|
Log-Analyse und Auswertung: Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exeWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
16.09.2014, 00:42 | #1 |
| Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe Hi, heute hat Malwarebytes bei einem Suchlauf Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe gefunden. Das merkwürdige ist, dass diese Datei zu den Treiberdateien von meinem Gamepad zu gehören scheint, jetzt frage ich mich, ob der Trojaner sich darin irgendwie tarnt oder ob Malwarebytes einfach einen Fehler gemacht hat, habe die Datei auch mal bei Virustotal hochgeladen, wo dann nur 9 Virenscanner Alarm geschlagen haben: https://www.virustotal.com/de/file/109c57c35fe006d6905a6ba3161417c0934c375dfdff998fc8c1d6e7797d0627/analysis/1410818977/ Auch mein standard Anti-Viren-Program Avira Antivir hat bis jetzt noch nicht gemeckert. Hoffe das ihr mir helfen könnt, habe meinen PC erst letztens neu aufgesetzt und hab keine Lust das jetzt nochmal zu tun Alle Logfiles bis auf die von Malwarebytes wurden erst erstellt nachdem die Datei in Quarantäne war |
16.09.2014, 07:46 | #2 |
/// the machine /// TB-Ausbilder | Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe Hi,
__________________Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. Ich kann auf Arbeit keine Anhänge öffnen, danke. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
16.09.2014, 17:11 | #3 |
| Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe ok
__________________Malwarebytes: Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 15.09.2014 Suchlauf-Zeit: 23:46:33 Logdatei: 15-09-2014.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.09.15.12 Rootkit Datenbank: v2014.09.15.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Self-protection: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Linus Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 314465 Verstrichene Zeit: 22 Min, 50 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 0 (No malicious items detected) Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 0 (No malicious items detected) Ordner: 0 (No malicious items detected) Dateien: 3 Trojan.Delf.BAT, C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe, In Quarantäne, [0fe906e72e4de45276cf28633ac655ab], PUP.Optional.BPlug, C:\Users\Linus\AppData\Local\Temp\is1901864539\7CAE47F5_stp\ClearThinkSetup.exe, In Quarantäne, [30c840adccaf9a9c6ac34a70cc35649c], PUP.Optional.Trovi.A, C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "startup_urls": [ "hxxp://www.trovi.com/?gd=&ctid=CT3324850&octid=EB_ORIGINAL_CTID&ISID=3532a8c0-1200-4967-9213-618b8b237727&SearchSource=61&CUI=&UM=&UP=SPA5ABAD73-C702-4012-B6B4-B9B61D51024E&SSPV=" ],), Ersetzt,[6f898b628cef6acc896a022fb055c739] Physische Sektoren: 0 (No malicious items detected) (end) Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 01:04 on 16/09/2014 (Linus) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-09-2014 Ran by Linus (administrator) on LINUS-PC on 16-09-2014 00:54:04 Running from C:\Users\Linus\Downloads\ANtivirus Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\MDM.EXE () C:\Program Files (x86)\Vtune\TBPANEL.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Dropbox, Inc.) C:\Users\Linus\AppData\Roaming\Dropbox\bin\Dropbox.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe () C:\Program Files\Rainmeter\Rainmeter.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe () C:\Windows\SysWOW64\PnkBstrB.exe (Motorola) C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\calc.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe () C:\Users\Linus\Downloads\ANtivirus\Defogger.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-08-28] (Realtek Semiconductor) HKLM-x32\...\Run: [BCU] => C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [411864 2010-03-05] (DeviceVM, Inc.) HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-04-27] (Renesas Electronics Corporation) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [751184 2014-08-14] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2014-05-08] (Adobe Systems Incorporated) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.) HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2621440 2010-02-09] (Brother Industries, Ltd.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-08-01] (Apple Inc.) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [161584 2014-08-04] (Avira Operations GmbH & Co. KG) HKLM-x32\...\RunOnce: [ Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\ Malwarebytes Anti-Malware \mbamdor.exe [54072 2014-05-12] (Malwarebytes Corporation) HKU\S-1-5-21-2113089819-2585871665-813888595-1000\...\Run: [TBPanel] => C:\Program Files (x86)\Vtune\TBPanel.exe [2158592 2010-09-02] () HKU\S-1-5-21-2113089819-2585871665-813888595-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21650016 2014-07-24] (Skype Technologies S.A.) HKU\S-1-5-21-2113089819-2585871665-813888595-1000\...\Run: [GoogleChromeAutoLaunch_546B100DB4BA6F8638678E5732DDC41D] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [912200 2014-09-04] (Google Inc.) HKU\S-1-5-21-2113089819-2585871665-813888595-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [TBPanel] => C:\Program Files (x86)\Vtune\TBPanel.exe [2158592 2010-09-02] () HKU\S-1-5-21-2113089819-2585871665-813888595-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21650016 2014-07-24] (Skype Technologies S.A.) HKU\S-1-5-21-2113089819-2585871665-813888595-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [GoogleChromeAutoLaunch_546B100DB4BA6F8638678E5732DDC41D] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [912200 2014-09-04] (Google Inc.) HKU\S-1-5-21-2113089819-2585871665-813888595-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Run: [TBPanel] => C:\Program Files (x86)\Vtune\TBPanel.exe [2158592 2010-09-02] () HKU\S-1-5-21-2113089819-2585871665-813888595-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21650016 2014-07-24] (Skype Technologies S.A.) HKU\S-1-5-21-2113089819-2585871665-813888595-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Run: [GoogleChromeAutoLaunch_546B100DB4BA6F8638678E5732DDC41D] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [912200 2014-09-04] (Google Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe () ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.splashtop.com/asusexpressgate/mb/searchAPI.php?SE=yahoo&QS=http%3A%2F%2Fde.search.yahoo.com%2Fsearch%3Ffr%3Dfp-devicevm%26type%3DWEB01 URLSearchHook: HKCU - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM, Inc.) URLSearchHook: HKCU - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM, Inc.) SearchScopes: HKCU - DefaultScope {08C19280-F57D-4114-B116-8496D5953ED0} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=EGMB SearchScopes: HKCU - {08C19280-F57D-4114-B116-8496D5953ED0} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=EGMB SearchScopes: HKCU - {2ABDA5F9-1BC8-4a16-9475-5A72BBEA1E22} URL = hxxp://www.google.com/custom?client=pub-3794288947762788&forid=1&channel=5369970905&ie=UTF-8&oe=UTF-8&safe=active&cof=GALT%3A%23008000%3BGL%3A1%3BDIV%3A%23336699%3BVLC%3A663399%3BAH%3Acenter%3BBGC%3AFFFFFF%3BLBGC%3A336699%3BALC%3A0000FF%3BLC%3A0000FF%3BT%3A000000%3BGFNT%3A0000FF%3BGIMP%3A0000FF%3BFORID%3A1&hl=de&q={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> c:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> c:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Linus\AppData\Roaming\Mozilla\Firefox\Profiles\eboozt6x.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @java.com/DTPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF user.js: detected! => C:\Users\Linus\AppData\Roaming\Mozilla\Firefox\Profiles\eboozt6x.default\user.js FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found] Chrome: ======= CHR HomePage: Default -> hxxp://google.com/ CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3324850&octid=EB_ORIGINAL_CTID&ISID=3532a8c0-1200-4967-9213-618b8b237727&SearchSource=61&CUI=&UM=&UP=SPA5ABAD73-C702-4012-B6B4-B9B61D51024E&SSPV=" CHR DefaultSearchKeyword: Default -> 51890E9138812C8A10218F3501D5F4263CA0037A6205EC02A6A43315556B1F4E CHR DefaultSearchURL: Default -> D8D2E92557780D50B7111CE6C16164548C3BBA972FF9DB593998EE137806180D CHR Profile: C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-05] CHR Extension: (Google Drive) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-05] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-14] CHR Extension: (Web Developer) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbameneiokkgbdmiekhjnmfkcnldhhm [2014-06-05] CHR Extension: (Turn Off the Lights) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn [2014-06-05] CHR Extension: (YouTube) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-05] CHR Extension: (Facebook) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm [2014-06-05] CHR Extension: (Google-Suche) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-05] CHR Extension: (User-Agent Switcher for Chrome) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg [2014-06-05] CHR Extension: (Reditr Web App - The Best Reddit Client) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejmiceoebcclihjdpnmmkdcmcboekibc [2014-08-20] CHR Extension: (Facebook Disconnect) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpepffjfmamnambagiibghpglaidiec [2014-06-05] CHR Extension: (Facebook™ Chat Privacy) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfpgaanechfneiboempkfjghninbibjn [2014-06-05] CHR Extension: (AdBlock) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-06-05] CHR Extension: (ProxMate) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifalmiidchkjjmkkbkoaibpmoeichmki [2014-08-26] CHR Extension: (Classic Popup Blocker) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\lijicndbkjoplmhnclmoahmcaffaeapp [2014-06-05] CHR Extension: (Google Wallet) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-05] CHR Extension: (Google Docs Viewer für PDF/PowerPoint (von Google)) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnbmlagghjjcbdhgmkedmbmedengocbn [2014-06-05] CHR Extension: (ScriptSafe) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiigbmnaadbkfbmpbfijlflahbdbdgdf [2014-07-24] CHR Extension: (Google Mail) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-05] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-08-14] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-08-14] (Avira Operations GmbH & Co. KG) R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [149296 2014-08-04] (Avira Operations GmbH & Co. KG) R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.) [File not signed] S2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [64624 2014-06-12] (CyberGhost S.R.L) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2369720 2014-08-01] (Microsoft Corporation) S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed] S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed] S2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2013-11-15] (Motorola Mobility LLC) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-08-23] () R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [189248 2014-08-23] () R2 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [File not signed] R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) S3 Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [833728 2014-08-28] (Valve Corporation) [File not signed] R2 Themes; C:\Windows\system32\themeservice.dll [44544 2014-06-05] (Microsoft Corporation) [File not signed] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-04-22] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [117712 2014-07-03] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-05-09] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-05-09] (Avira Operations GmbH & Co. KG) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [17480 2013-03-07] () [File not signed] S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [13896 2013-03-07] () [File not signed] S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9800 2013-03-07] () [File not signed] S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [9160 2013-03-07] () [File not signed] U0 ewitaxy; C:\Windows\System32\drivers\ufcht.sys [79064 2014-09-16] (Malwarebytes Corporation) R3 libusb0; C:\Windows\System32\drivers\libusb0.sys [52832 2012-01-17] (hxxp://libusb-win32.sourceforge.net) R3 libusb0; C:\Windows\SysWOW64\drivers\libusb0.sys [52832 2012-01-17] (hxxp://libusb-win32.sourceforge.net) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [122584 2014-09-16] (Malwarebytes Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] () R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-12-06] (Secunia) S3 TBPanel; No ImagePath ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-16 00:53 - 2014-09-16 00:54 - 00000000 ____D () C:\FRST 2014-09-16 00:52 - 2014-09-16 00:52 - 00000000 _____ () C:\Users\Linus\defogger_reenable 2014-09-16 00:26 - 2014-09-16 00:54 - 00000000 ____D () C:\Users\Linus\Downloads\ANtivirus 2014-09-16 00:18 - 2014-09-16 00:18 - 00079064 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\ufcht.sys 2014-09-16 00:16 - 2014-09-16 00:16 - 00138817 _____ () C:\Users\Linus\Downloads\hashmyfiles_v2.03.zip 2014-09-16 00:15 - 2014-09-16 00:15 - 04476486 _____ () C:\Users\Linus\Downloads\SL-6576-BK_Driver_V1.0.zip 2014-09-13 19:50 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-13 19:50 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-09-13 19:50 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-13 19:50 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-13 19:50 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-13 19:50 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-09-13 19:50 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-13 19:50 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-13 19:50 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-13 19:50 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-13 19:50 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-13 19:50 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-13 19:50 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-09-13 19:50 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-13 19:50 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-13 19:50 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-13 19:50 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-13 19:50 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-13 19:50 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-13 19:50 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-09-13 19:50 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-13 19:50 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-13 19:50 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-09-13 19:50 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-13 19:50 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-09-13 19:50 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-09-13 19:50 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-09-13 19:50 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-09-13 19:50 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-13 19:50 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-13 19:50 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-09-13 19:50 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-09-13 19:50 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-13 19:50 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-09-13 19:50 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-09-13 19:50 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-09-13 19:50 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-09-13 19:50 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-13 19:50 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-13 19:50 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-13 19:50 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-13 19:50 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-13 19:50 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-09-13 19:50 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-09-13 19:50 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-09-13 19:50 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-13 19:50 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-09-13 19:50 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-13 19:50 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-09-13 19:50 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-09-13 19:50 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-09-13 19:50 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-13 19:50 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-09-13 19:50 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-09-13 19:50 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-13 19:50 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-09-13 19:39 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-13 19:39 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-09-13 14:04 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-13 14:04 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-09-13 14:03 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-13 14:03 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-13 14:03 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-13 14:03 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-13 14:03 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-09-13 14:03 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-09-13 14:03 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-09-13 14:02 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-13 14:02 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-09-10 20:37 - 2014-09-16 00:13 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-10 20:37 - 2014-09-10 20:37 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-10 20:37 - 2014-09-10 20:37 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-10 20:37 - 2014-09-10 20:37 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-10 20:35 - 2014-09-10 20:35 - 10036224 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-09-09 17:43 - 2014-09-09 17:43 - 00002082 _____ () C:\Users\Linus\AppData\Local\recently-used.xbel 2014-09-09 17:14 - 2014-09-09 17:14 - 00000000 ____D () C:\Users\Linus\AppData\Local\Adobe 2014-09-04 17:51 - 2014-09-04 17:52 - 00000000 ____D () C:\Users\Linus\AppData\Local\CyberGhost 2014-09-04 17:50 - 2014-09-04 17:51 - 00000000 ____D () C:\Program Files\TAP-Windows 2014-09-04 17:50 - 2014-09-04 17:51 - 00000000 ____D () C:\Program Files\CyberGhost 5 2014-09-04 17:50 - 2014-09-04 17:50 - 00001728 _____ () C:\Users\Linus\Desktop\CyberGhost 5.lnk 2014-09-04 17:50 - 2014-09-04 17:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 5 2014-08-28 14:27 - 2014-08-28 14:27 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-08-28 14:26 - 2014-08-28 14:26 - 60636160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 28343384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 14863448 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 12894808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 06218072 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 05751048 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-08-28 14:26 - 2014-08-28 14:26 - 03959384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02117424 _____ () C:\Windows\system32\SStudio.