|
Log-Analyse und Auswertung: Laptop/Langsam Win7 32-BitWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
10.08.2014, 20:48 | #1 |
| Laptop/Langsam Win7 32-Bit Also,Seit einiger Zeit geht mein Laptop extrem langsam. Bzw. Die Programme öffnen sich sehr langsam :/ Der Laptop braucht sehr lange bis er hochfahrt[Was vorher nie so war] Ich habe es schon nach Viren scannen lassen doch,Es wurden keine Probleme angezeigt. Habe; Windows 7 32-Bit Über jede Hilfreiche Antwort würde ich mich freuen. Lg,HMP12345 |
10.08.2014, 21:33 | #2 |
/// the machine /// TB-Ausbilder | Laptop/Langsam Win7 32-Bit hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
11.08.2014, 17:04 | #3 |
| Laptop/Langsam Win7 32-Bit Hier ist die "FRST".
__________________FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:10-08-2014 01 Ran by User (administrator) on LAPTOP on 11-08-2014 00:24:04 Running from C:\Users\User\Downloads Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: Deutsch (Deutschland) Internet Explorer Version 8 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (Elex do Brasil Participações Ltda) C:\Program Files\iSafe\iSafeSvc.exe (Elex do Brasil Participações Ltda) C:\Program Files\iSafe\iSafeSvc2.exe (AMD) C:\Windows\System32\atieclxx.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (AVAST Software) C:\Program Files\CleanMaster\AvastSvc.exe (Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE (LSI Corporation) C:\Program Files\LSI SoftModem\agrsmsvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Intel Corporation) C:\Program Files\Intel\AMT\LMS.exe (QUALCOMM, Inc.) C:\QUALCOMM\QDLService\QDLService.exe (Razer Inc.) C:\Program Files\Razer\Razer Game Booster\RzKLService.exe (Intel Corporation) C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe (Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (AVAST Software) C:\Program Files\CleanMaster\avastui.exe (Razer Inc.) C:\Program Files\Razer\Razer Game Booster\main.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe () C:\Program Files\iSafe\ipcdl.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) Winlogon\Notify\ScCertProp: wlnotify.dll [X] HKU\S-1-5-21-69058354-942602840-1863478806-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-69058354-942602840-1863478806-1000\...\MountPoints2: {85f1afa1-14e0-11e4-ac2a-00271371f8d4} - E:\setup.exe ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\CleanMaster\ashShell.dll (AVAST Software) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login. HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xDAC1D76B6B8DCF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de SearchScopes: HKLM - DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKLM - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} BHO: No Name -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> No File BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\CleanMaster\aswWebRepIE.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=10.60.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.60.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\CleanMaster\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\CleanMaster\WebRep\FF [2014-08-08] FF HKCU\...\Firefox\Extensions: [{4BA736A9-CA27-2837-5BA4-45A1DF8211ED}] - C:\Program Files\-Re_markit\174.xpi Chrome: ======= CHR HomePage: hxxp://www.google.com CHR StartupUrls: "hxxp://www.google.com" CHR DefaultSearchKeyword: google CHR DefaultNewTabURL: CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-22] CHR Extension: (Click&Clean App) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2014-08-05] CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\CleanMaster\WebRep\Chrome\aswWebRepChrome.crx [2014-08-08] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AgereModemAudio; C:\Program Files\LSI SoftModem\agrsmsvc.exe [14336 2009-03-27] (LSI Corporation) R2 avast! Antivirus; C:\Program Files\CleanMaster\AvastSvc.exe [50344 2014-08-08] (AVAST Software) R2 iSafeService; C:\Program Files\iSafe\iSafeSvc.exe [118048 2014-07-16] (Elex do Brasil Participações Ltda) R2 QDLService; C:\QUALCOMM\QDLService\QDLService.exe [345336 2010-03-15] (QUALCOMM, Inc.) R2 RzKLService; C:\Program Files\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.) R2 UNS; C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe [2058776 2009-07-15] (Intel Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 amdhub30; C:\Windows\system32\drivers\amdhub30.sys [82560 2012-01-04] (Advanced Micro Devices, INC.) S3 amdxhc; C:\Windows\system32\drivers\amdxhc.sys [173184 2012-01-04] (Advanced Micro Devices, INC.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-08-08] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-08-08] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-08-08] (AVAST Software) R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-08-08] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-08-08] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-08-08] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-08-08] (AVAST Software) R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-08-08] () R3 clwvd; C:\Windows\System32\DRIVERS\clwvd.sys [29168 2010-07-30] (Windows (R) Win 7 DDK provider) R1 iSafeKrnl; C:\Program Files\iSafe\iSafeKrnl.sys [214592 2014-07-16] (Elex do Brasil Participações Ltda) R1 iSafeKrnlKit; C:\Program Files\iSafe\iSafeKrnlKit.sys [68288 2014-07-16] (Elex do Brasil Participações Ltda) R1 iSafeKrnlR3; C:\Program Files\iSafe\iSafeKrnlR3.sys [37696 2014-07-16] (Elex do Brasil Participações Ltda) R1 iSafeNetFilter; C:\Program Files\iSafe\iSafeNetFilter.sys [40280 2014-07-09] (Elex do Brasil Participações Ltda) R3 NETwNs32; C:\Windows\System32\DRIVERS\NETwNs32.sys [7523840 2012-01-23] (Intel Corporation) S3 nusb3hub; C:\Windows\system32\drivers\nusb3hub.sys [60800 2010-07-27] (Renesas Electronics Corporation) S3 nusb3xhc; C:\Windows\system32\drivers\nusb3xhc.sys [140672 2010-07-27] (Renesas Electronics Corporation) S3 QCFilterhp; C:\Windows\System32\DRIVERS\qcfilterhp.sys [7168 2010-03-15] (QUALCOMM Incorporated) S3 qcusbnethp; C:\Windows\System32\DRIVERS\qcusbnethp.sys [212992 2010-03-15] (QUALCOMM Incorporated) S3 qcusbserhp; C:\Windows\System32\DRIVERS\qcusbserhp.sys [112128 2010-03-15] (QUALCOMM Incorporated) S3 RICOH SmartCard Reader; C:\Windows\System32\DRIVERS\rismc32.sys [49152 2009-07-20] (RICOH Company, Ltd.) R3 rismc32; C:\Windows\System32\DRIVERS\rismc32.sys [49152 2009-07-20] (RICOH Company, Ltd.) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1805872 2009-07-01] () S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X] S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] S3 iSafeKrnlBoot; \??\system32\DRIVERS\iSafeKrnlBoot.sys [X] S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X] S3 taphss6; system32\DRIVERS\taphss6.sys [X] S3 XDva409; \??\C:\Windows\system32\XDva409.