|
Plagegeister aller Art und deren Bekämpfung: Internet [ W-Lan ] laggt total nur an einem bestimmten ComputerWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
06.10.2014, 19:51 | #1 |
| Internet [ W-Lan ] laggt total nur an einem bestimmten Computer Ich sitze hier an meinem PC mit W-Lan dieser laggt seit einer Zeit völlig. Bei meinem Handy ist das aber nicht so genau so wenig wie bei den anderen Familienmitgliedern. Es kommt unteranderem manchmal immer der Fehler: "IP Konfiguration fehlgeschlagen." Bei der Verbindung, dennoch geht es nach einer Zeit wieder. Ich bitte um hilfe! |
06.10.2014, 20:04 | #2 |
/// Malwareteam | Internet [ W-Lan ] laggt total nur an einem bestimmten Computer Hallo
__________________bitte alle Tools mit "rechtsklick - als Admin ausführen" Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
07.10.2014, 15:38 | #3 |
| Internet [ W-Lan ] laggt total nur an einem bestimmten Computer FRST Logfile:
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-10-2014 01 Ran by Admin (administrator) on DANIEL on 07-10-2014 16:32:55 Running from C:\Users\Admin\Downloads Loaded Profile: Admin (Available profiles: Admin & asdasd & Jugendschutz) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Apache Software Foundation) C:\xampp\xampp\apache\bin\httpd.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\dtsslsrv.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DTSRVC.exe (ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe () C:\Program Files (x86)\GIGABYTE\EasySaver\essvr.exe () C:\Windows\SysWOW64\XSrvSetup.exe (MySQL AB) C:\xampp\xampp\mysql\bin\mysqld.exe (Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Realtek) C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe () C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe () C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Apache Software Foundation) C:\xampp\xampp\apache\bin\httpd.exe () C:\Users\Admin\AppData\LocalLow\WOT\IE\WOTUpdater.exe (LogMeIn Inc.) D:\Programme\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (LogMeIn, Inc.) D:\Programme\LogMeIn Hamachi\LMIGuardianSvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe (Valve Corporation) D:\Programmme\Steam\Steam.exe (Spotify Ltd) C:\Users\Admin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Western Digital Technologies, Inc.) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtWLan.exe (Apple Inc.) D:\Programme\iTunes\iTunesHelper.exe (LogMeIn Inc.) D:\Programme\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn, Inc.) D:\Programme\LogMeIn Hamachi\LMIGuardianSvc.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Valve Corporation) D:\Programmme\Steam\bin\steamwebhelper.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13307496 2011-10-17] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2278504 2011-10-14] (Realtek Semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [2839840 2010-04-07] (ESET) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2694040 2014-07-22] (Adobe Systems Incorporated) HKLM-x32\...\Run: [QuickTime Task] => D:\Programme\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] => D:\Programme\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => D:\Programme\LogMeIn Hamachi\hamachi-2-ui.exe [3802448 2014-09-04] (LogMeIn Inc.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-09-15] (Advanced Micro Devices, Inc.) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3600216 2014-09-16] (Electronic Arts) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [Steam] => D:\Programmme\Steam\steam.exe [1938112 2014-09-23] (Valve Corporation) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [Spotify Web Helper] => C:\Users\Admin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1245752 2014-09-30] (Spotify Ltd) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2014-08-20] (Raptr, Inc) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22041192 2014-08-27] (Skype Technologies S.A.) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\MountPoints2: {17c01321-0e6b-11e3-baad-902b346e573a} - F:\unlock.exe autoplay=true HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\MountPoints2: {c64a59b4-e176-11e2-af8c-902b346e573a} - G:\unlock.exe autoplay=true HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\MountPoints2: {cb1d1e86-e16d-11e2-ac69-806e6f6e6963} - E:\Autorun.exe Startup: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) Startup: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Samsung SSD Magician.lnk ShortcutTarget: Samsung SSD Magician.lnk -> C:\Program Files (x86)\Samsung SSD Magician\Samsung SSD Magician.exe (Samsung Electronics.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk ShortcutTarget: TP-LINK Wireless Configuration Utility.lnk -> C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDDMStatus.lnk ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (Western Digital Technologies, Inc.) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () GroupPolicyUsers\S-1-5-21-803591714-1062673447-4054266202-1009\User: Group Policy restriction detected <======= ATTENTION GroupPolicyUsers\S-1-5-21-803591714-1062673447-4054266202-1008\User: Group Policy restriction detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=irmsd1103&cd=2XzuyEtN2Y1L1Qzu0AtD0FtA0CtCtC0AzyyB0B0B0A0B0C0DtN0D0Tzu0SyCzzzytN1L2XzutBtFtBtFtCtAtFtCtAtAzztN1L1CzutCtD1B1P1R&cr=435734064&ir= HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xDFE5F5FA8375CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=irmsd1103&cd=2XzuyEtN2Y1L1Qzu0AtD0FtA0CtCtC0AzyyB0B0B0A0B0C0DtN0D0Tzu0SyCzzzytN1L2XzutBtFtBtFtCtAtFtCtAtAzztN1L1CzutCtD1B1P1R&cr=435734064&ir= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=irmsd1103&cd=2XzuyEtN2Y1L1Qzu0AtD0FtA0CtCtC0AzyyB0B0B0A0B0C0DtN0D0Tzu0SyCzzzytN1L2XzutBtFtBtFtCtAtFtCtAtAzztN1L1CzutCtD1B1P1R&cr=435734064&ir= SearchScopes: HKLM - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP923CCFE2-3F9E-46D2-A167-169F8428B77C&q={searchTerms}&SSPV= SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP923CCFE2-3F9E-46D2-A167-169F8428B77C&q={searchTerms}&SSPV= SearchScopes: HKCU - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3314958&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP784383E3-5633-4F2F-AAB1-A179DEAFBCBE&q={searchTerms}&SSPV= BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: WOT -> {9E571C81-21E7-496B-9E6B-127E60263022} -> C:\Users\Admin\AppData\LocalLow\WOT\IE\WOT.dll (WOT Services Oy) Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter-x32: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter-x32: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.170.1 FireFox: ======== FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default FF DefaultSearchEngine: Google FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", ""); FF Homepage: https://www.google.de/search?q=warlords+of+draenor+beta+key&newwindow=1&source=lnms&tbm=nws&sa=X&ei=tj7JU9CyEuvT7AalxICACA&ved=0CAkQ_AUoAg&biw=1920&bih=919 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.1.2 -> D:\Programme\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.4 -> D:\Programme\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.5 -> D:\Programme\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect_x86_64 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin: adobe.com/AdobeExManDetect -> D:\Programme\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> D:\Programme\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3522.0110 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 -> D:\Programme\Winamp Detect\npwachk.dll (Nullsoft, Inc.) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin-x32: adobe.com/AdobeExManDetect -> D:\Programme\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin HKCU: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF user.js: detected! => C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\user.js FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.) FF SearchPlugin: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\searchplugins\webde-suche.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: WEB.DE MailCheck - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\toolbar@web.de [2014-09-17] FF Extension: WOT - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\wotstats@mywot.com [2013-12-23] FF Extension: Blue Fox - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\{241aae70-0022-11de-87af-0800200c9a66} [2014-07-30] FF Extension: Bloody Red - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\{2458abc0-f443-11dd-87af-0800200c9a66} [2014-04-23] FF Extension: Firebug - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\firebug@software.joehewitt.com.xpi [2014-08-16] FF Extension: MEGA - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\firefox@mega.co.nz.xpi [2014-07-27] FF Extension: Adblock Plus - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-24] FF Extension: Greasemonkey - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-08-30] FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2013-06-30] Chrome: ======= CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter} CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-12] CHR Extension: (Google Drive) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-12] CHR Extension: (YouTube) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-12] CHR Extension: (Google-Suche) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-12] CHR Extension: (Steam Trader Helper (auto-buy)) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhoahihokddepjlegpenefeaahdkojog [2014-05-12] CHR Extension: (Google Wallet) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-12] CHR Extension: (WOT) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nphjeokkkbngjpiofnfpnafjeofjomfb [2014-05-12] CHR Extension: (MySearchDial) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff [2014-05-12] CHR Extension: (Google Mail) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-12] CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Admin\AppData\Local\mysearchdial-speeddial.crx [2013-11-19] CHR HKCU\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Admin\AppData\Local\mysearchdial-speeddial.crx [2013-11-19] CHR HKLM-x32\...\Chrome\Extension: [nphjeokkkbngjpiofnfpnafjeofjomfb] - C:\Users\Admin\AppData\LocalLow\WOT\CHROME\WOT.crx [2012-01-12] CHR HKLM-x32\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Admin\AppData\Local\mysearchdial-speeddial.crx [2013-11-19] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2014-05-31] (Adobe Systems) [File not signed] R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-09-15] (Advanced Micro Devices, Inc.) [File not signed] R2 Apache2.2; C:\xampp\xampp\apache\bin\httpd.exe [29416 2009-12-20] (Apache Software Foundation) S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] () R2 Asset Management Daemon; C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\dtsslsrv.exe [133936 2012-04-13] () S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [448384 2014-08-07] () R2 DTSRVC; C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe [138032 2012-04-13] (Portrait Displays, Inc.) S3 EhttpSrv; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [42336 2010-04-07] (ESET) R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [810120 2010-04-07] (ESET) R2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] () R2 Hamachi2Svc; D:\Programme\LogMeIn Hamachi\hamachi-2.exe [2525008 2014-09-04] (LogMeIn Inc.) R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72280 2010-09-07] () S3 jswpsapi; C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WPS\jswpsapi.exe [954368 2012-05-14] (Wireless) [File not signed] S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2153792 2014-04-04] (IObit) R2 MySQL; C:\xampp\xampp\mysql\bin\mysqld.exe [6095504 2009-12-20] (MySQL AB) S3 OverwolfUpdaterService; D:\Programme\Overwolf\OverwolfUpdater.exe [18360 2013-08-22] (Overwolf Ltd) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-06-14] () R2 Realtek11nSU; C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [File not signed] S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed] R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [288256 2010-09-08] (WDC) [File not signed] R2 WDFME; C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe [1034752 2010-09-08] () [File not signed] R2 WDSC; C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe [485376 2010-09-08] () [File not signed] R2 WOTUpdater; C:\Users\Admin\AppData\LocalLow\WOT\IE\WOTUpdater.exe [18432 2012-01-12] () [File not signed] R3 WinHttpAutoProxySvc; winhttp.dll [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices) R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21616 2011-11-02] () R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2013-11-29] () R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-08-07] (Disc Soft Ltd) R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [163888 2010-04-07] (ESET) R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [139704 2010-04-07] (ESET) R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [169592 2010-04-07] (ESET) R3 Epfwndis; C:\Windows\System32\DRIVERS\Epfwndis.sys [33608 2010-04-07] (ESET) R2 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [50600 2010-04-07] (ESET) R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2013-11-29] () R3 PdiPorts; C:\Windows\System32\DRIVERS\PdiPorts.sys [20784 2012-04-13] (Portrait Displays, Inc.) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-01-23] () S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [926824 2012-05-14] (Realtek Semiconductor Corporation ) S1 StarOpen; C:\Windows\SysWow64\Drivers\StarOpen.sys [5632 2006-07-24] () [File not signed] S3 ALSysIO; \??