|
Plagegeister aller Art und deren Bekämpfung: Wlan Download Geschwidnigkeit/Ping schwankt extrem!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
05.08.2014, 12:23 | #1 |
| Wlan Download Geschwidnigkeit/Ping schwankt extrem! Hey Weiß langsam echt nicht mehr weiter und habe mich deshalb hier registriert. Ich habe seit ca. 3 Monaten meinen PC, allerdings habe ich schon ziemlich lange Wlan Probleme. Ca. den ersten Monat ging alles gut.(Da hatte ich einen Fritz Box WLAN Stick) Irgendwann ging der aber nicht mehr. Das heißt Wlan Unterbrechungen alle 1-10 Min. Habe den dann umgetauscht. Nach ca 4. Wochen wieder das gleiche Problem. Habe dann einen Netgear Stick gekauft. Der hat aber einen Buescreen mit der Meldung athurx.sys verursacht. Also wieder umgetuascht. Bin jetzt bei einem Belkin Stick gelandet, aber ebenfalls ein ähnliches Problem. Manchmal geht der Ping einfach in extreme Höhne. (3000ms) Manchmal nimmt die Downloadgeschwindigkeit rapide ab. Habe zwar nur DSL 6000 aber bin dann bei 0,5 Mbit oder so. Brauche Hilfe! |
05.08.2014, 12:31 | #2 |
/// the machine /// TB-Ausbilder | Wlan Download Geschwidnigkeit/Ping schwankt extrem! hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
05.08.2014, 12:40 | #3 | ||
| Wlan Download Geschwidnigkeit/Ping schwankt extrem!Zitat:
Ran by Freddes (administrator) on FREDDES-PC on 05-08-2014 13:36:21 Running from C:\Users\Freddes\Downloads Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe (Motorola) C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIHBE.EXE (GoPro) C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Game Inc.) C:\Program Files (x86)\SHARKOON Skiller\GameMon.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (AVM Berlin) C:\Program Files (x86)\avmwlanstick\FRITZWLANMini.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Oracle Corporation) C:\Program Files\Java\jre8\bin\javaw.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13636824 2013-07-26] (Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [750160 2014-07-03] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [585048 2014-05-31] (Razer Inc.) HKLM-x32\...\Run: [GamingKeyboard] => C:\Program Files (x86)\SHARKOON Skiller\GameMon.exe [1803264 2012-06-07] (Game Inc.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2694040 2014-07-22] (Adobe Systems Incorporated) HKLM-x32\...\Run: [RoccatKoneXTD] => C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE [552960 2013-10-25] (ROCCAT GmbH) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2014-05-08] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [224128 2014-03-18] (Oracle Corporation) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [189520 2014-07-07] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [AVMWlanClient] => C:\Program Files (x86)\avmwlanstick\FRITZWLANMini.exe [933888 2012-08-21] (AVM Berlin) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2519504684-3732338342-1872333262-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.) HKU\S-1-5-21-2519504684-3732338342-1872333262-1000\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHBE.EXE [283232 2012-02-29] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-2519504684-3732338342-1872333262-1000\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent HKU\S-1-5-21-2519504684-3732338342-1872333262-1000\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-2519504684-3732338342-1872333262-1000\...\Run: [xwidget] => C:\Windows\Lion Skin Pack\Xwidget\xwidget.exe HKU\S-1-5-21-2519504684-3732338342-1872333262-1000\...\MountPoints2: {0dbf0f68-fe0a-11e3-9c64-d050990f2161} - E:\pushinst.exe HKU\S-1-5-21-2519504684-3732338342-1872333262-1000\...\MountPoints2: {1543736b-cf97-11e3-94c8-d1d30b666870} - E:\pushinst.exe HKU\S-1-5-21-2519504684-3732338342-1872333262-1000\...\MountPoints2: {7147e10c-efb2-11e3-9b55-d050990f2161} - E:\setup.exe -a HKU\S-1-5-21-2519504684-3732338342-1872333262-1000\...\MountPoints2: {c63876a8-cf96-11e3-bde2-806e6f6e6963} - D:\Setup.exe Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CineForm Status.lnk ShortcutTarget: CineForm Status.lnk -> C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe (GoPro) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\DeskDrive.lnk ShortcutTarget: DeskDrive.lnk -> C:\Windows\Lion Skin Pack\DeskDrive\DeskDrive.exe (No File) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Finderbar.lnk ShortcutTarget: Finderbar.lnk -> C:\Windows\Lion Skin Pack\Finderbar\Finderbar.exe (No File) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MacSearch.lnk ShortcutTarget: MacSearch.lnk -> C:\Windows\Lion Skin Pack\MacSearch\MacSearch.exe (No File) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RocketDock.lnk ShortcutTarget: RocketDock.lnk -> C:\Windows\Metro Tile Skin Pack\RocketDock\RocketDock.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\tClock.lnk ShortcutTarget: tClock.lnk -> C:\Windows\Lion Skin Pack\tClock\Clock.exe (No File) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\UberIcon.lnk ShortcutTarget: UberIcon.lnk -> C:\Windows\Lion Skin Pack\UberIcon\UberIcon.exe (No File) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Winroll.lnk ShortcutTarget: Winroll.lnk -> C:\Windows\Lion Skin Pack\Winroll\winroll.exe (No File) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\xwidget.lnk ShortcutTarget: xwidget.lnk -> C:\Windows\Lion Skin Pack\Xwidget\xwidget.exe (No File) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\YzShadow.lnk ShortcutTarget: YzShadow.lnk -> C:\Windows\Lion Skin Pack\YzShadow\YzShadow.exe (No File) ShellIconOverlayIdentifiers: AccExtIco1 -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () ShellIconOverlayIdentifiers: AccExtIco2 -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () ShellIconOverlayIdentifiers: AccExtIco3 -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM-x32 - DefaultScope value is missing. BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Freddes\AppData\Roaming\Mozilla\Firefox\Profiles\by49wx2a.default FF NewTab: chrome://quick_start/content/index.html FF Homepage: hxxp://euw.leagueoflegends.com/de FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=11.5.2 -> C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.5.2 -> C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect_x86_64 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: YouTube Unblocker - C:\Users\Freddes\AppData\Roaming\Mozilla\Firefox\Profiles\by49wx2a.default\Extensions\youtubeunblocker@unblocker.yt [2014-06-20] FF Extension: DownloadUpdater - C:\Users\Freddes\AppData\Roaming\Mozilla\Firefox\Profiles\by49wx2a.default\Extensions\{1afb1fb6-b967-4122-b3c6-f88be2e2a5b7}.xpi [2014-05-30] FF Extension: {25f3f72b-f49a-4c08-b77b-5bd3d1010e86} - C:\Users\Freddes\AppData\Roaming\Mozilla\Firefox\Profiles\by49wx2a.default\Extensions\{25f3f72b-f49a-4c08-b77b-5bd3d1010e86}.xpi [2014-05-27] FF Extension: Adblock Plus - C:\Users\Freddes\AppData\Roaming\Mozilla\Firefox\Profiles\by49wx2a.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-26] Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR NewTab: "chrome-extension://pelmeidfhdlhlbjimpabfcbnnojbboma/index.html" CHR DefaultSearchKeyword: sweet-page CHR DefaultSearchProvider: sweet-page CHR Extension: (Google Docs) - C:\Users\Freddes\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-05] CHR Extension: (Google Drive) - C:\Users\Freddes\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-05] CHR Extension: (YouTube) - C:\Users\Freddes\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-05] CHR Extension: (Google-Suche) - C:\Users\Freddes\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-05] CHR Extension: (Google Wallet) - C:\Users\Freddes\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-05] CHR Extension: (Google Mail) - C:\Users\Freddes\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-05] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-07-03] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-07-03] (Avira Operations GmbH & Co. KG) R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [141392 2014-07-07] (Avira Operations GmbH & Co. KG) S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-24] (globalUpdate) [File not signed] S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-24] (globalUpdate) [File not signed] R2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2013-11-15] (Motorola Mobility LLC) R2 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [File not signed] R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-18] (Realtek Semiconductor) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [117712 2014-07-03] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-04-10] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-04-10] (Avira Operations GmbH & Co. KG) S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2012-04-25] (AVM Berlin) R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [495376 2013-05-30] (Intel Corporation) S3 fwlanusb5; C:\Windows\System32\DRIVERS\fwlanusb5.sys [982784 2012-08-21] (AVM GmbH) R3 GameKB; C:\Windows\System32\drivers\GameKB.sys [27648 2012-05-11] () R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 AsrSetupDrv; \??