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-11 00:24 - 2014-08-11 00:24 - 00010556 _____ () C:\Users\User\Downloads\FRST.txt 2014-08-11 00:23 - 2014-08-11 00:24 - 00000000 ____D () C:\FRST 2014-08-11 00:23 - 2014-08-11 00:23 - 01091072 _____ (Farbar) C:\Users\User\Downloads\FRST.exe 2014-08-10 21:54 - 2014-08-10 21:54 - 00000029 _____ () C:\Users\User\Desktop\Trojaner-Board.de.txt 2014-08-10 21:22 - 2014-08-10 21:59 - 00000000 ____D () C:\Users\User\C4E3531677F14EBD9785C72E55B1D219.TMP 2014-08-10 21:18 - 2014-08-10 21:18 - 00000000 ____D () C:\Users\User\AppData\Roaming\iSafe 2014-08-08 20:18 - 2014-08-08 20:18 - 00578240 _____ () C:\Users\User\Downloads\Elsword__7934_il2201385.exe 2014-08-08 20:06 - 2014-08-08 20:06 - 04511744 _____ () C:\Users\User\Downloads\ElswordundNostaleHack33.exe 2014-08-08 19:04 - 2014-08-08 19:05 - 37380304 _____ () C:\Users\User\Downloads\DE.data036.de2.title.pet.kom 2014-08-08 18:40 - 2014-08-10 21:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast 2014-08-08 18:40 - 2014-08-08 18:40 - 00779536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00414520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00276432 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-08-08 18:40 - 2014-08-08 18:40 - 00192352 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00071944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00001970 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-08-08 18:40 - 2014-08-08 18:40 - 00000000 ____D () C:\Users\User\AppData\Roaming\AVAST Software 2014-08-08 18:38 - 2014-08-10 21:59 - 00000000 ____D () C:\Program Files\CleanMaster 2014-08-08 18:35 - 2014-08-08 18:36 - 91906368 _____ (AVAST Software) C:\Users\User\Downloads\avast_free_antivirus_setup_9.0.2021.exe 2014-08-08 18:32 - 2014-08-08 18:32 - 01399832 _____ () C:\Users\User\Downloads\Elsword-Hack-v.2.79.zip 2014-08-08 15:47 - 2014-08-10 22:00 - 00000336 _____ () C:\Windows\setupact.log 2014-08-08 15:47 - 2014-08-10 21:26 - 00033200 _____ () C:\Windows\PFRO.log 2014-08-08 15:47 - 2014-08-08 15:47 - 00000000 _____ () C:\Windows\setuperr.log 2014-08-07 22:11 - 2014-08-10 21:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC 2014-08-07 22:09 - 2014-08-07 22:09 - 00000000 __SHD () C:\Windows\system32\AI_RecycleBin 2014-08-07 22:08 - 2014-08-07 22:10 - 12920728 _____ (Elex do Brasil Participações Ltda) C:\Users\User\Downloads\yet_another_cleaner_sk.exe 2014-08-07 22:06 - 2014-08-07 22:06 - 01016261 _____ (Thisisu) C:\Users\User\Downloads\JRT (1).exe 2014-08-07 21:04 - 2014-08-07 21:04 - 00007605 _____ () C:\Users\User\AppData\Local\Resmon.ResmonCfg 2014-08-05 22:58 - 2014-08-05 22:58 - 00000000 ____D () C:\Users\User\Downloads\Gameforge Live 2014-08-05 22:12 - 2014-08-05 22:12 - 00000000 ____D () C:\Users\User\AppData\Local\Macromedia 2014-08-05 22:09 - 2014-08-05 22:10 - 00000000 ____D () C:\Users\User\AppData\Local\Mozilla 2014-08-05 22:09 - 2014-08-05 22:09 - 00000000 ____D () C:\ProgramData\Mozilla 2014-08-05 22:01 - 2014-08-05 22:01 - 00244408 _____ () C:\Users\User\Downloads\Firefox Setup Stub 31.0.exe 2014-08-05 21:40 - 2014-08-05 21:40 - 02112568 _____ () C:\Users\User\Downloads\va3375_82c1053f41_setup.exe 2014-08-05 19:08 - 2014-08-05 19:08 - 00578240 _____ () C:\Users\User\Downloads\Elsword Hack K Ching And ED Downloader__3687_i1131353387_il869063.exe 2014-08-05 19:06 - 2014-08-05 19:06 - 08435712 _____ () C:\Users\User\Downloads\archpr454_setup_en.msi 2014-08-05 18:39 - 2014-08-05 18:39 - 00585920 _____ (Firseria.-.Installer · sl) C:\Users\User\Downloads\File_installer.exe 2014-08-05 16:04 - 2014-08-07 21:48 - 00000000 ____D () C:\Program Files\AVAST Software 2014-08-05 16:04 - 2014-08-05 16:04 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-08-05 16:03 - 2014-08-07 21:48 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-08-05 16:02 - 2014-08-05 16:03 - 91906368 _____ (AVAST Software) C:\Users\User\Downloads\avast_free_antivirus_setup_9_0_2021.exe 2014-08-05 15:54 - 2014-08-10 21:59 - 00000000 ____D () C:\Windows\ERUNT 2014-08-05 15:54 - 2014-08-05 15:54 - 01016261 _____ (Thisisu) C:\Users\User\Downloads\JRT.exe 2014-08-04 22:06 - 2014-08-04 22:06 - 02355217 _____ () C:\Users\User\Downloads\FreeHideIP-3.9.7.6.Setup.exe 2014-08-04 22:06 - 2014-08-04 22:06 - 02355217 _____ () C:\Users\User\Downloads\FreeHideIP-3.9.7.6.Setup (1).exe 2014-08-04 22:06 - 2014-08-04 22:06 - 00000000 ____D () C:\ProgramData\FreeHideIP 2014-08-04 18:23 - 2014-08-04 18:23 - 00434960 _____ (Company limited) C:\Users\User\Downloads\XZipInstall.exe 2014-08-04 16:48 - 2014-08-04 16:48 - 00274944 _____ () C:\Users\User\Downloads\TheForestCrack__7934_il297835 (1).exe 2014-08-04 16:46 - 2014-08-04 16:46 - 00229368 _____ () C:\Users\User\Downloads\The_Forest___v0_downloader-I4fPSW2ku (2).exe 2014-08-04 16:37 - 2014-08-04 16:37 - 00005564 _____ () C:\Users\User\Documents\dadadada.reg 2014-08-04 16:28 - 2014-08-10 21:59 - 00000000 ____D () C:\Games 2014-08-04 16:14 - 2014-08-04 16:14 - 00274944 _____ () C:\Users\User\Downloads\TheForestCrack__7934_il297835.exe 2014-08-04 16:10 - 2014-08-04 16:10 - 00229368 _____ () C:\Users\User\Downloads\The_Forest___v0_downloader-I4fPSW2ku (1).exe 2014-08-04 16:09 - 2014-08-04 16:09 - 00229368 _____ () C:\Users\User\Downloads\The_Forest___v0_downloader-I4fPSW2ku.exe 2014-08-04 15:46 - 2014-08-04 15:46 - 00000000 ___SH () C:\Users\User\AppData\Local\LumaEmu 2014-08-04 15:26 - 2014-08-10 21:59 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2014-08-04 14:59 - 2014-08-04 14:59 - 00228024 _____ () C:\Users\User\Downloads\Garrys_downloader-I5M2RlngR (1).exe 2014-08-04 14:58 - 2014-08-04 14:58 - 00228008 _____ () C:\Users\User\Downloads\Garrys_downloader-I5M2RlngR.exe 2014-08-04 14:56 - 2014-08-04 14:56 - 01941592 _____ (BitTorrent Inc.) C:\Users\User\Downloads\BitTorrent.exe 2014-08-04 13:06 - 2014-08-10 21:59 - 00000000 ____D () C:\Users\User\AppData\Local\6162 2014-08-04 12:50 - 2014-08-04 12:50 - 00092672 _____ () C:\Users\User\Downloads\ElcoinHack v1.2.exe 2014-08-04 11:46 - 2014-08-10 21:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center 2014-08-04 11:46 - 2014-08-10 21:59 - 00000000 ____D () C:\Program Files\Microsoft Mouse and Keyboard Center 2014-08-04 11:46 - 2014-08-04 11:46 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_point32_01011.Wdf 2014-08-04 11:36 - 2009-09-07 18:00 - 00048128 _____ (REDC) C:\Windows\system32\Drivers\rimmptsk.sys 2014-08-04 11:34 - 2014-08-10 21:59 - 00000000 ____D () C:\Program Files\Common Files\SNP2UVC 2014-08-04 11:34 - 2014-08-04 11:34 - 00000000 ____D () C:\Users\User\AppData\Roaming\InstallShield 2014-08-04 11:34 - 2009-07-01 09:45 - 01805872 _____ () C:\Windows\system32\Drivers\snp2uvc.sys 2014-08-04 11:34 - 2009-07-01 09:45 - 00027184 _____ () C:\Windows\snuvcdsm.exe 2014-08-04 11:34 - 2009-07-01 09:44 - 00195120 _____ ( ) C:\Windows\system32\csnp2uvc.dll 2014-08-04 11:34 - 2009-07-01 09:44 - 00034096 _____ () C:\Windows\system32\Drivers\sncduvc.sys 2014-08-04 11:34 - 2008-10-09 11:29 - 00186920 _____ ( ) C:\Windows\system32\rsnp2uvc.dll 2014-08-04 11:34 - 2006-05-20 02:53 - 00013022 _____ () C:\Windows\snp2uvc.src 2014-08-04 11:34 - 2006-05-20 02:39 - 00015497 _____ () C:\Windows\snp2uvc.ini 2014-08-04 11:33 - 2014-08-10 21:59 - 00000000 ____D () C:\Program Files\DIFX 2014-08-04 11:32 - 2012-01-23 06:43 - 07523840 _____ (Intel Corporation) C:\Windows\system32\Drivers\NETwNs32.sys 2014-08-04 11:32 - 2010-05-18 14:31 - 02760704 _____ (Intel Corporation) C:\Windows\system32\NETwNr32.dll 2014-08-04 11:32 - 2010-05-18 14:29 - 00684032 _____ (Intel Corporation) C:\Windows\system32\NETwNc32.dll 2014-08-04 11:26 - 2014-08-04 11:26 - 00000000 ____D () C:\ProgramData\SonicFocus 2014-08-04 10:51 - 2014-08-04 10:51 - 02938144 _____ (LionSea Software co., ltd ) C:\Users\User\Downloads\setup.exe 2014-08-03 15:32 - 2014-08-10 16:16 - 00000267 _____ () C:\Users\User\Desktop\Animes;.txt 2014-08-03 14:45 - 2014-08-03 14:55 - 00000000 ____D () C:\Windows\Minidump 2014-08-02 16:37 - 2014-08-02 16:37 - 00145928 _____ (ClientConnect) C:\Windows\system32\condt.exe 2014-08-01 03:29 - 2014-08-01 03:29 - 00000000 ____D () C:\Users\User\Documents\Rainmeter 2014-07-31 13:32 - 2014-07-31 13:32 - 00001884 _____ () C:\Users\Public\Desktop\Elsword.lnk 2014-07-31 13:32 - 2014-07-31 13:32 - 00001021 _____ () C:\Users\Public\Desktop\Gameforge Live.lnk 2014-07-31 13:32 - 2014-07-31 13:32 - 00000000 ____D () C:\Users\User\AppData\Local\Gameforge4d 2014-07-31 13:32 - 2014-07-31 13:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live 2014-07-31 09:10 - 2014-05-14 18:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-07-31 09:10 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-07-31 09:10 - 2014-05-14 18:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-07-31 09:10 - 2014-05-14 18:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-07-31 09:10 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-07-31 09:10 - 2014-05-14 18:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-07-31 09:10 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-07-31 09:09 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-07-31 09:09 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-07-29 13:08 - 2014-07-29 13:08 - 00000000 ____D () C:\Windows\0Minidump 2014-07-28 10:36 - 2014-07-28 10:36 - 00000000 ____D () C:\Users\User\AppData\Local\Aeria Games 2014-07-28 10:35 - 2014-07-28 10:35 - 00000000 ____D () C:\ProgramData\Aeria Games 2014-07-28 10:26 - 2014-07-28 10:26 - 00002189 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-07-28 10:26 - 2014-07-28 10:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-07-28 10:25 - 2014-07-28 10:26 - 00000000 ____D () C:\Windows\system32\directx 2014-07-28 10:25 - 2014-07-28 10:25 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-07-28 10:14 - 2014-07-28 10:14 - 00001405 _____ () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-07-28 09:46 - 2014-08-07 22:04 - 00000000 ____D () C:\AeriaGames 2014-07-28 08:59 - 2014-07-31 13:32 - 00000000 ____D () C:\Program Files\GameforgeLive 2014-07-28 06:32 - 2014-07-28 08:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirSnare 2014-07-27 07:48 - 2014-07-27 07:48 - 00000000 ____D () C:\ProgramData\NeXtCoup 2014-07-27 07:46 - 2014-08-11 00:10 - 01059889 _____ () C:\Windows\WindowsUpdate.log 2014-07-27 07:39 - 2014-07-27 07:49 - 00000000 ____D () C:\ProgramData\NextCoiup 2014-07-27 07:38 - 2014-07-27 07:43 - 00000000 ____D () C:\ProgramData\prIciechop 2014-07-27 07:38 - 2014-07-27 07:40 - 00000000 ____D () C:\ProgramData\Adblocker 2014-07-27 07:37 - 2014-07-27 07:52 - 00000000 ____D () C:\ProgramData\TechSmith 2014-07-27 07:37 - 2014-07-27 07:37 - 00001126 _____ () C:\Users\Public\Desktop\Camtasia Studio 8.lnk 2014-07-27 07:37 - 2014-07-27 07:37 - 00000000 ____D () C:\ProgramData\regid.1995-08.com.techsmith 2014-07-27 07:37 - 2014-07-27 07:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith 2014-07-27 07:37 - 2014-07-27 07:37 - 00000000 ____D () C:\Program Files\TechSmith 2014-07-27 07:37 - 2014-07-27 07:37 - 00000000 ____D () C:\Program Files\QuickTime 2014-07-27 07:37 - 2014-07-27 07:37 - 00000000 ____D () C:\Program Files\Common Files\TechSmith Shared 2014-07-27 04:31 - 2014-07-27 04:31 - 00000000 ____D () C:\ProgramData\CODEX 2014-07-27 01:13 - 2014-08-10 21:23 - 00000000 ____D () C:\Program Files\Steam 2014-07-27 01:13 - 2014-07-27 20:48 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-07-27 01:13 - 2014-07-27 01:13 - 00000917 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-07-27 01:13 - 2014-07-27 01:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-07-27 00:53 - 2014-07-27 00:53 - 00000000 ____D () C:\AMD 2014-07-26 23:58 - 2014-07-26 23:58 - 00000000 ____D () C:\ProgramData\SYSTEMAX Software Development 2014-07-26 21:01 - 2014-07-26 21:01 - 00000000 ____D () C:\ProgramData\Steam 2014-07-24 20:19 - 2014-07-24 20:19 - 00000000 ____D () C:\Users\User\AppData\Local\UWebKit151 2014-07-20 03:55 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-07-20 03:55 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-07-20 03:55 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-07-20 03:55 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-07-20 03:55 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-07-20 03:55 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-07-20 03:55 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-07-20 03:55 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-07-20 03:55 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-07-20 03:55 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-07-20 03:55 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-07-20 03:55 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-07-20 03:55 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-07-20 03:55 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-07-20 03:55 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-07-20 03:55 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-07-20 03:55 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-07-20 03:55 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-07-20 03:55 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-07-20 03:55 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-07-20 03:55 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-07-20 03:55 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-07-20 03:55 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-07-20 03:55 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-07-20 03:55 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-07-20 03:55 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-07-20 03:55 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-07-20 03:55 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-07-20 03:55 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-07-20 03:55 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-07-20 03:55 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-07-20 03:55 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-07-20 03:55 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-07-20 03:55 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-07-20 03:55 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-07-20 03:55 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-07-20 03:55 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-07-20 03:55 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-07-20 03:55 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-07-20 03:55 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-07-20 03:55 