|
Log-Analyse und Auswertung: Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme)Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
11.08.2014, 15:50 | #1 |
| Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) Hallo liebes Board, ich weiss es gibt zu dem Thema schon unzählige Beiträge, hab da auch schon reingeschaut, nur habe ich auch prinzipiell die Frage an die Fachkundige Bevölkerung, ob das Amazon-Icon eine Malware ist. Vorab auch sorry wegen langen Post. Folgendes: Ich habe mir gestern ein Spiel runterladne wollen und dazu einen der ersten Hits bei Google genommen (hxxp://the-suffering.giga.de/) und dachte mir "Mensch, GIGA, kennst doch noch von früher, kannst es dir da ja runterladen". Nur wusste ich zu dem Zeitpunkt leider nicht mehr dass andere Mächte diesed Website übernommen hatten... Also hab ich dummer Schuljunge mir den Installer geladen (kenn man ja z.B. schon von Chip.de) und das Spiel darüber runtergeladen, nur dass danach Iín Firefox, Chrome und IExplorer die Startseite zu so ner komischen android Seite von Giga wurde, ich auf dem Desktop die Datei Amzaon.De.Url hatte und in Firefox und IExplorer das Amazon-Icon-Addon hatte (welches Gerüchteweise Malware ist). Jedoch keine weiteren Seltsamheiten wie langsamer Rechner oder ständig aufploppender IExplorer. Ja gut, daraufhin habe ich erstmla die Url-Datei gelöscht und bei Firefox das Addon entfernt (beim IExplorer musste ich es leider über die Registry machen). Habe dann auch sofort hier gekuckt was Sache ist und n paar Scans laufen lassen. Ich würde gerne Fragen falls gestattet ob ich mir da jetzt Sorgen machen muss oder ob das wirklich nur so ne nervige Toolbar/Icon war. System: Windows 8 Schutz: COMODO Internet Security (Firewall+Antivirus), Spyware Terminator Habe MBAM, ADWClener und Spyware Terminator drüberlaufen lassen und die hatten nichts gefunden.JRT hatte auch nicht wirklich viel entfernt. Im FRST-Log hatte ich auch nichts verdächtiges entdeckt, auch bei HiJack-This nicht. Hier die LOGs die ich hab |
11.08.2014, 16:42 | #2 |
/// the machine /// TB-Ausbilder | Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) Hi,
__________________Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. Ich kann auf Arbeit keine Anhänge öffnen, danke. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
11.08.2014, 16:58 | #3 |
| Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) Hi,
__________________danke schonmal. Dachte hätte es gelesen man soll logs in archiben posten,sry. FRST.txt FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-08-2014 01 Ran by userABC_000 (administrator) on LORDHELIX on 11-08-2014 04:23:20 Running from C:\Users\userABC_000\DOWNLOADS Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.0.3.226\AsusWSWinService.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Kinect Drivers\Service\KinectManagementService.exe () C:\Program Files\MySQL\MySQL Server 5.6\bin\mysqld.exe (Nitro PDF Software) C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Windows\SysWOW64\PnkBstrA.exe (A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Crawler.com) C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Crawler.com) C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe (Crawler.com) C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Crawler.com) C:\Program Files (x86)\Spyware Terminator\SpywareTerminator.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s RtHDVCpl C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s kernel32.dll HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1368792 2013-11-13] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-01-21] (NVIDIA Corporation) HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2777736 2013-04-03] (Crawler.com) HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [3684488 2013-04-03] (Crawler.com) HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-110364190-1643542413-822559574-1001\...\Run: [EvJOWall] => C:\Program Files\EvJOSoft\Wallpaper Changer\EvJOWall.exe [3998720 2010-08-31] (EvJOSoft) HKU\S-1-5-21-110364190-1643542413-822559574-1001\...\Policies\Explorer: [DisallowRun] 1 ShellIconOverlayIdentifiers: !AsusWSShellExt_B -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.1.8.381\ASUSWSShellExt64.dll (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: !AsusWSShellExt_O -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.1.8.381\ASUSWSShellExt64.dll (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: !AsusWSShellExt_U -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.1.8.381\ASUSWSShellExt64.dll (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers-x32: SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus13.msn.com/?pc=ASJB HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.giga.de/androidnews/ SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASJB SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASJB SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASJB SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASJB SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default FF Homepage: https://www.ixquick.com/eng/ FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.0.2 -> C:\Program Files (x86)\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.0.2 -> C:\Program Files (x86)\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Reader 3\npnitromozilla.dll (Nitro PDF) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Users\userABC_000\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Users\userABC_000\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\userABC_000\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\searchplugins\duckduckgo.xml FF SearchPlugin: C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\searchplugins\ixquick-https.xml FF SearchPlugin: C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\searchplugins\youtube.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: FoxyProxy Standard - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\foxyproxy@eric.h.jung [2014-07-29] FF Extension: ProxTube - Unblock YouTube - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\ich@maltegoetz.de [2014-04-30] FF Extension: YouTube Unblocker - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\youtubeunblocker@unblocker.yt [2014-04-22] FF Extension: FireShot - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba} [2014-07-29] FF Extension: DownloadHelper - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-08-08] FF Extension: Adblock Plus Pop-up Addon - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\adblockpopups@jessehakanen.net.xpi [2014-04-21] FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\elemhidehelper@adblockplus.org.xpi [2014-04-21] FF Extension: Ghostery - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\firefox@ghostery.com.xpi [2014-07-29] FF Extension: Adblock Plus - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-04-21] FF Extension: BetterPrivacy - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2014-07-30] FF Extension: DownThemAll! - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2014-06-12] Chrome: ======= CHR HomePage: chrome://newtab CHR Extension: (ProxFlow) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-07-20] CHR Extension: (Google Docs) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-09] CHR Extension: (Google Drive) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-09] CHR Extension: (YouTube) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-09] CHR Extension: (Webseiten-Screenshot - Webpage Screenshot) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki [2014-06-23] CHR Extension: (Google-Suche) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-09] CHR Extension: (Facebook Disconnect) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpepffjfmamnambagiibghpglaidiec [2014-06-09] CHR Extension: (Facebook™ Chat Privacy) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfpgaanechfneiboempkfjghninbibjn [2014-06-09] CHR Extension: (AdBlock) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-06-09] CHR Extension: (Google Wallet) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-09] CHR Extension: (Google Mail) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-09] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.0.3.226\AsusWSWinService.exe [71680 2013-08-16] (ASUS Cloud Corporation) [File not signed] S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-05-12] () [File not signed] S3 c2wts; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [5632 2014-05-20] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2356912 2014-07-19] (Microsoft Corporation) R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [6817544 2014-04-16] (COMODO) S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2264280 2014-03-25] (COMODO) S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2014-02-20] (Microsoft Corporation) [File not signed] R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227936 2013-11-09] (WildTangent) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-16] (Intel Corporation) R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe [22768 2014-04-17] (Microsoft Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) R2 KinectManagement; C:\Program Files\Microsoft Kinect Drivers\Service\KinectManagementService.exe [98816 2013-08-20] (Microsoft Corporation) [File not signed] R2 MySQL56; C:\ProgramData\MySQL\MySQL Server 5.6\my.ini [14262 2014-08-02] () [File not signed] R2 NitroReaderDriverReadSpool3; C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe [230416 2013-07-26] (Nitro PDF Software) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-01-21] (NVIDIA Corporation) S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [32568 2014-05-02] (The OpenVPN Project) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-04-24] () R2 RzMaelstromVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe [4250624 2014-05-23] (A-Volute) [File not signed] R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [174088 2014-05-29] (Sandboxie Holdings, LLC) R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.) S2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 ST2012_Svc; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [1149104 2013-04-03] (Crawler.com) S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [File not signed] S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH) S3 VsEtwService120; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87736 2014-04-30] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3880448 2013-11-13] (Qualcomm Atheros Communications, Inc.) R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [70928 2014-02-13] (ASUS Corporation) R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [23168 2014-04-16] (COMODO) R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [748784 2014-04-16] (COMODO) R1 cmdhlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [37560 2014-04-16] (COMODO) R1 inspect; C:\Windows\system32\DRIVERS\inspect.sys [127664 2014-04-16] (COMODO) R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( ) S3 KinectCamera; C:\Windows\System32\Drivers\kinectcamera.sys [192512 2013-08-20] (Microsoft Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) R2 plctrl; C:\Program Files\ASUS\P4G\plctrl.sys [14136 2014-01-03] (Windows (R) Win 7 DDK provider) R3 RZMAELSTROMVADService; C:\Windows\system32\drivers\RzMaelstromVAD.sys [32768 2014-05-23] (Windows (R) Win 7 DDK provider) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [185352 2014-05-29] (Sandboxie Holdings, LLC) R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation) R2 sp_rsdrv2; C:\Windows\System32\DRIVERS\stflt.sys [51496 2014-06-21] (Windows (R) Win 7 DDK provider) S3 tap0901t; C:\Windows\system32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) S3 vpnva; C:\Windows\system32\DRIVERS\vpnva64-6.sys [52592 2014-03-12] (Cisco Systems, Inc.) S3 VSPerfDrv110; D:\Programming\Microsoft Visual Studio 2012\Team Tools\Performance Tools\x64\VSPerfDrv110.sys [70264 2012-07-26] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) U0 msahci; system32\drivers\msahci.sys ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-11 03:05 - 2014-08-11 04:24 - 00027364 _____ () C:\Users\userABC_000\Downloads\FRST.txt 2014-08-11 03:05 - 2014-08-11 04:23 - 00000000 ____D () C:\FRST 2014-08-11 03:04 - 2014-08-11 03:04 - 02099712 _____ (Farbar) C:\Users\userABC_000\Downloads\FRST64.exe 2014-08-11 03:03 - 2014-08-11 03:03 - 01091072 _____ (Farbar) C:\Users\userABC_000\Downloads\FRST.exe 2014-08-11 02:44 - 2014-08-11 02:44 - 00709564 _____ () C:\Users\userABC_000\Downloads\delfix_10.8.exe 2014-08-11 02:44 - 2014-08-11 02:44 - 00448512 _____ (OldTimer Tools) C:\Users\userABC_000\Downloads\TFC.exe 2014-08-11 02:42 - 2014-08-11 02:42 - 01016261 _____ (Thisisu) C:\Users\userABC_000\Downloads\JRT_6.1.4 (1).exe 2014-08-11 02:35 - 2014-08-11 02:35 - 1046385731 _____ () C:\Windows\MEMORY.DMP 2014-08-11 02:35 - 2014-08-11 02:35 - 00303264 _____ () C:\Windows\Minidump\081114-67359-01.dmp 2014-08-11 02:34 - 2014-08-11 02:34 - 00001036 _____ () C:\Windows\PFRO.log 2014-08-11 02:32 - 2014-08-11 02:32 - 02347384 _____ (ESET) C:\Users\userABC_000\Downloads\Nicht bestätigt 570719.crdownload 2014-08-11 02:32 - 2014-08-11 02:32 - 00854410 _____ () C:\Users\userABC_000\Downloads\SecurityCheck.exe 2014-08-11 02:31 - 2014-08-11 02:31 - 01366203 _____ () C:\Users\userABC_000\Downloads\adwcleaner_3.304.exe 2014-08-11 02:31 - 2014-08-11 02:31 - 00000000 ____D () C:\AdwCleaner 2014-08-11 02:30 - 2014-08-11 02:30 - 01016261 _____ (Thisisu) C:\Users\userABC_000\Downloads\JRT_6.1.4.exe 2014-08-11 02:28 - 2014-08-11 02:37 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-08-11 02:28 - 2014-08-11 02:28 - 00001116 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-08-11 02:28 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-08-11 02:28 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-08-11 02:28 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-08-11 02:26 - 2014-08-11 02:26 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\userABC_000\Downloads\mbam-setup-2.0.2.1012.exe 2014-08-11 02:26 - 2014-08-11 02:26 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\userABC_000\Downloads\mbam-setup-2.0.2.1012 (1).exe 2014-08-11 01:49 - 2014-08-11 01:49 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Temp9f74e24dbbb7daf280bfb67f55219c5f 2014-08-11 00:31 - 2014-08-11 01:54 - 00000161 _____ () C:\Users\userABC_000\Desktop\Neues Textdokument (4).txt 2014-08-10 02:33 - 2014-08-10 02:33 - 00421971 _____ () C:\Users\userABC_000\Downloads\libusb-1.0.9.tar.bz2 2014-08-10 02:30 - 2014-08-10 02:30 - 00970155 _____ () C:\Users\userABC_000\Downloads\vrpn_07_26.zip 2014-08-10 02:30 - 2014-08-10 02:30 - 00002724 _____ () C:\Users\userABC_000\Downloads\VRPNTutorial.zip 2014-08-10 01:57 - 2014-08-10 01:57 - 14605046 _____ () C:\Users\userABC_000\Downloads\VRPN-07.29.0-git-version_07.29-211-g6d674b0-Windows- (1).zip 2014-08-10 00:57 - 2014-08-10 00:57 - 14605046 _____ () C:\Users\userABC_000\Downloads\VRPN-07.29.0-git-version_07.29-211-g6d674b0-Windows-.zip 2014-08-10 00:57 - 2014-08-10 00:57 - 00254478 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9 (1).exe 2014-08-10 00:57 - 2014-08-10 00:57 - 00058006 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9.zip 2014-08-10 00:50 - 2014-08-10 00:51 - 60867934 _____ () C:\Users\userABC_000\Downloads\vrjuggler-2.2.2-svn-vc9.7z 2014-08-10 00:50 - 2014-08-10 00:51 - 28778137 _____ () C:\Users\userABC_000\Downloads\vrjugglua-3.0-vc9-2.8git-snapshot20111003.zip 2014-08-10 00:50 - 2014-08-10 00:50 - 02884784 _____ () C:\Users\userABC_000\Downloads\rpavlik-vrpn-wmhtgui-sensitivity-0-gabeebb0.zip 2014-08-10 00:50 - 2014-08-10 00:50 - 01296391 _____ () C:\Users\userABC_000\Downloads\rpavlik-vrpn-wmhtgui-initial-requirements-283-g40d4af0.tar.gz 2014-08-10 00:50 - 2014-08-10 00:50 - 00254478 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9.exe 2014-08-10 00:49 - 2014-08-10 00:49 - 01099239 _____ () C:\Users\userABC_000\Downloads\vrpn-wiimote-pre2-07.27-wiimote.tar.gz 2014-08-10 00:49 - 2014-08-10 00:49 - 00429936 _____ (Ryan Pavlik ) C:\Users\userABC_000\Downloads\setup-git-windows-mintty-1.1.exe 2014-08-10 00:44 - 2014-08-10 00:44 - 12292707 _____ () C:\Users\userABC_000\Downloads\vrjuggler-3.0.1-1-src.7z 2014-08-10 00:43 - 2014-08-10 00:43 - 00788770 _____ () C:\Users\userABC_000\Downloads\WiiYourself!_1.15.zip 2014-08-10 00:36 - 2014-08-10 00:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blade of Darkness [GOG.com] 2014-08-10 00:23 - 2014-08-10 00:23 - 20562001 _____ () C:\Users\userABC_000\Downloads\VRPN-07.31.0-git-07.31-54-gbb55950-Windows-.zip 2014-08-10 00:16 - 2014-08-10 00:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CMake 3.0.1 2014-08-10 00:16 - 2014-08-10 00:16 - 00000000 ____D () C:\Program Files (x86)\CMake 2014-08-10 00:15 - 2014-08-10 00:16 - 11299622 _____ () C:\Users\userABC_000\Downloads\cmake-3.0.1-win32-x86.exe 2014-08-09 23:44 - 2014-08-09 23:44 - 15999866 _____ () C:\Users\userABC_000\Downloads\vrpn_07_30.zip 2014-08-09 23:33 - 2014-08-09 23:33 - 18075980 _____ () C:\Users\userABC_000\Downloads\vrpn_07_31.zip 2014-08-09 17:32 - 2014-08-09 17:32 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\DOSBox 2014-08-09 17:29 - 2014-08-09 17:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DotEmu 2014-08-09 17:27 - 2014-08-09 17:37 - 00049148 _____ () C:\Windows\War3Unin.dat 2014-08-09 17:26 - 2014-08-09 17:36 - 00139264 _____ (Blizzard Entertainment) C:\Windows\War3Unin.exe 2014-08-09 17:26 - 2014-08-09 17:36 - 00002829 _____ () C:\Windows\War3Unin.pif 2014-08-09 17:26 - 2014-08-09 17:36 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warcraft III 2014-08-09 17:26 - 2014-08-09 17:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III 2014-08-09 17:20 - 2014-08-09 17:20 - 00000000 ____D () C:\Users\userABC_000\Desktop\LBA_1_Master 2014-08-08 23:26 - 2014-08-08 23:26 - 01046636 _____ () C:\Users\userABC_000\Downloads\SC3_HLSP_enabler.rar 2014-08-08 23:26 - 2014-08-08 23:26 - 00000000 ____D () C:\Users\userABC_000\Desktop\SC3_HLSP_enabler 2014-08-08 01:06 - 2014-08-08 01:06 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Adam_Reece 2014-08-08 00:55 - 2014-08-08 00:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sven Co-op 2014-08-08 00:26 - 2014-08-08 00:44 - 755100549 _____ () C:\Users\userABC_000\Downloads\svencoop48.exe 2014-08-06 21:37 - 2014-08-06 21:37 - 00021458 _____ () C:\Users\userABC_000\AppData\Local\recently-used.xbel 2014-08-06 15:46 - 2014-08-06 15:46 - 00000000 ___HD () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled 2014-08-06 15:46 - 2014-08-06 15:46 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\GlarySoft 2014-08-06 15:45 - 2014-08-11 04:12 - 00000354 _____ () C:\Windows\Tasks\GlaryInitialize.job 2014-08-06 15:45 - 2014-08-06 15:45 - 00002620 _____ () C:\Windows\System32\Tasks\GlaryInitialize 2014-08-06 15:45 - 2014-08-06 15:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 2014-08-06 15:45 - 2014-08-06 15:45 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 2014-08-06 15:21 - 2014-08-06 15:21 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\Revo Uninstaller - CHIP-Installer.exe 2014-08-06 15:20 - 2014-08-06 15:21 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\Glary Utilities - CHIP-Installer.exe 2014-08-06 15:12 - 2014-08-06 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tools&More 2014-08-06 15:11 - 2014-08-06 15:11 - 00000000 ____D () C:\Program Files (x86)\Tools&More 2014-08-06 15:09 - 2014-08-06 15:09 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-08-06 15:00 - 2014-08-06 15:00 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\AutoStart Manager - CHIP-Installer.exe 2014-08-06 03:50 - 2014-08-06 03:50 - 00000138 _____ () C:\Users\userABC_000\AppData\Local\psppirerc 2014-08-05 19:32 - 2014-08-05 19:36 - 114760879 _____ () C:\Users\userABC_000\Downloads\OneLateNight.zip 2014-08-05 19:32 - 2014-08-05 19:35 - 114763930 _____ () C:\Users\userABC_000\Downloads\OneLateNight_dx11.zip 2014-08-05 18:44 - 2014-08-05 18:44 - 00319912 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-08-05 18:44 - 2014-08-05 18:44 - 00000000 ____D () C:\Program Files\Java 2014-08-05 18:42 - 2014-08-05 18:42 - 00000000 ____D () C:\ProgramData\Oracle 2014-08-05 18:42 - 2014-04-15 16:29 - 00264600 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-08-05 18:42 - 2014-04-15 16:29 - 00176024 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-08-05 18:42 - 2014-04-15 16:29 - 00176024 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-08-05 18:10 - 2014-08-05 18:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco 2014-08-05 18:10 - 2014-06-11 05:15 - 00112496 ____R (Cisco Systems, Inc.) C:\Windows\system32\Drivers\acsock64.sys 2014-08-05 00:58 - 2014-08-05 00:58 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\xp-AntiSpy 2014-08-05 00:58 - 2014-08-05 00:58 - 00000000 ____D () C:\Program Files (x86)\xp-AntiSpy 2014-08-04 22:41 - 2014-08-04 22:52 - 535984318 _____ () C:\Users\userABC_000\Downloads\LBA_1_Master.zip 2014-08-04 20:17 - 2014-08-06 03:25 - 00000180 _____ () C:\Users\userABC_000\pspp.jnl 2014-08-04 20:16 - 2014-08-04 20:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSPP 2014-08-04 20:16 - 2014-08-04 20:16 - 00000000 ____D () C:\Program Files (x86)\PSPP 2014-08-03 00:37 - 2014-08-03 00:38 - 58014125 _____ (Docear) C:\Users\userABC_000\Downloads\docear.exe 2014-08-02 21:52 - 2014-08-02 21:52 - 00000000 ____D () C:\Program Files\MySQL 2014-08-02 21:47 - 2014-08-02 21:52 - 131758072 _____ (Bitnami) C:\Users\userABC_000\Downloads\xampp-win32-1.8.3-3-VC11-installer.exe 2014-08-02 21:46 - 2014-08-02 22:54 - 00000000 ____D () C:\ProgramData\MySQL 2014-08-02 21:46 - 2014-08-02 21:46 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MySQL 2014-08-02 21:29 - 2014-08-02 21:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JabRef 2014-08-02 21:29 - 2014-08-02 21:29 - 00000000 ____D () C:\Program Files (x86)\JabRef 2014-08-02 20:52 - 2014-08-02 20:52 - 00173213 _____ () C:\Users\userABC_000\Desktop\Neues Textdokument (3).txt 2014-08-02 19:45 - 2014-08-02 19:45 - 00000729 _____ () C:\Users\Public\Desktop\TeXstudio.lnk 2014-08-02 19:36 - 2014-08-03 11:49 - 00000000 ____D () C:\Users\userABC_000\Desktop\HMI-Bericht 2014-08-02 18:41 - 2014-08-02 18:41 - 00354371 _____ () C:\Users\userABC_000\Desktop\biblatex-apa.zip 2014-08-02 18:40 - 2014-08-02 18:40 - 00817714 _____ () C:\Users\userABC_000\Desktop\apacite.zip 2014-08-02 18:38 - 2014-08-02 18:38 - 00597534 _____ () C:\Users\userABC_000\Desktop\apa6.zip 2014-08-01 02:01 - 2014-08-01 02:01 - 00001381 _____ () C:\Users\userABC_000\Desktop\SbieCtrl.exe - Verknüpfung.lnk 2014-07-31 20:59 - 2014-07-31 21:00 - 00000000 ____D () C:\Users\userABC_000\Desktop\export 2014-07-31 05:10 - 2014-07-31 05:10 - 00001726 _____ () C:\Users\userABC_000\Desktop\vidalia.exe - Verknüpfung.lnk 2014-07-29 16:00 - 2014-08-11 04:12 - 00428939 _____ () C:\Windows\WindowsUpdate.log 2014-07-29 13:16 - 2014-07-29 13:16 - 00002780 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-07-29 13:16 - 2014-07-29 13:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-07-29 13:16 - 2014-07-29 13:16 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-29 02:29 - 2014-07-29 02:29 - 00000000 ___RD () C:\Sandbox 2014-07-29 02:28 - 2014-07-29 02:28 - 00001502 _____ () C:\Users\userABC_000\Desktop\firefox.exe - Verknüpfung.lnk 2014-07-29 02:27 - 2014-08-10 13:59 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\tor 2014-07-29 02:15 - 2014-07-29 02:15 - 00000000 ____D () C:\Users\userABC_000\Desktop\Tor Browser 2014-07-29 01:53 - 2014-08-10 13:59 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Vidalia 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Tor 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vidalia Bridge Bundle 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\Program Files (x86)\Vidalia Bridge Bundle 2014-07-28 18:55 - 2014-07-28 18:55 - 00000000 ___RD () C:\Users\userABC_000\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App 2014-07-28 03:18 - 2014-07-28 03:18 - 00000000 ____D () C:\Users\userABC_000\Desktop\Bericht 2014-07-28 03:17 - 2014-07-28 03:17 - 02699073 _____ () C:\Users\userABC_000\Downloads\Bericht.zip 2014-07-28 03:17 - 2014-07-28 03:17 - 00000209 _____ () C:\Users\userABC_000\Desktop\MBG-Bericht.html 2014-07-26 23:44 - 2014-07-26 23:44 - 00000000 ____D () C:\Users\Public\CyberLink 2014-07-26 23:40 - 2014-07-26 23:41 - 00000000 ____D () C:\Users\userABC_000\Documents\CyberLink 2014-07-26 23:40 - 2014-07-26 23:41 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\CyberLink 2014-07-26 23:40 - 2014-07-26 23:41 - 00000000 ____D () C:\ProgramData\CyberLink 2014-07-25 17:11 - 2014-07-25 17:11 - 00000000 ____D () C:\Users\userABC_000\Desktop\x360ce.App-2.1.2.191 2014-07-25 02:25 - 2014-07-25 17:30 - 00000000 ____D () C:\Users\userABC_000\Documents\Overlord 2014-07-25 01:58 - 2014-07-25 01:59 - 00000000 ____D () C:\Users\userABC_000\Documents\Giana Sisters - Twisted Dreams 2014-07-24 23:52 - 2014-08-11 02:35 - 00000000 ____D () C:\Windows\Minidump 2014-07-24 18:18 - 2014-07-24 18:18 - 00581031 _____ () C:\Users\userABC_000\Desktop\hci-thesis-and-project-report-template.zip 2014-07-24 17:53 - 2014-07-24 17:53 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\MMFApplications 2014-07-24 12:19 - 2014-07-24 12:19 - 00000000 ____D () C:\Users\userABC_000\Desktop\hci-paper-style-report-template 2014-07-24 11:12 - 2014-07-24 11:12 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\MiKTeX 2014-07-24 11:11 - 2014-07-24 11:11 - 00000000 ____D () C:\Users\userABC_000\Desktop\hci-thesis-and-project-report-template 2014-07-24 11:03 - 2014-07-24 11:03 - 00000000 ____D () C:\Users\userABC_000\Desktop\OpenSceneGraph-3.2.1 2014-07-24 10:53 - 2014-07-24 10:54 - 07219212 _____ () C:\Users\userABC_000\Downloads\OpenSceneGraph-3.2.1.zip 2014-07-23 13:12 - 2014-07-23 13:12 - 00133828 _____ () C:\Users\userABC_000\Downloads\DeusExe-v6.2.zip 2014-07-23 13:12 - 2014-07-23 13:12 - 00111744 _____ () C:\Users\userABC_000\Downloads\dxglr20.zip 2014-07-23 13:12 - 2014-07-23 13:12 - 00109155 _____ () C:\Users\userABC_000\Downloads\dxd3d9r13.zip 2014-07-23 13:10 - 2014-07-23 13:10 - 01732150 _____ () C:\Users\userABC_000\Downloads\DXENB.RAR 2014-07-23 13:07 - 2014-07-23 13:08 - 18363191 _____ (Off Topic Productions) C:\Users\userABC_000\Downloads\HDTP-Release1.exe 2014-07-23 13:06 - 2014-07-23 13:09 - 52787997 _____ () C:\Users\userABC_000\Downloads\HDTPBeta03.zip 2014-07-23 13:03 - 2014-07-23 13:54 - 1239299948 _____ (DaveW) C:\Users\userABC_000\Downloads\New_Vision_v1-5.exe 2014-07-23 12:56 - 2014-07-10 06:16 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2014-07-23 12:56 - 2014-07-10 06:03 - 04756992 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2014-07-23 12:56 - 2014-07-10 05:33 - 01120256 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2014-07-22 22:36 - 2014-08-10 13:00 - 00001496 _____ () C:\Windows\Sandboxie.ini 2014-07-22 21:15 - 2014-07-22 21:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-22 20:18 - 2014-07-22 20:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie 2014-07-22 19:23 - 2014-07-22 19:23 - 00000000 ____D () C:\Program Files\Sandboxie 2014-07-20 13:12 - 2014-07-20 13:12 - 00381105 _____ () C:\Users\userABC_000\Downloads\UEQ_kit.zip 2014-07-15 19:51 - 2014-07-15 21:31 - 00000000 ____D () C:\Users\userABC_000\Desktop\Imbo 2014-07-13 17:26 - 2014-07-13 17:26 - 00000000 ____D () C:\Users\userABC_000\Desktop\ASE251 2014-07-13 17:25 - 2014-07-13 17:25 - 00011364 _____ () C:\Users\userABC_000\Downloads\ASE251.zip ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-11 04:24 - 2014-08-11 03:05 - 00027364 _____ () C:\Users\userABC_000\Downloads\FRST.txt 2014-08-11 04:23 - 2014-08-11 03:05 - 00000000 ____D () C:\FRST 2014-08-11 04:21 - 2014-04-22 14:33 - 01474832 _____ () C:\Windows\system32\Drivers\sfi.dat 2014-08-11 04:17 - 2014-04-10 19:54 - 00003594 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-110364190-1643542413-822559574-1001 2014-08-11 04:16 - 2014-04-10 19:49 - 00000074 _____ () C:\Users\userABC_000\AppData\Roaming\sp_data.sys 2014-08-11 04:15 - 2014-04-21 23:57 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-08-11 04:13 - 2014-04-21 23:57 - 00001136 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-08-11 04:13 - 2014-04-10 19:50 - 00000000 __RDO () C:\Users\userABC_000\SkyDrive 2014-08-11 04:12 - 2014-08-06 15:45 - 00000354 _____ () C:\Windows\Tasks\GlaryInitialize.job 2014-08-11 04:12 - 2014-07-29 16:00 - 00428939 _____ () C:\Windows\WindowsUpdate.log 2014-08-11 04:11 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-08-11 03:31 - 2014-04-10 19:48 - 00000000 ____D () C:\Users\userABC_000 2014-08-11 03:04 - 2014-08-11 03:04 - 02099712 _____ (Farbar) C:\Users\userABC_000\Downloads\FRST64.exe 2014-08-11 03:04 - 2014-04-11 12:48 - 00001156 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001UA.job 2014-08-11 03:03 - 2014-08-11 03:03 - 01091072 _____ (Farbar) C:\Users\userABC_000\Downloads\FRST.exe 2014-08-11 03:00 - 2014-04-15 15:41 - 00005156 