SurfRight B.V.) ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{0EC7F9CC-4741-45AE-9F55-6E9343F726F5}) (Version: 1.1.0.36960 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3496 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.6.1000 - Intel Corporation) Intel(R) Rapid Storage Technology (Version: 12.8.6.1000 - Intel Corporation) Hidden Intel® Trusted Connect Service Client (Version: 1.31.8.1 - Intel Corporation) Hidden Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217065FF}) (Version: 7.0.650 - Oracle) Java Auto Updater (x32 Version: 2.1.65.20 - Oracle, Inc.) Hidden JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Logitech Media Server 7.7.3 (HKLM-x32\...\Logitech Media Server_is1) (Version: 7.7.3 - Logitech) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{51adbf11-493f-431c-a862-967a0fae2944}) (Version: 12.0.21005.1 - Корпорация Майкрософт) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft_VC100_CRT_SP1_x64 (Version: 10.0.40219.1 - Nokia) Hidden Microsoft_VC100_CRT_SP1_x86 (x32 Version: 10.0.40219.1 - Nokia) Hidden Mozilla Thunderbird 24.2.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.2.0 (x86 de)) (Version: 24.2.0 - Mozilla) Mozilla Thunderbird 24.6.0 (x86 de) (HKCU\...\Mozilla Thunderbird 24.6.0 (x86 de)) (Version: 24.6.0 - Mozilla) MPC-HC 1.7.2 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.2 - MPC-HC Team) MPC-HC 1.7.5 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.5 - MPC-HC Team) MSI Afterburner 3.0.1 (HKLM-x32\...\Afterburner) (Version: 3.0.1 - MSI Co., LTD) MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden NetSpeedMonitor 2.5.4.0 x64 (HKLM\...\{88F41EE2-949B-4B52-933D-C7F8F67BC1D2}) (Version: 2.5.4.0 - Florian Gilles) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenVPN 2.3.2 UniPassau (HKLM-x32\...\OpenVPN) (Version: 2.3.2 - ) Outlast (HKLM-x32\...\Outlast_is1) (Version: - ) Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC) PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia) PS3 Media Server (HKLM-x32\...\PS3 Media Server) (Version: 1.90.1 - PS3 Media Server) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.992 - Even Balance, Inc.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Rising Storm/Red Orchestra 2 Multiplayer (HKLM-x32\...\Steam App 35450) (Version: - Tripwire Interactive) Rust (HKLM-x32\...\Steam App 252490) (Version: - Facepunch Studios) Sentinel Protection Installer 7.6.4 (HKLM-x32\...\{7444785E-886F-4989-A69E-6394E36F3982}) (Version: 7.6.4 - SafeNet, Inc.) South Park The Stick of Truth (HKLM-x32\...\South Park The Stick of Truth_is1) (Version: - Ubisoft) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) System Requirements Lab for Intel (HKLM-x32\...\{1EBDF6D2-CEA0-484C-A23E-2DDAD7FD0DD0}) (Version: 4.5.22.0 - Husdawg, LLC) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.29947 - TeamViewer) UNi Xonar Audio Driver (HKLM\...\C-Media Oxygen HD Audio Driver) (Version: - ) Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) Windows Live Communications Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) winLAME 2010 beta 2 (HKLM-x32\...\{63C16E81-327C-49B6-9643-4F5EFD8A6B2D}) (Version: 1.0.2010.2 - Michael Fink) WinRAR 5.01 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) XBMC (HKCU\...\XBMC) (Version: - Team XBMC) ==================== Restore Points ========================= 29-06-2014 16:50:22 Installed Java 7 Update 60 08-07-2014 08:44:18 Geplanter Prüfpunkt 14-07-2014 21:22:27 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 14-07-2014 21:22:31 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 16-07-2014 07:52:10 Installed Java 7 Update 65 19-07-2014 16:14:34 Wiederherstellungsvorgang ==================== Hosts content: ========================== 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {0D63A6E5-E42B-4B91-B739-6F110BFF9E24} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {2BDD42C0-208C-45D8-B5C0-F638F2E0FD76} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation) Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {436787C9-48CA-416D-892E-9E56B3B1E6F1} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: {44409720-55F9-42A2-80BE-F19509E0CFB7} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {473054F7-A1B0-4764-AC93-1D85BC1FFFAE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-08] (Adobe Systems Incorporated) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {568C91B5-2E76-4AB1-83BB-F3D5809C3E8C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-18] (Google Inc.) Task: {5CF0550A-0218-42DB-BBB0-7BD65E31CB5A} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {7FF21BB9-11E4-44A9-A351-EFB21C3CF6FB} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-07-09] (Microsoft Corporation) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {AA9901DE-0D52-402F-AA91-9DD8325B05F6} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload Task: {BBB7F1C9-89A0-4A7D-BEC4-C5C84E1BD033} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-18] (Google Inc.) Task: {C6081F80-0606-4F89-8537-99BF7B5B4DF1} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {F17188A0-5727-45FA-A573-93D3D6A4C779} - System32\Tasks\MSIAfterburner => D:\Programme\MSI Afterburner\MSIAfterburner.exe [2014-06-10] () Task: {FE5DF2C7-6C7C-4612-BF57-F86ADDAB8A86} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-726487413-4058879626-644410073-1001Core.job => C:\Users\Dignitas\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-05-22 21:44 - 2014-05-22 21:44 - 00112640 _____ () C:\AMD\amdacpusrsvc.exe 2014-04-18 11:49 - 2014-04-21 20:35 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-12-18 17:26 - 2008-07-11 16:04 - 00200704 ____N () C:\Windows\SysWOW64\HsMgr.exe 2013-12-18 17:26 - 2008-07-11 16:03 - 00282112 ____N () C:\Windows\System\HsMgr64.exe 2014-03-14 15:01 - 2014-03-14 15:01 - 00173568 _____ () C:\Program Files\TeamSpeak 3 Client\quazip.