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-07-20 03:55 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-07-20 03:55 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-07-20 03:55 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-07-20 03:55 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-07-20 03:55 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-07-20 03:55 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-07-20 03:55 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-07-20 03:55 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-07-20 03:55 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-07-20 03:55 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-07-20 03:55 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-07-20 03:55 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-07-20 03:55 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-07-20 03:55 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-07-20 03:55 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-07-20 03:55 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-07-20 03:55 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-07-20 03:55 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-07-20 03:55 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-07-20 03:55 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-07-20 03:55 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-07-20 03:55 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-07-20 03:55 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-07-20 03:55 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-07-20 03:55 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-07-20 03:55 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-07-20 03:55 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-07-20 03:55 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-07-20 03:55 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-07-20 03:55 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-07-20 03:55 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-07-20 03:55 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-07-20 03:55 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-07-20 03:55 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-07-20 03:55 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-07-20 03:55 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-07-20 03:55 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-07-20 03:55 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-07-20 03:55 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-07-20 03:55 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-07-20 03:55 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-07-19 21:52 - 2014-07-19 21:52 - 00000000 ____D () C:\Users\User\AppData\Roaming\Macromedia 2014-07-19 21:52 - 2014-07-19 21:52 - 00000000 ____D () C:\Users\User\AppData\Roaming\Adobe 2014-07-19 20:30 - 2014-07-19 20:30 - 00000000 ____D () C:\ProgramData\Riot Games 2014-07-19 20:30 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-07-19 20:30 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-07-19 20:30 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-07-19 20:30 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-07-19 20:30 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-07-19 04:12 - 2014-07-19 04:12 - 00000000 ____D () C:\Windows\iskVolumeȁMinidump 2014-07-19 03:03 - 2014-05-28 11:51 - 10992640 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 06043136 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 02078208 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 01234432 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-07-19 03:03 - 2014-05-28 11:51 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-19 03:03 - 2014-05-28 11:50 - 01466368 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-19 03:03 - 2014-05-28 11:50 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-19 03:03 - 2014-05-28 11:50 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-07-19 03:03 - 2014-05-28 11:50 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-07-19 03:03 - 2014-05-28 10:54 - 01638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-19 03:02 - 2014-06-30 03:40 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-19 03:02 - 2014-06-30 03:36 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-07-19 03:02 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-19 03:02 - 2014-06-18 02:52 - 02350080 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-19 03:02 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-19 03:02 - 2014-06-05 16:26 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-19 03:02 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-07-19 03:02 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-07-19 03:02 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-07-19 03:02 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-07-19 03:02 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-07-19 03:02 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-07-19 03:02 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-07-19 03:02 - 2014-05-30 08:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-18 17:20 - 2014-07-18 17:20 - 00000000 ____D () C:\Windows\iskVolume2 ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-11 00:24 - 2014-08-11 00:24 - 00010556 _____ () C:\Users\User\Downloads\FRST.txt 2014-08-11 00:24 - 2014-08-11 00:23 - 00000000 ____D () C:\FRST 2014-08-11 00:23 - 2014-08-11 00:23 - 01091072 _____ (Farbar) C:\Users\User\Downloads\FRST.exe 2014-08-11 00:21 - 2014-06-26 03:00 - 00000000 ____D () C:\Program Files\iSafe 2014-08-11 00:10 - 2014-07-27 07:46 - 01059889 _____ () C:\Windows\WindowsUpdate.log 2014-08-10 23:35 - 2009-07-14 06:34 - 00017168 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-08-10 23:35 - 2009-07-14 06:34 - 00017168 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-08-10 23:31 - 2014-06-22 16:35 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-08-10 22:00 - 2014-08-08 15:47 - 00000336 _____ () C:\Windows\setupact.log 2014-08-10 22:00 - 2014-06-22 16:35 - 00001090 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-08-10 22:00 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-08-10 21:59 - 2014-08-10 21:22 - 00000000 ____D () C:\Users\User\C4E3531677F14EBD9785C72E55B1D219.TMP 2014-08-10 21:59 - 2014-08-08 18:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast 2014-08-10 21:59 - 2014-08-08 18:38 - 00000000 ____D () C:\Program Files\CleanMaster 2014-08-10 21:59 - 2014-08-07 22:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC 2014-08-10 21:59 - 2014-08-05 15:54 - 00000000 ____D () C:\Windows\ERUNT 2014-08-10 21:59 - 2014-08-04 16:28 - 00000000 ____D () C:\Games 2014-08-10 21:59 - 2014-08-04 15:26 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2014-08-10 21:59 - 2014-08-04 13:06 - 00000000 ____D () C:\Users\User\AppData\Local\6162 2014-08-10 21:59 - 2014-08-04 11:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center 2014-08-10 21:59 - 2014-08-04 11:46 - 00000000 ____D () C:\Program Files\Microsoft Mouse and Keyboard