|
Plagegeister aller Art und deren Bekämpfung: Scvhost Hohe CPU auslastungWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
16.08.2014, 20:30 | #1 |
| Scvhost Hohe CPU auslastung Hallo ich habe im idle eig. immer auslastungen von 1% Aber seid kurzem nicht mehr schwankt zwichen 5-20 % Weis nicht weiter dachte es liegt an win 8.1 aber wie es aussieht nicht... Hier mal ein log hoffe er hilft weiter Danke im vorraus PHP-Code: |
16.08.2014, 20:37 | #2 |
/// the machine /// TB-Ausbilder | Scvhost Hohe CPU auslastung hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
16.08.2014, 21:21 | #3 |
| Scvhost Hohe CPU auslastung FRST Logfile:
__________________FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-08-2014 04 Ran by el_mafia65 (administrator) on SHADY on 16-08-2014 21:43:08 Running from C:\Users\el_mafia65\Downloads Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe (MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe (EVGA Corp.) C:\Program Files (x86)\EVGA\PrecisionX 15\PrecisionX_x64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\System32\PnkBstrA.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe (FinalWire Ltd.) C:\Program Files (x86)\FinalWire\AIDA64 Extreme\aida64.exe (Razer, Inc.) C:\Program Files (x86)\Razer\Core\64bit\RzOvlMon.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe (EVGA Corp.) C:\Program Files (x86)\EVGA\PrecisionX 15\PrecisionXServer.exe (EVGA Corp.) C:\Program Files (x86)\EVGA\PrecisionX 15\PrecisionXServer_x64.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7575768 2014-07-18] (Realtek Semiconductor) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [10801944 2014-07-28] (Logitech Inc.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft) HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [506864 2013-03-08] (MSI) HKLM-x32\...\Run: [Razer Naga Driver] => C:\Program Files (x86)\Razer\Naga\NagaTray.exe [1632128 2010-02-22] (Razer USA Ltd) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [151952 2012-11-29] (Apple Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [585560 2014-06-23] (Razer Inc.) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated) HKU\S-1-5-21-625749262-3835445436-1370350783-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3600728 2014-08-06] (Electronic Arts) HKU\S-1-5-21-625749262-3835445436-1370350783-1001\...\Run: [Spotify] => C:\Users\el_mafia65\AppData\Roaming\Spotify\Spotify.exe [6162488 2014-07-12] (Spotify Ltd) HKU\S-1-5-21-625749262-3835445436-1370350783-1001\...\Run: [Spotify Web Helper] => C:\Users\el_mafia65\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1178168 2014-07-12] (Spotify Ltd) HKU\S-1-5-21-625749262-3835445436-1370350783-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-625749262-3835445436-1370350783-1001\...\MountPoints2: {305f84f0-028e-11e4-824f-806e6f6e6963} - "D:\setup.exe" HKU\S-1-5-21-625749262-3835445436-1370350783-1001\...\MountPoints2: {d5472654-1cd0-11e4-8273-d43d7ef13f28} - "E:\Autorun.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{4692B750-DE88-4DCF-9163-745AF5604B24}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC) Startup: C:\Users\el_mafia65\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar824.lnk ShortcutTarget: Sidebar824.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (No File) ShellIconOverlayIdentifiers: ShareOverlay -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) ShellIconOverlayIdentifiers-x32: ShareOverlay -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) SearchScopes: HKCU - DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll (IvoSoft) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll (IvoSoft) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{D78F8A4F-B180-48CF-87F6-6FDC34387513}: [NameServer]8.8.8.8,8.8.4.4 FireFox: ======== FF ProfilePath: C:\Users\el_mafia65\AppData\Roaming\Mozilla\Firefox\Profiles\3nkxhhpa.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll () FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: YouTube Video and Audio Downloader - C:\Users\el_mafia65\AppData\Roaming\Mozilla\Firefox\Profiles\3nkxhhpa.default\Extensions\feca4b87-3be4-43da-a1b1-137c24220968@jetpack.xpi [2014-08-04] FF Extension: Download YouTube Videos as MP4 - C:\Users\el_mafia65\AppData\Roaming\Mozilla\Firefox\Profiles\3nkxhhpa.default\Extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi [2014-08-04] FF Extension: Adblock Plus - C:\Users\el_mafia65\AppData\Roaming\Mozilla\Firefox\Profiles\3nkxhhpa.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-03] Chrome: ======= ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) Locked "vdrv1000" service was unlocked successfully. <===== ATTENTION R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-17] (Intel Corporation) R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161264 2013-02-20] (MSI) R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [29728 2013-05-28] (MICRO-STAR INTERNATIONAL CO., LTD.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2014-08-10] () R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-08-10] () R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [344576 2014-04-17] (Qualcomm Atheros) [File not signed] R2 RzOvlMon; C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe [32960 2014-04-18] (Razer, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 AIDA64Driver; C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [34136 2014-07-29] () R1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [82608 2014-04-10] (Qualcomm Atheros, Inc.) U3 dtscsidrv; C:\Windows\System32\Drivers\dtscsidrv.sys [309248 2014-08-01] (Disc Soft Ltd) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-08-05] (Disc Soft Ltd) U5 GEARAspiWDM; C:\Windows\System32\Drivers\GEARAspiWDM.sys [33240 2012-08-21] (GEAR Software Inc.) R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [130224 2014-03-27] (Qualcomm Atheros, Inc.) R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-25] (MSI) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 RzDxgk; C:\Windows\system32\drivers\RzDxgk.sys [129472 2014-04-18] (Razer, Inc.) S1 RzFilter; C:\Windows\system32\drivers\RzFilter.sys [74432 2014-04-18] (Razer, Inc.) S3 RzSynapse; C:\Windows\System32\drivers\RzSynapse.sys [72704 2010-01-26] (Razer USA Ltd) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [386680 2014-08-02] (Duplex Secure Ltd.) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2014-06-10] (Apple, Inc.) [File not signed] S1 vdrv1000; C:\Windows\System32\Drivers\VDRV1000.SYS [226080 2012-12-06] (H+H Software GmbH) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) S3 ALSysIO; \??\C:\Users\EL_MAF~1\AppData\Local\Temp\ALSysIO64.sys [X] S3 GPU-Z; \??\C:\Users\EL_MAF~1\AppData\Local\Temp\GPU-Z.sys [X] S3 HH10Help.sys; \??\C:\Windows\system32\drivers\HH10Help.sys [X] S3 MSICDSetup; \??\D:\CDriver64.sys [X] S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X] S1 vcdrom; \??\C:\Users\el_mafia65\Desktop\VCdRom.sys [X] S3 WinRing0_1_2_0; \??\C:\Users\el_mafia65\AppData\Local\Temp\tmp52E4.tmp [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-16 21:43 - 2014-08-16 21:43 - 00015401 _____ () C:\Users\el_mafia65\Downloads\FRST.txt 2014-08-16 21:42 - 2014-08-16 21:43 - 00000000 ____D () C:\FRST 2014-08-16 21:41 - 2014-08-16 21:42 - 02101760 _____ (Farbar) C:\Users\el_mafia65\Downloads\FRST64.exe 2014-08-16 21:19 - 2014-08-16 21:13 - 00024064 _____ () C:\Windows\zoek-delete.exe 2014-08-16 21:13 - 2014-08-14 00:41 - 00030267 _____ () C:\zoek-results2014-08-13-224114.log 2014-08-16 21:03 - 2014-08-16 21:03 - 00000000 _____ () C:\Users\el_mafia65\Desktop\Virus.txt 2014-08-16 20:25 - 2014-08-16 20:25 - 00000000 ____D () C:\OETemp 2014-08-16 19:49 - 2014-08-16 21:21 - 00000000 ____D () C:\ProgramData\Avira 2014-08-16 19:49 - 2014-08-16 21:21 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-08-16 19:48 - 2014-08-16 19:48 - 151513264 _____ () C:\Users\el_mafia65\Downloads\avira_free_antivirus06_de.exe 2014-08-16 19:42 - 2014-08-16 19:43 - 00001908 _____ () C:\Windows\diagwrn.xml 2014-08-16 19:42 - 2014-08-16 19:43 - 00001908 _____ () C:\Windows\diagerr.xml 2014-08-16 19:42 - 2014-08-16 19:42 - 00000277 _____ () C:\Windows\setupact.log 2014-08-16 19:42 - 2014-08-16 19:42 - 00000000 ___HD () C:\$WINDOWS.