|
Log-Analyse und Auswertung: Windows 8: Schwarzer Bildschirm bei StartWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
20.08.2014, 18:50 | #1 |
| Windows 8: Schwarzer Bildschirm bei Start Hallo zusammen! Eben wollte ich ein Update meiner Adobe CC Software durchführen, als ich zunächst einen schwarzen Bildschirm mit (wenigstens) Mauszeiger angezeigt bekam. Es tat sich sehr lange nichts -> forcierter Neustart. Nun bekomme ich beim Starten nach ein paar Sekunden mit Samsung Logo nur noch einen schwarzen Bildschirm angezeigt, nichts tut sich. Die Systemwiederherstellung über den Reparaturmodus hat auch nicht funktioniert, aber wenigstens dieser geht noch. Also habe ich wie empfohlen die Diagnose mit FRST64 über die Eingabeaufforderung durchgeführt. Kurz noch zur Info, ich habe ein Samsung Ultrabook 5er Serie mit Windows 8 64-bit. Ich hoffe das Log hilft weiter und jemand hat eine hilfreiche Idee. Danke schon mal für die Mühen! Hier die Log-Datei: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-08-2014 01 Ran by SYSTEM on MININT-JTJVSN7 on 20-08-2014 19:12:41 Running from E:\ Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Recovery The current controlset is ControlSet001 ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log. The only official download link for FRST: Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2894152 2013-11-04] (ELAN Microelectronics Corp.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation) HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [310640 2013-03-07] (Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2694040 2014-07-22] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Sophos AutoUpdate Monitor] => C:\Program Files (x86)\Sophos\AutoUpdate\almon.exe [1617704 2014-05-20] (Sophos Limited) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2011-10-24] (Apple Inc.) HKLM\...\RunOnce: [*Restore] => C:\WINDOWS\system32\rstrui.exe [271872 2014-06-13] (Microsoft Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\Tim\...\Run: [Spotify Web Helper] => C:\Users\Tim\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1178168 2014-07-09] (Spotify Ltd) HKU\Tim\...\Run: [f.lux] => C:\Users\Tim\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC) HKU\Tim\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner64.exe [6161176 2014-02-20] (Piriform Ltd) HKU\Tim\...\RunOnce: [FlashPlayerUpdate] => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_14_0_0_145_Plugin.exe [851632 2014-07-08] (Adobe Systems Incorporated) AppInit_DLLs: C:\PROGRA~2\Sophos\SOPHOS~1\SOPHOS~2.DLL => C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured_x64.dll [217160 2014-05-20] (Sophos Limited) AppInit_DLLs-x32: C:\PROGRA~2\Sophos\SOPHOS~1\SOPHOS~1.DLL => C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured.dll [275352 2014-05-20] (Sophos Limited) Startup: C:\Users\Tim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) Startup: C:\Users\Tim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe () ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [321024 2013-08-22] (Microsoft Corporation) S2 Easy Launcher; C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe [1593152 2014-01-29] (Samsung Electronics CO., LTD.) S2 ETDService; C:\Program Files\Elantech\ETDService.exe [100104 2013-09-05] (ELAN Microelectronics Corp.) S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) S2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-16] (Intel Corporation) S2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [157128 2013-09-18] (Intel Corporation) S2 IntelliMemory; C:\Program Files\Condusiv Technologies\IntelliMemory\IntelliMem.exe [55720 2012-12-21] (Condusiv Technologies) S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2013-11-20] () S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [37176 2013-08-22] (The OpenVPN Project) S2 SAVAdminService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe [288552 2014-05-20] (Sophos Limited) S2 SAVService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe [205096 2014-05-20] (Sophos Limited) S2 Sophos AutoUpdate Service; C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe [341800 2014-05-20] (Sophos Limited) S2 Sophos Web Control Service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe [355624 2014-05-20] (Sophos Limited) S2 swi_filter; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_filter.exe [300328 2014-05-20] (Sophos Limited) S2 swi_service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe [3174696 2014-05-20] (Sophos Limited) S2 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3018800 2013-10-21] (Samsung Electronics CO., LTD.