Center 2014-08-10 21:59 - 2014-08-04 11:34 - 00000000 ____D () C:\Program Files\Common Files\SNP2UVC 2014-08-10 21:59 - 2014-08-04 11:33 - 00000000 ____D () C:\Program Files\DIFX 2014-08-10 21:59 - 2014-06-22 17:18 - 00000000 ____D () C:\Users\User\AppData\Roaming\Skype 2014-08-10 21:59 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\twain_32 2014-08-10 21:59 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\registration 2014-08-10 21:54 - 2014-08-10 21:54 - 00000029 _____ () C:\Users\User\Desktop\Trojaner-Board.de.txt 2014-08-10 21:26 - 2014-08-08 15:47 - 00033200 _____ () C:\Windows\PFRO.log 2014-08-10 21:23 - 2014-07-27 01:13 - 00000000 ____D () C:\Program Files\Steam 2014-08-10 21:18 - 2014-08-10 21:18 - 00000000 ____D () C:\Users\User\AppData\Roaming\iSafe 2014-08-10 16:16 - 2014-08-03 15:32 - 00000267 _____ () C:\Users\User\Desktop\Animes;.txt 2014-08-10 15:46 - 2014-07-03 15:46 - 00070144 _____ () C:\Windows\system32\tasks.dll 2014-08-09 22:20 - 2014-06-22 16:52 - 00000000 ____D () C:\Users\User\Desktop\Bilder 2014-08-09 17:54 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles 2014-08-08 20:18 - 2014-08-08 20:18 - 00578240 _____ () C:\Users\User\Downloads\Elsword__7934_il2201385.exe 2014-08-08 20:06 - 2014-08-08 20:06 - 04511744 _____ () C:\Users\User\Downloads\ElswordundNostaleHack33.exe 2014-08-08 19:05 - 2014-08-08 19:04 - 37380304 _____ () C:\Users\User\Downloads\DE.data036.de2.title.pet.kom 2014-08-08 18:40 - 2014-08-08 18:40 - 00779536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00414520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00276432 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-08-08 18:40 - 2014-08-08 18:40 - 00192352 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00071944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2014-08-08 18:40 - 2014-08-08 18:40 - 00001970 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-08-08 18:40 - 2014-08-08 18:40 - 00000000 ____D () C:\Users\User\AppData\Roaming\AVAST Software 2014-08-08 18:36 - 2014-08-08 18:35 - 91906368 _____ (AVAST Software) C:\Users\User\Downloads\avast_free_antivirus_setup_9.0.2021.exe 2014-08-08 18:32 - 2014-08-08 18:32 - 01399832 _____ () C:\Users\User\Downloads\Elsword-Hack-v.2.79.zip 2014-08-08 15:47 - 2014-08-08 15:47 - 00000000 _____ () C:\Windows\setuperr.log 2014-08-07 22:10 - 2014-08-07 22:08 - 12920728 _____ (Elex do Brasil Participações Ltda) C:\Users\User\Downloads\yet_another_cleaner_sk.exe 2014-08-07 22:09 - 2014-08-07 22:09 - 00000000 __SHD () C:\Windows\system32\AI_RecycleBin 2014-08-07 22:06 - 2014-08-07 22:06 - 01016261 _____ (Thisisu) C:\Users\User\Downloads\JRT (1).exe 2014-08-07 22:04 - 2014-07-28 09:46 - 00000000 ____D () C:\AeriaGames 2014-08-07 21:49 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\wfp 2014-08-07 21:48 - 2014-08-05 16:04 - 00000000 ____D () C:\Program Files\AVAST Software 2014-08-07 21:48 - 2014-08-05 16:03 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-08-07 21:17 - 2014-06-26 04:43 - 00000000 ____D () C:\Users\User\AppData\Local\CrashDumps 2014-08-07 21:04 - 2014-08-07 21:04 - 00007605 _____ () C:\Users\User\AppData\Local\Resmon.ResmonCfg 2014-08-05 22:58 - 2014-08-05 22:58 - 00000000 ____D () C:\Users\User\Downloads\Gameforge Live 2014-08-05 22:12 - 2014-08-05 22:12 - 00000000 ____D () C:\Users\User\AppData\Local\Macromedia 2014-08-05 22:12 - 2014-06-22 17:39 - 00000000 ____D () C:\Users\User\Desktop\Musik 2014-08-05 22:10 - 2014-08-05 22:09 - 00000000 ____D () C:\Users\User\AppData\Local\Mozilla 2014-08-05 22:09 - 2014-08-05 22:09 - 00000000 ____D () C:\ProgramData\Mozilla 2014-08-05 22:01 - 2014-08-05 22:01 - 00244408 _____ () C:\Users\User\Downloads\Firefox Setup Stub 31.0.exe 2014-08-05 21:40 - 2014-08-05 21:40 - 02112568 _____ () C:\Users\User\Downloads\va3375_82c1053f41_setup.exe 2014-08-05 19:08 - 2014-08-05 19:08 - 00578240 _____ () C:\Users\User\Downloads\Elsword Hack K Ching And ED Downloader__3687_i1131353387_il869063.exe 2014-08-05 19:06 - 2014-08-05 19:06 - 08435712 _____ () C:\Users\User\Downloads\archpr454_setup_en.msi 2014-08-05 18:39 - 2014-08-05 18:39 - 00585920 _____ (Firseria.-.Installer · sl) C:\Users\User\Downloads\File_installer.exe 2014-08-05 16:04 - 2014-08-05 16:04 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-08-05 16:03 - 2014-08-05 16:02 - 91906368 _____ (AVAST Software) C:\Users\User\Downloads\avast_free_antivirus_setup_9_0_2021.exe 2014-08-05 15:54 - 2014-08-05 15:54 - 01016261 _____ (Thisisu) C:\Users\User\Downloads\JRT.exe 2014-08-04 22:06 - 2014-08-04 22:06 - 02355217 _____ () C:\Users\User\Downloads\FreeHideIP-3.9.7.6.Setup.exe 2014-08-04 22:06 - 2014-08-04 22:06 - 02355217 _____ () C:\Users\User\Downloads\FreeHideIP-3.9.7.6.Setup (1).exe 2014-08-04 22:06 - 2014-08-04 22:06 - 00000000 ____D () C:\ProgramData\FreeHideIP 2014-08-04 18:23 - 2014-08-04 18:23 - 00434960 _____ (Company limited) C:\Users\User\Downloads\XZipInstall.exe 2014-08-04 16:48 - 2014-08-04 16:48 - 00274944 _____ () C:\Users\User\Downloads\TheForestCrack__7934_il297835 (1).exe 2014-08-04 16:46 - 2014-08-04 16:46 - 00229368 _____ () C:\Users\User\Downloads\The_Forest___v0_downloader-I4fPSW2ku (2).exe 2014-08-04 16:37 - 2014-08-04 16:37 - 00005564 _____ () C:\Users\User\Documents\dadadada.reg 2014-08-04 16:14 - 2014-08-04 16:14 - 00274944 _____ () C:\Users\User\Downloads\TheForestCrack__7934_il297835.exe 2014-08-04 16:10 - 2014-08-04 16:10 - 00229368 _____ () C:\Users\User\Downloads\The_Forest___v0_downloader-I4fPSW2ku (1).exe 2014-08-04 16:09 - 2014-08-04 16:09 - 00229368 _____ () C:\Users\User\Downloads\The_Forest___v0_downloader-I4fPSW2ku.exe 2014-08-04 15:46 - 2014-08-04 15:46 - 00000000 ___SH () C:\Users\User\AppData\Local\LumaEmu 2014-08-04 14:59 - 2014-08-04 14:59 - 00228024 _____ () C:\Users\User\Downloads\Garrys_downloader-I5M2RlngR (1).exe 2014-08-04 14:58 - 2014-08-04 14:58 - 00228008 _____ () C:\Users\User\Downloads\Garrys_downloader-I5M2RlngR.exe 2014-08-04 14:56 - 2014-08-04 14:56 - 01941592 _____ (BitTorrent Inc.) C:\Users\User\Downloads\BitTorrent.exe 2014-08-04 12:50 - 2014-08-04 12:50 - 00092672 _____ () C:\Users\User\Downloads\ElcoinHack v1.2.exe 2014-08-04 11:53 - 2014-07-02 02:01 - 00059192 _____ () C:\Users\User\AppData\Local\GDIPFONTCACHEV1.DAT 2014-08-04 11:53 - 2009-07-14 06:33 - 00270424 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-04 11:46 - 2014-08-04 11:46 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_point32_01011.Wdf 2014-08-04 11:36 - 2014-04-30 23:21 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-08-04 11:34 - 2014-08-04 11:34 - 00000000 ____D () C:\Users\User\AppData\Roaming\InstallShield 2014-08-04 11:26 - 2014-08-04 11:26 - 00000000 ____D () C:\ProgramData\SonicFocus 2014-08-04 11:26 - 2014-04-30 23:53 - 00000000 ____D () C:\Program Files\Analog Devices 2014-08-04 10:51 - 2014-08-04 10:51 - 02938144 _____ (LionSea Software co., ltd ) C:\Users\User\Downloads\setup.exe 2014-08-04 10:48 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE 2014-08-03 14:55 - 2014-08-03 14:45 - 00000000 ____D () C:\Windows\Minidump 2014-08-02 16:37 - 2014-08-02 16:37 - 00145928 _____ (ClientConnect) C:\Windows\system32\condt.exe 