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for LORDHELIX-userABC_000 LordHelix 2014-08-11 03:00 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru 2014-08-11 02:44 - 2014-08-11 02:44 - 00709564 _____ () C:\Users\userABC_000\Downloads\delfix_10.8.exe 2014-08-11 02:44 - 2014-08-11 02:44 - 00448512 _____ (OldTimer Tools) C:\Users\userABC_000\Downloads\TFC.exe 2014-08-11 02:42 - 2014-08-11 02:42 - 01016261 _____ (Thisisu) C:\Users\userABC_000\Downloads\JRT_6.1.4 (1).exe 2014-08-11 02:37 - 2014-08-11 02:28 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-08-11 02:35 - 2014-08-11 02:35 - 1046385731 _____ () C:\Windows\MEMORY.DMP 2014-08-11 02:35 - 2014-08-11 02:35 - 00303264 _____ () C:\Windows\Minidump\081114-67359-01.dmp 2014-08-11 02:35 - 2014-07-24 23:52 - 00000000 ____D () C:\Windows\Minidump 2014-08-11 02:35 - 2013-08-22 16:44 - 00526640 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-11 02:34 - 2014-08-11 02:34 - 00001036 _____ () C:\Windows\PFRO.log 2014-08-11 02:32 - 2014-08-11 02:32 - 02347384 _____ (ESET) C:\Users\userABC_000\Downloads\Nicht bestätigt 570719.crdownload 2014-08-11 02:32 - 2014-08-11 02:32 - 00854410 _____ () C:\Users\userABC_000\Downloads\SecurityCheck.exe 2014-08-11 02:31 - 2014-08-11 02:31 - 01366203 _____ () C:\Users\userABC_000\Downloads\adwcleaner_3.304.exe 2014-08-11 02:31 - 2014-08-11 02:31 - 00000000 ____D () C:\AdwCleaner 2014-08-11 02:30 - 2014-08-11 02:30 - 01016261 _____ (Thisisu) C:\Users\userABC_000\Downloads\JRT_6.1.4.exe 2014-08-11 02:29 - 2014-06-01 15:24 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\vlc 2014-08-11 02:28 - 2014-08-11 02:28 - 00001116 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-08-11 02:26 - 2014-08-11 02:26 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\userABC_000\Downloads\mbam-setup-2.0.2.1012.exe 2014-08-11 02:26 - 2014-08-11 02:26 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\userABC_000\Downloads\mbam-setup-2.0.2.1012 (1).exe 2014-08-11 01:54 - 2014-08-11 00:31 - 00000161 _____ () C:\Users\userABC_000\Desktop\Neues Textdokument (4).txt 2014-08-11 01:49 - 2014-08-11 01:49 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Temp9f74e24dbbb7daf280bfb67f55219c5f 2014-08-10 23:33 - 2013-08-22 17:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-08-10 13:59 - 2014-07-29 02:27 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\tor 2014-08-10 13:59 - 2014-07-29 01:53 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Vidalia 2014-08-10 13:00 - 2014-07-22 22:36 - 00001496 _____ () C:\Windows\Sandboxie.ini 2014-08-10 04:04 - 2014-04-11 12:48 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001Core.job 2014-08-10 02:53 - 2014-05-20 01:43 - 00000000 ____D () C:\Users\userABC_000\Documents\Visual Studio 2013 2014-08-10 02:33 - 2014-08-10 02:33 - 00421971 _____ () C:\Users\userABC_000\Downloads\libusb-1.0.9.tar.bz2 2014-08-10 02:30 - 2014-08-10 02:30 - 00970155 _____ () C:\Users\userABC_000\Downloads\vrpn_07_26.zip 2014-08-10 02:30 - 2014-08-10 02:30 - 00002724 _____ () C:\Users\userABC_000\Downloads\VRPNTutorial.zip 2014-08-10 01:57 - 2014-08-10 01:57 - 14605046 _____ () C:\Users\userABC_000\Downloads\VRPN-07.29.0-git-version_07.29-211-g6d674b0-Windows- (1).zip 2014-08-10 00:57 - 2014-08-10 00:57 - 14605046 _____ () C:\Users\userABC_000\Downloads\VRPN-07.29.0-git-version_07.29-211-g6d674b0-Windows-.zip 2014-08-10 00:57 - 2014-08-10 00:57 - 00254478 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9 (1).exe 2014-08-10 00:57 - 2014-08-10 00:57 - 00058006 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9.zip 2014-08-10 00:51 - 2014-08-10 00:50 - 60867934 _____ () C:\Users\userABC_000\Downloads\vrjuggler-2.2.2-svn-vc9.7z 2014-08-10 00:51 - 2014-08-10 00:50 - 28778137 _____ () C:\Users\userABC_000\Downloads\vrjugglua-3.0-vc9-2.8git-snapshot20111003.zip 2014-08-10 00:50 - 2014-08-10 00:50 - 02884784 _____ () C:\Users\userABC_000\Downloads\rpavlik-vrpn-wmhtgui-sensitivity-0-gabeebb0.zip 2014-08-10 00:50 - 2014-08-10 00:50 - 01296391 _____ () C:\Users\userABC_000\Downloads\rpavlik-vrpn-wmhtgui-initial-requirements-283-g40d4af0.tar.gz 2014-08-10 00:50 - 2014-08-10 00:50 - 00254478 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9.exe 2014-08-10 00:49 - 2014-08-10 00:49 - 01099239 _____ () C:\Users\userABC_000\Downloads\vrpn-wiimote-pre2-07.27-wiimote.tar.gz 2014-08-10 00:49 - 2014-08-10 00:49 - 00429936 _____ (Ryan Pavlik ) C:\Users\userABC_000\Downloads\setup-git-windows-mintty-1.1.exe 2014-08-10 00:44 - 2014-08-10 00:44 - 12292707 _____ () C:\Users\userABC_000\Downloads\vrjuggler-3.0.1-1-src.7z 2014-08-10 00:43 - 2014-08-10 00:43 - 00788770 _____ () C:\Users\userABC_000\Downloads\WiiYourself!_1.15.zip 2014-08-10 00:36 - 2014-08-10 00:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blade of Darkness [GOG.com] 2014-08-10 00:23 - 2014-08-10 00:23 - 20562001 _____ () C:\Users\userABC_000\Downloads\VRPN-07.31.0-git-07.31-54-gbb55950-Windows-.zip 2014-08-10 00:17 - 2014-08-10 00:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CMake 3.0.1 2014-08-10 00:16 - 2014-08-10 00:16 - 00000000 ____D () C:\Program Files (x86)\CMake 2014-08-10 00:16 - 2014-08-10 00:15 - 11299622 _____ () C:\Users\userABC_000\Downloads\cmake-3.0.1-win32-x86.exe 2014-08-09 23:44 - 2014-08-09 23:44 - 15999866 _____ () C:\Users\userABC_000\Downloads\vrpn_07_30.zip 2014-08-09 23:33 - 2014-08-09 23:33 - 18075980 _____ () C:\Users\userABC_000\Downloads\vrpn_07_31.zip 2014-08-09 17:37 - 2014-08-09 17:27 - 00049148 _____ () C:\Windows\War3Unin.dat 2014-08-09 17:36 - 2014-08-09 17:26 - 00139264 _____ (Blizzard Entertainment) C:\Windows\War3Unin.exe 2014-08-09 17:36 - 2014-08-09 17:26 - 00002829 _____ () C:\Windows\War3Unin.pif 2014-08-09 17:36 - 2014-08-09 17:26 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warcraft III 2014-08-09 17:36 - 2014-08-09 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III 2014-08-09 17:32 - 2014-08-09 17:32 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\DOSBox 2014-08-09 17:29 - 2014-08-09 17:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DotEmu 2014-08-09 17:20 - 2014-08-09 17:20 - 00000000 ____D () C:\Users\userABC_000\Desktop\LBA_1_Master 2014-08-09 02:03 - 2014-04-23 17:38 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Skype 2014-08-09 01:14 - 2014-04-10 22:38 - 00000000 ____D () C:\Users\userABC_000\Documents\Visual Studio 2012 2014-08-08 23:26 - 2014-08-08 23:26 - 01046636 _____ () C:\Users\userABC_000\Downloads\SC3_HLSP_enabler.rar 2014-08-08 23:26 - 2014-08-08 23:26 - 00000000 ____D () C:\Users\userABC_000\Desktop\SC3_HLSP_enabler 2014-08-08 16:55 - 2014-06-21 00:24 - 00000000 ____D () C:\ProgramData\Spyware Terminator 2014-08-08 01:06 - 2014-08-08 01:06 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Adam_Reece 2014-08-08 00:55 - 2014-08-08 00:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sven Co-op 2014-08-08 00:44 - 2014-08-08 00:26 - 755100549 _____ () C:\Users\userABC_000\Downloads\svencoop48.exe 2014-08-07 03:51 - 2014-04-28 13:03 - 00000000 ____D () C:\Users\userABC_000\.gimp-2.8 2014-08-06 21:37 - 2014-08-06 21:37 - 00021458 _____ () C:\Users\userABC_000\AppData\Local\recently-used.xbel 2014-08-06 21:37 - 2014-04-28 13:14 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\gtk-2.0 2014-08-06 18:45 - 2014-04-22 21:27 - 02713088 ___SH () C:\Users\userABC_000\Desktop\Thumbs.db 2014-08-06 15:46 - 2014-08-06 15:46 - 00000000 ___HD () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled 2014-08-06 15:46 - 2014-08-06 15:46 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\GlarySoft 2014-08-06 15:45 - 2014-08-06 15:45 - 00002620 _____ () C:\Windows\System32\Tasks\GlaryInitialize 2014-08-06 15:45 - 2014-08-06 15:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 2014-08-06 15:45 - 2014-08-06 15:45 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 2014-08-06 15:21 - 2014-08-06 15:21 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\Revo Uninstaller - CHIP-Installer.exe 2014-08-06 15:21 - 2014-08-06 15:20 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\Glary Utilities - CHIP-Installer.exe 2014-08-06 15:12 - 2014-08-06 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tools&More 2014-08-06 15:11 - 2014-08-06 15:11 - 00000000 ____D () C:\Program Files (x86)\Tools&More 2014-08-06 15:09 - 2014-08-06 15:09 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-08-06 15:00 - 2014-08-06 15:00 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\AutoStart Manager - CHIP-Installer.exe 2014-08-06 03:50 - 2014-08-06 03:50 - 00000138 _____ () C:\Users\userABC_000\AppData\Local\psppirerc 2014-08-06 03:25 - 2014-08-04 20:17 - 00000180 _____ () C:\Users\userABC_000\pspp.jnl 2014-08-05 19:36 - 2014-08-05 19:32 - 114760879 _____ () C:\Users\userABC_000\Downloads\OneLateNight.zip 2014-08-05 19:35 - 2014-08-05 19:32 - 114763930 _____ () C:\Users\userABC_000\Downloads\OneLateNight_dx11.zip 2014-08-05 18:44 - 2014-08-05 18:44 - 00319912 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-08-05 18:44 - 2014-08-05 18:44 - 00000000 ____D () C:\Program Files\Java 2014-08-05 18:42 - 2014-08-05 18:42 - 00000000 ____D () C:\ProgramData\Oracle 2014-08-05 18:41 - 2014-04-15 16:29 - 00000000 ____D () C:\Program Files (x86)\Java 2014-08-05 18:10 - 2014-08-05 18:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco 2014-08-05 18:10 - 2014-06-02 20:16 - 00000000 ____D () C:\Program Files (x86)\Cisco 2014-08-05 18:10 - 2014-06-02 20:15 - 00000000 ____D () C:\ProgramData\Cisco 2014-08-05 16:32 - 2014-04-10 23:25 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-08-05 00:58 - 2014-08-05 00:58 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\xp-AntiSpy 2014-08-05 00:58 - 2014-08-05 00:58 - 00000000 ____D () C:\Program Files (x86)\xp-AntiSpy 2014-08-04 22:52 - 2014-08-04 22:41 - 535984318 _____ () C:\Users\userABC_000\Downloads\LBA_1_Master.zip 2014-08-04 20:16 - 2014-08-04 20:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSPP 2014-08-04 20:16 - 2014-08-04 20:16 - 00000000 ____D () C:\Program Files (x86)\PSPP 2014-08-03 11:49 - 2014-08-02 19:36 - 00000000 ____D () C:\Users\userABC_000\Desktop\HMI-Bericht 2014-08-03 00:38 - 2014-08-03 00:37 - 58014125 _____ (Docear) C:\Users\userABC_000\Downloads\docear.exe 2014-08-02 23:59 - 2014-04-15 15:08 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\texstudio 2014-08-02 22:54 - 2014-08-02 21:46 - 00000000 ____D () C:\ProgramData\MySQL 2014-08-02 22:54 - 2014-05-27 19:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL 2014-08-02 21:53 - 2014-05-27 19:30 - 00000000 ____D () C:\Program Files (x86)\MySQL 2014-08-02 21:52 - 2014-08-02 21:52 - 00000000 ____D () C:\Program Files\MySQL 2014-08-02 21:52 - 2014-08-02 21:47 - 131758072 _____ (Bitnami) C:\Users\userABC_000\Downloads\xampp-win32-1.8.3-3-VC11-installer.exe 2014-08-02 21:46 - 2014-08-02 21:46 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MySQL 2014-08-02 21:30 - 2014-08-02 21:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JabRef 2014-08-02 21:29 - 2014-08-02 21:29 - 00000000 ____D () C:\Program Files (x86)\JabRef 2014-08-02 20:52 - 2014-08-02 20:52 - 00173213 _____ () C:\Users\userABC_000\Desktop\Neues Textdokument (3).txt 2014-08-02 19:45 - 2014-08-02 19:45 - 00000729 _____ () C:\Users\Public\Desktop\TeXstudio.lnk 2014-08-02 19:45 - 2014-04-15 15:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeXstudio 2014-08-02 18:41 - 2014-08-02 18:41 - 00354371 _____ () C:\Users\userABC_000\Desktop\biblatex-apa.zip 2014-08-02 18:40 - 2014-08-02 18:40 - 00817714 _____ () C:\Users\userABC_000\Desktop\apacite.zip 2014-08-02 18:38 - 2014-08-02 18:38 - 00597534 _____ () C:\Users\userABC_000\Desktop\apa6.zip 2014-08-02 11:45 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-08-01 02:01 - 2014-08-01 02:01 - 00001381 _____ () C:\Users\userABC_000\Desktop\SbieCtrl.exe - Verknüpfung.lnk 2014-07-31 21:46 - 2014-04-10 20:44 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Notepad++ 2014-07-31 21:00 - 2014-07-31 20:59 - 00000000 ____D () C:\Users\userABC_000\Desktop\export 2014-07-31 05:10 - 2014-07-31 05:10 - 00001726 _____ () C:\Users\userABC_000\Desktop\vidalia.exe - Verknüpfung.lnk 2014-07-30 00:21 - 2014-04-10 20:44 - 00000000 ____D () C:\Program Files (x86)\Notepad++ 2014-07-29 13:35 - 2014-04-27 18:10 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\BitTorrent 2014-07-29 13:35 - 2014-04-27 18:05 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\uTorrent 2014-07-29 13:34 - 2013-12-13 13:45 - 00000000 ____D () C:\Windows\Panther 2014-07-29 13:16 - 2014-07-29 13:16 - 00002780 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-07-29 13:16 - 2014-07-29 13:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-07-29 13:16 - 2014-07-29 13:16 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-29 11:03 - 2014-04-10 19:52 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\WebStorage 2014-07-29 02:29 - 2014-07-29 02:29 - 00000000 ___RD () C:\Sandbox 2014-07-29 02:28 - 2014-07-29 02:28 - 00001502 _____ () C:\Users\userABC_000\Desktop\firefox.exe - Verknüpfung.lnk 2014-07-29 02:15 - 2014-07-29 02:15 - 00000000 ____D () C:\Users\userABC_000\Desktop\Tor Browser 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Tor 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vidalia Bridge Bundle 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\Program Files (x86)\Vidalia Bridge Bundle 2014-07-28 19:17 - 2014-04-10 22:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unreal Development Kit 2014-07-28 18:55 - 2014-07-28 18:55 - 00000000 ___RD () C:\Users\userABC_000\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App 2014-07-28 03:18 - 2014-07-28 03:18 - 00000000 ____D () C:\Users\userABC_000\Desktop\Bericht 2014-07-28 03:17 - 2014-07-28 03:17 - 02699073 _____ () C:\Users\userABC_000\Downloads\Bericht.zip 2014-07-28 03:17 - 2014-07-28 03:17 - 00000209 _____ () C:\Users\userABC_000\Desktop\MBG-Bericht.html 2014-07-27 17:00 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\rescache 2014-07-27 15:51 - 2013-12-13 13:04 - 00807196 _____ () C:\Windows\system32\perfh007.dat 2014-07-27 15:51 - 2013-12-13 13:04 - 00176672 _____ () C:\Windows\system32\perfc007.dat 2014-07-27 15:51 - 2013-12-13 06:09 - 01886820 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-26 23:44 - 2014-07-26 23:44 - 00000000 ____D () C:\Users\Public\CyberLink 2014-07-26 23:41 - 2014-07-26 23:40 - 00000000 ____D () C:\Users\userABC_000\Documents\CyberLink 2014-07-26 23:41 - 2014-07-26 23:40 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\CyberLink 2014-07-26 23:41 - 2014-07-26 23:40 - 00000000 ____D () C:\ProgramData\CyberLink 2014-07-26 17:05 - 2014-04-22 18:56 - 00000000 ____D () C:\Users\userABC_000\Documents\My Games 2014-07-25 17:30 - 2014-07-25 02:25 - 00000000 ____D () C:\Users\userABC_000\Documents\Overlord 2014-07-25 17:11 - 2014-07-25 17:11 - 00000000 ____D () C:\Users\userABC_000\Desktop\x360ce.App-2.1.2.191 2014-07-25 04:36 - 2014-07-10 16:13 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\foobar2000 2014-07-25 01:59 - 2014-07-25 01:58 - 00000000 ____D () C:\Users\userABC_000\Documents\Giana Sisters - Twisted Dreams 2014-07-24 23:52 - 2014-05-28 02:46 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-24 23:52 - 2014-05-28 02:46 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-24 20:07 - 2014-05-28 02:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-24 18:18 - 2014-07-24 18:18 - 00581031 _____ () C:\Users\userABC_000\Desktop\hci-thesis-and-project-report-template.zip 2014-07-24 17:53 - 2014-07-24 17:53 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\MMFApplications 2014-07-24 12:19 - 2014-07-24 12:19 - 00000000 ____D () C:\Users\userABC_000\Desktop\hci-paper-style-report-template 2014-07-24 11:12 - 2014-07-24 11:12 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\MiKTeX 2014-07-24 11:11 - 2014-07-24 11:11 - 00000000 ____D () C:\Users\userABC_000\Desktop\hci-thesis-and-project-report-template 2014-07-24 11:03 - 2014-07-24 11:03 - 00000000 ____D () C:\Users\userABC_000\Desktop\OpenSceneGraph-3.2.1 2014-07-24 11:00 - 2014-07-10 16:44 - 00000000 ____D () C:\Users\userABC_000\Desktop\Poster 2014-07-24 10:54 - 2014-07-24 10:53 - 07219212 _____ () C:\Users\userABC_000\Downloads\OpenSceneGraph-3.2.1.zip 2014-07-24 08:44 - 2014-04-10 20:16 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-07-24 04:36 - 2013-08-22 15:25 - 00524288 ___SH () C:\Windows\system32\config\BBI 2014-07-23 13:54 - 2014-07-23 13:03 - 1239299948 _____ (DaveW) C:\Users\userABC_000\Downloads\New_Vision_v1-5.exe 2014-07-23 13:12 - 2014-07-23 13:12 - 00133828 _____ () C:\Users\userABC_000\Downloads\DeusExe-v6.2.zip 2014-07-23 13:12 - 2014-07-23 13:12 - 00111744 _____ () C:\Users\userABC_000\Downloads\dxglr20.zip 2014-07-23 13:12 - 2014-07-23 13:12 - 00109155 _____ () C:\Users\userABC_000\Downloads\dxd3d9r13.zip 2014-07-23 13:10 - 2014-07-23 13:10 - 01732150 _____ () C:\Users\userABC_000\Downloads\DXENB.RAR 2014-07-23 13:09 - 2014-07-23 13:06 - 52787997 _____ () C:\Users\userABC_000\Downloads\HDTPBeta03.zip 2014-07-23 13:08 - 2014-07-23 13:07 - 18363191 _____ (Off Topic Productions) C:\Users\userABC_000\Downloads\HDTP-Release1.exe 2014-07-23 03:30 - 2014-06-18 00:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox.bak 2014-07-22 21:15 - 2014-07-22 21:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-22 20:18 - 2014-07-22 20:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie 2014-07-22 19:23 - 2014-07-22 19:23 - 00000000 ____D () C:\Program Files\Sandboxie 2014-07-20 13:39 - 2014-04-10 19:48 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Packages 2014-07-20 13:12 - 2014-07-20 13:12 - 00381105 _____ () C:\Users\userABC_000\Downloads\UEQ_kit.zip 2014-07-15 21:31 - 2014-07-15 19:51 - 00000000 ____D () C:\Users\userABC_000\Desktop\Imbo 2014-07-14 14:40 - 2014-04-11 11:30 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Unity 2014-07-13 17:26 - 2014-07-13 17:26 - 00000000 ____D () C:\Users\userABC_000\Desktop\ASE251 2014-07-13 17:25 - 2014-07-13 17:25 - 00011364 _____ () C:\Users\userABC_000\Downloads\ASE251.zip Files to move or delete: ==================== C:\ProgramData\SetStretch.exe C:\ProgramData\SetStretch.VBS Some content of TEMP: ==================== C:\Users\userABC_000\AppData\Local\Temp\20140805071151639jniverify.dll C:\Users\userABC_000\AppData\Local\Temp\amazonicon_v8.exe C:\Users\userABC_000\AppData\Local\Temp\amazoninstallernircmdc.exe C:\Users\userABC_000\AppData\Local\Temp\CmdLineExt02.dll C:\Users\userABC_000\AppData\Local\Temp\i4jdel0.exe C:\Users\userABC_000\AppData\Local\Temp\npp.6.6.7.Installer.exe C:\Users\userABC_000\AppData\Local\Temp\Quarantine.exe C:\Users\userABC_000\AppData\Local\Temp\sdanircmdc.exe C:\Users\userABC_000\AppData\Local\Temp\sdapskill.exe C:\Users\userABC_000\AppData\Local\Temp\sdaspwn.exe C:\Users\userABC_000\AppData\Local\Temp\SIntf16.dll C:\Users\userABC_000\AppData\Local\Temp\SIntf32.dll C:\Users\userABC_000\AppData\Local\Temp\SIntfNT.dll C:\Users\userABC_000\AppData\Local\Temp\vlc-2.1.5-win32.exe C:\Users\userABC_000\AppData\Local\Temp\war3_Install.exe C:\Users\userABC_000\AppData\Local\Temp\xmlUpdater.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-08-09 21:32 ==================== End Of Log ============================ |
11.08.2014, 17:19 | #4 |
| Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-08-2014 01 Ran by userABC_000 at 2014-08-11 04:25:09 Running from C:\Users\userABC_000\DOWNLOADS Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: COMODO Antivirus (Enabled - Up to date) {B74CC7D2-B407-E1DC-1033-DD315BCDC8C8} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: COMODO Antivirus (Enabled - Up to date) {0C2D2636-923D-EE52-2A83-E643204A8275} FW: COMODO Firewall (Enabled) {8F7746F7-FE68-E084-3B6C-7404A51E8FB3} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Tools for .Net 3.5 - DEU Lang Pack (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden Tools for .Net 3.5 (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden µTorrent (HKCU\...\uTorrent) (Version: 3.4.1.30888 - BitTorrent Inc.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Age of Empires II: HD Edition (HKLM-x32\...\Steam App 221380) (Version: - Hidden Path Entertainment, Ensemble Studios) Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 20.2.1245.53580 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 20.2.1245.53580 - Alcor Micro Corp.) Hidden Angry Video Game Nerd Adventures (HKLM-x32\...\Steam App 237740) (Version: - FreakZone Games) Anki (HKLM-x32\...\Anki) (Version: - ) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Archeblade (HKLM-x32\...\Steam App 207230) (Version: - CodeBrush Games) ArgoUML 0.34 (HKLM-x32\...\ArgoUML) (Version: 0.34 - ) Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive) ARMA 2 Dedicated Server (HKLM-x32\...\Steam App 33905) (Version: - Bohemia Interactive) Arma 2: DayZ Mod (HKLM-x32\...\Steam App 224580) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead - Dedicated Server (HKLM-x32\...\Steam App 33935) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive) Arma: Cold War Assault (HKLM-x32\...\Steam App 65790) (Version: - Bohemia Interactive) ASUS Backtracker (HKLM-x32\...\{C15C060C-ED1C-49EB-83B3-F7C0FD1CD661}) (Version: 3.0.4 - ASUS) ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.2.7 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 3.0.7 - ASUS) ASUS Screen Saver (HKLM-x32\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 1.0.2 - ASUS) ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 2.2.10 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 2.01.0021 - ASUS) ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 3.1.8 - ASUS) ASUSDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5710.52 - CyberLink Corp.) ASUSDVD (x32 Version: 10.0.5710.52 - CyberLink Corp.) Hidden AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.12.311 - ASUSTEK) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0031 - ASUS) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) Autostart-Manager (HKLM-x32\...\{5C2C73F6-CE73-4A01-868E-7045B7805334}) (Version: 6.02.0000 - Wirth IT Design ) Axis Game Factory (HKLM-x32\...\Steam App 253370) (Version: - Axis Game Factory) AzureTools.Notifications (x32 Version: 2.1.10731.1602 - Microsoft Corporation) Hidden Batman: Arkham Asylum GOTY Edition (HKLM-x32\...\Steam App 35140) (Version: - Rocksteady Studios) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - ) BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - ) Behaviors SDK (Windows Phone) for Visual Studio 2013 (x32 Version: 12.0.50429.0 - Microsoft Corporation) Hidden Behaviors SDK (Windows) for Visual Studio 2013 (x32 Version: 12.0.50429.0 - Microsoft Corporation) Hidden BitTorrent (HKCU\...\BitTorrent) (Version: 7.9.2.32128 - BitTorrent Inc.) Blackwell Bundle (HKLM-x32\...\GOGPACKBLACKWELLBUNDLE_is1) (Version: 2.0.0.9 - GOG.com) Blade of Darkness (HKLM-x32\...\GOGPACKBLADEOFDARKNESS_is1) (Version: 2.0.0.5 - GOG.com) Blend for Visual Studio 2012 (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden Blend for Visual Studio 2012 DEU resources (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden Blend for Visual Studio 2013 (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio 2013 ENU resources (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio Add-in for Adobe FXG Import (x32 Version: 1.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for Silverlight 5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for Windows Phone 8.0 (x32 Version: 3.0.30924.0 - Microsoft Corporation) Hidden Blender (HKLM\...\Blender) (Version: 2.70 - Blender Foundation) Block Story (HKLM-x32\...\Steam App 270110) (Version: - MindBlocks Studio, LLC) BloodRayne (HKLM-x32\...\GOGPACKBLOODRAYNE1_is1) (Version: 2.0.0.5 - GOG.com) Build Tools - amd64 (Version: 12.0.30501 - Microsoft Corporation) Hidden Build Tools - x86 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Build Tools Language Resources - amd64 (Version: 12.0.30501 - Microsoft Corporation) Hidden Build Tools Language Resources - x86 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden CamStudio 2.7.2 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.2 - CamStudio Open Source) CastleMiner Z (HKLM-x32\...\Steam App 253430) (Version: - DigitalDNA Games LLC) CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform) Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios) Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 3.1.05170 - Cisco Systems, Inc.) Cisco AnyConnect Secure Mobility Client (x32 Version: 3.1.05170 - Cisco Systems, Inc.) Hidden CMake 3.0.1, a cross-platform, open-source build system (HKLM-x32\...\CMake 3.0.1) (Version: 3.0.1 - Kitware) COMODO Internet Security Premium (HKLM\...\{D32EF4F9-1506-434E-A813-3D4C0AA50300}) (Version: 7.0.53315.4132 - COMODO Security Solutions Inc.) Company of Heroes (HKLM-x32\...\Steam App 4560) (Version: - Relic Entertainment) Company of Heroes (New Steam Version) (HKLM-x32\...\Steam App 228200) (Version: - Relic) Company of Heroes 2 (HKLM-x32\...\Steam App 231430) (Version: - Relic Entertainment) Complemento do Microsoft Report Viewer para Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Complemento Microsoft Report Viewer para Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Compon. agg. Microsoft Report Viewer per Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Counter-Strike (HKLM-x32\...\Steam App 10) (Version: - Valve) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) Creation Kit (HKLM-x32\...\Steam App 202480) (Version: - bgs.bethsoft.com) CrystalDiskInfo 6.1.12 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.1.12 - Crystal Dew World) Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version: - FromSoftware) DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios) Dead Island: Epidemic (HKLM-x32\...\Steam App 222900) (Version: - Stunlock Studios) DebugMode Wink (HKLM-x32\...\DebugMode Wink) (Version: - ) Desura (HKLM-x32\...\Desura) (Version: 100.56 - Desura) Desura: Chronicles of a Dark Lord: Episode 1 Tides of Fate (HKLM-x32\...\Desura_69904887709728) (Version: Full - Kisareth Studios) Desura: Shattered Hourglass (HKLM-x32\...\Desura_128200478818336) (Version: Full - sawworm) Deus Ex: Game of the Year Edition (HKLM-x32\...\Steam App 6910) (Version: - Ion Storm) Dev-C++ (HKLM-x32\...\Dev-C++) (Version: 5.6.3 - Bloodshed Software) Devenv-Ressourcen für Microsoft Visual Studio 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Diablo II (HKLM-x32\...\Diablo II) (Version: - ) Dino D-Day - Dedicated Server (HKLM-x32\...\Steam App 70010) (Version: - ) Dino D-Day (HKLM-x32\...\Steam App 70000) (Version: - 800 North and Digital Ranch) Dino D-Day SDK (HKLM-x32\...\Steam App 70004) (Version: - ) Divine Divinity (HKLM-x32\...\Steam App 214170) (Version: - Larian Studios) Dotfuscator and Analytics Community Edition (x32 Version: 5.5.4521.29298 - PreEmptive Solutions) Hidden Dotfuscator and Analytics Community Edition (x32 Version: 5.5.4954.46574 - PreEmptive Solutions) Hidden Dotfuscator and Analytics Community Edition Language Pack (x32 Version: 5.5.4521.29298 - PreEmptive Solutions) Hidden Dropbox (HKCU\...\Dropbox) (Version: 2.8.2 - Dropbox, Inc.) Duke Nukem 3D (HKLM-x32\...\GOGPACKDUKE3D_is1) (Version: 2.0.0.85 - GOG.com) Duke3D (HKLM\...\{b5f456c9-720b-410c-8b24-59e92772053b}.sdb) (Version: - ) Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - Trendy Entertainment) Dungeon Siege (HKLM-x32\...\Steam App 39190) (Version: - Gas Powered Games) Dust An Elysian Tail (HKLM-x32\...\{5032E613-6DC9-4750-A02D-FED65F973F5E}) (Version: 1.04 - Humble Hearts LLC) E.Y.E - Dedicated Server (HKLM-x32\...\Steam App 91720) (Version: - ) E.Y.E: Divine Cybermancy (HKLM-x32\...\Steam App 91700) (Version: - Streum On Studio) Enclave (HKLM-x32\...\Steam App 253980) (Version: - Topware) Entity Framework 6.1.0 Tools for Visual Studio 2013 (HKLM-x32\...\{D4635FB4-434D-4663-A4C8-CFC00FA9D24E}) (Version: 12.0.30228.0 - Microsoft Corporation) Entity Framework Designer für Visual Studio 2012 - DEU (HKLM-x32\...\{47AA145C-1698-4C76-A15B-23730399A423}) (Version: 11.1.21009.00 - Microsoft Corporation) EvJO Wallpaper Changer v3.1 (HKLM-x32\...\EvJO Wallpaper Changer_is1) (Version: 3.1 - EvJOSoft.com) Expeditions: Conquistador (HKLM-x32\...\Steam App 237430) (Version: - Logic Artists) Expeditions: Conquistador Editor (HKLM-x32\...\Steam App 297700) (Version: - ) Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version: - Bethesda Game Studios) FlashDevelop (HKLM-x32\...\FlashDevelop) (Version: 4.6.2 - FlashDevelop.org) foobar2000 v1.3.2 (HKLM-x32\...\foobar2000) (Version: 1.3.2 - Peter Pawlowski) Foreign Legion: Buckets of Blood (HKLM-x32\...\Steam App 36000) (Version: - Sakari Indie) Free YouTube to MP3 Converter version 3.12.38.530 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.38.530 - DVDVideoSoft Ltd.) Freemake Video Converter Version 4.1.4 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.4 - Ellora Assets Corporation) Frozen Hearth (HKLM-x32\...\Steam App 257890) (Version: - Epiphany Games) Game Character Hub (HKLM-x32\...\Steam App 292230) (Version: - Sebastien Bini) GeoGebra 4.4 (HKLM-x32\...