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-08-28 14:26 - 2014-08-28 14:26 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01934424 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01317976 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01168472 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01136728 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01099203 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-08-28 14:26 - 2014-08-28 14:26 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00956504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00942384 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00900696 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00889592 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00724728 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00291488 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00246008 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00033592 _____ () C:\Windows\system32\audioLibVc.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-08-28 14:25 - 2014-08-28 14:25 - 00941272 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-08-28 14:25 - 2014-08-28 14:25 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-08-28 14:25 - 2014-05-15 01:49 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin 2014-08-28 14:23 - 2014-08-28 14:23 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00181760 _____ (Renesas Electronics Corporation) C:\Windows\system32\Drivers\nusb3xhc.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-08-28 14:22 - 2014-08-28 14:22 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-08-28 14:12 - 2014-08-28 14:12 - 00003214 _____ () C:\Windows\System32\Tasks\Driver Booster Scan 2014-08-28 14:12 - 2014-08-28 14:12 - 00003158 _____ () C:\Windows\System32\Tasks\Driver Booster Update 2014-08-28 14:12 - 2014-08-28 14:12 - 00002854 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (Linus) 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Program Files (x86)\IObit 2014-08-28 13:23 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-28 13:23 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-28 13:23 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-27 16:33 - 2014-07-21 00:56 - 00321448 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-08-27 16:33 - 2014-07-21 00:56 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-08-27 16:33 - 2014-07-21 00:56 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-08-27 16:31 - 2014-08-27 16:31 - 00000000 ____D () C:\Program Files (x86)\Java 2014-08-27 16:29 - 2014-09-16 00:21 - 00000000 ____D () C:\Users\Linus\Downloads\System 2014-08-27 15:22 - 2014-08-27 15:22 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-08-27 15:17 - 2014-08-27 15:17 - 00001899 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk 2014-08-27 15:17 - 2014-08-27 15:17 - 00000000 ____D () C:\Program Files (x86)\CDBurnerXP 2014-08-27 15:12 - 2014-08-27 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2014-08-27 15:08 - 2014-08-27 15:08 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-08-27 15:05 - 2014-09-13 19:47 - 00000000 ____D () C:\Windows\system32\MRT 2014-08-27 15:05 - 2014-09-13 19:40 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-08-27 14:54 - 2014-08-27 16:33 - 00011110 _____ () C:\Windows\SecuniaPackage.log 2014-08-27 14:44 - 2014-08-27 14:44 - 00001069 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-08-27 14:42 - 2014-08-27 14:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 10.1 2014-08-27 14:42 - 2014-04-04 00:42 - 03382440 _____ () C:\Windows\system32\BootMan.exe 2014-08-27 14:42 - 2014-04-04 00:25 - 02499752 _____ () C:\Windows\SysWOW64\BootMan.exe 2014-08-27 14:42 - 2013-03-07 09:49 - 00100936 _____ () C:\Windows\system32\setupempdrvx64.exe 2014-08-27 14:42 - 2013-03-07 09:49 - 00087112 _____ () C:\Windows\SysWOW64\setupempdrv03.exe 2014-08-27 14:42 - 2013-03-07 09:49 - 00019840 _____ () C:\Windows\SysWOW64\EuEpmGdi.dll 2014-08-27 14:42 - 2013-03-07 09:49 - 00017480 _____ () C:\Windows\system32\epmntdrv.sys 2014-08-27 14:42 - 2013-03-07 09:49 - 00016256 _____ () C:\Windows\system32\EuEpmGdi.dll 2014-08-27 14:42 - 2013-03-07 09:49 - 00013896 _____ () C:\Windows\SysWOW64\epmntdrv.sys 2014-08-27 14:42 - 2013-03-07 09:49 - 00009800 _____ () C:\Windows\system32\EuGdiDrv.sys 2014-08-27 14:42 - 2013-03-07 09:49 - 00009160 _____ () C:\Windows\SysWOW64\EuGdiDrv.sys 2014-08-27 14:40 - 2012-12-21 17:16 - 00274088 _____ (EaseUS) C:\epm0.exe 2014-08-27 14:35 - 2014-08-27 14:35 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Users\Linus\AppData\Local\Secunia PSI 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Program Files (x86)\Secunia 2014-08-27 14:29 - 2014-09-10 22:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CHIP Updater 2014-08-27 14:16 - 2014-09-13 14:22 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Mozilla 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Local\Mozilla 2014-08-27 13:15 - 2014-08-27 14:03 - 1870599068 _____ () C:\Users\Linus\Downloads\Stalker_Lost_Alpha_1.300.zip.part 2014-08-27 13:08 - 2014-08-27 13:08 - 00002082 _____ () C:\Users\Linus\Desktop\JDownloader 2.lnk 2014-08-27 13:08 - 2014-08-27 13:08 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader 2014-08-27 13:01 - 2014-08-27 13:11 - 00000000 ____D () C:\Users\Linus\AppData\Local\JDownloader v2.0 2014-08-27 12:39 - 2014-08-27 12:39 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Lionhead Studios 2014-08-27 12:37 - 2014-08-27 12:37 - 00001338 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Windows\SysWOW64\xlive 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2014-08-27 12:11 - 2014-08-27 12:16 - 00000000 ____D () C:\Users\Linus\Documents\NFS Most Wanted 2014-08-26 13:14 - 2014-08-27 15:23 - 00007346 _____ () C:\Windows\PFRO.log 2014-08-25 16:08 - 2014-09-15 16:33 - 00005136 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Linus-PC-Linus Linus-PC 2014-08-25 16:04 - 2014-08-25 16:04 - 00000000 ____D () C:\Users\Linus\AppData\Local\Microsoft Help 2014-08-25 15:47 - 2014-08-25 15:47 - 00000000 ____D () C:\Users\Linus\Documents\OneNote-Notizbücher 2014-08-25 15:44 - 2014-08-28 01:35 - 00000000 ___RD () C:\Users\Linus\OneDrive 2014-08-25 15:44 - 2014-08-25 16:06 - 00002194 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive 2014-08-25 15:35 - 2014-08-25 15:35 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-08-25 15:34 - 2014-08-25 15:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-08-25 15:29 - 2014-08-25 15:30 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-08-25 15:28 - 2014-08-25 16:04 - 00889632 _____ () C:\Users\Linus\Downloads\Using OneNote in (my) College Courses.one 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-08-23 19:23 - 2014-08-23 19:23 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-08-23 19:22 - 2014-08-23 19:22 - 00017513 _____ () C:\Windows\DirectX.log 2014-08-22 19:39 - 2014-08-22 19:39 - 00001310 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Origin.lnk 2014-08-22 16:49 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-08-22 16:49 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2014-08-22 16:49 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-08-22 16:49 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-08-22 16:49 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-08-22 16:49 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-08-22 16:49 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2014-08-22 16:49 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-08-22 16:49 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2014-08-19 18:36 - 2014-08-19 18:36 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-08-19 18:36 - 2014-08-19 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files\iTunes 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files\iPod 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-08-19 11:45 - 2014-08-19 11:45 - 00000000 ____D () C:\Users\Linus\Documents\Anträge 2014-08-18 17:16 - 2014-09-15 16:20 - 00002195 _____ () C:\Windows\setupact.log 2014-08-18 17:16 - 2014-08-18 17:16 - 00000000 _____ () C:\Windows\setuperr.log 2014-08-17 13:53 - 2014-09-10 22:54 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft 2014-08-17 13:52 - 2014-09-10 22:52 - 00000000 ____D () C:\Program Files (x86)\CHIP Updater 2014-08-17 13:52 - 2014-08-17 13:53 - 00000000 ____D () C:\Users\Linus\AppData\Local\Abelssoft 2014-08-17 13:52 - 2014-08-17 13:52 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Abelssoft 2014-08-17 13:52 - 2014-08-17 13:52 - 00000000 ____D () C:\ProgramData\XDMessagingv4 ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-16 00:54 - 2014-09-16 00:53 - 00000000 ____D () C:\FRST 2014-09-16 00:54 - 2014-09-16 00:26 - 00000000 ____D () C:\Users\Linus\Downloads\ANtivirus 2014-09-16 00:52 - 2014-09-16 00:52 - 00000000 _____ () C:\Users\Linus\defogger_reenable 2014-09-16 00:52 - 2014-06-05 15:56 - 00000000 ____D () C:\Users\Linus 2014-09-16 00:40 - 2014-06-05 19:16 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-09-16 00:29 - 2014-06-05 19:24 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Skype 2014-09-16 00:21 - 2014-08-27 16:29 - 00000000 ____D () C:\Users\Linus\Downloads\System 2014-09-16 00:18 - 2014-09-16 00:18 - 00079064 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\ufcht.sys 2014-09-16 00:18 - 2014-07-01 11:36 - 00000000 ____D () C:\Program Files (x86)\HJC PS3 ISP V22 2014-09-16 00:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\TAPI 2014-09-16 00:16 - 2014-09-16 00:16 - 00138817 _____ () C:\Users\Linus\Downloads\hashmyfiles_v2.03.zip 2014-09-16 00:15 - 2014-09-16 00:15 - 04476486 _____ () C:\Users\Linus\Downloads\SL-6576-BK_Driver_V1.0.zip 2014-09-16 00:13 - 2014-09-10 20:37 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-16 00:06 - 2014-06-05 17:55 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-09-15 23:27 - 2014-06-05 20:24 - 00000000 ____D () C:\Users\Linus\Documents\Uni 2014-09-15 23:18 - 2014-06-05 15:53 - 01140441 _____ () C:\Windows\WindowsUpdate.log 2014-09-15 16:48 - 2009-07-14 06:45 - 00028720 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-15 16:48 - 2009-07-14 06:45 - 00028720 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-15 16:33 - 2014-08-25 16:08 - 00005136 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Linus-PC-Linus Linus-PC 2014-09-15 16:23 - 2014-06-14 23:50 - 00000000 ___RD () C:\Users\Linus\Dropbox 2014-09-15 16:23 - 2014-06-05 18:17 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Dropbox 2014-09-15 16:20 - 2014-08-18 17:16 - 00002195 _____ () C:\Windows\setupact.log 2014-09-15 16:20 - 2014-07-06 15:11 - 00000000 ____D () C:\Users\Linus\Documents\Scanner 2014-09-15 16:20 - 2014-06-05 17:55 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-09-15 16:20 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-14 20:03 - 2014-06-05 19:03 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-09-14 13:31 - 2014-06-05 19:14 - 00000000 ____D () C:\Temp 2014-09-13 19:48 - 2014-06-06 16:31 - 01591896 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-09-13 19:48 - 2011-04-12 09:43 - 00698688 _____ () C:\Windows\system32\perfh007.dat 2014-09-13 19:48 - 2011-04-12 09:43 - 00148828 _____ () C:\Windows\system32\perfc007.dat 2014-09-13 19:48 - 2009-07-14 07:13 - 01591896 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-13 19:47 - 2014-08-27 15:05 - 00000000 ____D () C:\Windows\system32\MRT 2014-09-13 19:40 - 2014-08-27 15:05 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-09-13 19:39 - 2014-06-09 19:55 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-13 14:22 - 2014-08-27 14:16 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-09-10 22:54 - 2014-08-17 13:53 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft 2014-09-10 22:52 - 2014-08-27 14:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CHIP Updater 2014-09-10 22:52 - 2014-08-17 13:52 - 00000000 ____D () C:\Program Files (x86)\CHIP Updater 2014-09-10 20:37 - 2014-09-10 20:37 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-10 20:37 - 2014-09-10 20:37 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-10 20:37 - 2014-09-10 20:37 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-10 20:35 - 2014-09-10 20:35 - 10036224 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-09-09 17:46 - 2014-06-11 23:07 - 00000000 ____D () C:\Users\Linus\.gimp-2.8 2014-09-09 17:44 - 2014-06-11 23:10 - 00000000 ____D () C:\Users\Linus\AppData\Local\gtk-2.0 2014-09-09 17:43 - 2014-09-09 17:43 - 00002082 _____ () C:\Users\Linus\AppData\Local\recently-used.xbel 2014-09-09 17:14 - 2014-09-09 17:14 - 00000000 ____D () C:\Users\Linus\AppData\Local\Adobe 2014-09-05 04:10 - 2014-09-13 14:03 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-05 04:05 - 2014-09-13 14:03 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-04 17:52 - 2014-09-04 17:51 - 00000000 ____D () C:\Users\Linus\AppData\Local\CyberGhost 2014-09-04 17:52 - 2014-06-05 15:56 - 00000000 ____D () C:\Users\Linus\AppData\Local\VirtualStore 2014-09-04 17:51 - 2014-09-04 17:50 - 00000000 ____D () C:\Program Files\TAP-Windows 2014-09-04 17:51 - 2014-09-04 17:50 - 00000000 ____D () C:\Program Files\CyberGhost 5 2014-09-04 17:50 - 2014-09-04 17:50 - 00001728 _____ () C:\Users\Linus\Desktop\CyberGhost 5.lnk 2014-09-04 17:50 - 2014-09-04 17:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 5 2014-09-04 17:49 - 2014-06-05 18:11 - 00000000 ____D () C:\Users\Linus\Downloads\Setups 2014-08-29 14:38 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-08-29 12:25 - 2009-07-14 06:45 - 00488688 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-28 23:44 - 2014-06-05 19:07 - 00000000 ____D () C:\ProgramData\Origin 2014-08-28 14:27 - 2014-08-28 14:27 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-08-28 14:27 - 2014-06-05 16:00 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-08-28 14:26 - 2014-08-28 14:26 - 60636160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 28343384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 14863448 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 12894808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 06218072 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 05751048 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-08-28 14:26 - 2014-08-28 14:26 - 03959384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02117424 _____ () C:\Windows\system32\SStudio.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-08-28 14:26 - 2014-08-28 14:26 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01934424 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01317976 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01168472 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01136728 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01099203 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-08-28 14:26 - 2014-08-28 14:26 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00956504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00942384 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00900696 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00889592 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00724728 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00291488 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00246008 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00033592 _____ () C:\Windows\system32\audioLibVc.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-08-28 14:25 - 2014-08-28 14:25 - 00941272 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-08-28 14:25 - 2014-08-28 14:25 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-08-28 14:25 - 2014-06-05 16:27 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-08-28 14:25 - 2014-06-05 16:01 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-08-28 14:24 - 2014-06-05 16:27 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-08-28 14:24 - 2014-06-05 16:23 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-08-28 14:23 - 2014-08-28 14:23 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00181760 _____ (Renesas Electronics Corporation) C:\Windows\system32\Drivers\nusb3xhc.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-08-28 14:23 - 2014-06-05 16:26 - 00026069 _____ () C:\Windows\system32\nvinfo.pb 2014-08-28 14:23 - 2014-06-05 16:25 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-08-28 14:23 - 2014-06-05 16:25 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-08-28 14:23 - 2014-06-05 16:25 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-08-28 14:23 - 2014-06-05 16:24 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-08-28 14:23 - 2014-06-05 16:24 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-08-28 14:22 - 2014-08-28 14:22 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-08-28 14:12 - 2014-08-28 14:12 - 00003214 _____ () C:\Windows\System32\Tasks\Driver Booster Scan 2014-08-28 14:12 - 2014-08-28 14:12 - 00003158 _____ () C:\Windows\System32\Tasks\Driver Booster Update 2014-08-28 14:12 - 2014-08-28 14:12 - 00002854 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (Linus) 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Program Files (x86)\IObit 2014-08-28 14:02 - 2014-06-05 19:06 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-08-28 14:00 - 2014-06-05 18:21 - 00000894 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2014-08-28 01:35 - 2014-08-25 15:44 - 00000000 ___RD () C:\Users\Linus\OneDrive 2014-08-28 00:50 - 2014-07-27 20:42 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Spotify 2014-08-27 16:45 - 2014-07-27 20:43 - 00000000 ____D () C:\Users\Linus\AppData\Local\Spotify 2014-08-27 16:33 - 2014-08-27 14:54 - 00011110 _____ () C:\Windows\SecuniaPackage.log 2014-08-27 16:31 - 2014-08-27 16:31 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-08-27 16:31 - 2014-08-27 16:31 - 00000000 ____D () C:\Program Files (x86)\Java 2014-08-27 16:30 - 2014-07-21 00:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2014-08-27 15:51 - 2009-07-14 04:34 - 00000601 _____ () C:\Windows\win.ini 2014-08-27 15:48 - 2014-06-05 18:45 - 00002619 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Office-Dokument öffnen.lnk 2014-08-27 15:48 - 2014-06-05 18:45 - 00002615 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Neues Office-Dokument.lnk 2014-08-27 15:48 - 2014-06-05 18:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-08-27 15:44 - 2014-06-05 18:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-08-27 15:40 - 2014-06-05 19:00 - 00000000 ____D () C:\Program Files\CCleaner 2014-08-27 15:38 - 2014-06-05 20:58 - 00000000 ____D () C:\Windows\pss 2014-08-27 15:26 - 2014-06-05 17:55 - 00138840 _____ () C:\Users\Linus\AppData\Local\GDIPFONTCACHEV1.DAT 2014-08-27 15:23 - 2014-08-26 13:14 - 00007346 _____ () C:\Windows\PFRO.log 2014-08-27 15:23 - 2014-06-05 18:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-08-27 15:22 - 2014-08-27 15:22 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-08-27 15:22 - 2014-06-05 18:16 - 00000000 ____D () C:\ProgramData\Skype 2014-08-27 15:17 - 2014-08-27 15:17 - 00001899 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk 2014-08-27 15:17 - 2014-08-27 15:17 - 00000000 ____D () C:\Program Files (x86)\CDBurnerXP 2014-08-27 15:13 - 2014-06-05 18:14 - 00001075 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk 2014-08-27 15:13 - 2014-06-05 18:14 - 00000000 ____D () C:\Program Files (x86)\WinSCP 2014-08-27 15:12 - 2014-08-27 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2014-08-27 15:08 - 2014-08-27 15:08 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-08-27 15:08 - 2014-06-05 18:12 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-08-27 15:08 - 2014-06-05 18:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-08-27 15:05 - 2014-06-05 18:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works 2014-08-27 14:44 - 2014-08-27 14:44 - 00001069 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-08-27 14:42 - 2014-08-27 14:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 10.1 2014-08-27 14:41 - 2014-06-05 19:12 - 00000000 ____D () C:\Program Files (x86)\EaseUS 2014-08-27 14:35 - 2014-08-27 14:35 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-08-27 14:33 - 2014-06-05 20:28 