2014-08-01 03:29 - 2014-08-01 03:29 - 00000000 ____D () C:\Users\User\Documents\Rainmeter 2014-07-31 13:32 - 2014-07-31 13:32 - 00001884 _____ () C:\Users\Public\Desktop\Elsword.lnk 2014-07-31 13:32 - 2014-07-31 13:32 - 00001021 _____ () C:\Users\Public\Desktop\Gameforge Live.lnk 2014-07-31 13:32 - 2014-07-31 13:32 - 00000000 ____D () C:\Users\User\AppData\Local\Gameforge4d 2014-07-31 13:32 - 2014-07-31 13:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live 2014-07-31 13:32 - 2014-07-28 08:59 - 00000000 ____D () C:\Program Files\GameforgeLive 2014-07-31 13:28 - 2014-06-22 21:03 - 00000000 ____D () C:\Users\User\AppData\Roaming\.minecraft 2014-07-31 09:11 - 2014-06-22 17:39 - 00002067 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-07-31 03:02 - 2010-11-20 23:01 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-29 13:08 - 2014-07-29 13:08 - 00000000 ____D () C:\Windows\0Minidump 2014-07-28 10:36 - 2014-07-28 10:36 - 00000000 ____D () C:\Users\User\AppData\Local\Aeria Games 2014-07-28 10:35 - 2014-07-28 10:35 - 00000000 ____D () C:\ProgramData\Aeria Games 2014-07-28 10:31 - 2014-06-22 17:18 - 00000000 ___RD () C:\Program Files\Skype 2014-07-28 10:26 - 2014-07-28 10:26 - 00002189 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-07-28 10:26 - 2014-07-28 10:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-07-28 10:26 - 2014-07-28 10:25 - 00000000 ____D () C:\Windows\system32\directx 2014-07-28 10:26 - 2014-06-22 16:35 - 00000000 ____D () C:\Program Files\Google 2014-07-28 10:25 - 2014-07-28 10:25 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-07-28 10:14 - 2014-07-28 10:14 - 00001405 _____ () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-07-28 08:33 - 2014-07-28 06:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirSnare 2014-07-27 20:48 - 2014-07-27 01:13 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-07-27 07:52 - 2014-07-27 07:37 - 00000000 ____D () C:\ProgramData\TechSmith 2014-07-27 07:49 - 2014-07-27 07:39 - 00000000 ____D () C:\ProgramData\NextCoiup 2014-07-27 07:48 - 2014-07-27 07:48 - 00000000 ____D () C:\ProgramData\NeXtCoup 2014-07-27 07:48 - 2014-06-24 13:27 - 00000580 __RSH () C:\ProgramData\ntuser.pol 2014-07-27 07:48 - 2014-06-24 13:27 - 00000000 ____D () C:\ProgramData\ba3ea17f8a2af2fd 2014-07-27 07:43 - 2014-07-27 07:38 - 00000000 ____D () C:\ProgramData\prIciechop 2014-07-27 07:41 - 2014-06-25 21:43 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-07-27 07:41 - 2014-06-25 21:43 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-07-27 07:40 - 2014-07-27 07:38 - 00000000 ____D () C:\ProgramData\Adblocker 2014-07-27 07:38 - 2014-06-24 13:27 - 00000000 ____D () C:\Users\Gast\AppData\Local\Google 2014-07-27 07:37 - 2014-07-27 07:37 - 00001126 _____ () C:\Users\Public\Desktop\Camtasia Studio 8.lnk 2014-07-27 07:37 - 2014-07-27 07:37 - 00000000 ____D () C:\ProgramData\regid.1995-08.com.techsmith 2014-07-27 07:37 - 2014-07-27 07:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith 2014-07-27 07:37 - 2014-07-27 07:37 - 00000000 ____D () C:\Program Files\TechSmith 2014-07-27 07:37 - 2014-07-27 07:37 - 00000000 ____D () C:\Program Files\QuickTime 2014-07-27 07:37 - 2014-07-27 07:37 - 00000000 ____D () C:\Program Files\Common Files\TechSmith Shared 2014-07-27 04:31 - 2014-07-27 04:31 - 00000000 ____D () C:\ProgramData\CODEX 2014-07-27 01:13 - 2014-07-27 01:13 - 00000917 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-07-27 01:13 - 2014-07-27 01:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-07-27 00:57 - 2014-05-06 10:48 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-07-27 00:53 - 2014-07-27 00:53 - 00000000 ____D () C:\AMD 2014-07-26 23:58 - 2014-07-26 23:58 - 00000000 ____D () C:\ProgramData\SYSTEMAX Software Development 2014-07-26 21:01 - 2014-07-26 21:01 - 00000000 ____D () C:\ProgramData\Steam 2014-07-26 03:27 - 2014-04-30 22:23 - 00000000 ____D () C:\Users\User\AppData\Local\VirtualStore 2014-07-26 01:35 - 2014-06-22 17:15 - 00000000 ____D () C:\Users\User\AppData\Roaming\TS3Client 2014-07-24 21:15 - 2014-06-25 16:06 - 00000000 ____D () C:\Users\User\AppData\Roaming\Audacity 2014-07-24 20:19 - 2014-07-24 20:19 - 00000000 ____D () C:\Users\User\AppData\Local\UWebKit151 2014-07-20 03:55 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-07-19 21:52 - 2014-07-19 21:52 - 00000000 ____D () C:\Users\User\AppData\Roaming\Macromedia 2014-07-19 21:52 - 2014-07-19 21:52 - 00000000 ____D () C:\Users\User\AppData\Roaming\Adobe 2014-07-19 20:55 - 2014-05-01 08:00 - 00000000 ____D () C:\Windows\Panther 2014-07-19 20:30 - 2014-07-19 20:30 - 00000000 ____D () C:\ProgramData\Riot Games 2014-07-19 06:42 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache 2014-07-19 04:12 - 2014-07-19 04:12 - 00000000 ____D () C:\Windows\iskVolumeȁMinidump 2014-07-19 04:10 - 2014-06-21 18:11 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-19 04:10 - 2010-11-21 02:47 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-19 03:56 - 2014-04-30 23:14 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-19 03:55 - 2014-04-30 23:14 - 93585272 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-07-18 17:20 - 2014-07-18 17:20 - 00000000 ____D () C:\Windows\iskVolume2 2014-07-16 11:39 - 2014-06-26 03:00 - 00040768 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeKrnlBoot.sys Some content of TEMP: ==================== C:\Users\User\AppData\Local\Temp\GPUpd53E3DB0D0.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-18 19:59 ==================== End Of Log ============================ --- --- --- --- --- --- Und hier die "Addition".FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version:10-08-2014 01 Ran by User at 2014-08-11 00:24:46 Running from C:\Users\User\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Disabled - Out of date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Disabled - Out of date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 14 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Flash Player 14 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) ATI Catalyst Install Manager (HKLM\...\{8F0EDF80-31C2-FA10-DEE8-BD435A5F7D61}) (Version: 3.0.732.0 - ATI Technologies, Inc.) Audacity 2.0.4 (HKLM\...\Audacity_is1) (Version: 2.0.4 - Audacity Team) avast! Free Antivirus (HKLM\...\Avast) (Version: 9.0.2021 - AVAST Software) Camtasia Studio 8 (HKLM\...