\C:\Users\Admin\AppData\Local\Temp\ALSysIO64.sys [X] S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [X] S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-07 16:32 - 2014-10-07 16:33 - 00028639 _____ () C:\Users\Admin\Downloads\FRST.txt 2014-10-07 16:32 - 2014-10-07 16:32 - 02109952 _____ (Farbar) C:\Users\Admin\Downloads\FRST64.exe 2014-10-07 16:32 - 2014-10-07 16:32 - 00000000 ____D () C:\FRST 2014-10-06 17:17 - 2014-10-06 17:17 - 00000000 _____ () C:\Users\Admin\Desktop\Hallo.avi 2014-10-06 17:17 - 2014-10-06 17:17 - 00000000 _____ () C:\Users\Admin\Desktop\avi.avi 2014-10-06 17:16 - 2014-10-06 17:16 - 00000000 _____ () C:\Users\Admin\Desktop\test.avi 2014-10-06 16:59 - 2014-10-06 16:59 - 00392952 _____ () C:\Users\Admin\Desktop\Template by NelonFX(1).rar 2014-10-03 21:12 - 2014-10-03 21:12 - 00571983 _____ () C:\Users\Admin\Downloads\OneDrive-2014-10-03.zip 2014-10-03 21:11 - 2014-10-03 21:19 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Minecraft Skin Viewer 2014-10-03 21:09 - 2014-10-03 21:09 - 00140332 _____ () C:\Users\Admin\Downloads\Minecraft Skin Viewer.zip 2014-10-03 20:02 - 2014-10-03 20:03 - 00025314 _____ () C:\Users\Admin\Desktop\skin_20140903094923125978.png.lnk 2014-10-03 19:56 - 2014-10-03 21:21 - 04454473 _____ () C:\Users\Admin\Downloads\Icon Template - K4iiLP.psd 2014-10-03 19:40 - 2014-10-03 19:42 - 45463480 _____ () C:\Users\Admin\Downloads\Gfx pack minecraft by ZeroFrey.rar 2014-10-03 19:31 - 2014-10-03 19:31 - 00519664 _____ () C:\Users\Admin\Downloads\New Light room subs.c4d 2014-10-02 19:52 - 2014-10-02 19:52 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\AMD 2014-10-02 17:49 - 2014-10-02 17:49 - 00062096 _____ () C:\Windows\SysWOW64\CCCInstall_201410021749364051.log 2014-10-02 17:49 - 2014-10-02 17:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-10-02 17:49 - 2014-10-02 17:49 - 00000000 ____D () C:\ProgramData\ATI 2014-10-02 17:49 - 2014-10-02 17:49 - 00000000 ____D () C:\Program Files (x86)\AMD AVT 2014-10-01 12:17 - 2014-09-25 04:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-10-01 12:17 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-09-29 17:27 - 2014-09-29 17:28 - 01889037 _____ () C:\Users\Admin\Downloads\HoxHud P6.4 Self-installer.exe 2014-09-28 18:24 - 2014-09-28 18:33 - 105909200 _____ () C:\Users\Admin\Desktop\ts3_recording_14_09_28_18_24_19.wav 2014-09-28 13:33 - 2014-09-28 13:34 - 18301193 _____ () C:\Users\Admin\Downloads\Payday 2 Trainer v16.rar 2014-09-25 13:41 - 2014-09-25 13:41 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-09-24 20:16 - 2014-09-24 20:17 - 14764140 _____ () C:\Users\Admin\Downloads\ZygorGuides-4.0.10325.zip 2014-09-24 12:59 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-09-24 12:59 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-09-23 17:20 - 2014-09-23 17:22 - 59286687 _____ () C:\Users\Admin\Downloads\Warlords of Draenor - World of Warcraft - Cinematic Trailer - Deutsch.mp4 2014-09-23 17:04 - 2014-09-23 17:05 - 57106928 _____ () C:\Users\Admin\Downloads\World of Warcraft Warlords of Draenor – Cinematic Trailer.mp4 2014-09-23 16:52 - 2014-09-23 16:53 - 38248174 _____ () C:\Users\Admin\Downloads\World of WarCraft Warlords of Draenor Trailer [Deutsch German] [1080p].mp4 2014-09-21 17:11 - 2014-09-21 17:11 - 00696561 _____ () C:\Users\Admin\Downloads\VampirismFire5.10b2.w3x 2014-09-20 10:08 - 2014-09-20 10:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft Public Test 2014-09-20 09:49 - 2014-09-20 09:50 - 84026712 _____ (Blizzard Entertainment) C:\Users\Admin\Downloads\World-of-Warcraft-Public-Test-Setup-deDE.exe 2014-09-19 20:39 - 2014-09-19 20:39 - 00135341 _____ () C:\Users\Admin\Downloads\DBZ MAUL.w3x 2014-09-19 20:25 - 2014-09-19 20:25 - 00133944 _____ () C:\Users\Admin\Downloads\POLAR ESCAPE 3 -Protected-.w3m 2014-09-19 20:24 - 2014-09-19 20:24 - 03259081 _____ () C:\Users\Admin\Downloads\Molten Core v7 TBC.w3x 2014-09-19 20:22 - 2014-09-19 20:23 - 03317815 _____ () C:\Users\Admin\Downloads\Molten Core.w3x 2014-09-19 20:21 - 2014-09-19 20:21 - 03259548 _____ () C:\Users\Admin\Downloads\Molten Core v1SVb22.w3x 2014-09-19 20:15 - 2014-09-19 20:15 - 00029388 _____ () C:\Users\Admin\Downloads\Sheep Tag.w3x 2014-09-18 15:59 - 2014-09-18 16:00 - 00000000 ____D () C:\Users\Admin\AppData\Local\Skyrim 2014-09-17 19:22 - 2014-09-17 19:22 - 00275267 _____ () C:\Users\Admin\Downloads\Immibis-Core-1.6.4.jar 2014-09-17 19:22 - 2014-09-17 19:22 - 00123859 _____ () C:\Users\Admin\Downloads\advanced-machines-57.1.2.jar 2014-09-17 18:06 - 2014-09-17 18:06 - 01318112 _____ () C:\Users\Admin\Downloads\Galacticraft.zip 2014-09-17 17:59 - 2014-09-17 17:58 - 00018681 _____ () C:\Users\Admin\Desktop\idfixminus-1.6.4-1.0.0.jar 2014-09-17 17:58 - 2014-09-17 17:58 - 00018681 _____ () C:\Users\Admin\Downloads\idfixminus-1.6.4-1.0.0.jar 2014-09-17 17:52 - 2014-09-17 17:52 - 11839417 _____ () C:\Users\Admin\Downloads\Galacticraft-1.6.4-2.0.14.1084.jar 2014-09-17 17:51 - 2014-09-17 17:51 - 00307380 _____ () C:\Users\Admin\Downloads\Galacticraft-Planets-1.6.4-2.0.14.1084.jar 2014-09-17 17:51 - 2014-09-17 17:51 - 00018164 _____ () C:\Users\Admin\Downloads\MicdoodleCore-1.6.4-2.0.14.1084.jar 2014-09-17 17:32 - 2014-09-17 17:33 - 167571057 _____ () C:\Users\Admin\Downloads\Invictus_Monster.zip 2014-09-16 19:36 - 2014-09-16 19:37 - 18440993 _____ () C:\Users\Admin\Downloads\SEUS v10 RC6 for Minecraft 1.4.6.rar 2014-09-16 19:36 - 2014-09-16 19:37 - 05387674 _____ () C:\Users\Admin\Downloads\Shaders pack 1.4.7.zip 2014-09-16 19:20 - 2014-09-16 19:20 - 00370291 _____ () C:\Users\Admin\Downloads\OptiFine_1.4.6_HD_U_D5.zip 2014-09-16 19:18 - 2014-09-16 19:19 - 45586762 _____ () C:\Users\Admin\Downloads\Sphax PureBDCraft 128x MC14.zip 2014-09-16 19:12 - 2014-09-16 19:16 - 39564738 _____ () C:\Users\Admin\Downloads\Sphax PureBDcraft 128x MC16.zip 2014-09-16 19:10 - 2014-09-16 19:11 - 23917029 _____ () C:\Users\Admin\Downloads\Sphax 128x Tekkit Lite SMP Latest v1.0.zip 2014-09-16 19:10 - 2014-09-11 15:53 - 34380536 _____ () C:\Users\Admin\Desktop\Sphax PureBDcraft 128x MC18.zip 2014-09-16 17:26 - 2014-09-16 17:26 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-09-16 17:26 - 2014-09-16 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-09-16 00:32 - 2014-09-16 00:32 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2014-09-16 00:32 - 2014-09-16 00:32 - 00118096 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2014-09-16 00:32 - 2014-09-16 00:32 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-09-16 00:32 - 2014-09-16 00:32 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-09-16 00:32 - 2014-09-16 00:32 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-09-16 00:32 - 2014-09-16 00:32 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-09-16 00:31 - 2014-09-16 00:31 - 09254184 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-09-16 00:31 - 2014-09-16 00:31 - 08296296 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-09-16 00:31 - 2014-09-16 00:31 - 08044976 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-09-16 00:31 - 2014-09-16 00:31 - 00126848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-09-16 00:31 - 2014-09-16 00:31 - 00118096 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-09-16 00:29 - 2014-09-16 00:29 - 00293088 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2014-09-16 00:26 - 2014-09-16 00:26 - 16750080 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-09-16 00:18 - 2014-09-16 00:18 - 00235008 _____ () C:\Windows\system32\clinfo.exe 2014-09-16 00:18 - 2014-09-16 00:18 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-09-16 00:17 - 2014-09-16 00:17 - 33867264 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-09-16 00:17 - 2014-09-16 00:17 - 28770304 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-09-16 00:17 - 2014-09-16 00:17 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-09-16 00:17 - 2014-09-16 00:17 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-09-16 00:17 - 2014-09-16 00:17 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-09-16 00:16 - 2014-09-16 00:16 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-09-16 00:16 - 2014-09-16 00:16 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-09-16 00:13 - 2014-09-16 00:13 - 27918336 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-09-16 00:09 - 2014-09-16 00:09 - 05639168 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-09-16 00:09 - 2014-09-16 00:09 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-09-16 00:09 - 2014-09-16 00:09 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-09-16 00:09 - 2014-09-16 00:09 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-09-16 00:09 - 2014-09-16 00:09 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-09-16 00:08 - 2014-09-16 00:08 - 23375360 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-09-16 00:07 - 2014-09-16 00:07 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-09-16 00:07 - 2014-09-16 00:07 - 03437632 _____ () C:\Windows\system32\atiumd6a.cap 2014-09-16 00:07 - 2014-09-16 00:07 - 00609272 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-09-16 00:07 - 2014-09-16 00:07 - 00609272 _____ () C:\Windows\system32\atiapfxx.blb 2014-09-16 00:07 - 2014-09-16 00:07 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-09-16 00:07 - 2014-09-16 00:07 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-09-16 00:07 - 2014-09-16 00:07 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-09-16 00:07 - 2014-09-16 00:07 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-09-16 00:07 - 2014-09-16 00:07 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-09-16 00:06 - 2014-09-16 00:06 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-09-16 00:05 - 2014-09-16 00:05 - 04480000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-09-16 00:03 - 2014-09-16 00:03 - 03471376 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-09-16 00:03 - 2014-09-16 00:03 - 00619008 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-09-16 00:03 - 2014-09-16 00:03 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-09-16 00:03 - 2014-09-16 00:03 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-09-16 00:03 - 2014-09-16 00:03 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-09-16 00:03 - 2014-09-16 00:03 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-09-16 00:03 - 2014-09-16 00:03 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-09-16 00:03 - 2014-09-16 00:03 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-09-16 00:00 - 2014-09-16 00:00 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00900608 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00827392 _____ (AMD) C:\Windows\system32\coinst_14.30.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00576000 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-09-15 23:59 - 2014-09-15 23:59 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-09-15 23:58 - 2014-09-15 23:58 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-09-15 18:21 - 2014-09-15 18:21 - 00051200 _____ () C:\Windows\system32\kdbsdk64.dll 2014-09-15 18:19 - 2014-09-15 18:19 - 00038912 _____ () C:\Windows\SysWOW64\kdbsdk32.dll 2014-09-13 17:19 - 2014-09-13 17:19 - 00002136 _____ () C:\Users\Public\Desktop\REALTEK 11n USB Wireless LAN Utility.lnk 2014-09-13 17:19 - 2014-09-13 17:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility 2014-09-13 17:19 - 2014-09-13 17:19 - 00000000 ____D () C:\Program Files (x86)\Cisco 2014-09-13 17:19 - 2009-03-31 14:31 - 00380928 _____ (Realtek) C:\Windows\RtlUI2.exe 2014-09-13 17:19 - 2009-01-05 20:31 - 00000901 _____ () C:\Windows\RtlUI2.exe.manifest 2014-09-13 17:19 - 2008-07-01 12:31 - 00614400 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\Rtlihvs.dll 2014-09-12 23:45 - 2014-09-12 23:45 - 04580399 _____ () C:\Users\Admin\Downloads\X Hero Siege v8.8c.w3x 2014-09-12 12:22 - 2014-09-12 15:56 - 00000053 _____ () C:\Users\Admin\Desktop\Neues Textdokument (2).txt 2014-09-12 00:16 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-12 00:16 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-09-12 00:16 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-12 00:16 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-12 00:16 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-12 00:16 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-09-12 00:16 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-12 00:16 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-12 00:16 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-12 00:16 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-12 00:16 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-12 00:16 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-12 00:16 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-09-12 00:16 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-12 00:16 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-12 00:16 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-12 00:16 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-12 00:16 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-12 00:16 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-12 00:16 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-09-12 00:16 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-12 00:16 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-12 00:16 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-09-12 00:16 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-12 00:16 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-09-12 00:16 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-09-12 00:16 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-09-12 00:16 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-09-12 00:16 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-12 00:16 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-12 00:16 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-09-12 00:16 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-09-12 00:16 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-12 00:16 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-09-12 00:16 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-09-12 00:16 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-09-12 00:16 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-09-12 00:16 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-12 00:16 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-12 00:16 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-12 00:16 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-12 00:16 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-12 00:16 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-09-12 00:16 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-09-12 00:16 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-09-12 00:16 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-12 00:16 