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\KeePass 2014-08-27 14:33 - 2014-06-05 18:25 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk 2014-08-27 14:33 - 2014-06-05 18:25 - 00000000 ____D () C:\Program Files (x86)\KeePass Password Safe 2 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Users\Linus\AppData\Local\Secunia PSI 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Program Files (x86)\Secunia 2014-08-27 14:25 - 2014-06-05 19:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-08-27 14:03 - 2014-08-27 13:15 - 1870599068 _____ () C:\Users\Linus\Downloads\Stalker_Lost_Alpha_1.300.zip.part 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Mozilla 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Local\Mozilla 2014-08-27 13:11 - 2014-08-27 13:01 - 00000000 ____D () C:\Users\Linus\AppData\Local\JDownloader v2.0 2014-08-27 13:08 - 2014-08-27 13:08 - 00002082 _____ () C:\Users\Linus\Desktop\JDownloader 2.lnk 2014-08-27 13:08 - 2014-08-27 13:08 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader 2014-08-27 12:47 - 2014-07-25 13:55 - 00000000 ____D () C:\Users\Linus\Downloads\Spiele 2014-08-27 12:39 - 2014-08-27 12:39 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Lionhead Studios 2014-08-27 12:37 - 2014-08-27 12:37 - 00001338 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Windows\SysWOW64\xlive 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2014-08-27 12:37 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-08-27 12:37 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-08-27 12:33 - 2014-06-05 21:50 - 00000000 ____D () C:\Users\Linus\Documents\My Games 2014-08-27 12:16 - 2014-08-27 12:11 - 00000000 ____D () C:\Users\Linus\Documents\NFS Most Wanted 2014-08-26 14:26 - 2014-06-05 19:38 - 00000000 ____D () C:\Users\Linus\Downloads\Archive 2014-08-25 16:06 - 2014-08-25 15:44 - 00002194 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 16:04 - 2014-08-25 16:04 - 00000000 ____D () C:\Users\Linus\AppData\Local\Microsoft Help 2014-08-25 16:04 - 2014-08-25 15:28 - 00889632 _____ () C:\Users\Linus\Downloads\Using OneNote in (my) College Courses.one 2014-08-25 15:47 - 2014-08-25 15:47 - 00000000 ____D () C:\Users\Linus\Documents\OneNote-Notizbücher 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive 2014-08-25 15:36 - 2014-08-25 15:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-08-25 15:35 - 2014-08-25 15:35 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-08-25 15:30 - 2014-08-25 15:29 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-08-24 14:58 - 2014-08-14 18:27 - 00001137 _____ () C:\Users\Public\Desktop\Avira.lnk 2014-08-24 14:58 - 2014-08-14 18:27 - 00000000 ____D () C:\ProgramData\Package Cache 2014-08-24 14:58 - 2014-06-05 16:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-08-24 14:58 - 2014-06-05 16:30 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-08-23 19:23 - 2014-08-23 19:23 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-08-23 19:22 - 2014-08-23 19:22 - 00017513 _____ () C:\Windows\DirectX.log 2014-08-23 04:07 - 2014-08-28 13:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-23 03:45 - 2014-08-28 13:23 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-23 02:59 - 2014-08-28 13:23 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-22 19:39 - 2014-08-22 19:39 - 00001310 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Origin.lnk 2014-08-20 15:15 - 2014-06-05 20:24 - 00019968 _____ () C:\Users\Linus\Documents\Trainingsplan.xls 2014-08-19 20:05 - 2014-09-13 19:50 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-08-19 19:39 - 2014-09-13 19:50 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-08-19 18:36 - 2014-08-19 18:36 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-08-19 18:36 - 2014-08-19 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files\iTunes 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files\iPod 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-08-19 11:45 - 2014-08-19 11:45 - 00000000 ____D () C:\Users\Linus\Documents\Anträge 2014-08-19 01:01 - 2014-09-13 19:50 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-08-19 00:29 - 2014-09-13 19:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-08-19 00:29 - 2014-09-13 19:50 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-08-19 00:26 - 2014-09-13 19:50 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-08-19 00:20 - 2014-09-13 19:50 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-08-19 00:19 - 2014-09-13 19:50 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-08-19 00:15 - 2014-09-13 19:50 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-08-19 00:15 - 2014-09-13 19:50 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-08-19 00:14 - 2014-09-13 19:50 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-08-19 00:14 - 2014-09-13 19:50 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-08-19 00:08 - 2014-09-13 19:50 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-08-19 00:08 - 2014-09-13 19:50 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-08-19 00:08 - 2014-09-13 19:50 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-08-19 00:05 - 2014-09-13 19:50 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-08-19 00:03 - 2014-09-13 19:50 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-08-19 00:03 - 2014-09-13 19:50 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-08-19 00:03 - 2014-09-13 19:50 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-08-18 23:57 - 2014-09-13 19:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-08-18 23:56 - 2014-09-13 19:50 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-08-18 23:51 - 2014-09-13 19:50 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-08-18 23:46 - 2014-09-13 19:50 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-08-18 23:45 - 2014-09-13 19:50 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-08-18 23:45 - 2014-09-13 19:50 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-08-18 23:44 - 2014-09-13 19:50 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-08-18 23:44 - 2014-09-13 19:50 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-08-18 23:42 - 2014-09-13 19:50 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-08-18 23:40 - 2014-09-13 19:50 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-08-18 23:39 - 2014-09-13 19:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-08-18 23:39 - 2014-09-13 19:50 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-08-18 23:39 - 2014-09-13 19:50 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-08-18 23:38 - 2014-09-13 19:50 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-08-18 23:37 - 2014-09-13 19:50 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-08-18 23:36 - 2014-09-13 19:50 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-08-18 23:35 - 2014-09-13 19:50 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-08-18 23:27 - 2014-09-13 19:50 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-08-18 23:25 - 2014-09-13 19:50 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-08-18 23:25 - 2014-09-13 19:50 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-08-18 23:23 - 2014-09-13 19:50 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-08-18 23:23 - 2014-09-13 19:50 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-08-18 23:22 - 2014-09-13 19:50 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-08-18 23:19 - 2014-09-13 19:50 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-08-18 23:17 - 2014-09-13 19:50 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-08-18 23:17 - 2014-09-13 19:50 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-08-18 23:16 - 2014-09-13 19:50 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-08-18 23:15 - 2014-09-13 19:50 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-08-18 23:15 - 2014-09-13 19:50 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-08-18 23:09 - 2014-09-13 19:50 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-08-18 23:08 - 2014-09-13 19:50 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-08-18 23:07 - 2014-09-13 19:50 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-08-18 22:55 - 2014-09-13 19:50 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-08-18 22:46 - 2014-09-13 19:50 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-08-18 22:38 - 2014-09-13 19:50 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-08-18 22:38 - 2014-09-13 19:50 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-08-18 22:36 - 2014-09-13 19:50 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-08-18 22:00 - 2014-06-05 20:24 - 00000000 ____D () C:\Users\Linus\Documents\Backups 2014-08-18 17:16 - 2014-08-18 17:16 - 00000000 _____ () C:\Windows\setuperr.log 2014-08-17 17:49 - 2014-06-05 20:24 - 00003134 _____ () C:\Users\Linus\Documents\Keys.kdbx 2014-08-17 13:53 - 2014-08-17 13:52 - 00000000 ____D () C:\Users\Linus\AppData\Local\Abelssoft 2014-08-17 13:53 - 2014-06-05 16:49 - 00000000 ____D () C:\Windows\Panther 2014-08-17 13:52 - 2014-08-17 13:52 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Abelssoft 2014-08-17 13:52 - 2014-08-17 13:52 - 00000000 ____D () C:\ProgramData\XDMessagingv4 Some content of TEMP: ==================== C:\Users\Linus\AppData\Local\Temp\130536108090061303.exe C:\Users\Linus\AppData\Local\Temp\AutoRun.exe C:\Users\Linus\AppData\Local\Temp\AutoRunGUI.dll C:\Users\Linus\AppData\Local\Temp\avgnt.exe C:\Users\Linus\AppData\Local\Temp\CHIP_Updater.exe C:\Users\Linus\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpjhspc4.dll C:\Users\Linus\AppData\Local\Temp\JDSetup130536108070130163.exe C:\Users\Linus\AppData\Local\Temp\proxy_vole4986856637879263057.dll C:\Users\Linus\AppData\Local\Temp\vlc-2.1.5-win32.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-08-29 14:29 ==================== End Of Log ============================ |
16.09.2014, 17:12 | #4 |
| Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe Addition.txt (FRST): Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-09-2014 Ran by Linus at 2014-09-16 00:55:47 Running from C:\Users\Linus\Downloads\ANtivirus Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated) Adobe Reader XI (11.0.08) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated) ANNO 2070 (HKLM-x32\...\{B48E264C-C8CD-4617-B0BE-46E977BAD694}) (Version: 1.0.0.0 - Ubisoft) Apple Application Support (HKLM-x32\...\{78002155-F025-4070-85B3-7C0453561701}) (Version: 3.0.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{6AF2AC2A-3532-43FD-9F4D-BDC9C0D724C7}) (Version: 7.1.2.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ATI Catalyst Install Manager (HKLM\...\{62140B07-129A-2BD0-81D2-2A1A7408ADC8}) (Version: 3.0.762.0 - ATI Technologies, Inc.) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) Avira (HKLM-x32\...\{e67154a7-9cc5-4167-b782-f3982bc6c70d}) (Version: 1.1.19.30000 - Avira Operations GmbH & Co. KG) Avira (x32 Version: 1.1.19.30000 - Avira Operations GmbH & Co. KG) Hidden Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.6.570 - Avira) Batman: Arkham City GOTY (HKLM-x32\...\Steam App 200260) (Version: - Rocksteady Studios) Batman™: Arkham Origins (HKLM-x32\...\Steam App 209000) (Version: - WB Games Montreal) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) BestPractice (remove only) (HKLM-x32\...\BestPractice) (Version: - ) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) Brother MFL-Pro Suite DCP-J315W (HKLM-x32\...\{FB83EAC4-E3F6-4666-B45B-44522F2344B6}) (Version: 1.0.3.0 - Brother Industries, Ltd.) Browser Configuration Utility (HKLM-x32\...\{BA88EE67-8974-459D-A1DB-C8281D9AC6F6}) (Version: 1.0.12.1 - DeviceVM, Inc.) <==== ATTENTION CCleaner (HKLM\...\CCleaner) (Version: 4.17 - Piriform) CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.4.5000 - CDBurnerXP) CHIP Updater (HKLM-x32\...\CHIP Updater_is1) (Version: 2.31 - Abelssoft) CrystalDiskMark 3.0.3b (HKLM\...\CrystalDiskMark_is1) (Version: 3.0.3b - Crystal Dew World) CyberGhost 5 (HKLM\...\CyberGhost 5_is1) (Version: - CyberGhost S.R.L.) Driver Booster (HKLM-x32\...\Driver Booster_is1) (Version: 1.5 - IObit) Dropbox (HKCU\...\Dropbox) (Version: 2.10.27 - Dropbox, Inc.) EaseUS Partition Master 10.1 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS) Fable III (HKLM-x32\...\Steam App 105400) (Version: - Lionhead Studios) Finale NotePad 2012 (HKLM-x32\...\Finale NotePad 2012) (Version: 2012..r1.1 - MakeMusic) Firebird SQL Server - MAGIX Edition (HKLM-x32\...\Firebird SQL Server D) (Version: 2.0.1.13 - MAGIX AG) Free Studio version 2014 (HKLM-x32\...\Free Studio_is1) (Version: 6.3.4.530 - DVDVideoSoft Ltd.) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.120 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve) HJC PS3 ISP V22 (HKLM-x32\...\HJC PS3 ISP V22) (Version: - Alan) iTunes (HKLM\...\{77DE5105-D05E-448C-96CB-7FA381903753}) (Version: 11.3.1.2 - Apple Inc.) Java 7 Update 65 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417065FF}) (Version: 7.0.650 - Oracle) Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217065FF}) (Version: 7.0.650 - Oracle) Java 8 Update 11 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418011FF}) (Version: 8.0.110 - Oracle Corporation) Java Auto Updater (x32 Version: 2.8.11.12 - Oracle, Inc.) Hidden Java SE Development Kit 8 Update 11 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180110}) (Version: 8.0.110 - Oracle Corporation) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) KeePass Password Safe 2.27 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.27 - Dominik Reichl) Kerbal Space Program (HKLM-x32\...\Steam App 220200) (Version: - Squad) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) LIMBO (HKLM-x32\...\Steam App 48000) (Version: - Playdead) Magicka (HKLM-x32\...\Steam App 42910) (Version: - Arrowhead Game Studios) MAGIX Music Maker 15 Premium Download-Version 15.0.1.5 (D) (HKLM-x32\...\MAGIX Music Maker 15 Premium Download-Version D) (Version: 15.0.1.5 - MAGIX AG) MAGIX Screenshare 4.3.6.1987 (D) (HKLM-x32\...\MAGIX Screenshare D) (Version: 4.3.6.1987 - MAGIX AG) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.3.1171.0714 - Microsoft Corporation) Microsoft OneNote 2013 - de-de (HKLM\...\OneNoteFreeRetail - de-de) (Version: 15.0.4641.1003 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Motorola Device Manager (HKLM-x32\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.4.5 - Motorola Mobility) Motorola Device Software Update (x32 Version: 13.09.3001 - Motorola Mobility) Hidden Motorola Mobile Drivers Installation 6.3.0 (HKLM\...\{759E6A2F-1F01-45EF-A0C4-22F1B56CB975}) (Version: 6.3.0 - Motorola Mobility LLC) Mozilla Firefox 31.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 de)) (Version: 31.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.0 - Mozilla) MSI Afterburner 3.0.1 (HKLM-x32\...\Afterburner) (Version: 3.0.1 - MSI Co., LTD) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Need for Speed™ Most Wanted (HKLM-x32\...\{A48B9CD8-C2BA-4EC9-0081-7260D238C7CF}) (Version: - ) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.4 - Notepad++ Team) NVIDIA Install Application (Version: 2.1002.151.1091 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.10.0514 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.10.0514 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.10.0514 - NVIDIA Corporation) NVIDIA Systemsteuerung 337.88 (Version: 337.88 - NVIDIA Corporation) Hidden Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4641.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4641.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4641.1003 - Microsoft Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.) PDF24 Creator 6.7.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.3 - pdfforge) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) Rainmeter (HKLM-x32\...\Rainmeter) (Version: 3.1 r2290 - ) Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.23.623.2010 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.4.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.4.0 - Renesas Electronics Corporation) Hidden Secunia PSI (3.0.0.9016) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.9016 - Secunia) Skype™ 6.18 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.) SPEEDLINK TORID (HKLM-x32\...\SPEEDLINK TORID) (Version: - ) Spotify (HKCU\...\Spotify) (Version: 0.9.11.27.g2b1a638c - Spotify AB) StarCraft II (HKLM-x32\...\StarCraft II) (Version: 1.0.0.15405 - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) Text-To-Speech-Runtime (HKLM-x32\...\{7B3F0113-E63C-4D6D-AF19-111A3165CCA2}) (Version: 1.0.0.0 - Magix Development GmbH) The Binding of Isaac (HKLM-x32\...\Steam App 113200) (Version: - Edmund McMillen and Florian Himsl) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) Tom Clancy's Rainbow Six: Vegas 2 (HKLM-x32\...\Steam App 15120) (Version: - Ubisoft Montreal) Uplay (HKLM-x32\...\Uplay) (Version: 4.5 - Ubisoft) USB Game Controller (HKLM-x32\...\USB Game Controller) (Version: - ) VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) Vtune 7.13 (HKLM-x32\...\MySSID_is1) (Version: - ) WATCH_DOGS (HKLM-x32\...\Uplay Install 274) (Version: - Ubisoft) Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation) WinSCP 5.5.5 (HKLM-x32\...