~BT 2014-08-16 19:42 - 2014-08-16 19:42 - 00000000 _____ () C:\Windows\setuperr.log 2014-08-16 17:54 - 2014-08-16 17:54 - 00000367 _____ () C:\Users\el_mafia65\Desktop\Systemsteuerung.lnk 2014-08-15 17:48 - 2014-08-15 17:48 - 00000000 ____D () C:\Users\el_mafia65\Downloads\bf4 2014-08-15 17:47 - 2014-08-15 17:47 - 00017627 _____ () C:\Windows\DirectX.log 2014-08-15 17:19 - 2014-08-16 21:40 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\ClassicShell 2014-08-15 17:19 - 2014-08-15 17:19 - 00000000 ____D () C:\ProgramData\ClassicShell 2014-08-15 17:18 - 2014-08-15 17:18 - 06791360 _____ (IvoSoft) C:\Users\el_mafia65\Downloads\ClassicShellSetup_4_1_0.exe 2014-08-15 17:18 - 2014-08-15 17:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell 2014-08-15 17:18 - 2014-08-15 17:18 - 00000000 ____D () C:\Program Files\Classic Shell 2014-08-15 16:58 - 2014-08-16 21:21 - 00163494 _____ () C:\Windows\PFRO.log 2014-08-15 16:57 - 2014-08-15 16:58 - 00000000 ____D () C:\AdwCleaner 2014-08-15 16:53 - 2014-08-15 16:53 - 00000000 ____D () C:\Users\el_mafia65\Documents\Razer 2014-08-14 22:22 - 2014-06-20 03:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-08-14 22:22 - 2014-06-20 01:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-08-14 22:17 - 2014-07-25 16:52 - 23645696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-08-14 22:17 - 2014-07-25 15:51 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-08-14 22:17 - 2014-07-25 15:28 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-08-14 22:17 - 2014-07-25 15:25 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-08-14 22:17 - 2014-07-25 15:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-08-14 22:17 - 2014-07-25 14:59 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-08-14 22:17 - 2014-07-25 14:40 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-08-14 22:17 - 2014-07-25 14:34 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-08-14 22:17 - 2014-07-25 14:30 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-08-14 22:17 - 2014-07-25 14:28 - 05824512 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-08-14 22:17 - 2014-07-25 14:28 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-08-14 22:17 - 2014-07-25 14:21 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-08-14 22:17 - 2014-07-25 14:17 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-08-14 22:17 - 2014-07-25 14:10 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-08-14 22:17 - 2014-07-25 14:08 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-08-14 22:17 - 2014-07-25 14:06 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-08-14 22:17 - 2014-07-25 13:52 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-08-14 22:17 - 2014-07-25 13:47 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-08-14 22:17 - 2014-07-25 13:43 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-08-14 22:17 - 2014-07-25 13:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-08-14 22:17 - 2014-07-25 13:42 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-08-14 22:17 - 2014-07-25 13:39 - 02087936 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-08-14 22:17 - 2014-07-25 13:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-08-14 22:17 - 2014-07-25 13:29 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-08-14 22:17 - 2014-07-25 13:23 - 13547008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-08-14 22:17 - 2014-07-25 13:13 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-08-14 22:17 - 2014-07-25 13:09 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-08-14 22:17 - 2014-07-25 13:07 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-08-14 22:17 - 2014-07-25 13:03 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-08-14 22:17 - 2014-07-25 12:52 - 02266624 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-08-14 22:17 - 2014-07-25 12:26 - 01431040 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-08-14 22:17 - 2014-07-25 12:17 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-08-14 22:17 - 2014-07-25 12:09 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-08-14 22:17 - 2014-07-25 12:05 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-08-14 22:17 - 2014-07-25 12:00 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-08-14 22:17 - 2014-06-13 03:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-08-14 22:17 - 2014-06-13 03:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-08-14 22:17 - 2014-06-13 02:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-08-14 22:17 - 2014-06-06 13:34 - 02133504 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2014-08-14 22:16 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2014-08-14 22:16 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-08-14 22:15 - 2014-08-02 05:11 - 00918528 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2014-08-14 22:15 - 2014-07-15 20:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe 2014-08-14 22:15 - 2014-07-15 10:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2014-08-14 22:15 - 2014-07-15 10:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll 2014-08-14 22:15 - 2014-07-15 10:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2014-08-14 22:15 - 2014-06-05 16:13 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2014-08-14 22:15 - 2014-06-05 15:14 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll 2014-08-14 22:15 - 2014-06-02 04:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2014-08-14 22:15 - 2014-05-31 12:07 - 00467800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2014-08-14 22:15 - 2014-05-31 12:07 - 00440664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-08-14 22:15 - 2014-05-31 12:07 - 00419672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-08-14 22:15 - 2014-05-31 12:07 - 00089944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-08-14 22:15 - 2014-05-31 12:07 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-08-14 22:15 - 2014-05-31 08:30 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-08-14 22:15 - 2014-05-31 08:27 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2014-08-14 22:15 - 2014-05-31 08:26 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2014-08-14 22:15 - 2014-05-31 06:01 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2014-08-14 22:15 - 2014-05-31 06:01 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2014-08-14 22:15 - 2014-05-31 06:01 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2014-08-14 22:15 - 2014-05-27 17:53 - 02518360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-08-14 22:15 - 2014-05-27 11:56 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll 2014-08-14 22:15 - 2014-05-27 11:53 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll 2014-08-14 22:15 - 2014-05-17 06:59 - 16871936 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2014-08-14 22:15 - 2014-05-17 06:13 - 12711424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2014-08-14 22:14 - 2014-08-07 04:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-14 22:14 - 2014-08-07 00:39 - 04148224 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-14 22:14 - 2014-08-02 05:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-14 22:14 - 2014-07-12 06:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe 2014-08-14 22:14 - 2014-06-04 11:27 - 00114520 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-08-14 22:14 - 2014-06-04 07:31 - 00356352 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-08-14 22:14 - 2014-06-04 07:22 - 02790912 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-08-14 22:14 - 2014-06-04 06:43 - 00281088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2014-08-14 22:14 - 2014-06-04 06:38 - 03304448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-08-14 22:14 - 2014-06-04 04:15 - 02642944 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-08-14 22:14 - 2014-06-04 04:14 - 02318336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-08-14 21:55 - 2014-08-16 21:40 - 00781626 _____ () C:\Windows\WindowsUpdate.log 2014-08-14 21:07 - 2014-08-14 21:08 - 00000000 ____D () C:\Users\el_mafia65\Downloads\VIRUS 2014-08-14 00:32 - 2014-08-06 10:36 - 00046116 _____ () C:\zoek-results2014-08-06-083626.log 2014-08-13 21:54 - 2014-08-13 21:54 - 00001363 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-08-13 21:50 - 2014-08-13 21:54 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\NVIDIA 2014-08-13 21:50 - 2014-07-25 16:01 - 01715224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-08-13 21:50 - 2014-07-25 16:01 - 01291280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-08-13 21:50 - 2014-07-25 16:01 - 01283136 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-08-13 21:50 - 2014-07-25 16:01 - 01126480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-08-13 21:50 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-08-13 21:50 - 2014-03-31 18:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-08-13 21:50 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-08-12 23:55 - 2014-08-12 23:55 - 00000570 _____ () C:\Users\Public\Desktop\Fraps.lnk 2014-08-12 23:55 - 2014-08-12 23:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps 2014-08-12 23:55 - 2014-08-12 23:55 - 00000000 ____D () C:\Fraps 2014-08-12 23:45 - 2014-08-12 23:45 - 00003218 _____ () C:\Windows\System32\Tasks\AIDA64 AutoStart 2014-08-12 22:48 - 2014-08-12 22:48 - 00001191 _____ () C:\Users\el_mafia65\Desktop\AIDA64 Extreme.lnk 2014-08-12 22:48 - 2014-08-12 22:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire 2014-08-12 22:48 - 2014-08-12 22:48 - 00000000 ____D () C:\Program Files (x86)\FinalWire 2014-08-12 22:18 - 2014-08-12 22:18 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\Logitech 2014-08-12 22:18 - 2014-08-12 22:18 - 00000000 ____D () C:\ProgramData\LogiShrd 2014-08-12 22:17 - 2014-08-12 22:18 - 00000000 ____D () C:\Program Files\Logitech Gaming Software 2014-08-12 22:17 - 2014-08-12 22:17 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Logitech 2014-08-12 22:17 - 2014-08-12 22:17 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Logishrd 2014-08-12 22:17 - 2014-08-12 22:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2014-08-12 22:15 - 2013-10-19 11:05 - 00060928 _____ (Andreas Sammann) C:\Users\el_mafia65\Downloads\SystoG15Svc.exe 2014-08-10 22:34 - 2014-08-10 22:35 - 00000000 ____D () C:\Users\el_mafia65\Documents\Battlefield 4 CTE 2014-08-10 21:42 - 2014-08-15 15:11 - 00001255 _____ () C:\Users\Public\Desktop\Battlefield 4 