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-09-12 00:16 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-12 00:16 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-09-12 00:16 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-09-12 00:16 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-09-12 00:16 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-12 00:16 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-09-12 00:16 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-09-12 00:16 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-12 00:16 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-09-12 00:05 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-12 00:05 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-09-11 21:32 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-11 21:32 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-11 21:32 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-11 21:32 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-09-11 21:32 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-11 21:32 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-11 21:32 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-09-11 21:32 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-09-11 21:32 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-09-11 21:32 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-11 21:32 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-09-11 19:38 - 2014-09-01 14:57 - 00065536 _____ () C:\Users\Admin\Desktop\glyph_sizes.bin 2014-09-11 17:25 - 2014-09-11 17:25 - 00000723 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-09-11 14:35 - 2014-09-11 14:47 - 116897943 _____ () C:\Users\Admin\Downloads\FTB Magic Farm 2 128x.zip 2014-09-11 14:16 - 2014-09-11 15:53 - 34380536 _____ () C:\Users\Admin\Downloads\Sphax PureBDcraft 128x MC18.zip 2014-09-11 14:16 - 2014-09-11 14:16 - 08684905 _____ () C:\Users\Admin\Downloads\BDcraft Sounds Pack.zip 2014-09-11 14:14 - 2014-09-11 14:43 - 67222091 _____ () C:\Users\Admin\Downloads\Sphax_Hexxit _128x(1.1).zip 2014-09-11 14:07 - 2014-09-11 14:08 - 11559305 _____ () C:\Users\Admin\Downloads\Simplex - Revived (x128) v2.0.zip 2014-09-11 14:07 - 2014-09-11 14:07 - 00236539 _____ () C:\Users\Admin\Downloads\Simplex - 3D (x128) v1.0.zip 2014-09-09 13:55 - 2014-09-09 14:28 - 00000000 ____D () C:\Users\Admin\Desktop\Ultra Modded Survival 1.4.6c Server 2014-09-09 13:54 - 2014-09-09 13:54 - 00319912 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-09-09 13:54 - 2014-09-09 13:54 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-09-09 13:54 - 2014-09-09 13:54 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-09-09 13:54 - 2014-09-09 13:54 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-09-09 13:46 - 2014-09-09 13:46 - 31013800 _____ (Oracle Corporation) C:\Users\Admin\Downloads\jre-7u67-windows-x64.exe 2014-09-08 18:09 - 2014-09-08 18:30 - 217898106 _____ () C:\Users\Admin\Downloads\Ultra Modded Survival 1.4.6c Server.zip 2014-09-07 15:42 - 2014-09-07 15:42 - 00938171 _____ () C:\Users\Admin\Downloads\§lDefault 3D§r §lV4.20.zip ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-07 16:29 - 2014-08-21 07:55 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Raptr 2014-10-07 16:29 - 2014-08-17 11:28 - 00003134 _____ () C:\Windows\System32\Tasks\FRAPS 2014-10-07 16:29 - 2014-08-10 12:55 - 00000000 ____D () C:\Users\Admin\AppData\Local\LogMeIn Hamachi 2014-10-07 16:29 - 2014-05-12 19:25 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-10-07 16:29 - 2013-06-30 13:41 - 00000000 ____D () C:\ProgramData\Origin 2014-10-07 16:29 - 2013-06-30 13:39 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Skype 2014-10-07 16:28 - 2014-08-21 11:08 - 00054604 _____ () C:\Windows\setupact.log 2014-10-07 16:28 - 2013-10-19 11:41 - 00115906 _____ () C:\Windows\SysWOW64\DTSSL.log 2014-10-07 16:28 - 2013-06-30 13:41 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-10-07 16:28 - 2013-06-30 12:38 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys 2014-10-07 16:28 - 2013-06-30 12:36 - 00000144 _____ () C:\service.log 2014-10-07 16:28 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-10-06 22:16 - 2013-08-12 13:30 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\TS3Client 2014-10-06 22:16 - 2013-06-30 12:22 - 01786275 _____ () C:\Windows\WindowsUpdate.log 2014-10-06 22:12 - 2013-11-30 12:44 - 00000000 ____D () C:\Users\Admin\AppData\Local\Battle.net 2014-10-06 22:02 - 2013-07-01 14:09 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-10-06 21:36 - 2014-05-12 19:25 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-10-06 21:29 - 2013-09-03 13:34 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Spotify 2014-10-06 20:11 - 2013-07-02 14:38 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\.minecraft 2014-10-06 20:09 - 2013-09-03 13:34 - 00000000 ____D () C:\Users\Admin\AppData\Local\Spotify 2014-10-06 19:35 - 2013-12-05 19:10 - 00000000 ____D () C:\Users\Admin\Desktop\PSD 2014-10-06 19:13 - 2009-07-14 19:58 - 00702926 _____ () C:\Windows\system32\perfh007.dat 2014-10-06 19:13 - 2009-07-14 19:58 - 00150566 _____ () C:\Windows\system32\perfc007.dat 2014-10-06 19:13 - 2009-07-14 07:13 - 01629212 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-10-06 18:35 - 2013-12-16 20:26 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\vlc 2014-10-06 17:05 - 2013-07-01 14:09 - 00000000 ____D () C:\Users\Admin\AppData\Local\Adobe 2014-10-06 17:02 - 2009-07-14 06:45 - 00022368 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-10-06 17:02 - 2009-07-14 06:45 - 00022368 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-10-06 16:56 - 2014-04-04 18:02 - 00000000 ____D () C:\ProgramData\ProductData 2014-10-05 00:13 - 2013-07-25 11:45 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\foobar2000 2014-10-03 21:14 - 2014-01-02 20:03 - 01924096 ___SH () C:\Users\Admin\Desktop\Thumbs.db 2014-10-03 15:56 - 2013-08-02 09:49 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\OBS 2014-10-02 20:08 - 2013-07-17 13:39 - 00000132 _____ () C:\Users\Admin\AppData\Roaming\Adobe CS6-PNG-Format - Voreinstellungen 2014-10-02 17:49 - 2013-06-30 12:32 - 00000000 ____D () C:\ProgramData\AMD 2014-10-02 17:49 - 2013-06-30 12:31 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-10-02 17:47 - 2013-10-06 10:27 - 00000000 ____D () C:\ProgramData\Package Cache 2014-10-02 17:39 - 2013-07-02 11:22 - 00000000 ____D () C:\AMD 2014-09-30 20:35 - 2014-08-22 11:10 - 00110838 _____ () C:\Windows\DirectX.log 2014-09-30 17:43 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-09-28 11:57 - 2014-07-01 16:08 - 00000000 ____D () C:\Users\Admin\AppData\Local\ftblauncher 2014-09-26 14:08 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-09-26 12:55 - 2013-06-30 13:32 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-09-24 19:02 - 2013-07-01 14:09 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-24 19:02 - 2013-07-01 14:09 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-24 19:02 - 2013-07-01 14:09 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-23 16:55 - 2013-07-01 16:02 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Audacity 2014-09-21 11:11 - 2014-09-06 08:11 - 00001640 _____ () C:\Windows\PFRO.log 2014-09-18 15:59 - 2013-09-07 19:37 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-09-18 15:58 - 2013-08-05 13:14 - 00000000 ____D () C:\Users\Admin\Documents\my games 2014-09-16 19:06 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-09-16 17:26 - 2013-06-30 13:39 - 00000000 ____D () C:\ProgramData\Skype 2014-09-16 00:31 - 2012-07-28 06:09 - 07028336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2014-09-16 00:31 - 2012-07-28 04:15 - 01113576 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2014-09-16 00:31 - 2012-07-28 04:13 - 01335544 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2014-09-16 00:31 - 2012-07-28 03:51 - 10826488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2014-09-16 00:31 - 2012-07-28 03:32 - 07207592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2014-09-16 00:31 - 2012-07-28 03:13 - 00144328 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2014-09-16 00:31 - 2012-07-28 03:13 - 00100032 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2014-09-16 00:00 - 2014-04-18 03:08 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2014-09-15 23:59 - 2012-07-28 03:15 - 01210880 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-09-15 09:06 - 2013-06-30 13:48 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-09-13 17:19 - 2013-06-30 12:35 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-09-13 17:19 - 2013-06-30 12:35 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-09-12 00:18 - 2013-07-01 15:58 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-09-12 00:15 - 2013-07-25 17:45 - 00000000 ____D () C:\Windows\system32\MRT 2014-09-12 00:15 - 2013-07-16 15:33 - 01602556 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-09-12 00:06 - 2013-06-30 13:39 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-09-12 00:05 - 2014-05-06 22:29 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-11 15:52 - 2014-09-03 14:55 - 00001456 _____ () C:\Users\Admin\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2014-09-11 15:52 - 2014-08-28 13:17 - 00000000 ____D () C:\Users\Admin\Desktop\Mein Texturenpack 2014-09-09 13:54 - 2014-03-19 15:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-09-09 13:53 - 2013-07-09 22:26 - 00000000 ____D () C:\Program Files\Java Some content of TEMP: ==================== C:\Users\Admin\AppData\Local\Temp\jansi-64-git-MCPC-Plus-jenkins-MCPC-Plus-164-251.dll C:\Users\Admin\AppData\Local\Temp\jre-8u20-windows-au.exe C:\Users\Admin\AppData\Local\Temp\tmp9443.exe C:\Users\Admin\AppData\Local\Temp\vlc-2.1.5-win64.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-09-26 14:00 ==================== End Of Log ============================ --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-10-2014 01 Ran by Admin at 2014-10-07 16:33:21 Running from C:\Users\Admin\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: ESET Smart Security 4.2 (Enabled - Out of date) {CB0F8167-5331-BA19-698E-64816B6801A5} AS: ESET Smart Security 4.2 (Enabled - Out of date) {706E6083-750B-B597-533E-5FF310EF4B18} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: ESET Personal Firewall (Enabled) {F3340042-195E-BB41-42D1-CDB495BB46DE} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Acer eDisplay Management (HKLM-x32\...\{A586DC50-B18D-48FB-B7CC-A598200457C2}) (Version: 1.37.007 - Portrait Displays, Inc.) Adobe After Effects CC 2014 (HKLM-x32\...\{2B22C750-5C3B-4738-B621-BA786AC7A494}) (Version: 13.0.2 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 3.1.0.4880 - Adobe Systems Incorporated) Hidden Adobe Bridge 1.0 (x32 Version: 1.0.1.1 - Adobe Systems) Hidden Adobe Bridge CC (64 Bit) (HKLM-x32\...\{359F8007-6486-429C-A8C5-D67F6897C88C}) (Version: 6.0 - Adobe Systems Incorporated) Adobe Common File Installer (x32 Version: 1.00.002 - Adobe System Incorporated) Hidden Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.7.1.418 - Adobe Systems Incorporated) Adobe Exchange Panel (HKLM-x32\...\{41A12FFC-89E9-4743-A51E-00975CA31F40}) (Version: 1 - Adobe Systems Incorporated) Adobe ExtendScript Toolkit CC (HKLM-x32\...\{6297487E-3778-4F72-B458-55690418DB98}) (Version: 4.0.0.0 - Adobe Systems Incorporated) Adobe Extension Manager CC (HKLM-x32\...\{244FD30F-63F1-49B9-9D98-1150FF4FFCB1}) (Version: 7.2.1 - Adobe Systems Incorporated) Adobe Extension Manager CS6 (HKLM-x32\...\{83463106-DD1C-4FE5-A61C-DF6715472AD4}) (Version: 6.0.8 - Adobe Systems Incorporated) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated) Adobe Help Center 2.0 (x32 Version: 2.0.0 - Adobe Systems) Hidden Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Help Manager (x32 Version: 4.0.244 - Adobe Systems Incorporated) Hidden Adobe Illustrator CC (HKLM-x32\...\{F2321021-08A2-44D6-B1DF-BDB415F23EC3}) (Version: 17.0 - Adobe Systems Incorporated) Adobe Media Encoder CC 2014 (HKLM-x32\...\{663DEEEF-EF34-4DCB-8687-73A7AA146E02}) (Version: 8.0.1 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Premiere Pro 2.0 (HKLM-x32\...\Adobe Premiere Pro 2.0) (Version: 2.000.000 - Adobe Systems, Inc.) Adobe Premiere Pro 2.0 (x32 Version: 2.000.000 - Adobe Systems, Inc.) Hidden Adobe Reader XI (11.0.09) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated) Adobe Stock Photos 1.0 (x32 Version: 1.0.2 - Adobe Systems) Hidden Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.) Adobe Widget Browser (x32 Version: 2.0.348 - Adobe Systems Incorporated.) Hidden Age of Empires II - the Conquerors WideScreen Patcher (HKLM-x32\...\{BA2F3EBC-FE07-4AB5-B906-14DF2C74C523}) (Version: 1.0.40 - Boekabart) AMD Accelerated Video Transcoding (Version: 13.30.100.40915 - Advanced Micro Devices, Inc.) Hidden AMD APP SDK Runtime (Version: 10.0.938.2 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2014.0915.1813.30937 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (HKLM\...\{C2956908-53A3-88FC-B795-B16508296FC4}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (Version: 2014.0915.1813.30937 - Ihr Firmenname) Hidden AMD Media Foundation Decoders (Version: 1.0.81107.1147 - Advanced Micro Devices, Inc.) Hidden AMD Steady Video Plug-In (Version: 2.07.0000 - AMD) Hidden AMD Wireless Display v3.0 (Version: 1.0.0.14 - Advanced Micro Devices, Inc.) Hidden AMD Wireless Display v3.0 (Version: 1.0.0.15 - Advanced Micro Devices, Inc.) Hidden Anker Precision Laser Gaming Mouse version 1.3 (HKLM-x32\...\{F9A7ED2C-34E1-4A96-9A25-B022C23C3361}_is1) (Version: 1.3 - ANKER Technology) ANNO 1404 - Venedig (HKLM-x32\...\{A07B2C21-863B-47AB-AE7E-20BB00BD7D33}) (Version: 2.01.5010 - Ubisoft) ANNO 1404 (HKLM-x32\...\{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}) (Version: 1.03.0000 - Ubisoft) Anno 1404 (x32 Version: 1.00.0000 - Ubisoft) Hidden ANNO 2070 (HKLM-x32\...\{B48E264C-C8CD-4617-B0BE-46E977BAD694}) (Version: 1.0.0.0 - Ubisoft) Anno 2170 - A.R.R.C. (HKLM-x32\...\Anno 2170 - A.R.R.C.2.071) (Version: 2.071 - NeoVanAlemania) Any Video Converter 5.6.6 (HKLM-x32\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com) Apple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Application Profiles (HKLM-x32\...