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) S2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [627992 2013-12-17] (Wacom Technology, Corp.) S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3674864 2013-11-20] (Intel® Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36096 2013-05-21] (Advanced Micro Devices, Inc.) S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [131584 2013-08-22] (Microsoft Corporation) S3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [32640 2013-08-22] (Microsoft Corporation) S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation) S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2013-07-22] (Motorola Solutions, Inc.) S3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1390904 2013-09-05] (Motorola Solutions, Inc.) S3 ETDSMBus; C:\Windows\system32\DRIVERS\ETDSMBus.sys [22832 2013-07-24] (ELAN Microelectronic Corp.) S1 intmfs; C:\Windows\System32\DRIVERS\intmfs.sys [29096 2012-12-21] (Condusiv Technologies) S0 intmsd; C:\Windows\System32\DRIVERS\intmsd.sys [104872 2012-12-21] (Condusiv Technologies) S3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) S3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew00.sys [3346912 2013-10-31] (Intel Corporation) S3 pbfilter; C:\Program Files\PeerBlock\pbfilter.sys [22600 2014-01-14] () S0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation) S3 RadioHIDMini; C:\Windows\System32\drivers\RadioHIDMini.sys [23408 2012-07-27] (Windows (R) Win 7 DDK provider) S1 SAVOnAccess; C:\Windows\System32\DRIVERS\savonaccess.sys [158976 2014-05-20] (Sophos Limited) S3 sdcfilter; C:\Windows\system32\DRIVERS\sdcfilter.sys [38144 2014-05-20] (Sophos Limited) S3 SensorsAlsDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [227840 2014-05-31] (Microsoft Corporation) S4 SophosBootDriver; C:\Windows\system32\DRIVERS\SophosBootDriver.sys [27904 2014-05-20] (Sophos Limited) S1 swi_callout; C:\Windows\system32\DRIVERS\swi_callout.sys [32512 2014-05-20] (Sophos Limited) S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [47072 2012-10-09] (Windows (R) Win 7 DDK provider) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188896 2012-10-09] (Windows (R) Win 7 DDK provider) S3 SBIOSIO; \??\C:\Users\Tim\AppData\Local\Temp\__Samsung_Update\SBIOSIO64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-20 19:11 - 2014-08-20 19:11 - 00000000 ____D () C:\FRST 2014-08-20 18:31 - 2014-08-20 19:01 - 00000000 _____ () C:\Recovery.txt 2014-08-20 16:45 - 2014-08-20 16:45 - 00000000 ____D () C:\Users\Tim\Downloads\DuelGFX Sound Pack Part 1 2014-08-20 16:41 - 2014-08-20 16:44 - 125606439 _____ () C:\Users\Tim\Downloads\DuelGFX Sound Pack Part 2.rar 2014-08-20 16:40 - 2014-08-20 16:44 - 179276802 _____ () C:\Users\Tim\Downloads\DuelGFX Sound Pack Part 1.rar 2014-08-20 16:06 - 2014-08-20 16:06 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-08-18 18:51 - 2014-08-18 18:51 - 01563861 _____ () C:\Users\Tim\Downloads\hfsexplorer-0_21-setup.exe 2014-08-18 18:51 - 2014-08-18 18:51 - 00000000 ____D () C:\Program Files (x86)\HFSExplorer 2014-08-18 18:07 - 2014-08-18 18:14 - 00000000 ____D () C:\Users\Tim\Downloads\AlfredHitchcockLongInterview-FranoisTruffraut 2014-08-18 18:06 - 2014-08-18 18:06 - 00022820 _____ () C:\Users\Tim\Downloads\AlfredHitchcockLongInterview-FranoisTruffraut_archive.torrent 2014-08-17 13:09 - 2014-08-18 20:25 - 00001590 _____ () C:\Windows\setupact.log 2014-08-17 13:09 - 2014-08-17 13:09 - 00000000 _____ () C:\Windows\setuperr.log 2014-08-13 09:28 - 2014-07-25 14:25 - 02774528 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2014-08-13 09:28 - 2014-07-25 13:40 - 00452096 _____ (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll 2014-08-13 09:28 - 2014-07-25 13:21 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-08-13 09:28 - 2014-07-25 13:06 