CTE.lnk 2014-08-10 21:42 - 2014-08-15 15:11 - 00001233 _____ () C:\Users\Public\Desktop\Battlefield 4 CTE(64 bit).lnk 2014-08-10 21:42 - 2014-08-10 21:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4 CTE 2014-08-09 22:14 - 2014-08-10 13:52 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\concept design 2014-08-06 22:48 - 2014-08-06 22:56 - 00000000 ____D () C:\Users\el_mafia65\Downloads\Neuer Ordner 2014-08-06 15:09 - 2014-08-06 15:09 - 00001265 _____ () C:\Users\Public\Desktop\BF4 Settings Editor.lnk 2014-08-06 15:09 - 2014-08-06 15:09 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\Realmware 2014-08-06 15:09 - 2014-08-06 15:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realmware Battlefield Tools 2014-08-06 15:09 - 2014-08-06 15:09 - 00000000 ____D () C:\Program Files\Realmware 2014-08-06 15:08 - 2014-08-06 15:08 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Realmware 2014-08-06 14:14 - 2014-08-06 15:33 - 00000000 ____D () C:\Program Files (x86)\RivaTuner Statistics Server 2014-08-06 14:14 - 2014-08-06 14:14 - 00001098 _____ () C:\Users\el_mafia65\Desktop\MSI Afterburner.lnk 2014-08-06 14:14 - 2014-08-06 14:14 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2014-08-06 14:14 - 2014-08-06 14:14 - 00000000 ____D () C:\Program Files (x86)\MSI Afterburner 2014-08-06 10:28 - 2014-08-02 23:13 - 00059734 _____ () C:\zoek-results2014-08-02-211333.log 2014-08-06 00:42 - 2014-08-06 00:42 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\NVIDIA 2014-08-05 23:49 - 2014-08-06 12:35 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Tunngle 2014-08-05 23:49 - 2009-09-16 07:02 - 00031232 _____ (Tunngle.net) C:\Windows\system32\Drivers\tap0901t.sys 2014-08-05 23:06 - 2014-08-05 23:06 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-08-05 23:06 - 2014-08-05 23:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2014-08-05 23:06 - 2014-08-05 23:06 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-08-05 21:07 - 2014-08-05 21:08 - 00000000 ____D () C:\ProgramData\Adobe 2014-08-05 21:07 - 2014-08-05 21:07 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 9.lnk 2014-08-05 21:07 - 2014-08-05 21:07 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-08-04 21:12 - 2014-08-14 21:10 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\DVDVideoSoft 2014-08-03 00:23 - 2014-08-16 21:33 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-08-03 00:23 - 2014-08-13 21:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-08-03 00:23 - 2014-07-02 22:48 - 00075040 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-08-03 00:23 - 2014-07-02 22:48 - 00061912 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-08-03 00:23 - 2014-07-02 20:55 - 06783776 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-08-03 00:23 - 2014-07-02 20:55 - 03522392 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-08-03 00:23 - 2014-07-02 20:55 - 02559960 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-08-03 00:23 - 2014-07-02 20:55 - 00935368 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-08-03 00:23 - 2014-07-02 20:55 - 00386520 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-08-03 00:23 - 2014-07-02 20:55 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-08-03 00:23 - 2014-07-02 19:44 - 00609240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-08-03 00:23 - 2014-07-02 12:14 - 03826628 _____ () C:\Windows\system32\nvcoproc.bin 2014-08-03 00:21 - 2014-07-02 23:29 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-08-03 00:21 - 2014-07-02 23:29 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-08-03 00:21 - 2014-07-02 23:29 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 31512520 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 24196896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 22994208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 18626304 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 17555104 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 16122344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 15294296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 14498552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 13922752 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 13835208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 12866008 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-08-03 00:21 - 2014-07-02 22:48 - 11283344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 11222048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 04247000 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 03989960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 03196816 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 02814656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 01890080 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434052.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 01539928 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434052.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00965312 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00944928 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00907096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00903624 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00869152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00846832 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00835032 _____ () C:\Windows\system32\nvmcumd.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00502232 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00418760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00391640 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00348120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-08-03 00:21 - 2014-07-02 22:48 - 00026353 _____ () C:\Windows\system32\nvinfo.pb 2014-08-03 00:18 - 2014-08-03 00:20 - 337127848 _____ (NVIDIA Corporation) C:\Users\el_mafia65\Downloads\340.52-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-08-03 00:03 - 2014-08-03 00:03 - 00001171 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-08-03 00:03 - 2014-08-03 00:03 - 00001159 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-08-03 00:03 - 2014-08-03 00:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-08-03 00:03 - 2014-08-03 00:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-08-02 23:54 - 2014-08-02 23:54 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\TrojanHunter 2014-08-02 23:44 - 2014-08-02 23:44 - 00059392 ____R () C:\Windows\SysWOW64\streamhlp.dll 2014-08-02 23:13 - 2014-08-07 09:47 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\VirtualStore 2014-08-02 23:05 - 2014-08-01 19:53 - 00166041 _____ () C:\zoek-results2014-08-01-175312.log 2014-08-02 01:39 - 2014-08-02 01:45 - 00000000 ____D () C:\Users\el_mafia65\Downloads\Borderlands.2.Game.Of.The.Year.Edition.V1.8.2.Incl.All.DLC-Royalgamer06 2014-08-02 01:33 - 2014-08-02 01:33 - 00000000 ____D () C:\Users\Public\Virtual CDs 2014-08-02 01:33 - 2014-08-02 01:33 - 00000000 ____D () C:\Users\Public\Virtual CD v10 2014-08-02 01:33 - 2014-08-02 01:33 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Virtual CD v10 2014-08-02 01:33 - 2014-08-02 01:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual CD v10 2014-08-02 01:33 - 2012-12-06 12:09 - 00226080 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\vdrv1000.sys 2014-08-02 01:33 - 2009-07-09 11:24 - 00024088 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\HH10Help.dat 2014-08-02 01:32 - 2014-08-02 01:32 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\InstallShield 2014-08-02 01:32 - 2008-06-17 09:22 - 00040464 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\vcd10bus.sys 2014-08-02 00:33 - 2014-08-02 00:33 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\LolClient 2014-08-02 00:03 - 2014-08-02 00:03 - 00000000 ____D () C:\ProgramData\Riot Games 2014-08-02 00:02 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-08-02 00:02 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-08-02 00:02 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-08-02 00:01 - 2014-08-02 11:42 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\PMB Files 2014-08-02 00:01 - 2014-08-02 11:42 - 00000000 ____D () C:\ProgramData\PMB Files 2014-08-02 00:01 - 2014-08-02 00:01 - 00000000 ____D () C:\Program Files (x86)\Pando Networks 2014-08-02 00:00 - 2014-08-02 00:01 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Riot Games 2014-08-01 19:44 - 2014-07-28 17:29 - 00042381 _____ () C:\zoek-results2014-07-28-152932.log 2014-08-01 19:38 - 2014-08-01 19:38 - 00000000 ____D () C:\Users\Public\Documents\DAEMON Tools Images 2014-08-01 19:35 - 2014-08-01 19:35 - 00309248 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtscsidrv.sys 2014-08-01 19:06 - 2014-08-02 01:46 - 00386680 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys 2014-08-01 18:57 - 2014-08-14 21:09 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\DAEMON Tools Lite 2014-08-01 18:56 - 2014-08-01 19:36 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2014-08-01 16:59 - 2014-08-14 21:15 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\vlc 2014-08-01 16:59 - 2014-08-01 16:59 - 00000887 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-08-01 16:59 - 2014-08-01 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-08-01 16:59 - 2014-08-01 16:59 - 00000000 ____D () C:\Program Files\VideoLAN 2014-07-29 15:30 - 2014-07-29 18:17 - 00000219 _____ () C:\Users\el_mafia65\Desktop\CStrike.url 2014-07-28 17:21 - 2014-07-18 20:43 - 00076417 _____ () C:\zoek-results2014-07-18-184332.log 2014-07-27 14:39 - 2014-07-27 14:39 - 00000979 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2014-07-27 14:39 - 2014-07-27 14:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2014-07-27 14:39 - 2014-07-27 14:39 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-07-25 17:49 - 2014-08-15 16:54 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\Razer 2014-07-25 17:46 - 2014-07-25 17:46 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_RzFilter_01009.Wdf 2014-07-25 17:46 - 2014-07-25 17:46 - 00000000 ____D () C:\Windows\Razer Core 2014-07-25 17:46 - 2014-04-18 17:02 - 00129472 _____ (Razer, Inc.) C:\Windows\system32\Drivers\RzDxgk.sys 2014-07-25 17:46 - 2014-04-18 17:02 - 00074432 _____ (Razer, Inc.) C:\Windows\system32\Drivers\RzFilter.sys 2014-07-24 13:53 - 2014-07-24 13:53 - 00003336 _____ () C:\Windows\System32\Tasks\EVGAPrecisionX 2014-07-23 12:20 - 2014-08-06 14:15 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-07-23 12:19 - 2014-08-06 14:15 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-07-23 12:19 - 2014-07-23 12:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EVGA 2014-07-23 12:19 - 2014-07-23 12:19 - 00000000 ____D () C:\Program Files (x86)\EVGA 2014-07-23 08:04 - 2014-07-10 06:16 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2014-07-23 08:04 - 2014-07-10 06:03 - 04756992 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2014-07-23 08:04 - 2014-07-10 05:33 - 01120256 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2014-07-18 20:56 - 2014-07-18 20:56 - 00002782 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-07-18 20:56 - 2014-07-18 20:56 - 00000834 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-07-18 20:56 - 2014-07-18 20:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-07-18 20:56 - 2014-07-18 20:56 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-18 20:55 - 2014-07-18 20:55 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-07-18 20:55 - 2014-07-18 20:55 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 02000152 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO264.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-07-18 20:55 - 2014-07-18 20:55 - 01728280 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO232.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 01099203 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-07-18 20:55 - 2014-07-18 20:55 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00397592 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00032344 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\MBfilt64.sys 2014-07-18 20:55 - 2014-07-18 20:55 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-07-18 20:55 - 2014-07-18 20:55 - 00000000 ____D () C:\Program Files\Realtek 2014-07-18 20:54 - 2014-07-18 20:54 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-07-18 20:53 - 2014-07-18 20:53 - 00002864 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (el_mafia65) 2014-07-18 20:53 - 2014-07-18 20:53 - 00001186 _____ () C:\Users\Public\Desktop\Driver Booster.lnk 2014-07-18 20:53 - 2014-07-18 20:53 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\IObit 2014-07-18 20:53 - 2014-07-18 20:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2014-07-18 20:53 - 2014-07-18 20:53 - 00000000 ____D () C:\ProgramData\IObit 2014-07-18 20:53 - 2014-07-18 20:53 - 00000000 ____D () C:\Program Files (x86)\IObit 2014-07-18 20:36 - 2014-07-04 22:18 - 00149796 _____ () C:\zoek-results2014-07-04-201834.log 2014-07-18 20:31 - 2014-07-18 20:31 - 00000000 ____D () C:\ProgramData\TEMP ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-16 21:43 - 2014-08-16 21:43 - 00015401 _____ () C:\Users\el_mafia65\Downloads\FRST.txt 2014-08-16 21:43 - 2014-08-16 21:42 - 00000000 ____D () C:\FRST 2014-08-16 21:42 - 2014-08-16 21:41 - 02101760 _____ (Farbar) C:\Users\el_mafia65\Downloads\FRST64.exe 2014-08-16 21:40 - 2014-08-15 17:19 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\ClassicShell 2014-08-16 21:40 - 2014-08-14 21:55 - 00781626 _____ () C:\Windows\WindowsUpdate.log 2014-08-16 21:38 - 2014-07-03 10:54 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-625749262-3835445436-1370350783-1001 2014-08-16 21:33 - 2014-08-03 00:23 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-08-16 21:33 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-08-16 21:33 - 2013-08-22 16:44 - 00364000 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-16 21:22 - 2014-07-04 22:11 - 00051731 _____ () C:\zoek-results.log 2014-08-16 21:22 - 2014-07-03 10:48 - 00000000 ____D () C:\Users\el_mafia65 2014-08-16 21:21 - 2014-08-16 19:49 - 00000000 ____D () C:\ProgramData\Avira 2014-08-16 21:21 - 2014-08-16 19:49 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-08-16 21:21 - 2014-08-15 16:58 - 00163494 _____ () C:\Windows\PFRO.log 2014-08-16 21:17 - 2014-07-04 22:10 - 00000000 ____D () C:\zoek_backup 2014-08-16 21:13 - 2014-08-16 21:19 - 00024064 _____ () C:\Windows\zoek-delete.exe 2014-08-16 21:04 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru 2014-08-16 21:03 - 2014-08-16 21:03 - 00000000 _____ () C:\Users\el_mafia65\Desktop\Virus.txt 2014-08-16 20:56 - 2014-07-03 13:02 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-08-16 20:25 - 2014-08-16 20:25 - 00000000 ____D () C:\OETemp 2014-08-16 19:48 - 2014-08-16 19:48 - 151513264 _____ () C:\Users\el_mafia65\Downloads\avira_free_antivirus06_de.exe 2014-08-16 19:43 - 2014-08-16 19:42 - 00001908 _____ () C:\Windows\diagwrn.xml 2014-08-16 19:43 - 2014-08-16 19:42 - 00001908 _____ () C:\Windows\diagerr.xml 2014-08-16 19:42 - 2014-08-16 19:42 - 00000277 _____ () C:\Windows\setupact.log 2014-08-16 19:42 - 2014-08-16 19:42 - 00000000 ___HD () C:\$WINDOWS.~BT 2014-08-16 19:42 - 2014-08-16 19:42 - 00000000 _____ () C:\Windows\setuperr.log 2014-08-16 17:56 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\BBI 2014-08-16 17:54 - 2014-08-16 17:54 - 00000367 _____ () C:\Users\el_mafia65\Desktop\Systemsteuerung.lnk 2014-08-16 17:54 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-08-15 23:01 - 2014-07-07 12:10 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-08-15 18:06 - 2013-08-22 17:36 - 00000000 ___RD () C:\Windows\ToastData 2014-08-15 18:06 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-08-15 18:06 - 2013-08-22 17:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-08-15 18:05 - 2014-07-03 11:54 - 99218768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-08-15 18:05 - 2014-07-03 11:54 - 00000000 ____D () C:\Windows\system32\MRT 2014-08-15 17:54 - 2014-07-05 00:41 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-08-15 17:48 - 2014-08-15 17:48 - 00000000 ____D () C:\Users\el_mafia65\Downloads\bf4 2014-08-15 17:47 - 2014-08-15 17:47 - 00017627 _____ () C:\Windows\DirectX.log 2014-08-15 17:19 - 2014-08-15 17:19 - 00000000 ____D () C:\ProgramData\ClassicShell 2014-08-15 17:18 - 2014-08-15 17:18 - 06791360 _____ (IvoSoft) C:\Users\el_mafia65\Downloads\ClassicShellSetup_4_1_0.exe 2014-08-15 17:18 - 2014-08-15 17:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell 2014-08-15 17:18 - 2014-08-15 17:18 - 00000000 ____D () C:\Program Files\Classic Shell 2014-08-15 17:12 - 2014-07-03 10:49 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\Packages 2014-08-15 16:58 - 2014-08-15 16:57 - 00000000 ____D () C:\AdwCleaner 2014-08-15 16:54 - 2014-07-25 17:49 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\Razer 2014-08-15 16:54 - 2014-07-05 00:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-08-15 16:54 - 2014-07-05 00:07 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-08-15 16:54 - 2014-07-03 11:47 - 00000000 ____D () C:\ProgramData\Razer 2014-08-15 16:53 - 2014-08-15 16:53 - 00000000 ____D () C:\Users\el_mafia65\Documents\Razer 2014-08-15 16:53 - 2014-07-03 11:47 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\Razer_Inc 2014-08-15 16:09 - 2014-07-05 16:42 - 00215416 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-08-15 15:53 - 2014-07-05 16:42 - 00215416 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-08-15 15:11 - 2014-08-10 21:42 - 00001255 _____ () C:\Users\Public\Desktop\Battlefield 4 CTE.lnk 2014-08-15 15:11 - 2014-08-10 21:42 - 00001233 _____ () C:\Users\Public\Desktop\Battlefield 4 CTE(64 bit).lnk 2014-08-15 15:09 - 2014-07-05 00:41 - 00000000 ____D () C:\ProgramData\Origin 2014-08-15 00:33 - 2014-07-12 21:39 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Spotify 2014-08-14 22:08 - 2014-07-03 11:51 - 00428888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-08-14 22:01 - 2014-03-18 12:12 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-08-14 22:01 - 2014-03-18 12:12 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-08-14 22:01 - 2014-03-18 12:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-08-14 22:01 - 2013-08-22 13:45 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-08-14 22:01 - 2013-08-22 13:44 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-08-14 22:01 - 2013-08-22 13:22 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-08-14 22:01 - 2013-08-22 13:21 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-08-14 22:01 - 2013-08-22 13:10 