\winscp3_is1) (Version: 5.5.5 - Martin Prikryl) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Linus\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Linus\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Linus\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Linus\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Linus\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2113089819-2585871665-813888595-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 31-08-2014 17:31:28 Geplanter Prüfpunkt 04-09-2014 15:50:26 Gerätetreiber-Paketinstallation: TAP-Windows Provider V9 Netzwerkadapter 13-09-2014 17:38:34 Windows Update 14-09-2014 17:57:08 Microsoft Visual C++ 2005 Redistributable wird installiert 14-09-2014 17:58:34 Microsoft Visual C++ 2005 Redistributable wird installiert 14-09-2014 18:00:54 DirectX wurde installiert ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0C9A639F-5806-4535-8F79-7F50E5765F23} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-08-21] (Piriform Ltd) Task: {1D8376DE-0209-4BC8-A3DD-29E98F35C7FF} - System32\Tasks\Driver Booster Scan => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2014-08-01] (IObit) Task: {2352BEAB-0A3A-43AD-9E56-5569EEEFCB99} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-08-01] (Microsoft Corporation) Task: {2562F284-9094-46D0-8A50-5140BCACA19C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-05] (Google Inc.) Task: {2FEE1C91-9FEA-4428-AFA1-431EE7BF0FFD} - System32\Tasks\Motorola Device Manager Engine => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] () Task: {35EAD9F4-5210-40F4-9841-62AA4F9E2707} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] () Task: {39CE1272-D4D2-4CF8-BAC6-AB6A4AD0C505} - System32\Tasks\Abelssoft\Updater scan => C:\Program Files (x86)\CHIP Updater\CHIPUpdater.exe [2014-09-02] (CHIP) Task: {3C89571D-2336-47C3-92D4-91BBC1167556} - System32\Tasks\Microsoft Office 15 Sync Maintenance for Linus-PC-Linus Linus-PC => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-08-25] (Microsoft Corporation) Task: {3F2F4E0C-532B-4728-AF48-E13BC2179FA6} - System32\Tasks\ASUS\ASUS RegRun Loader => C:\Program Files (x86)\ASUS\AASP\1.01.02\AsLoader.exe [2009-12-28] (ASUSTeK Computer Inc.) Task: {45FC701F-941B-45EF-BC58-20AFB3B78593} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-05] (Google Inc.) Task: {55700FAA-CE50-41E0-97A4-575CDBA76FDD} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {7F2B5711-2FCA-4A09-9108-B1B2AA573EE7} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2014-08-01] (IObit) Task: {89F24E9D-F7E2-40A4-832D-D12DBBFC51DA} - System32\Tasks\Driver Booster SkipUAC (Linus) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2014-08-06] (IObit) Task: {E33B1B7A-EAC8-41A2-96B4-3AD4CA1419B1} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] () Task: {F999158C-A763-40A9-B7D2-0A3550F28325} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-10] (Adobe Systems Incorporated) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-08-28 14:25 - 2014-05-20 03:25 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-05-12 11:49 - 2014-05-12 11:49 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2014-08-25 15:29 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-06-05 16:09 - 2010-09-02 10:59 - 02158592 _____ () C:\Program Files (x86)\Vtune\TBPANEL.exe 2014-05-25 16:18 - 2014-05-25 16:18 - 00036536 _____ () C:\Program Files\Rainmeter\Rainmeter.exe 2014-05-25 16:18 - 2014-05-25 16:18 - 00747192 _____ () C:\Program Files\Rainmeter\Rainmeter.dll 2014-09-13 14:22 - 2014-09-04 04:09 - 10329928 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\pdf.dll 2014-09-13 14:22 - 2014-09-04 04:09 - 00405320 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ppGoogleNaClPluginChrome.dll 2014-09-13 14:22 - 2014-09-04 04:09 - 01831752 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ffmpegsumo.dll 2014-08-23 19:23 - 2014-08-23 19:23 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-06-05 18:54 - 2005-04-22 06:36 - 00143360 ____R () C:\Windows\system32\BrSNMP64.dll 2014-09-13 14:22 - 2014-09-04 04:09 - 01442120 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libglesv2.dll 2014-09-13 14:22 - 2014-09-04 04:09 - 00168264 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libegl.dll 2014-09-16 00:26 - 2014-09-16 00:26 - 00050477 _____ () C:\Users\Linus\Downloads\ANtivirus\Defogger.exe 2014-04-23 16:05 - 2014-04-23 16:05 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-04-23 16:04 - 2014-04-23 16:04 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-06-05 16:09 - 1998-10-31 04:55 - 00005120 _____ () C:\Program Files (x86)\Vtune\TBManage.dll 2009-07-31 21:39 - 2009-07-31 21:39 - 00503202 _____ () C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\sqlite3.dll 2014-09-15 16:22 - 2014-09-15 16:22 - 00043008 _____ () c:\users\linus\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpjhspc4.dll 2013-08-23 21:01 - 2013-08-23 21:01 - 25100288 _____ () C:\Users\Linus\AppData\Roaming\Dropbox\bin\libcef.dll 2014-08-14 18:27 - 2014-08-04 14:20 - 00052472 _____ () C:\Users\Linus\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll 2014-06-05 18:53 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2014-08-04 14:20 - 2014-08-04 14:20 - 00139056 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.NativeCore.dll 2014-08-04 14:20 - 2014-08-04 14:20 - 00067832 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.AvConnectorNative.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^Users^Linus^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^An OneNote senden.lnk => C:\Windows\pss\An OneNote senden.lnk.Startup MSCONFIG\startupreg: CyberGhost => "C:\Program Files\CyberGhost 5\CyberGhost.EXE" /autostart MSCONFIG\startupreg: EaseUS EPM tray => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.1\bin\EpmNews.exe MSCONFIG\startupreg: GoogleChromeAutoLaunch_546B100DB4BA6F8638678E5732DDC41D => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window MSCONFIG\startupreg: KeePass 2 PreLoad => "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload MSCONFIG\startupreg: PDFPrint => C:\Program Files (x86)\PDF24\pdf24.exe MSCONFIG\startupreg: SkyDrive => "C:\Users\Linus\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" /background MSCONFIG\startupreg: Spotify => "C:\Users\Linus\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Linus\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" MSCONFIG\startupreg: VirtualCloneDrive => "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s ==================== Faulty Device Manager Devices ============= Name: HJC 6573F USB ISP Port 32&64 bit Description: HJC 6573F USB ISP Port 32&64 bit Class Guid: {36fc9e60-c465-11cf-8056-444553540000} Manufacturer: Weltrend using WinUsb !!! Service: WinUSB Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: Teredo Tunneling Pseudo-Interface Description: Microsoft-Teredo-Tunneling-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (09/16/2014 00:55:57 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Avira.OE.Systray.exe, Version 1.1.19.30000 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: b48 Startzeit: 01cfd0f03d59f09e Endzeit: 71 Anwendungspfad: C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe Berichts-ID: 714dfcb8-3d2b-11e4-bedc-adc222afc30a Error: (09/15/2014 07:48:10 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 8003 Error: (09/15/2014 07:48:10 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 8003 Error: (09/15/2014 07:48:10 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (09/15/2014 07:48:09 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 7005 Error: (09/15/2014 07:48:09 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 7005 Error: (09/15/2014 07:48:09 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (09/15/2014 07:48:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 6006 Error: (09/15/2014 07:48:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 6006 Error: (09/15/2014 07:48:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second System errors: ============= Error: (09/15/2014 04:22:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CyberGhost 5 Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (09/15/2014 04:22:54 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst CyberGhost 5 Client Service erreicht. Error: (09/15/2014 04:21:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Motorola Device Manager Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (09/15/2014 04:21:05 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Motorola Device Manager Service erreicht. Error: (09/14/2014 06:27:13 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Error: (09/13/2014 03:27:11 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Error: (09/13/2014 01:51:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Motorola Device Manager Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (09/13/2014 01:51:45 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Motorola Device Manager Service erreicht. Error: (09/11/2014 10:18:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CyberGhost 5 Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (09/11/2014 10:18:46 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst CyberGhost 5 Client Service erreicht. Microsoft Office Sessions: ========================= Error: (09/16/2014 00:55:57 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Avira.OE.Systray.exe1.1.19.30000b4801cfd0f03d59f09e71C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe714dfcb8-3d2b-11e4-bedc-adc222afc30a Error: (09/15/2014 07:48:10 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 8003 Error: (09/15/2014 07:48:10 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 8003 Error: (09/15/2014 07:48:10 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (09/15/2014 07:48:09 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 7005 Error: (09/15/2014 07:48:09 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 7005 Error: (09/15/2014 07:48:09 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (09/15/2014 07:48:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 6006 Error: (09/15/2014 07:48:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 6006 Error: (09/15/2014 07:48:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second ==================== Memory info =========================== Processor: AMD Phenom(tm) II X4 965 Processor Percentage of memory in use: 37% Total physical RAM: 6142.16 MB Available physical RAM: 3832.91 MB Total Pagefile: 12282.49 MB Available Pagefile: 8938.68 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.41 GB) (Free:654.72 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 3DFE6D8E) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Code:
ATTFilter GMER 2.1.19357 - hxxp://www.gmer.net Rootkit scan 2014-09-16 01:24:57 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 SAMSUNG_HD103SJ rev.1AJ10001 931,51GB Running: Gmer-19357.exe; Driver: C:\Users\Linus\AppData\Local\Temp\kgloapog.sys ---- Kernel code sections - GMER 2.1 ---- INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 528 fffff800031eb000 27 bytes [00, B0, 8B, 48, 00, 00, 00, ...] INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 556 fffff800031eb01c 17 bytes [00, 00, 00, 00, 50, 18, 99, ...] ---- User code sections - GMER 2.1 ---- .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2304] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 0000000077391530 16 bytes [50, 48, B8, D0, 34, 21, F6, ...] .text C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe[4908] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75] .text C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe[4908] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75] .text ... * 2 .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[4180] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread 0000000077391380 16 bytes [50, 48, B8, 28, D6, 16, 3F, ...] .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[4180] C:\Windows\SYSTEM32\ntdll.dll!NtOpenThreadToken 00000000773914f0 16 bytes [50, 48, B8, 80, D5, 16, 3F, ...] .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[4180] C:\Windows\SYSTEM32\ntdll.dll!NtOpenProcess 0000000077391510 48 bytes [50, 48, B8, FC, D4, 16, 3F, ...] .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[4180] C:\Windows\SYSTEM32\ntdll.dll!NtUnmapViewOfSection 0000000077391550 16 bytes [50, 48, B8, 4C, D6, 16, 3F, ...] .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[4180] C:\Windows\SYSTEM32\ntdll.dll!NtOpenThreadTokenEx 00000000773915a0 32 bytes [50, 48, B8, A4, D5, 16, 3F, ...] .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[4180] C:\Windows\SYSTEM32\ntdll.dll!NtOpenFile 00000000773915e0 16 bytes [50, 48, B8, 8C, D4, 16, 3F, ...] .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[4180] C:\Windows\SYSTEM32\ntdll.dll!NtQueryAttributesFile 0000000077391680 16 bytes [50, 48, B8, D4, D5, 16, 3F, ...] .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[4180] C:\Windows\SYSTEM32\ntdll.dll!NtCreateFile 0000000077391800 16 bytes [50, 48, B8, 50, D3, 16, 3F, ...] .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[4180] C:\Windows\SYSTEM32\ntdll.dll!NtOpenProcessToken 0000000077392270 16 bytes [50, 48, B8, 20, D5, 16, 3F, ...] .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[4180] C:\Windows\SYSTEM32\ntdll.dll!NtOpenThread 00000000773922c0 16 bytes [50, 48, B8, 5C, D5, 16, 3F, ...] .text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[4180] C:\Windows\SYSTEM32\ntdll.dll!NtQueryFullAttributesFile 0000000077392410 16 bytes [50, 48, B8, E8, D5, 16, 3F, ...] .text C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe[6736] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075231465 2 bytes [23, 75] .text C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe[6736] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000752314bb 2 bytes [23, 75] .text ... * 2 ---- Processes - GMER 2.1 ---- Library C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\sqlite3.dll (*** suspicious ***) @ C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [2344](2009-07-31 19:39:08) 0000000060900000 Library C:\Users\Linus\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll (*** suspicious ***) @ C:\Users\Linus\AppData\Roaming\Dropbox\bin\Dropbox.exe [2384](2014-07-30 00:20:20) 0000000003bb0000 Library c:\users\linus\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpjhspc4.dll (*** suspicious ***) @ C:\Users\Linus\AppData\Roaming\Dropbox\bin\Dropbox.exe [2384](2014-09-15 14:22:04) 0000000004330000 Library C:\Users\Linus\AppData\Roaming\Dropbox\bin\libcef.dll (*** suspicious ***) @ C:\Users\Linus\AppData\Roaming\Dropbox\bin\Dropbox.exe [2384](2013-08-23 19:01:44) 000000005e8e0000 Library C:\Users\Linus\AppData\Roaming\Dropbox\bin\icudt.dll (*** suspicious ***) @ C:\Users\Linus\AppData\Roaming\Dropbox\bin\Dropbox.exe [2384] (ICU Data DLL/The ICU Project)(2013-08-23 19:01:42) 000000005df50000 ---- EOF - GMER 2.1 ---- |
17.09.2014, 08:12 | #5 |
/// the machine /// TB-Ausbilder | Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe Adware & Co. deinstallieren
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
17.09.2014, 17:09 | #6 |
| Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe hier die logs AdwCleaner[S0].txt: Code:
ATTFilter # AdwCleaner v3.310 - Bericht erstellt am 17/09/2014 um 17:43:57 # Aktualisiert 12/09/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Linus - LINUS-PC # Gestartet von : C:\Users\Linus\Downloads\ANtivirus\AdwCleaner_3.310.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\DeviceVM Ordner Gelöscht : C:\Users\Linus\AppData\Roaming\DeviceVM Ordner Gelöscht : C:\Users\Linus\AppData\Roaming\pdfforge Datei Gelöscht : C:\Users\Linus\AppData\Roaming\Mozilla\Firefox\Profiles\eboozt6x.default\user.js ***** [ Tasks ] ***** Task Gelöscht : Driver Booster Scan Task Gelöscht : Driver Booster Update ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5} ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17280 -\\ Mozilla Firefox v31.0 (x86 de) [ Datei : C:\Users\Linus\AppData\Roaming\Mozilla\Firefox\Profiles\eboozt6x.default\prefs.js ] -\\ Google Chrome v37.0.2062.120 [ Datei : C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht [Search Provider] : hxxp://www.vidohe.com/video-search-results.php?q={searchTerms}&cx=005536796155304041479%3Ahbixpuuu7l8&cof=FORID%3A11&from=os-family Gelöscht [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3324850&octid=EB_ORIGINAL_CTID&ISID=3532a8c0-1200-4967-9213-618b8b237727&SearchSource=62&CUI=&UM=&UP=SPA5ABAD73-C702-4012-B6B4-B9B61D51024E&q={searchTerms}&SSPV= Gelöscht [Search Provider] : hxxp://en.softonic.com/s/{searchTerms} Gelöscht [Search Provider] : hxxp://www.softonic.de/s/{searchTerms} Gelöscht [Startup_urls] : hxxp://www.trovi.com/?gd=&ctid=CT3324850&octid=EB_ORIGINAL_CTID&ISID=3532a8c0-1200-4967-9213-618b8b237727&SearchSource=61&CUI=&UM=&UP=SPA5ABAD73-C702-4012-B6B4-B9B61D51024E&SSPV= ************************* AdwCleaner[R0].txt - [2175 octets] - [17/09/2014 17:37:42] AdwCleaner[R1].txt - [2235 octets] - [17/09/2014 17:40:56] AdwCleaner[S0].txt - [2685 octets] - [17/09/2014 17:43:57] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2745 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.5 (09.16.2014:1) OS: Windows 7 Home Premium x64 Ran by Linus on 17.09.2014 at 17:55:08,97 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-2113089819-2585871665-813888595-1000\Software\Microsoft\Internet Explorer\Main\\Start Page ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 17.09.2014 at 17:59:57,09 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-09-2014 Ran by Linus (administrator) on LINUS-PC on 17-09-2014 18:04:19 Running from C:\Users\Linus\Downloads\ANtivirus Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\MDM.EXE (Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Windows\SysWOW64\PnkBstrB.exe (Motorola) C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE () C:\Program Files (x86)\Vtune\TBPANEL.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe (Dropbox, Inc.) C:\Users\Linus\AppData\Roaming\Dropbox\bin\Dropbox.exe () C:\Program Files\Rainmeter\Rainmeter.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\MSOSYNC.EXE (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-08-28] (Realtek Semiconductor) HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-04-27] (Renesas Electronics Corporation) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [751184 2014-08-14] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2014-05-08] (Adobe Systems Incorporated) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.) HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2621440 2010-02-09] (Brother Industries, Ltd.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-08-01] (Apple Inc.) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [164656 2014-08-27] (Avira Operations GmbH & Co. KG) HKU\S-1-5-21-2113089819-2585871665-813888595-1000\...\Run: [TBPanel] => C:\Program Files (x86)\Vtune\TBPanel.exe [2158592 2010-09-02] () HKU\S-1-5-21-2113089819-2585871665-813888595-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21650016 2014-07-24] (Skype Technologies S.A.) HKU\S-1-5-21-2113089819-2585871665-813888595-1000\...\Run: [GoogleChromeAutoLaunch_546B100DB4BA6F8638678E5732DDC41D] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [912200 2014-09-04] (Google Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe () ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> c:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> c:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Linus\AppData\Roaming\Mozilla\Firefox\Profiles\eboozt6x.