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-08-13 09:28 - 2014-07-25 12:52 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-08-13 09:28 - 2014-07-25 12:47 - 00631808 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2014-08-13 09:28 - 2014-07-25 12:39 - 02087936 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2014-08-13 09:28 - 2014-07-25 12:29 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-08-13 09:28 - 2014-07-25 12:23 - 13547008 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2014-08-13 09:28 - 2014-07-25 12:13 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-08-13 09:28 - 2014-07-25 12:07 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-08-13 09:28 - 2014-07-25 12:03 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-08-13 09:28 - 2014-07-25 11:26 - 01431040 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2014-08-13 09:28 - 2014-07-25 11:09 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-08-13 09:28 - 2014-07-25 11:00 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-08-13 09:27 - 2014-08-06 23:38 - 00697856 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll 2014-08-13 09:27 - 2014-08-02 06:44 - 00527360 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll 2014-08-13 09:27 - 2014-08-02 04:11 - 00918528 _____ (Microsoft Corporation) C:\Windows\System32\MrmCoreR.dll 2014-08-13 09:27 - 2014-07-25 15:52 - 23645696 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2014-08-13 09:27 - 2014-07-25 14:51 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-08-13 09:27 - 2014-07-25 14:28 - 00548352 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2014-08-13 09:27 - 2014-07-25 14:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\System32\MshtmlDac.dll 2014-08-13 09:27 - 2014-07-25 13:59 - 00758272 _____ (Microsoft Corporation) C:\Windows\System32\jscript9diag.dll 2014-08-13 09:27 - 2014-07-25 13:34 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-08-13 09:27 - 2014-07-25 13:30 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-08-13 09:27 - 2014-07-25 13:28 - 05824512 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2014-08-13 09:27 - 2014-07-25 13:28 - 00072704 _____ (Microsoft Corporation) C:\Windows\System32\JavaScriptCollectionAgent.dll 2014-08-13 09:27 - 2014-07-25 13:17 - 00085504 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2014-08-13 09:27 - 2014-07-25 13:10 - 00292864 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2014-08-13 09:27 - 2014-07-25 13:08 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-08-13 09:27 - 2014-07-25 12:43 - 00333312 _____ (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll 2014-08-13 09:27 - 2014-07-25 12:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-08-13 09:27 - 2014-07-25 12:42 - 00692736 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2014-08-13 09:27 - 2014-07-25 12:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-08-13 09:27 - 2014-07-25 12:09 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-08-13 09:27 - 2014-07-25 11:52 - 02266624 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll 2014-08-13 09:27 - 2014-07-25 11:17 - 00846336 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2014-08-13 09:27 - 2014-07-25 11:05 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-08-13 09:27 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\System32\WpcMon.exe 2014-08-13 09:27 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\System32\Wpc.dll 2014-08-13 09:27 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\System32\WpcWebSync.dll 2014-08-13 09:27 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2014-08-13 09:27 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\System32\rpcrt4.dll 2014-08-13 09:27 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-08-13 09:27 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\System32\dxgi.dll 2014-08-13 09:27 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys 2014-08-13 09:27 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-08-13 09:27 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2014-08-13 09:27 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\System32\TsWpfWrp.exe 2014-08-13 09:27 - 2014-06-06 12:34 - 02133504 _____ (Microsoft