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-08-14 22:01 - 2013-08-22 13:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-08-14 22:01 - 2013-08-22 12:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-08-14 22:01 - 2013-08-22 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-08-14 22:01 - 2013-08-22 05:55 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-08-14 22:01 - 2013-08-22 05:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-08-14 22:01 - 2013-08-22 05:45 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-08-14 22:01 - 2013-08-22 05:40 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-08-14 22:01 - 2013-08-22 05:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-08-14 21:15 - 2014-08-01 16:59 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\vlc 2014-08-14 21:11 - 2013-08-22 17:36 - 00000000 __SHD () C:\Program Files (x86)\Windows Sidebar 2014-08-14 21:10 - 2014-08-04 21:12 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\DVDVideoSoft 2014-08-14 21:09 - 2014-08-01 18:57 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\DAEMON Tools Lite 2014-08-14 21:09 - 2014-07-03 12:58 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\uTorrent 2014-08-14 21:08 - 2014-08-14 21:07 - 00000000 ____D () C:\Users\el_mafia65\Downloads\VIRUS 2014-08-14 00:41 - 2014-08-16 21:13 - 00030267 _____ () C:\zoek-results2014-08-13-224114.log 2014-08-13 21:54 - 2014-08-13 21:54 - 00001363 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk 2014-08-13 21:54 - 2014-08-13 21:50 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\NVIDIA 2014-08-13 21:54 - 2014-07-03 11:48 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-08-13 21:52 - 2014-07-03 12:19 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\NVIDIA Corporation 2014-08-13 21:50 - 2014-08-03 00:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-08-13 21:50 - 2014-07-03 11:48 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-08-13 21:50 - 2014-07-03 11:48 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-08-13 15:21 - 2014-07-03 13:02 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-08-12 23:55 - 2014-08-12 23:55 - 00000570 _____ () C:\Users\Public\Desktop\Fraps.lnk 2014-08-12 23:55 - 2014-08-12 23:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps 2014-08-12 23:55 - 2014-08-12 23:55 - 00000000 ____D () C:\Fraps 2014-08-12 23:45 - 2014-08-12 23:45 - 00003218 _____ () C:\Windows\System32\Tasks\AIDA64 AutoStart 2014-08-12 22:48 - 2014-08-12 22:48 - 00001191 _____ () C:\Users\el_mafia65\Desktop\AIDA64 Extreme.lnk 2014-08-12 22:48 - 2014-08-12 22:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire 2014-08-12 22:48 - 2014-08-12 22:48 - 00000000 ____D () C:\Program Files (x86)\FinalWire 2014-08-12 22:18 - 2014-08-12 22:18 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\Logitech 2014-08-12 22:18 - 2014-08-12 22:18 - 00000000 ____D () C:\ProgramData\LogiShrd 2014-08-12 22:18 - 2014-08-12 22:17 - 00000000 ____D () C:\Program Files\Logitech Gaming Software 2014-08-12 22:17 - 2014-08-12 22:17 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Logitech 2014-08-12 22:17 - 2014-08-12 22:17 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Logishrd 2014-08-12 22:17 - 2014-08-12 22:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2014-08-12 13:48 - 2014-07-07 12:37 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\DayZ 2014-08-11 15:08 - 2014-03-18 12:03 - 01776918 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-08-11 15:08 - 2014-03-18 11:25 - 00764340 _____ () C:\Windows\system32\perfh007.dat 2014-08-11 15:08 - 2014-03-18 11:25 - 00159160 _____ () C:\Windows\system32\perfc007.dat 2014-08-10 22:35 - 2014-08-10 22:34 - 00000000 ____D () C:\Users\el_mafia65\Documents\Battlefield 4 CTE 2014-08-10 22:35 - 2014-07-06 15:07 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe 2014-08-10 22:31 - 2014-07-05 16:42 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins 2014-08-10 21:42 - 2014-08-10 21:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4 CTE 2014-08-10 21:42 - 2014-07-05 16:42 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-08-10 19:37 - 2014-07-05 00:42 - 00000000 ____D () C:\Program Files (x86)\Origin Games 2014-08-10 13:52 - 2014-08-09 22:14 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\concept design 2014-08-08 01:25 - 2014-07-07 18:46 - 00000163 _____ () C:\Users\el_mafia65\Desktop\Dennis Account.txt 2014-08-07 09:47 - 2014-08-02 23:13 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\VirtualStore 2014-08-07 04:12 - 2014-08-14 22:14 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-07 00:39 - 2014-08-14 22:14 - 04148224 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-06 22:56 - 2014-08-06 22:48 - 00000000 ____D () C:\Users\el_mafia65\Downloads\Neuer Ordner 2014-08-06 15:33 - 2014-08-06 14:14 - 00000000 ____D () C:\Program Files (x86)\RivaTuner Statistics Server 2014-08-06 15:09 - 2014-08-06 15:09 - 00001265 _____ () C:\Users\Public\Desktop\BF4 Settings Editor.lnk 2014-08-06 15:09 - 2014-08-06 15:09 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\Realmware 2014-08-06 15:09 - 2014-08-06 15:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realmware Battlefield Tools 2014-08-06 15:09 - 2014-08-06 15:09 - 00000000 ____D () C:\Program Files\Realmware 2014-08-06 15:08 - 2014-08-06 15:08 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Realmware 2014-08-06 14:15 - 2014-07-23 12:20 - 00000000 ___HD () C:\Windows\msdownld.tmp 2014-08-06 14:15 - 2014-07-23 12:19 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-08-06 14:14 - 2014-08-06 14:14 - 00001098 _____ () C:\Users\el_mafia65\Desktop\MSI Afterburner.lnk 2014-08-06 14:14 - 2014-08-06 14:14 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2014-08-06 14:14 - 2014-08-06 14:14 - 00000000 ____D () C:\Program Files (x86)\MSI Afterburner 2014-08-06 12:35 - 2014-08-05 23:49 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Tunngle 2014-08-06 10:36 - 2014-08-14 00:32 - 00046116 _____ () C:\zoek-results2014-08-06-083626.log 2014-08-06 00:42 - 2014-08-06 00:42 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\NVIDIA 2014-08-05 23:06 - 2014-08-05 23:06 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-08-05 23:06 - 2014-08-05 23:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2014-08-05 23:06 - 2014-08-05 23:06 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-08-05 21:08 - 2014-08-05 21:07 - 00000000 ____D () C:\ProgramData\Adobe 2014-08-05 21:07 - 2014-08-05 21:07 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 9.lnk 2014-08-05 21:07 - 2014-08-05 21:07 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-08-03 00:23 - 2014-07-12 21:40 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\Spotify 2014-08-03 00:23 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\Help 2014-08-03 00:20 - 2014-08-03 00:18 - 337127848 _____ (NVIDIA Corporation) C:\Users\el_mafia65\Downloads\340.52-desktop-win8-win7-winvista-64bit-international-whql.exe 2014-08-03 00:03 - 2014-08-03 00:03 - 00001171 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-08-03 00:03 - 2014-08-03 00:03 - 00001159 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-08-03 00:03 - 2014-08-03 00:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-08-03 00:03 - 2014-08-03 00:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-08-02 23:54 - 2014-08-02 23:54 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\TrojanHunter 2014-08-02 23:44 - 2014-08-02 23:44 - 00059392 ____R () C:\Windows\SysWOW64\streamhlp.dll 2014-08-02 23:13 - 2014-08-06 10:28 - 00059734 _____ () C:\zoek-results2014-08-02-211333.log 2014-08-02 11:42 - 2014-08-02 00:01 - 00000000 ____D () C:\Users\el_mafia65\AppData\Local\PMB Files 2014-08-02 11:42 - 2014-08-02 00:01 - 00000000 ____D () C:\ProgramData\PMB Files 2014-08-02 08:29 - 2014-07-05 09:55 - 00000000 ____D () C:\Users\el_mafia65\Downloads\World of Warcraft 5.0.5 NoInstall 2014-08-02 05:56 - 2014-08-14 22:14 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-02 05:11 - 2014-08-14 22:15 - 00918528 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2014-08-02 02:17 - 2013-08-22 17:38 - 00704480 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-08-02 02:17 - 2013-08-22 17:38 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-08-02 01:46 - 2014-08-01 19:06 - 00386680 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys 2014-08-02 01:45 - 2014-08-02 01:39 - 00000000 ____D () C:\Users\el_mafia65\Downloads\Borderlands.2.Game.Of.The.Year.Edition.V1.8.2.Incl.All.DLC-Royalgamer06 2014-08-02 01:33 - 2014-08-02 01:33 - 00000000 ____D () C:\Users\Public\Virtual CDs 2014-08-02 01:33 - 2014-08-02 01:33 - 00000000 ____D () C:\Users\Public\Virtual CD v10 2014-08-02 01:33 - 2014-08-02 01:33 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Virtual CD v10 2014-08-02 01:33 - 2014-08-02 01:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual CD v10 2014-08-02 01:33 - 2014-07-03 11:42 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-08-02 01:32 - 2014-08-02 01:32 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\InstallShield 2014-08-02 00:33 - 2014-08-02 00:33 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\LolClient 2014-08-02 00:03 - 2014-08-02 00:03 - 00000000 ____D () C:\ProgramData\Riot Games 2014-08-02 00:01 - 2014-08-02 00:01 - 00000000 ____D () C:\Program Files (x86)\Pando Networks 2014-08-02 00:01 - 2014-08-02 00:00 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Riot Games 2014-08-01 19:53 - 2014-08-02 23:05 - 00166041 _____ () C:\zoek-results2014-08-01-175312.log 2014-08-01 19:38 - 2014-08-01 19:38 - 00000000 ____D () C:\Users\Public\Documents\DAEMON Tools Images 2014-08-01 19:36 - 2014-08-01 18:56 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2014-08-01 19:35 - 2014-08-01 19:35 - 00309248 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtscsidrv.sys 2014-08-01 16:59 - 2014-08-01 16:59 - 00000887 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-08-01 16:59 - 2014-08-01 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-08-01 16:59 - 2014-08-01 16:59 - 00000000 ____D () C:\Program Files\VideoLAN 2014-07-29 18:17 - 2014-07-29 15:30 - 00000219 _____ () C:\Users\el_mafia65\Desktop\CStrike.url 2014-07-29 15:30 - 2014-07-07 12:13 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-07-28 17:29 - 2014-08-01 19:44 - 00042381 _____ () C:\zoek-results2014-07-28-152932.log 2014-07-27 14:39 - 2014-07-27 14:39 - 00000979 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2014-07-27 14:39 - 2014-07-27 14:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2014-07-27 14:39 - 2014-07-27 14:39 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-07-25 17:46 - 2014-07-25 17:46 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_RzFilter_01009.Wdf 2014-07-25 17:46 - 2014-07-25 17:46 - 00000000 ____D () C:\Windows\Razer Core 2014-07-25 16:52 - 2014-08-14 22:17 - 23645696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-25 16:01 - 2014-08-13 21:50 - 01715224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2014-07-25 16:01 - 2014-08-13 21:50 - 01291280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2014-07-25 16:01 - 2014-08-13 21:50 - 01283136 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-07-25 16:01 - 2014-08-13 21:50 - 01126480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2014-07-25 15:51 - 2014-08-14 22:17 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-25 15:28 - 2014-08-14 22:17 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-25 15:25 - 2014-08-14 22:17 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-25 15:25 - 2014-08-14 22:17 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-07-25 14:59 - 2014-08-14 22:17 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-07-25 14:40 - 2014-08-14 22:17 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-25 14:34 - 2014-08-14 22:17 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-25 14:30 - 2014-08-14 22:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-07-25 14:28 - 2014-08-14 22:17 - 05824512 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-25 14:28 - 2014-08-14 22:17 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-07-25 14:21 - 2014-08-14 22:17 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-25 14:17 - 2014-08-14 22:17 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-25 14:10 - 2014-08-14 22:17 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-25 14:08 - 2014-08-14 22:17 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-07-25 14:06 - 2014-08-14 22:17 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-25 13:52 - 2014-08-14 22:17 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-25 13:47 - 2014-08-14 22:17 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-25 13:43 - 2014-08-14 22:17 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-25 13:43 - 2014-08-14 22:17 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-07-25 13:42 - 2014-08-14 22:17 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-25 13:39 - 2014-08-14 22:17 - 02087936 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-25 13:34 - 2014-08-14 22:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-25 13:29 - 2014-08-14 22:17 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-25 13:23 - 2014-08-14 22:17 - 13547008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-25 13:13 - 2014-08-14 22:17 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-25 13:09 - 2014-08-14 22:17 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-25 13:07 - 2014-08-14 22:17 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-25 13:03 - 2014-08-14 22:17 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-25 12:52 - 2014-08-14 22:17 - 02266624 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-25 12:26 - 2014-08-14 22:17 - 01431040 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-25 12:17 - 2014-08-14 22:17 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-25 12:09 - 2014-08-14 22:17 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-25 12:05 - 2014-08-14 22:17 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-25 12:00 - 2014-08-14 22:17 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-25 10:45 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\rescache 2014-07-24 14:07 - 2014-07-10 22:05 - 00000000 ____D () C:\ProgramData\Apple 2014-07-24 13:53 - 2014-07-24 13:53 - 00003336 _____ () C:\Windows\System32\Tasks\EVGAPrecisionX 2014-07-23 12:19 - 2014-07-23 12:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EVGA 2014-07-23 12:19 - 2014-07-23 12:19 - 00000000 ____D () C:\Program Files (x86)\EVGA 2014-07-18 20:57 - 2014-07-08 22:39 - 00000000 ____D () C:\Windows\Minidump 2014-07-18 20:57 - 2014-07-03 11:43 - 00000000 ____D () C:\Windows\Panther 2014-07-18 20:56 - 2014-07-18 20:56 - 00002782 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-07-18 20:56 - 2014-07-18 20:56 - 00000834 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-07-18 20:56 - 2014-07-18 20:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-07-18 20:56 - 2014-07-18 20:56 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-18 20:55 - 2014-07-18 20:55 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-07-18 20:55 - 2014-07-18 20:55 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 02000152 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO264.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-07-18 20:55 - 2014-07-18 20:55 - 01728280 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO232.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 01099203 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-07-18 20:55 - 2014-07-18 20:55 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00397592 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00032344 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\MBfilt64.sys 2014-07-18 20:55 - 2014-07-18 20:55 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-07-18 20:55 - 2014-07-18 20:55 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-07-18 20:55 - 2014-07-18 20:55 - 00000000 ____D () C:\Program Files\Realtek 2014-07-18 20:54 - 2014-07-18 20:54 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-07-18 20:54 - 2014-07-18 20:54 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-07-18 20:53 - 2014-07-18 20:53 - 00002864 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (el_mafia65) 2014-07-18 20:53 - 2014-07-18 20:53 - 00001186 _____ () C:\Users\Public\Desktop\Driver Booster.lnk 2014-07-18 20:53 - 2014-07-18 20:53 - 00000000 ____D () C:\Users\el_mafia65\AppData\Roaming\IObit 2014-07-18 20:53 - 2014-07-18 20:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2014-07-18 20:53 - 2014-07-18 20:53 - 00000000 ____D () C:\ProgramData\IObit 2014-07-18 20:53 - 2014-07-18 20:53 - 00000000 ____D () C:\Program Files (x86)\IObit 2014-07-18 20:43 - 2014-07-28 17:21 - 00076417 _____ () C:\zoek-results2014-07-18-184332.log 2014-07-18 20:41 - 2014-07-03 10:49 - 00001699 _____ () C:\Users\el_mafia65\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-07-18 20:31 - 2014-07-18 20:31 - 00000000 ____D () C:\ProgramData\TEMP ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-08-10 17:57 ==================== End Of Log ============================ --- --- --- --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-08-2014 04 Ran by el_mafia65 at 2014-08-16 21:43:43 Running from C:\Users\el_mafia65\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKCU\...\uTorrent) (Version: 3.4.2.32126 - BitTorrent Inc.) Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.179 - Adobe Systems Incorporated) Adobe Reader 9 - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated) AIDA64 Extreme v4.60 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 4.60 - FinalWire Ltd.) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.3.2.3825 - Electronic Arts) Battlefield 4™ CTE (HKLM-x32\...\{551A08D1-B60E-4DED-9B67-C3B38258CCA3}) (Version: 1.0.2.9606 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.4.0 - EA Digital Illusions CE AB) BF4 Settings Editor (HKLM\...\{EF4C9459-47DE-4FCD-B9E0-CEB5BA03FC64}) (Version: 1.1 - Realmware) CCleaner (HKLM\...\CCleaner) (Version: 4.15 - Piriform) Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive) Driver Booster (HKLM-x32\...\Driver Booster_is1) (Version: 1.4 - IObit) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) EVGA PrecisionX 15 (HKLM-x32\...\{98189EA0-0A30-4935-98BA-F01B3C66AD60}) (Version: 5.0.0 - EVGA Corporation) Fraps (HKLM-x32\...\Fraps) (Version: - ) Intel(R) Chipset Device Software (Version: 10.0.14 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.10.1372 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.14 - Intel(R) Corporation) Hidden Intel® Trusted Connect Service Client (Version: 1.27.798.1 - Intel Corporation) Hidden iTunes (HKLM\...