\GeoGebra 4.4) (Version: 4.4.39.0 - International GeoGebra Institute) Giana Sisters - Twisted Dreams (HKLM-x32\...\Giana Sisters - Twisted Dreams) (Version: 1.0.2 - Black Forest Games) Giana Sisters: Twisted Dreams - Rise of the Owlverlord (HKLM-x32\...\Steam App 246960) (Version: - Black Forest Games) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Git version 1.9.2-preview20140411 (HKLM-x32\...\Git_is1) (Version: 1.9.2-preview20140411 - The Git Development Community) GitHub (HKCU\...\5f7eb300e2ea4ebf) (Version: 1.3.3.1 - GitHub, Inc.) Glary Utilities 2.56.0.1822 (HKLM-x32\...\Glary Utilities_is1) (Version: 2.56.0.1822 - Glarysoft Ltd) GOG.com Downloader version 3.6.0 (HKLM-x32\...\{456A5815-604D-4D72-94DF-346D2B978A59}_is1) (Version: 3.6.0 - GOG.com) Gomo (HKLM-x32\...\GOGPACKGOMO_is1) (Version: 2.0.0.3 - GOG.com) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 36.0.1985.125 - Google Inc.) Google Chrome Canary (HKCU\...\Google Chrome SxS) (Version: 38.0.2119.0 - Google Inc.) Google Drive (HKLM-x32\...\{75939021-3B68-419D-8DC1-E9823BFF9658}) (Version: 1.16.7009.9618 - Google, Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Gothic (HKLM-x32\...\Steam App 65540) (Version: - Piranha – Bytes ) Gothic II: Gold Edition (HKLM-x32\...\Steam App 39510) (Version: - Piranha – Bytes) GPL Ghostscript (HKLM-x32\...\GPL Ghostscript 9.14) (Version: 9.14 - Artifex Software Inc.) Guns of Icarus Online (HKLM-x32\...\Steam App 209080) (Version: - Muse Games) Half-Life (HKLM-x32\...\Steam App 70) (Version: - Valve) Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve) Half-Life SDK (HKLM-x32\...\Steam App 254430) (Version: - ) Half-Life: Blue Shift (HKLM-x32\...\Steam App 130) (Version: - Gearbox Software) Half-Life: Opposing Force (HKLM-x32\...\Steam App 50) (Version: - Gearbox Software) Half-Life: Source (HKLM-x32\...\Steam App 280) (Version: - Valve) Hammerwatch (HKLM-x32\...\GOGPACKHAMMERWATCH_is1) (Version: 2.2.0.5 - GOG.com) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) herdProtect Anti-Malware Scanner (HKLM-x32\...\herdProtectScan) (Version: 1.0 - Reason Company Software Inc.) Hero Siege (HKLM-x32\...\Steam App 269210) (Version: - Elias Viglione) Hotline Miami (HKLM-x32\...\GOGPACKHOTLINEMIAMI_is1) (Version: 2.1.0.6 - GOG.com) HyperCam 2 (HKLM-x32\...\HyperCam 2) (Version: 2.28.01 - Hyperionics Technology LLC) I Have No Mouth, and I Must Scream (HKLM-x32\...\GOGPACKIHAVENOMOUTH_is1) (Version: 2.0.0.7 - GOG.com) IIS 8.0 Express (HKLM\...\{7BF61FA9-BDFB-4563-98AD-FCB0DA28CCC7}) (Version: 8.0.1557 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{9f4f4a9b-eec5-4906-92fe-d1f43ccf5c8d}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb) (Version: - ) IL-2 Sturmovik: 1946 (HKLM-x32\...\Steam App 15320) (Version: - 1C: Maddox Games) Image Resizer for Windows (64 bit) (Version: 3.0.4802.35565 - Brice Lambson) Hidden Image Resizer for Windows (HKLM-x32\...\{69d72156-6582-4556-8637-06f40aa7f85b}) (Version: 3.0.4802.35565 - Brice Lambson) Inkscape 0.48.4 (HKLM-x32\...\Inkscape) (Version: 0.48.4 - ) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{0EC7F9CC-4741-45AE-9F55-6E9343F726F5}) (Version: 1.1.0.36960 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3345 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.31.8.1 - Intel Corporation) Hidden JabRef 2.10 (HKLM-x32\...\JabRef 2.10) (Version: 2.10 - JabRef Team) Jack Orlando Director's Cut (HKLM-x32\...\Steam App 253960) (Version: - Toontraxx Studios) Java 7 Update 67 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417067FF}) (Version: 7.0.670 - Oracle) Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) Java 8 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218000FF}) (Version: 8.0.0 - Oracle Corporation) Java Auto Updater (x32 Version: 2.8.00.132 - Oracle, Inc.) Hidden Java SE Development Kit 8 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0180000}) (Version: 8.0.0 - Oracle Corporation) JavaFX Scene Builder 2.0 (HKLM-x32\...\{B4665EB1-1F7A-44F5-AD07-C20A938E8BC2}) (Version: 2.0 - Oracle) JavaScript Tooling (Version: 11.0.60315 - Microsoft Corporation) Hidden JavaScript Tooling (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Killing Floor (HKLM-x32\...\Steam App 1250) (Version: - Tripwire Interactive) Killing Floor SDK (HKLM-x32\...\Steam App 1260) (Version: - Tripwire Interactive) Kinect for Windows Developer Toolkit v1.8.0 (HKLM\...\{44E46B4E-CB12-42A9-8784-BBE390EB9C0B}) (Version: 1.8.0.572 - Microsoft Corporation) Kinect for Windows Drivers v1.8 (HKLM\...\{AA62B868-5D5C-46CF-BA88-386BE71D4F87}) (Version: 1.8.0.595 - Microsoft Corporation) Kinect for Windows Runtime v1.8 (HKLM\...\{2700FAD3-F82C-4ED1-862C-5F425B2A88E6}) (Version: 1.8.0.595 - Microsoft Corporation) Kinect for Windows SDK v1.8 (HKLM\...\{6702DAC4-51E7-440C-8012-9C0AE9D524DB}) (Version: 1.8.0.595 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation) KnightShift (HKLM-x32\...\Steam App 254060) (Version: - ) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Left 4 Dead (HKLM-x32\...\Steam App 500) (Version: - Valve) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Left 4 Dead 2 Authoring Tools (HKLM-x32\...\Steam App 563) (Version: - Valve) Left 4 Dead 2 Dedicated Server (HKLM-x32\...\Steam App 222860) (Version: - ) Left 4 Dead Authoring Tools (HKLM-x32\...\Steam App 513) (Version: - Valve) Left 4 Dead Dedicated Server (HKLM-x32\...\Steam App 510) (Version: - Valve) Legacy of Kain Soul Reaver (HKLM-x32\...\GOGPACKLEGACYOFKAINSOULREAVER_is1) (Version: 2.0.0.13 - GOG.com) Legends of Aethereus (HKLM-x32\...\Steam App 248410) (Version: - Three Gates) Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 11.5.1.0 - Lightworks) Little Big Adventure (HKLM-x32\...\{3EDBF6B5-E1F2-4B26-9828-367A652E64A9}_is1) (Version: 1.0 - DotEmu) LocalESPC (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden LocalESPC Dev12 (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden LocalESPCui for de-de (x32 Version: 8.59.25584 - Microsoft) Hidden LocalESPCui for en-us (x32 Version: 8.59.29989 - Microsoft) Hidden LocalESPCui for en-us Dev12 (x32 Version: 8.100.25984 - Microsoft) Hidden Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) LoiLo Game Recorder (HKLM\...\{89E4163C-BD19-45A9-BCEB-980741786799}_is1) (Version: 1.1.0.0 - LoiLo inc.) LoiLoScope 2 (HKLM-x32\...\{CAB75FFC-2377-4B95-A8FA-C9234B812A92}_is1) (Version: 2.5.3.2 - LoiLo inc) Magicka (HKLM-x32\...\Steam App 42910) (Version: - Arrowhead Game Studios) Magicka: Wizard Wars (HKLM-x32\...\Steam App 202090) (Version: - Paradox North) Magrunner - Dark Pulse (HKLM-x32\...\GOGPACKMAGRUNNERDP_is1) (Version: 2.0.0.4 - GOG.com) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Maxima 5.31.2 (HKLM-x32\...\Maxima-5.31.2_is1) (Version: 5.31.2 - The Maxima Development Team) Medal of Honor(TM) Multiplayer (HKLM-x32\...\Steam App 47830) (Version: - Electronic Arts) Memory Profiler (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{98B45D1C-6EB1-460D-A87D-2B60678DC105}) (Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (ENU) (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft Advertising SDK for Windows 8.1 - ENU (x32 Version: 8.1.30809.0 - Microsoft Corporation) Hidden Microsoft Advertising SDK for Windows Phone - ENU (x32 Version: 6.2.960.0 - Microsoft Corporation) Hidden Microsoft Advertising SDK for Windows Phone 8.1 XAML - ENU (x32 Version: 8.1.40427.0 - Microsoft Corporation) Hidden Microsoft Advertising Service Extension for Visual Studio (x32 Version: 12.0.40402.0 - Microsoft Corporation) Hidden Microsoft ASP.NET and Web Tools 2013.2 - Visual Studio 2013 (x32 Version: 2.3.50425.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 - DEU (HKLM-x32\...\{07AC2D83-E795-4AD5-970D-B9BD14A1E411}) (Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update - DEU (x32 Version: 3.0.30710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update (x32 Version: 3.0.30710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 (HKLM-x32\...\{DCDEC776-BADD-48B9-8F9A-DFF513C3D7FA}) (Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools - DEU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools - ENU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 - Visual Studio 2013 - ENU (x32 Version: 4.1.21001.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime - DEU (x32 Version: 4.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime (x32 Version: 4.0.20716.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Frameworks and Tools - Visual Studio 2013 - ENU (x32 Version: 5.1.20409.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages - DEU (HKLM-x32\...\{93EEC4E9-EEFE-4027-ACD3-6E8C1D085975}) (Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools - DEU (x32 Version: 1.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools (x32 Version: 1.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages (HKLM-x32\...\{631471BE-DEAB-454B-A9AC-CE3EB42C28B3}) (Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools - DEU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools - ENU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 - Visual Studio 2013 - ENU (x32 Version: 4.1.21001.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 Runtime - DEU (x32 Version: 2.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 Runtime (x32 Version: 2.0.20716.0 - Microsoft Corporation) Hidden Microsoft C++ Azure Mobile SDK for Visual Studio 2013 (x32 Version: 1.0 - Microsoft Corporation) Hidden Microsoft C++ REST SDK for Visual Studio 2013 (x32 Version: 1.0 - Microsoft Corporation) Hidden Microsoft Exchange Web Services Managed API 2.1 (x32 Version: 15.0.847.30 - Microsoft Corporation) Hidden Microsoft Expression Blend SDK for .NET 4 (x32 Version: 2.0.20525.0 - Microsoft Corporation) Hidden Microsoft Expression Blend SDK for Silverlight 4 (x32 Version: 2.0.20525.0 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation) Microsoft Help Viewer 2.0 (HKLM-x32\...\Microsoft Help Viewer 2.0) (Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.0 Language Pack - DEU (HKLM-x32\...\Microsoft Help Viewer 2.0 Language Pack - DEU) (Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 Language Pack - DEU (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 (x32 Version: 2.1.21005 - Microsoft Corporation) Hidden Microsoft Identity Extensions (Version: 2.0.1459.0 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2012 Core (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2012 v3.0 Core (x32 Version: 11.0.60308 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2012 v3.0 CoreRes - DEU (x32 Version: 11.0.60308 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2013 Core (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2013 CoreRes - ENU (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2013 v4.5 Tools (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2013 v4.5 ToolsRes - ENU (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft LightSwitch für Visual Studio 2012 CoreRes - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft LightSwitch v4.5 SDK (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft NuGet - Visual Studio 2012 (x32 Version: 2.0.30625.9003 - Microsoft Corporation) Hidden Microsoft NuGet - Visual Studio 2013 (x32 Version: 2.8.50313.46 - Microsoft Corporation) Hidden Microsoft Office 2013 Developer Tools for Microsoft Visual Studio (x64) - ENU Language Pack (Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft Office 2013 Developer Tools for Microsoft Visual Studio (x64) (Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft Office 365 ProPlus - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 15.0.4631.1004 - Microsoft Corporation) Microsoft Office Developer Tools for Visual Studio (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft Office Developer Tools for Visual Studio ENU Language Pack (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.3.1165.0612 - Microsoft Corporation) Microsoft Portable Library Multi-Targeting Pack (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - chs (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - cht (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - csy (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - deu (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - enu (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - esn (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - fra (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - ita (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - jpn (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - kor (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - plk (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - ptb (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - rus (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - trk (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On for Visual Studio 2012 (x32 Version: 11.1.2802.16 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On for Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On für Visual Studio 2012 (x32 Version: 11.1.2802.16 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On für Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation) Microsoft Server Speech Platform Runtime (x86) (HKLM-x32\...\{22CB8ED7-DF57-4864-BD04-F63B9CE4B494}) (Version: 11.0.7400.345 - Microsoft Corporation) Microsoft SharePoint 2013 Developer Tools for Visual Studio 2012 Nuget Package (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Silverlight 4 SDK - Deutsch (HKLM-x32\...\{8EA792A5-38AA-4F0E-8DFE-D1BAF1145431}) (Version: 4.0.60310.0 - Microsoft Corporation) Microsoft Silverlight 5 SDK - DEU (HKLM-x32\...\{F351AA2C-723C-4CFE-A7CB-8E43AB164F7F}) (Version: 5.0.61118.0 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{58FED865-4F13-408D-A5BF-996019C4B936}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{1B876496-B3A2-4D22-9B12-B608A3FD4B8B}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x64) (HKLM\...\{A6BA243E-85A3-4635-A269-32949C98AC7F}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{6C026A91-640F-4A23-8B68-05D589CC6F18}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{2F7DBBE6-8EBC-495C-9041-46A772F4E311}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{43A5C316-9521-49C3-B9B6-FCE5E1005DF0}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{D411E9C9-CE62-4DBF-9D92-4CB22B750ED5}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL Compiler Service (HKLM\...\{55FABD1D-8BE6-4A1A-958D-52B15F1DFEF0}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{54C5041B-0E91-4E92-8417-AAA12493C790}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL Language Service (HKLM-x32\...\{04DD7AF4-A6D3-4E30-9BB9-3B3670719234}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (11.1.20627.00) (HKLM-x32\...\{F6F1EE45-97E9-48A3-94B2-044B0A3C08D3}) (Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server Data Tools - enu (12.0.30919.1) (HKLM-x32\...\{0D7FCBFB-F478-4D32-901C-83F0BF5A3501}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (11.1.20627.00) (HKLM-x32\...\{CEEDB2C4-46BE-4340-BAB9-F30110D9BBB8}) (Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - enu (12.0.30919.1) (HKLM-x32\...\{6781FF9B-E87D-4A03-9373-A55A288B83FA}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{D434E072-F482-4F52-AB97-7B19DD5DAEB5}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (HKLM\...\{485F4AC6-F79E-4482-A0D2-EDF0CCE1E124}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{070C38AC-05CE-43DF-9A20-141332F6AB2B}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{05FF8209-C4F1-4C77-BC28-791653156D20}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft Team Foundation Server 2013 Update 2 Object Model (x64) (Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Team Foundation Server 2013 Update 2 Object Model Language Pack (x64) - ENU (Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual C++ ARM Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64 Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64 Native Compilers - ENU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64 Native Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-arm Cross Compilers - ENU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-arm Cross Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-x86 Cross Compilers - ENU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-x86 Cross Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x86 Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Designtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 32bit Compilers - DEU Resources (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers - DEU Resources (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers For Windows Phone - ENU Resources (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers For Windows Phone (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Core Libraries (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Core Libraries For Windows Phone (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Extended Libraries (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Microsoft Foundation Class Libraries (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{cb41fc68-4442-4f7f-b22f-8f31c74897ac}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Debug Runtime - 11.0.51106 (Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86-x64 Compilers (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Designtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 32bit Compilers - ENU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Compilers - ENU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Core Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Extended Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Microsoft Foundation Class Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Debug Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Debug Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86-x64 Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Office Developer Tools (x64) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Office Developer Tools (x64) Language Pack - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50325 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.50330 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU (Version: 10.0.50325 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50325 - Microsoft Corporation) Microsoft Visual Studio 2012 Devenv (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 SharePoint Developer Tools (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 SharePoint Developer Tools DEU Language Pack (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell (Minimum) (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell (Minimum) Interop Assemblies (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell-(Mindest)-Ressourcen (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Tools für SQL Server Compact 4.0 SP1 DEU (x32 Version: 4.0.8876.1 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Leistungserfassungstools - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Leistungserfassungstools (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Vorbereitung (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Devenv (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Devenv Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Diagnostic Tools - amd64 (Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Diagnostic Tools - x86 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Performance Collection Tools - ENU (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Performance Collection Tools (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Preparation (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Profiling Tools (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell (Minimum) (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell (Minimum) Interop Assemblies (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell (Minimum) Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Team Explorer Language Pack - ENU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 VsGraphics Helper Dependencies (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 XAML UI Designer - ENU (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 XAML UI Designer (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2012 - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2012 (HKLM-x32\...\{3682f425-c5f9-4fd6-b36a-793f4606b68f}) (Version: 11.0.50727.26 - Microsoft Corporation) Microsoft Visual Studio Professional 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2013 - ENU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2013 (HKLM-x32\...\{6dff50d0-3bc3-4a92-b724-bf6d6a99de4f}) (Version: 12.0.21005.13 - Microsoft Corporation) Microsoft Visual Studio Professional 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Object Model (Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Object Model Language Pack - DEU (Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Team Explorer (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Team Explorer Language Pack - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 XAML UI Designer Core (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 XAML UI Designer deu Resources (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Web Deploy 3.5 (HKLM\...\{3674F088-9B90-473A-AAC3-20A00D8D810C}) (Version: 3.1237.1762 - Microsoft Corporation) Microsoft Web Deploy dbSqlPackage Provider - DEU (HKLM-x32\...\{86756584-C41A-4CA3-B42D-4768C7720F56}) (Version: 10.3.20225.0 - Microsoft Corporation) Microsoft Web Developer Tools 2012.2 - Visual Studio 2012 - deu (x32 Version: 1.2.40308.0 - Microsoft Corporation) Hidden Microsoft Web Developer Tools 2012.2 - Visual Studio 2012 (x32 Version: 1.2.40308.0 - Microsoft Corporation) Hidden Microsoft Web Platform Installer 4.0 (HKLM\...\{E2B8249D-895C-4685-8C83-00F3B1A13028}) (Version: 4.0.1622 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) MiKTeX 2.9 (HKLM-x32\...\MiKTeX 2.9) (Version: 2.9 - MiKTeX.org) Mirror's Edge (HKLM-x32\...\Steam App 17410) (Version: - DICE) Module Microsoft Report Viewer pour Visual Studio*2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Monday Night Combat (HKLM-x32\...\Steam App 63200) (Version: - Uber Entertainment) Mount & Blade (HKLM-x32\...\Steam App 22100) (Version: - TaleWorlds Entertainment) Mount & Blade: Warband (HKLM-x32\...\Steam App 48700) (Version: - TaleWorlds Entertainment) Mozilla Firefox 31.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 de)) (Version: 31.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) MySQL Documents 5.6 (HKLM-x32\...\{790BC099-47CC-4215-9BF3-B20AC3D348B2}) (Version: 5.6.19 - Oracle Corporation) MySQL Examples and Samples 5.6 (HKLM-x32\...\{8934A43E-D901-4337-8313-0C084FBB8ADE}) (Version: 5.6.19 - Oracle Corporation) MySQL Installer (HKLM-x32\...\{F0A890B5-DE46-4468-A1DF-8F4DE5C478D0}) (Version: 1.3.6.0 - Oracle Corporation) MySQL Server 5.6 (HKLM\...\{FB2E13E5-05CE-4C27-B645-A6FB7D0AB412}) (Version: 5.6.19 - Oracle Corporation) MySQL Workbench 6.1 CE (HKLM-x32\...\{207EB27E-0075-4CFD-8340-A5E386EB85F8}) (Version: 6.1.6 - Oracle Corporation) Narcissu 1st & 2nd (HKLM-x32\...\Steam App 264380) (Version: - stage-nana) Natural Selection 2 (HKLM-x32\...\Steam App 4920) (Version: - Unknown Worlds Entertainment) Nether (HKLM-x32\...\Steam App 247730) (Version: - Phosphor Games) nFringe 1.3 (1.3.0.2) (HKLM-x32\...\{E5ADEF77-21D0-458C-84CE-8F0303874959}) (Version: 1.3.0.2 - Pixel Mine, Inc.) Nitro Reader 3 (HKLM\...\{4756C731-B54E-451A-9AF1-86E8AB1BEBBB}) (Version: 3.5.6.5 - Nitro) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.7 - Notepad++ Team) NVIDIA Control Panel 332.50 (Version: 332.50 - NVIDIA Corporation) Hidden NVIDIA Graphics Driver 332.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 332.50 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.142.992 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Optimus Update 11.10.11 (Version: 11.10.11 - NVIDIA Corporation) Hidden NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA PhysX (Legacy) (HKLM-x32\...\{6F9D5A0B-202C-4161-BC7F-0664EA39E7E7}) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Update Core (Version: 11.10.11 - NVIDIA Corporation) Hidden Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4631.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4631.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4631.1004 - Microsoft Corporation) Hidden Omerta Pack (HKLM-x32\...\GOGPACKOMERTA_is1) (Version: 2.2.0.10 - GOG.com) One Finger Death Punch (HKLM-x32\...\Steam App 264200) (Version: - Silver Dollar Games) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) Open XML SDK 2.5 for Microsoft Office (x32 Version: 2.5.5631 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenVPN 2.3.4-I001 (HKLM-x32\...\OpenVPN) (Version: 2.3.4-I001 - ) Operation Flashpoint: Dragon Rising (HKLM-x32\...\Steam App 12830) (Version: - Codemasters Studios) ORION: Dino Horde (HKLM-x32\...\Steam App 104900) (Version: - Spiral Game Studios) ORION: Dino Horde Dedicated Server (HKLM-x32\...\Steam App 213040) (Version: - ) Overlord (HKLM-x32\...\Steam App 11450) (Version: - Triumph Studios) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.) Papers, Please (HKLM-x32\...\Steam App 239030) (Version: - 3909) Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games) Patrician III (HKLM-x32\...\Steam App 33570) (Version: - Ascaron Entertainment ltd.) Port Royale 3 (HKLM-x32\...\Steam App 205610) (Version: - Gaming Minds) Portal (HKLM-x32\...\Steam App 400) (Version: - Valve) POSTAL (HKLM-x32\...\Steam App 232770) (Version: - Running With Scissors) Postal 2 Share The Pain (HKLM-x32\...\GOGPACKPOSTAL2STP_is1) (Version: 2.0.0.6 - GOG.com) POV-Ray for Windows v3.7 (HKCU\...\POV-Ray for Windows v3.7) (Version: 3.7 - Persistence of Vision Raytracer Pty. Ltd.) PreEmptive Analytics Client German Language Pack (x32 Version: 1.0.2180.1 - PreEmptive Solutions) Hidden PreEmptive Analytics Visual Studio Components (x32 Version: 1.0.2180.1 - PreEmptive Solutions) Hidden PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.3197.1 - PreEmptive Solutions) Hidden Prerequisites for SSDT (HKLM-x32\...\{35C1D9D6-87C0-46A3-B1B4-EDBCC063221C}) (Version: 11.1.3000.0 - Microsoft Corporation) Project Suite Management Utility (HKCU\...\6335bccc57bbf458) (Version: 3.0.0.0 - Mavrik Games) PSPP (HKLM-x32\...\PSPP) (Version: 0.8.3 - Free Software Foundation, Inc.) Psychonauts (HKLM-x32\...\Steam App 3830) (Version: - Double Fine Productions) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.992 - Even Balance, Inc.) Python Tools Redirection Template (x32 Version: 1.1 - Microsoft Corporation) Hidden Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros) QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) QUIZPro V4.53 (HKLM-x32\...\QUIZPro_is1) (Version: QUIZPro V.4.53 - Litschi) Razer Surround (HKLM-x32\...\Razer Surround) (Version: 1.05.08 - Razer Inc.) Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.13 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.19.726.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7116 - Realtek Semiconductor Corp.) Red Orchestra 2: Heroes of Stalingrad - Single Player (HKLM-x32\...\Steam App 236830) (Version: - ) Red Orchestra Windows Dedicated Server (HKLM-x32\...\Steam App 223240) (Version: - ) Restaurant Empire II (HKLM-x32\...\Steam App 32900) (Version: - Enlight Software Limited ) Rise of Incarnates (HKLM-x32\...\Steam App 258160) (Version: - ) Rise of the Argonauts (HKLM-x32\...\Steam App 12770) (Version: - Liquid Entertainment) Rising Storm/Red Orchestra 2 Multiplayer (HKLM-x32\...\Steam App 35450) (Version: - Tripwire Interactive) Robocraft (HKLM-x32\...\Steam App 301520) (Version: - Freejam) RPG Maker VX Ace (HKLM-x32\...\Steam App 220700) (Version: - Enterbrain) RPG Maker XP (HKLM-x32\...\Steam App 235900) (Version: - Degica) Runaway: A Road Adventure (HKLM-x32\...\Steam App 7210) (Version: - Pendulo Studios) Rush Bros (HKLM-x32\...\Steam App 234490) (Version: - XYLA Entertainment) Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition) Saira (HKLM-x32\...\Steam App 48900) (Version: - Nicklas Nygren) Sanctum (HKLM-x32\...\Steam App 91600) (Version: - Coffee Stain Studios) Sandboxie 4.12 (64-bit) (HKLM\...\Sandboxie) (Version: 4.12 - Sandboxie Holdings, LLC) Sanitarium (HKLM-x32\...\GOGPACKSANITARIUM_is1) (Version: 2.0.0.25 - GOG.com) Scribblenauts Unlimited (HKLM-x32\...\Steam App 218680) (Version: - 5th Cell Media) Scribus 1.4.4 (64bit) (HKLM\...\Scribus 1.4.4) (Version: 1.4.4 - The Scribus Team) Secure Download Manager (HKLM-x32\...\{C58626D6-7EBD-460D-8B6C-75B3C3464879}) (Version: 3.1.60 - Kivuto Solutions Inc.) SecureW2 EAP Suite 1.1.3 for Windows (HKLM-x32\...\SecureW2 EAP Suite) (Version: - ) Septerra Core (HKLM-x32\...\GOGPACKSEPTERRACORE_is1) (Version: 2.0.0.10 - GOG.com) Shadowrun Returns (HKLM-x32\...\Steam App 234650) (Version: - Harebrained Schemes) SharePoint Client Components (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden SharePoint Client Components (Version: 16.0.2617.1200 - Microsoft Corporation) Hidden Shutdown Timer (HKLM\...