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 01080832 _____ () C:\Program Files\TeamSpeak 3 Client\platforms\qwindows.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00833024 _____ () C:\Program Files\TeamSpeak 3 Client\sqldrivers\qsqlite.dll 2013-10-23 14:15 - 2014-06-24 14:17 - 00102344 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2013-10-23 14:15 - 2014-06-24 14:17 - 00108488 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00030208 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qgif.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00233984 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qjpeg.dll 2013-10-23 14:15 - 2014-07-15 23:46 - 00563656 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2013-10-23 14:15 - 2014-07-15 23:46 - 00579016 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2014-03-14 15:01 - 2014-03-14 15:01 - 00159232 _____ () C:\Program Files\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll 2013-08-22 11:05 - 2013-08-22 14:39 - 00976736 _____ () C:\Windows\System32\speech\engines\tts\MSTTSEngine.dll 2013-08-22 11:00 - 2013-08-22 10:59 - 00513536 _____ () C:\Windows\System32\speech\engines\tts\MSTTSLoc.DLL 2014-02-20 16:59 - 2013-06-28 17:24 - 00163840 _____ () D:\Programme\EWA net\apps\jre\private_jre\bin\server\jvm.dll 2014-02-20 16:59 - 2011-03-09 11:48 - 00036864 ____N () D:\Programme\EWA net\database\TransBase EWA\polycsr.dll 2014-02-20 16:59 - 2011-03-09 11:48 - 00166912 ____N () D:\Programme\EWA net\database\TransBase EWA\libmcrypt.dll 2014-01-09 16:20 - 2012-06-06 10:56 - 00143360 ____N () C:\Program Files\UNi Xonar Audio\Customapp\VmixP8.dll 2014-05-21 20:43 - 2014-07-12 02:53 - 01116672 _____ () C:\Program Files (x86)\Steam\libavcodec-55.dll 2014-05-21 20:43 - 2014-07-12 02:53 - 00399360 _____ () C:\Program Files (x86)\Steam\libavformat-55.dll 2014-01-08 10:11 - 2014-07-12 02:53 - 00331264 _____ () C:\Program Files (x86)\Steam\libavresample-1.dll 2014-04-22 23:21 - 2014-07-12 02:53 - 00438784 _____ () C:\Program Files (x86)\Steam\libavutil-53.dll 2013-12-18 23:56 - 2014-06-27 00:40 - 00764416 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2014-05-21 20:44 - 2014-07-16 04:28 - 02139328 _____ () C:\Program Files (x86)\Steam\video.dll 2014-05-21 20:43 - 2014-04-29 02:37 - 00519168 _____ () C:\Program Files (x86)\Steam\libswscale-2.dll 2013-12-18 23:56 - 2014-07-16 04:28 - 01116864 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2013-12-18 23:56 - 2014-05-02 01:35 - 20628160 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2014-02-20 17:00 - 2005-03-21 16:54 - 00036864 ____N () D:\Programme\EWA net\database\TransBase EPC\polycsr.dll 2014-02-20 17:00 - 2007-11-26 17:26 - 00166912 ____N () D:\Programme\EWA net\database\TransBase EPC\libmcrypt.dll 2013-12-18 21:31 - 2013-09-16 12:20 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-07-17 11:01 - 2014-07-15 11:24 - 00718664 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\libglesv2.dll 2014-07-17 11:01 - 2014-07-15 11:24 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\libegl.dll 2014-07-17 11:01 - 2014-07-15 11:24 - 08537928 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\pdf.dll 2014-07-17 11:01 - 2014-07-15 11:24 - 00353096 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\ppGoogleNaClPluginChrome.dll 2014-07-17 11:01 - 2014-07-15 11:24 - 01732936 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Dignitas\SkyDrive:ms-properties AlternateDataStreams: C:\Users\Dignitas\SkyDrive.old:ms-properties ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= HKLM\...\StartupApproved\StartupFolder: => "Logitech Media Server-Taskleisten-Tool.lnk" HKLM\...\StartupApproved\Run: => "NvBackend" HKLM\...\StartupApproved\Run32: => "Adobe ARM" HKCU\...\StartupApproved\Run: => "DAEMON Tools Lite" HKCU\...