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @java.com/DTPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found] Chrome: ======= CHR HomePage: Default -> hxxp://google.com/ CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3324850&octid=EB_ORIGINAL_CTID&ISID=3532a8c0-1200-4967-9213-618b8b237727&SearchSource=61&CUI=&UM=&UP=SPA5ABAD73-C702-4012-B6B4-B9B61D51024E&SSPV=" CHR DefaultSearchKeyword: Default -> 51890E9138812C8A10218F3501D5F4263CA0037A6205EC02A6A43315556B1F4E CHR DefaultSearchURL: Default -> D8D2E92557780D50B7111CE6C16164548C3BBA972FF9DB593998EE137806180D CHR Profile: C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-05] CHR Extension: (Google Drive) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-05] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-14] CHR Extension: (Web Developer) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbameneiokkgbdmiekhjnmfkcnldhhm [2014-06-05] CHR Extension: (Turn Off the Lights) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn [2014-06-05] CHR Extension: (YouTube) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-05] CHR Extension: (Facebook) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm [2014-06-05] CHR Extension: (Google-Suche) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-05] CHR Extension: (User-Agent Switcher for Chrome) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg [2014-06-05] CHR Extension: (Reditr Web App - The Best Reddit Client) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejmiceoebcclihjdpnmmkdcmcboekibc [2014-08-20] CHR Extension: (Facebook Disconnect) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpepffjfmamnambagiibghpglaidiec [2014-06-05] CHR Extension: (Facebook™ Chat Privacy) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfpgaanechfneiboempkfjghninbibjn [2014-06-05] CHR Extension: (AdBlock) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-06-05] CHR Extension: (ProxMate) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifalmiidchkjjmkkbkoaibpmoeichmki [2014-08-26] CHR Extension: (Classic Popup Blocker) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\lijicndbkjoplmhnclmoahmcaffaeapp [2014-06-05] CHR Extension: (Google Wallet) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-05] CHR Extension: (Google Docs Viewer für PDF/PowerPoint (von Google)) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnbmlagghjjcbdhgmkedmbmedengocbn [2014-06-05] CHR Extension: (ScriptSafe) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiigbmnaadbkfbmpbfijlflahbdbdgdf [2014-07-24] CHR Extension: (Google Mail) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-05] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-08-14] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-08-14] (Avira Operations GmbH & Co. KG) S2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [160048 2014-08-27] (Avira Operations GmbH & Co. KG) S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.) [File not signed] S2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [64624 2014-06-12] (CyberGhost S.R.L) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2369720 2014-08-01] (Microsoft Corporation) S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed] S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed] R2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2013-11-15] (Motorola Mobility LLC) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-08-23] () R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [189248 2014-08-23] () R2 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [File not signed] R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) R2 Themes; C:\Windows\system32\themeservice.dll [44544 2014-06-05] (Microsoft Corporation) [File not signed] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-04-22] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [117712 2014-07-03] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-05-09] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-05-09] (Avira Operations GmbH & Co. KG) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [17480 2013-03-07] () [File not signed] S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [13896 2013-03-07] () [File not signed] S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9800 2013-03-07] () [File not signed] S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [9160 2013-03-07] () [File not signed] R3 libusb0; C:\Windows\System32\drivers\libusb0.sys [52832 2012-01-17] (hxxp://libusb-win32.sourceforge.net) R3 libusb0; C:\Windows\SysWOW64\drivers\libusb0.sys [52832 2012-01-17] (hxxp://libusb-win32.sourceforge.net) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] () R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-12-06] (Secunia) S3 TBPanel; No ImagePath ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-17 17:59 - 2014-09-17 17:59 - 00001352 _____ () C:\Users\Linus\Desktop\JRT.txt 2014-09-17 17:55 - 2014-09-17 17:55 - 00000000 ____D () C:\Windows\ERUNT 2014-09-17 17:39 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-09-17 17:37 - 2014-09-17 17:44 - 00000000 ____D () C:\AdwCleaner 2014-09-17 17:31 - 2014-09-17 17:31 - 00001264 _____ () C:\Users\Linus\Desktop\Revo Uninstaller.lnk 2014-09-17 17:31 - 2014-09-17 17:31 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-09-16 00:53 - 2014-09-17 18:04 - 00000000 ____D () C:\FRST 2014-09-16 00:52 - 2014-09-16 00:52 - 00000000 _____ () C:\Users\Linus\defogger_reenable 2014-09-16 00:26 - 2014-09-17 18:04 - 00000000 ____D () C:\Users\Linus\Downloads\ANtivirus 2014-09-16 00:16 - 2014-09-16 00:16 - 00138817 _____ () C:\Users\Linus\Downloads\hashmyfiles_v2.03.zip 2014-09-16 00:15 - 2014-09-16 00:15 - 04476486 _____ () C:\Users\Linus\Downloads\SL-6576-BK_Driver_V1.0.zip 2014-09-13 19:50 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-13 19:50 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-09-13 19:50 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-13 19:50 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-13 19:50 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-13 19:50 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-09-13 19:50 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-13 19:50 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-13 19:50 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-13 19:50 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-13 19:50 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-13 19:50 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-13 19:50 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-09-13 19:50 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-13 19:50 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-13 19:50 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-13 19:50 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-13 19:50 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-13 19:50 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-13 19:50 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-09-13 19:50 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-13 19:50 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-13 19:50 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-09-13 19:50 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-13 19:50 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-09-13 19:50 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-09-13 19:50 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-09-13 19:50 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-09-13 19:50 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-13 19:50 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-13 19:50 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-09-13 19:50 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-09-13 19:50 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-13 19:50 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-09-13 19:50 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-09-13 19:50 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-09-13 19:50 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-09-13 19:50 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-13 19:50 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-13 19:50 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-13 19:50 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-13 19:50 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-13 19:50 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-09-13 19:50 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-09-13 19:50 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-09-13 19:50 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-13 19:50 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-09-13 19:50 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-13 19:50 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-09-13 19:50 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-09-13 19:50 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-09-13 19:50 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-13 19:50 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-09-13 19:50 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-09-13 19:50 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-13 19:50 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-09-13 19:39 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-13 19:39 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-09-13 14:04 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-13 14:04 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-09-13 14:03 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-13 14:03 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-13 14:03 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-13 14:03 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-13 14:03 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-09-13 14:03 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-09-13 14:03 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-09-13 14:02 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-13 14:02 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-09-10 20:37 - 2014-09-17 17:29 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-10 20:37 - 2014-09-10 20:37 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-10 20:37 - 2014-09-10 20:37 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-10 20:37 - 2014-09-10 20:37 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-10 20:35 - 2014-09-10 20:35 - 10036224 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-09-09 17:43 - 2014-09-09 17:43 - 00002082 _____ () C:\Users\Linus\AppData\Local\recently-used.xbel 2014-09-09 17:14 - 2014-09-09 17:14 - 00000000 ____D () C:\Users\Linus\AppData\Local\Adobe 2014-09-04 17:51 - 2014-09-04 17:52 - 00000000 ____D () C:\Users\Linus\AppData\Local\CyberGhost 2014-09-04 17:50 - 2014-09-04 17:51 - 00000000 ____D () C:\Program Files\TAP-Windows 2014-09-04 17:50 - 2014-09-04 17:51 - 00000000 ____D () C:\Program Files\CyberGhost 5 2014-09-04 17:50 - 2014-09-04 17:50 - 00001728 _____ () C:\Users\Linus\Desktop\CyberGhost 5.lnk 2014-09-04 17:50 - 2014-09-04 17:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 5 2014-08-28 14:27 - 2014-08-28 14:27 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-08-28 14:26 - 2014-08-28 14:26 - 60636160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 28343384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 14863448 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 12894808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 06218072 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 05751048 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-08-28 14:26 - 2014-08-28 14:26 - 03959384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02117424 _____ () C:\Windows\system32\SStudio.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-08-28 14:26 - 2014-08-28 14:26 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01934424 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01317976 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01168472 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01136728 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01099203 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-08-28 14:26 - 2014-08-28 14:26 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00956504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00942384 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00900696 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00889592 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00724728 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00291488 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00246008 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00033592 _____ () C:\Windows\system32\audioLibVc.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-08-28 14:25 - 2014-08-28 14:25 - 00941272 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-08-28 14:25 - 2014-08-28 14:25 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-08-28 14:25 - 2014-05-15 01:49 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin 2014-08-28 14:23 - 2014-08-28 14:23 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00181760 _____ (Renesas Electronics Corporation) C:\Windows\system32\Drivers\nusb3xhc.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-08-28 14:22 - 2014-08-28 14:22 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-08-28 14:12 - 2014-08-28 14:12 - 00002854 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (Linus) 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Program Files (x86)\IObit 2014-08-28 13:23 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-28 13:23 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-28 13:23 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-27 16:33 - 2014-07-21 00:56 - 00321448 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-08-27 16:33 - 2014-07-21 00:56 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-08-27 16:33 - 2014-07-21 00:56 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-08-27 16:31 - 2014-08-27 16:31 - 00000000 ____D () C:\Program Files (x86)\Java 2014-08-27 16:29 - 2014-09-16 00:21 - 00000000 ____D () C:\Users\Linus\Downloads\System 2014-08-27 15:22 - 2014-08-27 15:22 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-08-27 15:17 - 2014-08-27 15:17 - 00001899 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk 2014-08-27 15:17 - 2014-08-27 15:17 - 00000000 ____D () C:\Program Files (x86)\CDBurnerXP 2014-08-27 15:12 - 2014-08-27 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2014-08-27 15:08 - 2014-08-27 15:08 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-08-27 15:05 - 2014-09-13 19:47 - 00000000 ____D () C:\Windows\system32\MRT 2014-08-27 15:05 - 2014-09-13 19:40 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-08-27 14:54 - 2014-08-27 16:33 - 00011110 _____ () C:\Windows\SecuniaPackage.log 2014-08-27 14:44 - 2014-08-27 14:44 - 00001069 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-08-27 14:42 - 2014-08-27 14:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 10.1 2014-08-27 14:42 - 2014-04-04 00:42 - 03382440 _____ () C:\Windows\system32\BootMan.exe 2014-08-27 14:42 - 2014-04-04 00:25 - 02499752 _____ () C:\Windows\SysWOW64\BootMan.exe 2014-08-27 14:42 - 2013-03-07 09:49 - 00100936 _____ () C:\Windows\system32\setupempdrvx64.exe 2014-08-27 14:42 - 2013-03-07 09:49 - 00087112 _____ () C:\Windows\SysWOW64\setupempdrv03.exe 2014-08-27 14:42 - 2013-03-07 09:49 - 00019840 _____ () C:\Windows\SysWOW64\EuEpmGdi.dll 2014-08-27 14:42 - 2013-03-07 09:49 - 00017480 _____ () C:\Windows\system32\epmntdrv.sys 2014-08-27 14:42 - 2013-03-07 09:49 - 00016256 _____ () C:\Windows\system32\EuEpmGdi.dll 2014-08-27 14:42 - 2013-03-07 09:49 - 00013896 _____ () C:\Windows\SysWOW64\epmntdrv.sys 2014-08-27 14:42 - 2013-03-07 09:49 - 00009800 _____ () C:\Windows\system32\EuGdiDrv.sys 2014-08-27 14:42 - 2013-03-07 09:49 - 00009160 _____ () C:\Windows\SysWOW64\EuGdiDrv.sys 2014-08-27 14:40 - 2012-12-21 17:16 - 00274088 _____ (EaseUS) C:\epm0.exe 2014-08-27 14:35 - 2014-08-27 14:35 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Users\Linus\AppData\Local\Secunia PSI 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Program Files (x86)\Secunia 2014-08-27 14:29 - 2014-09-10 22:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CHIP Updater 2014-08-27 14:16 - 2014-09-13 14:22 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Mozilla 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Local\Mozilla 2014-08-27 13:15 - 2014-08-27 14:03 - 1870599068 _____ () C:\Users\Linus\Downloads\Stalker_Lost_Alpha_1.300.zip.part 2014-08-27 13:08 - 2014-08-27 13:08 - 00002082 _____ () C:\Users\Linus\Desktop\JDownloader 2.lnk 2014-08-27 13:08 - 2014-08-27 13:08 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader 2014-08-27 13:01 - 2014-08-27 13:11 - 00000000 ____D () C:\Users\Linus\AppData\Local\JDownloader v2.0 2014-08-27 12:39 - 2014-08-27 12:39 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Lionhead Studios 2014-08-27 12:37 - 2014-08-27 12:37 - 00001338 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Windows\SysWOW64\xlive 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2014-08-27 12:11 - 2014-08-27 12:16 - 00000000 ____D () C:\Users\Linus\Documents\NFS Most Wanted 2014-08-26 13:14 - 2014-09-17 17:50 - 00008654 _____ () C:\Windows\PFRO.log 2014-08-25 16:08 - 2014-09-17 17:53 - 00005136 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Linus-PC-Linus Linus-PC 2014-08-25 16:04 - 2014-08-25 16:04 - 00000000 ____D () C:\Users\Linus\AppData\Local\Microsoft Help 2014-08-25 15:47 - 2014-08-25 15:47 - 00000000 ____D () C:\Users\Linus\Documents\OneNote-Notizbücher 2014-08-25 15:44 - 2014-08-28 01:35 - 00000000 ___RD () C:\Users\Linus\OneDrive 2014-08-25 15:44 - 2014-08-25 16:06 - 00002194 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive 2014-08-25 15:35 - 2014-08-25 15:35 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-08-25 15:34 - 2014-08-25 15:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-08-25 15:29 - 2014-08-25 15:30 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-08-25 15:28 - 2014-08-25 16:04 - 00889632 _____ () C:\Users\Linus\Downloads\Using OneNote in (my) College Courses.one 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-08-23 19:23 - 2014-08-23 19:23 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-08-23 19:22 - 2014-08-23 19:22 - 00017513 _____ () C:\Windows\DirectX.log 2014-08-22 19:39 - 2014-08-22 19:39 - 00001310 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Origin.lnk 2014-08-22 16:49 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-08-22 16:49 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2014-08-22 16:49 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-08-22 16:49 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-08-22 16:49 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-08-22 16:49 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-08-22 16:49 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2014-08-22 16:49 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-08-22 16:49 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2014-08-19 18:36 - 2014-08-19 18:36 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-08-19 18:36 - 2014-08-19 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files\iTunes 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files\iPod 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-08-19 11:45 - 2014-08-19 11:45 - 00000000 ____D () C:\Users\Linus\Documents\Anträge 2014-08-18 17:16 - 2014-09-17 17:50 - 00002419 _____ () C:\Windows\setupact.log 2014-08-18 17:16 - 2014-08-18 17:16 - 00000000 _____ () C:\Windows\setuperr.log ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-17 18:04 - 2014-09-16 00:53 - 00000000 ____D () C:\FRST 2014-09-17 18:04 - 2014-09-16 00:26 - 00000000 ____D () C:\Users\Linus\Downloads\ANtivirus 2014-09-17 18:02 - 2014-06-05 19:24 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Skype 2014-09-17 17:59 - 2014-09-17 17:59 - 00001352 _____ () C:\Users\Linus\Desktop\JRT.txt 2014-09-17 17:59 - 2009-07-14 06:45 - 00028720 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-17 17:59 - 2009-07-14 06:45 - 00028720 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-17 17:55 - 2014-09-17 17:55 - 00000000 ____D () C:\Windows\ERUNT 2014-09-17 17:53 - 2014-08-25 16:08 - 00005136 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Linus-PC-Linus Linus-PC 2014-09-17 17:52 - 2014-06-14 23:50 - 00000000 ___RD () C:\Users\Linus\Dropbox 2014-09-17 17:52 - 2014-06-05 18:17 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Dropbox 2014-09-17 17:51 - 2014-07-06 15:11 - 00000000 ____D () C:\Users\Linus\Documents\Scanner 2014-09-17 17:50 - 2014-08-26 13:14 - 00008654 _____ () C:\Windows\PFRO.log 2014-09-17 17:50 - 2014-08-18 17:16 - 00002419 _____ () C:\Windows\setupact.log 2014-09-17 17:50 - 2014-06-05 19:14 - 00000000 ____D () C:\Temp 2014-09-17 17:50 - 2014-06-05 17:55 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-09-17 17:50 - 2014-06-05 15:53 - 01212159 _____ () C:\Windows\WindowsUpdate.log 2014-09-17 17:50 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-17 17:44 - 2014-09-17 17:37 - 00000000 ____D () C:\AdwCleaner 2014-09-17 17:31 - 2014-09-17 17:31 - 00001264 _____ () C:\Users\Linus\Desktop\Revo Uninstaller.lnk 2014-09-17 17:31 - 2014-09-17 17:31 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-09-17 17:30 - 2014-06-05 19:16 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-09-17 17:30 - 2014-06-05 17:55 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-09-17 17:29 - 2014-09-10 20:37 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-16 01:34 - 2014-08-14 18:27 - 00001137 _____ () C:\Users\Public\Desktop\Avira.lnk 2014-09-16 01:34 - 2014-08-14 18:27 - 00000000 ____D () C:\ProgramData\Package Cache 2014-09-16 01:34 - 2014-06-05 16:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-09-16 01:34 - 2014-06-05 16:30 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-09-16 00:52 - 2014-09-16 00:52 - 00000000 _____ () C:\Users\Linus\defogger_reenable 2014-09-16 00:52 - 2014-06-05 15:56 - 00000000 ____D () C:\Users\Linus 2014-09-16 00:21 - 2014-08-27 16:29 - 00000000 ____D () C:\Users\Linus\Downloads\System 2014-09-16 00:18 - 2014-07-01 11:36 - 00000000 ____D () C:\Program Files (x86)\HJC PS3 ISP V22 2014-09-16 00:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\TAPI 2014-09-16 00:16 - 2014-09-16 