\{0B1BBEE3-C10D-44BE-A6BE-EEC867315F87}) (Version: 3.3.4 - Sinvise Systems) Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.) Sid Meier's Pirates! (HKLM-x32\...\Steam App 3920) (Version: - Firaxis Games) Sid Meier's Railroads! (HKLM-x32\...\Steam App 7600) (Version: - Firaxis Games) SimpleScreenshot 1.40 (HKLM-x32\...\SimpleScreenshot) (Version: - ) Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.) SmartGit/Hg 5.0.9 (HKLM-x32\...\SmartGit/Hg 5_is1) (Version: - syntevo GmbH) Sniper Elite V2 (HKLM-x32\...\Steam App 63380) (Version: - Rebellion) Sniper Elite: Zombie Army (HKLM-x32\...\Steam App 235700) (Version: - Rebellion) Sniper Elite: Zombie Army 2 (HKLM-x32\...\Steam App 247930) (Version: - Rebellion) Source SDK (HKLM-x32\...\Steam App 211) (Version: - Valve) Space Hack (HKLM-x32\...\Steam App 315260) (Version: - Rebelmind) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.3.39 - Safer-Networking Ltd.) Spyware Terminator 2012 (HKLM-x32\...\{56736259-613E-4A3B-B428-6235F2E76F44}_is1) (Version: 3.0.0.82 - Crawler.com) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Super Hexagon (HKLM-x32\...\Steam App 221640) (Version: - Terry Cavanagh) System Shock 2 (HKLM-x32\...\Steam App 238210) (Version: - Irrational Games) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) Team Explorer for Microsoft Visual Studio 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) Team Fortress Classic (HKLM-x32\...\Steam App 20) (Version: - Valve) TeXstudio 2.8.2 (HKLM-x32\...\TeXstudio_is1) (Version: 2.8.2 - Benito van der Zander) The Bard's Tale (HKLM-x32\...\GOGPACKBARDSTALE_is1) (Version: 2.0.0.7 - GOG.com) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) The Ship (HKLM-x32\...\Steam App 2400) (Version: - Outerlight Ltd.) The Ship Dedicated Server (HKLM-x32\...\Steam App 2403) (Version: - Outerlight) The Tower (HKLM-x32\...\Steam App 310870) (Version: - Narrow Monolith) The Witcher Enhanced Edition Director's Cut (HKLM-x32\...\GOGPACKWITCHEREEDC_is1) (Version: 2.0.0.12 - GOG.com) Theme Hospital (HKLM-x32\...\GOGPACKTHEMEHOSPITAL_is1) (Version: 2.0.0.5 - GOG.com) They Bleed Pixels (HKLM-x32\...\Steam App 211260) (Version: - Spooky Squid Games Inc.) Tiny and Big: Grandpa's Leftovers (HKLM-x32\...\Steam App 205910) (Version: - Black Pants Game Studio) Tomb Raider: Underworld (HKLM-x32\...\Steam App 8140) (Version: - Crystal Dynamics) Tor 0.2.4.22 (HKLM-x32\...\Tor) (Version: - ) Torchlight II (HKLM-x32\...\Steam App 200710) (Version: - Runic Games) Toribash (HKLM-x32\...\Steam App 248570) (Version: - Nabi Studios) Tropico 4 (HKLM-x32\...\Steam App 57690) (Version: - Haemimont Games) TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation) Tunngle beta (HKLM-x32\...\Tunngle beta_is1) (Version: - Tunngle.net GmbH) Two Worlds: Epic Edition (HKLM-x32\...\Steam App 1930) (Version: - Reality Pump Studios) TypeScript Power Tool (x32 Version: 1.0.1.0 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2013 (x32 Version: 1.0.1.0 - Microsoft Corporation) Hidden Ultionus: A Tale of Petty Revenge (HKLM-x32\...\Steam App 279160) (Version: - Last Dimension) Unity (HKLM-x32\...\Unity) (Version: 4.5.2f1 - Unity Technologies ApS) Unity Web Player (HKCU\...\UnityWebPlayer) (Version: 4.5.2f1 - Unity Technologies ApS) Unreal Development Kit (HKLM-x32\...\Steam App 13260) (Version: - Epic Games) Unreal Development Kit: 2013-07 (HKLM\...\UDK-4cb5aa12-6b76-46d8-b2ed-fa02569e5804) (Version: - Epic Games, Inc.) Unreal Development Kit: 2013-07 (HKLM\...\UDK-6e3cb988-ef1f-4c93-9ffd-5d9758cd5a07) (Version: - Epic Games, Inc.) Unreal Development Kit: 2013-07 (HKLM\...\UDK-99dd33b7-a8c9-4121-bb5b-2d11e1bf6e64) (Version: - Epic Games, Inc.) Unreal Development Kit: 2013-09 (HKLM\...\UDK-4507e662-e8db-4415-b08e-3d68c58073a6) (Version: - Epic Games, Inc.) Unreal Engine (HKLM\...\{0EB63BF4-FE9C-4F79-AF61-A2711CA7FD30}) (Version: 1.1.2.0 - Epic Games, Inc.) Unreal X-Editor - Free IDE for UnrealScript (HKLM-x32\...\Unreal X-Editor 3.1.5) (Version: 3.1.5 - Dynamic Effects) Unreal X-Editor (x32 Version: 3.1.5 - Dynamic Effects) Hidden Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Update for Microsoft Visual Studio 2012 (KB2781514) (HKLM-x32\...\{56ef8912-352f-4fab-9c73-6f1c92a7127f}) (Version: 11.0.51219 - Microsoft Corporation) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Vectorian Giotto 3.0.0 (HKLM-x32\...\Vectorian Giotto_is1) (Version: - Vectorian Inc.) Vidalia 0.2.21 (HKLM-x32\...\Vidalia) (Version: - ) Visual F# 3.1 SDK (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Visual F# 3.1 VS (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Visual Studio 2012 Prerequisites - DEU Language Pack (Version: 11.0.50727 - Microsoft Corporation) Hidden Visual Studio 2012 Prerequisites (Version: 11.0.50727 - Microsoft Corporation) Hidden Visual Studio 2012 Update 2 (KB2707250) (HKLM-x32\...\{2fba7dd0-b8eb-4185-aea3-e6910d3f8102}) (Version: 11.0.60315 - Microsoft Corporation) Visual Studio 2012 Verification SDK (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Visual Studio 2013 Prerequisites - ENU Language Pack (Version: 12.0.21005 - Microsoft Corporation) Hidden Visual Studio 2013 Prerequisites (Version: 12.0.21005 - Microsoft Corporation) Hidden Visual Studio 2013 Update 2 (KB2829760) (HKLM-x32\...\{3c348532-c3bd-4bae-a928-7b555f8c808f}) (Version: 12.0.30501 - Microsoft Corporation) Visual Studio 2013 的 Microsoft Report Viewer 附加元件 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Visual Studio 2013용 Microsoft Report Viewer 추가 기능 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Visual Studio Extensions for Windows Library for JavaScript (x32 Version: 1.0.9201.20602 - Microsoft Corporation) Hidden Visual Studio Extensions for Windows Library for JavaScript (x32 Version: 2.1.30501.00 - Microsoft Corporation) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) VS Update core components (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden VVVVVV (HKLM-x32\...\GOGPACKVVVVVV_is1) (Version: 2.0.0.1 - GOG.com) War of the Roses (HKLM-x32\...\Steam App 42160) (Version: - Fatshark) Warcraft III (HKLM-x32\...\Warcraft III) (Version: - ) Warcraft III: All Products (HKCU\...\Warcraft III) (Version: - ) WCF Data Services 5.0 (for OData v3) DEU Language Pack (x32 Version: 5.0.50628.0 - Microsoft Corporation) Hidden WCF Data Services 5.0 (for OData v3) Primary Components (x32 Version: 5.0.50628.0 - Microsoft Corporation) Hidden WCF Data Services 5.6.0 Runtime (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2012 (x32 Version: 5.0.50710.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2013 (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Visual Studio 11 DEU Language Pack (x32 Version: 5.0.50710.0 - Microsoft Corporation) Hidden WCF RIA Services V1.0 SP2 (HKLM-x32\...\{5D8DD6A8-C4D7-4554-93F9-F1CC28C72600}) (Version: 4.1.62812.0 - Microsoft Corporation) WebStorage (HKLM-x32\...\WebStorage) (Version: 2.1.8.381 - ASUS Cloud Corporation) WildTangent Games App (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-asus) (Version: 4.0.10.25 - WildTangent) Windows 8 Development Essentials (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Windows App Certification Kit Native Components (Version: 8.100.26629 - Microsoft Corporation) Hidden Windows App Certification Kit x64 (x32 Version: 8.100.26695 - Microsoft Corporation) Hidden Windows Azure Mobile Services SDK (x32 Version: 1.0.20401.0 - Microsoft Corporation) Hidden Windows Azure Mobile Services Tools for Visual Studio - v1.1 (x32 Version: 1.1.20407.1601 - Microsoft Corporation) Hidden Windows Azure Shared Components for Microsoft Visual Studio 2013 - v1.1 (x32 Version: 1.1.20410.1601 - Microsoft Corporation) Hidden Windows Azure Tools for LightSwitch for Visual Studio 2013 - March 2014 Update - v2.2 (x32 Version: 2.2.20311.1602 - Microsoft) Hidden Windows Azure Tools for LightSwitch for Visual Studio 2013 - v2.1 (x32 Version: 2.1.10909.1601 - Microsoft) Hidden Windows Azure Tools for LightSwitch HTML Client for Visual Studio 2012 (x32 Version: 1.8.60301.1601 - Microsoft) Hidden Windows Azure Tools für LightSwitch HTML Client für Visual Studio 2012 (DEU) (x32 Version: 1.8.60301.1601 - Microsoft) Hidden Windows Driver Package - ASUS (ATP) Mouse (01/07/2014 1.0.0.197) (HKLM\...\2BEE838DC3D664A0CAB23AEA0332BB3877ED0685) (Version: 01/07/2014 1.0.0.197 - ASUS) Windows Phone 8.0 Emulation Host (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Windows Phone 8.0 Emulation Images (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Windows Phone 8.0 Emulation Images (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.0 Managed SDK Profiler (ARM) (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Windows Phone 8.0 Managed SDK Profiler (X86) (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Windows Phone 8.0 Tools for Visual Studio 2013 - ENU Language Pack (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.0 Tools for Visual Studio 2013 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.1 Emulators - ENU (HKLM-x32\...\{940596e5-652a-4970-8a5a-492e73ed0fbb}) (Version: 12.0.30501.0 - Microsoft Corporation) Windows Phone 8.1 SDK - ARM (x32 Version: 8.1.12358 - Microsoft Corporation) Hidden Windows Phone 8.1 SDK - Desktop (x32 Version: 8.1.12358 - Microsoft Corporation) Hidden Windows Phone 8.1 SDK - Images (x32 Version: 8.1.12358 - Microsoft Corporation) Hidden Windows Phone 8.1 SDK - x64 (Version: 8.1.12358 - Microsoft Corporation) Hidden Windows Phone 8.1 SDK - x86 (x32 Version: 8.1.12358 - Microsoft Corporation) Hidden Windows Phone 8.1 Tools for Visual Studio 2013 - ENU (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.1 Tools for Visual Studio 2013 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.1 Tools for Visual Studio Professional 2013 - ENU (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.1 Tools for Visual Studio Professional 2013 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone app for desktop (HKLM-x32\...\{19773614-FC22-4ACC-AAA3-E6BDA81ACF92}) (Version: 1.1.2726.0 - Microsoft Corporation) Windows Phone Emulator 8.0 Configurator (x32 Version: 11.0.60830 - Microsoft Corporation) Hidden Windows Phone Emulator 8.1 Configurator (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone SDK 8.0 Assemblies (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Windows Phone SDK 8.0 Assemblies (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone Tools Finalizer (Version: 11.0.60610 - Microsoft Corporation) Hidden Windows Phone Tools Finalizer (Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Runtime Intellisense Content - de-de (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Runtime Intellisense Content - en-us (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit (x32 Version: 8.100.26695 - Microsoft Corporation) Hidden Windows Software Development Kit (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x64 Remote (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x64 Remote (Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps (x32 Version: 8.100.26695 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (Version: 8.100.26695 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (x32 Version: 8.100.26695 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows XP Targeting with C++ (Version: 11.0.51106 - Microsoft Corporation) Hidden Windows XP Targeting with C++ (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.42.0 - ASUS) Wings 3D 1.5.2 (HKLM-x32\...\Wings 3D 1.5.2) (Version: - ) Wizardry 8 (HKLM-x32\...\GOGPACKWIZARDRY8_is1) (Version: 2.0.0.6 - GOG.com) Workflow Manager Client 1.0 (Version: 2.0.40131.0 - Microsoft Corporation) Hidden Workflow Manager Tools 1.0 for Visual Studio (Version: 2.0.40326.0 - Microsoft Corporation) Hidden World War 2 Time of Wrath (HKLM-x32\...\World War 2 Time of Wrath) (Version: 1.91 - Wastelands Interactive) Worms Revolution (HKLM-x32\...\Steam App 200170) (Version: - Team17 Digital Ltd.) XAMPP (HKLM-x32\...\xampp) (Version: 1.8.3-4 - Bitnami) xp-AntiSpy 3.98-2 (HKLM-x32\...\xp-AntiSpy) (Version: - Christian Taubenheim) Надстройка Microsoft Report Viewer для Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden 用于 Visual Studio 2013 的 Microsoft 报告查看器加载项 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\userABC_000\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\USERS\userABC_000\APPDATA\LOCAL\GOOGLE\UPDATE\1.3.24.15\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{D45F043D-F17F-4e8a-8435-70971D9FA46D}\InprocServer32 -> D:\Multimedia\3D\Blender\BlendThumb64.dll () CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\USERS\userABC_000\APPDATA\LOCAL\GOOGLE\UPDATE\1.3.24.15\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\userABC_000\AppData\Local\Microsoft\SkyDrive\17.3.1165.0612\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\userABC_000\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File ==================== Restore Points ========================= 26-07-2014 14:58:45 DirectX wurde installiert 28-07-2014 17:10:18 DirectX wurde installiert 02-08-2014 19:42:30 Installed MySQL Installer 05-08-2014 16:03:57 Installed Cisco AnyConnect Secure Mobility Client 10-08-2014 21:22:05 Windows Modules Installer ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {071024A5-93D2-41B7-9525-91BF42DCCD6F} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2013-10-07] (ASUS) Task: {07BCA3E5-7C0E-4CF7-A8AD-7E2476A252C0} - System32\Tasks\Microsoft Office 15 Sync Maintenance for LORDHELIX-userABC_000 LordHelix => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-06-03] (Microsoft Corporation) Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {0E288CFE-9C9F-4037-944C-A2989F09A82E} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-06-10] (Microsoft Corporation) Task: {1BDE21C0-1B58-41E2-A0A9-E6E58FBF5F57} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\SYSTEM32\MRT.EXE [2014-07-09] (Microsoft Corporation) Task: {1CBAB33D-8954-4ED6-BEA9-2EFA30975FEF} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {256676FD-DD7D-487D-9DB3-C71BED9917EC} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {33F2DEB3-218A-4624-A39C-F176AE0BF798} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-21] (Google Inc.) Task: {34F5532B-4E91-42EC-B0BE-AD854CB7C644} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {373FD8EC-A4A0-4676-B86B-C0696870283C} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {378CABA3-2190-443B-AFC2-61FDEEC7141E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-21] (Google Inc.) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {54890C1D-6B93-4DA6-AEFC-FA0F40FF6D16} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: {54AAF528-8B26-4C6B-A73E-B7858501D9DC} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-05-20] (Microsoft Corporation) Task: {641A0447-73C2-4B9E-B312-2773444E6CC1} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-05-20] (Microsoft Corporation) Task: {69011004-E082-42C3-A532-99906A186A89} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation) Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73A0D382-EF91-465B-859F-B34DFE5C9BF0} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-06-19] (Microsoft Corporation) Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {7A9D3515-E458-459B-8634-27759B414B41} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2014-02-13] (AsusTek) Task: {7D8A9A68-E93F-45D9-832C-A8F531C4B612} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload Task: {81EF2D0A-5662-4260-986A-7C09FF011FAD} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe [2013-11-04] () Task: {83513A46-3119-428C-A0C2-713975AA3DF1} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {9D80D9D4-40EF-4903-99B3-F74C3ABE5B53} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {A1381A5E-2FC4-45C2-A801-FCEEBC97AD76} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {A204C26D-D7AB-4389-9F8B-E4E0754286A4} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86) [2014-08-11] () Task: {AC9196CF-455F-4584-BD06-0B1DD1F17EE1} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86) [2014-08-11] () Task: {B2CDB367-5C1E-44E1-9165-6C247DCE6A5F} - System32\Tasks\GlaryInitialize => C:\Program Files (x86)\Glary Utilities\initialize.exe [2013-05-27] (Glarysoft Ltd) Task: {B572FD34-4166-439A-9D4B-998571648E73} - System32\Tasks\ASUS Splendid ColorU => C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [2013-10-07] (ASUSTeK Computer Inc.) Task: {BD6C4F69-E43F-4043-8425-C26BB3551A2F} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {C2135F2D-2123-4198-8E96-876BC306760B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001UA => C:\Users\userABC_000\AppData\Local\Google\Update\GoogleUpdate.exe [2014-04-11] (Google Inc.) Task: {C53289E1-E762-4BAA-B175-EA6229D2A566} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-110364190-1643542413-822559574-1001 => %localappdata%\Microsoft\SkyDrive\SkyDrive.exe Task: {C82ECEBD-E995-4DD4-BD8C-FAF35B8174CC} - System32\Tasks\P4GIntlCtrl => C:\Program Files\ASUS\P4G\IntlDPST.exe [2014-01-03] () Task: {CC32AE1E-981E-4201-B5D7-4FBA0E6F79F2} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2014-01-16] (ASUSTek Computer Inc.) Task: {CD59E4CD-4542-4273-B698-C134F8317725} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2013-11-27] () Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {D9230597-8038-4237-A77A-7CBA5CA77D45} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {DA929173-9492-4BCD-A604-EAB0FC9F7D35} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2014-01-03] (ASUS) Task: {DF9CA9B8-D4FC-487F-8914-9BBFFCC3B25A} - System32\Tasks\{31DDBD37-5DB7-4030-8064-10B0CAA806C3} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2014-03-25] (COMODO) Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {E86097B7-310E-4295-B371-8FBC2548B4C1} - System32\Tasks\CCleanerSkipUAC => C:\PROGRAM FILES\CCLEANER\CCLEANER.EXE [2014-07-23] (Piriform Ltd) Task: {EA3218C4-26B1-442C-BDDC-1F5D2A4A238E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001Core => C:\Users\userABC_000\AppData\Local\Google\Update\GoogleUpdate.exe [2014-04-11] (Google Inc.) Task: {EB573403-3A19-4E8E-BECE-3D753D2E27E3} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: C:\Windows\Tasks\GlaryInitialize.job => C:\Program Files (x86)\Glary Utilities\initialize.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001Core.job => C:\Users\userABC_000\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001UA.job => C:\Users\userABC_000\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-03-19 08:10 - 2014-01-24 08:27 - 00117536 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-04-22 17:14 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-05-06 13:04 - 2014-05-06 13:04 - 12941824 _____ () C:\Program Files\MySQL\MySQL Server 5.6\bin\mysqld.exe 2014-04-24 00:25 - 2014-04-24 00:25 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-01-03 19:26 - 2014-01-03 19:26 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll 2014-01-03 19:26 - 2014-01-03 19:26 - 00028672 _____ () C:\Program Files\ASUS\P4G\plctrl.dll 2013-04-15 18:39 - 2013-04-15 18:39 - 00073424 _____ () C:\PROGRAM FILES\COMODO\COMODO INTERNET SECURITY\scanners\smart.cav 2014-06-11 05:34 - 2014-06-11 05:34 - 00063400 _____ () C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\zlib1.dll 2014-06-21 05:04 - 2014-04-25 14:11 - 00109400 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-06-21 05:04 - 2014-04-25 14:11 - 00167768 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-06-21 05:04 - 2014-04-25 14:11 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl 2014-06-21 05:04 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll 2014-06-21 05:04 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2013-10-08 22:41 - 2013-10-08 22:41 - 00037968 _____ () C:\Program Files (x86)\ASUS\Splendid\DetectDisplayDC.dll 2013-09-09 20:23 - 2013-09-09 20:23 - 00162816 _____ () C:\Program Files (x86)\ASUS\Splendid\CCTAdjust.dll 2014-03-19 07:58 - 2013-09-16 14:17 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\userABC_000\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run: => "Start WingMan Profiler" HKLM\...\StartupApproved\Run32: => "WebStorage" HKLM\...\StartupApproved\Run32: => "RemoteControl10" HKLM\...\StartupApproved\Run32: => "APSDaemon" HKLM\...\StartupApproved\Run32: => "Cisco AnyConnect Secure Mobility Agent for Windows" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKCU\...\StartupApproved\StartupFolder: => "Dropbox.lnk" HKCU\...\StartupApproved\Run: => "GoogleDriveSync" HKCU\...\StartupApproved\Run: => "Google Update" HKCU\...\StartupApproved\Run: => "Desura" HKCU\...\StartupApproved\Run: => "SandboxieControl" HKCU\...\StartupApproved\Run: => "Vidalia" ==================== Faulty Device Manager Devices ============= Name: TAP-Win32 Adapter V9 (Tunngle) #2 Description: TAP-Win32 Adapter V9 (Tunngle) Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 (Tunngle) Service: tap0901t Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: TAP-Windows Adapter V9 Description: TAP-Windows Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Windows Provider V9 Service: tap0901 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: vpnva Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (08/11/2014 04:20:13 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SkyDrive.exe, Version: 17.3.1165.612, Zeitstempel: 0x539a47b7 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17055, Zeitstempel: 0x532943a3 Ausnahmecode: 0x80000003 Fehleroffset: 0x000b3425 ID des fehlerhaften Prozesses: 0x1744 Startzeit der fehlerhaften Anwendung: 0xSkyDrive.exe0 Pfad der fehlerhaften Anwendung: SkyDrive.exe1 Pfad des fehlerhaften Moduls: SkyDrive.exe2 Berichtskennung: SkyDrive.exe3 Vollständiger Name des fehlerhaften Pakets: SkyDrive.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SkyDrive.exe5 Error: (08/11/2014 03:31:27 AM) (Source: Winlogon) (EventID: 4005) (User: ) Description: Der Windows-Anmeldeprozess wurde unerwartet beendet. Error: (08/10/2014 11:29:09 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Blade.exe, Version: 1.0.0.1, Zeitstempel: 0x3acde141 Name des fehlerhaften Moduls: Blade.exe, Version: 1.0.0.1, Zeitstempel: 0x3acde141 Ausnahmecode: 0xc0000005 Fehleroffset: 0x001b1445 ID des fehlerhaften Prozesses: 0x6ee0 Startzeit der fehlerhaften Anwendung: 0xBlade.exe0 Pfad der fehlerhaften Anwendung: Blade.exe1 Pfad des fehlerhaften Moduls: Blade.exe2 Berichtskennung: Blade.exe3 Vollständiger Name des fehlerhaften Pakets: Blade.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Blade.exe5 Error: (08/10/2014 11:28:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Blade.exe, Version: 1.0.0.1, Zeitstempel: 0x3acde141 Name des fehlerhaften Moduls: Blade.exe, Version: 1.0.0.1, Zeitstempel: 0x3acde141 Ausnahmecode: 0xc0000005 Fehleroffset: 0x001b1445 ID des fehlerhaften Prozesses: 0x1314 Startzeit der fehlerhaften Anwendung: 0xBlade.exe0 Pfad der fehlerhaften Anwendung: Blade.exe1 Pfad des fehlerhaften Moduls: Blade.exe2 Berichtskennung: Blade.exe3 Vollständiger Name des fehlerhaften Pakets: Blade.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Blade.exe5 Error: (08/10/2014 11:28:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Blade.exe, Version: 1.0.0.1, Zeitstempel: 0x3acde141 Name des fehlerhaften Moduls: Blade.exe, Version: 1.0.0.1, Zeitstempel: 0x3acde141 Ausnahmecode: 0xc0000005 Fehleroffset: 0x001b1445 ID des fehlerhaften Prozesses: 0xb200 Startzeit der fehlerhaften Anwendung: 0xBlade.exe0 Pfad der fehlerhaften Anwendung: Blade.exe1 Pfad des fehlerhaften Moduls: Blade.exe2 Berichtskennung: Blade.exe3 Vollständiger Name des fehlerhaften Pakets: Blade.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Blade.exe5 Error: (08/10/2014 11:22:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SkyDrive.exe, Version: 17.3.1165.612, Zeitstempel: 0x539a47b7 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17055, Zeitstempel: 0x532943a3 Ausnahmecode: 0x80000003 Fehleroffset: 0x000b3425 ID des fehlerhaften Prozesses: 0xa30c Startzeit der fehlerhaften Anwendung: 0xSkyDrive.exe0 Pfad der fehlerhaften Anwendung: SkyDrive.exe1 Pfad des fehlerhaften Moduls: SkyDrive.exe2 Berichtskennung: SkyDrive.exe3 Vollständiger Name des fehlerhaften Pakets: SkyDrive.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SkyDrive.exe5 Error: (08/10/2014 11:21:24 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LORDHELIX) Description: Bei der Aktivierung der App „winstore_cw5n1h2txyewy!Windows.Store“ ist folgender Fehler aufgetreten: -2144927142. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/10/2014 11:21:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: LORDHELIX) Description: Die App „winstore_1.0.0.0_neutral_neutral_cw5n1h2txyewy+Windows.Store“ wurde nicht innerhalb der vorgesehenen Zeit gestartet. Error: (08/10/2014 02:01:34 PM) (Source: Winlogon) (EventID: 4005) (User: ) Description: Der Windows-Anmeldeprozess wurde unerwartet beendet. Error: (08/10/2014 02:01:34 PM) (Source: Winlogon) (EventID: 4005) (User: ) Description: Der Windows-Anmeldeprozess wurde unerwartet beendet. System errors: ============= Error: (08/11/2014 04:15:13 AM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Error: (08/11/2014 04:15:13 AM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Error: (08/11/2014 04:12:13 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Spybot-S&D 2 Security Center Service" ist vom Dienst "Sicherheitscenter" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (08/11/2014 04:11:05 AM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 29) (User: NT-AUTORITÄT) Description: 32212256841145552 Error: (08/11/2014 04:11:40 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 11.08.2014 um 03:15:22 unerwartet heruntergefahren. Error: (08/11/2014 03:31:43 AM) (Source: DCOM) (EventID: 10010) (User: LORDHELIX) Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca Error: (08/11/2014 03:31:42 AM) (Source: DCOM) (EventID: 10010) (User: LORDHELIX) Description: App.AppX54xz6wnkhmw763c2y8tb018n7d71dtx7.wwa Error: (08/11/2014 03:31:24 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "COMODO Internet Security Helper Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/11/2014 02:41:00 AM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Error: (08/11/2014 02:41:00 AM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Microsoft Office Sessions: ========================= Error: (08/11/2014 04:20:13 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: SkyDrive.exe17.3.1165.612539a47b7KERNELBASE.dll6.3.9600.17055532943a380000003000b3425174401cfb50ab9fe8aa2C:\Users\userABC_000\AppData\Local\Microsoft\SkyDrive\SkyDrive.exeC:\Windows\SYSTEM32\KERNELBASE.dll065b9872-20fe-11e4-827d-40167e7dfe4b Error: (08/11/2014 03:31:27 AM) (Source: Winlogon) (EventID: 4005) (User: ) Description: Error: (08/10/2014 11:29:09 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Blade.exe1.0.0.13acde141Blade.exe1.0.0.13acde141c0000005001b14456ee001cfb4e20b5bd5faD:\Games\Blade of Darkness\Bin\Blade.exeD:\Games\Blade of Darkness\Bin\Blade.exe5c838f71-20d5-11e4-827b-40167e7dfe4b Error: (08/10/2014 11:28:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Blade.exe1.0.0.13acde141Blade.exe1.0.0.13acde141c0000005001b1445131401cfb4e20105ce47D:\Games\Blade of Darkness\Bin\Blade.exeD:\Games\Blade of Darkness\Bin\Blade.exe45c2d604-20d5-11e4-827b-40167e7dfe4b Error: (08/10/2014 11:28:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Blade.exe1.0.0.13acde141Blade.exe1.0.0.13acde141c0000005001b1445b20001cfb4e1b40b4e52D:\Games\Blade of Darkness\Bin\Blade.exeD:\Games\Blade of Darkness\Bin\Blade.exe382f073d-20d5-11e4-827b-40167e7dfe4b Error: (08/10/2014 11:22:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SkyDrive.exe17.3.1165.612539a47b7KERNELBASE.dll6.3.9600.17055532943a380000003000b3425a30c01cfb4e0a5b10eb1C:\Users\userABC_000\AppData\Local\Microsoft\SkyDrive\SkyDrive.exeC:\Windows\SYSTEM32\KERNELBASE.dll7a22b4f1-20d4-11e4-827b-40167e7dfe4b Error: (08/10/2014 11:21:24 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LORDHELIX) Description: winstore_cw5n1h2txyewy!Windows.Store-2144927142 Error: (08/10/2014 11:21:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: LORDHELIX) Description: winstore_1.0.0.0_neutral_neutral_cw5n1h2txyewy+Windows.Store Error: (08/10/2014 02:01:34 PM) (Source: Winlogon) (EventID: 4005) (User: ) Description: Error: (08/10/2014 02:01:34 PM) (Source: Winlogon) (EventID: 4005) (User: ) Description: CodeIntegrity Errors: =================================== Date: 2014-08-11 04:12:03.055 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-11 02:35:41.207 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-10 14:21:52.323 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-10 14:01:34.625 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\cmdcsr.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-08-10 14:01:34.348 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\cmdcsr.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-08-10 14:01:33.774 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\cmdcsr.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-08-10 12:49:09.423 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-10 03:03:24.525 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-09 12:26:21.778 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-09 03:25:18.754 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Percentage of memory in use: 24% Total physical RAM: 8068.13 MB Available physical RAM: 6083.14 MB Total Pagefile: 16260.13 MB Available Pagefile: 13719.04 MB Total Virtual: 131072 MB Available Virtual: 131071.83 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:372.6 GB) (Free:149.59 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (DATA) (Fixed) (Total:537.8 GB) (Free:442.75 GB) NTFS Drive e: (Data1) (Fixed) (Total:465.75 GB) (Free:45.9 GB) NTFS Drive f: (Data2) (Fixed) (Total:465.76 GB) (Free:465.59 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 932 GB) (Disk ID: 64E9A2ED) Partition: GPT Partition Type. ======================================================== Disk: 1 (Size: 932 GB) (Disk ID: C3BEB591) Partition: GPT Partition Type. ==================== End Of Log ============================ Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 8.1 x64 Ran by userABC_000 on 11.08.2014 at 14:57:34,53 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ FireFox Successfully deleted the following from C:\Users\userABC_000\AppData\Roaming\mozilla\firefox\profiles\xwtkoswt.default\prefs.js user_pref("browser.startup.homepage", "hxxps://www.ixquick.com/eng/"); Emptied folder: C:\Users\userABC_000\AppData\Roaming\mozilla\firefox\profiles\xwtkoswt.default\minidumps [1 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 11.08.2014 at 16:07:30,20 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ mbam-log muss ich grad nochmal erstellen, poste ich dann nach MBAM.txt Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 11.08.2014 Scan Time: 17:51:21 Logfile: mbam.txt Administrator: Yes Version: 2.00.2.1012 Malware Database: v2014.08.11.05 Rootkit Database: v2014.08.04.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 8.1 CPU: x64 File System: NTFS User: userABC_000 Scan Type: Threat Scan Result: Completed Objects Scanned: 401947 Time Elapsed: 21 min, 1 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 0 (No malicious items detected) Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 0 (No malicious items detected) Physical Sectors: 0 (No malicious items detected) (end) |