\C:\Windows\SysWOW64\Drivers\AsrSetupDrv.sys [X] S3 athur; system32\DRIVERS\athurx.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-05 13:36 - 2014-08-05 13:36 - 00018794 _____ () C:\Users\Freddes\Downloads\FRST.txt 2014-08-05 13:36 - 2014-08-05 13:36 - 00000000 ____D () C:\FRST 2014-08-05 13:35 - 2014-08-05 13:35 - 02094080 _____ (Farbar) C:\Users\Freddes\Downloads\FRST64.exe 2014-08-05 13:07 - 2014-08-05 13:07 - 00007548 _____ () C:\Users\Freddes\x.log 2014-08-05 13:07 - 2014-08-05 13:07 - 00000034 _____ () C:\Users\Freddes\VisualRoute-Path 2014-08-05 13:07 - 2014-08-05 13:07 - 00000000 ____D () C:\Users\Freddes\vw 2014-08-05 13:07 - 2014-08-05 13:07 - 00000000 ____D () C:\Users\Freddes\VisualRoute 2014-08-05 13:07 - 2014-08-05 13:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VisualRoute 2014-08-05 13:07 - 2014-08-05 13:07 - 00000000 ____D () C:\Program Files (x86)\VisualRoute 2014-08-05 13:05 - 2014-08-05 13:06 - 04572320 _____ () C:\Users\Freddes\Downloads\vrc.exe 2014-08-05 12:46 - 2014-08-05 12:46 - 00000000 ____D () C:\Windows\{0D59735E-1DA7-4E6D-B1CC-44A4F59FD0FD} 2014-08-05 12:45 - 2014-08-05 12:46 - 15864258 _____ (Belkin ) C:\Users\Freddes\Downloads\f6d4050v2-setup.exe 2014-08-05 12:33 - 2013-07-13 17:47 - 00000000 ____D () C:\Users\Freddes\Desktop\__MACOSX 2014-08-05 12:31 - 2014-08-05 12:31 - 00257875 _____ () C:\Users\Freddes\Desktop\ease_and_wizz_2.0.4.zip 2014-08-05 12:25 - 2014-08-05 12:25 - 00091011 _____ () C:\Users\Freddes\Downloads\MoveAnchorPoint_v2.0.zip 2014-08-03 21:40 - 2014-08-03 21:40 - 00000000 ____D () C:\Users\Freddes\AppData\Roaming\Red Giant 2014-08-03 21:40 - 2014-08-03 21:40 - 00000000 ____D () C:\Program Files (x86)\Red Giant Link 2014-08-03 21:37 - 2014-08-03 21:37 - 00000000 ____D () C:\Users\Freddes\AppData\Local\Downloaded Installations 2014-08-03 21:25 - 2014-08-03 21:32 - 258367752 _____ () C:\Users\Freddes\Downloads\TCSuite_Win_Full.zip 2014-08-03 15:20 - 2014-08-03 15:20 - 00001023 _____ () C:\Users\Public\Desktop\Crazybump.lnk 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\Users\Freddes\AppData\Local\licensecb 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\Users\Freddes\AppData\Local\CrazyBump 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crazybump 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\ProgramData\licensecb 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\ProgramData\CrazyBump 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\Program Files (x86)\Crazybump 2014-08-03 15:18 - 2014-08-03 15:19 - 31526191 _____ () C:\Users\Freddes\Downloads\CrazyBumpSetup12.exe 2014-08-01 21:51 - 2014-08-01 21:52 - 06400809 _____ () C:\Users\Freddes\Downloads\IBO_MartiniNight_WaterSplashes.abr.zip 2014-08-01 21:45 - 2014-08-01 21:45 - 01813209 _____ () C:\Users\Freddes\Downloads\Galaxy star brushes.zip 2014-08-01 21:42 - 2014-08-01 21:42 - 00000000 ___HD () C:\ProgramData\RWBYTE 2014-08-01 21:38 - 2014-08-01 21:38 - 00000025 _____ () C:\END 2014-08-01 21:35 - 2014-08-01 21:38 - 11873971 _____ () C:\Users\Freddes\Downloads\Plexus_2.0.10_Installers.zip 2014-08-01 19:44 - 2014-08-01 19:44 - 00055726 _____ () C:\Users\Freddes\Downloads\norwester.zip 2014-08-01 19:43 - 2014-08-01 19:43 - 00759134 _____ () C:\Users\Freddes\Downloads\exo-2.zip 2014-08-01 19:12 - 2014-08-01 19:12 - 00020916 _____ () C:\Users\Freddes\Downloads\bebas_neue.zip 2014-08-01 17:23 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-08-01 17:23 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-08-01 17:23 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-08-01 17:23 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-08-01 17:23 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-08-01 17:23 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-08-01 17:23 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2014-08-01 17:23 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-08-01 17:23 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-08-01 17:23 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-08-01 17:22 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-08-01 17:22 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2014-08-01 17:22 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-08-01 17:22 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2014-07-31 22:05 - 2014-07-31 22:06 - 00000000 ____D () C:\Users\Freddes\Desktop\Texturen 2014-07-31 22:03 - 2014-07-31 22:03 - 00000034 _____ () C:\Users\Freddes\AppData\Roaming\AdobeWLCMCache.dat 2014-07-31 21:56 - 2014-07-31 21:56 - 00001483 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2014.lnk 2014-07-31 21:56 - 2014-07-31 21:56 - 00000000 ____D () C:\ProgramData\ALM 2014-07-31 15:04 - 2014-07-31 15:23 - 00000000 ____D () C:\Program Files (x86)\WizTree 2014-07-31 15:04 - 2014-07-31 15:04 - 00915736 _____ (Antibody Software ) C:\Users\Freddes\Downloads\wiztree_1_07_setup.exe 2014-07-31 15:04 - 2014-07-31 15:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WizTree 2014-07-30 19:29 - 2014-07-30 19:29 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-29 18:48 - 2014-07-29 18:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belkin Dienstprogramm für WLAN USB-Adapter 2014-07-29 18:47 - 2014-08-05 12:46 - 00000000 ____D () C:\Program Files (x86)\Belkin 2014-07-29 18:47 - 2012-02-01 03:30 - 00694376 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\RTL8192su.sys 2014-07-27 20:02 - 2014-07-27 20:14 - 858493543 _____ () C:\Users\Freddes\Downloads\Shockwaves.zip 2014-07-27 19:19 - 2014-07-27 19:19 - 00141094 _____ () C:\Users\Freddes\Downloads\Stormy's CC Looks.zip 2014-07-27 18:54 - 2014-07-27 21:58 - 00000000 ____D () C:\Users\Freddes\Desktop\Adobe After Effects Auto-Save 2014-07-27 14:02 - 2014-07-27 14:03 - 48729346 _____ () C:\Users\Freddes\Downloads\3-Curved-Wooden-Backdrops-Vol2.zip 2014-07-27 13:23 - 2014-07-27 13:23 - 00266320 _____ () C:\Windows\Minidump\072714-5740-02.dmp 2014-07-27 13:20 - 2011-07-22 10:33 - 00025056 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\SCMNdisP.sys 2014-07-27 12:46 - 2014-07-27 12:48 - 84403983 _____ () C:\Users\Freddes\Downloads\WNA1100-Setup-V2.2.0.1-1_signed.zip 2014-07-27 12:15 - 2014-07-27 12:15 - 00266288 _____ () C:\Windows\Minidump\072714-5756-01.dmp 2014-07-27 12:06 - 2014-07-27 12:06 - 00266288 _____ () C:\Windows\Minidump\072714-6037-01.dmp 2014-07-27 12:05 - 2008-05-15 02:28 - 00026624 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\jswpslwfx.sys 2014-07-27 12:02 - 2014-07-27 12:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!WLAN 2014-07-27 12:02 - 2014-07-27 12:02 - 00000000 ____D () C:\Program Files (x86)\avmwlanstick 2014-07-27 12:01 - 2012-04-25 01:00 - 00014120 _____ (AVM Berlin) C:\Windows\system32\Drivers\avmeject.sys 2014-07-27 11:56 - 2014-07-27 11:56 - 00266288 _____ () C:\Windows\Minidump\072714-5834-01.dmp 2014-07-27 11:55 - 2014-07-27 11:55 - 00266288 _____ () C:\Windows\Minidump\072714-6130-01.dmp 2014-07-27 11:35 - 2014-07-27 11:35 - 00266320 _____ () C:\Windows\Minidump\072714-5662-01.dmp 2014-07-27 11:33 - 2014-07-27 11:33 - 00266320 _____ () C:\Windows\Minidump\072714-5740-01.dmp 2014-07-27 11:08 - 2014-07-27 11:10 - 32531569 _____ () C:\Users\Freddes\Downloads\Furry Project Files.rar 2014-07-27 10:43 - 2014-07-27 10:43 - 00266288 _____ () C:\Windows\Minidump\072714-4196-01.dmp 2014-07-27 10:40 - 2014-07-27 10:40 - 00266288 _____ () C:\Windows\Minidump\072714-4087-01.dmp 2014-07-27 10:38 - 2014-07-27 10:38 - 25245959 _____ () C:\Users\Freddes\Downloads\WNA1100 Release Software - Version 1.1.4.32.zip 2014-07-27 10:31 - 2014-07-27 10:31 - 00266320 _____ () C:\Windows\Minidump\072714-4134-01.dmp 2014-07-27 10:30 - 2014-07-27 10:30 - 00266320 _____ () C:\Windows\Minidump\072714-3931-01.dmp 2014-07-27 10:29 - 2014-07-27 10:29 - 00266320 _____ () C:\Windows\Minidump\072714-3884-01.dmp 2014-07-27 10:27 - 2014-07-27 10:27 - 00266320 _____ () C:\Windows\Minidump\072714-4071-01.dmp 2014-07-27 10:21 - 2014-07-27 10:21 - 00266320 _____ () C:\Windows\Minidump\072714-3978-01.dmp 2014-07-26 12:08 - 2014-07-26 12:08 - 00266288 _____ () C:\Windows\Minidump\072614-2964-01.dmp 2014-07-26 10:18 - 2014-07-26 10:18 - 00002989 _____ () C:\Windows\avmacc1.log 2014-07-26 10:18 - 2012-08-24 02:00 - 00480632 _____ (AVM Berlin) C:\Windows\instwcli.dex 2014-07-26 10:14 - 2014-07-26 10:18 - 169953925 _____ (Emsisoft GmbH ) C:\Users\Freddes\Downloads\EmsisoftAntiMalwareSetup_solvusoft.exe.part 2014-07-26 10:12 - 2014-08-02 12:10 - 00000000 ____D () C:\Users\Freddes\AppData\Roaming\Solvusoft 2014-07-26 10:11 - 2014-07-26 10:11 - 03894696 _____ (solvusoft Corporation ) C:\Users\Freddes\Downloads\Athurx.sys-Reparaturprogramm-WinThruster.exe 2014-07-26 10:06 - 2014-07-26 10:06 - 00266288 _____ () C:\Windows\Minidump\072614-5740-01.dmp 2014-07-26 10:05 - 2014-07-26 10:05 - 00266288 _____ () C:\Windows\Minidump\072614-5834-01.dmp 2014-07-26 09:54 - 2014-07-26 09:54 - 00266320 _____ () C:\Windows\Minidump\072614-12807-01.dmp 2014-07-26 09:51 - 2014-07-26 09:51 - 00165201 _____ () C:\Users\Freddes\Downloads\intel-core-series-win7gadgets-com.zip 2014-07-26 09:46 - 2014-07-26 09:46 - 00262144 _____ () C:\Windows\Minidump\072614-13088-01.dmp 2014-07-26 09:39 - 2014-07-26 09:39 - 00266288 _____ () C:\Windows\Minidump\072614-16286-01.dmp 2014-07-26 09:38 - 2014-07-26 09:38 - 00266320 _____ () C:\Windows\Minidump\072614-5943-01.dmp 2014-07-25 16:58 - 2014-07-25 16:58 - 00002075 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop Lightroom 5.5 64-Bit.lnk 2014-07-25 16:38 - 2014-07-25 16:38 - 00001040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2014.lnk 2014-07-25 16:00 - 2014-07-25 16:00 - 00266320 _____ () C:\Windows\Minidump\072514-5740-01.dmp 2014-07-25 15:57 - 2014-07-25 15:57 - 00266288 _____ () C:\Windows\Minidump\072514-6006-01.dmp 2014-07-25 15:55 - 2014-07-25 15:55 - 00266352 _____ () C:\Windows\Minidump\072514-16161-01.dmp 2014-07-25 15:54 - 2014-07-27 13:23 - 496487524 _____ () C:\Windows\MEMORY.DMP 2014-07-25 15:54 - 2014-07-27 13:23 - 00000000 ____D () C:\Windows\Minidump 2014-07-25 15:54 - 2014-07-25 15:54 - 00266320 _____ () C:\Windows\Minidump\072514-5818-01.dmp 2014-07-25 15:49 - 2014-07-25 15:54 - 00000000 ___HD () C:\Windows\Metro Tile Skin Pack 2014-07-25 15:49 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll.xpize 2014-07-25 15:49 - 2014-03-25 04:09 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-07-25 15:49 - 2013-10-04 03:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll.xpize 2014-07-25 15:49 - 2013-10-04 03:56 - 01795584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-07-25 15:49 - 2011-02-25 08:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe.xpize 2014-07-25 15:49 - 2011-02-25 08:19 - 02700288 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2014-07-25 15:49 - 2010-11-21 05:25 - 00776192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe.xpize 2014-07-25 15:49 - 2010-11-21 05:25 - 00744448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll.xpize 2014-07-25 15:49 - 2010-11-21 05:25 - 00742912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2014-07-25 15:49 - 2010-11-21 05:25 - 00714240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe 2014-07-25 15:49 - 2010-11-21 05:24 - 01750528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnidui.dll.xpize 2014-07-25 15:49 - 2010-11-21 05:24 - 01493504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll.xpize 2014-07-25 15:49 - 2010-11-21 05:24 - 01492992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2014-07-25 15:49 - 2010-11-21 05:24 - 01248768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnidui.dll 2014-07-25 15:49 - 2010-11-21 05:24 - 00228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll.xpize 2014-07-25 15:49 - 2010-11-21 05:24 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll.xpize 2014-07-25 15:49 - 2010-11-21 05:24 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll 2014-07-25 15:49 - 2010-11-21 05:24 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2014-07-25 15:49 - 2010-11-21 05:23 - 00740864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll.xpize 2014-07-25 15:49 - 2010-11-21 05:23 - 00740864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll 2014-07-25 15:49 - 2009-07-14 03:14 - 06376960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe.xpize 2014-07-25 15:49 - 2009-07-14 03:14 - 06290432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe 2014-07-25 15:49 - 2009-07-14 03:14 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe.xpize 2014-07-25 15:49 - 2009-07-14 03:14 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2014-07-25 15:49 - 2009-07-14 03:06 - 20268032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imageres.dll.xpize 2014-07-25 15:49 - 2009-07-14 03:06 - 11866112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imageres.dll 2014-07-25 15:49 - 2009-07-14 03:06 - 00705536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagesp1.dll.xpize 2014-07-25 15:49 - 2009-07-14 03:06 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagesp1.dll 2014-07-25 10:44 - 2014-07-25 10:44 - 00000000 ____D () C:\Users\Freddes\Desktop\Only C4D Dateien 2014-07-25 10:43 - 2014-08-05 12:33 - 00000000 ____D () C:\Users\Freddes\Desktop\Only AE Dateien 2014-07-25 10:43 - 2014-08-04 22:15 - 00000000 ____D () C:\Users\Freddes\Desktop\Only PH Dateien 2014-07-25 10:43 - 2014-08-04 22:05 - 00000000 ____D () C:\Users\Freddes\Desktop\Bilder für Photoshop 2014-07-25 10:41 - 2014-07-25 10:44 - 00000000 ____D () C:\Users\Freddes\Desktop\Alles rund um AE und CO 2014-07-25 10:38 - 2014-07-25 10:38 - 00000856 _____ () C:\Users\Freddes\AppData\Local\recently-used.xbel 2014-07-24 17:39 - 2014-07-24 17:39 - 00000000 ____D () C:\Users\Freddes\AppData\Local\IsolatedStorage 2014-07-24 17:39 - 2014-07-24 17:39 - 00000000 ____D () C:\Users\Freddes\AppData\Local\Blue_Onion_Software 2014-07-24 15:19 - 2014-08-05 12:48 - 00001404 _____ () C:\Windows\Tasks\3a64a1ea-fe2e-485a-86ca-ee4c7f76d7c0-5_user.job 2014-07-24 15:19 - 2014-08-05 12:48 - 00000890 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job 2014-07-24 15:19 - 2014-08-04 21:24 - 00000894 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job 2014-07-24 15:19 - 2014-07-25 15:49 - 02755072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll.tmp 2014-07-24 15:19 - 2014-07-25 15:49 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll.tmp 2014-07-24 15:19 - 2014-07-25 15:49 - 00000000 ____D () C:\Program Files (x86)\Skin Pack 2014-07-24 15:19 - 2014-07-24 15:19 - 00003892 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA 2014-07-24 15:19 - 2014-07-24 15:19 - 00003638 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore 2014-07-24 15:19 - 2014-07-24 15:19 - 00000000 ____D () C:\Users\Freddes\AppData\Local\globalUpdate 2014-07-24 15:19 - 2014-07-24 15:19 - 00000000 ____D () C:\Program Files (x86)\PHD-V1.4 2014-07-24 15:19 - 2014-07-24 15:19 - 00000000 ____D () C:\Program Files (x86)\globalUpdate 2014-07-24 15:19 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-24 15:19 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-24 15:19 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-24 15:19 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-07-24 15:19 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2014-07-24 15:19 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2014-07-24 15:19 - 2010-11-21 05:25 - 02202624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsCpl.dll 2014-07-24 15:19 - 2010-11-21 05:25 - 02146304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll 2014-07-24 15:19 - 2010-11-21 05:25 - 00859648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll 2014-07-24 15:19 - 2010-11-21 05:25 - 00537600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll 2014-07-24 15:19 - 2010-11-21 05:25 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll 2014-07-24 15:19 - 2010-11-21 05:25 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mobsync.exe 2014-07-24 15:19 - 2010-11-21 05:24 - 03727872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 02755072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll.backup 2014-07-24 15:19 - 2010-11-21 05:24 - 02494464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 02157568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 01661440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkexplorer.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 01227776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 01049600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-07-24 15:19 - 2010-11-21 05:24 - 01040384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 00933376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vault.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 00629760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pmcsnap.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 00600576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PerfCenterCPL.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 00600064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 00586752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe 2014-07-24 15:19 - 2010-11-21 05:24 - 00516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\main.cpl 2014-07-24 15:19 - 2010-11-21 05:24 - 00484864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 00441856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercpl.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 00345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2014-07-24 15:19 - 2010-11-21 05:24 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe 2014-07-24 15:19 - 2010-11-21 05:24 - 00303104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe 2014-07-24 15:19 - 2010-11-21 05:24 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eudcedit.exe 2014-07-24 15:19 - 2010-11-21 05:24 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mydocs.dll 2014-07-24 15:19 - 2010-11-21 05:24 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browseui.dll 2014-07-24 15:19 - 2010-11-21 05:23 - 01644032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcenter.dll 2014-07-24 15:19 - 2010-11-21 05:23 - 00905216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl 2014-07-24 15:19 - 2010-11-21 05:23 - 00856576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallControlPanel.dll 2014-07-24 15:19 - 2010-11-21 05:23 - 00227328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskmgr.exe 2014-07-24 15:19 - 2009-07-14 03:16 - 01294336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll 2014-07-24 15:19 - 2009-07-14 03:16 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mycomput.dll 2014-07-24 15:19 - 2009-07-14 03:15 - 06278656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDORes.dll 2014-07-24 15:19 - 2009-07-14 03:15 - 00444416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\filemgmt.dll 2014-07-24 15:19 - 2009-07-14 03:15 - 00410624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devmgr.dll 2014-07-24 15:19 - 2009-07-14 03:15 - 00218624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicpl.dll 2014-07-24 15:19 - 2009-07-14 03:15 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miguiresource.dll 2014-07-24 15:19 - 2009-07-14 03:14 - 03405312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe 2014-07-24 15:19 - 2009-07-14 03:14 - 00629760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnify.exe 2014-07-24 15:19 - 2009-07-14 03:14 - 00522752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplaySwitch.exe 2014-07-24 15:19 - 2009-07-14 03:14 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWGP.dll 2014-07-24 15:19 - 2009-07-14 03:14 - 00212480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cleanmgr.exe 2014-07-24 15:19 - 2009-07-14 03:14 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe 2014-07-24 15:19 - 2009-07-14 03:14 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\control.exe 2014-07-24 15:19 - 2009-07-14 03:14 - 00108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msra.exe 2014-07-24 15:19 - 2009-07-14 03:14 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\telephon.cpl 2014-07-24 15:19 - 2009-07-14 03:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colorcpl.exe 2014-07-24 15:19 - 2009-07-14 03:11 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll.backup 2014-07-24 15:19 - 2009-07-14 03:09 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcint.dll 2014-07-24 15:19 - 2009-07-14 03:06 - 09053696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmres.dll 2014-07-24 15:19 - 2009-07-14 03:04 - 01297408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comres.dll 2014-07-24 15:14 - 2014-07-24 15:18 - 112847547 _____ () C:\Users\Freddes\Downloads\Pack12_lion.zip 2014-07-24 15:14 - 2014-07-24 15:14 - 00826192 _____ (Chip Digital GmbH) C:\Users\Freddes\Downloads\Pack12_lion - CHIP-Installer.exe 2014-07-23 19:15 - 2014-07-23 19:15 - 00000000 ____D () C:\Bali 2014 2014-07-23 16:31 - 2014-07-23 16:31 - 00001118 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder CC 2014.lnk 2014-07-23 16:04 - 2014-07-23 16:04 - 00001106 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2014.lnk 2014-07-23 12:26 - 2014-07-23 12:26 - 00001222 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CC 2014.lnk 2014-07-23 11:51 - 2014-07-23 11:51 - 00000000 ___RD () C:\Users\Freddes\Creative Cloud Files 2014-07-23 11:44 - 2014-07-23 11:44 - 00614792 _____ (Adobe Systems Incorporated) C:\Users\Freddes\Downloads\CreativeCloudSet-Up(1).exe 2014-07-23 08:14 - 2014-06-20 22:14 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-23 08:14 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-23 08:14 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-23 08:14 - 2014-06-19 03:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-23 08:14 - 2014-06-19 03:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-07-23 08:14 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-23 08:14 - 2014-06-19 02:42 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-23 08:14 - 2014-06-19 02:42 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-23 08:14 - 2014-06-19 02:41 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-07-23 08:14 - 2014-06-19 02:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-07-23 08:14 - 2014-06-19 02:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-23 08:14 - 2014-06-19 02:31 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-23 08:14 - 2014-06-19 02:26 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-23 08:14 - 2014-06-19 02:24 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-23 08:14 - 2014-06-19 02:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-07-23 08:14 - 2014-06-19 02:23 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-07-23 08:14 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-23 08:14 - 2014-06-19 02:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-07-23 08:14 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-23 08:14 - 2014-06-19 01:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-07-23 08:14 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-23 08:14 - 2014-06-19 01:53 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-23 08:14 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-23 08:14 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-23 08:14 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-23 08:14 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-23 08:14 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-23 08:14 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-23 08:14 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-07-23 08:14 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-07-23 08:14 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-23 08:14 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-23 08:14 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-23 08:14 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-23 08:14 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-23 08:14 - 2014-06-19 01:27 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-07-23 08:14 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-23 08:14 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-23 08:14 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-07-23 08:14 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-23 08:14 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-07-23 08:14 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-23 08:14 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-23 08:14 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-23 08:14 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-23 08:14 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-23 08:14 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-23 08:14 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-23 08:14 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-07-23 08:14 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-23 08:14 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-23 08:14 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-23 08:14 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-23 08:14 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-23 08:14 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-23 08:14 - 2014-06-18 03:10 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-23 08:14 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-23 08:14 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-23 08:14 - 2014-05-30 10:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-07-23 08:14 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-07-23 08:14 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-07-23 08:14 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-07-23 08:14 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-07-23 08:14 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-07-23 08:14 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-07-23 08:14 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-07-23 08:14 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-07-23 08:14 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-07-23 08:14 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-07-23 08:14 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-07-23 08:14 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-07-23 08:14 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-07-23 08:14 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-23 08:10 - 2014-06-05 16:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-23 08:10 - 2014-06-05 16:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-07-23 08:10 - 2014-06-05 16:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-07-23 08:07 - 2014-07-23 08:07 - 00000000 ____D () C:\ProgramData\Riot Games ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-05 13:36 - 2014-08-05 13:36 - 00018794 _____ () C:\Users\Freddes\Downloads\FRST.txt 2014-08-05 13:36 - 2014-08-05 13:36 - 00000000 ____D () C:\FRST 2014-08-05 13:36 - 2014-04-29 14:39 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-08-05 13:35 - 2014-08-05 13:35 - 02094080 _____ (Farbar) C:\Users\Freddes\Downloads\FRST64.exe 2014-08-05 13:35 - 2014-04-29 15:10 - 00000000 ____D () C:\Users\Freddes\AppData\Roaming\Skype 2014-08-05 13:34 - 2014-05-11 12:19 - 00000000 ____D () C:\Users\Freddes\AppData\Roaming\.minecraft 2014-08-05 13:34 - 2014-04-29 14:09 - 01299613 _____ () C:\Windows\WindowsUpdate.log 2014-08-05 13:07 - 2014-08-05 13:07 - 00007548 _____ () C:\Users\Freddes\x.log 2014-08-05 13:07 - 2014-08-05 13:07 - 00000034 _____ () C:\Users\Freddes\VisualRoute-Path 2014-08-05 13:07 - 2014-08-05 13:07 - 00000000 ____D () C:\Users\Freddes\vw 2014-08-05 13:07 - 2014-08-05 13:07 - 00000000 ____D () C:\Users\Freddes\VisualRoute 2014-08-05 13:07 - 2014-08-05 13:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VisualRoute 2014-08-05 13:07 - 2014-08-05 13:07 - 00000000 ____D () C:\Program Files (x86)\VisualRoute 2014-08-05 13:07 - 2014-04-29 14:10 - 00000000 ____D () C:\Users\Freddes 2014-08-05 13:06 - 2014-08-05 13:05 - 04572320 _____ () C:\Users\Freddes\Downloads\vrc.exe 2014-08-05 13:01 - 2014-06-05 15:50 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-08-05 12:55 - 2009-07-14 06:45 - 00025872 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-08-05 12:55 - 2009-07-14 06:45 - 00025872 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-08-05 12:48 - 2014-07-24 15:19 - 00001404 _____ () C:\Windows\Tasks\3a64a1ea-fe2e-485a-86ca-ee4c7f76d7c0-5_user.job 2014-08-05 12:48 - 2014-07-24 15:19 - 00000890 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job 2014-08-05 12:48 - 2014-06-09 15:48 - 00000000 ____D () C:\Temp 2014-08-05 12:48 - 2014-06-05 15:50 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-08-05 12:48 - 2014-04-29 14:38 - 00000000 ____D () C:\Users\Freddes\AppData\Local\Adobe 2014-08-05 12:48 - 2009-07-14 06:51 - 00070880 _____ () C:\Windows\setupact.log 2014-08-05 12:47 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-08-05 12:46 - 2014-08-05 12:46 - 00000000 ____D () C:\Windows\{0D59735E-1DA7-4E6D-B1CC-44A4F59FD0FD} 2014-08-05 12:46 - 2014-08-05 12:45 - 15864258 _____ (Belkin ) C:\Users\Freddes\Downloads\f6d4050v2-setup.exe 2014-08-05 12:46 - 2014-07-29 18:47 - 00000000 ____D () C:\Program Files (x86)\Belkin 2014-08-05 12:46 - 2014-04-29 14:20 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-08-05 12:33 - 2014-07-25 10:43 - 00000000 ____D () C:\Users\Freddes\Desktop\Only AE Dateien 2014-08-05 12:31 - 2014-08-05 12:31 - 00257875 _____ () C:\Users\Freddes\Desktop\ease_and_wizz_2.0.4.zip 2014-08-05 12:25 - 2014-08-05 12:25 - 00091011 _____ () C:\Users\Freddes\Downloads\MoveAnchorPoint_v2.0.zip 2014-08-04 22:15 - 2014-07-25 10:43 - 00000000 ____D () C:\Users\Freddes\Desktop\Only PH Dateien 2014-08-04 22:05 - 2014-07-25 10:43 - 00000000 ____D () C:\Users\Freddes\Desktop\Bilder für Photoshop 2014-08-04 21:24 - 2014-07-24 15:19 - 00000894 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job 2014-08-04 18:04 - 2014-04-29 15:53 - 00000000 ____D () C:\Users\Freddes\AppData\Roaming\TS3Client 2014-08-04 15:59 - 2014-04-29 16:56 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-08-03 21:40 - 2014-08-03 21:40 - 00000000 ____D () C:\Users\Freddes\AppData\Roaming\Red Giant 2014-08-03 21:40 - 2014-08-03 21:40 - 00000000 ____D () C:\Program Files (x86)\Red Giant Link 2014-08-03 21:40 - 2014-05-13 19:30 - 00003666 _____ () C:\Windows\System32\Tasks\Red Giant Link 2014-08-03 21:40 - 2014-05-13 19:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Giant 2014-08-03 21:37 - 2014-08-03 21:37 - 00000000 ____D () C:\Users\Freddes\AppData\Local\Downloaded Installations 2014-08-03 21:32 - 2014-08-03 21:25 - 258367752 _____ () C:\Users\Freddes\Downloads\TCSuite_Win_Full.zip 2014-08-03 19:10 - 2014-05-08 21:14 - 00000000 ____D () C:\Users\Freddes\Documents\Adobe 2014-08-03 15:20 - 2014-08-03 15:20 - 00001023 _____ () C:\Users\Public\Desktop\Crazybump.lnk 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\Users\Freddes\AppData\Local\licensecb 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\Users\Freddes\AppData\Local\CrazyBump 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crazybump 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\ProgramData\licensecb 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\ProgramData\CrazyBump 2014-08-03 15:20 - 2014-08-03 15:20 - 00000000 ____D () C:\Program Files (x86)\Crazybump 2014-08-03 15:19 - 2014-08-03 15:18 - 31526191 _____ () C:\Users\Freddes\Downloads\CrazyBumpSetup12.exe 2014-08-02 16:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-08-02 15:47 - 2014-06-08 09:30 - 00007997 _____ () C:\Windows\BRRBCOM.INI 2014-08-02 12:12 - 2014-05-07 17:15 - 00000000 ____D () C:\Users\Freddes\.gimp-2.8 2014-08-02 12:10 - 2014-07-26 10:12 - 00000000 ____D () C:\Users\Freddes\AppData\Roaming\Solvusoft 2014-08-02 12:10 - 2009-07-14 06:45 - 04997344 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-01 21:52 - 2014-08-01 21:51 - 06400809 _____ () C:\Users\Freddes\Downloads\IBO_MartiniNight_WaterSplashes.abr.zip 2014-08-01 21:45 - 2014-08-01 21:45 - 01813209 _____ () C:\Users\Freddes\Downloads\Galaxy star brushes.zip 2014-08-01 21:42 - 2014-08-01 21:42 - 00000000 ___HD () C:\ProgramData\RWBYTE 2014-08-01 21:40 - 2014-04-29 15:08 - 00068712 _____ () C:\Users\Freddes\AppData\Local\GDIPFONTCACHEV1.DAT 2014-08-01 21:38 - 2014-08-01 21:38 - 00000025 _____ () C:\END 2014-08-01 21:38 - 2014-08-01 21:35 - 11873971 _____ () C:\Users\Freddes\Downloads\Plexus_2.0.10_Installers.zip 2014-08-01 19:44 - 2014-08-01 19:44 - 00055726 _____ () C:\Users\Freddes\Downloads\norwester.zip 2014-08-01 19:43 - 2014-08-01 19:43 - 00759134 _____ () C:\Users\Freddes\Downloads\exo-2.zip 2014-08-01 19:12 - 2014-08-01 19:12 - 00020916 _____ () C:\Users\Freddes\Downloads\bebas_neue.zip 2014-08-01 13:57 - 2014-05-18 18:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-07-31 22:06 - 2014-07-31 22:05 - 00000000 ____D () C:\Users\Freddes\Desktop\Texturen 2014-07-31 22:03 - 2014-07-31 22:03 - 00000034 _____ () C:\Users\Freddes\AppData\Roaming\AdobeWLCMCache.dat 2014-07-31 22:03 - 2014-04-29 14:39 - 00000000 ____D () C:\Users\Freddes\AppData\Roaming\Adobe 2014-07-31 21:56 - 2014-07-31 21:56 - 00001483 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2014.lnk 2014-07-31 21:56 - 2014-07-31 21:56 - 00000000 ____D () C:\ProgramData\ALM 2014-07-31 21:56 - 2014-05-08 19:02 - 00000000 ____D () C:\Program Files\Adobe 2014-07-31 21:56 - 2014-04-29 14:55 - 00000000 ____D () C:\ProgramData\Package Cache 2014-07-31 15:23 - 2014-07-31 15:04 - 00000000 ____D () C:\Program Files (x86)\WizTree 2014-07-31 15:04 - 2014-07-31 15:04 - 00915736 _____ (Antibody Software ) C:\Users\Freddes\Downloads\wiztree_1_07_setup.exe 2014-07-31 15:04 - 2014-07-31 15:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WizTree 2014-07-30 19:29 - 2014-07-30 19:29 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-29 18:48 - 2014-07-29 18:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belkin Dienstprogramm für WLAN USB-Adapter 2014-07-27 23:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration 2014-07-27 21:58 - 2014-07-27 18:54 - 00000000 ____D () C:\Users\Freddes\Desktop\Adobe After Effects Auto-Save 2014-07-27 20:14 - 2014-07-27 20:02 - 858493543 _____ () C:\Users\Freddes\Downloads\Shockwaves.zip 2014-07-27 19:19 - 2014-07-27 19:19 - 00141094 _____ () C:\Users\Freddes\Downloads\Stormy's CC Looks.zip 2014-07-27 14:03 - 2014-07-27 14:02 - 48729346 _____ () C:\Users\Freddes\Downloads\3-Curved-Wooden-Backdrops-Vol2.zip 2014-07-27 13:23 - 2014-07-27 13:23 - 00266320 _____ () C:\Windows\Minidump\072714-5740-02.dmp 2014-07-27 13:23 - 2014-07-25 15:54 - 496487524 _____ () C:\Windows\MEMORY.DMP 2014-07-27 13:23 - 2014-07-25 15:54 - 00000000 ____D () C:\Windows\Minidump 2014-07-27 12:48 - 2014-07-27 12:46 - 84403983 _____ () C:\Users\Freddes\Downloads\WNA1100-Setup-V2.2.0.1-1_signed.zip 2014-07-27 12:15 - 2014-07-27 12:15 - 00266288 _____ () C:\Windows\Minidump\072714-5756-01.dmp 2014-07-27 12:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-07-27 12:06 - 2014-07-27 12:06 - 00266288 _____ () C:\Windows\Minidump\072714-6037-01.dmp 2014-07-27 12:02 - 2014-07-27 12:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!WLAN 2014-07-27 12:02 - 2014-07-27 12:02 - 00000000 ____D () C:\Program Files (x86)\avmwlanstick 2014-07-27 12:02 - 2014-04-29 14:26 - 00011850 _____ () C:\Windows\avmfwlanci.log 2014-07-27 12:02 - 2014-04-29 14:26 - 00011197 _____ () C:\Windows\AVMInstall.Log 2014-07-27 12:01 - 2014-04-29 14:25 - 00000000 ____D () C:\Windows\AVM_Driver 2014-07-27 12:00 - 2010-11-21 05:47 - 00187406 _____ () C:\Windows\PFRO.log 2014-07-27 11:56 - 2014-07-27 11:56 - 00266288 _____ () C:\Windows\Minidump\072714-5834-01.dmp 2014-07-27 11:55 - 2014-07-27 11:55 - 00266288 _____ () C:\Windows\Minidump\072714-6130-01.dmp 2014-07-27 11:35 - 2014-07-27 11:35 - 00266320 _____ () C:\Windows\Minidump\072714-5662-01.dmp 2014-07-27 11:33 - 2014-07-27 11:33 - 00266320 _____ () C:\Windows\Minidump\072714-5740-01.dmp 2014-07-27 11:10 - 2014-07-27 11:08 - 32531569 _____ () C:\Users\Freddes\Downloads\Furry Project Files.rar 2014-07-27 10:43 - 2014-07-27 10:43 - 00266288 _____ () C:\Windows\Minidump\072714-4196-01.dmp 2014-07-27 10:40 - 2014-07-27 10:40 - 00266288 _____ () C:\Windows\Minidump\072714-4087-01.dmp 2014-07-27 10:38 - 2014-07-27 10:38 - 25245959 _____ () C:\Users\Freddes\Downloads\WNA1100 Release Software - Version 1.1.4.32.zip 2014-07-27 10:31 - 