\{63059735-CA97-FDFB-0E7A-3B8D81572EFD}) (Version: 2.0.4888.34279 - Advanced Micro Devices, Inc.) Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive) Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive) Assassins Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft) Audacity 2.0.3 (HKLM-x32\...\Audacity_is1) (Version: 2.0.3 - Audacity Team) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlefield™ Hardline Beta (HKLM-x32\...\{599276A7-F45D-40B1-A0B6-CF132A1CAD49}) (Version: 1.0.0.5 - Electronic Arts) BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - ) bl (x32 Version: 1.0.0 - Your Company Name) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) Burnout™ Paradise: The Ultimate Box (HKLM-x32\...\{9A996B6A-846E-4A89-B9C4-17546B7BE49F}) (Version: 1.1.0.0 - Electronic Arts) Call of Duty: Ghosts - Multiplayer (HKLM-x32\...\Steam App 209170) (Version: - ) Call of Duty: Modern Warfare 3 (HKLM-x32\...\Steam App 42680) (Version: - Infinity Ward) Castle Story (HKLM-x32\...\Steam App 227860) (Version: - Sauropod Studio) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2014.0915.1813.30937 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0915.1813.30937 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2014.0915.1813.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2014.0915.1813.30937 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.13 - Piriform) CINEMA 4D 14.034 (HKLM\...\MAXON088B2B70) (Version: 14.034 - MAXON Computer GmbH) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive) DayZ Commander (HKLM-x32\...\{99C28455-E285-4639-B4C6-9F747C0C3D4C}) (Version: 0.92.90 - Dotjosh Studios) Dead Space™ 3 (HKLM-x32\...\{D4329609-4102-4F8C-B83F-7FE024EEA314}) (Version: 1.0.0.0 - Electronic Arts, Inc.) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Die Siedler III Gold Edition (HKLM-x32\...\S3) (Version: - ) Die Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.) Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.7000.7 - Dolby Laboratories Inc) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) Dota 2 Test (HKLM-x32\...\Steam App 205790) (Version: - ) Dxtory version 2.0.122 (HKLM-x32\...\Dxtory2.0_is1) (Version: 2.0.122 - Dxtory Software) EA Sports FIFA World (HKLM-x32\...\{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}) (Version: 7.1.0.50515 - Electronic Arts, Inc.) EasySaver B9.1214.1 (HKLM-x32\...\{07300F01-89CA-4CF8-92BD-2A605EB83C95}) (Version: 1.00.0000 - Gigabyte) ESET Smart Security (HKLM\...\{8D8DC5D8-2430-4417-A8CC-B4A4ACFC1FA2}) (Version: 4.2.40.10 - ESET, spol s r. o.) Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.115 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.115 - Etron Technology) Hidden Far Cry 3 (HKLM-x32\...\{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}) (Version: 1.05 - Ubisoft) ffDiaporama Texturemate-extension 1.0 (20140125) (HKLM\...\{E489A7CD-01F1-47DF-9E7E-9CA44CCC1966}.tmt_is1) (Version: 1.0 (20140125) - The ffDiaporama Team) FileZilla Client 3.9.0.3 (HKCU\...\FileZilla Client) (Version: 3.9.0.3 - Tim Kosse) foobar2000 v1.2.9 (HKLM-x32\...\foobar2000) (Version: 1.2.9 - Peter Pawlowski) Fotogalerie (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Gigabyte Raid Configurer (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.17.63.1 - GIGABYTE Technologies, Inc.) GlassFish Server Open Source Edition 4.0 (HKLM\...\nbi-glassfish-mod-4.0.0.89.0) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.124 - Google Inc.) Google Update Helper (x32 Version: 1.3.23.0 - BonanzaDeals) Hidden <==== ATTENTION Gothic (HKLM-x32\...\Steam App 65540) (Version: - Piranha – Bytes ) Gothic 3 (HKLM-x32\...\Steam App 39500) (Version: - Piranha – Bytes ) Gothic II: Gold Edition (HKLM-x32\...\Steam App 39510) (Version: - Piranha – Bytes) Gothic_Patch (HKLM-x32\...\{302AC480-43D2-11D5-A818-00500435FC18}) (Version: - ) GOTHIC1 - Classic - 'System-Paket' (HKLM-x32\...\GOTHIC1 - Classic - 'System-Paket') (Version: 1.0 - World of Gothic RU © 2014) Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) HeidiSQL (HKLM\...\HeidiSQL_is1) (Version: - Ansgar Becker) HeidiSQL 8.1.0.4545 (HKLM-x32\...\HeidiSQL_is1) (Version: 8.1 - Ansgar Becker) Heroes & Generals (HKLM-x32\...\Steam App 227940) (Version: - Reto-Moto) iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: 11.2.2.3 - Apple Inc.) Java 7 Update 67 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417067FF}) (Version: 7.0.670 - Oracle) Java SE Development Kit 8 Update 5 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180050}) (Version: 8.0.50 - Oracle Corporation) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) K-Lite Mega Codec Pack 9.9.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.9.0 - ) Lagarith Lossless Codec (1.3.27) (HKLM-x32\...\{F59AC46C-10C3-4023-882C-4212A92283B3}_is1) (Version: - ) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.236 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.236 - LogMeIn, Inc.) Hidden marvell 91xx driver (HKLM-x32\...\MagniDriver) (Version: 1.1.0.6 - Marvell) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Age of Empires Gold (HKLM-x32\...\Age of Empires Gold 1.0) (Version: - ) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Groove MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Rise Of Nations (HKLM-x32\...\RiseOfNations 1.0) (Version: - Microsoft) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFCLOC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.2.173.0 - Microsoft Corporation) Microsoft-Maus- und Tastatur-Center (Version: 2.2.173.0 - Microsoft Corporation) Hidden MobMap 5.40 (HKLM-x32\...\MobMap_is1) (Version: - Slarti on EU-Blackhand) MoonTools Version 1.7 (HKLM-x32\...\{61946000-8054-4452-B5F9-719D35D899D8}_is1) (Version: 1.7 - DotExE) Movie Maker (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Mozilla Firefox 32.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 de)) (Version: 32.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) MSI Afterburner 2.3.1 (HKLM-x32\...\Afterburner) (Version: 2.3.1 - MSI Co., LTD) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MSXML4 Parser (HKLM-x32\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios) MTA:SA v1.3.3 (HKLM-x32\...\MTA:SA 1.3) (Version: v1.3.3 - Multi Theft Auto) Need For Speed™ World (HKLM-x32\...\{3AF1B16A-7DC9-4C80-BAEC-70B088A7C5B8}) (Version: 1.0.0.0 - Electronic Arts) Need For Speed™ World (HKLM-x32\...\{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1) (Version: 1.0.0.1599 - Electronic Arts) NetBeans IDE 8.0 (HKLM\...\nbi-nb-base-8.0.0.0.201403101706) (Version: 8.0 - NetBeans.org) NetSpeedMonitor 2.5.4.0 x64 (HKLM\...\{88F41EE2-949B-4B52-933D-C7F8F67BC1D2}) (Version: 2.5.4.0 - Florian Gilles) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.7 - Notepad++ Team) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) ON_OFF Charge B11.1102.1 (HKLM-x32\...\{3DECD372-76A1-4483-BF10-B547790A3261}) (Version: 1.00.0001 - GIGABYTE) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenSSL 1.0.1e (64-bit) (HKLM\...\OpenSSL (64-bit)_is1) (Version: - OpenSSL Win64 Installer Team) OpenTTD 1.4.2 (HKLM-x32\...\OpenTTD) (Version: 1.4.2 - OpenTTD) Orcs Must Die! 2 (HKLM-x32\...\Steam App 201790) (Version: - Robot Entertainment) Origin (HKLM-x32\...\Origin) (Version: 9.2.1.4399 - Electronic Arts, Inc.) Overwolf (HKLM-x32\...\{48615A7B-F026-4F62-A3F1-49001B8E21CB}) (Version: 0.44.256 - Overwolf) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.) PantsOff 2.0 (HKLM-x32\...\{EC1F15E1-F3CC-46EE-B7A5-849A08ED60DC}}_is1) (Version: 2.0 - Christoph Bünger Software) PAYDAY 2 (HKLM-x32\...\Steam App 218620) (Version: - OVERKILL - a Starbreeze Studio.) PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Pflanzen gegen Zombies™ (HKLM-x32\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: 1.2.0.1093 - Electronic Arts, Inc.) ph (x32 Version: 1.0.0 - Your Company Name) Hidden Photo Gallery (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Pivot Pro Plugin (x32 Version: 9.50.110 - Portrait Displays, Inc.) Hidden PlanetSide 2 (HKCU\...\SOE-PlanetSide 2 PSG) (Version: 1.0.3.183 - Sony Online Entertainment) PlanetSide 2 (HKLM-x32\...\Steam App 218230) (Version: - Sony Online Entertainment) PremiumSoft Navicat Lite 10.0 (HKLM-x32\...\PremiumSoft Navicat Lite_is1) (Version: - PremiumSoft CyberTech Ltd.) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) Raptr (HKLM-x32\...\Raptr) (Version: - ) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.48.823.2011 - Realtek) Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.6409 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6482 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver and Utility (HKLM-x32\...\{9C049499-055C-4a0c-A916-1D8CA1FF45EB}) (Version: 1.00.0187 - REALTEK Semiconductor Corp.) Rise of Nations Thrones and Patriots (HKLM-x32\...\RiseofNationsExpansion 1.0) (Version: - ) Robocraft (HKLM-x32\...\Steam App 301520) (Version: - Freejam) Samplitude Pro X Silver (HKLM-x32\...\MAGIX_{86460AB2-75D3-400D-B9A8-232EC729192E}) (Version: 12.0.2.115 - MAGIX AG) Samplitude Pro X Silver (Version: 12.0.2.115 - MAGIX AG) Hidden Samplitude Pro X Silver 64-Bit Addon for Samplitude Pro X Silver (HKLM-x32\...\{DA120551-51CE-3195-8F9E-93D822F61597}) (Version: 1.3.0.0 - MAGIX AG) Samplitude Pro X Silver Independence Free for Samplitude Pro X Silver (HKLM-x32\...\{E80D368A-7860-33B0-AD3C-4C94D8023141}) (Version: 1.3.0.0 - MAGIX AG) Samplitude Pro X Silver Objekt-Synthesizer for Samplitude Pro X Silver (HKLM-x32\...\{D1B56A67-E132-39BB-8250-BE265061B712}) (Version: 1.0.0.0 - MAGIX AG) SAMSUNG Mobile Composite Device Software (HKLM\...\SAMSUNG Mobile Composite Device) (Version: - ) SAMSUNG Mobile Modem Driver Set (HKLM\...\SAMSUNG Mobile Modem) (Version: - ) Samsung Mobile phone USB driver Drive Software (HKLM\...\Samsung Mobile phone USB driver Drive) (Version: - ) SAMSUNG Mobile USB Modem 1.0 Software (HKLM\...\SAMSUNG Mobile USB Modem 1.0) (Version: - ) SAMSUNG Mobile USB Modem Software (HKLM\...\SAMSUNG Mobile USB Modem) (Version: - ) Samsung SSD Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 3.2 - Samsung Electronics) SDK (x32 Version: 2.32.010 - Portrait Displays, Inc.) Hidden SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts) Skype™ 6.20 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.20.104 - Skype Technologies S.A.) Space Engineers (HKLM-x32\...\Steam App 244850) (Version: - ) Spintires (HKLM-x32\...\Steam App 263280) (Version: - Oovee® Game Studios) Spotify (HKCU\...\Spotify) (Version: 0.9.13.24.g5dbb3103 - Spotify AB) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) StarCraft II Public Test (HKLM-x32\...\StarCraft II Public Test) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Sublime Text Build 3059 (HKLM\...\Sublime Text 3_is1) (Version: - Sublime HQ Pty Ltd) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.11 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.24482 - TeamViewer) The Crew (Beta) (HKLM-x32\...\Uplay Install 750) (Version: - Ubisoft) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) TL-WN821N Wireless Utility (HKLM-x32\...\{E8CFA6A1-2FBE-4062-B40D-9E15E2443EC4}) (Version: 7.0 - TP-LINK) Tower Wars (HKLM-x32\...\Steam App 214360) (Version: - SuperVillain Studios) TP-LINK TL-WN821N Driver (HKLM-x32\...\{26B52E5B-1620-4676-9B46-B6C56B8105CE}) (Version: 1.2.1 - TP-LINK) TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.2.1 - TP-LINK) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{EA54F104-79D2-48CC-9ABC-91A63C43D353}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2889914) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{F3F83933-75FC-4B60-84F2-3F8FA63D042E}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 3.0 - Ubisoft) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) War Thunder Launcher 1.0.1.269 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - 2013 Gaijin Entertainment Corporation) Warcraft III (HKLM-x32\...\Warcraft III) (Version: - ) Warcraft III: All Products (HKCU\...\Warcraft III) (Version: - ) WD SmartWare (HKLM\...\{6F482C75-174D-42EB-A2CF-B00A1F354F7B}) (Version: 1.4.1.1 - Western Digital) WildStar (HKLM-x32\...\WildStar) (Version: - NCSOFT) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Windows Live Communications Platform (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3522.0110 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden WinHTTrack Website Copier 3.48-19 (x64) (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.48.19 - HTTrack) WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) World of Warcraft Beta (HKLM-x32\...\World of Warcraft Beta) (Version: - Blizzard Entertainment) World of Warcraft Public Test (HKLM-x32\...\World of Warcraft Public Test) (Version: - Blizzard Entertainment) Worms Clan Wars (HKLM-x32\...\Steam App 233840) (Version: - Team17 Digital Ltd) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-803591714-1062673447-4054266202-1000_Classes\CLSID\{083f5ae0-2b0a-11dd-bd0b-0800200c9a66}\InprocServer32 -> mscoree.dll No File CustomCLSID: HKU\S-1-5-21-803591714-1062673447-4054266202-1000_Classes\CLSID\{2F5DA951-82C6-471e-90BD-CAB15552A932}\InprocServer32 -> mscoree.dll No File CustomCLSID: HKU\S-1-5-21-803591714-1062673447-4054266202-1000_Classes\CLSID\{6fb537c7-2a85-43d9-bb10-7d0790421ab5}\InprocServer32 -> dfshim.dll No File CustomCLSID: HKU\S-1-5-21-803591714-1062673447-4054266202-1000_Classes\CLSID\{771CF1A6-FC96-45cf-B011-6469F0E56F64}\InprocServer32 -> mscoree.dll No File CustomCLSID: HKU\S-1-5-21-803591714-1062673447-4054266202-1000_Classes\CLSID\{97D17A04-4438-4C8E-BAC7-BC21B8B9E999}\InprocServer32 -> mscoree.dll No File ==================== Restore Points ========================= ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-11-09 12:29 - 2013-11-09 12:29 - 00000911 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {1072EB91-3FC5-4473-985F-9BC0C1A11C5C} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {23BD2B5C-542E-458B-91E6-B6076849F33A} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {23FCE417-76E9-49C7-92B2-1EEE22E832CE} - System32\Tasks\AdobeAAMUpdater-1.0-Daniel-Admin => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27] (Adobe Systems Incorporated) Task: {3508B527-20D5-4088-BA98-38B2E50C4EF6} - System32\Tasks\{649540F5-EF11-4DA2-851C-E41D2B691565} => msiexec.exe Task: {3C94D2F8-0451-4EED-9C79-56BE4A55B462} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-05-13] (Microsoft) Task: {5CC143E1-3F9C-4C21-A016-0BEE2664B745} - System32\Tasks\FRAPS => D:\Fraps\fraps.exe [2012-08-30] (Beepa P/L) Task: {8D8D2016-D475-49FB-922D-4A8913E837FF} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {90979573-3B63-40C2-96E8-AB1BBF8B7251} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-12] (Google Inc.) Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - System32\Tasks\Microsoft\Windows\Application Experience\AitAgent => aitagent.exe Task: {ACB8B6EE-56A6-4BF3-A443-D84BBABF9248} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-12] (Google Inc.) Task: {B30A6121-AB60-437E-B49A-424F03EDD20C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-24] (Adobe Systems Incorporated) Task: {C2BCA413-1CCD-4663-9C39-04820FA685E0} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {C7D32A7D-8F21-49AA-9631-613404B0985D} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {E1C98C25-2CB8-4F3A-939E-F74CC8714F46} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-04-17] (Piriform Ltd) Task: {E3163C33-301D-4730-A266-5518C5ED3967} - System32\Tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask => BthUdTask.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-09-15 18:13 - 2014-09-15 18:13 - 00214528 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll 2014-02-11 07:08 - 2014-02-11 07:08 - 00817152 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll 2014-02-11 07:08 - 2014-02-11 07:08 - 03650560 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll 2014-09-15 18:13 - 2014-09-15 18:13 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2013-10-19 11:40 - 2012-04-13 12:18 - 00133936 _____ () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\dtsslsrv.exe 2013-06-30 12:36 - 2009-08-24 14:38 - 00068136 _____ () C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE 2013-06-30 12:35 - 2010-09-07 11:46 - 00072280 ____R () C:\Windows\SysWOW64\XSrvSetup.exe 2013-07-01 20:01 - 2014-06-14 14:09 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2010-09-08 10:45 - 2010-09-08 10:45 - 01034752 _____ () C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe 2010-09-08 10:44 - 2010-09-08 10:44 - 00485376 _____ () C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe 2012-01-12 12:23 - 2012-01-12 12:23 - 00018432 _____ () C:\Users\Admin\AppData\LocalLow\WOT\IE\WOTUpdater.exe 2014-07-16 11:06 - 2014-07-16 11:06 - 00672416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll 2014-05-01 21:29 - 2014-05-01 21:29 - 00098304 _____ () D:\Programme\FileZilla FTP Client\fzshellext_64.dll 2013-06-30 13:35 - 2013-06-30 13:35 - 00012520 _____ () C:\Users\Admin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.3.gadget\CoreTempReader.dll 2013-06-30 13:35 - 2013-06-30 13:35 - 00015080 _____ () C:\Users\Admin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.3.gadget\GetCoreTempInfoNET.dll 2013-06-30 13:35 - 2013-06-30 13:35 - 00014056 _____ () C:\Users\Admin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.3.gadget\SystemInfo.dll 2014-09-15 18:13 - 2014-09-15 18:13 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2014-07-16 11:05 - 2014-07-16 11:05 - 05558432 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe 2014-02-12 21:58 - 2014-02-12 21:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-02-12 21:58 - 2014-02-12 21:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2013-10-19 11:40 - 2004-11-17 16:49 - 04603904 _____ () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\qt-mt332.dll 2013-10-19 11:40 - 2012-04-13 12:18 - 00162608 _____ () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\SSLEAY32.dll 2013-10-19 11:40 - 2012-04-13 12:18 - 00805680 _____ () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\LIBEAY32.dll 2013-06-30 12:36 - 2009-03-13 11:30 - 00109096 _____ () C:\Program Files (x86)\Gigabyte\EasySaver\YCC.DLL 2010-03-05 10:24 - 2010-03-05 10:24 - 00886272 _____ () C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\System.Data.SQLite.dll 2014-01-29 15:06 - 2014-09-16 17:28 - 00962560 _____ () C:\Program Files (x86)\Origin\platforms\qwindows.dll 2014-01-29 15:06 - 2014-09-16 17:28 - 00024064 _____ () C:\Program Files (x86)\Origin\imageformats\qgif.dll 2014-01-29 15:06 - 2014-09-16 17:28 - 00025088 _____ () C:\Program Files (x86)\Origin\imageformats\qico.dll 2014-01-29 15:06 - 2014-09-16 17:28 - 00217088 _____ () C:\Program Files (x86)\Origin\imageformats\qjpeg.dll 2014-01-29 15:06 - 2014-09-16 17:28 - 00261632 _____ () C:\Program Files (x86)\Origin\imageformats\qmng.dll 2014-01-29 15:06 - 2014-09-16 17:28 - 00019968 _____ () C:\Program Files (x86)\Origin\imageformats\qtga.dll 2014-01-29 15:06 - 2014-09-16 17:28 - 00302592 _____ () C:\Program Files (x86)\Origin\imageformats\qtiff.dll 2014-01-29 15:06 - 2014-09-16 17:28 - 00018944 _____ () C:\Program Files (x86)\Origin\imageformats\qwbmp.dll 2014-08-29 11:56 - 2014-08-21 20:15 - 01171456 _____ () D:\Programmme\Steam\libavcodec-56.dll 2014-08-29 11:56 - 2014-08-21 20:15 - 00442368 _____ () D:\Programmme\Steam\libavutil-54.dll 2014-08-29 11:56 - 2014-08-21 20:15 - 00332800 _____ () D:\Programmme\Steam\libavresample-2.dll 2013-05-06 17:05 - 2014-09-03 21:28 - 00774656 _____ () D:\Programmme\Steam\SDL2.dll 2014-05-22 18:11 - 2014-09-23 06:32 - 02226880 _____ () D:\Programmme\Steam\video.dll 2014-08-29 11:56 - 2014-08-21 20:15 - 00403968 _____ () D:\Programmme\Steam\libavformat-56.dll 2014-08-29 11:56 - 2014-08-21 20:15 - 00485888 _____ () D:\Programmme\Steam\libswscale-3.dll 2013-06-06 14:06 - 2014-09-23 06:32 - 00679616 _____ () D:\Programmme\Steam\bin\chromehtml.DLL 2014-07-03 06:45 - 2014-07-03 06:45 - 32733056 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libcef.dll 2014-09-13 17:19 - 2009-12-09 21:20 - 00126976 _____ () C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\EnumDevLib.dll 2013-03-26 16:16 - 2014-09-05 01:29 - 34589376 _____ () D:\Programmme\Steam\bin\libcef.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll 2010-11-23 00:57 - 2010-11-23 00:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll 2010-11-23 00:57 - 2010-11-23 00:57 - 00016384 _____ () C:\Program Files (x86)\Raptr\win32trace.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd 2014-06-18 02:56 - 2014-06-18 02:56 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll 2010-11-23 01:06 - 2010-11-23 01:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll 2014-07-03 06:45 - 2014-07-03 06:45 - 00742784 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libglesv2.dll 2014-07-03 06:45 - 2014-07-03 06:45 - 00136576 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libegl.dll 2014-09-25 13:41 - 2014-09-25 13:41 - 03715184 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData:NT AlternateDataStreams: C:\Users\All Users:NT AlternateDataStreams: C:\Users\Admin\Anwendungsdaten:NT AlternateDataStreams: C:\Users\Admin\AppData\Roaming:NT AlternateDataStreams: C:\Users\Admin\AppData\Local\CXT0SSgtohQHN:17qoeUKPiiMyP6RMi9VEZ3TfgVKf AlternateDataStreams: C:\ProgramData\Anwendungsdaten:NT AlternateDataStreams: C:\ProgramData\Application Data:NT AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT AlternateDataStreams: C:\ProgramData\TEMP:B3ED3AFF ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe ========================= Accounts: ========================== Admin (S-1-5-21-803591714-1062673447-4054266202-1000 - Administrator - Enabled) => C:\Users\Admin Administrator (S-1-5-21-803591714-1062673447-4054266202-500 - Administrator - Disabled) asdasd (S-1-5-21-803591714-1062673447-4054266202-1008 - Limited - Enabled) => C:\Users\asdasd Gast (S-1-5-21-803591714-1062673447-4054266202-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-803591714-1062673447-4054266202-1003 - Limited - Enabled) Jugendschutz (S-1-5-21-803591714-1062673447-4054266202-1009 - Limited - Enabled) => C:\Users\Jugendschutz ==================== Faulty Device Manager Devices ============= Name: Realtek PCIe GBE Family Controller Description: Realtek PCIe GBE Family Controller Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Realtek Service: RTL8167 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (10/06/2014 09:36:00 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. Das angegebene Konto ist bereits vorhanden. Error: (10/06/2014 08:36:00 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. Das angegebene Konto ist bereits vorhanden. Error: (10/06/2014 07:36:15 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. Das angegebene Konto ist bereits vorhanden. Error: (10/06/2014 06:36:00 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. Das angegebene Konto ist bereits vorhanden. Error: (10/06/2014 05:36:00 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. Das angegebene Konto ist bereits vorhanden. Error: (10/05/2014 09:36:00 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. Das angegebene Konto ist bereits vorhanden. Error: (10/05/2014 08:36:00 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. Das angegebene Konto ist bereits vorhanden. Error: (10/05/2014 07:36:00 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. Das angegebene Konto ist bereits vorhanden. Error: (10/05/2014 07:00:00 PM) (Source: Windows Backup) (EventID: 4103) (User: ) Description: Die Sicherung wurde aufgrund eines Fehlers beim Schreiben am Sicherungsspeicherort "I:\" nicht abgeschlossen. Fehler: "Der Sicherungsort wurde nicht gefunden oder ist ungültig. Überprüfen Sie die Sicherungseinstellungen und den Sicherungsort. (0x81000006)" Error: (10/05/2014 06:36:00 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT-AUTORITÄT) Description: Product: Google Update Helper -- Error 1316. Das angegebene Konto ist bereits vorhanden. System errors: ============= Error: (10/07/2014 04:29:45 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (10/07/2014 04:28:44 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: StarOpen Error: (10/07/2014 04:28:26 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\StarOpen.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (10/06/2014 10:16:23 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "Apache2.2" wurde mit folgendem dienstspezifischem Fehler beendet: %%1. Error: (10/06/2014 06:09:47 PM) (Source: NetBT) (EventID: 4311) (User: ) Description: Es ist ein Initialisierungsfehler aufgetreten, da der Treiber nicht erstellt werden konnte. Verwenden Sie die Zeichenfolge "00872525350E", um die Schnittstelle zu identifizieren, die nicht initialisiert werden konnte. Sie stellt die MAC-Adresse der Schnittstelle mit dem Initialisierungsfehler oder die GUID (Globally Unique Interface Identifier) dar, wenn NetBT keine Zuordnung von der GUID zur MAC-Adresse herstellen konnte. Wenn weder die MAC-Adresse noch die GUID verfügbar waren, dann stellt die Zeichenfolge einen Clustergerätenamen dar. Error: (10/06/2014 06:09:47 PM) (Source: NetBT) (EventID: 4311) (User: ) Description: Es ist ein Initialisierungsfehler aufgetreten, da der Treiber nicht erstellt werden konnte. Verwenden Sie die Zeichenfolge "00872525350E", um die Schnittstelle zu identifizieren, die nicht initialisiert werden konnte. Sie stellt die MAC-Adresse der Schnittstelle mit dem Initialisierungsfehler oder die GUID (Globally Unique Interface Identifier) dar, wenn NetBT keine Zuordnung von der GUID zur MAC-Adresse herstellen konnte. Wenn weder die MAC-Adresse noch die GUID verfügbar waren, dann stellt die Zeichenfolge einen Clustergerätenamen dar. Error: (10/06/2014 04:56:47 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (10/06/2014 04:55:47 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: StarOpen Error: (10/06/2014 04:55:31 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\StarOpen.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (10/05/2014 10:15:13 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "Apache2.2" wurde mit folgendem dienstspezifischem Fehler beendet: %%1. Microsoft Office Sessions: ========================= ==================== Memory info =========================== Processor: AMD FX(tm)-8350 Eight-Core Processor Percentage of memory in use: 32% Total physical RAM: 16365.24 MB Available physical RAM: 11049.18 MB Total Pagefile: 32728.66 MB Available Pagefile: 27525.67 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.79 GB) (Free:11.74 GB) NTFS Drive d: () (Fixed) (Total:931.41 GB) (Free:46.35 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 5323D020) Partition 1: (Not Active) - (Size=111.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 5323D038) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
07.10.2014, 17:01 | #4 |
/// Malwareteam | Internet [ W-Lan ] laggt total nur an einem bestimmten Computer Hallo da ist ja schon einiges an Tools gelaufen bei dir auf dem Rechner.... Schritt 1: Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
Schritt 2: Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 3: Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 4: erstelle bitte ein neues FRST Logfile und poste es hier |
07.10.2014, 19:13 | #5 |
| Internet [ W-Lan ] laggt total nur an einem bestimmten Computer Bei mir gibt es keinen Google Update Helper in der Liste. |
08.10.2014, 14:36 | #6 |
/// Malwareteam | Internet [ W-Lan ] laggt total nur an einem bestimmten Computer Dann bitte mit Schritt 2 weitermachen
__________________ --> Internet [ W-Lan ] laggt total nur an einem bestimmten Computer |
10.10.2014, 13:25 | #7 |
| Internet [ W-Lan ] laggt total nur an einem bestimmten ComputerCode:
ATTFilter # AdwCleaner v3.311 - Bericht erstellt am 10/10/2014 um 13:37:20 # Aktualisiert 30/09/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Admin - DANIEL # Gestartet von : C:\Users\Admin\Downloads\AdwCleaner_3.311.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\apn Ordner Gelöscht : C:\ProgramData\BonanzaDealsLive Ordner Gelöscht : C:\ProgramData\WinterSoft Ordner Gelöscht : C:\ProgramData\Duownloadd keepero Ordner Gelöscht : C:\Users\Admin\AppData\Local\BonanzaDealsLive Ordner Gelöscht : C:\Users\Admin\AppData\Local\eSupport.com Ordner Gelöscht : C:\Users\Admin\AppData\Local\Mobogenie Ordner Gelöscht : C:\Users\Admin\AppData\Roaming\Mysearchdial Ordner Gelöscht : C:\Users\Admin\Documents\Mobogenie Ordner Gelöscht : C:\Users\asdasd\AppData\Local\Temp\apn Ordner Gelöscht : C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff Datei Gelöscht : C:\END Datei Gelöscht : C:\Users\Admin\AppData\Local\mysearchdial-speeddial.crx [x] Nicht Gelöscht : C:\Users\Admin\Desktop\Youtube.lnk Datei Gelöscht : C:\Users\asdasd\AppData\Roaming\Mozilla\Firefox\Profiles\f6m0srlz.default\searchplugins\ask-search.xml Datei Gelöscht : C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\user.js Datei Gelöscht : C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstorage ***** [ Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\updatewhilokii_rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\updatewhilokii_rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\BonanzaDealsLive.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{50F7F0BE-31BA-4145-BD8B-6B0DECFED804} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} Schlüssel Gelöscht : HKCU\Software\BonanzaDealsLive Schlüssel Gelöscht : HKCU\Software\ClickConnect Schlüssel Gelöscht : HKCU\Software\Conduit Schlüssel Gelöscht : HKCU\Software\eSupport.com Schlüssel Gelöscht : HKCU\Software\InstallCore Schlüssel Gelöscht : HKCU\Software\mysearchdial.com Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKLM\SOFTWARE\systweak ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17280 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] -\\ Mozilla Firefox v32.0.3 (x86 de) [ Datei : C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\prefs.js ] Zeile gelöscht : user_pref("extensions.irmysearch.aflt", "irmsd1103"); Zeile gelöscht : user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1Qzu0AtD0FtA0CtCtC0AzyyB0B0B0A0B0C0DtN0D0Tzu0SyCzzzytN1L2XzutBtFtBtFtCtAtFtCtAtAzztN1L1CzutCtD1B1P1R"); Zeile gelöscht : user_pref("extensions.irmysearch.cr", "435734064"); Zeile gelöscht : user_pref("extensions.irmysearch.instlRef", ""); Zeile gelöscht : user_pref("extensions.mysearchdial.aflt", "irmsd1103"); Zeile gelöscht : user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}"); Zeile gelöscht : user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1Qzu0AtD0FtA0CtCtC0AzyyB0B0B0A0B0C0DtN0D0Tzu0SyCzzzytN1L2XzutBtFtBtFtCtAtFtCtAtAzztN1L1CzutCtD1B1P1R"); Zeile gelöscht : user_pref("extensions.mysearchdial.cr", "435734064"); Zeile gelöscht : user_pref("extensions.mysearchdial.dfltLng", ""); Zeile gelöscht : user_pref("extensions.mysearchdial.dfltSrch", true); Zeile gelöscht : user_pref("extensions.mysearchdial.dnsErr", true); Zeile gelöscht : user_pref("extensions.mysearchdial.excTlbr", false); Zeile gelöscht : user_pref("extensions.mysearchdial.hmpg", true); Zeile gelöscht : user_pref("extensions.mysearchdial.hmpgUrl", "hxxp://start.mysearchdial.com/?f=1&a=irmsd1103&cd=2XzuyEtN2Y1L1Qzu0AtD0FtA0CtCtC0AzyyB0B0B0A0B0C0DtN0D0Tzu0SyCzzzytN1L2XzutBtFtBtFtCtAtFtCtAtAzztN1L1CzutC[...] Zeile gelöscht : user_pref("extensions.mysearchdial.id", "A0F3C11A97BBABCD"); Zeile gelöscht : user_pref("extensions.mysearchdial.instlDay", "16028"); Zeile gelöscht : user_pref("extensions.mysearchdial.instlRef", ""); Zeile gelöscht : user_pref("extensions.mysearchdial.newTabUrl", "hxxp://start.mysearchdial.com/?f=2&a=irmsd1103&cd=2XzuyEtN2Y1L1Qzu0AtD0FtA0CtCtC0AzyyB0B0B0A0B0C0DtN0D0Tzu0SyCzzzytN1L2XzutBtFtBtFtCtAtFtCtAtAzztN1L1Czu[...] Zeile gelöscht : user_pref("extensions.mysearchdial.prdct", "mysearchdial"); Zeile gelöscht : user_pref("extensions.mysearchdial.prtnrId", "mysearchdial"); Zeile gelöscht : user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial"); Zeile gelöscht : user_pref("extensions.mysearchdial.tlbrId", "base"); Zeile gelöscht : user_pref("extensions.mysearchdial.tlbrSrchUrl", "hxxp://start.mysearchdial.com/?f=3&a=irmsd1103&cd=2XzuyEtN2Y1L1Qzu0AtD0FtA0CtCtC0AzyyB0B0B0A0B0C0DtN0D0Tzu0SyCzzzytN1L2XzutBtFtBtFtCtAtFtCtAtAzztN1L1C[...] Zeile gelöscht : user_pref("extensions.mysearchdial.vrsn", "1.8.21.0"); Zeile gelöscht : user_pref("extensions.mysearchdial.vrsni", "1.8.21.0"); Zeile gelöscht : user_pref("extensions.mysearchdial_i.hmpg", true); Zeile gelöscht : user_pref("extensions.mysearchdial_i.newTab", false); Zeile gelöscht : user_pref("extensions.mysearchdial_i.smplGrp", "none"); Zeile gelöscht : user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.019:59:58"); [ Datei : C:\Users\asdasd\AppData\Roaming\Mozilla\Firefox\Profiles\f6m0srlz.default\prefs.js ] Zeile gelöscht : user_pref("browser.newtab.url", "chrome://unitedtb/content/newtab/newtab-page.xhtml"); [ Datei : C:\Users\Jugendschutz\AppData\Roaming\Mozilla\Firefox\Profiles\f3mi51ww.default\prefs.js ] Zeile gelöscht : user_pref("browser.newtab.url", "chrome://unitedtb/content/newtab/newtab-page.xhtml"); -\\ Google Chrome v37.0.2062.124 [ Datei : C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht [Extension] : pflphaooapbgpeakohlggbpidpppgdff [ Datei : C:\Users\asdasd\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [8889 octets] - [10/10/2014 13:34:06] AdwCleaner[S0].txt - [7488 octets] - [10/10/2014 13:37:20] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7548 octets] ########## FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-10-2014 01 Ran by Admin (administrator) on DANIEL on 10-10-2014 14:23:23 Running from C:\Users\Admin\Downloads Loaded Profile: Admin (Available profiles: Admin & asdasd & Jugendschutz) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Apache Software Foundation) C:\xampp\xampp\apache\bin\httpd.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\dtsslsrv.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DTSRVC.exe (ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe () C:\Program Files (x86)\GIGABYTE\EasySaver\essvr.exe () C:\Windows\SysWOW64\XSrvSetup.exe (MySQL AB) C:\xampp\xampp\mysql\bin\mysqld.exe (Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Realtek) C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe () C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe () C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe (Apache Software Foundation) C:\xampp\xampp\apache\bin\httpd.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE () C:\Users\Admin\AppData\LocalLow\WOT\IE\WOTUpdater.exe (LogMeIn Inc.) D:\Programme\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (LogMeIn, Inc.) D:\Programme\LogMeIn Hamachi\LMIGuardianSvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe (Valve Corporation) D:\Programmme\Steam\Steam.exe (Spotify Ltd) C:\Users\Admin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Western Digital Technologies, Inc.) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (LogMeIn Inc.) D:\Programme\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn, Inc.) D:\Programme\LogMeIn Hamachi\LMIGuardianSvc.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtWLan.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Beepa P/L) D:\Fraps\fraps.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Valve Corporation) D:\Programmme\Steam\bin\steamwebhelper.exe (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Beepa P/L) D:\Fraps\fraps64.dat (Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13307496 2011-10-17] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2278504 2011-10-14] (Realtek Semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [2839840 2010-04-07] (ESET) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2694040 2014-07-22] (Adobe Systems Incorporated) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => D:\Programme\LogMeIn Hamachi\hamachi-2-ui.exe [3802448 2014-09-04] (LogMeIn Inc.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-09-15] (Advanced Micro Devices, Inc.) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3600216 2014-09-16] (Electronic Arts) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [Steam] => D:\Programmme\Steam\steam.exe [1938112 2014-09-23] (Valve Corporation) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [Spotify Web Helper] => C:\Users\Admin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1245752 2014-09-30] (Spotify Ltd) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2014-08-20] (Raptr, Inc) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22041192 2014-08-27] (Skype Technologies S.A.) HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\MountPoints2: {17c01321-0e6b-11e3-baad-902b346e573a} - F:\unlock.exe autoplay=true HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\MountPoints2: {c64a59b4-e176-11e2-af8c-902b346e573a} - G:\unlock.exe autoplay=true HKU\S-1-5-21-803591714-1062673447-4054266202-1000\...\MountPoints2: {cb1d1e86-e16d-11e2-ac69-806e6f6e6963} - E:\Autorun.exe Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk ShortcutTarget: TP-LINK Wireless Configuration Utility.lnk -> C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WDDMStatus.lnk ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (Western Digital Technologies, Inc.) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll () GroupPolicyUsers\S-1-5-21-803591714-1062673447-4054266202-1009\User: Group Policy restriction detected <======= ATTENTION GroupPolicyUsers\S-1-5-21-803591714-1062673447-4054266202-1008\User: Group Policy restriction detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xDFE5F5FA8375CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: WOT -> {9E571C81-21E7-496B-9E6B-127E60263022} -> C:\Users\Admin\AppData\LocalLow\WOT\IE\WOT.dll (WOT Services Oy) Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter-x32: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter-x32: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll No File Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.170.1 FireFox: ======== FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default FF DefaultSearchEngine: Google FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", ""); FF Homepage: https://www.google.de/search?q=warlords+of+draenor+beta+key&newwindow=1&source=lnms&tbm=nws&sa=X&ei=tj7JU9CyEuvT7AalxICACA&ved=0CAkQ_AUoAg&biw=1920&bih=919 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.1.2 -> D:\Programme\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.4 -> D:\Programme\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.5 -> D:\Programme\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect_x86_64 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin: adobe.com/AdobeExManDetect -> D:\Programme\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> D:\Programme\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3522.0110 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 -> D:\Programme\Winamp Detect\npwachk.dll (Nullsoft, Inc.) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin-x32: adobe.com/AdobeExManDetect -> D:\Programme\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin HKCU: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.) FF SearchPlugin: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\searchplugins\webde-suche.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: WEB.DE MailCheck - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\toolbar@web.de [2014-09-17] FF Extension: WOT - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\wotstats@mywot.com [2013-12-23] FF Extension: Blue Fox - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\{241aae70-0022-11de-87af-0800200c9a66} [2014-07-30] FF Extension: Bloody Red - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\{2458abc0-f443-11dd-87af-0800200c9a66} [2014-04-23] FF Extension: Firebug - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\firebug@software.joehewitt.com.xpi [2014-08-16] FF Extension: MEGA - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\firefox@mega.co.nz.xpi [2014-07-27] FF Extension: Adblock Plus - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-24] FF Extension: Greasemonkey - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\zww62bsh.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-08-30] FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2013-06-30] Chrome: ======= CHR HomePage: Default -> CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter} CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-12] CHR Extension: (Google Drive) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-12] CHR Extension: (YouTube) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-12] CHR Extension: (Google-Suche) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-12] CHR Extension: (Steam Trader Helper (auto-buy)) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhoahihokddepjlegpenefeaahdkojog [2014-05-12] CHR Extension: (Google Wallet) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-12] CHR Extension: (WOT) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nphjeokkkbngjpiofnfpnafjeofjomfb [2014-05-12] CHR Extension: (No Name) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff [2014-05-12] CHR Extension: (Google Mail) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-12] CHR HKLM-x32\...