Corporation) C:\Windows\System32\dwmcore.dll 2014-08-13 09:27 - 2014-06-05 15:13 - 00216368 _____ (Microsoft Corporation) C:\Windows\System32\rsaenh.dll 2014-08-13 09:27 - 2014-06-05 14:14 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll 2014-08-13 09:27 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\System32\hal.dll 2014-08-13 09:27 - 2014-05-31 11:07 - 00467800 ____C (Microsoft Corporation) C:\Windows\System32\Drivers\USBHUB3.SYS 2014-08-13 09:27 - 2014-05-31 11:07 - 00440664 ____C (Microsoft Corporation) C:\Windows\System32\Drivers\usbport.sys 2014-08-13 09:27 - 2014-05-31 11:07 - 00419672 ____C (Microsoft Corporation) C:\Windows\System32\Drivers\usbhub.sys 2014-08-13 09:27 - 2014-05-31 11:07 - 00089944 ____C (Microsoft Corporation) C:\Windows\System32\Drivers\usbehci.sys 2014-08-13 09:27 - 2014-05-31 11:07 - 00027480 ____C (Microsoft Corporation) C:\Windows\System32\Drivers\usbd.sys 2014-08-13 09:27 - 2014-05-31 07:30 - 00037376 ____C (Microsoft Corporation) C:\Windows\System32\Drivers\usbuhci.sys 2014-08-13 09:27 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WUDFPf.sys 2014-08-13 09:27 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WUDFRd.sys 2014-08-13 09:27 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\Windows\System32\WUDFHost.exe 2014-08-13 09:27 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\Windows\System32\WUDFPlatform.dll 2014-08-13 09:27 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\Windows\System32\WUDFSvc.dll 2014-08-13 09:27 - 2014-05-27 16:53 - 02518360 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2014-08-13 09:27 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\Windows\System32\DaOtpCredentialProvider.dll 2014-08-13 09:27 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll 2014-08-13 09:27 - 2014-05-17 05:59 - 16871936 _____ (Microsoft Corporation) C:\Windows\System32\Windows.UI.Xaml.dll 2014-08-13 09:27 - 2014-05-17 05:13 - 12711424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2014-08-13 09:26 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\System32\gdi32.dll 2014-08-13 09:26 - 2014-08-06 23:39 - 04148224 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys 2014-08-13 09:26 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-13 09:26 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\System32\MDMAgent.exe 2014-08-13 09:24 - 2014-06-04 10:27 - 00114520 _____ (Microsoft Corporation) C:\Windows\System32\consent.exe 2014-08-13 09:24 - 2014-06-04 06:31 - 00356352 _____ (Microsoft Corporation) C:\Windows\System32\msihnd.dll 2014-08-13 09:24 - 2014-06-04 06:22 - 02790912 _____ (Microsoft Corporation) C:\Windows\System32\msi.dll 2014-08-13 09:24 - 2014-06-04 05:43 - 00281088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2014-08-13 09:24 - 2014-06-04 05:38 - 03304448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-08-13 09:24 - 2014-06-04 03:15 - 02642944 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll 2014-08-13 09:24 - 2014-06-04 03:14 - 02318336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-08-07 20:49 - 2014-08-07 20:49 - 00000000 ____D () C:\Program Files (x86)\Evernote 2014-08-07 08:59 - 2014-08-07 08:59 - 00986974 _____ () C:\Users\Tim\Desktop\IMG_20140807_091353.jpeg 2014-08-04 00:14 - 2014-08-04 00:15 - 00000000 ___RD () C:\Users\Tim\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App 2014-08-01 09:22 - 2014-08-01 09:22 - 01165636 _____ () C:\Users\Tim\Downloads\Motiv Snowden Obama Pur.ai 2014-08-01 09:22 - 2014-08-01 09:22 - 00000034 _____ () C:\Users\Tim\AppData\Roaming\AdobeWLCMCache.dat 2014-08-01 08:12 - 2014-08-20 08:42 - 01397212 _____ () C:\Windows\WindowsUpdate.log 2014-07-31 11:28 - 2014-07-31 11:28 - 00011859 _____ () C:\Users\Tim\Downloads\Das_perfekte_Dinner_14.07.30_19-00_vox_60_TVOON_DE.mpg.avi.otrkey.torrent 2014-07-31 10:33 - 2014-07-31 10:33 - 00000000 ____D () C:\Users\Tim\AppData\Local\Evernote 2014-07-31 10:19 - 2014-07-31 10:20 - 87610208 _____ (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Users\Tim\Downloads\Evernote_5.5.2.4187.exe 2014-07-29 10:30 - 2014-05-20 20:19 - 00032512 _____ (Sophos Limited) C:\Windows\System32\Drivers\swi_callout.sys 2014-07-26 20:40 - 2014-07-26 20:40 - 00000000 ____D () C:\Users\Tim\AppData\Local\Blizzard 2014-07-26 20:27 - 2014-08-01 09:23 - 00000000 ____D () C:\Program Files (x86)\Hearthstone 2014-07-26 20:21 - 2014-08-04 00:13 - 00000000 ____D () C:\Users\Tim\AppData\Local\Battle.net 2014-07-26 20:21 - 2014-07-26 20:39 - 00000000 ____D () C:\Users\Tim\AppData\Roaming\Battle.net 2014-07-26 20:21 - 2014-07-26 20:21 - 00000000 ____D () C:\Users\Tim\AppData\Local\Blizzard Entertainment 2014-07-26 20:21 - 2014-07-26 20:21 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-07-26 20:21 - 2014-07-26 20:21 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-07-26 20:20 - 2014-07-26 20:20 - 03099552 _____ (Blizzard Entertainment) C:\Users\Tim\Downloads\Hearthstone-Setup-deDE.exe 2014-07-26 20:20 - 2014-07-26 20:20 - 00000000 ____D () C:\ProgramData\Battle.net 2014-07-24 20:05 - 2014-07-24 20:06 - 00000000 ____D () C:\Users\Tim\Desktop\Küche und Schrank 2014-07-23 08:08 - 2014-07-23 08:08 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-07-23 08:07 - 2014-07-23 08:07 - 00000000 ____D () C:\Users\Tim\AppData\Roaming\Media Player Classic 2014-07-23 08:01 - 2014-07-23 08:01 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-07-23 08:00 - 2014-07-23 08:01 - 39401336 _____ (Apple Inc.) C:\Users\Tim\Downloads\QuickTimeInstaller.exe 2014-07-23 06:39 - 2014-07-10 05:16 - 00716800 _____ (Microsoft Corporation) C:\Windows\System32\SkyDriveTelemetry.dll 2014-07-23 06:39 - 2014-07-10 05:03 - 04756992 _____ (Microsoft Corporation) C:\Windows\System32\SyncEngine.dll 2014-07-23 06:39 - 2014-07-10 04:33 - 01120256 _____ (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-20 19:11 - 2014-08-20 19:11 - 00000000 ____D () C:\FRST 2014-08-20 19:01 - 2014-08-20 18:31 - 00000000 _____ () C:\Recovery.txt 2014-08-20 18:58 - 2014-02-12 21:19 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-08-20 18:58 - 2013-11-22 14:12 - 00000000 ____D () C:\users\Tim 2014-08-20 18:55 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\registration 2014-08-20 17:20 - 2014-06-28 08:52 - 00000000 ____D () C:\Users\Tim\AppData\Local\Adobe 2014-08-20 17:19 - 2013-06-04 01:53 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-08-20 17:12 - 2013-12-15 12:46 - 00003902 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{28D1E21D-BB56-41CF-97BF-445B5045FC83} 2014-08-20 17:08 - 2013-11-12 21:31 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-08-20 17:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\System32\sru 2014-08-20 16:46 - 2013-11-14 13:03 - 00000000 ____D () C:\Users\Tim\AppData\Roaming\vlc 2014-08-20 16:45 - 2014-08-20 16:45 - 00000000 ____D () C:\Users\Tim\Downloads\DuelGFX Sound Pack Part 1 2014-08-20 16:44 - 2014-08-20 16:41 - 125606439 _____ () C:\Users\Tim\Downloads\DuelGFX Sound Pack Part 2.rar 2014-08-20 16:44 - 2014-08-20 16:40 - 179276802 _____ () C:\Users\Tim\Downloads\DuelGFX Sound Pack Part 1.rar 2014-08-20 16:32 - 2014-02-13 12:09 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-08-20 16:06 - 2014-08-20 16:06 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-08-20 09:35 - 2013-11-12 21:29 - 00003594 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-680370811-642922712-648177064-1001 2014-08-20 09:08 - 2013-11-12 21:31 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-08-20 08:42 - 2014-08-01 08:12 - 01397212 _____ () C:\Windows\WindowsUpdate.log 2014-08-19 15:05 - 2013-11-13 01:17 - 00000000 ____D () C:\Users\Tim\AppData\Roaming\Spotify 2014-08-19 13:46 - 2014-01-18 16:11 - 00001456 _____ () C:\Users\Tim\AppData\Local\Adobe Save for Web 13.0 Prefs 2014-08-19 11:50 - 2013-11-13 01:17 - 00000000 ____D () C:\Users\Tim\AppData\Local\Spotify 2014-08-19 02:49 - 2013-11-15 15:56 - 00731648 ___SH () C:\Users\Tim\Desktop\Thumbs.db 2014-08-18 20:31 - 2013-09-30 05:14 - 01780340 _____ () C:\Windows\System32\PerfStringBackup.INI 2014-08-18 20:31 - 2013-09-30 04:56 - 00766620 _____ () C:\Windows\System32\perfh007.dat 2014-08-18 20:31 - 2013-09-30 04:56 - 00159902 _____ () C:\Windows\System32\perfc007.dat 2014-08-18 20:25 - 2014-08-17 13:09 - 00001590 _____ () C:\Windows\setupact.log 2014-08-18 18:51 - 2014-08-18 18:51 - 01563861 _____ () C:\Users\Tim\Downloads\hfsexplorer-0_21-setup.exe 2014-08-18 18:51 - 2014-08-18 18:51 - 00000000 ____D () C:\Program Files (x86)\HFSExplorer 2014-08-18 18:15 - 2014-03-12 09:54 - 00000000 ____D () C:\Users\Tim\AppData\Roaming\uTorrent 2014-08-18 18:15 - 2014-02-13 14:09 - 00000000 ____D () C:\Program Files\PeerBlock 2014-08-18 18:14 - 2014-08-18 18:07 - 00000000 ____D () C:\Users\Tim\Downloads\AlfredHitchcockLongInterview-FranoisTruffraut 2014-08-18 18:06 - 2014-08-18 18:06 - 00022820 _____ () C:\Users\Tim\Downloads\AlfredHitchcockLongInterview-FranoisTruffraut_archive.torrent 2014-08-18 18:03 - 2013-11-13 18:50 - 00000000 ____D () C:\Arbeit 2014-08-17 13:09 - 2014-08-17 13:09 - 00000000 _____ () C:\Windows\setuperr.log 2014-08-16 13:49 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache 2014-08-16 12:12 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-08-16 12:11 - 2013-08-22 15:44 - 06813112 _____ () C:\Windows\System32\FNTCACHE.DAT 2014-08-16 12:11 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\System32\config\BBI 2014-08-16 12:10 - 2014-07-09 16:00 - 00000000 ___SD () C:\Windows\System32\CompatTel 2014-08-16 12:10 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData 2014-08-16 12:10 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-08-16 12:07 - 2013-11-13 00:18 - 00000000 ____D () C:\Windows\System32\MRT 2014-08-16 12:04 - 2013-11-13 00:18 - 99218768 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe 2014-08-15 13:14 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-08-13 09:37 - 2012-07-26 08:59 - 00000000 ____D () C:\Windows\CbsTemp 2014-08-13 09:24 - 2014-06-22 10:51 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-08-13 09:24 - 2014-06-22 10:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2014-08-13 09:24 - 2014-06-13 03:25 - 00428888 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS 2014-08-13 09:24 - 2014-04-11 10:24 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2014-08-13 09:24 - 2014-04-11 10:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-08-13 09:24 - 2014-04-11 10:04 - 00195584 _____ (Microsoft Corporation) C:\Windows\System32\msrating.dll 2014-08-13 09:24 - 2014-04-11 10:04 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-08-13 09:24 - 2014-04-11 09:57 - 00139264 _____ (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2014-08-13 09:24 - 2014-04-11 09:57 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-08-13 09:24 - 2014-04-11 09:57 - 00111616 _____ (Microsoft Corporation) C:\Windows\System32\ieetwcollector.exe 2014-08-13 09:24 - 2014-04-11 09:57 - 00066048 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2014-08-13 09:24 - 2014-04-11 09:57 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-08-13 09:24 - 2014-04-11 09:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\System32\ieetwproxystub.dll 2014-08-13 09:24 - 2014-04-11 09:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-08-13 09:24 - 2014-04-11 09:57 - 00033792 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2014-08-13 09:24 - 2014-04-11 09:57 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-08-13 09:24 - 2014-04-11 09:57 - 00004096 _____ (Microsoft Corporation) C:\Windows\System32\ieetwcollectorres.dll 2014-08-10 21:48 - 2013-11-13 14:24 - 00103424 ___SH () C:\Users\Tim\Downloads\Thumbs.db 2014-08-07 20:49 - 2014-08-07 20:49 - 00000000 ____D () C:\Program Files (x86)\Evernote 2014-08-07 08:59 - 2014-08-07 08:59 - 00986974 _____ () C:\Users\Tim\Desktop\IMG_20140807_091353.jpeg 2014-08-07 03:12 - 2014-08-13 09:26 - 01336624 _____ (Microsoft Corporation) C:\Windows\System32\gdi32.dll 2014-08-06 23:39 - 2014-08-13 09:26 - 04148224 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys 2014-08-06 23:38 - 2014-08-13 09:27 - 00697856 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll 2014-08-04 00:15 - 2014-08-04 00:14 - 00000000 ___RD () C:\Users\Tim\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App 2014-08-04 00:13 - 2014-07-26 20:21 - 00000000 ____D () C:\Users\Tim\AppData\Local\Battle.net 2014-08-03 15:53 - 2013-11-15 15:53 - 00000000 ____D () C:\Users\Tim\Documents\Adobe 2014-08-02 06:44 - 2014-08-13 09:27 - 00527360 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll 2014-08-02 04:56 - 2014-08-13 09:26 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-02 04:11 - 2014-08-13 09:27 - 00918528 _____ (Microsoft Corporation) C:\Windows\System32\MrmCoreR.dll 2014-08-02 01:17 - 2013-08-22 16:38 - 00704480 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-08-02 01:17 - 2013-08-22 16:38 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-08-01 09:23 - 2014-07-26 20:27 - 00000000 ____D () C:\Program Files (x86)\Hearthstone 2014-08-01 09:22 - 2014-08-01 09:22 - 01165636 _____ () C:\Users\Tim\Downloads\Motiv Snowden Obama Pur.ai 2014-08-01 09:22 - 2014-08-01 09:22 - 00000034 _____ () C:\Users\Tim\AppData\Roaming\AdobeWLCMCache.dat 2014-07-31 11:28 - 2014-07-31 11:28 - 00011859 _____ () C:\Users\Tim\Downloads\Das_perfekte_Dinner_14.07.30_19-00_vox_60_TVOON_DE.mpg.avi.otrkey.torrent 2014-07-31 10:33 - 2014-07-31 10:33 - 00000000 ____D () C:\Users\Tim\AppData\Local\Evernote 2014-07-31 10:20 - 2014-07-31 10:19 - 87610208 _____ (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Users\Tim\Downloads\Evernote_5.5.2.4187.exe 2014-07-30 07:48 - 2014-02-26 10:08 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-30 07:48 - 2014-02-26 10:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-29 19:05 - 2014-01-13 11:04 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-07-27 14:30 - 2013-11-24 16:33 - 00000000 ____D () C:\Users\Tim\Documents\Citavi 4 2014-07-27 14:24 - 2013-11-24 16:29 - 00000000 ____D () C:\ProgramData\Swiss Academic Software 2014-07-27 14:21 - 2013-11-22 19:47 - 00000000 ____D () C:\Users\Tim\AppData\Local\Downloaded Installations 2014-07-26 20:40 - 2014-07-26 20:40 - 00000000 ____D () C:\Users\Tim\AppData\Local\Blizzard 2014-07-26 20:39 - 2014-07-26 20:21 - 00000000 ____D () C:\Users\Tim\AppData\Roaming\Battle.net 2014-07-26 20:21 - 2014-07-26 20:21 - 00000000 ____D () C:\Users\Tim\AppData\Local\Blizzard Entertainment 2014-07-26 20:21 - 2014-07-26 20:21 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2014-07-26 20:21 - 2014-07-26 20:21 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-07-26 20:20 - 2014-07-26 20:20 - 03099552 _____ (Blizzard Entertainment) C:\Users\Tim\Downloads\Hearthstone-Setup-deDE.exe 2014-07-26 20:20 - 2014-07-26 20:20 - 00000000 ____D () C:\ProgramData\Battle.net 2014-07-25 15:52 - 2014-08-13 09:27 - 23645696 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2014-07-25 14:51 - 2014-08-13 09:27 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-25 14:28 - 2014-08-13 09:27 - 00548352 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2014-07-25 14:25 - 2014-08-13 09:28 - 02774528 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2014-07-25 14:25 - 2014-08-13 09:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\System32\MshtmlDac.dll 2014-07-25 13:59 - 2014-08-13 09:27 - 00758272 _____ (Microsoft Corporation) C:\Windows\System32\jscript9diag.dll 2014-07-25 13:40 - 2014-08-13 09:28 - 00452096 _____ (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll 2014-07-25 13:34 - 2014-08-13 09:27 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-25 13:30 - 2014-08-13 09:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-07-25 13:28 - 2014-08-13 09:27 - 05824512 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2014-07-25 13:28 - 2014-08-13 09:27 - 00072704 _____ (Microsoft Corporation) C:\Windows\System32\JavaScriptCollectionAgent.dll 2014-07-25 13:21 - 2014-08-13 09:28 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-25 13:17 - 2014-08-13 09:27 - 00085504 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2014-07-25 13:10 - 2014-08-13 09:27 - 00292864 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2014-07-25 13:08 - 2014-08-13 09:27 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-07-25 13:06 - 2014-08-13 09:28 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-25 12:52 - 2014-08-13 09:28 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-25 12:47 - 2014-08-13 09:28 - 00631808 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2014-07-25 12:43 - 2014-08-13 09:27 - 00333312 _____ (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll 2014-07-25 12:43 - 2014-08-13 09:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-07-25 12:42 - 2014-08-13 09:27 - 00692736 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2014-07-25 12:39 - 2014-08-13 