00:16 - 00138817 _____ () C:\Users\Linus\Downloads\hashmyfiles_v2.03.zip 2014-09-16 00:15 - 2014-09-16 00:15 - 04476486 _____ () C:\Users\Linus\Downloads\SL-6576-BK_Driver_V1.0.zip 2014-09-15 23:27 - 2014-06-05 20:24 - 00000000 ____D () C:\Users\Linus\Documents\Uni 2014-09-14 20:03 - 2014-06-05 19:03 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-09-13 19:48 - 2014-06-06 16:31 - 01591896 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-09-13 19:48 - 2011-04-12 09:43 - 00698688 _____ () C:\Windows\system32\perfh007.dat 2014-09-13 19:48 - 2011-04-12 09:43 - 00148828 _____ () C:\Windows\system32\perfc007.dat 2014-09-13 19:48 - 2009-07-14 07:13 - 01591896 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-13 19:47 - 2014-08-27 15:05 - 00000000 ____D () C:\Windows\system32\MRT 2014-09-13 19:40 - 2014-08-27 15:05 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-09-13 19:39 - 2014-06-09 19:55 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-13 14:22 - 2014-08-27 14:16 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-09-10 22:54 - 2014-08-17 13:53 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft 2014-09-10 22:52 - 2014-08-27 14:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CHIP Updater 2014-09-10 22:52 - 2014-08-17 13:52 - 00000000 ____D () C:\Program Files (x86)\CHIP Updater 2014-09-10 20:37 - 2014-09-10 20:37 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-10 20:37 - 2014-09-10 20:37 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-10 20:37 - 2014-09-10 20:37 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-10 20:35 - 2014-09-10 20:35 - 10036224 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-09-09 17:46 - 2014-06-11 23:07 - 00000000 ____D () C:\Users\Linus\.gimp-2.8 2014-09-09 17:44 - 2014-06-11 23:10 - 00000000 ____D () C:\Users\Linus\AppData\Local\gtk-2.0 2014-09-09 17:43 - 2014-09-09 17:43 - 00002082 _____ () C:\Users\Linus\AppData\Local\recently-used.xbel 2014-09-09 17:14 - 2014-09-09 17:14 - 00000000 ____D () C:\Users\Linus\AppData\Local\Adobe 2014-09-05 04:10 - 2014-09-13 14:03 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-05 04:05 - 2014-09-13 14:03 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-04 17:52 - 2014-09-04 17:51 - 00000000 ____D () C:\Users\Linus\AppData\Local\CyberGhost 2014-09-04 17:52 - 2014-06-05 15:56 - 00000000 ____D () C:\Users\Linus\AppData\Local\VirtualStore 2014-09-04 17:51 - 2014-09-04 17:50 - 00000000 ____D () C:\Program Files\TAP-Windows 2014-09-04 17:51 - 2014-09-04 17:50 - 00000000 ____D () C:\Program Files\CyberGhost 5 2014-09-04 17:50 - 2014-09-04 17:50 - 00001728 _____ () C:\Users\Linus\Desktop\CyberGhost 5.lnk 2014-09-04 17:50 - 2014-09-04 17:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 5 2014-09-04 17:49 - 2014-06-05 18:11 - 00000000 ____D () C:\Users\Linus\Downloads\Setups 2014-08-29 14:38 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-08-29 12:25 - 2009-07-14 06:45 - 00488688 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-28 23:44 - 2014-06-05 19:07 - 00000000 ____D () C:\ProgramData\Origin 2014-08-28 14:27 - 2014-08-28 14:27 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-08-28 14:27 - 2014-06-05 16:00 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-08-28 14:26 - 2014-08-28 14:26 - 60636160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 28343384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 14863448 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 12894808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 06218072 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 05751048 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-08-28 14:26 - 2014-08-28 14:26 - 03959384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02117424 _____ () C:\Windows\system32\SStudio.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-08-28 14:26 - 2014-08-28 14:26 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01934424 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01317976 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01168472 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01136728 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01099203 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-08-28 14:26 - 2014-08-28 14:26 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00956504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00942384 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00900696 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00889592 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00724728 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00291488 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00246008 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00033592 _____ () C:\Windows\system32\audioLibVc.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-08-28 14:25 - 2014-08-28 14:25 - 00941272 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-08-28 14:25 - 2014-08-28 14:25 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-08-28 14:25 - 2014-06-05 16:27 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-08-28 14:25 - 2014-06-05 16:01 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-08-28 14:24 - 2014-06-05 16:27 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-08-28 14:24 - 2014-06-05 16:23 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-08-28 14:23 - 2014-08-28 14:23 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00181760 _____ (Renesas Electronics Corporation) C:\Windows\system32\Drivers\nusb3xhc.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-08-28 14:23 - 2014-06-05 16:26 - 00026069 _____ () C:\Windows\system32\nvinfo.pb 2014-08-28 14:23 - 2014-06-05 16:25 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-08-28 14:23 - 2014-06-05 16:25 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-08-28 14:23 - 2014-06-05 16:25 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-08-28 14:23 - 2014-06-05 16:24 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-08-28 14:23 - 2014-06-05 16:24 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-08-28 14:22 - 2014-08-28 14:22 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-08-28 14:12 - 2014-08-28 14:12 - 00002854 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (Linus) 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Program Files (x86)\IObit 2014-08-28 14:02 - 2014-06-05 19:06 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-08-28 14:00 - 2014-06-05 18:21 - 00000894 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2014-08-28 01:35 - 2014-08-25 15:44 - 00000000 ___RD () C:\Users\Linus\OneDrive 2014-08-28 00:50 - 2014-07-27 20:42 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Spotify 2014-08-27 16:45 - 2014-07-27 20:43 - 00000000 ____D () C:\Users\Linus\AppData\Local\Spotify 2014-08-27 16:33 - 2014-08-27 14:54 - 00011110 _____ () C:\Windows\SecuniaPackage.log 2014-08-27 16:31 - 2014-08-27 16:31 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-08-27 16:31 - 2014-08-27 16:31 - 00000000 ____D () C:\Program Files (x86)\Java 2014-08-27 16:30 - 2014-07-21 00:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2014-08-27 15:51 - 2009-07-14 04:34 - 00000601 _____ () C:\Windows\win.ini 2014-08-27 15:48 - 2014-06-05 18:45 - 00002619 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Office-Dokument öffnen.lnk 2014-08-27 15:48 - 2014-06-05 18:45 - 00002615 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Neues Office-Dokument.lnk 2014-08-27 15:48 - 2014-06-05 18:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-08-27 15:44 - 2014-06-05 18:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-08-27 15:40 - 2014-06-05 19:00 - 00000000 ____D () C:\Program Files\CCleaner 2014-08-27 15:38 - 2014-06-05 20:58 - 00000000 ____D () C:\Windows\pss 2014-08-27 15:26 - 2014-06-05 17:55 - 00138840 _____ () C:\Users\Linus\AppData\Local\GDIPFONTCACHEV1.DAT 2014-08-27 15:23 - 2014-06-05 18:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-08-27 15:22 - 2014-08-27 15:22 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-08-27 15:22 - 2014-06-05 18:16 - 00000000 ____D () C:\ProgramData\Skype 2014-08-27 15:17 - 2014-08-27 15:17 - 00001899 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk 2014-08-27 15:17 - 2014-08-27 15:17 - 00000000 ____D () C:\Program Files (x86)\CDBurnerXP 2014-08-27 15:13 - 2014-06-05 18:14 - 00001075 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk 2014-08-27 15:13 - 2014-06-05 18:14 - 00000000 ____D () C:\Program Files (x86)\WinSCP 2014-08-27 15:12 - 2014-08-27 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2014-08-27 15:08 - 2014-08-27 15:08 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-08-27 15:08 - 2014-06-05 18:12 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-08-27 15:08 - 2014-06-05 18:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-08-27 15:05 - 2014-06-05 18:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works 2014-08-27 14:44 - 2014-08-27 14:44 - 00001069 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-08-27 14:42 - 2014-08-27 14:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 10.1 2014-08-27 14:41 - 2014-06-05 19:12 - 00000000 ____D () C:\Program Files (x86)\EaseUS 2014-08-27 14:35 - 2014-08-27 14:35 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-08-27 14:33 - 2014-06-05 20:28 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\KeePass 2014-08-27 14:33 - 2014-06-05 18:25 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk 2014-08-27 14:33 - 2014-06-05 18:25 - 00000000 ____D () C:\Program Files (x86)\KeePass Password Safe 2 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Users\Linus\AppData\Local\Secunia PSI 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Program Files (x86)\Secunia 2014-08-27 14:25 - 2014-06-05 19:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-08-27 14:03 - 2014-08-27 13:15 - 1870599068 _____ () C:\Users\Linus\Downloads\Stalker_Lost_Alpha_1.300.zip.part 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Mozilla 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Local\Mozilla 2014-08-27 13:11 - 2014-08-27 13:01 - 00000000 ____D () C:\Users\Linus\AppData\Local\JDownloader v2.0 2014-08-27 13:08 - 2014-08-27 13:08 - 00002082 _____ () C:\Users\Linus\Desktop\JDownloader 2.lnk 2014-08-27 13:08 - 2014-08-27 13:08 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader 2014-08-27 12:47 - 2014-07-25 13:55 - 00000000 ____D () C:\Users\Linus\Downloads\Spiele 2014-08-27 12:39 - 2014-08-27 12:39 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Lionhead Studios 2014-08-27 12:37 - 2014-08-27 12:37 - 00001338 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Windows\SysWOW64\xlive 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2014-08-27 12:37 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-08-27 12:37 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-08-27 12:33 - 2014-06-05 21:50 - 00000000 ____D () C:\Users\Linus\Documents\My Games 2014-08-27 12:16 - 2014-08-27 12:11 - 00000000 ____D () C:\Users\Linus\Documents\NFS Most Wanted 2014-08-26 14:26 - 2014-06-05 19:38 - 00000000 ____D () C:\Users\Linus\Downloads\Archive 2014-08-25 16:06 - 2014-08-25 15:44 - 00002194 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 16:04 - 2014-08-25 16:04 - 00000000 ____D () C:\Users\Linus\AppData\Local\Microsoft Help 2014-08-25 16:04 - 2014-08-25 15:28 - 00889632 _____ () C:\Users\Linus\Downloads\Using OneNote in (my) College Courses.one 2014-08-25 15:47 - 2014-08-25 15:47 - 00000000 ____D () C:\Users\Linus\Documents\OneNote-Notizbücher 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive 2014-08-25 15:36 - 2014-08-25 15:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-08-25 15:35 - 2014-08-25 15:35 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-08-25 15:30 - 2014-08-25 15:29 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-08-23 19:23 - 2014-08-23 19:23 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-08-23 19:22 - 2014-08-23 19:22 - 00017513 _____ () C:\Windows\DirectX.log 2014-08-23 04:07 - 2014-08-28 13:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-23 03:45 - 2014-08-28 13:23 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-23 02:59 - 2014-08-28 13:23 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-22 19:39 - 2014-08-22 19:39 - 00001310 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Origin.lnk 2014-08-20 15:15 - 2014-06-05 20:24 - 00019968 _____ () C:\Users\Linus\Documents\Trainingsplan.xls 2014-08-19 20:05 - 2014-09-13 19:50 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-08-19 19:39 - 2014-09-13 19:50 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-08-19 18:36 - 2014-08-19 18:36 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-08-19 18:36 - 2014-08-19 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files\iTunes 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files\iPod 2014-08-19 18:35 - 2014-08-19 18:35 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-08-19 11:45 - 2014-08-19 11:45 - 00000000 ____D () C:\Users\Linus\Documents\Anträge 2014-08-19 01:01 - 2014-09-13 19:50 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-08-19 00:29 - 2014-09-13 19:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-08-19 00:29 - 2014-09-13 19:50 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-08-19 00:26 - 2014-09-13 19:50 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-08-19 00:20 - 2014-09-13 19:50 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-08-19 00:19 - 2014-09-13 19:50 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-08-19 00:15 - 2014-09-13 19:50 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-08-19 00:15 - 2014-09-13 19:50 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-08-19 00:14 - 2014-09-13 19:50 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-08-19 00:14 - 2014-09-13 19:50 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-08-19 00:08 - 2014-09-13 19:50 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-08-19 00:08 - 2014-09-13 19:50 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-08-19 00:08 - 2014-09-13 19:50 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-08-19 00:05 - 2014-09-13 19:50 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-08-19 00:03 - 2014-09-13 19:50 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-08-19 00:03 - 2014-09-13 19:50 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-08-19 00:03 - 2014-09-13 19:50 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-08-18 23:57 - 2014-09-13 19:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-08-18 23:56 - 2014-09-13 19:50 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-08-18 23:51 - 2014-09-13 19:50 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-08-18 23:46 - 2014-09-13 19:50 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-08-18 23:45 - 2014-09-13 19:50 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-08-18 23:45 - 2014-09-13 19:50 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-08-18 23:44 - 2014-09-13 19:50 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-08-18 23:44 - 2014-09-13 19:50 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-08-18 23:42 - 2014-09-13 19:50 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-08-18 23:40 - 2014-09-13 19:50 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-08-18 23:39 - 2014-09-13 19:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-08-18 23:39 - 2014-09-13 19:50 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-08-18 23:39 - 2014-09-13 19:50 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-08-18 23:38 - 2014-09-13 19:50 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-08-18 23:37 - 2014-09-13 19:50 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-08-18 23:36 - 2014-09-13 19:50 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-08-18 23:35 - 2014-09-13 19:50 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-08-18 23:27 - 2014-09-13 19:50 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-08-18 23:25 - 2014-09-13 19:50 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-08-18 23:25 - 2014-09-13 19:50 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-08-18 23:23 - 2014-09-13 19:50 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-08-18 23:23 - 2014-09-13 19:50 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-08-18 23:22 - 2014-09-13 19:50 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-08-18 23:19 - 2014-09-13 19:50 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-08-18 23:17 - 2014-09-13 19:50 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-08-18 23:17 - 2014-09-13 19:50 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-08-18 23:16 - 2014-09-13 19:50 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-08-18 23:15 - 2014-09-13 19:50 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-08-18 23:15 - 2014-09-13 19:50 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-08-18 23:09 - 2014-09-13 19:50 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-08-18 23:08 - 2014-09-13 19:50 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-08-18 23:07 - 2014-09-13 19:50 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-08-18 22:55 - 2014-09-13 19:50 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-08-18 22:46 - 2014-09-13 19:50 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-08-18 22:38 - 2014-09-13 19:50 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-08-18 22:38 - 2014-09-13 19:50 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-08-18 22:36 - 2014-09-13 19:50 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-08-18 22:00 - 2014-06-05 20:24 - 00000000 ____D () C:\Users\Linus\Documents\Backups 2014-08-18 17:16 - 2014-08-18 17:16 - 00000000 _____ () C:\Windows\setuperr.log Some content of TEMP: ==================== C:\Users\Linus\AppData\Local\Temp\130536108090061303.exe C:\Users\Linus\AppData\Local\Temp\AutoRun.exe C:\Users\Linus\AppData\Local\Temp\AutoRunGUI.dll C:\Users\Linus\AppData\Local\Temp\avgnt.exe C:\Users\Linus\AppData\Local\Temp\CHIP_Updater.exe C:\Users\Linus\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpzf4dyh.dll C:\Users\Linus\AppData\Local\Temp\JDSetup130536108070130163.exe C:\Users\Linus\AppData\Local\Temp\proxy_vole4986856637879263057.dll C:\Users\Linus\AppData\Local\Temp\Quarantine.exe C:\Users\Linus\AppData\Local\Temp\vlc-2.1.5-win32.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-08-29 14:29 ==================== End Of Log ============================ |
18.09.2014, 08:28 | #7 |
/// the machine /// TB-Ausbilder | Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exeESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
20.09.2014, 14:01 | #8 |
| Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe Ne, alles ist in ordnung ESET: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=bc5fad5e5e02304f82ccdda45c512571 # engine=20235 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2014-09-20 12:37:14 # local_time=2014-09-20 02:37:14 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='Avira Desktop' # compatibility_mode=1810 16777213 100 100 10329 11589632 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 8880138 162846484 0 0 # scanned=288136 # found=0 # cleaned=0 # scan_time=9760 Code:
ATTFilter Results of screen317's Security Check version 0.99.87 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Avira Desktop Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Secunia PSI (3.0.0.9016) Java 7 Update 65 Java version out of Date! Adobe Flash Player 15.0.0.152 Adobe Reader XI Mozilla Firefox (31.0) Google Chrome 37.0.2062.103 Google Chrome 37.0.2062.120 ````````Process Check: objlist.exe by Laurent```````` Avira Antivir avgnt.exe Avira Antivir avguard.exe Linus Downloads ANtivirus SecurityCheck.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` |