\StartupApproved\Run: => "Facebook Update" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/21/2014 02:49:21 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (07/21/2014 02:49:21 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (07/21/2014 01:43:23 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (07/21/2014 01:14:28 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (07/21/2014 01:06:48 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. Error: (07/21/2014 01:06:48 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest. System errors: ============= Error: (07/21/2014 02:45:35 PM) (Source: DCOM) (EventID: 10016) (User: Dignitas) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}DignitasDignitasS-1-5-21-726487413-4058879626-644410073-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (07/21/2014 02:45:35 PM) (Source: DCOM) (EventID: 10016) (User: Dignitas) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}DignitasDignitasS-1-5-21-726487413-4058879626-644410073-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (07/21/2014 02:45:34 PM) (Source: DCOM) (EventID: 10016) (User: Dignitas) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}DignitasDignitasS-1-5-21-726487413-4058879626-644410073-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (07/21/2014 02:45:34 PM) (Source: DCOM) (EventID: 10016) (User: Dignitas) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}DignitasDignitasS-1-5-21-726487413-4058879626-644410073-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (07/21/2014 02:45:34 PM) (Source: DCOM) (EventID: 10016) (User: Dignitas) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}DignitasDignitasS-1-5-21-726487413-4058879626-644410073-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (07/21/2014 02:45:34 PM) (Source: DCOM) (EventID: 10016) (User: Dignitas) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}DignitasDignitasS-1-5-21-726487413-4058879626-644410073-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (07/21/2014 02:45:34 PM) (Source: DCOM) (EventID: 10016) (User: Dignitas) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}DignitasDignitasS-1-5-21-726487413-4058879626-644410073-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (07/21/2014 02:45:34 PM) (Source: DCOM) (EventID: 10016) (User: Dignitas) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}DignitasDignitasS-1-5-21-726487413-4058879626-644410073-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (07/21/2014 02:45:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Hardlock" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (07/21/2014 02:45:30 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 21.07.2014 um 14:39:07 unerwartet heruntergefahren. Microsoft Office Sessions: ========================= Error: (07/21/2014 02:49:21 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestD:\Downloads\esetsmartinstaller_deu.exe Error: (07/21/2014 02:49:21 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestD:\Downloads\esetsmartinstaller_deu.exe Error: (07/21/2014 01:43:23 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe Error: (07/21/2014 01:14:28 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe Error: (07/21/2014 01:06:48 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestD:\Downloads\esetsmartinstaller_deu.exe Error: (07/21/2014 01:06:48 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestD:\Downloads\esetsmartinstaller_deu.exe CodeIntegrity Errors: =================================== Date: 2014-07-21 14:45:33.548 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-20 22:34:43.887 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-20 19:16:51.833 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 22:30:59.815 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 22:05:47.930 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 21:08:19.672 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:37:22.037 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:30:23.889 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:26:15.778 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-07-19 18:17:30.867 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\hardlock.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Percentage of memory in use: 44% Total physical RAM: 8072.19 MB Available physical RAM: 4510.08 MB Total Pagefile: 9352.19 MB Available Pagefile: 5028.82 MB Total Virtual: 131072 MB Available Virtual: 131071.83 MB ==================== Drives ================================ Drive c: (BOOT) (Fixed) (Total:238.47 GB) (Free:140.5 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (BACKUP) (Fixed) (Total:1853.25 GB) (Free:1531.66 GB) NTFS Drive e: (RECOVER) (Fixed) (Total:9.75 GB) (Free:9.75 GB) FAT32 Drive i: (CoH_ToV) (CDROM) (Total:6.81 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238 GB) (Disk ID: D0AAF687) Partition 1: (Active) - (Size=238 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 01596CE9) Partition 1: (Not Active) - (Size=-209113317376) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=10 GB) - (Type=0C) ==================== End Of Log ============================ Geändert von Dignitas (21.07.2014 um 16:45 Uhr) |
22.07.2014, 10:51 | #10 |
/// the machine /// TB-Ausbilder | Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion Brauchste auch nit löschen, is ja in Quarantäne. Java updaten. Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
11.08.2014, 10:57 | #11 |
| Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion Somit alles erledigt |
11.08.2014, 21:11 | #12 |
/// the machine /// TB-Ausbilder | Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Windows 8.1 : Malwarebytes startet nicht, Systemwiederherstellung ohne Funktion |
adobe, branding, defender, desktop, error, fehler, fehlermeldung, flash player, google, help, helper, homepage, lightning, nvbackend, programm, registry, required, rundll, security, server, services.exe, software, starten, stick, svchost.exe, teamspeak, temp, warnung, windows |