\{C4E35316-77F1-4EBD-9785-C72E55B1D219}) (Version: 8.4.2.1768 - TechSmith Corporation) Catalyst Control Center - Branding (Version: 1.00.0000 - ATI) Hidden Catalyst Control Center Core Implementation (Version: 2009.0804.1118.18368 - ATI) Hidden Catalyst Control Center Graphics Full Existing (Version: 2009.0804.1118.18368 - ATI) Hidden Catalyst Control Center Graphics Full New (Version: 2009.0804.1118.18368 - ATI) Hidden Catalyst Control Center Graphics Light (Version: 2009.0804.1118.18368 - ATI) Hidden Catalyst Control Center InstallProxy (Version: 2009.0804.1118.18368 - ATI Technologies, Inc.) Hidden Catalyst Control Center Localization All (Version: 2009.0804.1118.18368 - ATI) Hidden CCC Help Chinese Standard (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Chinese Traditional (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Czech (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Danish (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Dutch (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help English (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Finnish (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help French (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help German (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Greek (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Hungarian (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Italian (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Japanese (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Korean (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Norwegian (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Polish (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Portuguese (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Russian (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Spanish (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Swedish (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Thai (Version: 2009.0804.1117.18368 - ATI) Hidden CCC Help Turkish (Version: 2009.0804.1117.18368 - ATI) Hidden ccc-core-static (Version: 2009.0804.1118.18368 - Ihr Firmenname) Hidden ccc-utility (Version: 2009.0804.1118.18368 - ATI) Hidden Elsword (HKLM\...\Elsword_de_is1) (Version: - ) Gameforge Live 2.0.4 (HKLM\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.4 - Gameforge) Google Chrome (HKLM\...\Google Chrome) (Version: 36.0.1985.125 - Google Inc.) Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden HP Connection Manager (HKLM\...\{7A6B4340-7090-418F-8976-EE9650B35550}) (Version: 4.1.22.1 - Hewlett-Packard Company) HP MediaSmart Webcam (HKLM\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3130 - Hewlett-Packard) HP MediaSmart Webcam (Version: 4.1.3130 - Hewlett-Packard) Hidden HP Quick Launch Buttons (HKLM\...\{34D2AB40-150D-475D-AE32-BD23FB5EE355}) (Version: 6.50.14.1 - Hewlett-Packard Company) HP Webcam (HKLM\...\{399C37FB-08AF-493B-BFED-20FBD85EDF7F}) (Version: 5.8.39008.0 - Sonix) HP Wireless Assistant (HKLM\...\{F9A43C0C-F274-4EC0-B02E-202C15C09C00}) (Version: 3.50.12.1 - Hewlett-Packard) HydraVision (Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden Intel(R) Management Engine Interface (HKLM\...\HECI) (Version: - Intel Corporation) Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 16.3 - Intel) Intel® Active-Management-Technologie (HKLM\...\MESOL) (Version: - Intel Corporation) Java 7 Update 60 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle) Java Auto Updater (Version: 2.1.60.19 - Oracle, Inc.) Hidden LSI HDA Modem (HKLM\...\LSI Soft Modem) (Version: 2.1.94 - LSI Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.145.0 - Microsoft Corporation) Microsoft Mouse and Keyboard Center (Version: 2.3.145.0 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) QLBCASL (Version: 6.40.17.2 - Hewlett-Packard) Hidden Qualcomm Gobi Driver Package for HP (HKLM\...\{D32C9FBF-E1FE-4AE9-B1A8-7A73952226D4}) (Version: 1.1.40 - QUALCOMM) Qualcomm Gobi Images for HP (HKLM\...\{4EF9528D-E130-411C-9C47-24748F1F7E91}) (Version: 1.0.50 - QUALCOMM) Razer Game Booster (HKLM\...\Razer Game Booster_is1) (Version: 4.2.45.0 - Razer Inc.) RICOH Media Driver (HKLM\...\{F5CC2EF8-20A4-4366-A681-3FE849E65809}) (Version: 2.14.00.05 - RICOH) RICOH R5U8xx Media Driver ver.3.63.02 (HKLM\...\{59F6A514-9813-47A3-948C-8A155460CC2A}) (Version: 3.63.02 - RICOH) Skype™ 6.16 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.) Steam (HKLM\...\Steam) (Version: - Valve Corporation) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.24.0 - Synaptics Incorporated) TeamSpeak 3 Client (HKCU\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH) Windows-Treiberpaket - Intel (NETwNs32) net (01/22/2012 14.3.2.1) (HKLM\...\4795C4A805590BF1276BCED3EB2478E5BF545E83) (Version: 01/22/2012 14.3.2.1 - Intel) Windows-Treiberpaket - Intel (NETwNs32) net (02/20/2012 15.1.0.18) (HKLM\...\ADD23BB4846CE97156B46B74EA84848F347B09FE) (Version: 02/20/2012 15.1.0.18 - Intel) Windows-Treiberpaket - Intel System (07/25/2013 9.1.9.1005) (HKLM\...\693856C0232B92FB409DC672B23A1C42AB5883E8) (Version: 07/25/2013 9.1.9.1005 - Intel) Windows-Treiberpaket - Intel System (07/25/2013 9.1.9.1005) (HKLM\...\B081E57B1455374FB610EEC26F6154A8870B8859) (Version: 07/25/2013 9.1.9.1005 - Intel) Windows-Treiberpaket - Intel System (11/07/2008 7.0.1.1011) (HKLM\...\019BA247F4BF373BFF125045DCD742221AF9A191) (Version: 11/07/2008 7.0.1.1011 - Intel) Windows-Treiberpaket - Intel USB (07/25/2013 9.1.9.1005) (HKLM\...\4863C0880AC111763AFD347D9D7272C8DACDCCED) (Version: 07/25/2013 9.1.9.1005 - Intel) WinRAR 5.01 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) Yet Another Cleaner! (HKLM\...\iSafe) (Version: - ELEX DO BRASIL PARTICIPAÇÕES LTDA) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 04-08-2014 09:49:48 Installiert HP Webcam 05-08-2014 14:04:26 avast! antivirus system restore point 05-08-2014 17:07:00 Installed Advanced Archive Password Recovery 05-08-2014 19:32:19 Removed Advanced Archive Password Recovery 05-08-2014 19:38:27 avast! antivirus system restore point 05-08-2014 20:03:06 Removed Aeria Ignite 07-08-2014 19:46:23 Wiederherstellungsvorgang 07-08-2014 20:09:20 Removed Aeria Ignite 08-08-2014 16:39:09 avast! antivirus system restore point 10-08-2014 17:00:13 Windows-Sicherung 10-08-2014 19:21:45 Camtasia Studio 8 wird entfernt 10-08-2014 19:56:31 Wiederherstellungsvorgang ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0217204C-F23F-4B45-833E-D91649B53501} - System32\Tasks\avast! Emergency Update => C:\Program Files\CleanMaster\AvastEmUpdate.exe [2014-08-08] (AVAST Software) Task: {53B71107-2ACC-4F8E-945E-629479B922EA} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-09-04] (Microsoft Corporation) Task: {741D6110-9C26-446C-8EAF-ABC9EF055E56} - System32\Tasks\Oxy => C:\Users\User\AppData\Roaming\Oxy\Updater.exe <==== ATTENTION Task: {76168793-FD19-466A-B4C6-DDB235E51F07} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-09-04] (Microsoft Corporation) Task: {9CC8F85F-0A9A-427A-912B-28353174C626} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-09-04] (Microsoft Corporation) Task: {9F8FEC69-4044-4D96-B536-94697329BE9D} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-09-04] (Microsoft Corporation) Task: {AAF483A6-5014-49F4-95A9-AA3BC25D6F0C} - System32\Tasks\GPUP => C:\Program Files\GetPrivate\gpup.exe [2014-07-02] () Task: {B0A2F7B8-E514-46D3-9032-4E3D1EB72856} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-07-28] (Google Inc.) Task: {B433A071-0D62-4392-8765-E9B78703DC85} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-09-04] (Microsoft) Task: {B83FB32E-4C8B-45BE-A19D-289844B3D5E1} - System32\Tasks\EnergoTech Update => C:\ProgramData\EnergoTech\update.exe [2014-07-02] (EnergoTech LLC) Task: {B94595EB-AFFD-4B9A-BAC1-5DA93B5A5BF2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-07-28] (Google Inc.) Task: {C36A5E95-D47F-4B82-832D-D695FF414CB5} - System32\Tasks\MirageAgent => C:\Program Files\Hewlett-Packard\Media\Webcam\YCMMirage.exe [2010-07-30] (CyberLink) Task: {CA04485F-54F0-461A-B2E9-49A2044A2923} - System32\Tasks\RunAsStdUser Task => C:\Users\User\AppData\Local\Oxy\Application\oxy.exe <==== ATTENTION Task: {F2BB8691-4F49-4836-AB33-330DB5B79332} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-06-26 03:00 - 2014-07-16 11:34 - 00065696 _____ () C:\Program Files\iSafe\zlib1.dll 2014-06-26 03:00 - 2014-07-16 11:34 - 00092320 _____ () C:\Program Files\iSafe\curlpp.dll 2014-06-26 03:00 - 2014-07-16 11:34 - 00427168 _____ () C:\Program Files\iSafe\ipcproxy.dll 2014-08-08 18:39 - 2014-08-08 18:39 - 00301152 _____ () C:\Program Files\CleanMaster\aswProperty.dll 2014-08-10 19:53 - 2014-08-10 19:53 - 02795520 _____ () C:\Program Files\CleanMaster\defs\14081001\algo.dll 2014-06-22 17:39 - 2012-11-20 16:13 - 00264192 _____ () C:\Program Files\Razer\Razer Game Booster\D3DX8Wrapper.dll 2014-06-22 17:39 - 2013-11-12 09:57 - 00098304 _____ () C:\Program Files\Razer\Razer Game Booster\EasyHook32.dll 2014-08-08 18:39 - 2014-08-08 18:39 - 19329904 _____ () C:\Program Files\CleanMaster\libcef.dll 2014-06-26 03:00 - 2014-07-16 11:34 - 02228896 _____ () C:\Program Files\iSafe\ipcdl.exe 2014-07-28 10:26 - 2014-07-15 11:24 - 00718664 _____ () C:\Program Files\Google\Chrome\Application\36.0.1985.125\libglesv2.dll 2014-07-28 10:26 - 2014-07-15 11:24 - 00126280 _____ () C:\Program Files\Google\Chrome\Application\36.0.1985.125\libegl.dll 2014-07-28 10:26 - 2014-07-15 11:24 - 08537928 _____ () C:\Program Files\Google\Chrome\Application\36.0.1985.125\pdf.dll 2014-07-28 10:26 - 2014-07-15 11:24 - 00353096 _____ () C:\Program Files\Google\Chrome\Application\36.0.1985.125\ppGoogleNaClPluginChrome.dll 2014-07-28 10:26 - 2014-07-15 11:24 - 01732936 _____ () C:\Program Files\Google\Chrome\Application\36.0.1985.125\ffmpegsumo.dll 2014-07-28 10:26 - 2014-07-15 11:24 - 14664008 _____ () C:\Program Files\Google\Chrome\Application\36.0.1985.125\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/10/2014 10:01:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/10/2014 10:00:52 PM) (Source: System Restore) (EventID: 8210) (User: ) Description: Unbekannter Fehler bei der Systemwiederherstellung: (Windows-Sicherung). Zusätzliche Informationen: 0x80070005. Error: (08/10/2014 09:26:52 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/10/2014 09:05:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: UNS.exe, Version: 4.2.0.1017, Zeitstempel: 0x4a5e2527 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18409, Zeitstempel: 0x531599f6 Ausnahmecode: 0x00000006 Fehleroffset: 0x0000812f ID des fehlerhaften Prozesses: 0x9a0 Startzeit der fehlerhaften Anwendung: 0xUNS.exe0 Pfad der fehlerhaften Anwendung: UNS.exe1 Pfad des fehlerhaften Moduls: UNS.exe2 Berichtskennung: UNS.exe3 Error: (08/10/2014 11:52:20 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/09/2014 05:08:14 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/08/2014 09:14:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/08/2014 06:39:15 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary zbpegagz. System Error: Das System kann die angegebene Datei nicht finden. . Error: (08/08/2014 06:39:09 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert . Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess. Vorgang: Generatordaten werden gesammelt Kontext: Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220} Generatorname: System Writer Generatorinstanz-ID: {e5277b95-4c1d-461f-b8b3-feee803780d1} Error: (08/08/2014 03:49:34 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (08/10/2014 11:14:05 PM) (Source: Microsoft-Windows-Application-Experience) (EventID: 205) (User: NT-AUTORITÄT) Description: Der Dienst "Programmkompatibilitäts-Assistent" konnte Phase 2 nicht initialisieren. Error: (08/10/2014 10:00:37 PM) (Source: atikmdag) (EventID: 10261) (User: ) Description: Display is not active Error: (08/10/2014 10:00:37 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (08/10/2014 09:26:38 PM) (Source: atikmdag) (EventID: 10261) (User: ) Description: Display is not active Error: (08/10/2014 09:26:38 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (08/10/2014 09:05:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Management and Security Application User Notification Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/10/2014 11:51:45 AM) (Source: atikmdag) (EventID: 10261) (User: ) Description: Display is not active Error: (08/10/2014 11:51:45 AM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (08/09/2014 05:07:36 PM) (Source: atikmdag) (EventID: 10261) (User: ) Description: Display is not active Error: (08/09/2014 05:07:36 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Microsoft Office Sessions: ========================= Error: (08/10/2014 10:01:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/10/2014 10:00:52 PM) (Source: System Restore) (EventID: 8210) (User: ) Description: Windows-Sicherung0x80070005 Error: (08/10/2014 09:26:52 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/10/2014 09:05:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: UNS.exe4.2.0.10174a5e2527KERNELBASE.dll6.1.7601.18409531599f6000000060000812f9a001cfb480b7591735C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exeC:\Windows\system32\KERNELBASE.dll5a8f44f7-20c1-11e4-acb8-00271371f8d4 Error: (08/10/2014 11:52:20 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/09/2014 05:08:14 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/08/2014 09:14:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/08/2014 06:39:15 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary zbpegagz. System Error: Das System kann die angegebene Datei nicht finden. Error: (08/08/2014 06:39:09 PM) (Source: VSS) (EventID: 8194) (User: ) Description: 0x80070005, Zugriff verweigert Vorgang: Generatordaten werden gesammelt Kontext: Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220} Generatorname: System Writer Generatorinstanz-ID: {e5277b95-4c1d-461f-b8b3-feee803780d1} Error: (08/08/2014 03:49:34 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Percentage of memory in use: 53% Total physical RAM: 3036.27 MB Available physical RAM: 1425.57 MB Total Pagefile: 6070.82 MB Available Pagefile: 4112.31 MB Total Virtual: 2047.88 MB Available Virtual: 1870.15 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:297.74 GB) (Free:257.09 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 2BD2C32A) Partition 1: (Active) - (Size=356 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=298 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Wäre schön wenn jemand so schnell wie möglich antworten konnte denn mein Laptop wird es nicht mehr so lang aushalten bis es garnicht mehr angeht!! :/ |
11.08.2014, 21:18 | #4 |
/// the machine /// TB-Ausbilder | Laptop/Langsam Win7 32-Bit hi, Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Laptop/Langsam Win7 32-Bit |
32-bit, antwort, brauch, einiger, extrem, freue, hilfreiche, keine viren, langsam, laptop, probleme, programme, scan, scanne, scannen, sehr langsam, viren, win, win7, win7 32 bit, windows, windows 7, würde, öffnen |