2014-07-27 10:31 - 00266320 _____ () C:\Windows\Minidump\072714-4134-01.dmp 2014-07-27 10:30 - 2014-07-27 10:30 - 00266320 _____ () C:\Windows\Minidump\072714-3931-01.dmp 2014-07-27 10:29 - 2014-07-27 10:29 - 00266320 _____ () C:\Windows\Minidump\072714-3884-01.dmp 2014-07-27 10:29 - 2014-04-30 00:05 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-07-27 10:29 - 2014-04-30 00:05 - 00000000 _____ () C:\Windows\system32\perfh007.dat 2014-07-27 10:29 - 2009-07-14 07:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-27 10:27 - 2014-07-27 10:27 - 00266320 _____ () C:\Windows\Minidump\072714-4071-01.dmp 2014-07-27 10:21 - 2014-07-27 10:21 - 00266320 _____ () C:\Windows\Minidump\072714-3978-01.dmp 2014-07-26 12:08 - 2014-07-26 12:08 - 00266288 _____ () C:\Windows\Minidump\072614-2964-01.dmp 2014-07-26 11:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\security 2014-07-26 10:19 - 2014-05-18 17:58 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-07-26 10:18 - 2014-07-26 10:18 - 00002989 _____ () C:\Windows\avmacc1.log 2014-07-26 10:18 - 2014-07-26 10:14 - 169953925 _____ (Emsisoft GmbH ) C:\Users\Freddes\Downloads\EmsisoftAntiMalwareSetup_solvusoft.exe.part 2014-07-26 10:18 - 2014-05-02 14:11 - 00012728 _____ () C:\Windows\avmacc.log 2014-07-26 10:11 - 2014-07-26 10:11 - 03894696 _____ (solvusoft Corporation ) C:\Users\Freddes\Downloads\Athurx.sys-Reparaturprogramm-WinThruster.exe 2014-07-26 10:06 - 2014-07-26 10:06 - 00266288 _____ () C:\Windows\Minidump\072614-5740-01.dmp 2014-07-26 10:05 - 2014-07-26 10:05 - 00266288 _____ () C:\Windows\Minidump\072614-5834-01.dmp 2014-07-26 09:54 - 2014-07-26 09:54 - 00266320 _____ () C:\Windows\Minidump\072614-12807-01.dmp 2014-07-26 09:51 - 2014-07-26 09:51 - 00165201 _____ () C:\Users\Freddes\Downloads\intel-core-series-win7gadgets-com.zip 2014-07-26 09:46 - 2014-07-26 09:46 - 00262144 _____ () C:\Windows\Minidump\072614-13088-01.dmp 2014-07-26 09:39 - 2014-07-26 09:39 - 00266288 _____ () C:\Windows\Minidump\072614-16286-01.dmp 2014-07-26 09:38 - 2014-07-26 09:38 - 00266320 _____ () C:\Windows\Minidump\072614-5943-01.dmp 2014-07-25 16:58 - 2014-07-25 16:58 - 00002075 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop Lightroom 5.5 64-Bit.lnk 2014-07-25 16:58 - 2014-05-08 19:02 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-07-25 16:57 - 2014-05-08 18:20 - 00000000 ____D () C:\ProgramData\Adobe 2014-07-25 16:38 - 2014-07-25 16:38 - 00001040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2014.lnk 2014-07-25 16:00 - 2014-07-25 16:00 - 00266320 _____ () C:\Windows\Minidump\072514-5740-01.dmp 2014-07-25 15:57 - 2014-07-25 15:57 - 00266288 _____ () C:\Windows\Minidump\072514-6006-01.dmp 2014-07-25 15:55 - 2014-07-25 15:55 - 00266352 _____ () C:\Windows\Minidump\072514-16161-01.dmp 2014-07-25 15:54 - 2014-07-25 15:54 - 00266320 _____ () C:\Windows\Minidump\072514-5818-01.dmp 2014-07-25 15:54 - 2014-07-25 15:49 - 00000000 ___HD () C:\Windows\Metro Tile Skin Pack 2014-07-25 15:49 - 2014-07-24 15:19 - 02755072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll.tmp 2014-07-25 15:49 - 2014-07-24 15:19 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll.tmp 2014-07-25 15:49 - 2014-07-24 15:19 - 00000000 ____D () C:\Program Files (x86)\Skin Pack 2014-07-25 15:49 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Cursors 2014-07-25 15:47 - 2014-05-08 18:20 - 00001313 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2014-07-25 10:44 - 2014-07-25 10:44 - 00000000 ____D () C:\Users\Freddes\Desktop\Only C4D Dateien 2014-07-25 10:44 - 2014-07-25 10:41 - 00000000 ____D () C:\Users\Freddes\Desktop\Alles rund um AE und CO 2014-07-25 10:38 - 2014-07-25 10:38 - 00000856 _____ () C:\Users\Freddes\AppData\Local\recently-used.xbel 2014-07-24 20:17 - 2014-06-03 19:40 - 00042040 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-07-24 18:25 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar 2014-07-24 18:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz 2014-07-24 17:39 - 2014-07-24 17:39 - 00000000 ____D () C:\Users\Freddes\AppData\Local\IsolatedStorage 2014-07-24 17:39 - 2014-07-24 17:39 - 00000000 ____D () C:\Users\Freddes\AppData\Local\Blue_Onion_Software 2014-07-24 17:39 - 2014-04-29 14:10 - 00000000 ____D () C:\Users\Freddes\AppData\Local\VirtualStore 2014-07-24 17:14 - 2014-05-12 19:41 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-24 17:14 - 2014-05-12 19:41 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-24 15:54 - 2014-05-12 19:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-24 15:19 - 2014-07-24 15:19 - 00003892 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA 2014-07-24 15:19 - 2014-07-24 15:19 - 00003638 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore 2014-07-24 15:19 - 2014-07-24 15:19 - 00000000 ____D () C:\Users\Freddes\AppData\Local\globalUpdate 2014-07-24 15:19 - 2014-07-24 15:19 - 00000000 ____D () C:\Program Files (x86)\PHD-V1.4 2014-07-24 15:19 - 2014-07-24 15:19 - 00000000 ____D () C:\Program Files (x86)\globalUpdate 2014-07-24 15:19 - 2009-07-14 05:20 - 00000000 __RSD () C:\Windows\Media 2014-07-24 15:18 - 2014-07-24 15:14 - 112847547 _____ () C:\Users\Freddes\Downloads\Pack12_lion.zip 2014-07-24 15:14 - 2014-07-24 15:14 - 00826192 _____ (Chip Digital GmbH) C:\Users\Freddes\Downloads\Pack12_lion - CHIP-Installer.exe 2014-07-24 08:17 - 2014-04-29 15:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-07-24 08:17 - 2014-04-29 15:08 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-07-24 08:11 - 2010-11-21 09:17 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-24 08:11 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-07-24 08:11 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-07-23 20:33 - 2014-04-29 14:41 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-23 20:32 - 2014-04-29 14:41 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-07-23 19:15 - 2014-07-23 19:15 - 00000000 ____D () C:\Bali 2014 2014-07-23 16:31 - 2014-07-23 16:31 - 00001118 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder CC 2014.lnk 2014-07-23 16:04 - 2014-07-23 16:04 - 00001106 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2014.lnk 2014-07-23 12:26 - 2014-07-23 12:26 - 00001222 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CC 2014.lnk 2014-07-23 12:09 - 2014-06-28 23:58 - 00000000 ____D () C:\Users\Freddes\AppData\Roaming\GoPro 2014-07-23 11:51 - 2014-07-23 11:51 - 00000000 ___RD () C:\Users\Freddes\Creative Cloud Files 2014-07-23 11:44 - 2014-07-23 11:44 - 00614792 _____ (Adobe Systems Incorporated) C:\Users\Freddes\Downloads\CreativeCloudSet-Up(1).exe 2014-07-23 11:37 - 2014-05-08 19:40 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe 2014-07-23 09:36 - 2014-04-29 14:39 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-07-23 09:36 - 2014-04-29 14:38 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-07-23 09:36 - 2014-04-29 14:38 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-23 08:07 - 2014-07-23 08:07 - 00000000 ____D () C:\ProgramData\Riot Games Some content of TEMP: ==================== C:\Users\Freddes\AppData\Local\Temp\avgnt.exe C:\Users\Freddes\AppData\Local\Temp\avm_fritz!wlan_usb_stick_build_100906.exe C:\Users\Freddes\AppData\Local\Temp\dsp_ipp.dll C:\Users\Freddes\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\Freddes\AppData\Local\Temp\FreemakeVideoConverter_4.1.4.0.exe C:\Users\Freddes\AppData\Local\Temp\Metro_Tile_Skin_Pack_1.0-X86.exe C:\Users\Freddes\AppData\Local\Temp\OptimizerPro.exe C:\Users\Freddes\AppData\Local\Temp\Quarantine.exe C:\Users\Freddes\AppData\Local\Temp\sdanircmdc.exe C:\Users\Freddes\AppData\Local\Temp\sdapskill.exe C:\Users\Freddes\AppData\Local\Temp\sdaspwn.exe C:\Users\Freddes\AppData\Local\Temp\setup_de.exe C:\Users\Freddes\AppData\Local\Temp\smt_omiga-plus.exe C:\Users\Freddes\AppData\Local\Temp\sweetpage294wld_n2.exe C:\Users\Freddes\AppData\Local\Temp\swt-win32-3349.dll C:\Users\Freddes\AppData\Local\Temp\trolatuntSetup.exe C:\Users\Freddes\AppData\Local\Temp\_is2F1B.exe C:\Users\Freddes\AppData\Local\Temp\_is40F6.exe C:\Users\Freddes\AppData\Local\Temp\_isC0C1.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe [2014-07-25 15:49] - [2011-02-25 08:19] - 2700288 ____A (Microsoft Corporation) 4D58984313AD9E70E8757EA2CDF60C9E C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-29 18:08 ==================== End Of Log ============================ Zitat:
Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-08-2014 Ran by Freddes at 2014-08-05 13:36:41 Running from C:\Users\Freddes\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe After Effects CC (HKLM-x32\...\{317243C1-6580-4F43-AED7-37D4438C3DD5}) (Version: 12.2.1 - Adobe Systems Incorporated) Adobe After Effects CC 2014 (HKLM-x32\...\{2B22C750-5C3B-4738-B621-BA786AC7A494}) (Version: 13.0.0 - Adobe Systems Incorporated) Adobe Bridge CC (64 Bit) (HKLM-x32\...\{359F8007-6486-429C-A8C5-D67F6897C88C}) (Version: 6.0 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.7.1.418 - Adobe Systems Incorporated) Adobe Dreamweaver CC (HKLM-x32\...\{00E094E1-A852-11E2-803D-ACEA632352B4}) (Version: 13 - Adobe Systems Incorporated) Adobe Edge Animate CC (HKLM-x32\...\{1C5E96F4-6F15-4A96-BF62-9D1F60B44FF1}) (Version: 3.0 - Adobe Systems Incorporated) Adobe Edge Code CC (HKLM-x32\...\{641F742F-1497-51B4-F481-1037096A90A0}) (Version: 0.97 - Adobe Systems Incorporated) Adobe Edge Inspect CC (HKLM-x32\...\{67D22EA0-4601-4450-9C99-042DABB0A315}) (Version: 1.0.408 - Adobe Systems Incorporated) Adobe Edge Reflow CC Preview (HKLM\...\{8D1611B5-3236-40F9-A2B5-144CAAD2F41C}) (Version: 0.42.15851 - Adobe Systems Incorporated) Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Illustrator CC 2014 (HKLM-x32\...\{2B4B4082-8043-4646-8334-B0A29E641211}) (Version: 18.0 - Adobe Systems Incorporated) Adobe Media Encoder CC 2014 (HKLM-x32\...\{663DEEEF-EF34-4DCB-8687-73A7AA146E02}) (Version: 8.0.0 - Adobe Systems Incorporated) Adobe Photoshop CC (HKLM-x32\...\{2D99B50E-431D-4AA8-85C1-172A6F8BCF09}) (Version: 14.0 - Adobe Systems Incorporated) Adobe Photoshop CC 2014 (HKLM-x32\...\{D7A4F897-B20A-42D0-862D-CB5F6DB7391D}) (Version: 15.0 - Adobe Systems Incorporated) Adobe Photoshop Lightroom 5.5 64-bit (HKLM\...\{19BBD0F3-7A31-480D-8A23-19AE28035E9C}) (Version: 5.5.0 - Adobe Systems Incorporated) Adobe Premiere Pro CC 2014 (HKLM-x32\...\{07BE616F-9E42-4C90-AF4F-0F32A5B088E7}) (Version: 8.0.1 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Aerena (HKLM-x32\...\Steam App 247830) (Version: - Cliffhanger Productions) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) Avira (HKLM-x32\...\{142be4a8-895b-4ed9-b1ff-11c76357e3df}) (Version: 1.1.17.31000 - Avira Operations GmbH & Co. KG) Avira (x32 Version: 1.1.17.31000 - Avira Operations GmbH & Co. KG) Hidden Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.5.464 - Avira) AVM FRITZ!WLAN (HKLM-x32\...\AVMWLANCLI) (Version: 1.2.0.0 - AVM Berlin) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Belkin F6D4050 Enhanced Wireless USB Adapter (HKLM-x32\...\InstallShield_{B97A0C89-29C0-4682-902C-364109A9857C}) (Version: 2.0.0.08 - Belkin) Belkin F6D4050 Enhanced Wireless USB Adapter (x32 Version: 2.0.0.08 - Belkin) Hidden Belkin USB Wireless Adapter (HKLM-x32\...\InstallShield_{549CE1BD-88E4-4C5E-BF75-B155624714CC}) (Version: 1.0.0.12 - Belkin) Belkin USB Wireless Adapter (x32 Version: 1.0.0.12 - Belkin) Hidden Blender (HKLM\...\Blender) (Version: 2.70a - Blender Foundation) CINEMA 4D Student 15.057 (HKLM\...\MAXON5E326C3C) (Version: 15.057 - MAXON Computer GmbH) Color Suite v11.1.0 (HKLM-x32\...\{99487911-8011-42BC-B594-8B02BFD32B1D}_is1) (Version: 11.1.0 - Red Giant, LLC) Crazybump (remove only) (HKLM-x32\...\Crazybump) (Version: - ) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Druckerdeinstallation für EPSON SX440 Series (HKLM\...\EPSON SX440 Series) (Version: - SEIKO EPSON Corporation) Dxtory version 2.0.126 (HKLM-x32\...\Dxtory2.0_is1) (Version: 2.0.126 - ExKode Co. Ltd.) ffdshow x64 v1.3.4500 [2013-01-06] (HKLM\...\ffdshow64_is1) (Version: 1.3.4500.0 - ) FL Studio 11 (HKLM-x32\...\FL Studio 11) (Version: - Image-Line) Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 36.0.1985.125 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden GoPro Studio 2.0.1 (HKLM-x32\...\GoPro Studio) (Version: 2.0.1 - WoodmanLabs Inc. d.b.a. GoPro) Gotham City Impostors: Free To Play (HKLM-x32\...\Steam App 206210) (Version: - Monolith Productions, Inc.) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Intel(R) Network Connections 18.5.54.0 (HKLM\...\PROSetDX) (Version: 18.5.54.0 - Intel) Intel(R) Network Connections 18.5.54.0 (Version: 18.5.54.0 - Intel) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.18.10.3272 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation) Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217055FF}) (Version: 7.0.600 - Oracle) Java 8 Update 5 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418005FF}) (Version: 8.0.50 - Oracle Corporation) Java Auto Updater (x32 Version: 2.8.05.13 - Oracle, Inc.) Hidden League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden LOLReplay (HKLM-x32\...\LOLReplay) (Version: 0.8.7.4 - www.leaguereplays.com) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{4FFA2088-8317-3B14-93CD-4C699DB37843}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Motorola Device Manager (HKLM-x32\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.4.5 - Motorola Mobility) Motorola Device Software Update (x32 Version: 13.09.3001 - Motorola Mobility) Hidden Motorola Mobile Drivers Installation 6.3.0 (HKLM\...\{759E6A2F-1F01-45EF-A0C4-22F1B56CB975}) (Version: 6.3.0 - Motorola Mobility LLC) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 31.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 de)) (Version: 31.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NETGEAR WNA1100 wireless USB 2.0 driver (HKLM-x32\...\{F1D34C1C-9C2A-4932-BE14-7B641A4D53E9}) (Version: 1.0.0.0 - NETGEAR) Neverwinter (HKLM-x32\...\Steam App 109600) (Version: - Cryptic Studios) OpenOffice 4.1.0 (HKLM-x32\...\{E19483E2-6C18-494D-A307-D4498BCFD2C7}) (Version: 4.10.9764 - Apache Software Foundation) PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden PHD-V1.4 (HKLM-x32\...\PHD-V1.4) (Version: 1.34.7.1 - PHD) Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.13 - Razer Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7004 - Realtek Semiconductor Corp.) Red Giant Link (HKLM-x32\...\{10F82E5B-B611-4C65-8F29-666A9EC5680A}_is1) (Version: 1.8.99.0 - Red Giant, LLC) ROCCAT Kone XTD Mouse Driver (HKLM-x32\...\{7133137D-DF48-4522-AD88-13C82B7D0A63}) (Version: - Roccat GmbH) SHARKOON Skiller (HKLM-x32\...\{91C25547-9534-41A5-823A-1E54BA16EA3F}) (Version: 1.00.0000 - ) Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.) Sony RAW Driver (HKLM-x32\...\{166FCF01-AC98-4288-A01C-90BEB808C059}) (Version: 2.0.00.08130 - Sony Corporation) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Stronghold 2 (HKLM-x32\...\{16D2C649-CBA8-44EE-B730-12584667D487}) (Version: 1.40.1000 - Firefly Studios) Stronghold Legends (HKLM-x32\...\{66A405D2-BA14-4594-BF36-B3B544F0754E}) (Version: 1.20.0000 - Firefly Studios) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH) Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic) The Plan (HKLM-x32\...\Steam App 250600) (Version: - Krillbite Studio) Toribash (HKLM-x32\...\Steam App 248570) (Version: - Nabi Studios) Trapcode Suite 64-bit (HKLM-x32\...\InstallShield_{2F50AD39-44F4-48CB-94E4-5C5AEFB0DAC6}) (Version: 12.1.4 - Red Giant) Trapcode Suite 64-bit (Version: 12.1.4 - Red Giant) Hidden VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden VirtualDJ 8 (HKLM-x32\...\{9ADBBA93-4625-4898-BB0D-BCE7EA9F8B4A}) (Version: 8.0.0 - Atomix Productions) VisualRoute (HKLM-x32\...\VisualRoute) (Version: - ) Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices (03/07/2012 ) (HKLM\...\0B624A43DD66DBF5CF3EDFA9741A364E688062A4) (Version: 03/07/2012 - GoPro) Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden WindowsProtectManger20.0.0.401 (HKLM-x32\...\WindowsProtectManger) (Version: 20.0.0.401 - Fuyu LIMITED) <==== ATTENTION WinRAR 5.10 beta 3 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.10.3 - win.rar GmbH) WizTree v1.07 (HKLM-x32\...\WizTree_is1) (Version: - Antibody Software) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2519504684-3732338342-1872333262-1000_Classes\CLSID\{07474513-7B58-45c7-B3E6-13A3669B1AFD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2519504684-3732338342-1872333262-1000_Classes\CLSID\{D45F043D-F17F-4e8a-8435-70971D9FA46D}\InprocServer32 -> C:\Program Files\Blender Foundation\Blender\BlendThumb64.dll () ==================== Restore Points ========================= 01-08-2014 15:22:55 Windows Update 01-08-2014 19:38:49 Installed Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 03-08-2014 19:39:52 Installed Trapcode Suite 64-bit 05-08-2014 10:46:22 Installiert Belkin F6D4050 Enhanced Wireless USB Adapter ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {3ED6A820-2FE2-49E9-99E5-93D75F664502} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {52F54E16-F81C-4560-BD71-B2FECFD8506B} - System32\Tasks\Red Giant Link => C:\Program Files (x86)\Red Giant Link\Red Giant Link.exe [2014-05-22] () Task: {60FAE772-6D4C-4CA7-B55C-EDE839E7FDCF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-05] (Google Inc.) Task: {7F8DECD6-3BF2-4644-9631-3EAA1DC2872A} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] () Task: {8CA8E1D1-17B6-426A-8F1A-062894E7767B} - System32\Tasks\AdobeAAMUpdater-1.0-Freddes-PC-Freddes => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27] (Adobe Systems Incorporated) Task: {9BF7E6F1-4250-4706-87C4-BED6CF5A0525} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-07-24] (globalUpdate) Task: {9D01270D-9495-4CFB-A3D7-B9D434CB8FF9} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-07-24] (globalUpdate) Task: {B1A54DB7-8212-4BA9-9260-633A2BDB0A7C} - System32\Tasks\{91CAC58A-E827-42D4-A424-A449EE219189} => Firefox.exe hxxp://ui.skype.com/ui/0/6.14.0.104/de/go/help.faq.installer?source=lightinstaller&LastError=1618 Task: {BD336D73-2971-4639-982A-4D9D0217D8A1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-23] (Adobe Systems Incorporated) Task: {C2431182-4C06-4228-B279-36AC1EDB8AD7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-05] (Google Inc.) Task: {E88DA620-64CC-4BBE-964A-BFC3DDB515C3} - System32\Tasks\3a64a1ea-fe2e-485a-86ca-ee4c7f76d7c0-5_user => C:\Program Files (x86)\PHD-V1.4\3a64a1ea-fe2e-485a-86ca-ee4c7f76d7c0-5.exe <==== ATTENTION Task: {EA3981A3-58D4-4D70-8402-DE492C4C44D7} - System32\Tasks\{BD56C91A-512D-4283-9B3F-2A33EFE3AE85} => Firefox.exe hxxp://ui.skype.com/ui/0/6.14.0.104/de/go/help.faq.installer?source=lightinstaller&LastError=1618 Task: {EF4B70EC-37BB-4C27-B0B1-D7450FE61F68} - System32\Tasks\Motorola Device Manager Engine => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] () Task: {FA2B4086-C3C8-407D-B441-437A47B41098} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] () Task: C:\Windows\Tasks\3a64a1ea-fe2e-485a-86ca-ee4c7f76d7c0-5_user.job => C:\Program Files (x86)\PHD-V1.4\3a64a1ea-fe2e-485a-86ca-ee4c7f76d7c0-5.exe <==== ATTENTION Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-07-16 11:06 - 2014-07-16 11:06 - 00672416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll 2014-07-16 11:05 - 2014-07-16 11:05 - 05558432 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe 2013-10-31 17:05 - 2013-10-31 17:05 - 00172032 _____ () C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\css_core.dll 2014-07-07 13:53 - 2014-07-07 13:53 - 00137296 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.NativeCore.dll 2014-07-07 13:52 - 2014-07-07 13:52 - 00065616 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.AvConnectorNative.dll 2014-04-29 15:12 - 2014-07-07 13:53 - 00049744 _____ () C:\Users\Freddes\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll 2014-07-03 06:45 - 2014-07-03 06:45 - 32733056 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libcef.dll 2014-05-12 06:56 - 2012-06-17 11:20 - 00061440 _____ () C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\hiddriver.dll 2014-07-03 06:45 - 2014-07-03 06:45 - 00742784 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libglesv2.dll 2014-07-03 06:45 - 2014-07-03 06:45 - 00136576 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libegl.dll 2014-07-30 19:29 - 2014-07-30 19:29 - 03800688 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-07-23 09:36 - 2014-07-23 09:36 - 17029808 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ==================== Faulty Device Manager Devices ============= Name: SM-Bus-Controller Description: SM-Bus-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (08/05/2014 00:53:57 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten. Error: (08/05/2014 00:49:55 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/05/2014 11:11:00 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten. Error: (08/05/2014 11:08:45 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/04/2014 09:52:49 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Adobe Premiere Pro.exe, Version 8.0.1.21 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1b90 Startzeit: 01cfb01d7d303a43 Endzeit: 9 Anwendungspfad: C:\Program Files\Adobe\Adobe Premiere Pro CC 2014\Adobe Premiere Pro.exe Berichts-ID: e3efce74-1c10-11e4-a198-d050990f2161 Error: (08/04/2014 09:51:30 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Adobe Premiere Pro.exe, Version 8.0.1.21 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 19fc Startzeit: 01cfb01d5ef0411f Endzeit: 8 Anwendungspfad: C:\Program Files\Adobe\Adobe Premiere Pro CC 2014\Adobe Premiere Pro.exe Berichts-ID: b9911612-1c10-11e4-a198-d050990f2161 Error: (08/04/2014 09:50:39 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Adobe Premiere Pro.exe, Version 8.0.1.21 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 18f4 Startzeit: 01cfb01d3da7425b Endzeit: 10 Anwendungspfad: C:\Program Files\Adobe\Adobe Premiere Pro CC 2014\Adobe Premiere Pro.exe Berichts-ID: 9a1def9e-1c10-11e4-a198-d050990f2161 Error: (08/04/2014 09:17:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: fraps.exe, Version: 3.5.99.15618, Zeitstempel: 0x512c56a2 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea8e7 Ausnahmecode: 0xc0000374 Fehleroffset: 0x000ce753 ID des fehlerhaften Prozesses: 0x1210 Startzeit der fehlerhaften Anwendung: 0xfraps.exe0 Pfad der fehlerhaften Anwendung: fraps.exe1 Pfad des fehlerhaften Moduls: fraps.exe2 Berichtskennung: fraps.exe3 Error: (08/04/2014 08:35:33 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten. Error: (08/04/2014 08:31:31 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (08/05/2014 00:48:59 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (08/05/2014 11:07:50 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (08/04/2014 11:32:33 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (08/04/2014 08:30:36 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (08/04/2014 06:04:23 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (08/04/2014 02:35:50 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (08/04/2014 10:16:54 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (08/03/2014 09:01:29 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (08/03/2014 11:47:15 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (08/02/2014 10:30:25 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Microsoft Office Sessions: ========================= Error: (08/05/2014 00:53:57 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: 1600000000574D0000574D0000980B0000 Error: (08/05/2014 00:49:55 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/05/2014 11:11:00 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: 1600000000574D0000574D0000980B0000 Error: (08/05/2014 11:08:45 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/04/2014 09:52:49 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Adobe Premiere Pro.exe8.0.1.211b9001cfb01d7d303a439C:\Program Files\Adobe\Adobe Premiere Pro CC 2014\Adobe Premiere Pro.exee3efce74-1c10-11e4-a198-d050990f2161 Error: (08/04/2014 09:51:30 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Adobe Premiere Pro.exe8.0.1.2119fc01cfb01d5ef0411f8C:\Program Files\Adobe\Adobe Premiere Pro CC 2014\Adobe Premiere Pro.exeb9911612-1c10-11e4-a198-d050990f2161 Error: (08/04/2014 09:50:39 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Adobe Premiere Pro.exe8.0.1.2118f401cfb01d3da7425b10C:\Program Files\Adobe\Adobe Premiere Pro CC 2014\Adobe Premiere Pro.exe9a1def9e-1c10-11e4-a198-d050990f2161 Error: (08/04/2014 09:17:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: fraps.exe3.5.99.15618512c56a2ntdll.dll6.1.7601.18247521ea8e7c0000374000ce753121001cfb01888348b24C:\Fraps\fraps.exeC:\Windows\SysWOW64\ntdll.dllff6e7e9f-1c0b-11e4-a198-d050990f2161 Error: (08/04/2014 08:35:33 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) Description: 1600000000574D0000574D0000980B0000 Error: (08/04/2014 08:31:31 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 CodeIntegrity Errors: =================================== Date: 2014-07-27 13:23:18.183 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\jswpslwfx.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-27 13:23:18.167 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\jswpslwfx.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-27 13:20:56.257 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\jswpslwfx.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-27 13:20:56.227 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\jswpslwfx.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-27 12:55:08.292 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\jswpslwfx.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-27 12:55:08.276 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\jswpslwfx.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-27 12:49:11.450 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\jswpslwfx.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-27 12:49:11.427 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\jswpslwfx.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-27 12:15:14.198 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\jswpslwfx.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-07-27 12:15:14.167 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\jswpslwfx.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 36% Total physical RAM: 7845.08 MB Available physical RAM: 4987.43 MB Total Pagefile: 15688.34 MB Available Pagefile: 12590.94 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:223.47 GB) (Free:48.07 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 224 GB) (Disk ID: 96920C7B) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=223 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
05.08.2014, 18:18 | #4 |
/// the machine /// TB-Ausbilder | Wlan Download Geschwidnigkeit/Ping schwankt extrem!So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Wlan Download Geschwidnigkeit/Ping schwankt extrem! |
brauche, brauche hilfe, download, downloadgeschwindigkeit, dsl, ebenfalls, einfach, extrem, extreme, fritz, fritz box, hilfe!, hohe pings, lange, langsam, meldung, monate, netgear, nicht mehr, niedrige downloadgeschwindigkeit, schwankt, stick, unterbrechungen, wlan, wlan abbruch, woche, wochen, ziemlich, ähnliches |