09:28 - 02087936 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2014-07-25 12:34 - 2014-08-13 09:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-25 12:29 - 2014-08-13 09:28 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-25 12:23 - 2014-08-13 09:28 - 13547008 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2014-07-25 12:13 - 2014-08-13 09:28 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-25 12:09 - 2014-08-13 09:27 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-25 12:07 - 2014-08-13 09:28 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-25 12:03 - 2014-08-13 09:28 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-25 11:52 - 2014-08-13 09:27 - 02266624 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll 2014-07-25 11:26 - 2014-08-13 09:28 - 01431040 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2014-07-25 11:17 - 2014-08-13 09:27 - 00846336 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2014-07-25 11:09 - 2014-08-13 09:28 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-25 11:05 - 2014-08-13 09:27 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-25 11:00 - 2014-08-13 09:28 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-24 20:06 - 2014-07-24 20:05 - 00000000 ____D () C:\Users\Tim\Desktop\Küche und Schrank 2014-07-23 08:08 - 2014-07-23 08:08 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-07-23 08:08 - 2013-12-23 16:06 - 00000000 ____D () C:\Program Files (x86)\QuickTime 2014-07-23 08:07 - 2014-07-23 08:07 - 00000000 ____D () C:\Users\Tim\AppData\Roaming\Media Player Classic 2014-07-23 08:01 - 2014-07-23 08:01 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-07-23 08:01 - 2014-07-23 08:00 - 39401336 _____ (Apple Inc.) C:\Users\Tim\Downloads\QuickTimeInstaller.exe 2014-07-22 19:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\System32\NDF Files to move or delete: ==================== C:\ProgramData\MakeMarkerFile.exe C:\Users\EasySurvey\EasySurvey.exe Some content of TEMP: ==================== C:\Users\Tim\AppData\Local\Temp\CreativeCloudSet-Up.exe ==================== Known DLLs (Whitelisted) ================ ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== Restore Points ========================= Restore point made on: 2014-08-20 17:19:55 ==================== Memory info =========================== Percentage of memory in use: 18% Total physical RAM: 3980.51 MB Available physical RAM: 3235.13 MB Total Pagefile: 3980.51 MB Available Pagefile: 3263.61 MB Total Virtual: 131072 MB Available Virtual: 131071.87 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:94.35 GB) (Free:13.03 GB) NTFS Drive d: () (Fixed) (Total:0.34 GB) (Free:0.07 GB) NTFS Drive e: (USB) (Removable) (Total:1.95 GB) (Free:1.95 GB) FAT Drive x: (Boot) (Fixed) (Total:0.5 GB) (Free:0.49 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: 1933A963) Partition: GPT Partition Type. ======================================================== Disk: 1 (Size: 2 GB) (Disk ID: 6F20736B) No partition Table on disk 1. Disk 1 is a removable device. LastRegBack: 2014-08-16 13:11 ==================== End Of Log ============================ |
21.08.2014, 06:30 | #2 |
/// the machine /// TB-Ausbilder | Windows 8: Schwarzer Bildschirm bei Start hi,
__________________Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter LastRegBack: 2014-08-16 13:11
Das Tool erstellt eine Fixlog.txt auf deinem USB Stick. Poste den Inhalt bitte hier.
__________________ |
21.08.2014, 14:09 | #3 |
| Windows 8: Schwarzer Bildschirm bei Start Hallo Schrauber,
__________________danke für deine Antwort! Mittlerweile habe ich es hinbekommen, Win8 per Reparatur aufzufrischen. Etwas ärgerlich, aber wenigstens sehe ich wieder was . Danke nochmal und viele Grüße! |
22.08.2014, 13:19 | #4 |
/// the machine /// TB-Ausbilder | Windows 8: Schwarzer Bildschirm bei Start ok
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Windows 8: Schwarzer Bildschirm bei Start |
adobe, bereit, bildschirm, defender, desktop, dll, explorer, flash player, helper, log-datei, monitor, mozilla, registry, rundll, scan, schwarzer bildschirm, sekunden, services.exe, software, spotify web helper, starten, svchost.exe, tcp, temp, usb, windows, winlogon.exe, wiso |