|
Log-Analyse und Auswertung: PC bootet nach Anwendung von ADWCleaner nicht mehrWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
26.10.2014, 19:55 | #1 |
| PC bootet nach Anwendung von ADWCleaner nicht mehr Hallo zusammen, also ich habe folgendes Problem: Nachdem ich mit dem aus diversen Foren empfohlenen ADWCleaner einige nervende Adware entfernt habe, hat das Programm von sich aus den PC neu gestartet. Allerdings kann mein Computer seitdem nicht mehr booten, es erscheint wie bei jedem boot ein Asrock Logo und anschließend bekomme ich einen Blackscreen... Ich habe bereits einen anderen Thread dazu gelesen und auch schon über die Problembehandlung und Eingabeaufforderung ein FRST.txt file erstellt. Weiter weiß ich nicht. Hier das file: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-10-2014 Ran by SYSTEM on MININT-CL3TKMJ on 26-10-2014 18:43:19 Running from d:\ Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Recovery The current controlset is ControlSet001 ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log. Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [S.T.R.I.K.E.3] => C:\Program Files\Mad Catz\S.T.R.I.K.E.3\STRIKE3_Profiler.exe [40448 2013-07-18] (Mad Catz Inc) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-02-24] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation) HKLM\...\Run: [XFast LAN] => C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe [2009952 2013-05-31] (cFos Software GmbH) HKLM-x32\...\Run: [GamingMouse] => C:\Program Files (x86)\Drakonia Black\hid.exe [247296 2013-06-26] () HKLM-x32\...\Run: [Aeria Ignite] => C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation) HKLM-x32\...\Run: [Corsair Headset Software] => C:\Program Files (x86)\Corsair\Corsair Headset Software\HeadsetControlPanel.exe [3167544 2014-02-12] (Corsair Components, Inc.) HKLM-x32\...\Run: [RoccatKoneXTD] => C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE [552960 2013-10-25] (ROCCAT GmbH) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.) HKLM\...\RunOnce: [*Restore] => C:\WINDOWS\system32\rstrui.exe [271872 2014-04-06] (Microsoft Corporation) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe, C:\Program Files (x86)\kloudian\logonsession.exe, HKU\FoxMc_000\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software) HKU\FoxMc_000\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd) HKU\FoxMc_000\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe" HKU\FoxMc_000\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd) HKU\FoxMc_000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.) HKU\UpdatusUser\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software) HKU\UpdatusUser\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd) HKU\UpdatusUser\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe" HKU\UpdatusUser\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd) HKU\UpdatusUser\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.) HKU\User\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software) HKU\User\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd) HKU\User\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe" HKU\User\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd) HKU\User\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.) HKU\User\...\Run: [Fatal1tySTU] => [X] HKU\User\...\Run: [ASRockRuefi] => [X] HKU\User\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [389120 2013-09-11] (AMD) AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => C:\PROGRA~2\SupTab\SEARCH~2.DLL File Not Found AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => "C:\PROGRA~2\SupTab\SEARCH~1.DLL" File Not Found Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk ShortcutTarget: GamersFirst LIVE!.lnk -> C:\windows\system32\config\systemprofile\AppData\Local\GamersFirst\LIVE!\Live.exe (No File) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () S2 ASRockIOMon; C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\IOMonitorSrv.exe [463112 2014-07-31] () S2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation) S2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation) S2 cFosSpeedS; C:\Program Files\ASRock\XFast LAN\spd.exe [652640 2013-05-31] (cFos Software GmbH) S3 DAUpdaterSvc; A:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [25832 2013-02-12] (BioWare) S2 DisplayFusionService; A:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [1375600 2013-11-27] (Binary Fortress Software) S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) S2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-06-24] (Intel Corporation) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-04-09] () S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-06-24] (Intel Corporation) S3 KeyIso; C:\Windows\SysWOW64\keyiso.dll [44032 2013-08-22] (Microsoft Corporation) S3 lfsvc; C:\Windows\SysWOW64\GeofenceMonitorService.dll [357376 2014-03-14] (Microsoft Corporation) S3 