11.08.2014, 21:19 | #5 |
/// the machine /// TB-Ausbilder | Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) hi, Downloade Dir bitte AdwCleaner auf deinen Desktop.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
11.08.2014, 21:51 | #6 |
| Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) Hi, danke für die Antwort. Hab ADW heute ja schon drübe rlaufen lassne, kanns aber gerne nochmal tun Hier schonmal der LOG von heute Code:
ATTFilter # AdwCleaner v3.304 - Bericht erstellt am 11/08/2014 um 08:54:59 # Aktualisiert 08/08/2014 von Xplode # Betriebssystem : Windows 8.1 (64 bits) # Benutzername : userABC_000 - LORDHELIX # Gestartet von : C:\Users\userABC_000\Downloads\adwcleaner_3.304.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Users\userABC_~1\AppData\Local\Temp\OCS Datei Gelöscht : C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\foxydeal.sqlite ***** [ Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\OCS ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17126 -\\ Mozilla Firefox v31.0 (x86 de) [ Datei : C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\prefs.js ] -\\ Google Chrome v36.0.1985.125 [ Datei : C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [1219 octets] - [11/08/2014 08:50:14] AdwCleaner[S0].txt - [1094 octets] - [11/08/2014 08:54:59] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1154 octets] ########## ADWLog Code:
ATTFilter # AdwCleaner v3.304 - Bericht erstellt am 11/08/2014 um 22:41:20 # Aktualisiert 08/08/2014 von Xplode # Betriebssystem : Windows 8.1 (64 bits) # Benutzername : userABC_000 - LORDHELIX # Gestartet von : C:\Users\userABC_000\Downloads\adwcleaner_3.304.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17126 -\\ Mozilla Firefox v31.0 (x86 de) [ Datei : C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\prefs.js ] -\\ Google Chrome v36.0.1985.125 [ Datei : C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [1219 octets] - [11/08/2014 08:50:14] AdwCleaner[R1].txt - [1081 octets] - [11/08/2014 22:37:09] AdwCleaner[R2].txt - [1141 octets] - [11/08/2014 22:40:10] AdwCleaner[S0].txt - [1234 octets] - [11/08/2014 08:54:59] AdwCleaner[S1].txt - [1063 octets] - [11/08/2014 22:41:20] ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1123 octets] ########## FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-08-2014 01 Ran by userABC_000 (administrator) on LORDHELIX on 11-08-2014 22:46:46 Running from C:\Users\userABC_000\Downloads Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.0.3.226\AsusWSWinService.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Kinect Drivers\Service\KinectManagementService.exe () C:\Program Files\MySQL\MySQL Server 5.6\bin\mysqld.exe (Nitro PDF Software) C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Windows\SysWOW64\PnkBstrA.exe (A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Crawler.com) C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\livecomm.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\msosync.exe (Crawler.com) C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s RtHDVCpl C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s kernel32.dll HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1368792 2013-11-13] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-01-21] (NVIDIA Corporation) HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2777736 2013-04-03] (Crawler.com) HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [3684488 2013-04-03] (Crawler.com) HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-110364190-1643542413-822559574-1001\...\Run: [EvJOWall] => C:\Program Files\EvJOSoft\Wallpaper Changer\EvJOWall.exe [3998720 2010-08-31] (EvJOSoft) HKU\S-1-5-21-110364190-1643542413-822559574-1001\...\Policies\Explorer: [DisallowRun] 1 ShellIconOverlayIdentifiers: !AsusWSShellExt_B -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.1.8.381\ASUSWSShellExt64.dll (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: !AsusWSShellExt_O -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.1.8.381\ASUSWSShellExt64.dll (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: !AsusWSShellExt_U -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.1.8.381\ASUSWSShellExt64.dll (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers-x32: SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus13.msn.com/?pc=ASJB HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default FF NetworkProxy: "socks_remote_dns", true FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.0.2 -> C:\Program Files (x86)\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.0.2 -> C:\Program Files (x86)\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Reader 3\npnitromozilla.dll (Nitro PDF) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Users\userABC_000\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Users\userABC_000\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\userABC_000\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\searchplugins\duckduckgo.xml FF SearchPlugin: C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\searchplugins\ixquick-https.xml FF SearchPlugin: C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\searchplugins\youtube.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: FoxyProxy Standard - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\foxyproxy@eric.h.jung [2014-07-29] FF Extension: ProxTube - Unblock YouTube - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\ich@maltegoetz.de [2014-04-30] FF Extension: YouTube Unblocker - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\youtubeunblocker@unblocker.yt [2014-04-22] FF Extension: FireShot - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba} [2014-07-29] FF Extension: DownloadHelper - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-08-08] FF Extension: Adblock Plus Pop-up Addon - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\adblockpopups@jessehakanen.net.xpi [2014-04-21] FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\elemhidehelper@adblockplus.org.xpi [2014-04-21] FF Extension: Ghostery - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\firefox@ghostery.com.xpi [2014-07-29] FF Extension: Adblock Plus - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-04-21] FF Extension: BetterPrivacy - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2014-07-30] FF Extension: DownThemAll! - C:\Users\userABC_000\AppData\Roaming\Mozilla\Firefox\Profiles\xwtkoswt.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2014-06-12] Chrome: ======= CHR HomePage: chrome://newtab CHR Extension: (ProxFlow) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-07-20] CHR Extension: (Google Docs) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-09] CHR Extension: (Google Drive) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-09] CHR Extension: (YouTube) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-09] CHR Extension: (Webseiten-Screenshot - Webpage Screenshot) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki [2014-06-23] CHR Extension: (Google-Suche) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-09] CHR Extension: (Facebook Disconnect) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpepffjfmamnambagiibghpglaidiec [2014-06-09] CHR Extension: (Facebook™ Chat Privacy) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfpgaanechfneiboempkfjghninbibjn [2014-06-09] CHR Extension: (AdBlock) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-06-09] CHR Extension: (Google Wallet) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-09] CHR Extension: (Google Mail) - C:\Users\userABC_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-09] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.0.3.226\AsusWSWinService.exe [71680 2013-08-16] (ASUS Cloud Corporation) [File not signed] S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-05-12] () [File not signed] S3 c2wts; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [5632 2014-05-20] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2356912 2014-07-19] (Microsoft Corporation) R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [6817544 2014-04-16] (COMODO) S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2264280 2014-03-25] (COMODO) S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2014-02-20] (Microsoft Corporation) [File not signed] R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227936 2013-11-09] (WildTangent) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-16] (Intel Corporation) R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\Bin\IpOverUsbSvc.exe [22768 2014-04-17] (Microsoft Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) R2 KinectManagement; C:\Program Files\Microsoft Kinect Drivers\Service\KinectManagementService.exe [98816 2013-08-20] (Microsoft Corporation) [File not signed] R2 MySQL56; C:\ProgramData\MySQL\MySQL Server 5.6\my.ini [14262 2014-08-02] () [File not signed] R2 NitroReaderDriverReadSpool3; C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe [230416 2013-07-26] (Nitro PDF Software) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-01-21] (NVIDIA Corporation) S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [32568 2014-05-02] (The OpenVPN Project) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-04-24] () R2 RzMaelstromVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe [4250624 2014-05-23] (A-Volute) [File not signed] R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [174088 2014-05-29] (Sandboxie Holdings, LLC) R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 ST2012_Svc; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [1149104 2013-04-03] (Crawler.com) S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [File not signed] S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH) S3 VsEtwService120; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87736 2014-04-30] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3880448 2013-11-13] (Qualcomm Atheros Communications, Inc.) R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [70928 2014-02-13] (ASUS Corporation) R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [23168 2014-04-16] (COMODO) R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [748784 2014-04-16] (COMODO) R1 cmdhlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [37560 2014-04-16] (COMODO) R1 inspect; C:\Windows\system32\DRIVERS\inspect.sys [127664 2014-04-16] (COMODO) R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( ) S3 KinectCamera; C:\Windows\System32\Drivers\kinectcamera.sys [192512 2013-08-20] (Microsoft Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) R2 plctrl; C:\Program Files\ASUS\P4G\plctrl.sys [14136 2014-01-03] (Windows (R) Win 7 DDK provider) R3 RZMAELSTROMVADService; C:\Windows\system32\drivers\RzMaelstromVAD.sys [32768 2014-05-23] (Windows (R) Win 7 DDK provider) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [185352 2014-05-29] (Sandboxie Holdings, LLC) R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation) R2 sp_rsdrv2; C:\Windows\System32\DRIVERS\stflt.sys [51496 2014-06-21] (Windows (R) Win 7 DDK provider) S3 tap0901t; C:\Windows\system32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) S3 vpnva; C:\Windows\system32\DRIVERS\vpnva64-6.sys [52592 2014-03-12] (Cisco Systems, Inc.) S3 VSPerfDrv110; D:\Programming\Microsoft Visual Studio 2012\Team Tools\Performance Tools\x64\VSPerfDrv110.sys [70264 2012-07-26] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) U0 msahci; system32\drivers\msahci.sys ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-11 16:23 - 2014-08-11 16:40 - 00012905 _____ () C:\Users\userABC_000\Downloads\hijackthis.log 2014-08-11 16:21 - 2014-08-11 16:21 - 00388608 _____ (Trend Micro Inc.) C:\Users\userABC_000\Downloads\HiJackThis204.exe 2014-08-11 16:07 - 2014-08-11 16:07 - 00000954 _____ () C:\Users\userABC_000\Desktop\JRT.txt 2014-08-11 09:07 - 2014-08-11 09:07 - 00000000 ____D () C:\Windows\ERUNT 2014-08-11 08:53 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-08-11 04:25 - 2014-08-11 04:26 - 00100179 _____ () C:\Users\userABC_000\Downloads\Addition.txt 2014-08-11 03:05 - 2014-08-11 22:47 - 00026730 _____ () C:\Users\userABC_000\Downloads\FRST.txt 2014-08-11 03:05 - 2014-08-11 22:46 - 00000000 ____D () C:\FRST 2014-08-11 03:04 - 2014-08-11 03:04 - 02099712 _____ (Farbar) C:\Users\userABC_000\Downloads\FRST64.exe 2014-08-11 03:03 - 2014-08-11 03:03 - 01091072 _____ (Farbar) C:\Users\userABC_000\Downloads\FRST.exe 2014-08-11 02:44 - 2014-08-11 02:44 - 00709564 _____ () C:\Users\userABC_000\Downloads\delfix_10.8.exe 2014-08-11 02:44 - 2014-08-11 02:44 - 00448512 _____ (OldTimer Tools) C:\Users\userABC_000\Downloads\TFC.exe 2014-08-11 02:42 - 2014-08-11 02:42 - 01016261 _____ (Thisisu) C:\Users\userABC_000\Downloads\JRT_6.1.4 (1).exe 2014-08-11 02:35 - 2014-08-11 02:35 - 1046385731 _____ () C:\Windows\MEMORY.DMP 2014-08-11 02:35 - 2014-08-11 02:35 - 00303264 _____ () C:\Windows\Minidump\081114-67359-01.dmp 2014-08-11 02:34 - 2014-08-11 22:43 - 00001656 _____ () C:\Windows\PFRO.log 2014-08-11 02:32 - 2014-08-11 02:32 - 02347384 _____ (ESET) C:\Users\userABC_000\Downloads\Nicht bestätigt 570719.crdownload 2014-08-11 02:32 - 2014-08-11 02:32 - 00854410 _____ () C:\Users\userABC_000\Downloads\SecurityCheck.exe 2014-08-11 02:31 - 2014-08-11 22:42 - 00000000 ____D () C:\AdwCleaner 2014-08-11 02:31 - 2014-08-11 02:31 - 01366203 _____ () C:\Users\userABC_000\Downloads\adwcleaner_3.304.exe 2014-08-11 02:30 - 2014-08-11 02:30 - 01016261 _____ (Thisisu) C:\Users\userABC_000\Downloads\JRT_6.1.4.exe 2014-08-11 02:28 - 2014-08-11 17:51 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-08-11 02:28 - 2014-08-11 02:28 - 00001116 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-08-11 02:28 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-08-11 02:28 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-08-11 02:28 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-08-11 02:26 - 2014-08-11 02:26 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\userABC_000\Downloads\mbam-setup-2.0.2.1012.exe 2014-08-11 02:26 - 2014-08-11 02:26 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\userABC_000\Downloads\mbam-setup-2.0.2.1012 (1).exe 2014-08-11 01:49 - 2014-08-11 01:49 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Temp9f74e24dbbb7daf280bfb67f55219c5f 2014-08-11 00:31 - 2014-08-11 01:54 - 00000161 _____ () C:\Users\userABC_000\Desktop\Neues Textdokument (4).txt 2014-08-10 02:33 - 2014-08-10 02:33 - 00421971 _____ () C:\Users\userABC_000\Downloads\libusb-1.0.9.tar.bz2 2014-08-10 02:30 - 2014-08-10 02:30 - 00970155 _____ () C:\Users\userABC_000\Downloads\vrpn_07_26.zip 2014-08-10 02:30 - 2014-08-10 02:30 - 00002724 _____ () C:\Users\userABC_000\Downloads\VRPNTutorial.zip 2014-08-10 01:57 - 2014-08-10 01:57 - 14605046 _____ () C:\Users\userABC_000\Downloads\VRPN-07.29.0-git-version_07.29-211-g6d674b0-Windows- (1).zip 2014-08-10 00:57 - 2014-08-10 00:57 - 14605046 _____ () C:\Users\userABC_000\Downloads\VRPN-07.29.0-git-version_07.29-211-g6d674b0-Windows-.zip 2014-08-10 00:57 - 2014-08-10 00:57 - 00254478 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9 (1).exe 2014-08-10 00:57 - 2014-08-10 00:57 - 00058006 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9.zip 2014-08-10 00:50 - 2014-08-10 00:51 - 60867934 _____ () C:\Users\userABC_000\Downloads\vrjuggler-2.2.2-svn-vc9.7z 2014-08-10 00:50 - 2014-08-10 00:51 - 28778137 _____ () C:\Users\userABC_000\Downloads\vrjugglua-3.0-vc9-2.8git-snapshot20111003.zip 2014-08-10 00:50 - 2014-08-10 00:50 - 02884784 _____ () C:\Users\userABC_000\Downloads\rpavlik-vrpn-wmhtgui-sensitivity-0-gabeebb0.zip 2014-08-10 00:50 - 2014-08-10 00:50 - 01296391 _____ () C:\Users\userABC_000\Downloads\rpavlik-vrpn-wmhtgui-initial-requirements-283-g40d4af0.tar.gz 2014-08-10 00:50 - 2014-08-10 00:50 - 00254478 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9.exe 2014-08-10 00:49 - 2014-08-10 00:49 - 01099239 _____ () C:\Users\userABC_000\Downloads\vrpn-wiimote-pre2-07.27-wiimote.tar.gz 2014-08-10 00:49 - 2014-08-10 00:49 - 00429936 _____ (Ryan Pavlik ) C:\Users\userABC_000\Downloads\setup-git-windows-mintty-1.1.exe 2014-08-10 00:44 - 2014-08-10 00:44 - 12292707 _____ () C:\Users\userABC_000\Downloads\vrjuggler-3.0.1-1-src.7z 2014-08-10 00:43 - 2014-08-10 00:43 - 00788770 _____ () C:\Users\userABC_000\Downloads\WiiYourself!_1.15.zip 2014-08-10 00:36 - 2014-08-10 00:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blade of Darkness [GOG.com] 2014-08-10 00:23 - 2014-08-10 00:23 - 20562001 _____ () C:\Users\userABC_000\Downloads\VRPN-07.31.0-git-07.31-54-gbb55950-Windows-.zip 2014-08-10 00:16 - 2014-08-10 00:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CMake 3.0.1 2014-08-10 00:16 - 2014-08-10 00:16 - 00000000 ____D () C:\Program Files (x86)\CMake 2014-08-10 00:15 - 2014-08-10 00:16 - 11299622 _____ () C:\Users\userABC_000\Downloads\cmake-3.0.1-win32-x86.exe 2014-08-09 23:44 - 2014-08-09 23:44 - 15999866 _____ () C:\Users\userABC_000\Downloads\vrpn_07_30.zip 2014-08-09 23:33 - 2014-08-09 23:33 - 18075980 _____ () C:\Users\userABC_000\Downloads\vrpn_07_31.zip 2014-08-09 17:32 - 2014-08-09 17:32 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\DOSBox 2014-08-09 17:29 - 2014-08-09 17:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DotEmu 2014-08-09 17:27 - 2014-08-09 17:37 - 00049148 _____ () C:\Windows\War3Unin.dat 2014-08-09 17:26 - 2014-08-09 17:36 - 00139264 _____ (Blizzard Entertainment) C:\Windows\War3Unin.exe 2014-08-09 17:26 - 2014-08-09 17:36 - 00002829 _____ () C:\Windows\War3Unin.pif 2014-08-09 17:26 - 2014-08-09 17:36 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warcraft III 2014-08-09 17:26 - 2014-08-09 17:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III 2014-08-09 17:20 - 2014-08-09 17:20 - 00000000 ____D () C:\Users\userABC_000\Desktop\LBA_1_Master 2014-08-08 23:26 - 2014-08-08 23:26 - 01046636 _____ () C:\Users\userABC_000\Downloads\SC3_HLSP_enabler.rar 2014-08-08 23:26 - 2014-08-08 23:26 - 00000000 ____D () C:\Users\userABC_000\Desktop\SC3_HLSP_enabler 2014-08-08 01:06 - 2014-08-08 01:06 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Adam_Reece 2014-08-08 00:55 - 2014-08-08 00:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sven Co-op 2014-08-08 00:26 - 2014-08-08 00:44 - 755100549 _____ () C:\Users\userABC_000\Downloads\svencoop48.exe 2014-08-06 21:37 - 2014-08-06 21:37 - 00021458 _____ () C:\Users\userABC_000\AppData\Local\recently-used.xbel 2014-08-06 15:46 - 2014-08-06 15:46 - 00000000 ___HD () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled 2014-08-06 15:46 - 2014-08-06 15:46 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\GlarySoft 2014-08-06 15:45 - 2014-08-11 22:43 - 00000354 _____ () C:\Windows\Tasks\GlaryInitialize.job 2014-08-06 15:45 - 2014-08-06 15:45 - 00002620 _____ () C:\Windows\System32\Tasks\GlaryInitialize 2014-08-06 15:45 - 2014-08-06 15:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 2014-08-06 15:45 - 2014-08-06 15:45 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 2014-08-06 15:21 - 2014-08-06 15:21 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\Revo Uninstaller - CHIP-Installer.exe 2014-08-06 15:20 - 2014-08-06 15:21 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\Glary Utilities - CHIP-Installer.exe 2014-08-06 15:12 - 2014-08-06 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tools&More 2014-08-06 15:11 - 2014-08-06 15:11 - 00000000 ____D () C:\Program Files (x86)\Tools&More 2014-08-06 15:09 - 2014-08-06 15:09 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-08-06 15:00 - 2014-08-06 15:00 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\AutoStart Manager - CHIP-Installer.exe 2014-08-06 03:50 - 2014-08-06 03:50 - 00000138 _____ () C:\Users\userABC_000\AppData\Local\psppirerc 2014-08-05 19:32 - 2014-08-05 19:36 - 114760879 _____ () C:\Users\userABC_000\Downloads\OneLateNight.zip 2014-08-05 19:32 - 2014-08-05 19:35 - 114763930 _____ () C:\Users\userABC_000\Downloads\OneLateNight_dx11.zip 2014-08-05 18:44 - 2014-08-05 18:44 - 00319912 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-08-05 18:44 - 2014-08-05 18:44 - 00000000 ____D () C:\Program Files\Java 2014-08-05 18:42 - 2014-08-05 18:42 - 00000000 ____D () C:\ProgramData\Oracle 2014-08-05 18:42 - 2014-04-15 16:29 - 00264600 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-08-05 18:42 - 2014-04-15 16:29 - 00176024 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-08-05 18:42 - 2014-04-15 16:29 - 00176024 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-08-05 18:10 - 2014-08-05 18:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco 2014-08-05 18:10 - 2014-06-11 05:15 - 00112496 ____R (Cisco Systems, Inc.) C:\Windows\system32\Drivers\acsock64.sys 2014-08-05 00:58 - 2014-08-05 00:58 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\xp-AntiSpy 2014-08-05 00:58 - 2014-08-05 00:58 - 00000000 ____D () C:\Program Files (x86)\xp-AntiSpy 2014-08-04 22:41 - 2014-08-04 22:52 - 535984318 _____ () C:\Users\userABC_000\Downloads\LBA_1_Master.zip 2014-08-04 20:17 - 2014-08-06 03:25 - 00000180 _____ () C:\Users\userABC_000\pspp.jnl 2014-08-04 20:16 - 2014-08-04 20:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSPP 2014-08-04 20:16 - 2014-08-04 20:16 - 00000000 ____D () C:\Program Files (x86)\PSPP 2014-08-03 00:37 - 2014-08-03 00:38 - 58014125 _____ (Docear) C:\Users\userABC_000\Downloads\docear.exe 2014-08-02 21:52 - 2014-08-02 21:52 - 00000000 ____D () C:\Program Files\MySQL 2014-08-02 21:47 - 2014-08-02 21:52 - 131758072 _____ (Bitnami) C:\Users\userABC_000\Downloads\xampp-win32-1.8.3-3-VC11-installer.exe 2014-08-02 21:46 - 2014-08-02 22:54 - 00000000 ____D () C:\ProgramData\MySQL 2014-08-02 21:46 - 2014-08-02 21:46 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MySQL 2014-08-02 21:29 - 2014-08-02 21:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JabRef 2014-08-02 21:29 - 2014-08-02 21:29 - 00000000 ____D () C:\Program Files (x86)\JabRef 2014-08-02 20:52 - 2014-08-02 20:52 - 00173213 _____ () C:\Users\userABC_000\Desktop\Neues Textdokument (3).txt 2014-08-02 19:45 - 2014-08-02 19:45 - 00000729 _____ () C:\Users\Public\Desktop\TeXstudio.lnk 2014-08-02 19:36 - 2014-08-03 11:49 - 00000000 ____D () C:\Users\userABC_000\Desktop\HMI-Bericht 2014-08-02 18:41 - 2014-08-02 18:41 - 00354371 _____ () C:\Users\userABC_000\Desktop\biblatex-apa.zip 2014-08-02 18:40 - 2014-08-02 18:40 - 00817714 _____ () C:\Users\userABC_000\Desktop\apacite.zip 2014-08-02 18:38 - 2014-08-02 18:38 - 00597534 _____ () C:\Users\userABC_000\Desktop\apa6.zip 2014-08-01 02:01 - 2014-08-01 02:01 - 00001381 _____ () C:\Users\userABC_000\Desktop\SbieCtrl.exe - Verknüpfung.lnk 2014-07-31 20:59 - 2014-07-31 21:00 - 00000000 ____D () C:\Users\userABC_000\Desktop\export 2014-07-31 05:10 - 2014-07-31 05:10 - 00001726 _____ () C:\Users\userABC_000\Desktop\vidalia.exe - Verknüpfung.lnk 2014-07-29 16:00 - 2014-08-11 20:34 - 00432889 _____ () C:\Windows\WindowsUpdate.log 2014-07-29 13:16 - 2014-07-29 13:16 - 00002780 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-07-29 13:16 - 2014-07-29 13:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-07-29 13:16 - 2014-07-29 13:16 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-29 02:29 - 2014-07-29 02:29 - 00000000 ___RD () C:\Sandbox 2014-07-29 02:28 - 2014-07-29 02:28 - 00001502 _____ () C:\Users\userABC_000\Desktop\firefox.exe - Verknüpfung.lnk 2014-07-29 02:27 - 2014-08-10 13:59 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\tor 2014-07-29 02:15 - 2014-07-29 02:15 - 00000000 ____D () C:\Users\userABC_000\Desktop\Tor Browser 2014-07-29 01:53 - 2014-08-10 13:59 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Vidalia 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Tor 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vidalia Bridge Bundle 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\Program Files (x86)\Vidalia Bridge Bundle 2014-07-28 18:55 - 2014-07-28 18:55 - 00000000 ___RD () C:\Users\userABC_000\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App 2014-07-28 03:18 - 2014-07-28 03:18 - 00000000 ____D () C:\Users\userABC_000\Desktop\Bericht 2014-07-28 03:17 - 2014-07-28 03:17 - 02699073 _____ () C:\Users\userABC_000\Downloads\Bericht.zip 2014-07-28 03:17 - 2014-07-28 03:17 - 00000209 _____ () C:\Users\userABC_000\Desktop\MBG-Bericht.html 2014-07-26 23:44 - 2014-07-26 23:44 - 00000000 ____D () C:\Users\Public\CyberLink 2014-07-26 23:40 - 2014-07-26 23:41 - 00000000 ____D () C:\Users\userABC_000\Documents\CyberLink 2014-07-26 23:40 - 2014-07-26 23:41 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\CyberLink 2014-07-26 23:40 - 2014-07-26 23:41 - 00000000 ____D () C:\ProgramData\CyberLink 2014-07-25 17:11 - 2014-07-25 17:11 - 00000000 ____D () C:\Users\userABC_000\Desktop\x360ce.App-2.1.2.191 2014-07-25 02:25 - 2014-07-25 17:30 - 00000000 ____D () C:\Users\userABC_000\Documents\Overlord 2014-07-25 01:58 - 2014-07-25 01:59 - 00000000 ____D () C:\Users\userABC_000\Documents\Giana Sisters - Twisted Dreams 2014-07-24 23:52 - 2014-08-11 02:35 - 00000000 ____D () C:\Windows\Minidump 2014-07-24 18:18 - 2014-07-24 18:18 - 00581031 _____ () C:\Users\userABC_000\Desktop\hci-thesis-and-project-report-template.zip 2014-07-24 17:53 - 2014-07-24 17:53 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\MMFApplications 2014-07-24 12:19 - 2014-07-24 12:19 - 00000000 ____D () C:\Users\userABC_000\Desktop\hci-paper-style-report-template 2014-07-24 11:12 - 2014-07-24 11:12 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\MiKTeX 2014-07-24 11:11 - 2014-07-24 11:11 - 00000000 ____D () C:\Users\userABC_000\Desktop\hci-thesis-and-project-report-template 2014-07-24 11:03 - 2014-07-24 11:03 - 00000000 ____D () C:\Users\userABC_000\Desktop\OpenSceneGraph-3.2.1 2014-07-24 10:53 - 2014-07-24 10:54 - 07219212 _____ () C:\Users\userABC_000\Downloads\OpenSceneGraph-3.2.1.zip 2014-07-23 13:12 - 2014-07-23 13:12 - 00133828 _____ () C:\Users\userABC_000\Downloads\DeusExe-v6.2.zip 2014-07-23 13:12 - 2014-07-23 13:12 - 00111744 _____ () C:\Users\userABC_000\Downloads\dxglr20.zip 2014-07-23 13:12 - 2014-07-23 13:12 - 00109155 _____ () C:\Users\userABC_000\Downloads\dxd3d9r13.zip 2014-07-23 13:10 - 2014-07-23 13:10 - 01732150 _____ () C:\Users\userABC_000\Downloads\DXENB.RAR 2014-07-23 13:07 - 2014-07-23 13:08 - 18363191 _____ (Off Topic Productions) C:\Users\userABC_000\Downloads\HDTP-Release1.exe 2014-07-23 13:06 - 2014-07-23 13:09 - 52787997 _____ () C:\Users\userABC_000\Downloads\HDTPBeta03.zip 2014-07-23 13:03 - 2014-07-23 13:54 - 1239299948 _____ (DaveW) C:\Users\userABC_000\Downloads\New_Vision_v1-5.exe 2014-07-23 12:56 - 2014-07-10 06:16 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2014-07-23 12:56 - 2014-07-10 06:03 - 04756992 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2014-07-23 12:56 - 2014-07-10 