21.09.2014, 09:32 | #9 |
/// the machine /// TB-Ausbilder | Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe und der Rest?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
21.09.2014, 17:29 | #10 |
| Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe Oh hatte ich wohl übersehen FRST: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-09-2014 Ran by Linus (administrator) on LINUS-PC on 21-09-2014 18:25:30 Running from C:\Users\Linus\Downloads\ANtivirus Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\MDM.EXE (Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Windows\SysWOW64\PnkBstrB.exe (Motorola) C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe (Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE () C:\Program Files (x86)\Vtune\TBPANEL.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe (Dropbox, Inc.) C:\Users\Linus\AppData\Roaming\Dropbox\bin\Dropbox.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe () C:\Program Files\Rainmeter\Rainmeter.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunes.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-08-28] (Realtek Semiconductor) HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-04-27] (Renesas Electronics Corporation) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [751184 2014-08-14] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2014-05-08] (Adobe Systems Incorporated) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.) HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2621440 2010-02-09] (Brother Industries, Ltd.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-08-01] (Apple Inc.) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [164656 2014-08-27] (Avira Operations GmbH & Co. KG) HKU\S-1-5-21-2113089819-2585871665-813888595-1000\...\Run: [TBPanel] => C:\Program Files (x86)\Vtune\TBPanel.exe [2158592 2010-09-02] () HKU\S-1-5-21-2113089819-2585871665-813888595-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21650016 2014-07-24] (Skype Technologies S.A.) HKU\S-1-5-21-2113089819-2585871665-813888595-1000\...\Run: [GoogleChromeAutoLaunch_546B100DB4BA6F8638678E5732DDC41D] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [912200 2014-09-04] (Google Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) Startup: C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Linus\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe () ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> c:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> c:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Linus\AppData\Roaming\Mozilla\Firefox\Profiles\eboozt6x.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @java.com/DTPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found] Chrome: ======= CHR Profile: C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-05] CHR Extension: (Google Drive) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-05] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-14] CHR Extension: (Web Developer) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbameneiokkgbdmiekhjnmfkcnldhhm [2014-06-05] CHR Extension: (Show the YouTube Channel bar or the name.) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn [2014-06-05] CHR Extension: (YouTube) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-05] CHR Extension: (Facebook) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm [2014-06-05] CHR Extension: (Google Search) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-05] CHR Extension: (User-Agent Switcher for Chrome) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg [2014-06-05] CHR Extension: (Reditr Web App - The Best Reddit Client) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejmiceoebcclihjdpnmmkdcmcboekibc [2014-08-20] CHR Extension: (Facebook Disconnect) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpepffjfmamnambagiibghpglaidiec [2014-06-05] CHR Extension: (Facebook™ Chat Privacy) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfpgaanechfneiboempkfjghninbibjn [2014-06-05] CHR Extension: (AdBlock) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-06-05] CHR Extension: (ProxMate) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifalmiidchkjjmkkbkoaibpmoeichmki [2014-08-26] CHR Extension: (Classic Popup Blocker) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\lijicndbkjoplmhnclmoahmcaffaeapp [2014-06-05] CHR Extension: (Google Wallet) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-05] CHR Extension: (Docs PDF/PowerPoint Viewer (by Google)) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnbmlagghjjcbdhgmkedmbmedengocbn [2014-06-05] CHR Extension: (ScriptSafe) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiigbmnaadbkfbmpbfijlflahbdbdgdf [2014-07-24] CHR Extension: (Gmail) - C:\Users\Linus\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-05] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-08-14] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-08-14] (Avira Operations GmbH & Co. KG) R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [160048 2014-08-27] (Avira Operations GmbH & Co. KG) R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.) [File not signed] S2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [64624 2014-06-12] (CyberGhost S.R.L) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2369720 2014-08-01] (Microsoft Corporation) S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed] S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed] R2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2013-11-15] (Motorola Mobility LLC) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-08-23] () R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [189248 2014-08-23] () R2 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [File not signed] R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) R2 Themes; C:\Windows\system32\themeservice.dll [44544 2014-06-05] (Microsoft Corporation) [File not signed] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-04-22] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [117712 2014-07-03] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-05-09] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-05-09] (Avira Operations GmbH & Co. KG) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [17480 2013-03-07] () [File not signed] S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [13896 2013-03-07] () [File not signed] S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9800 2013-03-07] () [File not signed] S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [9160 2013-03-07] () [File not signed] R3 libusb0; C:\Windows\System32\drivers\libusb0.sys [52832 2012-01-17] (hxxp://libusb-win32.sourceforge.net) R3 libusb0; C:\Windows\SysWOW64\drivers\libusb0.sys [52832 2012-01-17] (hxxp://libusb-win32.sourceforge.net) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] () R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-12-06] (Secunia) S3 TBPanel; No ImagePath ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-20 15:04 - 2014-07-21 00:56 - 00321448 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-09-20 15:04 - 2014-07-21 00:56 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-09-20 15:04 - 2014-07-21 00:56 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-09-19 18:18 - 2014-09-19 18:18 - 00002704 _____ () C:\Users\Linus\AppData\Local\recently-used.xbel 2014-09-18 20:33 - 2014-09-18 20:33 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-09-18 16:58 - 2014-09-18 17:04 - 00000000 ____D () C:\Users\Linus\Downloads\onenote 2014-09-17 17:59 - 2014-09-17 17:59 - 00001352 _____ () C:\Users\Linus\Desktop\JRT.txt 2014-09-17 17:55 - 2014-09-17 17:55 - 00000000 ____D () C:\Windows\ERUNT 2014-09-17 17:39 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-09-17 17:37 - 2014-09-17 17:44 - 00000000 ____D () C:\AdwCleaner 2014-09-17 17:31 - 2014-09-17 17:31 - 00001264 _____ () C:\Users\Linus\Desktop\Revo Uninstaller.lnk 2014-09-17 17:31 - 2014-09-17 17:31 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-09-16 00:53 - 2014-09-21 18:25 - 00000000 ____D () C:\FRST 2014-09-16 00:52 - 2014-09-16 00:52 - 00000000 _____ () C:\Users\Linus\defogger_reenable 2014-09-16 00:26 - 2014-09-21 18:25 - 00000000 ____D () C:\Users\Linus\Downloads\ANtivirus 2014-09-16 00:16 - 2014-09-16 00:16 - 00138817 _____ () C:\Users\Linus\Downloads\hashmyfiles_v2.03.zip 2014-09-16 00:15 - 2014-09-16 00:15 - 04476486 _____ () C:\Users\Linus\Downloads\SL-6576-BK_Driver_V1.0.zip 2014-09-13 19:50 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-13 19:50 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-09-13 19:50 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-13 19:50 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-13 19:50 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-13 19:50 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-09-13 19:50 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-13 19:50 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-13 19:50 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-13 19:50 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-13 19:50 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-13 19:50 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-13 19:50 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-09-13 19:50 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-13 19:50 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-13 19:50 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-13 19:50 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-13 19:50 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-13 19:50 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-13 19:50 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-09-13 19:50 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-13 19:50 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-13 19:50 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-09-13 19:50 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-13 19:50 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-09-13 19:50 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-09-13 19:50 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-09-13 19:50 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-09-13 19:50 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-13 19:50 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-13 19:50 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-09-13 19:50 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-09-13 19:50 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-13 19:50 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-09-13 19:50 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-09-13 19:50 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-09-13 19:50 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-09-13 19:50 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-13 19:50 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-13 19:50 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-13 19:50 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-13 19:50 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-13 19:50 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-09-13 19:50 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-09-13 19:50 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-09-13 19:50 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-13 19:50 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-09-13 19:50 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-13 19:50 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-09-13 19:50 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-09-13 19:50 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-09-13 19:50 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-13 19:50 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-09-13 19:50 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-09-13 19:50 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-13 19:50 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-09-13 19:39 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-13 19:39 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-09-13 14:04 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-13 14:04 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-09-13 14:03 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-13 14:03 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-13 14:03 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-13 14:03 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-13 14:03 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-09-13 14:03 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-09-13 14:03 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-09-13 14:02 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-13 14:02 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-09-10 20:37 - 2014-09-21 18:13 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-10 20:37 - 2014-09-10 20:37 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-10 20:37 - 2014-09-10 20:37 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-10 20:37 - 2014-09-10 20:37 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-10 20:35 - 2014-09-10 20:35 - 10036224 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-09-09 17:14 - 2014-09-09 17:14 - 00000000 ____D () C:\Users\Linus\AppData\Local\Adobe 2014-09-04 17:51 - 2014-09-04 17:52 - 00000000 ____D () C:\Users\Linus\AppData\Local\CyberGhost 2014-09-04 17:50 - 2014-09-04 17:51 - 00000000 ____D () C:\Program Files\TAP-Windows 2014-09-04 17:50 - 2014-09-04 17:51 - 00000000 ____D () C:\Program Files\CyberGhost 5 2014-09-04 17:50 - 2014-09-04 17:50 - 00001728 _____ () C:\Users\Linus\Desktop\CyberGhost 5.lnk 2014-09-04 17:50 - 2014-09-04 17:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 5 2014-08-28 14:27 - 2014-08-28 14:27 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-08-28 14:26 - 2014-08-28 14:26 - 60636160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 28343384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 14863448 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 12894808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 06218072 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 05751048 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-08-28 14:26 - 2014-08-28 14:26 - 03959384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02117424 _____ () C:\Windows\system32\SStudio.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-08-28 14:26 - 2014-08-28 14:26 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01934424 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01317976 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01168472 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01136728 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01099203 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-08-28 14:26 - 2014-08-28 14:26 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00956504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00942384 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00900696 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00889592 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00724728 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00291488 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00246008 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00033592 _____ () C:\Windows\system32\audioLibVc.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-08-28 14:25 - 2014-08-28 14:25 - 00941272 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-08-28 14:25 - 2014-08-28 14:25 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-08-28 14:25 - 2014-05-15 01:49 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin 2014-08-28 14:23 - 2014-08-28 14:23 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00181760 _____ (Renesas Electronics Corporation) C:\Windows\system32\Drivers\nusb3xhc.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-08-28 14:22 - 2014-08-28 14:22 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-08-28 14:12 - 2014-08-28 14:12 - 00002854 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (Linus) 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Program Files (x86)\IObit 2014-08-28 13:23 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-28 13:23 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-28 13:23 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-27 16:31 - 2014-08-27 16:31 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-08-27 16:31 - 2014-08-27 16:31 - 00000000 ____D () C:\Program Files (x86)\Java 2014-08-27 16:29 - 2014-09-16 00:21 - 00000000 ____D () C:\Users\Linus\Downloads\System 2014-08-27 15:22 - 2014-08-27 15:22 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-08-27 15:17 - 2014-08-27 15:17 - 00001899 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk 2014-08-27 15:17 - 2014-08-27 15:17 - 00000000 ____D () C:\Program Files (x86)\CDBurnerXP 2014-08-27 15:12 - 2014-08-27 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2014-08-27 15:08 - 2014-08-27 15:08 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-08-27 15:05 - 2014-09-13 19:47 - 00000000 ____D () C:\Windows\system32\MRT 2014-08-27 15:05 - 2014-09-13 19:40 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-08-27 14:54 - 2014-08-27 16:33 - 00011110 _____ () C:\Windows\SecuniaPackage.log 2014-08-27 14:44 - 2014-08-27 14:44 - 00001069 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-08-27 14:42 - 2014-08-27 14:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 10.1 2014-08-27 14:42 - 2014-04-04 00:42 - 03382440 _____ () C:\Windows\system32\BootMan.exe 2014-08-27 14:42 - 2014-04-04 00:25 - 02499752 _____ () C:\Windows\SysWOW64\BootMan.exe 2014-08-27 14:42 - 2013-03-07 09:49 - 00100936 _____ () C:\Windows\system32\setupempdrvx64.exe 2014-08-27 14:42 - 2013-03-07 09:49 - 00087112 _____ () C:\Windows\SysWOW64\setupempdrv03.exe 2014-08-27 14:42 - 2013-03-07 09:49 - 00019840 _____ () C:\Windows\SysWOW64\EuEpmGdi.dll 2014-08-27 14:42 - 2013-03-07 09:49 - 00017480 _____ () C:\Windows\system32\epmntdrv.sys 2014-08-27 14:42 - 2013-03-07 09:49 - 00016256 _____ () C:\Windows\system32\EuEpmGdi.dll 2014-08-27 14:42 - 2013-03-07 09:49 - 00013896 _____ () C:\Windows\SysWOW64\epmntdrv.sys 2014-08-27 14:42 - 2013-03-07 09:49 - 00009800 _____ () C:\Windows\system32\EuGdiDrv.sys 2014-08-27 14:42 - 2013-03-07 09:49 - 00009160 _____ () C:\Windows\SysWOW64\EuGdiDrv.sys 2014-08-27 14:40 - 2012-12-21 17:16 - 00274088 _____ (EaseUS) C:\epm0.exe 2014-08-27 14:35 - 2014-08-27 14:35 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Users\Linus\AppData\Local\Secunia PSI 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Program Files (x86)\Secunia 2014-08-27 14:29 - 2014-09-10 22:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CHIP Updater 2014-08-27 14:16 - 2014-09-13 14:22 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Mozilla 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Local\Mozilla 2014-08-27 13:15 - 2014-08-27 14:03 - 1870599068 _____ () C:\Users\Linus\Downloads\Stalker_Lost_Alpha_1.300.zip.part 2014-08-27 13:08 - 2014-08-27 13:08 - 00002082 _____ () C:\Users\Linus\Desktop\JDownloader 2.lnk 2014-08-27 13:08 - 2014-08-27 13:08 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader 2014-08-27 13:01 - 2014-08-27 13:11 - 00000000 ____D () C:\Users\Linus\AppData\Local\JDownloader v2.0 2014-08-27 12:39 - 2014-08-27 12:39 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Lionhead Studios 2014-08-27 12:37 - 2014-08-27 12:37 - 00001338 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Windows\SysWOW64\xlive 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2014-08-27 12:11 - 2014-08-27 12:16 - 00000000 ____D () C:\Users\Linus\Documents\NFS