\{22D8AE6F-3C6B-47E8-8F04-629F23DBE978}) (Version: 11.0.0.163 - Apple Inc.) Logitech Gaming Software (Version: 8.30.28 - Logitech Inc.) Hidden Logitech Gaming Software 8.55 (HKLM\...\Logitech Gaming Software) (Version: 8.55.137 - Logitech Inc.) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Mozilla Firefox 31.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 de)) (Version: 31.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.0 - Mozilla) MSI Afterburner 3.0.1 (HKLM-x32\...\Afterburner) (Version: 3.0.1 - MSI Co., LTD) NVIDIA 3D Vision Controller-Treiber 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation) NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA ShadowPlay 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden NVIDIA Update 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 15.3.33 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.4.11.2806 - Electronic Arts, Inc.) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.1.42.1045 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer E220x Drivers (Version: 1.1.42.1045 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer Network Manager Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.1.42.1045 - Qualcomm Atheros) Qualcomm Atheros Network Manager (Version: 1.1.42.1045 - Qualcomm Atheros) Hidden Razer Core (HKLM-x32\...\Razer Core) (Version: 1.0.1.66 - Razer Inc) Razer Naga (HKLM-x32\...\{F3CC3463-C6C2-4667-BDAC-BC517A11628F}) (Version: 2.01.10 - Razer USA Ltd.) Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.15.20888 - Razer Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.) SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden Spotify (HKCU\...\Spotify) (Version: 0.9.11.27.g2b1a638c - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Super-Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.018 - MSI) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp) VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.5 - MSI) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) WinRAR 5.10 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-625749262-3835445436-1370350783-1001_Classes\CLSID\{07474513-7B58-45c7-B3E6-13A3669B1AFD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-625749262-3835445436-1370350783-1001_Classes\CLSID\{083f5ae0-2b0a-11dd-bd0b-0800200c9a66}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-625749262-3835445436-1370350783-1001_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\el_mafia65\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler) CustomCLSID: HKU\S-1-5-21-625749262-3835445436-1370350783-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\el_mafia65\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler) CustomCLSID: HKU\S-1-5-21-625749262-3835445436-1370350783-1001_Classes\CLSID\{3DD12613-1A9C-48A6-8691-4CBA20BB7B31}\InprocServer32 -> C:\Users\el_mafia65\AppData\Local\Microsoft\Windows Sidebar\Gadgets\GlassyCPUMonitor.gadget\Release\ProcessMonitor64.dll (TODO: <Firmenname>) CustomCLSID: HKU\S-1-5-21-625749262-3835445436-1370350783-1001_Classes\CLSID\{5b55a44a-d008-49aa-9234-86fb7709bc0a}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) ==================== Restore Points ========================= 05-08-2014 19:07:18 Installed Adobe Reader 9 - Deutsch. 10-08-2014 19:41:19 DirectX wurde installiert 12-08-2014 20:17:26 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 14-08-2014 19:10:20 Removed League of Legends ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {1DE0CA86-2FC0-42EE-B3E5-675AE49C6571} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {2559CBD2-D54B-411A-84C9-E2A689E2115A} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-03-18] (Microsoft Corporation) Task: {2903AE37-BE6B-4A5B-B20F-248794FAFAD0} - System32\Tasks\Core Temp Autostart el_mafia65 => C:\Users\el_mafia65\Downloads\Core Temp.exe Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3A785929-6C7E-4EB2-8FD1-6547E1B7C2F4} - System32\Tasks\PCMeter\Startup => C:\Users\el_mafia65\Downloads\PCMeterV4\PCMeterV0.4.exe Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {40075560-9397-4C5B-A288-9866C444ADD4} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: {4762F244-ADA1-469B-B9CB-95E02D1E347A} - System32\Tasks\Driver Booster SkipUAC (el_mafia65) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2014-05-09] (IObit) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {50F27852-5F17-40E7-9492-8BC0086CF81A} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-08-15] (Microsoft Corporation) Task: {54DC873A-C0FC-488F-97B9-77BF33CD9196} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload Task: {648AB01F-0BB8-413D-B2A7-EC14F48CA478} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-06-24] (Piriform Ltd) Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {7BB1EC61-3140-48A7-9245-3DD56ECC42BA} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {814AAAE5-0D10-44C6-BF91-380FE55D3FF8} - System32\Tasks\EVGAPrecisionX => C:\Program Files (x86)\EVGA\PrecisionX 15\PrecisionX_x64.exe [2014-07-15] (EVGA Corp.) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {9DAF663C-B517-4FC1-BD5F-E8A4422E52EA} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-08-13] (Adobe Systems Incorporated) Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D4F1838F-B2D1-4B45-AEF2-FB800DF0E0ED} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {E132B858-2002-49AA-83DD-A5814CDC9DEE} - System32\Tasks\AIDA64 AutoStart => C:\Program Files (x86)\FinalWire\AIDA64 Extreme\aida64.exe [2014-07-29] (FinalWire Ltd.) Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2014-08-03 00:23 - 2014-07-02 20:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-07-06 15:07 - 2014-08-10 22:35 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe 2014-07-28 20:29 - 2014-07-28 20:29 - 00866584 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll 2014-07-28 20:32 - 2014-07-28 20:32 - 01050904 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll 2014-07-28 20:29 - 2014-07-28 20:29 - 00059160 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll 2014-07-28 20:31 - 2014-07-28 20:31 - 00242456 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll 2014-08-13 21:50 - 2014-07-25 16:02 - 00699680 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll 2014-08-13 21:50 - 2014-07-25 16:02 - 00855328 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll 2014-07-03 10:56 - 2013-05-17 01:06 - 01199576 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-08-03 00:03 - 2014-07-17 07:42 - 03800688 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\el_mafia65\OneDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\Services: Bonjour Service => 2 MSCONFIG\Services: iPod Service => 3 HKLM\...\StartupApproved\StartupFolder: => "Killer Network Manager.lnk" HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run32: => "Razer Naga Driver" HKLM\...\StartupApproved\Run32: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Razer Synapse" HKLM\...\StartupApproved\Run32: => "VC10Player" HKLM\...\StartupApproved\Run32: => "Adobe Reader Speed Launcher" HKCU\...\StartupApproved\StartupFolder: => "Sidebar824.lnk" HKCU\...\StartupApproved\Run: => "EADM" HKCU\...\StartupApproved\Run: => "Spotify" HKCU\...\StartupApproved\Run: => "Spotify Web Helper" HKCU\...\StartupApproved\Run: => "DAEMON Tools Lite" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/16/2014 09:43:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17114, Zeitstempel: 0x53649e73 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000030489 ID des fehlerhaften Prozesses: 0x133c Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0 Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1 Pfad des fehlerhaften Moduls: nvstreamsvc.exe2 Berichtskennung: nvstreamsvc.exe3 Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5 Error: (08/16/2014 09:43:53 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17114, Zeitstempel: 0x53649e73 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000030489 ID des fehlerhaften Prozesses: 0x708 Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0 Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1 Pfad des fehlerhaften Moduls: nvstreamsvc.exe2 Berichtskennung: nvstreamsvc.exe3 Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5 Error: (08/16/2014 09:43:51 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17114, Zeitstempel: 0x53649e73 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000030489 ID des fehlerhaften Prozesses: 0x1244 Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0 Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1 Pfad des fehlerhaften Moduls: nvstreamsvc.exe2 Berichtskennung: nvstreamsvc.exe3 Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5 Error: (08/16/2014 09:43:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17114, Zeitstempel: 0x53649e73 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000030489 ID des fehlerhaften Prozesses: 0xb6c Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0 Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1 Pfad des fehlerhaften Moduls: nvstreamsvc.exe2 Berichtskennung: nvstreamsvc.exe3 Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5 Error: (08/16/2014 09:43:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17114, Zeitstempel: 0x53649e73 