05:33 - 01120256 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2014-07-22 22:36 - 2014-08-10 13:00 - 00001496 _____ () C:\Windows\Sandboxie.ini 2014-07-22 21:15 - 2014-07-22 21:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-22 20:18 - 2014-07-22 20:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie 2014-07-22 19:23 - 2014-07-22 19:23 - 00000000 ____D () C:\Program Files\Sandboxie 2014-07-20 13:12 - 2014-07-20 13:12 - 00381105 _____ () C:\Users\userABC_000\Downloads\UEQ_kit.zip 2014-07-15 19:51 - 2014-07-15 21:31 - 00000000 ____D () C:\Users\userABC_000\Desktop\Imbo 2014-07-13 17:26 - 2014-07-13 17:26 - 00000000 ____D () C:\Users\userABC_000\Desktop\ASE251 2014-07-13 17:25 - 2014-07-13 17:25 - 00011364 _____ () C:\Users\userABC_000\Downloads\ASE251.zip ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-11 22:47 - 2014-08-11 03:05 - 00026730 _____ () C:\Users\userABC_000\Downloads\FRST.txt 2014-08-11 22:46 - 2014-08-11 03:05 - 00000000 ____D () C:\FRST 2014-08-11 22:46 - 2014-04-10 19:49 - 00000074 _____ () C:\Users\userABC_000\AppData\Roaming\sp_data.sys 2014-08-11 22:45 - 2014-04-15 15:41 - 00005156 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for LORDHELIX-userABC_000 LordHelix 2014-08-11 22:44 - 2014-04-21 23:57 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-08-11 22:44 - 2014-04-10 19:50 - 00000000 __RDO () C:\Users\userABC_000\SkyDrive 2014-08-11 22:43 - 2014-08-11 02:34 - 00001656 _____ () C:\Windows\PFRO.log 2014-08-11 22:43 - 2014-08-06 15:45 - 00000354 _____ () C:\Windows\Tasks\GlaryInitialize.job 2014-08-11 22:43 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-08-11 22:42 - 2014-08-11 02:31 - 00000000 ____D () C:\AdwCleaner 2014-08-11 22:42 - 2014-04-22 14:33 - 01474832 _____ () C:\Windows\system32\Drivers\sfi.dat 2014-08-11 22:42 - 2013-08-22 15:25 - 00524288 ___SH () C:\Windows\system32\config\BBI 2014-08-11 22:13 - 2014-04-21 23:57 - 00001136 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-08-11 22:04 - 2014-04-11 12:48 - 00001156 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001UA.job 2014-08-11 22:00 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru 2014-08-11 21:26 - 2014-06-21 00:24 - 00000000 ____D () C:\ProgramData\Spyware Terminator 2014-08-11 20:34 - 2014-07-29 16:00 - 00432889 _____ () C:\Windows\WindowsUpdate.log 2014-08-11 17:51 - 2014-08-11 02:28 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-08-11 17:26 - 2014-06-21 05:04 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-08-11 17:02 - 2014-04-10 19:54 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-110364190-1643542413-822559574-1001 2014-08-11 16:40 - 2014-08-11 16:23 - 00012905 _____ () C:\Users\userABC_000\Downloads\hijackthis.log 2014-08-11 16:21 - 2014-08-11 16:21 - 00388608 _____ (Trend Micro Inc.) C:\Users\userABC_000\Downloads\HiJackThis204.exe 2014-08-11 16:18 - 2014-06-21 05:04 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2 2014-08-11 16:07 - 2014-08-11 16:07 - 00000954 _____ () C:\Users\userABC_000\Desktop\JRT.txt 2014-08-11 09:07 - 2014-08-11 09:07 - 00000000 ____D () C:\Windows\ERUNT 2014-08-11 04:26 - 2014-08-11 04:25 - 00100179 _____ () C:\Users\userABC_000\Downloads\Addition.txt 2014-08-11 03:31 - 2014-04-10 19:48 - 00000000 ____D () C:\Users\userABC_000 2014-08-11 03:04 - 2014-08-11 03:04 - 02099712 _____ (Farbar) C:\Users\userABC_000\Downloads\FRST64.exe 2014-08-11 03:03 - 2014-08-11 03:03 - 01091072 _____ (Farbar) C:\Users\userABC_000\Downloads\FRST.exe 2014-08-11 02:44 - 2014-08-11 02:44 - 00709564 _____ () C:\Users\userABC_000\Downloads\delfix_10.8.exe 2014-08-11 02:44 - 2014-08-11 02:44 - 00448512 _____ (OldTimer Tools) C:\Users\userABC_000\Downloads\TFC.exe 2014-08-11 02:42 - 2014-08-11 02:42 - 01016261 _____ (Thisisu) C:\Users\userABC_000\Downloads\JRT_6.1.4 (1).exe 2014-08-11 02:35 - 2014-08-11 02:35 - 1046385731 _____ () C:\Windows\MEMORY.DMP 2014-08-11 02:35 - 2014-08-11 02:35 - 00303264 _____ () C:\Windows\Minidump\081114-67359-01.dmp 2014-08-11 02:35 - 2014-07-24 23:52 - 00000000 ____D () C:\Windows\Minidump 2014-08-11 02:35 - 2013-08-22 16:44 - 00526640 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-11 02:32 - 2014-08-11 02:32 - 02347384 _____ (ESET) C:\Users\userABC_000\Downloads\Nicht bestätigt 570719.crdownload 2014-08-11 02:32 - 2014-08-11 02:32 - 00854410 _____ () C:\Users\userABC_000\Downloads\SecurityCheck.exe 2014-08-11 02:31 - 2014-08-11 02:31 - 01366203 _____ () C:\Users\userABC_000\Downloads\adwcleaner_3.304.exe 2014-08-11 02:30 - 2014-08-11 02:30 - 01016261 _____ (Thisisu) C:\Users\userABC_000\Downloads\JRT_6.1.4.exe 2014-08-11 02:29 - 2014-06-01 15:24 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\vlc 2014-08-11 02:28 - 2014-08-11 02:28 - 00001116 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-08-11 02:28 - 2014-08-11 02:28 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-08-11 02:26 - 2014-08-11 02:26 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\userABC_000\Downloads\mbam-setup-2.0.2.1012.exe 2014-08-11 02:26 - 2014-08-11 02:26 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\userABC_000\Downloads\mbam-setup-2.0.2.1012 (1).exe 2014-08-11 01:54 - 2014-08-11 00:31 - 00000161 _____ () C:\Users\userABC_000\Desktop\Neues Textdokument (4).txt 2014-08-11 01:49 - 2014-08-11 01:49 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Temp9f74e24dbbb7daf280bfb67f55219c5f 2014-08-10 23:33 - 2013-08-22 17:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-08-10 13:59 - 2014-07-29 02:27 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\tor 2014-08-10 13:59 - 2014-07-29 01:53 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Vidalia 2014-08-10 13:00 - 2014-07-22 22:36 - 00001496 _____ () C:\Windows\Sandboxie.ini 2014-08-10 04:04 - 2014-04-11 12:48 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001Core.job 2014-08-10 02:53 - 2014-05-20 01:43 - 00000000 ____D () C:\Users\userABC_000\Documents\Visual Studio 2013 2014-08-10 02:33 - 2014-08-10 02:33 - 00421971 _____ () C:\Users\userABC_000\Downloads\libusb-1.0.9.tar.bz2 2014-08-10 02:30 - 2014-08-10 02:30 - 00970155 _____ () C:\Users\userABC_000\Downloads\vrpn_07_26.zip 2014-08-10 02:30 - 2014-08-10 02:30 - 00002724 _____ () C:\Users\userABC_000\Downloads\VRPNTutorial.zip 2014-08-10 01:57 - 2014-08-10 01:57 - 14605046 _____ () C:\Users\userABC_000\Downloads\VRPN-07.29.0-git-version_07.29-211-g6d674b0-Windows- (1).zip 2014-08-10 00:57 - 2014-08-10 00:57 - 14605046 _____ () C:\Users\userABC_000\Downloads\VRPN-07.29.0-git-version_07.29-211-g6d674b0-Windows-.zip 2014-08-10 00:57 - 2014-08-10 00:57 - 00254478 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9 (1).exe 2014-08-10 00:57 - 2014-08-10 00:57 - 00058006 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9.zip 2014-08-10 00:51 - 2014-08-10 00:50 - 60867934 _____ () C:\Users\userABC_000\Downloads\vrjuggler-2.2.2-svn-vc9.7z 2014-08-10 00:51 - 2014-08-10 00:50 - 28778137 _____ () C:\Users\userABC_000\Downloads\vrjugglua-3.0-vc9-2.8git-snapshot20111003.zip 2014-08-10 00:50 - 2014-08-10 00:50 - 02884784 _____ () C:\Users\userABC_000\Downloads\rpavlik-vrpn-wmhtgui-sensitivity-0-gabeebb0.zip 2014-08-10 00:50 - 2014-08-10 00:50 - 01296391 _____ () C:\Users\userABC_000\Downloads\rpavlik-vrpn-wmhtgui-initial-requirements-283-g40d4af0.tar.gz 2014-08-10 00:50 - 2014-08-10 00:50 - 00254478 _____ () C:\Users\userABC_000\Downloads\WiiUse-0.13.1-vs9.exe 2014-08-10 00:49 - 2014-08-10 00:49 - 01099239 _____ () C:\Users\userABC_000\Downloads\vrpn-wiimote-pre2-07.27-wiimote.tar.gz 2014-08-10 00:49 - 2014-08-10 00:49 - 00429936 _____ (Ryan Pavlik ) C:\Users\userABC_000\Downloads\setup-git-windows-mintty-1.1.exe 2014-08-10 00:44 - 2014-08-10 00:44 - 12292707 _____ () C:\Users\userABC_000\Downloads\vrjuggler-3.0.1-1-src.7z 2014-08-10 00:43 - 2014-08-10 00:43 - 00788770 _____ () C:\Users\userABC_000\Downloads\WiiYourself!_1.15.zip 2014-08-10 00:36 - 2014-08-10 00:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blade of Darkness [GOG.com] 2014-08-10 00:23 - 2014-08-10 00:23 - 20562001 _____ () C:\Users\userABC_000\Downloads\VRPN-07.31.0-git-07.31-54-gbb55950-Windows-.zip 2014-08-10 00:17 - 2014-08-10 00:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CMake 3.0.1 2014-08-10 00:16 - 2014-08-10 00:16 - 00000000 ____D () C:\Program Files (x86)\CMake 2014-08-10 00:16 - 2014-08-10 00:15 - 11299622 _____ () C:\Users\userABC_000\Downloads\cmake-3.0.1-win32-x86.exe 2014-08-09 23:44 - 2014-08-09 23:44 - 15999866 _____ () C:\Users\userABC_000\Downloads\vrpn_07_30.zip 2014-08-09 23:33 - 2014-08-09 23:33 - 18075980 _____ () C:\Users\userABC_000\Downloads\vrpn_07_31.zip 2014-08-09 17:37 - 2014-08-09 17:27 - 00049148 _____ () C:\Windows\War3Unin.dat 2014-08-09 17:36 - 2014-08-09 17:26 - 00139264 _____ (Blizzard Entertainment) C:\Windows\War3Unin.exe 2014-08-09 17:36 - 2014-08-09 17:26 - 00002829 _____ () C:\Windows\War3Unin.pif 2014-08-09 17:36 - 2014-08-09 17:26 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warcraft III 2014-08-09 17:36 - 2014-08-09 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III 2014-08-09 17:32 - 2014-08-09 17:32 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\DOSBox 2014-08-09 17:29 - 2014-08-09 17:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DotEmu 2014-08-09 17:20 - 2014-08-09 17:20 - 00000000 ____D () C:\Users\userABC_000\Desktop\LBA_1_Master 2014-08-09 02:03 - 2014-04-23 17:38 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Skype 2014-08-09 01:14 - 2014-04-10 22:38 - 00000000 ____D () C:\Users\userABC_000\Documents\Visual Studio 2012 2014-08-08 23:26 - 2014-08-08 23:26 - 01046636 _____ () C:\Users\userABC_000\Downloads\SC3_HLSP_enabler.rar 2014-08-08 23:26 - 2014-08-08 23:26 - 00000000 ____D () C:\Users\userABC_000\Desktop\SC3_HLSP_enabler 2014-08-08 01:06 - 2014-08-08 01:06 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Adam_Reece 2014-08-08 00:55 - 2014-08-08 00:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sven Co-op 2014-08-08 00:44 - 2014-08-08 00:26 - 755100549 _____ () C:\Users\userABC_000\Downloads\svencoop48.exe 2014-08-07 03:51 - 2014-04-28 13:03 - 00000000 ____D () C:\Users\userABC_000\.gimp-2.8 2014-08-06 21:37 - 2014-08-06 21:37 - 00021458 _____ () C:\Users\userABC_000\AppData\Local\recently-used.xbel 2014-08-06 21:37 - 2014-04-28 13:14 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\gtk-2.0 2014-08-06 18:45 - 2014-04-22 21:27 - 02713088 ___SH () C:\Users\userABC_000\Desktop\Thumbs.db 2014-08-06 15:46 - 2014-08-06 15:46 - 00000000 ___HD () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled 2014-08-06 15:46 - 2014-08-06 15:46 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\GlarySoft 2014-08-06 15:45 - 2014-08-06 15:45 - 00002620 _____ () C:\Windows\System32\Tasks\GlaryInitialize 2014-08-06 15:45 - 2014-08-06 15:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 2014-08-06 15:45 - 2014-08-06 15:45 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 2014-08-06 15:21 - 2014-08-06 15:21 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\Revo Uninstaller - CHIP-Installer.exe 2014-08-06 15:21 - 2014-08-06 15:20 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\Glary Utilities - CHIP-Installer.exe 2014-08-06 15:12 - 2014-08-06 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tools&More 2014-08-06 15:11 - 2014-08-06 15:11 - 00000000 ____D () C:\Program Files (x86)\Tools&More 2014-08-06 15:09 - 2014-08-06 15:09 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-08-06 15:00 - 2014-08-06 15:00 - 00826192 _____ (Chip Digital GmbH) C:\Users\userABC_000\Downloads\AutoStart Manager - CHIP-Installer.exe 2014-08-06 03:50 - 2014-08-06 03:50 - 00000138 _____ () C:\Users\userABC_000\AppData\Local\psppirerc 2014-08-06 03:25 - 2014-08-04 20:17 - 00000180 _____ () C:\Users\userABC_000\pspp.jnl 2014-08-05 19:36 - 2014-08-05 19:32 - 114760879 _____ () C:\Users\userABC_000\Downloads\OneLateNight.zip 2014-08-05 19:35 - 2014-08-05 19:32 - 114763930 _____ () C:\Users\userABC_000\Downloads\OneLateNight_dx11.zip 2014-08-05 18:44 - 2014-08-05 18:44 - 00319912 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-08-05 18:44 - 2014-08-05 18:44 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-08-05 18:44 - 2014-08-05 18:44 - 00000000 ____D () C:\Program Files\Java 2014-08-05 18:42 - 2014-08-05 18:42 - 00000000 ____D () C:\ProgramData\Oracle 2014-08-05 18:41 - 2014-04-15 16:29 - 00000000 ____D () C:\Program Files (x86)\Java 2014-08-05 18:10 - 2014-08-05 18:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco 2014-08-05 18:10 - 2014-06-02 20:16 - 00000000 ____D () C:\Program Files (x86)\Cisco 2014-08-05 18:10 - 2014-06-02 20:15 - 00000000 ____D () C:\ProgramData\Cisco 2014-08-05 16:32 - 2014-04-10 23:25 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-08-05 00:58 - 2014-08-05 00:58 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\xp-AntiSpy 2014-08-05 00:58 - 2014-08-05 00:58 - 00000000 ____D () C:\Program Files (x86)\xp-AntiSpy 2014-08-04 22:52 - 2014-08-04 22:41 - 535984318 _____ () C:\Users\userABC_000\Downloads\LBA_1_Master.zip 2014-08-04 20:16 - 2014-08-04 20:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSPP 2014-08-04 20:16 - 2014-08-04 20:16 - 00000000 ____D () C:\Program Files (x86)\PSPP 2014-08-03 11:49 - 2014-08-02 19:36 - 00000000 ____D () C:\Users\userABC_000\Desktop\HMI-Bericht 2014-08-03 00:38 - 2014-08-03 00:37 - 58014125 _____ (Docear) C:\Users\userABC_000\Downloads\docear.exe 2014-08-02 23:59 - 2014-04-15 15:08 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\texstudio 2014-08-02 22:54 - 2014-08-02 21:46 - 00000000 ____D () C:\ProgramData\MySQL 2014-08-02 22:54 - 2014-05-27 19:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL 2014-08-02 21:53 - 2014-05-27 19:30 - 00000000 ____D () C:\Program Files (x86)\MySQL 2014-08-02 21:52 - 2014-08-02 21:52 - 00000000 ____D () C:\Program Files\MySQL 2014-08-02 21:52 - 2014-08-02 21:47 - 131758072 _____ (Bitnami) C:\Users\userABC_000\Downloads\xampp-win32-1.8.3-3-VC11-installer.exe 2014-08-02 21:46 - 2014-08-02 21:46 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MySQL 2014-08-02 21:30 - 2014-08-02 21:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JabRef 2014-08-02 21:29 - 2014-08-02 21:29 - 00000000 ____D () C:\Program Files (x86)\JabRef 2014-08-02 20:52 - 2014-08-02 20:52 - 00173213 _____ () C:\Users\userABC_000\Desktop\Neues Textdokument (3).txt 2014-08-02 19:45 - 2014-08-02 19:45 - 00000729 _____ () C:\Users\Public\Desktop\TeXstudio.lnk 2014-08-02 19:45 - 2014-04-15 15:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeXstudio 2014-08-02 18:41 - 2014-08-02 18:41 - 00354371 _____ () C:\Users\userABC_000\Desktop\biblatex-apa.zip 2014-08-02 18:40 - 2014-08-02 18:40 - 00817714 _____ () C:\Users\userABC_000\Desktop\apacite.zip 2014-08-02 18:38 - 2014-08-02 18:38 - 00597534 _____ () C:\Users\userABC_000\Desktop\apa6.zip 2014-08-02 11:45 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-08-01 02:01 - 2014-08-01 02:01 - 00001381 _____ () C:\Users\userABC_000\Desktop\SbieCtrl.exe - Verknüpfung.lnk 2014-07-31 21:46 - 2014-04-10 20:44 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\Notepad++ 2014-07-31 21:00 - 2014-07-31 20:59 - 00000000 ____D () C:\Users\userABC_000\Desktop\export 2014-07-31 05:10 - 2014-07-31 05:10 - 00001726 _____ () C:\Users\userABC_000\Desktop\vidalia.exe - Verknüpfung.lnk 2014-07-30 00:21 - 2014-04-10 20:44 - 00000000 ____D () C:\Program Files (x86)\Notepad++ 2014-07-29 13:35 - 2014-04-27 18:10 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\BitTorrent 2014-07-29 13:35 - 2014-04-27 18:05 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\uTorrent 2014-07-29 13:34 - 2013-12-13 13:45 - 00000000 ____D () C:\Windows\Panther 2014-07-29 13:16 - 2014-07-29 13:16 - 00002780 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-07-29 13:16 - 2014-07-29 13:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-07-29 13:16 - 2014-07-29 13:16 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-29 11:03 - 2014-04-10 19:52 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\WebStorage 2014-07-29 02:29 - 2014-07-29 02:29 - 00000000 ___RD () C:\Sandbox 2014-07-29 02:28 - 2014-07-29 02:28 - 00001502 _____ () C:\Users\userABC_000\Desktop\firefox.exe - Verknüpfung.lnk 2014-07-29 02:15 - 2014-07-29 02:15 - 00000000 ____D () C:\Users\userABC_000\Desktop\Tor Browser 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Tor 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vidalia Bridge Bundle 2014-07-29 01:53 - 2014-07-29 01:53 - 00000000 ____D () C:\Program Files (x86)\Vidalia Bridge Bundle 2014-07-28 19:17 - 2014-04-10 22:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unreal Development Kit 2014-07-28 18:55 - 2014-07-28 18:55 - 00000000 ___RD () C:\Users\userABC_000\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App 2014-07-28 03:18 - 2014-07-28 03:18 - 00000000 ____D () C:\Users\userABC_000\Desktop\Bericht 2014-07-28 03:17 - 2014-07-28 03:17 - 02699073 _____ () C:\Users\userABC_000\Downloads\Bericht.zip 2014-07-28 03:17 - 2014-07-28 03:17 - 00000209 _____ () C:\Users\userABC_000\Desktop\MBG-Bericht.html 2014-07-27 17:00 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\rescache 2014-07-27 15:51 - 2013-12-13 13:04 - 00807196 _____ () C:\Windows\system32\perfh007.dat 2014-07-27 15:51 - 2013-12-13 13:04 - 00176672 _____ () C:\Windows\system32\perfc007.dat 2014-07-27 15:51 - 2013-12-13 06:09 - 01886820 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-26 23:44 - 2014-07-26 23:44 - 00000000 ____D () C:\Users\Public\CyberLink 2014-07-26 23:41 - 2014-07-26 23:40 - 00000000 ____D () C:\Users\userABC_000\Documents\CyberLink 2014-07-26 23:41 - 2014-07-26 23:40 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\CyberLink 2014-07-26 23:41 - 2014-07-26 23:40 - 00000000 ____D () C:\ProgramData\CyberLink 2014-07-26 17:05 - 2014-04-22 18:56 - 00000000 ____D () C:\Users\userABC_000\Documents\My Games 2014-07-25 17:30 - 2014-07-25 02:25 - 00000000 ____D () C:\Users\userABC_000\Documents\Overlord 2014-07-25 17:11 - 2014-07-25 17:11 - 00000000 ____D () C:\Users\userABC_000\Desktop\x360ce.App-2.1.2.191 2014-07-25 04:36 - 2014-07-10 16:13 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\foobar2000 2014-07-25 01:59 - 2014-07-25 01:58 - 00000000 ____D () C:\Users\userABC_000\Documents\Giana Sisters - Twisted Dreams 2014-07-24 23:52 - 2014-05-28 02:46 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-24 23:52 - 2014-05-28 02:46 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-24 20:07 - 2014-05-28 02:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-24 18:18 - 2014-07-24 18:18 - 00581031 _____ () C:\Users\userABC_000\Desktop\hci-thesis-and-project-report-template.zip 2014-07-24 17:53 - 2014-07-24 17:53 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\MMFApplications 2014-07-24 12:19 - 2014-07-24 12:19 - 00000000 ____D () C:\Users\userABC_000\Desktop\hci-paper-style-report-template 2014-07-24 11:12 - 2014-07-24 11:12 - 00000000 ____D () C:\Users\userABC_000\AppData\Roaming\MiKTeX 2014-07-24 11:11 - 2014-07-24 11:11 - 00000000 ____D () C:\Users\userABC_000\Desktop\hci-thesis-and-project-report-template 2014-07-24 11:03 - 2014-07-24 11:03 - 00000000 ____D () C:\Users\userABC_000\Desktop\OpenSceneGraph-3.2.1 2014-07-24 11:00 - 2014-07-10 16:44 - 00000000 ____D () C:\Users\userABC_000\Desktop\Poster 2014-07-24 10:54 - 2014-07-24 10:53 - 07219212 _____ () C:\Users\userABC_000\Downloads\OpenSceneGraph-3.2.1.zip 2014-07-24 08:44 - 2014-04-10 20:16 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-07-23 13:54 - 2014-07-23 13:03 - 1239299948 _____ (DaveW) C:\Users\userABC_000\Downloads\New_Vision_v1-5.exe 2014-07-23 13:12 - 2014-07-23 13:12 - 00133828 _____ () C:\Users\userABC_000\Downloads\DeusExe-v6.2.zip 2014-07-23 13:12 - 2014-07-23 13:12 - 00111744 _____ () C:\Users\userABC_000\Downloads\dxglr20.zip 2014-07-23 13:12 - 2014-07-23 13:12 - 00109155 _____ () C:\Users\userABC_000\Downloads\dxd3d9r13.zip 2014-07-23 13:10 - 2014-07-23 13:10 - 01732150 _____ () C:\Users\userABC_000\Downloads\DXENB.RAR 2014-07-23 13:09 - 2014-07-23 13:06 - 52787997 _____ () C:\Users\userABC_000\Downloads\HDTPBeta03.zip 2014-07-23 13:08 - 2014-07-23 13:07 - 18363191 _____ (Off Topic Productions) C:\Users\userABC_000\Downloads\HDTP-Release1.exe 2014-07-23 03:30 - 2014-06-18 00:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox.bak 2014-07-22 21:15 - 2014-07-22 21:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-22 20:18 - 2014-07-22 20:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie 2014-07-22 19:23 - 2014-07-22 19:23 - 00000000 ____D () C:\Program Files\Sandboxie 2014-07-20 13:39 - 2014-04-10 19:48 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Packages 2014-07-20 13:12 - 2014-07-20 13:12 - 00381105 _____ () C:\Users\userABC_000\Downloads\UEQ_kit.zip 2014-07-15 21:31 - 2014-07-15 19:51 - 00000000 ____D () C:\Users\userABC_000\Desktop\Imbo 2014-07-14 14:40 - 2014-04-11 11:30 - 00000000 ____D () C:\Users\userABC_000\AppData\Local\Unity 2014-07-13 17:26 - 2014-07-13 17:26 - 00000000 ____D () C:\Users\userABC_000\Desktop\ASE251 2014-07-13 17:25 - 2014-07-13 17:25 - 00011364 _____ () C:\Users\userABC_000\Downloads\ASE251.zip Files to move or delete: ==================== C:\ProgramData\SetStretch.exe C:\ProgramData\SetStretch.VBS Some content of TEMP: ==================== C:\Users\userABC_000\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-08-09 21:32 ==================== End Of Log ============================ --- --- --- |
11.08.2014, 22:33 | #7 |
| Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-08-2014 01 Ran by userABC_000 at 2014-08-11 22:47:51 Running from C:\Users\userABC_000\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: COMODO Antivirus (Enabled - Up to date) {B74CC7D2-B407-E1DC-1033-DD315BCDC8C8} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: COMODO Antivirus (Enabled - Up to date) {0C2D2636-923D-EE52-2A83-E643204A8275} FW: COMODO Firewall (Enabled) {8F7746F7-FE68-E084-3B6C-7404A51E8FB3} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Tools for .Net 3.5 - DEU Lang Pack (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden Tools for .Net 3.5 (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden µTorrent (HKCU\...\uTorrent) (Version: 3.4.1.30888 - BitTorrent Inc.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Age of Empires II: HD Edition (HKLM-x32\...\Steam App 221380) (Version: - Hidden Path Entertainment, Ensemble Studios) Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 20.2.1245.53580 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 20.2.1245.53580 - Alcor Micro Corp.) Hidden Angry Video Game Nerd Adventures (HKLM-x32\...\Steam App 237740) (Version: - FreakZone Games) Anki (HKLM-x32\...\Anki) (Version: - ) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Archeblade (HKLM-x32\...\Steam App 207230) (Version: - CodeBrush Games) ArgoUML 0.34 (HKLM-x32\...\ArgoUML) (Version: 0.34 - ) Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive) ARMA 2 Dedicated Server (HKLM-x32\...\Steam App 33905) (Version: - Bohemia Interactive) Arma 2: DayZ Mod (HKLM-x32\...\Steam App 224580) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead - Dedicated Server (HKLM-x32\...\Steam App 33935) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive) Arma: Cold War Assault (HKLM-x32\...\Steam App 65790) (Version: - Bohemia Interactive) ASUS Backtracker (HKLM-x32\...\{C15C060C-ED1C-49EB-83B3-F7C0FD1CD661}) (Version: 3.0.4 - ASUS) ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.2.7 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 3.0.7 - ASUS) ASUS Screen Saver (HKLM-x32\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 1.0.2 - ASUS) ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 2.2.10 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 2.01.0021 - ASUS) ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 3.1.8 - ASUS) ASUSDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5710.52 - CyberLink Corp.) ASUSDVD (x32 Version: 10.0.5710.52 - CyberLink Corp.) Hidden AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.12.311 - ASUSTEK) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0031 - ASUS) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) Autostart-Manager (HKLM-x32\...\{5C2C73F6-CE73-4A01-868E-7045B7805334}) (Version: 6.02.0000 - Wirth IT Design ) Axis Game Factory (HKLM-x32\...\Steam App 253370) (Version: - Axis Game Factory) AzureTools.Notifications (x32 Version: 2.1.10731.1602 - Microsoft Corporation) Hidden Batman: Arkham Asylum GOTY Edition (HKLM-x32\...\Steam App 35140) (Version: - Rocksteady Studios) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - ) BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - ) Behaviors SDK (Windows Phone) for Visual Studio 2013 (x32 Version: 12.0.50429.0 - Microsoft Corporation) Hidden Behaviors SDK (Windows) for Visual Studio 2013 (x32 Version: 12.0.50429.0 - Microsoft Corporation) Hidden BitTorrent (HKCU\...\BitTorrent) (Version: 7.9.2.32128 - BitTorrent Inc.) Blackwell Bundle (HKLM-x32\...\GOGPACKBLACKWELLBUNDLE_is1) (Version: 2.0.0.9 - GOG.com) Blade of Darkness (HKLM-x32\...\GOGPACKBLADEOFDARKNESS_is1) (Version: 2.0.0.5 - GOG.com) Blend for Visual Studio 2012 (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden Blend for Visual Studio 2012 DEU resources (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden Blend for Visual Studio 2013 (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio 2013 ENU resources (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio Add-in for Adobe FXG Import (x32 Version: 1.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for Silverlight 5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for Windows Phone 8.0 (x32 Version: 3.0.30924.0 - Microsoft Corporation) Hidden Blender (HKLM\...\Blender) (Version: 2.70 - Blender Foundation) Block Story (HKLM-x32\...\Steam App 270110) (Version: - MindBlocks Studio, LLC) BloodRayne (HKLM-x32\...\GOGPACKBLOODRAYNE1_is1) (Version: 2.0.0.5 - GOG.com) Build Tools - amd64 (Version: 12.0.30501 - Microsoft Corporation) Hidden Build Tools - x86 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Build Tools Language Resources - amd64 (Version: 12.0.30501 - Microsoft Corporation) Hidden Build Tools Language Resources - x86 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden CamStudio 2.7.2 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.2 - CamStudio Open Source) CastleMiner Z (HKLM-x32\...\Steam App 253430) (Version: - DigitalDNA Games LLC) CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform) Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios) Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 3.1.05170 - Cisco Systems, Inc.) Cisco AnyConnect Secure Mobility Client (x32 Version: 3.1.05170 - Cisco Systems, Inc.) Hidden CMake 3.0.1, a cross-platform, open-source build system (HKLM-x32\...\CMake 3.0.1) (Version: 3.0.1 - Kitware) COMODO Internet Security Premium (HKLM\...\{D32EF4F9-1506-434E-A813-3D4C0AA50300}) (Version: 7.0.53315.4132 - COMODO Security Solutions Inc.) Company of Heroes (HKLM-x32\...\Steam App 4560) (Version: - Relic Entertainment) Company of Heroes (New Steam Version) (HKLM-x32\...\Steam App 228200) (Version: - Relic) Company of Heroes 2 (HKLM-x32\...\Steam App 231430) (Version: - Relic Entertainment) Complemento do Microsoft Report Viewer para Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Complemento Microsoft Report Viewer para Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Compon. agg. Microsoft Report Viewer per Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Counter-Strike (HKLM-x32\...\Steam App 10) (Version: - Valve) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) Creation Kit (HKLM-x32\...\Steam App 202480) (Version: - bgs.bethsoft.com) CrystalDiskInfo 6.1.12 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.1.12 - Crystal Dew World) Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version: - FromSoftware) DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios) Dead Island: Epidemic (HKLM-x32\...\Steam App 222900) (Version: - Stunlock Studios) DebugMode Wink (HKLM-x32\...\DebugMode Wink) (Version: - ) Desura (HKLM-x32\...\Desura) (Version: 100.56 - Desura) Desura: Chronicles of a Dark Lord: Episode 1 Tides of Fate (HKLM-x32\...\Desura_69904887709728) (Version: Full - Kisareth Studios) Desura: Shattered Hourglass (HKLM-x32\...\Desura_128200478818336) (Version: Full - sawworm) Deus Ex: Game of the Year Edition (HKLM-x32\...\Steam App 6910) (Version: - Ion Storm) Dev-C++ (HKLM-x32\...\Dev-C++) (Version: 5.6.3 - Bloodshed Software) Devenv-Ressourcen für Microsoft Visual Studio 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Diablo II (HKLM-x32\...\Diablo II) (Version: - ) Dino D-Day - Dedicated Server (HKLM-x32\...\Steam App 70010) (Version: - ) Dino D-Day (HKLM-x32\...\Steam App 70000) (Version: - 800 North and Digital Ranch) Dino D-Day SDK (HKLM-x32\...\Steam App 70004) (Version: - ) Divine Divinity (HKLM-x32\...