\Chrome\Extension: [nphjeokkkbngjpiofnfpnafjeofjomfb] - C:\Users\Admin\AppData\LocalLow\WOT\CHROME\WOT.crx [2012-01-12] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2014-05-31] (Adobe Systems) [File not signed] R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-09-15] (Advanced Micro Devices, Inc.) [File not signed] R2 Apache2.2; C:\xampp\xampp\apache\bin\httpd.exe [29416 2009-12-20] (Apache Software Foundation) S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] () R2 Asset Management Daemon; C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\AM\dtsslsrv.exe [133936 2012-04-13] () S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [448384 2014-08-07] () R2 DTSRVC; C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe [138032 2012-04-13] (Portrait Displays, Inc.) S3 EhttpSrv; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [42336 2010-04-07] (ESET) R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [810120 2010-04-07] (ESET) R2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] () R2 Hamachi2Svc; D:\Programme\LogMeIn Hamachi\hamachi-2.exe [2525008 2014-09-04] (LogMeIn Inc.) R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72280 2010-09-07] () S3 jswpsapi; C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WPS\jswpsapi.exe [954368 2012-05-14] (Wireless) [File not signed] S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2153792 2014-04-04] (IObit) R2 MySQL; C:\xampp\xampp\mysql\bin\mysqld.exe [6095504 2009-12-20] (MySQL AB) S3 OverwolfUpdaterService; D:\Programme\Overwolf\OverwolfUpdater.exe [18360 2013-08-22] (Overwolf Ltd) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-06-14] () R2 Realtek11nSU; C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [File not signed] S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed] R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [288256 2010-09-08] (WDC) [File not signed] R2 WDFME; C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe [1034752 2010-09-08] () [File not signed] R2 WDSC; C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe [485376 2010-09-08] () [File not signed] R2 WOTUpdater; C:\Users\Admin\AppData\LocalLow\WOT\IE\WOTUpdater.exe [18432 2012-01-12] () [File not signed] R3 WinHttpAutoProxySvc; winhttp.dll [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices) R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21616 2011-11-02] () R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2013-11-29] () R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-08-07] (Disc Soft Ltd) R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [163888 2010-04-07] (ESET) R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [139704 2010-04-07] (ESET) R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [169592 2010-04-07] (ESET) R3 Epfwndis; C:\Windows\System32\DRIVERS\Epfwndis.sys [33608 2010-04-07] (ESET) R2 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [50600 2010-04-07] (ESET) R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2013-11-29] () R3 PdiPorts; C:\Windows\System32\DRIVERS\PdiPorts.sys [20784 2012-04-13] (Portrait Displays, Inc.) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-01-23] () S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [926824 2012-05-14] (Realtek Semiconductor Corporation ) S1 StarOpen; C:\Windows\SysWow64\Drivers\StarOpen.sys [5632 2006-07-24] () [File not signed] S3 ALSysIO; \??\C:\Users\Admin\AppData\Local\Temp\ALSysIO64.sys [X] S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [X] S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-10 14:21 - 2014-10-10 14:21 - 01705755 _____ (Thisisu) C:\Users\Admin\Downloads\JRT.exe 2014-10-10 14:21 - 2014-10-10 14:21 - 00000000 ____D () C:\Windows\ERUNT 2014-10-10 13:35 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-10-10 13:34 - 2014-10-10 13:37 - 00000000 ____D () C:\AdwCleaner 2014-10-10 13:32 - 2014-10-10 13:34 - 34137372 _____ () C:\Users\Admin\Downloads\§abyKadex PVP PACK - V3.zip 2014-10-08 19:02 - 2014-10-08 19:12 - 43091448 _____ () C:\Users\Admin\Downloads\64px [mc1.7.4] HD MK WORKING 1.0.zip 2014-10-08 18:12 - 2014-10-08 18:12 - 00079346 _____ () C:\Users\Admin\Documents\ts3_clientui-win64-1407159763-2014-10-08 18_12_42.281940.dmp 2014-10-08 15:41 - 2014-10-08 15:41 - 01375089 _____ () C:\Users\Admin\Downloads\AdwCleaner_3.311.exe 2014-10-07 20:03 - 2014-10-07 20:03 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\VSRevoGroup 2014-10-07 19:51 - 2014-10-07 19:51 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Admin\Downloads\revosetup95.exe 2014-10-07 16:33 - 2014-10-07 16:33 - 00058912 _____ () C:\Users\Admin\Downloads\Addition.txt 2014-10-07 16:32 - 2014-10-10 14:23 - 00026001 _____ () C:\Users\Admin\Downloads\FRST.txt 2014-10-07 16:32 - 2014-10-10 14:23 - 00000000 ____D () C:\FRST 2014-10-07 16:32 - 2014-10-07 16:32 - 02109952 _____ (Farbar) C:\Users\Admin\Downloads\FRST64.exe 2014-10-06 17:17 - 2014-10-06 17:17 - 00000000 _____ () C:\Users\Admin\Desktop\Hallo.avi 2014-10-06 17:17 - 2014-10-06 17:17 - 00000000 _____ () C:\Users\Admin\Desktop\avi.avi 2014-10-06 17:16 - 2014-10-06 17:16 - 00000000 _____ () C:\Users\Admin\Desktop\test.avi 2014-10-06 16:59 - 2014-10-06 16:59 - 00392952 _____ () C:\Users\Admin\Desktop\Template by NelonFX(1).rar 2014-10-03 21:12 - 2014-10-03 21:12 - 00571983 _____ () C:\Users\Admin\Downloads\OneDrive-2014-10-03.zip 2014-10-03 21:11 - 2014-10-03 21:19 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Minecraft Skin Viewer 2014-10-03 21:09 - 2014-10-03 21:09 - 00140332 _____ () C:\Users\Admin\Downloads\Minecraft Skin Viewer.zip 2014-10-03 20:02 - 2014-10-03 20:03 - 00025314 _____ () C:\Users\Admin\Desktop\skin_20140903094923125978.png.lnk 2014-10-03 19:56 - 2014-10-03 21:21 - 04454473 _____ () C:\Users\Admin\Downloads\Icon Template - K4iiLP.psd 2014-10-03 19:40 - 2014-10-03 19:42 - 45463480 _____ () C:\Users\Admin\Downloads\Gfx pack minecraft by ZeroFrey.rar 2014-10-03 19:31 - 2014-10-03 19:31 - 00519664 _____ () C:\Users\Admin\Downloads\New Light room subs.c4d 2014-10-02 19:52 - 2014-10-02 19:52 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\AMD 2014-10-02 17:49 - 2014-10-02 17:49 - 00062096 _____ () C:\Windows\SysWOW64\CCCInstall_201410021749364051.log 2014-10-02 17:49 - 2014-10-02 17:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-10-02 17:49 - 2014-10-02 17:49 - 00000000 ____D () C:\ProgramData\ATI 2014-10-02 17:49 - 2014-10-02 17:49 - 00000000 ____D () C:\Program Files (x86)\AMD AVT 2014-10-01 12:17 - 2014-09-25 04:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-10-01 12:17 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-09-29 17:27 - 2014-09-29 17:28 - 01889037 _____ () C:\Users\Admin\Downloads\HoxHud P6.4 Self-installer.exe 2014-09-28 18:24 - 2014-09-28 18:33 - 105909200 _____ () C:\Users\Admin\Desktop\ts3_recording_14_09_28_18_24_19.wav 2014-09-28 13:33 - 2014-09-28 13:34 - 18301193 _____ () C:\Users\Admin\Downloads\Payday 2 Trainer v16.rar 2014-09-25 13:41 - 2014-09-25 13:41 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-09-24 20:16 - 2014-09-24 20:17 - 14764140 _____ () C:\Users\Admin\Downloads\ZygorGuides-4.0.10325.zip 2014-09-24 12:59 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-09-24 12:59 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-09-23 17:20 - 2014-09-23 17:22 - 59286687 _____ () C:\Users\Admin\Downloads\Warlords of Draenor - World of Warcraft - Cinematic Trailer - Deutsch.mp4 2014-09-23 17:04 - 2014-09-23 17:05 - 57106928 _____ () C:\Users\Admin\Downloads\World of Warcraft Warlords of Draenor – Cinematic Trailer.mp4 2014-09-23 16:52 - 2014-09-23 16:53 - 38248174 _____ () C:\Users\Admin\Downloads\World of WarCraft Warlords of Draenor Trailer [Deutsch German] [1080p].mp4 2014-09-21 17:11 - 2014-09-21 17:11 - 00696561 _____ () C:\Users\Admin\Downloads\VampirismFire5.10b2.w3x 2014-09-20 10:08 - 2014-09-20 10:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft Public Test 2014-09-20 09:49 - 2014-09-20 09:50 - 84026712 _____ (Blizzard Entertainment) C:\Users\Admin\Downloads\World-of-Warcraft-Public-Test-Setup-deDE.exe 2014-09-19 20:39 - 2014-09-19 20:39 - 00135341 _____ () C:\Users\Admin\Downloads\DBZ MAUL.w3x 2014-09-19 20:25 - 2014-09-19 20:25 - 00133944 _____ () C:\Users\Admin\Downloads\POLAR ESCAPE 3 -Protected-.w3m 2014-09-19 20:24 - 2014-09-19 20:24 - 03259081 _____ () C:\Users\Admin\Downloads\Molten Core v7 TBC.w3x 2014-09-19 20:22 - 2014-09-19 20:23 - 03317815 _____ () C:\Users\Admin\Downloads\Molten Core.w3x 2014-09-19 20:21 - 2014-09-19 20:21 - 03259548 _____ () C:\Users\Admin\Downloads\Molten Core v1SVb22.w3x 2014-09-19 20:15 - 2014-09-19 20:15 - 00029388 _____ () C:\Users\Admin\Downloads\Sheep Tag.w3x 2014-09-18 15:59 - 2014-09-18 16:00 - 00000000 ____D () C:\Users\Admin\AppData\Local\Skyrim 2014-09-17 19:22 - 2014-09-17 19:22 - 00275267 _____ () C:\Users\Admin\Downloads\Immibis-Core-1.6.4.jar 2014-09-17 19:22 - 2014-09-17 19:22 - 00123859 _____ () C:\Users\Admin\Downloads\advanced-machines-57.1.2.jar 2014-09-17 18:06 - 2014-09-17 18:06 - 01318112 _____ () C:\Users\Admin\Downloads\Galacticraft.zip 2014-09-17 17:59 - 2014-09-17 17:58 - 00018681 _____ () C:\Users\Admin\Desktop\idfixminus-1.6.4-1.0.0.jar 2014-09-17 17:58 - 2014-09-17 17:58 - 00018681 _____ () C:\Users\Admin\Downloads\idfixminus-1.6.4-1.0.0.jar 2014-09-17 17:52 - 2014-09-17 17:52 - 11839417 _____ () C:\Users\Admin\Downloads\Galacticraft-1.6.4-2.0.14.1084.jar 2014-09-17 17:51 - 2014-09-17 17:51 - 00307380 _____ () C:\Users\Admin\Downloads\Galacticraft-Planets-1.6.4-2.0.14.1084.jar 2014-09-17 17:51 - 2014-09-17 17:51 - 00018164 _____ () C:\Users\Admin\Downloads\MicdoodleCore-1.6.4-2.0.14.1084.jar 2014-09-17 17:32 - 2014-09-17 17:33 - 167571057 _____ () C:\Users\Admin\Downloads\Invictus_Monster.zip 2014-09-16 19:36 - 2014-09-16 19:37 - 18440993 _____ () C:\Users\Admin\Downloads\SEUS v10 RC6 for Minecraft 1.4.6.rar 2014-09-16 19:36 - 2014-09-16 19:37 - 05387674 _____ () C:\Users\Admin\Downloads\Shaders pack 1.4.7.zip 2014-09-16 19:20 - 2014-09-16 19:20 - 00370291 _____ () C:\Users\Admin\Downloads\OptiFine_1.4.6_HD_U_D5.zip 2014-09-16 19:18 - 2014-09-16 19:19 - 45586762 _____ () C:\Users\Admin\Downloads\Sphax PureBDCraft 128x MC14.zip 2014-09-16 19:12 - 2014-09-16 19:16 - 39564738 _____ () C:\Users\Admin\Downloads\Sphax PureBDcraft 128x MC16.zip 2014-09-16 19:10 - 2014-09-16 19:11 - 23917029 _____ () C:\Users\Admin\Downloads\Sphax 128x Tekkit Lite SMP Latest v1.0.zip 2014-09-16 19:10 - 2014-09-11 15:53 - 34380536 _____ () C:\Users\Admin\Desktop\Sphax PureBDcraft 128x MC18.zip 2014-09-16 17:26 - 2014-09-16 17:26 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-09-16 17:26 - 2014-09-16 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-09-16 00:32 - 2014-09-16 00:32 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2014-09-16 00:32 - 2014-09-16 00:32 - 00118096 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2014-09-16 00:32 - 2014-09-16 00:32 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-09-16 00:32 - 2014-09-16 00:32 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-09-16 00:32 - 2014-09-16 00:32 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-09-16 00:32 - 2014-09-16 00:32 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-09-16 00:31 - 2014-09-16 00:31 - 09254184 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-09-16 00:31 - 2014-09-16 00:31 - 08296296 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-09-16 00:31 - 2014-09-16 00:31 - 08044976 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-09-16 00:31 - 2014-09-16 00:31 - 00126848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-09-16 00:31 - 2014-09-16 00:31 - 00118096 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-09-16 00:29 - 2014-09-16 00:29 - 00293088 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2014-09-16 00:26 - 2014-09-16 00:26 - 16750080 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-09-16 00:18 - 2014-09-16 00:18 - 00235008 _____ () C:\Windows\system32\clinfo.exe 2014-09-16 00:18 - 2014-09-16 00:18 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-09-16 00:17 - 2014-09-16 00:17 - 33867264 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-09-16 00:17 - 2014-09-16 00:17 - 28770304 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-09-16 00:17 - 2014-09-16 00:17 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-09-16 00:17 - 2014-09-16 00:17 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-09-16 00:17 - 2014-09-16 00:17 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-09-16 00:16 - 2014-09-16 00:16 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-09-16 00:16 - 2014-09-16 00:16 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-09-16 00:13 - 2014-09-16 00:13 - 27918336 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-09-16 00:09 - 2014-09-16 00:09 - 05639168 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-09-16 00:09 - 2014-09-16 00:09 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-09-16 00:09 - 2014-09-16 00:09 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-09-16 00:09 - 2014-09-16 00:09 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-09-16 00:09 - 2014-09-16 00:09 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-09-16 00:08 - 2014-09-16 00:08 - 23375360 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-09-16 00:07 - 2014-09-16 00:07 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-09-16 00:07 - 2014-09-16 00:07 - 03437632 _____ () C:\Windows\system32\atiumd6a.cap 2014-09-16 00:07 - 2014-09-16 00:07 - 00609272 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-09-16 00:07 - 2014-09-16 00:07 - 00609272 _____ () C:\Windows\system32\atiapfxx.blb 2014-09-16 00:07 - 2014-09-16 00:07 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-09-16 00:07 - 2014-09-16 00:07 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-09-16 00:07 - 2014-09-16 00:07 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-09-16 00:07 - 2014-09-16 00:07 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-09-16 00:07 - 2014-09-16 00:07 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-09-16 00:06 - 2014-09-16 00:06 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-09-16 00:05 - 2014-09-16 00:05 - 04480000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-09-16 00:03 - 2014-09-16 00:03 - 03471376 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-09-16 00:03 - 2014-09-16 00:03 - 00619008 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-09-16 00:03 - 2014-09-16 00:03 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-09-16 00:03 - 2014-09-16 00:03 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-09-16 00:03 - 2014-09-16 00:03 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-09-16 00:03 - 2014-09-16 00:03 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-09-16 00:03 - 2014-09-16 00:03 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-09-16 00:03 - 2014-09-16 00:03 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-09-16 00:00 - 2014-09-16 00:00 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00900608 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00827392 _____ (AMD) C:\Windows\system32\coinst_14.30.