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000030489 ID des fehlerhaften Prozesses: 0x1068 Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0 Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1 Pfad des fehlerhaften Moduls: nvstreamsvc.exe2 Berichtskennung: nvstreamsvc.exe3 Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5 Error: (08/16/2014 09:43:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17114, Zeitstempel: 0x53649e73 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000030489 ID des fehlerhaften Prozesses: 0x12f8 Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0 Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1 Pfad des fehlerhaften Moduls: nvstreamsvc.exe2 Berichtskennung: nvstreamsvc.exe3 Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5 Error: (08/16/2014 09:43:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17114, Zeitstempel: 0x53649e73 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000030489 ID des fehlerhaften Prozesses: 0xd64 Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0 Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1 Pfad des fehlerhaften Moduls: nvstreamsvc.exe2 Berichtskennung: nvstreamsvc.exe3 Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5 Error: (08/16/2014 09:43:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17114, Zeitstempel: 0x53649e73 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000030489 ID des fehlerhaften Prozesses: 0x1340 Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0 Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1 Pfad des fehlerhaften Moduls: nvstreamsvc.exe2 Berichtskennung: nvstreamsvc.exe3 Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5 Error: (08/16/2014 09:43:38 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17114, Zeitstempel: 0x53649e73 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000030489 ID des fehlerhaften Prozesses: 0x10bc Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0 Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1 Pfad des fehlerhaften Moduls: nvstreamsvc.exe2 Berichtskennung: nvstreamsvc.exe3 Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5 Error: (08/16/2014 09:43:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17114, Zeitstempel: 0x53649e73 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000030489 ID des fehlerhaften Prozesses: 0x7e4 Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0 Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1 Pfad des fehlerhaften Moduls: nvstreamsvc.exe2 Berichtskennung: nvstreamsvc.exe3 Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5 System errors: ============= Error: (08/16/2014 09:32:56 PM) (Source: volmgr) (EventID: 45) (User: ) Description: Das System konnte den Treiber für das Speicherabbild nicht laden. Error: (08/16/2014 09:32:46 PM) (Source: volmgr) (EventID: 46) (User: ) Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen. Error: (08/16/2014 09:32:46 PM) (Source: volmgr) (EventID: 45) (User: ) Description: Das System konnte den Treiber für das Speicherabbild nicht laden. Error: (08/16/2014 09:21:21 PM) (Source: volmgr) (EventID: 45) (User: ) Description: Das System konnte den Treiber für das Speicherabbild nicht laden. Error: (08/16/2014 09:21:10 PM) (Source: volmgr) (EventID: 46) (User: ) Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen. Error: (08/16/2014 09:21:10 PM) (Source: volmgr) (EventID: 45) (User: ) Description: Das System konnte den Treiber für das Speicherabbild nicht laden. Error: (08/16/2014 09:17:28 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (08/16/2014 09:17:28 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (08/16/2014 09:17:27 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (08/16/2014 09:17:27 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Microsoft Office Sessions: ========================= Error: (08/16/2014 09:43:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1711453649e73c00000050000000000030489133c01cfb98a6a042bb0C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dlla8317911-257d-11e4-8293-d43d7ef13f28 Error: (08/16/2014 09:43:53 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1711453649e73c0000005000000000003048970801cfb98a68bd8341C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dlla6ef95e5-257d-11e4-8293-d43d7ef13f28 Error: (08/16/2014 09:43:51 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1711453649e73c00000050000000000030489124401cfb98a6776db71C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dlla5a1c5ca-257d-11e4-8293-d43d7ef13f28 Error: (08/16/2014 09:43:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1711453649e73c00000050000000000030489b6c01cfb98a66303165C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dlla4624307-257d-11e4-8293-d43d7ef13f28 Error: (08/16/2014 09:43:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1711453649e73c00000050000000000030489106801cfb98a64e988fcC:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dlla3193832-257d-11e4-8293-d43d7ef13f28 Error: (08/16/2014 09:43:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1711453649e73c0000005000000000003048912f801cfb98a63a2dd69C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dlla1d02c69-257d-11e4-8293-d43d7ef13f28 Error: (08/16/2014 09:43:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1711453649e73c00000050000000000030489d6401cfb98a625c332dC:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dlla08be2ed-257d-11e4-8293-d43d7ef13f28 Error: (08/16/2014 09:43:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1711453649e73c00000050000000000030489134001cfb98a61158abdC:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dll9f407540-257d-11e4-8293-d43d7ef13f28 Error: (08/16/2014 09:43:38 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1711453649e73c0000005000000000003048910bc01cfb98a5fcee05aC:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dll9dfc2db8-257d-11e4-8293-d43d7ef13f28 Error: (08/16/2014 09:43:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1711453649e73c000000500000000000304897e401cfb98a5e8837e8C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dll9cb58548-257d-11e4-8293-d43d7ef13f28 CodeIntegrity Errors: =================================== Date: 2014-08-02 01:27:12.793 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\el_mafia65\Desktop\VCdRom.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-08-02 01:27:07.860 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\el_mafia65\Desktop\VCdRom.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4670K CPU @ 4.20GHz Percentage of memory in use: 18% Total physical RAM: 8136.01 MB Available physical RAM: 6654.57 MB Total Pagefile: 9416.01 MB Available Pagefile: 7762.2 MB Total Virtual: 131072 MB Available Virtual: 131071.79 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.66 GB) (Free:248.63 GB) NTFS Drive d: (IR3_CCSA_X64FRE_DE-DE_DV9) (CDROM) (Total:3.88 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 0FAF2224) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Geändert von Shady41 (16.08.2014 um 21:21 Uhr) Grund: Code |
17.08.2014, 14:45 | #4 |
/// the machine /// TB-Ausbilder | Scvhost Hohe CPU auslastung ProcessExplorer als Ersatz für den Windows Taskmanager installieren Lade Dir den Process Explorer als Ersatz für den Taskmanager herunter und installiere ihn, hier findest Du eine Anleitung. Das ist ein wesentlich leistungsfähigerer Ersatz für den Windows-Taskmanager. Im Menü unter "Options" kannst Du den ProcessExplorer dauerhaft als Ersatz für den Taskmanager einrichten (Replace Taskmanager). Das ist sehr empfehlenswert, weil der ProcessExplorer erheblich mehr Funktionen als der Taskmanager hat. Wenn Du diese Einstellung gemacht hast, öffnet sich mit der Tastenkombination STRG + ALT + Entf. nicht mehr der Taskmanager, sondern der ProcessExplorer. Das kann jederzeit durch Abhaken dieser Einstellung wieder rückgängig gemacht werden. Was wir jetzt konkret brauchen: In jeder Zeile steht ein Prozess, ein paar der Zeilen sind keine richtigen Prozesse, sondern nur Pseudoprozesse für die Tätigkeit des Windos-Kernels. Im Menü View => Select Columns wird ein Dialog geöffnet, in dem Du auswählen kannst, welche Spalten mit Informationen zu den Prozessen angezeigt werden sollen. In dem gehe in das Register "Process Performance" und stelle sicher, dass dort "CPU Usage" angehakt ist, "CPU History" wäre ebenfalls sinnvoll. Unter "CPU Usage" wird der aktuelle Wert der Prozessorauslastung für jeden Prozess angezeigt (im Tabellentitel steht nur kurz "CPU"), "CPU History" blendet für jeden Prozess ein Diagramm ein, das eine Kurve mit der Prozessorauslastung für die letzte Zeit anzeigt. Damit sollte es Dir möglich sein, zu identifizieren, welcher Prozess Deine CPU in Trab hält. Mache einen Doppelklick auf den Prozess. Du kannst von dem ganzen auch einen Screenshot machen und ihn als Anhang mit Deiner Antwort hochladen (auf "Erweitert" unter dem Textfeld klicken und über "Anhänge verwalten" auf Deinem Rechner suchen lassen und über "Hochladen" anhängen).
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Scvhost Hohe CPU auslastung |
antivirus, auslastung, avg, bho, bonjour, browser, cpu, defender, downloader, driver booster, firefox, google, helper, hijack, hijackthis, hohe cpu, internet, mozilla, registry, rundll, scan, security, software, spotify web helper, system, teamspeak, temp, windows |