\Steam App 214170) (Version: - Larian Studios) Dotfuscator and Analytics Community Edition (x32 Version: 5.5.4521.29298 - PreEmptive Solutions) Hidden Dotfuscator and Analytics Community Edition (x32 Version: 5.5.4954.46574 - PreEmptive Solutions) Hidden Dotfuscator and Analytics Community Edition Language Pack (x32 Version: 5.5.4521.29298 - PreEmptive Solutions) Hidden Dropbox (HKCU\...\Dropbox) (Version: 2.8.2 - Dropbox, Inc.) Duke Nukem 3D (HKLM-x32\...\GOGPACKDUKE3D_is1) (Version: 2.0.0.85 - GOG.com) Duke3D (HKLM\...\{b5f456c9-720b-410c-8b24-59e92772053b}.sdb) (Version: - ) Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - Trendy Entertainment) Dungeon Siege (HKLM-x32\...\Steam App 39190) (Version: - Gas Powered Games) Dust An Elysian Tail (HKLM-x32\...\{5032E613-6DC9-4750-A02D-FED65F973F5E}) (Version: 1.04 - Humble Hearts LLC) E.Y.E - Dedicated Server (HKLM-x32\...\Steam App 91720) (Version: - ) E.Y.E: Divine Cybermancy (HKLM-x32\...\Steam App 91700) (Version: - Streum On Studio) Enclave (HKLM-x32\...\Steam App 253980) (Version: - Topware) Entity Framework 6.1.0 Tools for Visual Studio 2013 (HKLM-x32\...\{D4635FB4-434D-4663-A4C8-CFC00FA9D24E}) (Version: 12.0.30228.0 - Microsoft Corporation) Entity Framework Designer für Visual Studio 2012 - DEU (HKLM-x32\...\{47AA145C-1698-4C76-A15B-23730399A423}) (Version: 11.1.21009.00 - Microsoft Corporation) EvJO Wallpaper Changer v3.1 (HKLM-x32\...\EvJO Wallpaper Changer_is1) (Version: 3.1 - EvJOSoft.com) Expeditions: Conquistador (HKLM-x32\...\Steam App 237430) (Version: - Logic Artists) Expeditions: Conquistador Editor (HKLM-x32\...\Steam App 297700) (Version: - ) Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version: - Bethesda Game Studios) FlashDevelop (HKLM-x32\...\FlashDevelop) (Version: 4.6.2 - FlashDevelop.org) foobar2000 v1.3.2 (HKLM-x32\...\foobar2000) (Version: 1.3.2 - Peter Pawlowski) Foreign Legion: Buckets of Blood (HKLM-x32\...\Steam App 36000) (Version: - Sakari Indie) Free YouTube to MP3 Converter version 3.12.38.530 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.38.530 - DVDVideoSoft Ltd.) Freemake Video Converter Version 4.1.4 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.4 - Ellora Assets Corporation) Frozen Hearth (HKLM-x32\...\Steam App 257890) (Version: - Epiphany Games) Game Character Hub (HKLM-x32\...\Steam App 292230) (Version: - Sebastien Bini) GeoGebra 4.4 (HKLM-x32\...\GeoGebra 4.4) (Version: 4.4.39.0 - International GeoGebra Institute) Giana Sisters - Twisted Dreams (HKLM-x32\...\Giana Sisters - Twisted Dreams) (Version: 1.0.2 - Black Forest Games) Giana Sisters: Twisted Dreams - Rise of the Owlverlord (HKLM-x32\...\Steam App 246960) (Version: - Black Forest Games) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Git version 1.9.2-preview20140411 (HKLM-x32\...\Git_is1) (Version: 1.9.2-preview20140411 - The Git Development Community) GitHub (HKCU\...\5f7eb300e2ea4ebf) (Version: 1.3.3.1 - GitHub, Inc.) Glary Utilities 2.56.0.1822 (HKLM-x32\...\Glary Utilities_is1) (Version: 2.56.0.1822 - Glarysoft Ltd) GOG.com Downloader version 3.6.0 (HKLM-x32\...\{456A5815-604D-4D72-94DF-346D2B978A59}_is1) (Version: 3.6.0 - GOG.com) Gomo (HKLM-x32\...\GOGPACKGOMO_is1) (Version: 2.0.0.3 - GOG.com) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 36.0.1985.125 - Google Inc.) Google Chrome Canary (HKCU\...\Google Chrome SxS) (Version: 38.0.2119.0 - Google Inc.) Google Drive (HKLM-x32\...\{75939021-3B68-419D-8DC1-E9823BFF9658}) (Version: 1.16.7009.9618 - Google, Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Gothic (HKLM-x32\...\Steam App 65540) (Version: - Piranha – Bytes ) Gothic II: Gold Edition (HKLM-x32\...\Steam App 39510) (Version: - Piranha – Bytes) GPL Ghostscript (HKLM-x32\...\GPL Ghostscript 9.14) (Version: 9.14 - Artifex Software Inc.) Guns of Icarus Online (HKLM-x32\...\Steam App 209080) (Version: - Muse Games) Half-Life (HKLM-x32\...\Steam App 70) (Version: - Valve) Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve) Half-Life SDK (HKLM-x32\...\Steam App 254430) (Version: - ) Half-Life: Blue Shift (HKLM-x32\...\Steam App 130) (Version: - Gearbox Software) Half-Life: Opposing Force (HKLM-x32\...\Steam App 50) (Version: - Gearbox Software) Half-Life: Source (HKLM-x32\...\Steam App 280) (Version: - Valve) Hammerwatch (HKLM-x32\...\GOGPACKHAMMERWATCH_is1) (Version: 2.2.0.5 - GOG.com) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) herdProtect Anti-Malware Scanner (HKLM-x32\...\herdProtectScan) (Version: 1.0 - Reason Company Software Inc.) Hero Siege (HKLM-x32\...\Steam App 269210) (Version: - Elias Viglione) Hotline Miami (HKLM-x32\...\GOGPACKHOTLINEMIAMI_is1) (Version: 2.1.0.6 - GOG.com) HyperCam 2 (HKLM-x32\...\HyperCam 2) (Version: 2.28.01 - Hyperionics Technology LLC) I Have No Mouth, and I Must Scream (HKLM-x32\...\GOGPACKIHAVENOMOUTH_is1) (Version: 2.0.0.7 - GOG.com) IIS 8.0 Express (HKLM\...\{7BF61FA9-BDFB-4563-98AD-FCB0DA28CCC7}) (Version: 8.0.1557 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{9f4f4a9b-eec5-4906-92fe-d1f43ccf5c8d}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb) (Version: - ) IL-2 Sturmovik: 1946 (HKLM-x32\...\Steam App 15320) (Version: - 1C: Maddox Games) Image Resizer for Windows (64 bit) (Version: 3.0.4802.35565 - Brice Lambson) Hidden Image Resizer for Windows (HKLM-x32\...\{69d72156-6582-4556-8637-06f40aa7f85b}) (Version: 3.0.4802.35565 - Brice Lambson) Inkscape 0.48.4 (HKLM-x32\...\Inkscape) (Version: 0.48.4 - ) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{0EC7F9CC-4741-45AE-9F55-6E9343F726F5}) (Version: 1.1.0.36960 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3345 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.31.8.1 - Intel Corporation) Hidden JabRef 2.10 (HKLM-x32\...\JabRef 2.10) (Version: 2.10 - JabRef Team) Jack Orlando Director's Cut (HKLM-x32\...\Steam App 253960) (Version: - Toontraxx Studios) Java 7 Update 67 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417067FF}) (Version: 7.0.670 - Oracle) Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) Java 8 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218000FF}) (Version: 8.0.0 - Oracle Corporation) Java Auto Updater (x32 Version: 2.8.00.132 - Oracle, Inc.) Hidden Java SE Development Kit 8 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0180000}) (Version: 8.0.0 - Oracle Corporation) JavaFX Scene Builder 2.0 (HKLM-x32\...\{B4665EB1-1F7A-44F5-AD07-C20A938E8BC2}) (Version: 2.0 - Oracle) JavaScript Tooling (Version: 11.0.60315 - Microsoft Corporation) Hidden JavaScript Tooling (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Killing Floor (HKLM-x32\...\Steam App 1250) (Version: - Tripwire Interactive) Killing Floor SDK (HKLM-x32\...\Steam App 1260) (Version: - Tripwire Interactive) Kinect for Windows Developer Toolkit v1.8.0 (HKLM\...\{44E46B4E-CB12-42A9-8784-BBE390EB9C0B}) (Version: 1.8.0.572 - Microsoft Corporation) Kinect for Windows Drivers v1.8 (HKLM\...\{AA62B868-5D5C-46CF-BA88-386BE71D4F87}) (Version: 1.8.0.595 - Microsoft Corporation) Kinect for Windows Runtime v1.8 (HKLM\...\{2700FAD3-F82C-4ED1-862C-5F425B2A88E6}) (Version: 1.8.0.595 - Microsoft Corporation) Kinect for Windows SDK v1.8 (HKLM\...\{6702DAC4-51E7-440C-8012-9C0AE9D524DB}) (Version: 1.8.0.595 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation) KnightShift (HKLM-x32\...\Steam App 254060) (Version: - ) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Left 4 Dead (HKLM-x32\...\Steam App 500) (Version: - Valve) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Left 4 Dead 2 Authoring Tools (HKLM-x32\...\Steam App 563) (Version: - Valve) Left 4 Dead 2 Dedicated Server (HKLM-x32\...\Steam App 222860) (Version: - ) Left 4 Dead Authoring Tools (HKLM-x32\...\Steam App 513) (Version: - Valve) Left 4 Dead Dedicated Server (HKLM-x32\...\Steam App 510) (Version: - Valve) Legacy of Kain Soul Reaver (HKLM-x32\...\GOGPACKLEGACYOFKAINSOULREAVER_is1) (Version: 2.0.0.13 - GOG.com) Legends of Aethereus (HKLM-x32\...\Steam App 248410) (Version: - Three Gates) Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 11.5.1.0 - Lightworks) Little Big Adventure (HKLM-x32\...\{3EDBF6B5-E1F2-4B26-9828-367A652E64A9}_is1) (Version: 1.0 - DotEmu) LocalESPC (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden LocalESPC Dev12 (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden LocalESPCui for de-de (x32 Version: 8.59.25584 - Microsoft) Hidden LocalESPCui for en-us (x32 Version: 8.59.29989 - Microsoft) Hidden LocalESPCui for en-us Dev12 (x32 Version: 8.100.25984 - Microsoft) Hidden Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) LoiLo Game Recorder (HKLM\...\{89E4163C-BD19-45A9-BCEB-980741786799}_is1) (Version: 1.1.0.0 - LoiLo inc.) LoiLoScope 2 (HKLM-x32\...\{CAB75FFC-2377-4B95-A8FA-C9234B812A92}_is1) (Version: 2.5.3.2 - LoiLo inc) Magicka (HKLM-x32\...\Steam App 42910) (Version: - Arrowhead Game Studios) Magicka: Wizard Wars (HKLM-x32\...\Steam App 202090) (Version: - Paradox North) Magrunner - Dark Pulse (HKLM-x32\...\GOGPACKMAGRUNNERDP_is1) (Version: 2.0.0.4 - GOG.com) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Maxima 5.31.2 (HKLM-x32\...\Maxima-5.31.2_is1) (Version: 5.31.2 - The Maxima Development Team) Medal of Honor(TM) Multiplayer (HKLM-x32\...\Steam App 47830) (Version: - Electronic Arts) Memory Profiler (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{98B45D1C-6EB1-460D-A87D-2B60678DC105}) (Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (ENU) (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft Advertising SDK for Windows 8.1 - ENU (x32 Version: 8.1.30809.0 - Microsoft Corporation) Hidden Microsoft Advertising SDK for Windows Phone - ENU (x32 Version: 6.2.960.0 - Microsoft Corporation) Hidden Microsoft Advertising SDK for Windows Phone 8.1 XAML - ENU (x32 Version: 8.1.40427.0 - Microsoft Corporation) Hidden Microsoft Advertising Service Extension for Visual Studio (x32 Version: 12.0.40402.0 - Microsoft Corporation) Hidden Microsoft ASP.NET and Web Tools 2013.2 - Visual Studio 2013 (x32 Version: 2.3.50425.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 - DEU (HKLM-x32\...\{07AC2D83-E795-4AD5-970D-B9BD14A1E411}) (Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update - DEU (x32 Version: 3.0.30710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update (x32 Version: 3.0.30710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 (HKLM-x32\...\{DCDEC776-BADD-48B9-8F9A-DFF513C3D7FA}) (Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools - DEU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools - ENU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 - Visual Studio 2013 - ENU (x32 Version: 4.1.21001.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime - DEU (x32 Version: 4.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime (x32 Version: 4.0.20716.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Frameworks and Tools - Visual Studio 2013 - ENU (x32 Version: 5.1.20409.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages - DEU (HKLM-x32\...\{93EEC4E9-EEFE-4027-ACD3-6E8C1D085975}) (Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools - DEU (x32 Version: 1.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools (x32 Version: 1.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages (HKLM-x32\...\{631471BE-DEAB-454B-A9AC-CE3EB42C28B3}) (Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools - DEU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools - ENU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 - Visual Studio 2013 - ENU (x32 Version: 4.1.21001.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 Runtime - DEU (x32 Version: 2.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 Runtime (x32 Version: 2.0.20716.0 - Microsoft Corporation) Hidden Microsoft C++ Azure Mobile SDK for Visual Studio 2013 (x32 Version: 1.0 - Microsoft Corporation) Hidden Microsoft C++ REST SDK for Visual Studio 2013 (x32 Version: 1.0 - Microsoft Corporation) Hidden Microsoft Exchange Web Services Managed API 2.1 (x32 Version: 15.0.847.30 - Microsoft Corporation) Hidden Microsoft Expression Blend SDK for .NET 4 (x32 Version: 2.0.20525.0 - Microsoft Corporation) Hidden Microsoft Expression Blend SDK for Silverlight 4 (x32 Version: 2.0.20525.0 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation) Microsoft Help Viewer 2.0 (HKLM-x32\...\Microsoft Help Viewer 2.0) (Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.0 Language Pack - DEU (HKLM-x32\...\Microsoft Help Viewer 2.0 Language Pack - DEU) (Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 Language Pack - DEU (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 (x32 Version: 2.1.21005 - Microsoft Corporation) Hidden Microsoft Identity Extensions (Version: 2.0.1459.0 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2012 Core (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2012 v3.0 Core (x32 Version: 11.0.60308 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2012 v3.0 CoreRes - DEU (x32 Version: 11.0.60308 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2013 Core (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2013 CoreRes - ENU (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2013 v4.5 Tools (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2013 v4.5 ToolsRes - ENU (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft LightSwitch für Visual Studio 2012 CoreRes - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft LightSwitch v4.5 SDK (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft NuGet - Visual Studio 2012 (x32 Version: 2.0.30625.9003 - Microsoft Corporation) Hidden Microsoft NuGet - Visual Studio 2013 (x32 Version: 2.8.50313.46 - Microsoft Corporation) Hidden Microsoft Office 2013 Developer Tools for Microsoft Visual Studio (x64) - ENU Language Pack (Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft Office 2013 Developer Tools for Microsoft Visual Studio (x64) (Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft Office 365 ProPlus - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 15.0.4631.1004 - Microsoft Corporation) Microsoft Office Developer Tools for Visual Studio (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft Office Developer Tools for Visual Studio ENU Language Pack (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.3.1165.0612 - Microsoft Corporation) Microsoft Portable Library Multi-Targeting Pack (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - chs (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - cht (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - csy (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - deu (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - enu (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - esn (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - fra (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - ita (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - jpn (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - kor (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - plk (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - ptb (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - rus (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - trk (x32 Version: 12.0.30501.00 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On for Visual Studio 2012 (x32 Version: 11.1.2802.16 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On for Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On für Visual Studio 2012 (x32 Version: 11.1.2802.16 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On für Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation) Microsoft Server Speech Platform Runtime (x86) (HKLM-x32\...\{22CB8ED7-DF57-4864-BD04-F63B9CE4B494}) (Version: 11.0.7400.345 - Microsoft Corporation) Microsoft SharePoint 2013 Developer Tools for Visual Studio 2012 Nuget Package (x32 Version: 12.0.30422 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Silverlight 4 SDK - Deutsch (HKLM-x32\...\{8EA792A5-38AA-4F0E-8DFE-D1BAF1145431}) (Version: 4.0.60310.0 - Microsoft Corporation) Microsoft Silverlight 5 SDK - DEU (HKLM-x32\...\{F351AA2C-723C-4CFE-A7CB-8E43AB164F7F}) (Version: 5.0.61118.0 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{58FED865-4F13-408D-A5BF-996019C4B936}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{1B876496-B3A2-4D22-9B12-B608A3FD4B8B}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x64) (HKLM\...\{A6BA243E-85A3-4635-A269-32949C98AC7F}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{6C026A91-640F-4A23-8B68-05D589CC6F18}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{2F7DBBE6-8EBC-495C-9041-46A772F4E311}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{43A5C316-9521-49C3-B9B6-FCE5E1005DF0}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{D411E9C9-CE62-4DBF-9D92-4CB22B750ED5}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL Compiler Service (HKLM\...\{55FABD1D-8BE6-4A1A-958D-52B15F1DFEF0}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{54C5041B-0E91-4E92-8417-AAA12493C790}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL Language Service (HKLM-x32\...\{04DD7AF4-A6D3-4E30-9BB9-3B3670719234}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (11.1.20627.00) (HKLM-x32\...\{F6F1EE45-97E9-48A3-94B2-044B0A3C08D3}) (Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server Data Tools - enu (12.0.30919.1) (HKLM-x32\...\{0D7FCBFB-F478-4D32-901C-83F0BF5A3501}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (11.1.20627.00) (HKLM-x32\...\{CEEDB2C4-46BE-4340-BAB9-F30110D9BBB8}) (Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - enu (12.0.30919.1) (HKLM-x32\...\{6781FF9B-E87D-4A03-9373-A55A288B83FA}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{D434E072-F482-4F52-AB97-7B19DD5DAEB5}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (HKLM\...\{485F4AC6-F79E-4482-A0D2-EDF0CCE1E124}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{070C38AC-05CE-43DF-9A20-141332F6AB2B}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{05FF8209-C4F1-4C77-BC28-791653156D20}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft Team Foundation Server 2013 Update 2 Object Model (x64) (Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Team Foundation Server 2013 Update 2 Object Model Language Pack (x64) - ENU (Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual C++ ARM Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64 Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64 Native Compilers - ENU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64 Native Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-arm Cross Compilers - ENU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-arm Cross Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-x86 Cross Compilers - ENU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x64-x86 Cross Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ x86 Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Designtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 32bit Compilers - DEU Resources (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers - DEU Resources (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers For Windows Phone - ENU Resources (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers For Windows Phone (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Core Libraries (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Core Libraries For Windows Phone (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Extended Libraries (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Microsoft Foundation Class Libraries (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{cb41fc68-4442-4f7f-b22f-8f31c74897ac}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Debug Runtime - 11.0.51106 (Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86-x64 Compilers (x32 Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Designtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 32bit Compilers - ENU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Compilers - ENU Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Core Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Extended Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Microsoft Foundation Class Libraries (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Debug Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Debug Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86-x64 Compilers (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Office Developer Tools (x64) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Office Developer Tools (x64) Language Pack - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50325 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.50330 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU (Version: 10.0.50325 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50325 - Microsoft Corporation) Microsoft Visual Studio 2012 Devenv (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 SharePoint Developer Tools (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 SharePoint Developer Tools DEU Language Pack (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell (Minimum) (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell (Minimum) Interop Assemblies (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell-(Mindest)-Ressourcen (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Tools für SQL Server Compact 4.0 SP1 DEU (x32 Version: 4.0.8876.1 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Leistungserfassungstools - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Leistungserfassungstools (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Vorbereitung (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Devenv (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Devenv Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Diagnostic Tools - amd64 (Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Diagnostic Tools - x86 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Performance Collection Tools - ENU (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Performance Collection Tools (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Preparation (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Profiling Tools (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell (Minimum) (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell (Minimum) Interop Assemblies (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Shell (Minimum) Resources (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 Team Explorer Language Pack - ENU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 VsGraphics Helper Dependencies (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 XAML UI Designer - ENU (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual Studio 2013 XAML UI Designer (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2012 - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2012 (HKLM-x32\...\{3682f425-c5f9-4fd6-b36a-793f4606b68f}) (Version: 11.0.50727.26 - Microsoft Corporation) Microsoft Visual Studio Professional 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2013 - ENU (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2013 (HKLM-x32\...\{6dff50d0-3bc3-4a92-b724-bf6d6a99de4f}) (Version: 12.0.21005.13 - Microsoft Corporation) Microsoft Visual Studio Professional 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Object Model (Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Object Model Language Pack - DEU (Version: 11.0.60315 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Team Explorer (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Team Explorer Language Pack - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 XAML UI Designer Core (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 XAML UI Designer deu Resources (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Web Deploy 3.5 (HKLM\...\{3674F088-9B90-473A-AAC3-20A00D8D810C}) (Version: 3.1237.1762 - Microsoft Corporation) Microsoft Web Deploy dbSqlPackage Provider - DEU (HKLM-x32\...\{86756584-C41A-4CA3-B42D-4768C7720F56}) (Version: 10.3.20225.0 - Microsoft Corporation) Microsoft Web Developer Tools 2012.2 - Visual Studio 2012 - deu (x32 Version: 1.2.40308.0 - Microsoft Corporation) Hidden Microsoft Web Developer Tools 2012.2 - Visual Studio 2012 (x32 Version: 1.2.40308.0 - Microsoft Corporation) Hidden Microsoft Web Platform Installer 4.0 (HKLM\...\{E2B8249D-895C-4685-8C83-00F3B1A13028}) (Version: 4.0.1622 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) MiKTeX 2.9 (HKLM-x32\...\MiKTeX 2.9) (Version: 2.9 - MiKTeX.org) Mirror's Edge (HKLM-x32\...\Steam App 17410) (Version: - DICE) Module Microsoft Report Viewer pour Visual Studio*2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Monday Night Combat (HKLM-x32\...\Steam App 63200) (Version: - Uber Entertainment) Mount & Blade (HKLM-x32\...\Steam App 22100) (Version: - TaleWorlds Entertainment) Mount & Blade: Warband (HKLM-x32\...\Steam App 48700) (Version: - TaleWorlds Entertainment) Mozilla Firefox 31.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 de)) (Version: 31.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) MySQL Documents 5.6 (HKLM-x32\...\{790BC099-47CC-4215-9BF3-B20AC3D348B2}) (Version: 5.6.19 - Oracle Corporation) MySQL Examples and Samples 5.6 (HKLM-x32\...\{8934A43E-D901-4337-8313-0C084FBB8ADE}) (Version: 5.6.19 - Oracle Corporation) MySQL Installer (HKLM-x32\...\{F0A890B5-DE46-4468-A1DF-8F4DE5C478D0}) (Version: 1.3.6.0 - Oracle Corporation) MySQL Server 5.6 (HKLM\...\{FB2E13E5-05CE-4C27-B645-A6FB7D0AB412}) (Version: 5.6.19 - Oracle Corporation) MySQL Workbench 6.1 CE (HKLM-x32\...\{207EB27E-0075-4CFD-8340-A5E386EB85F8}) (Version: 6.1.6 - Oracle Corporation) Narcissu 1st & 2nd (HKLM-x32\...\Steam App 264380) (Version: - stage-nana) Natural Selection 2 (HKLM-x32\...\Steam App 4920) (Version: - Unknown Worlds Entertainment) Nether (HKLM-x32\...\Steam App 247730) (Version: - Phosphor Games) nFringe 1.3 (1.3.0.2) (HKLM-x32\...\{E5ADEF77-21D0-458C-84CE-8F0303874959}) (Version: 1.3.0.2 - Pixel Mine, Inc.) Nitro Reader 3 (HKLM\...\{4756C731-B54E-451A-9AF1-86E8AB1BEBBB}) (Version: 3.5.6.5 - Nitro) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.7 - Notepad++ Team) NVIDIA Control Panel 332.50 (Version: 332.50 - NVIDIA Corporation) Hidden NVIDIA Graphics Driver 332.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 332.50 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.142.992 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Optimus Update 11.10.11 (Version: 11.10.11 - NVIDIA Corporation) Hidden NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA PhysX (Legacy) (HKLM-x32\...\{6F9D5A0B-202C-4161-BC7F-0664EA39E7E7}) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Update Core (Version: 11.10.11 - NVIDIA Corporation) Hidden Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4631.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4631.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4631.1004 - Microsoft Corporation) Hidden Omerta Pack (HKLM-x32\...\GOGPACKOMERTA_is1) (Version: 2.2.0.10 - GOG.com) One Finger Death Punch (HKLM-x32\...\Steam App 264200) (Version: - Silver Dollar Games) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) Open XML SDK 2.5 for Microsoft Office (x32 Version: 2.5.5631 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenVPN 2.3.4-I001 (HKLM-x32\...\OpenVPN) (Version: 2.3.4-I001 - ) Operation Flashpoint: Dragon Rising (HKLM-x32\...\Steam App 12830) (Version: - Codemasters Studios) ORION: Dino Horde (HKLM-x32\...\Steam App 104900) (Version: - Spiral Game Studios) ORION: Dino Horde Dedicated Server (HKLM-x32\...\Steam App 213040) (Version: - ) Overlord (HKLM-x32\...\Steam App 11450) (Version: - Triumph Studios) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.) Papers, Please (HKLM-x32\...\Steam App 239030) (Version: - 3909) Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games) Patrician III (HKLM-x32\...\Steam App 33570) (Version: - Ascaron Entertainment ltd.) Port Royale 3 (HKLM-x32\...\Steam App 205610) (Version: - Gaming Minds) Portal (HKLM-x32\...\Steam App 400) (Version: - Valve) POSTAL (HKLM-x32\...\Steam App 232770) (Version: - Running With Scissors) Postal 2 Share The Pain (HKLM-x32\...\GOGPACKPOSTAL2STP_is1) (Version: 2.0.0.6 - GOG.com) POV-Ray for Windows v3.7 (HKCU\...\POV-Ray for Windows v3.7) (Version: 3.7 - Persistence of Vision Raytracer Pty. Ltd.) PreEmptive Analytics Client German Language Pack (x32 Version: 1.0.2180.1 - PreEmptive Solutions) Hidden PreEmptive Analytics Visual Studio Components (x32 Version: 1.0.2180.1 - PreEmptive Solutions) Hidden PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.3197.1 - PreEmptive Solutions) Hidden Prerequisites for SSDT (HKLM-x32\...\{35C1D9D6-87C0-46A3-B1B4-EDBCC063221C}) (Version: 11.1.3000.0 - Microsoft Corporation) Project Suite Management Utility (HKCU\...\6335bccc57bbf458) (Version: 3.0.0.0 - Mavrik Games) PSPP (HKLM-x32\...\PSPP) (Version: 0.8.3 - Free Software Foundation, Inc.) Psychonauts (HKLM-x32\...\Steam App 3830) (Version: - Double Fine Productions) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.992 - Even Balance, Inc.) Python Tools Redirection Template (x32 Version: 1.1 - Microsoft Corporation) Hidden Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros) QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) QUIZPro V4.53 (HKLM-x32\...