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00576000 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-09-15 23:59 - 2014-09-15 23:59 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-09-15 23:59 - 2014-09-15 23:59 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-09-15 23:58 - 2014-09-15 23:58 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-09-15 18:21 - 2014-09-15 18:21 - 00051200 _____ () C:\Windows\system32\kdbsdk64.dll 2014-09-15 18:19 - 2014-09-15 18:19 - 00038912 _____ () C:\Windows\SysWOW64\kdbsdk32.dll 2014-09-13 17:19 - 2014-09-13 17:19 - 00002136 _____ () C:\Users\Public\Desktop\REALTEK 11n USB Wireless LAN Utility.lnk 2014-09-13 17:19 - 2014-09-13 17:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility 2014-09-13 17:19 - 2014-09-13 17:19 - 00000000 ____D () C:\Program Files (x86)\Cisco 2014-09-13 17:19 - 2009-03-31 14:31 - 00380928 _____ (Realtek) C:\Windows\RtlUI2.exe 2014-09-13 17:19 - 2009-01-05 20:31 - 00000901 _____ () C:\Windows\RtlUI2.exe.manifest 2014-09-13 17:19 - 2008-07-01 12:31 - 00614400 _____ (Realtek Semiconductor Corp. ) C:\Windows\SysWOW64\Rtlihvs.dll 2014-09-12 23:45 - 2014-09-12 23:45 - 04580399 _____ () C:\Users\Admin\Downloads\X Hero Siege v8.8c.w3x 2014-09-12 12:22 - 2014-09-12 15:56 - 00000053 _____ () C:\Users\Admin\Desktop\Neues Textdokument (2).txt 2014-09-12 00:16 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-12 00:16 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-09-12 00:16 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-12 00:16 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-12 00:16 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-12 00:16 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-09-12 00:16 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-12 00:16 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-12 00:16 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-12 00:16 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-12 00:16 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-12 00:16 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-12 00:16 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-09-12 00:16 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-12 00:16 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-12 00:16 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-12 00:16 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-12 00:16 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-12 00:16 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-12 00:16 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-09-12 00:16 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-12 00:16 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-12 00:16 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-09-12 00:16 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-12 00:16 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-09-12 00:16 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-09-12 00:16 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-09-12 00:16 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-09-12 00:16 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-12 00:16 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-12 00:16 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-09-12 00:16 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-09-12 00:16 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-12 00:16 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-09-12 00:16 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-09-12 00:16 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-09-12 00:16 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-09-12 00:16 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-12 00:16 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-12 00:16 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-12 00:16 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-12 00:16 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-12 00:16 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-09-12 00:16 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-09-12 00:16 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-09-12 00:16 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-12 00:16 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-09-12 00:16 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-12 00:16 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-09-12 00:16 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-09-12 00:16 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-09-12 00:16 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-12 00:16 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-09-12 00:16 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-09-12 00:16 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-12 00:16 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-09-12 00:05 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-12 00:05 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-09-11 21:32 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-11 21:32 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-11 21:32 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-11 21:32 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-09-11 21:32 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-11 21:32 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-11 21:32 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-09-11 21:32 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-09-11 21:32 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-09-11 21:32 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-11 21:32 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-09-11 19:38 - 2014-09-01 14:57 - 00065536 _____ () C:\Users\Admin\Desktop\glyph_sizes.bin 2014-09-11 17:25 - 2014-09-11 17:25 - 00000723 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-09-11 14:35 - 2014-09-11 14:47 - 116897943 _____ () C:\Users\Admin\Downloads\FTB Magic Farm 2 128x.zip 2014-09-11 14:16 - 2014-09-11 15:53 - 34380536 _____ () C:\Users\Admin\Downloads\Sphax PureBDcraft 128x MC18.zip 2014-09-11 14:16 - 2014-09-11 14:16 - 08684905 _____ () C:\Users\Admin\Downloads\BDcraft Sounds Pack.zip 2014-09-11 14:14 - 2014-09-11 14:43 - 67222091 _____ () C:\Users\Admin\Downloads\Sphax_Hexxit _128x(1.1).zip 2014-09-11 14:07 - 2014-09-11 14:08 - 11559305 _____ () C:\Users\Admin\Downloads\Simplex - Revived (x128) v2.0.zip 2014-09-11 14:07 - 2014-09-11 14:07 - 00236539 _____ () C:\Users\Admin\Downloads\Simplex - 3D (x128) v1.0.zip ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-10 14:20 - 2014-08-21 07:55 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Raptr 2014-10-10 14:20 - 2014-08-17 11:28 - 00003134 _____ () C:\Windows\System32\Tasks\FRAPS 2014-10-10 14:20 - 2014-08-10 12:55 - 00000000 ____D () C:\Users\Admin\AppData\Local\LogMeIn Hamachi 2014-10-10 14:20 - 2014-05-12 19:25 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-10-10 14:20 - 2013-06-30 13:41 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-10-10 14:20 - 2013-06-30 13:39 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Skype 2014-10-10 14:02 - 2013-07-01 14:09 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-10-10 13:45 - 2009-07-14 19:58 - 00702926 _____ () C:\Windows\system32\perfh007.dat 2014-10-10 13:45 - 2009-07-14 19:58 - 00150566 _____ () C:\Windows\system32\perfc007.dat 2014-10-10 13:45 - 2009-07-14 07:13 - 01629212 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-10-10 13:45 - 2009-07-14 06:45 - 00022368 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-10-10 13:45 - 2009-07-14 06:45 - 00022368 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-10-10 13:38 - 2014-09-06 08:11 - 00001958 _____ () C:\Windows\PFRO.log 2014-10-10 13:38 - 2014-08-21 11:08 - 00056788 _____ () C:\Windows\setupact.log 2014-10-10 13:38 - 2013-10-19 11:41 - 00116946 _____ () C:\Windows\SysWOW64\DTSSL.log 2014-10-10 13:38 - 2013-06-30 12:38 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys 2014-10-10 13:38 - 2013-06-30 12:36 - 00000144 _____ () C:\service.log 2014-10-10 13:38 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-10-10 13:37 - 2013-06-30 12:22 - 01926775 _____ () C:\Windows\WindowsUpdate.log 2014-10-10 13:36 - 2014-05-12 19:25 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-10-10 13:29 - 2013-06-30 13:41 - 00000000 ____D () C:\ProgramData\Origin 2014-10-09 22:05 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-10-09 19:55 - 2013-07-25 11:45 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\foobar2000 2014-10-09 19:52 - 2013-11-30 12:44 - 00000000 ____D () C:\Users\Admin\AppData\Local\Battle.net 2014-10-09 18:55 - 2013-07-01 14:09 - 00000000 ____D () C:\Users\Admin\AppData\Local\Adobe 2014-10-09 18:52 - 2013-12-16 20:26 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\vlc 2014-10-09 16:49 - 2013-07-02 14:38 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\.minecraft 2014-10-09 15:56 - 2014-04-04 18:02 - 00000000 ____D () C:\ProgramData\ProductData 2014-10-08 21:19 - 2013-08-12 13:30 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\TS3Client 2014-10-07 22:33 - 2013-09-03 13:34 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Spotify 2014-10-06 20:09 - 2013-09-03 13:34 - 00000000 ____D () C:\Users\Admin\AppData\Local\Spotify 2014-10-06 19:35 - 2013-12-05 19:10 - 00000000 ____D () C:\Users\Admin\Desktop\PSD 2014-10-03 21:14 - 2014-01-02 20:03 - 01924096 ___SH () C:\Users\Admin\Desktop\Thumbs.db 2014-10-03 15:56 - 2013-08-02 09:49 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\OBS 2014-10-02 20:08 - 2013-07-17 13:39 - 00000132 _____ () C:\Users\Admin\AppData\Roaming\Adobe CS6-PNG-Format - Voreinstellungen 2014-10-02 17:49 - 2013-06-30 12:32 - 00000000 ____D () C:\ProgramData\AMD 2014-10-02 17:49 - 2013-06-30 12:31 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-10-02 17:47 - 2013-10-06 10:27 - 00000000 ____D () C:\ProgramData\Package Cache 2014-10-02 17:39 - 2013-07-02 11:22 - 00000000 ____D () C:\AMD 2014-09-30 20:35 - 2014-08-22 11:10 - 00110838 _____ () C:\Windows\DirectX.log 2014-09-28 11:57 - 2014-07-01 16:08 - 00000000 ____D () C:\Users\Admin\AppData\Local\ftblauncher 2014-09-26 14:08 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-09-26 12:55 - 2013-06-30 13:32 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-09-24 19:02 - 2013-07-01 14:09 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-24 19:02 - 2013-07-01 14:09 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-24 19:02 - 2013-07-01 14:09 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-23 16:55 - 2013-07-01 16:02 - 00000000 ____D () C:\Users\Admin\AppData\Roaming\Audacity 2014-09-18 15:59 - 2013-09-07 19:37 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-09-18 15:58 - 2013-08-05 13:14 - 00000000 ____D () C:\Users\Admin\Documents\my games 2014-09-16 19:06 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-09-16 17:26 - 2013-06-30 13:39 - 00000000 ____D () C:\ProgramData\Skype 2014-09-16 00:31 - 2012-07-28 06:09 - 07028336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2014-09-16 00:31 - 2012-07-28 04:15 - 01113576 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2014-09-16 00:31 - 2012-07-28 04:13 - 01335544 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2014-09-16 00:31 - 2012-07-28 03:51 - 10826488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2014-09-16 00:31 - 2012-07-28 03:32 - 07207592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2014-09-16 00:31 - 2012-07-28 03:13 - 00144328 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2014-09-16 00:31 - 2012-07-28 03:13 - 00100032 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2014-09-16 00:00 - 2014-04-18 03:08 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2014-09-15 23:59 - 2012-07-28 03:15 - 01210880 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-09-15 09:06 - 2013-06-30 13:48 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-09-13 17:19 - 2013-06-30 12:35 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-09-13 17:19 - 2013-06-30 12:35 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-09-12 00:18 - 2013-07-01 15:58 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-09-12 00:15 - 2013-07-25 17:45 - 00000000 ____D () C:\Windows\system32\MRT 2014-09-12 00:15 - 2013-07-16 15:33 - 01602556 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-09-12 00:06 - 2013-06-30 13:39 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-09-12 00:05 - 2014-05-06 22:29 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-11 15:52 - 2014-09-03 14:55 - 00001456 _____ () C:\Users\Admin\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2014-09-11 15:52 - 2014-08-28 13:17 - 00000000 ____D () C:\Users\Admin\Desktop\Mein Texturenpack Some content of TEMP: ==================== C:\Users\Admin\AppData\Local\Temp\jansi-64-git-MCPC-Plus-jenkins-MCPC-Plus-164-251.dll C:\Users\Admin\AppData\Local\Temp\jre-8u20-windows-au.exe C:\Users\Admin\AppData\Local\Temp\Quarantine.exe C:\Users\Admin\AppData\Local\Temp\tmp9443.exe C:\Users\Admin\AppData\Local\Temp\vlc-2.1.5-win64.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-10-07 18:16 ==================== End Of Log ============================ |
10.10.2014, 14:38 | #8 |
/// Malwareteam | Internet [ W-Lan ] laggt total nur an einem bestimmten Computer Hi das JRT Logfile (Schritt 3) würde noch fehlen... so gehts weiter: Schritt 1: Lade dir TFC (TempFileCleaner von Oldtimer) herunter und speichere es auf den Desktop.
Schritt 2: Downloade Dir bitte Malwarebytes Anti-Malware
Schritt 3: ESET Online Scanner
Schritt 4: läuft das System jetzt wieder stabil? |
15.10.2014, 14:34 | #9 |
/// Malwareteam | Internet [ W-Lan ] laggt total nur an einem bestimmten Computerich hab schon länger keine Antwort mehr von dir erhalten. Brauchst du weiterhin noch Hilfe? Wenn ich in den nächsten 24 Stunden nichts von dir höre, gehe ich davon aus, dass sich das Thema erledigt hat und lösche es aus meinen Abos. Hinweis: Wir sind noch nicht fertig! Auch wenn die Symptome verschwunden sein sollten, kann dein System weiterhin infiziert sein und über Sicherheitslücken verfügen, welche eine erneute Infektion möglich machen. |
22.02.2015, 18:45 | #10 |
/// Malwareteam | Internet [ W-Lan ] laggt total nur an einem bestimmten ComputerFehlende Rückmeldung Dieses Thema wurde aus den Abos gelöscht. Somit bekomm ich keine Benachrichtigung über neue Antworten. PM an mich falls Du denoch weiter machen willst. Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner schon sauber ist. Jeder andere bitte hier klicken und einen eigenen Thread erstellen |
Themen zu Internet [ W-Lan ] laggt total nur an einem bestimmten Computer |
andere, anderen, bestimmte, bestimmten, bitte um hilfe, compu, computer, fehler, handy, hilfe, hilfe!, inter, interne, internet, konfiguration, laggt, mitglieder, sitze, total, verbindung, w-lan, wenig |