Most Wanted 2014-08-26 13:14 - 2014-09-17 17:50 - 00008654 _____ () C:\Windows\PFRO.log 2014-08-25 16:08 - 2014-09-21 15:47 - 00005134 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Linus-PC-Linus Linus-PC 2014-08-25 16:04 - 2014-08-25 16:04 - 00000000 ____D () C:\Users\Linus\AppData\Local\Microsoft Help 2014-08-25 15:47 - 2014-09-18 23:01 - 00000000 ____D () C:\Users\Linus\Documents\OneNote-Notizbücher 2014-08-25 15:44 - 2014-09-18 23:27 - 00000000 ___RD () C:\Users\Linus\OneDrive 2014-08-25 15:44 - 2014-08-25 16:06 - 00002194 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive 2014-08-25 15:35 - 2014-08-25 15:35 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-08-25 15:34 - 2014-08-25 15:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-08-25 15:29 - 2014-08-25 15:30 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-08-25 15:28 - 2014-08-25 16:04 - 00889632 _____ () C:\Users\Linus\Downloads\Using OneNote in (my) College Courses.one 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-08-23 19:23 - 2014-08-23 19:23 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-08-23 19:22 - 2014-08-23 19:22 - 00017513 _____ () C:\Windows\DirectX.log 2014-08-22 19:39 - 2014-08-22 19:39 - 00001310 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Origin.lnk 2014-08-22 16:49 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-08-22 16:49 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-08-22 16:49 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2014-08-22 16:49 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-08-22 16:49 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-08-22 16:49 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-08-22 16:49 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-08-22 16:49 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2014-08-22 16:49 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-08-22 16:49 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-21 18:25 - 2014-09-16 00:53 - 00000000 ____D () C:\FRST 2014-09-21 18:25 - 2014-09-16 00:26 - 00000000 ____D () C:\Users\Linus\Downloads\ANtivirus 2014-09-21 18:13 - 2014-09-10 20:37 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-21 18:06 - 2014-06-05 17:55 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-09-21 17:53 - 2014-06-05 19:24 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Skype 2014-09-21 16:05 - 2014-06-05 17:55 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-09-21 15:47 - 2014-08-25 16:08 - 00005134 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Linus-PC-Linus Linus-PC 2014-09-21 15:27 - 2014-06-05 15:53 - 01314475 _____ () C:\Windows\WindowsUpdate.log 2014-09-20 15:02 - 2014-06-05 19:02 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Notepad++ 2014-09-20 15:02 - 2014-06-05 18:11 - 00000000 ____D () C:\Users\Linus\Downloads\Setups 2014-09-20 11:48 - 2009-07-14 06:45 - 00028720 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-20 11:48 - 2009-07-14 06:45 - 00028720 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-20 11:41 - 2014-06-14 23:50 - 00000000 ___RD () C:\Users\Linus\Dropbox 2014-09-20 11:41 - 2014-06-05 18:17 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Dropbox 2014-09-20 11:39 - 2014-07-06 15:11 - 00000000 ____D () C:\Users\Linus\Documents\Scanner 2014-09-20 11:39 - 2014-06-05 19:14 - 00000000 ____D () C:\Temp 2014-09-20 11:38 - 2014-08-18 17:16 - 00002587 _____ () C:\Windows\setupact.log 2014-09-20 11:38 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-19 18:21 - 2014-06-11 23:07 - 00000000 ____D () C:\Users\Linus\.gimp-2.8 2014-09-19 18:18 - 2014-09-19 18:18 - 00002704 _____ () C:\Users\Linus\AppData\Local\recently-used.xbel 2014-09-19 18:18 - 2014-06-11 23:10 - 00000000 ____D () C:\Users\Linus\AppData\Local\gtk-2.0 2014-09-18 23:27 - 2014-08-25 15:44 - 00000000 ___RD () C:\Users\Linus\OneDrive 2014-09-18 23:18 - 2014-06-05 20:28 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\KeePass 2014-09-18 23:18 - 2014-06-05 20:24 - 00003230 _____ () C:\Users\Linus\Documents\Keys.kdbx 2014-09-18 23:01 - 2014-08-25 15:47 - 00000000 ____D () C:\Users\Linus\Documents\OneNote-Notizbücher 2014-09-18 22:38 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-09-18 20:34 - 2011-04-12 09:43 - 00698688 _____ () C:\Windows\system32\perfh007.dat 2014-09-18 20:34 - 2011-04-12 09:43 - 00148828 _____ () C:\Windows\system32\perfc007.dat 2014-09-18 20:33 - 2014-09-18 20:33 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-09-18 20:33 - 2009-07-14 07:13 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-18 20:28 - 2014-06-05 19:16 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-09-18 18:16 - 2014-06-05 19:03 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-09-18 17:04 - 2014-09-18 16:58 - 00000000 ____D () C:\Users\Linus\Downloads\onenote 2014-09-18 16:50 - 2014-06-14 23:50 - 00001017 _____ () C:\Users\Linus\Desktop\Dropbox.lnk 2014-09-18 16:50 - 2014-06-05 18:17 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-09-17 17:59 - 2014-09-17 17:59 - 00001352 _____ () C:\Users\Linus\Desktop\JRT.txt 2014-09-17 17:55 - 2014-09-17 17:55 - 00000000 ____D () C:\Windows\ERUNT 2014-09-17 17:50 - 2014-08-26 13:14 - 00008654 _____ () C:\Windows\PFRO.log 2014-09-17 17:44 - 2014-09-17 17:37 - 00000000 ____D () C:\AdwCleaner 2014-09-17 17:31 - 2014-09-17 17:31 - 00001264 _____ () C:\Users\Linus\Desktop\Revo Uninstaller.lnk 2014-09-17 17:31 - 2014-09-17 17:31 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-09-16 01:34 - 2014-08-14 18:27 - 00001137 _____ () C:\Users\Public\Desktop\Avira.lnk 2014-09-16 01:34 - 2014-08-14 18:27 - 00000000 ____D () C:\ProgramData\Package Cache 2014-09-16 01:34 - 2014-06-05 16:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-09-16 01:34 - 2014-06-05 16:30 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-09-16 01:26 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\TAPI 2014-09-16 00:52 - 2014-09-16 00:52 - 00000000 _____ () C:\Users\Linus\defogger_reenable 2014-09-16 00:52 - 2014-06-05 15:56 - 00000000 ____D () C:\Users\Linus 2014-09-16 00:21 - 2014-08-27 16:29 - 00000000 ____D () C:\Users\Linus\Downloads\System 2014-09-16 00:18 - 2014-07-01 11:36 - 00000000 ____D () C:\Program Files (x86)\HJC PS3 ISP V22 2014-09-16 00:16 - 2014-09-16 00:16 - 00138817 _____ () C:\Users\Linus\Downloads\hashmyfiles_v2.03.zip 2014-09-16 00:15 - 2014-09-16 00:15 - 04476486 _____ () C:\Users\Linus\Downloads\SL-6576-BK_Driver_V1.0.zip 2014-09-15 23:27 - 2014-06-05 20:24 - 00000000 ____D () C:\Users\Linus\Documents\Uni 2014-09-13 19:48 - 2014-06-06 16:31 - 01591896 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-09-13 19:47 - 2014-08-27 15:05 - 00000000 ____D () C:\Windows\system32\MRT 2014-09-13 19:40 - 2014-08-27 15:05 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-09-13 19:39 - 2014-06-09 19:55 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-13 14:22 - 2014-08-27 14:16 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-09-10 22:54 - 2014-08-17 13:53 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft 2014-09-10 22:52 - 2014-08-27 14:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CHIP Updater 2014-09-10 22:52 - 2014-08-17 13:52 - 00000000 ____D () C:\Program Files (x86)\CHIP Updater 2014-09-10 20:37 - 2014-09-10 20:37 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-10 20:37 - 2014-09-10 20:37 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-10 20:37 - 2014-09-10 20:37 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-10 20:35 - 2014-09-10 20:35 - 10036224 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-09-09 17:14 - 2014-09-09 17:14 - 00000000 ____D () C:\Users\Linus\AppData\Local\Adobe 2014-09-05 04:10 - 2014-09-13 14:03 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-05 04:05 - 2014-09-13 14:03 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-04 17:52 - 2014-09-04 17:51 - 00000000 ____D () C:\Users\Linus\AppData\Local\CyberGhost 2014-09-04 17:52 - 2014-06-05 15:56 - 00000000 ____D () C:\Users\Linus\AppData\Local\VirtualStore 2014-09-04 17:51 - 2014-09-04 17:50 - 00000000 ____D () C:\Program Files\TAP-Windows 2014-09-04 17:51 - 2014-09-04 17:50 - 00000000 ____D () C:\Program Files\CyberGhost 5 2014-09-04 17:50 - 2014-09-04 17:50 - 00001728 _____ () C:\Users\Linus\Desktop\CyberGhost 5.lnk 2014-09-04 17:50 - 2014-09-04 17:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 5 2014-08-29 12:25 - 2009-07-14 06:45 - 00488688 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-28 23:44 - 2014-06-05 19:07 - 00000000 ____D () C:\ProgramData\Origin 2014-08-28 14:27 - 2014-08-28 14:27 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-08-28 14:27 - 2014-06-05 16:00 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-08-28 14:26 - 2014-08-28 14:26 - 60636160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 28343384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 14863448 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 12894808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 06218072 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-08-28 14:26 - 2014-08-28 14:26 - 05751048 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-08-28 14:26 - 2014-08-28 14:26 - 03959384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02117424 _____ () C:\Windows\system32\SStudio.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-08-28 14:26 - 2014-08-28 14:26 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01934424 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01317976 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01168472 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01136728 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01099203 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-08-28 14:26 - 2014-08-28 14:26 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00956504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00942384 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00900696 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00889592 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00724728 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00291488 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00246008 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00033592 _____ () C:\Windows\system32\audioLibVc.dll 2014-08-28 14:26 - 2014-08-28 14:26 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-08-28 14:25 - 2014-08-28 14:25 - 00941272 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-08-28 14:25 - 2014-08-28 14:25 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-08-28 14:25 - 2014-06-05 16:27 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-08-28 14:25 - 2014-06-05 16:01 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-08-28 14:24 - 2014-06-05 16:27 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-08-28 14:24 - 2014-06-05 16:23 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-08-28 14:23 - 2014-08-28 14:23 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00181760 _____ (Renesas Electronics Corporation) C:\Windows\system32\Drivers\nusb3xhc.sys 2014-08-28 14:23 - 2014-08-28 14:23 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-08-28 14:23 - 2014-08-28 14:23 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-08-28 14:23 - 2014-06-05 16:26 - 00026069 _____ () C:\Windows\system32\nvinfo.pb 2014-08-28 14:23 - 2014-06-05 16:25 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-08-28 14:23 - 2014-06-05 16:25 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-08-28 14:23 - 2014-06-05 16:25 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-08-28 14:23 - 2014-06-05 16:24 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-08-28 14:23 - 2014-06-05 16:24 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-08-28 14:22 - 2014-08-28 14:22 - 00196384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-08-28 14:22 - 2014-08-28 14:22 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-08-28 14:12 - 2014-08-28 14:12 - 00002854 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (Linus) 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\ProgramData\IObit 2014-08-28 14:12 - 2014-08-28 14:12 - 00000000 ____D () C:\Program Files (x86)\IObit 2014-08-28 14:02 - 2014-06-05 19:06 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-08-28 14:00 - 2014-06-05 18:21 - 00000894 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2014-08-28 00:50 - 2014-07-27 20:42 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Spotify 2014-08-27 16:45 - 2014-07-27 20:43 - 00000000 ____D () C:\Users\Linus\AppData\Local\Spotify 2014-08-27 16:33 - 2014-08-27 14:54 - 00011110 _____ () C:\Windows\SecuniaPackage.log 2014-08-27 16:31 - 2014-08-27 16:31 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-08-27 16:31 - 2014-08-27 16:31 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-08-27 16:31 - 2014-08-27 16:31 - 00000000 ____D () C:\Program Files (x86)\Java 2014-08-27 16:30 - 2014-07-21 00:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2014-08-27 15:51 - 2009-07-14 04:34 - 00000601 _____ () C:\Windows\win.ini 2014-08-27 15:48 - 2014-06-05 18:45 - 00002619 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Office-Dokument öffnen.lnk 2014-08-27 15:48 - 2014-06-05 18:45 - 00002615 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Neues Office-Dokument.lnk 2014-08-27 15:48 - 2014-06-05 18:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-08-27 15:44 - 2014-06-05 18:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-08-27 15:40 - 2014-06-05 19:00 - 00000000 ____D () C:\Program Files\CCleaner 2014-08-27 15:38 - 2014-06-05 20:58 - 00000000 ____D () C:\Windows\pss 2014-08-27 15:26 - 2014-06-05 17:55 - 00138840 _____ () C:\Users\Linus\AppData\Local\GDIPFONTCACHEV1.DAT 2014-08-27 15:23 - 2014-06-05 18:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-08-27 15:22 - 2014-08-27 15:22 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-08-27 15:22 - 2014-08-27 15:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-08-27 15:22 - 2014-06-05 18:16 - 00000000 ____D () C:\ProgramData\Skype 2014-08-27 15:17 - 2014-08-27 15:17 - 00001899 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk 2014-08-27 15:17 - 2014-08-27 15:17 - 00000000 ____D () C:\Program Files (x86)\CDBurnerXP 2014-08-27 15:13 - 2014-06-05 18:14 - 00001075 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk 2014-08-27 15:13 - 2014-06-05 18:14 - 00000000 ____D () C:\Program Files (x86)\WinSCP 2014-08-27 15:12 - 2014-08-27 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2014-08-27 15:08 - 2014-08-27 15:08 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-08-27 15:08 - 2014-06-05 18:12 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-08-27 15:08 - 2014-06-05 18:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-08-27 15:05 - 2014-06-05 18:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works 2014-08-27 14:44 - 2014-08-27 14:44 - 00001069 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-08-27 14:42 - 2014-08-27 14:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 10.1 2014-08-27 14:41 - 2014-06-05 19:12 - 00000000 ____D () C:\Program Files (x86)\EaseUS 2014-08-27 14:35 - 2014-08-27 14:35 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-08-27 14:33 - 2014-06-05 18:25 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk 2014-08-27 14:33 - 2014-06-05 18:25 - 00000000 ____D () C:\Program Files (x86)\KeePass Password Safe 2 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Users\Linus\AppData\Local\Secunia PSI 2014-08-27 14:31 - 2014-08-27 14:31 - 00000000 ____D () C:\Program Files (x86)\Secunia 2014-08-27 14:25 - 2014-06-05 19:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-08-27 14:03 - 2014-08-27 13:15 - 1870599068 _____ () C:\Users\Linus\Downloads\Stalker_Lost_Alpha_1.300.zip.part 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Mozilla 2014-08-27 13:33 - 2014-08-27 13:33 - 00000000 ____D () C:\Users\Linus\AppData\Local\Mozilla 2014-08-27 13:11 - 2014-08-27 13:01 - 00000000 ____D () C:\Users\Linus\AppData\Local\JDownloader v2.0 2014-08-27 13:08 - 2014-08-27 13:08 - 00002082 _____ () C:\Users\Linus\Desktop\JDownloader 2.lnk 2014-08-27 13:08 - 2014-08-27 13:08 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader 2014-08-27 12:47 - 2014-07-25 13:55 - 00000000 ____D () C:\Users\Linus\Downloads\Spiele 2014-08-27 12:39 - 2014-08-27 12:39 - 00000000 ____D () C:\Users\Linus\AppData\Roaming\Lionhead Studios 2014-08-27 12:37 - 2014-08-27 12:37 - 00001338 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Windows\SysWOW64\xlive 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace 2014-08-27 12:37 - 2014-08-27 12:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2014-08-27 12:37 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-08-27 12:37 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-08-27 12:33 - 2014-06-05 21:50 - 00000000 ____D () C:\Users\Linus\Documents\My Games 2014-08-27 12:16 - 2014-08-27 12:11 - 00000000 ____D () C:\Users\Linus\Documents\NFS Most Wanted 2014-08-26 14:26 - 2014-06-05 19:38 - 00000000 ____D () C:\Users\Linus\Downloads\Archive 2014-08-25 16:06 - 2014-08-25 15:44 - 00002194 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 16:04 - 2014-08-25 16:04 - 00000000 ____D () C:\Users\Linus\AppData\Local\Microsoft Help 2014-08-25 16:04 - 2014-08-25 15:28 - 00889632 _____ () C:\Users\Linus\Downloads\Using OneNote in (my) College Courses.one 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00002120 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2014-08-25 15:44 - 2014-08-25 15:44 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive 2014-08-25 15:36 - 2014-08-25 15:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-08-25 15:35 - 2014-08-25 15:35 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-08-25 15:30 - 2014-08-25 15:29 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-08-23 19:23 - 2014-08-23 19:23 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-08-23 19:23 - 2014-08-23 19:23 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-08-23 19:22 - 2014-08-23 19:22 - 00017513 _____ () C:\Windows\DirectX.log 2014-08-23 04:07 - 2014-08-28 13:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-23 03:45 - 2014-08-28 13:23 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-23 02:59 - 2014-08-28 13:23 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-22 19:39 - 2014-08-22 19:39 - 00001310 _____ () C:\Users\Linus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Origin.lnk Some content of TEMP: ==================== C:\Users\Linus\AppData\Local\Temp\130536108090061303.exe C:\Users\Linus\AppData\Local\Temp\AutoRun.exe C:\Users\Linus\AppData\Local\Temp\AutoRunGUI.dll C:\Users\Linus\AppData\Local\Temp\avgnt.exe C:\Users\Linus\AppData\Local\Temp\CHIP_Updater.exe C:\Users\Linus\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpx8okc6.dll C:\Users\Linus\AppData\Local\Temp\JDSetup130536108070130163.exe C:\Users\Linus\AppData\Local\Temp\npp.6.6.9.Installer.exe C:\Users\Linus\AppData\Local\Temp\proxy_vole4986856637879263057.dll C:\Users\Linus\AppData\Local\Temp\Quarantine.exe C:\Users\Linus\AppData\Local\Temp\vlc-2.1.5-win32.exe C:\Users\Linus\AppData\Local\Temp\xmlUpdater.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-09-18 22:30 ==================== End Of Log ============================ |
22.09.2014, 09:31 | #11 |
/// the machine /// TB-Ausbilder | Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe Java updaten. Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Malwarebytes: Trojan.Delf.Bat in C:\Program Files (x86)\HJC PS3 ISP V22\i386_dd2.exe |
alarm, avira, avira antivir, einfach, erstell, logfiles, malwarebytes, merkwürdige, pup.optional.bplug, pup.optional.trovi.a, quarantäne, scanner, standard, trojan.delf.bat, trojaner, virenscan, virenscanner, virustotal |