\QUIZPro_is1) (Version: QUIZPro V.4.53 - Litschi) Razer Surround (HKLM-x32\...\Razer Surround) (Version: 1.05.08 - Razer Inc.) Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.13 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.19.726.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7116 - Realtek Semiconductor Corp.) Red Orchestra 2: Heroes of Stalingrad - Single Player (HKLM-x32\...\Steam App 236830) (Version: - ) Red Orchestra Windows Dedicated Server (HKLM-x32\...\Steam App 223240) (Version: - ) Restaurant Empire II (HKLM-x32\...\Steam App 32900) (Version: - Enlight Software Limited ) Rise of Incarnates (HKLM-x32\...\Steam App 258160) (Version: - ) Rise of the Argonauts (HKLM-x32\...\Steam App 12770) (Version: - Liquid Entertainment) Rising Storm/Red Orchestra 2 Multiplayer (HKLM-x32\...\Steam App 35450) (Version: - Tripwire Interactive) Robocraft (HKLM-x32\...\Steam App 301520) (Version: - Freejam) RPG Maker VX Ace (HKLM-x32\...\Steam App 220700) (Version: - Enterbrain) RPG Maker XP (HKLM-x32\...\Steam App 235900) (Version: - Degica) Runaway: A Road Adventure (HKLM-x32\...\Steam App 7210) (Version: - Pendulo Studios) Rush Bros (HKLM-x32\...\Steam App 234490) (Version: - XYLA Entertainment) Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition) Saira (HKLM-x32\...\Steam App 48900) (Version: - Nicklas Nygren) Sanctum (HKLM-x32\...\Steam App 91600) (Version: - Coffee Stain Studios) Sandboxie 4.12 (64-bit) (HKLM\...\Sandboxie) (Version: 4.12 - Sandboxie Holdings, LLC) Sanitarium (HKLM-x32\...\GOGPACKSANITARIUM_is1) (Version: 2.0.0.25 - GOG.com) Scribblenauts Unlimited (HKLM-x32\...\Steam App 218680) (Version: - 5th Cell Media) Scribus 1.4.4 (64bit) (HKLM\...\Scribus 1.4.4) (Version: 1.4.4 - The Scribus Team) Secure Download Manager (HKLM-x32\...\{C58626D6-7EBD-460D-8B6C-75B3C3464879}) (Version: 3.1.60 - Kivuto Solutions Inc.) SecureW2 EAP Suite 1.1.3 for Windows (HKLM-x32\...\SecureW2 EAP Suite) (Version: - ) Septerra Core (HKLM-x32\...\GOGPACKSEPTERRACORE_is1) (Version: 2.0.0.10 - GOG.com) Shadowrun Returns (HKLM-x32\...\Steam App 234650) (Version: - Harebrained Schemes) SharePoint Client Components (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden SharePoint Client Components (Version: 16.0.2617.1200 - Microsoft Corporation) Hidden Shutdown Timer (HKLM\...\{0B1BBEE3-C10D-44BE-A6BE-EEC867315F87}) (Version: 3.3.4 - Sinvise Systems) Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.) Sid Meier's Pirates! (HKLM-x32\...\Steam App 3920) (Version: - Firaxis Games) Sid Meier's Railroads! (HKLM-x32\...\Steam App 7600) (Version: - Firaxis Games) SimpleScreenshot 1.40 (HKLM-x32\...\SimpleScreenshot) (Version: - ) Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.) SmartGit/Hg 5.0.9 (HKLM-x32\...\SmartGit/Hg 5_is1) (Version: - syntevo GmbH) Sniper Elite V2 (HKLM-x32\...\Steam App 63380) (Version: - Rebellion) Sniper Elite: Zombie Army (HKLM-x32\...\Steam App 235700) (Version: - Rebellion) Sniper Elite: Zombie Army 2 (HKLM-x32\...\Steam App 247930) (Version: - Rebellion) Source SDK (HKLM-x32\...\Steam App 211) (Version: - Valve) Space Hack (HKLM-x32\...\Steam App 315260) (Version: - Rebelmind) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.3.39 - Safer-Networking Ltd.) Spyware Terminator 2012 (HKLM-x32\...\{56736259-613E-4A3B-B428-6235F2E76F44}_is1) (Version: 3.0.0.82 - Crawler.com) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Super Hexagon (HKLM-x32\...\Steam App 221640) (Version: - Terry Cavanagh) System Shock 2 (HKLM-x32\...\Steam App 238210) (Version: - Irrational Games) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) Team Explorer for Microsoft Visual Studio 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) Team Fortress Classic (HKLM-x32\...\Steam App 20) (Version: - Valve) TeXstudio 2.8.2 (HKLM-x32\...\TeXstudio_is1) (Version: 2.8.2 - Benito van der Zander) The Bard's Tale (HKLM-x32\...\GOGPACKBARDSTALE_is1) (Version: 2.0.0.7 - GOG.com) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) The Ship (HKLM-x32\...\Steam App 2400) (Version: - Outerlight Ltd.) The Ship Dedicated Server (HKLM-x32\...\Steam App 2403) (Version: - Outerlight) The Tower (HKLM-x32\...\Steam App 310870) (Version: - Narrow Monolith) The Witcher Enhanced Edition Director's Cut (HKLM-x32\...\GOGPACKWITCHEREEDC_is1) (Version: 2.0.0.12 - GOG.com) Theme Hospital (HKLM-x32\...\GOGPACKTHEMEHOSPITAL_is1) (Version: 2.0.0.5 - GOG.com) They Bleed Pixels (HKLM-x32\...\Steam App 211260) (Version: - Spooky Squid Games Inc.) Tiny and Big: Grandpa's Leftovers (HKLM-x32\...\Steam App 205910) (Version: - Black Pants Game Studio) Tomb Raider: Underworld (HKLM-x32\...\Steam App 8140) (Version: - Crystal Dynamics) Tor 0.2.4.22 (HKLM-x32\...\Tor) (Version: - ) Torchlight II (HKLM-x32\...\Steam App 200710) (Version: - Runic Games) Toribash (HKLM-x32\...\Steam App 248570) (Version: - Nabi Studios) Tropico 4 (HKLM-x32\...\Steam App 57690) (Version: - Haemimont Games) TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation) Tunngle beta (HKLM-x32\...\Tunngle beta_is1) (Version: - Tunngle.net GmbH) Two Worlds: Epic Edition (HKLM-x32\...\Steam App 1930) (Version: - Reality Pump Studios) TypeScript Power Tool (x32 Version: 1.0.1.0 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2013 (x32 Version: 1.0.1.0 - Microsoft Corporation) Hidden Ultionus: A Tale of Petty Revenge (HKLM-x32\...\Steam App 279160) (Version: - Last Dimension) Unity (HKLM-x32\...\Unity) (Version: 4.5.2f1 - Unity Technologies ApS) Unity Web Player (HKCU\...\UnityWebPlayer) (Version: 4.5.2f1 - Unity Technologies ApS) Unreal Development Kit (HKLM-x32\...\Steam App 13260) (Version: - Epic Games) Unreal Development Kit: 2013-07 (HKLM\...\UDK-4cb5aa12-6b76-46d8-b2ed-fa02569e5804) (Version: - Epic Games, Inc.) Unreal Development Kit: 2013-07 (HKLM\...\UDK-6e3cb988-ef1f-4c93-9ffd-5d9758cd5a07) (Version: - Epic Games, Inc.) Unreal Development Kit: 2013-07 (HKLM\...\UDK-99dd33b7-a8c9-4121-bb5b-2d11e1bf6e64) (Version: - Epic Games, Inc.) Unreal Development Kit: 2013-09 (HKLM\...\UDK-4507e662-e8db-4415-b08e-3d68c58073a6) (Version: - Epic Games, Inc.) Unreal Engine (HKLM\...\{0EB63BF4-FE9C-4F79-AF61-A2711CA7FD30}) (Version: 1.1.2.0 - Epic Games, Inc.) Unreal X-Editor - Free IDE for UnrealScript (HKLM-x32\...\Unreal X-Editor 3.1.5) (Version: 3.1.5 - Dynamic Effects) Unreal X-Editor (x32 Version: 3.1.5 - Dynamic Effects) Hidden Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Update for Microsoft Visual Studio 2012 (KB2781514) (HKLM-x32\...\{56ef8912-352f-4fab-9c73-6f1c92a7127f}) (Version: 11.0.51219 - Microsoft Corporation) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Vectorian Giotto 3.0.0 (HKLM-x32\...\Vectorian Giotto_is1) (Version: - Vectorian Inc.) Vidalia 0.2.21 (HKLM-x32\...\Vidalia) (Version: - ) Visual F# 3.1 SDK (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Visual F# 3.1 VS (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Visual Studio 2012 Prerequisites - DEU Language Pack (Version: 11.0.50727 - Microsoft Corporation) Hidden Visual Studio 2012 Prerequisites (Version: 11.0.50727 - Microsoft Corporation) Hidden Visual Studio 2012 Update 2 (KB2707250) (HKLM-x32\...\{2fba7dd0-b8eb-4185-aea3-e6910d3f8102}) (Version: 11.0.60315 - Microsoft Corporation) Visual Studio 2012 Verification SDK (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Visual Studio 2013 Prerequisites - ENU Language Pack (Version: 12.0.21005 - Microsoft Corporation) Hidden Visual Studio 2013 Prerequisites (Version: 12.0.21005 - Microsoft Corporation) Hidden Visual Studio 2013 Update 2 (KB2829760) (HKLM-x32\...\{3c348532-c3bd-4bae-a928-7b555f8c808f}) (Version: 12.0.30501 - Microsoft Corporation) Visual Studio 2013 的 Microsoft Report Viewer 附加元件 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Visual Studio 2013용 Microsoft Report Viewer 추가 기능 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden Visual Studio Extensions for Windows Library for JavaScript (x32 Version: 1.0.9201.20602 - Microsoft Corporation) Hidden Visual Studio Extensions for Windows Library for JavaScript (x32 Version: 2.1.30501.00 - Microsoft Corporation) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) VS Update core components (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden VVVVVV (HKLM-x32\...\GOGPACKVVVVVV_is1) (Version: 2.0.0.1 - GOG.com) War of the Roses (HKLM-x32\...\Steam App 42160) (Version: - Fatshark) Warcraft III (HKLM-x32\...\Warcraft III) (Version: - ) Warcraft III: All Products (HKCU\...\Warcraft III) (Version: - ) WCF Data Services 5.0 (for OData v3) DEU Language Pack (x32 Version: 5.0.50628.0 - Microsoft Corporation) Hidden WCF Data Services 5.0 (for OData v3) Primary Components (x32 Version: 5.0.50628.0 - Microsoft Corporation) Hidden WCF Data Services 5.6.0 Runtime (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2012 (x32 Version: 5.0.50710.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2013 (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Visual Studio 11 DEU Language Pack (x32 Version: 5.0.50710.0 - Microsoft Corporation) Hidden WCF RIA Services V1.0 SP2 (HKLM-x32\...\{5D8DD6A8-C4D7-4554-93F9-F1CC28C72600}) (Version: 4.1.62812.0 - Microsoft Corporation) WebStorage (HKLM-x32\...\WebStorage) (Version: 2.1.8.381 - ASUS Cloud Corporation) WildTangent Games App (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-asus) (Version: 4.0.10.25 - WildTangent) Windows 8 Development Essentials (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Windows App Certification Kit Native Components (Version: 8.100.26629 - Microsoft Corporation) Hidden Windows App Certification Kit x64 (x32 Version: 8.100.26695 - Microsoft Corporation) Hidden Windows Azure Mobile Services SDK (x32 Version: 1.0.20401.0 - Microsoft Corporation) Hidden Windows Azure Mobile Services Tools for Visual Studio - v1.1 (x32 Version: 1.1.20407.1601 - Microsoft Corporation) Hidden Windows Azure Shared Components for Microsoft Visual Studio 2013 - v1.1 (x32 Version: 1.1.20410.1601 - Microsoft Corporation) Hidden Windows Azure Tools for LightSwitch for Visual Studio 2013 - March 2014 Update - v2.2 (x32 Version: 2.2.20311.1602 - Microsoft) Hidden Windows Azure Tools for LightSwitch for Visual Studio 2013 - v2.1 (x32 Version: 2.1.10909.1601 - Microsoft) Hidden Windows Azure Tools for LightSwitch HTML Client for Visual Studio 2012 (x32 Version: 1.8.60301.1601 - Microsoft) Hidden Windows Azure Tools für LightSwitch HTML Client für Visual Studio 2012 (DEU) (x32 Version: 1.8.60301.1601 - Microsoft) Hidden Windows Driver Package - ASUS (ATP) Mouse (01/07/2014 1.0.0.197) (HKLM\...\2BEE838DC3D664A0CAB23AEA0332BB3877ED0685) (Version: 01/07/2014 1.0.0.197 - ASUS) Windows Phone 8.0 Emulation Host (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Windows Phone 8.0 Emulation Images (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Windows Phone 8.0 Emulation Images (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.0 Managed SDK Profiler (ARM) (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Windows Phone 8.0 Managed SDK Profiler (X86) (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Windows Phone 8.0 Tools for Visual Studio 2013 - ENU Language Pack (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.0 Tools for Visual Studio 2013 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.1 Emulators - ENU (HKLM-x32\...\{940596e5-652a-4970-8a5a-492e73ed0fbb}) (Version: 12.0.30501.0 - Microsoft Corporation) Windows Phone 8.1 SDK - ARM (x32 Version: 8.1.12358 - Microsoft Corporation) Hidden Windows Phone 8.1 SDK - Desktop (x32 Version: 8.1.12358 - Microsoft Corporation) Hidden Windows Phone 8.1 SDK - Images (x32 Version: 8.1.12358 - Microsoft Corporation) Hidden Windows Phone 8.1 SDK - x64 (Version: 8.1.12358 - Microsoft Corporation) Hidden Windows Phone 8.1 SDK - x86 (x32 Version: 8.1.12358 - Microsoft Corporation) Hidden Windows Phone 8.1 Tools for Visual Studio 2013 - ENU (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.1 Tools for Visual Studio 2013 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.1 Tools for Visual Studio Professional 2013 - ENU (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone 8.1 Tools for Visual Studio Professional 2013 (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone app for desktop (HKLM-x32\...\{19773614-FC22-4ACC-AAA3-E6BDA81ACF92}) (Version: 1.1.2726.0 - Microsoft Corporation) Windows Phone Emulator 8.0 Configurator (x32 Version: 11.0.60830 - Microsoft Corporation) Hidden Windows Phone Emulator 8.1 Configurator (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone SDK 8.0 Assemblies (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Windows Phone SDK 8.0 Assemblies (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Phone Tools Finalizer (Version: 11.0.60610 - Microsoft Corporation) Hidden Windows Phone Tools Finalizer (Version: 12.0.30501 - Microsoft Corporation) Hidden Windows Runtime Intellisense Content - de-de (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Runtime Intellisense Content - en-us (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit (x32 Version: 8.100.26695 - Microsoft Corporation) Hidden Windows Software Development Kit (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x64 Remote (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x64 Remote (Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps (x32 Version: 8.100.26695 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (Version: 8.100.26695 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (x32 Version: 8.100.26695 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows XP Targeting with C++ (Version: 11.0.51106 - Microsoft Corporation) Hidden Windows XP Targeting with C++ (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.42.0 - ASUS) Wings 3D 1.5.2 (HKLM-x32\...\Wings 3D 1.5.2) (Version: - ) Wizardry 8 (HKLM-x32\...\GOGPACKWIZARDRY8_is1) (Version: 2.0.0.6 - GOG.com) Workflow Manager Client 1.0 (Version: 2.0.40131.0 - Microsoft Corporation) Hidden Workflow Manager Tools 1.0 for Visual Studio (Version: 2.0.40326.0 - Microsoft Corporation) Hidden World War 2 Time of Wrath (HKLM-x32\...\World War 2 Time of Wrath) (Version: 1.91 - Wastelands Interactive) Worms Revolution (HKLM-x32\...\Steam App 200170) (Version: - Team17 Digital Ltd.) XAMPP (HKLM-x32\...\xampp) (Version: 1.8.3-4 - Bitnami) xp-AntiSpy 3.98-2 (HKLM-x32\...\xp-AntiSpy) (Version: - Christian Taubenheim) Надстройка Microsoft Report Viewer для Visual Studio 2013 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden 用于 Visual Studio 2013 的 Microsoft 报告查看器加载项 (x32 Version: 11.1.3411.3 - Microsoft Corporation) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\userABC_000\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\USERS\userABC_000\APPDATA\LOCAL\GOOGLE\UPDATE\1.3.24.15\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{D45F043D-F17F-4e8a-8435-70971D9FA46D}\InprocServer32 -> D:\Multimedia\3D\Blender\BlendThumb64.dll () CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\USERS\userABC_000\APPDATA\LOCAL\GOOGLE\UPDATE\1.3.24.15\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\userABC_000\AppData\Local\Microsoft\SkyDrive\17.3.1165.0612\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\userABC_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-110364190-1643542413-822559574-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\userABC_000\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File ==================== Restore Points ========================= ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {071024A5-93D2-41B7-9525-91BF42DCCD6F} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2013-10-07] (ASUS) Task: {07BCA3E5-7C0E-4CF7-A8AD-7E2476A252C0} - System32\Tasks\Microsoft Office 15 Sync Maintenance for LORDHELIX-userABC_000 LordHelix => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-06-03] (Microsoft Corporation) Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {0E288CFE-9C9F-4037-944C-A2989F09A82E} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-06-10] (Microsoft Corporation) Task: {1CBAB33D-8954-4ED6-BEA9-2EFA30975FEF} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {256676FD-DD7D-487D-9DB3-C71BED9917EC} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {33F2DEB3-218A-4624-A39C-F176AE0BF798} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-21] (Google Inc.) Task: {34F5532B-4E91-42EC-B0BE-AD854CB7C644} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {373FD8EC-A4A0-4676-B86B-C0696870283C} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {378CABA3-2190-443B-AFC2-61FDEEC7141E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-21] (Google Inc.) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {54890C1D-6B93-4DA6-AEFC-FA0F40FF6D16} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: {54AAF528-8B26-4C6B-A73E-B7858501D9DC} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-05-20] (Microsoft Corporation) Task: {641A0447-73C2-4B9E-B312-2773444E6CC1} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-05-20] (Microsoft Corporation) Task: {69011004-E082-42C3-A532-99906A186A89} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation) Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73A0D382-EF91-465B-859F-B34DFE5C9BF0} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-06-19] (Microsoft Corporation) Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {7A9D3515-E458-459B-8634-27759B414B41} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2014-02-13] (AsusTek) Task: {7D8A9A68-E93F-45D9-832C-A8F531C4B612} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload Task: {81EF2D0A-5662-4260-986A-7C09FF011FAD} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe [2013-11-04] () Task: {83513A46-3119-428C-A0C2-713975AA3DF1} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {9D80D9D4-40EF-4903-99B3-F74C3ABE5B53} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {A1381A5E-2FC4-45C2-A801-FCEEBC97AD76} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {A204C26D-D7AB-4389-9F8B-E4E0754286A4} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86) [2014-08-11] () Task: {AC9196CF-455F-4584-BD06-0B1DD1F17EE1} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86) [2014-08-11] () Task: {B2CDB367-5C1E-44E1-9165-6C247DCE6A5F} - System32\Tasks\GlaryInitialize => C:\Program Files (x86)\Glary Utilities\initialize.exe [2013-05-27] (Glarysoft Ltd) Task: {B572FD34-4166-439A-9D4B-998571648E73} - System32\Tasks\ASUS Splendid ColorU => C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [2013-10-07] (ASUSTeK Computer Inc.) Task: {BD6C4F69-E43F-4043-8425-C26BB3551A2F} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {C2135F2D-2123-4198-8E96-876BC306760B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001UA => C:\Users\userABC_000\AppData\Local\Google\Update\GoogleUpdate.exe [2014-04-11] (Google Inc.) Task: {C53289E1-E762-4BAA-B175-EA6229D2A566} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-110364190-1643542413-822559574-1001 => %localappdata%\Microsoft\SkyDrive\SkyDrive.exe Task: {C82ECEBD-E995-4DD4-BD8C-FAF35B8174CC} - System32\Tasks\P4GIntlCtrl => C:\Program Files\ASUS\P4G\IntlDPST.exe [2014-01-03] () Task: {CC32AE1E-981E-4201-B5D7-4FBA0E6F79F2} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2014-01-16] (ASUSTek Computer Inc.) Task: {CD59E4CD-4542-4273-B698-C134F8317725} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2013-11-27] () Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {D9230597-8038-4237-A77A-7CBA5CA77D45} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {DA929173-9492-4BCD-A604-EAB0FC9F7D35} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2014-01-03] (ASUS) Task: {DF9CA9B8-D4FC-487F-8914-9BBFFCC3B25A} - System32\Tasks\{31DDBD37-5DB7-4030-8064-10B0CAA806C3} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2014-03-25] (COMODO) Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {E86097B7-310E-4295-B371-8FBC2548B4C1} - System32\Tasks\CCleanerSkipUAC => C:\PROGRAM FILES\CCLEANER\CCLEANER.EXE [2014-07-23] (Piriform Ltd) Task: {EA3218C4-26B1-442C-BDDC-1F5D2A4A238E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001Core => C:\Users\userABC_000\AppData\Local\Google\Update\GoogleUpdate.exe [2014-04-11] (Google Inc.) Task: {EB573403-3A19-4E8E-BECE-3D753D2E27E3} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: {FBD2DADA-4B75-4A80-AE6F-4CC5CA95836C} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\SYSTEM32\MRT.EXE [2014-07-09] (Microsoft Corporation) Task: C:\Windows\Tasks\GlaryInitialize.job => C:\Program Files (x86)\Glary Utilities\initialize.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001Core.job => C:\Users\userABC_000\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-110364190-1643542413-822559574-1001UA.job => C:\Users\userABC_000\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-03-19 08:10 - 2014-01-24 08:27 - 00117536 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-04-22 17:14 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-05-06 13:04 - 2014-05-06 13:04 - 12941824 _____ () C:\Program Files\MySQL\MySQL Server 5.6\bin\mysqld.exe 2014-04-24 00:25 - 2014-04-24 00:25 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-01-03 19:26 - 2014-01-03 19:26 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll 2014-01-03 19:26 - 2014-01-03 19:26 - 00028672 _____ () C:\Program Files\ASUS\P4G\plctrl.dll 2014-05-12 11:49 - 2014-05-12 11:49 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2013-04-15 18:39 - 2013-04-15 18:39 - 00073424 _____ () C:\Program Files\COMODO\COMODO Internet Security\scanners\smart.cav 2014-06-11 05:34 - 2014-06-11 05:34 - 00063400 _____ () C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\zlib1.dll 2014-06-21 05:04 - 2014-04-25 14:11 - 00109400 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-06-21 05:04 - 2014-04-25 14:11 - 00167768 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-06-21 05:04 - 2014-04-25 14:11 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl 2014-06-21 05:04 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll 2014-06-21 05:04 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2013-09-09 20:23 - 2013-09-09 20:23 - 00162816 _____ () C:\Program Files (x86)\ASUS\Splendid\CCTAdjust.dll 2013-10-08 22:41 - 2013-10-08 22:41 - 00037968 _____ () C:\Program Files (x86)\ASUS\Splendid\DetectDisplayDC.dll 2014-06-19 13:43 - 2014-06-19 13:43 - 00316584 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\AppVIsvStream32.dll 2014-03-19 07:58 - 2013-09-16 14:17 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\userABC_000\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run: => "Start WingMan Profiler" HKLM\...\StartupApproved\Run32: => "WebStorage" HKLM\...\StartupApproved\Run32: => "RemoteControl10" HKLM\...\StartupApproved\Run32: => "APSDaemon" HKLM\...\StartupApproved\Run32: => "Cisco AnyConnect Secure Mobility Agent for Windows" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKCU\...\StartupApproved\StartupFolder: => "Dropbox.lnk" HKCU\...\StartupApproved\Run: => "GoogleDriveSync" HKCU\...\StartupApproved\Run: => "Google Update" HKCU\...\StartupApproved\Run: => "Desura" HKCU\...\StartupApproved\Run: => "SandboxieControl" HKCU\...\StartupApproved\Run: => "Vidalia" ==================== Faulty Device Manager Devices ============= Name: TAP-Win32 Adapter V9 (Tunngle) #2 Description: TAP-Win32 Adapter V9 (Tunngle) Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 (Tunngle) Service: tap0901t Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: TAP-Windows Adapter V9 Description: TAP-Windows Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Windows Provider V9 Service: tap0901 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: vpnva Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== System errors: ============= Error: (08/11/2014 10:45:54 PM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Error: (08/11/2014 10:45:54 PM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Error: (08/11/2014 10:42:46 PM) (Source: SbieDrv) (EventID: 1412) (User: ) Description: SBIE1412 Im Text: [DefaultBox] \??\%SystemDrive%\Sandbox\%USER%\%SANDBOX% Error: (08/11/2014 10:42:46 PM) (Source: SbieDrv) (EventID: 1406) (User: ) Description: SBIE1406 Falsche oder ungültige Erweiterung für SystemDrive: [C0000189] Error: (08/11/2014 10:42:42 PM) (Source: SbieDrv) (EventID: 1412) (User: ) Description: SBIE1412 Im Text: [DefaultBox] \??\%SystemDrive%\Sandbox\%USER%\%SANDBOX% Error: (08/11/2014 10:42:42 PM) (Source: SbieDrv) (EventID: 1406) (User: ) Description: SBIE1406 Falsche oder ungültige Erweiterung für SystemDrive: [C0000189] Error: (08/11/2014 05:15:43 PM) (Source: volsnap) (EventID: 36) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. Error: (08/11/2014 04:14:39 PM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Error: (08/11/2014 04:14:39 PM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Error: (08/11/2014 04:10:52 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Spybot-S&D 2 Security Center Service" ist vom Dienst "Sicherheitscenter" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2014-08-11 22:43:28.148 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-11 16:10:37.347 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-11 14:49:50.086 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-11 08:57:38.743 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-11 04:12:03.055 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-11 02:35:41.207 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-10 14:21:52.323 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-08-10 14:01:34.625 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\cmdcsr.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-08-10 14:01:34.348 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\cmdcsr.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-08-10 14:01:33.774 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\cmdcsr.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Percentage of memory in use: 23% Total physical RAM: 8068.13 MB Available physical RAM: 6212.06 MB Total Pagefile: 16260.13 MB Available Pagefile: 13744.47 MB Total Virtual: 131072 MB Available Virtual: 131071.83 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:372.6 GB) (Free:160.2 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (DATA) (Fixed) (Total:537.8 GB) (Free:442.75 GB) NTFS Drive e: (Data1) (Fixed) (Total:465.75 GB) (Free:45.9 GB) NTFS Drive f: (Data2) (Fixed) (Total:465.76 GB) (Free:465.59 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 932 GB) (Disk ID: 64E9A2ED) Partition: GPT Partition Type. ======================================================== Disk: 1 (Size: 932 GB) (Disk ID: C3BEB591) Partition: GPT Partition Type. ==================== End Of Log ============================ Code:
ATTFilter Results of screen317's Security Check version 0.99.86 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Defender COMODO Antivirus Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` xp-AntiSpy 3.98-2 Spyware Terminator 2012 Spybot - Search & Destroy Visual Studio Extensions for Windows Library for JavaScript Java 7 Update 67 Java 8 Visual Studio Extensions for Windows Library for JavaScript Java SE Development Kit 8 JavaScript Tooling JavaFX Scene Builder 2.0 JavaScript Tooling Java version out of Date! Adobe Flash Player 14.0.0.145 Mozilla Firefox (31.0) Google Chrome 35.0.1916.153 Google Chrome 36.0.1985.125 ````````Process Check: objlist.exe by Laurent```````` Spybot Teatimer.exe is disabled! Comodo Firewall cmdagent.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` |
12.08.2014, 17:47 | #8 |
/// the machine /// TB-Ausbilder | Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) Java updaten. Was gibt es denn aktuell noch an Problemen?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
12.08.2014, 20:40 | #9 |
| Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) Hi, danke für die Hilfe. Sicht- oder Spürbare Probleme gibt es keine. Kann ich davon ausgehen, dass das System jetzt wieder Sauber ist? Gruß, DepriEsel |
13.08.2014, 11:36 | #10 |
/// the machine /// TB-Ausbilder | Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
13.08.2014, 14:43 | #11 |
| Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) Hi, passt alles soweit wieder, danke für die Hilfe. Einzige Frage die ich hätte wäre, ob die Sache mit Amazon-Icon und GIGA-Startseite ein bekannteres Problem ist, bzw. ob es sich tatsächlich um Malware handelt, da ich zu dem Thema doch schon den einen oder anderen Thread gesehen habe. Grüße, Esel |
13.08.2014, 20:44 | #12 |
/// the machine /// TB-Ausbilder | Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) Das ist Adware/PUP
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Amazon-Icon, GIGA-Android-Startseite und Amazon.de.Url nach Download einer Datei(jedoch keine erkennbarne Probleme) |
amazon-icon, amazonicon, antivirus, comodo, datei, desktop, download, firefox, firewall, folge, frage, gelöscht, giga.de, google, iexplorer, internet, langsamer, langsamer rechner, malware, nach download, nicht mehr, probleme, rechner, registry, security, seite, spyware, startseite, windows |