Netlogon; C:\Windows\SysWOW64\netlogon.dll [688640 2014-03-06] (Microsoft Corporation) S2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2014-10-14] () S2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [344576 2014-04-17] (Qualcomm Atheros) S3 smphost; C:\Windows\SysWOW64\smphost.dll [11776 2013-08-22] (Microsoft Corporation) S3 StorSvc; C:\Windows\SysWOW64\storsvc.dll [18944 2013-08-22] (Microsoft Corporation) S2 SVCM; C:\Program Files (x86)\kloudian\svcmain.exe [248472 2014-08-01] () S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.) S3 ArvoFltr; C:\Windows\system32\drivers\ArvoFltr.sys [15872 2009-05-06] (ROCCAT Development, Inc.) S3 AsrDrv101; C:\WINDOWS\SysWOW64\Drivers\AsrDrv101.sys [22280 2014-10-23] (ASRock Incorporation) S3 AsrHidFilter; C:\Windows\system32\DRIVERS\AsrHidFilter.sys [20232 2014-06-30] (ASRock Inc.) S0 AsrRamDisk; C:\Windows\System32\DRIVERS\AsrRamDisk.sys [40200 2013-08-02] (ASRock Inc.) S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2013-09-24] (Advanced Micro Devices) S1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [82608 2014-04-10] (Qualcomm Atheros, Inc.) S3 CorsairAudioFilter; C:\Windows\system32\DRIVERS\corsveng2kamd64.sys [109912 2014-02-03] (Corsair Components, Inc.) S3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [457496 2014-03-14] (Intel Corporation) S3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [130224 2014-03-12] (Qualcomm Atheros, Inc.) S3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [125952 2014-06-24] (Intel Corporation) S3 SaiK1112; C:\Windows\system32\DRIVERS\SaiK1112.sys [180992 2013-07-19] (Saitek) S3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [24040 2014-06-13] (Saitek) S3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-07-19] (Saitek) S3 tap0901t; C:\Windows\system32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation) S3 _hid_0738_1715; C:\Windows\system32\DRIVERS\_hid_0738_1715.sys [179904 2014-06-13] (Saitek) S3 _usb_0738_1715; C:\Windows\System32\drivers\_usb_0738_1715.sys [46528 2014-06-13] (Saitek) S4 NVHDA; \SystemRoot\system32\drivers\nvhda64v.sys [X] S4 nvlddmkm; \SystemRoot\system32\DRIVERS\nvlddmkm.sys [X] S4 nvvad_WaveExtensible; \SystemRoot\system32\drivers\nvvad64v.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-26 18:43 - 2014-10-26 18:43 - 00000000 ____D () C:\FRST 2014-10-26 18:34 - 2014-10-26 18:41 - 00000000 _____ () C:\Recovery.txt 2014-10-26 18:07 - 2014-10-26 18:36 - 00000000 ____D () C:\AdwCleaner 2014-10-26 14:55 - 2014-10-26 14:55 - 00000687 _____ () C:\awh4F02.tmp 2014-10-26 14:46 - 2014-10-26 14:49 - 00000000 ____D () C:\Windows\AutoKMS 2014-10-26 14:45 - 2014-10-26 14:45 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit 2014-10-26 14:44 - 2014-10-26 14:44 - 37525059 _____ () C:\Users\User\Downloads\Microsoft Toolkit.rar 2014-10-26 14:15 - 2014-10-26 14:15 - 00000687 _____ () C:\awhC8BB.tmp 2014-10-26 13:17 - 2014-10-26 13:17 - 00000687 _____ () C:\awhC705.tmp 2014-10-25 22:30 - 2014-10-25 22:30 - 00000687 _____ () C:\awhC8AB.tmp 2014-10-25 22:07 - 2014-10-25 22:07 - 00000687 _____ () C:\awhC9F3.tmp 2014-10-25 19:44 - 2014-10-25 19:44 - 00002281 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-10-25 19:15 - 2014-10-25 19:15 - 00000687 _____ () C:\awhCDBC.tmp 2014-10-25 19:05 - 2014-10-25 19:05 - 00003130 _____ () C:\Windows\System32\Tasks\{D7755D87-7BE6-49D8-9AC3-40525DCC677C} 2014-10-25 19:02 - 2014-10-25 19:02 - 00002978 _____ () C:\Windows\System32\Tasks\AsrAPPShop 2014-10-25 19:02 - 2014-10-25 19:02 - 00000000 ____D () C:\ProgramData\ASRock 2014-10-23 20:41 - 2014-10-23 20:41 - 00000687 _____ () C:\awhC86D.tmp 2014-10-23 20:35 - 2014-10-23 20:35 - 00001076 _____ () C:\Users\Public\Desktop\GPUTweakStreaming.lnk 2014-10-23 20:35 - 2014-10-23 20:35 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS 2014-10-23 20:34 - 2014-10-23 20:35 - 00000032 _____ () C:\setup.log 2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-10-23 20:34 - 2014-10-23 20:34 - 00066589 _____ () C:\Windows\SysWOW64\CCCInstall_201410232134373718.log 2014-10-23 20:34 - 2014-10-23 20:34 - 00001069 _____ () C:\Users\Public\Desktop\ASUS GPU Tweak.lnk 2014-10-23 20:34 - 2014-10-23 20:34 - 00000687 _____ () C:\awhD8A9.tmp 2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Windows\LastGood 2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\AMD 2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\AMD AVT 2014-10-23 20:34 - 2013-09-24 15:54 - 00222720 _____ (Advanced Micro Devices) C:\Windows\System32\Drivers\AtihdWB6.sys 2014-10-23 20:34 - 2013-09-24 15:54 - 00141312 _____ (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\amdacpksl.sys 2014-10-23 20:34 - 2013-09-24 15:51 - 00110080 _____ (TODO: <Company name>) C:\Windows\System32\DelayAPO.dll 2014-10-23 20:34 - 2013-09-12 03:26 - 00229888 _____ () C:\Windows\System32\clinfo.exe 2014-10-23 20:34 - 2013-09-12 03:26 - 00129536 _____ (AMD) C:\Windows\System32\coinst_13.20.dll 2014-10-23 20:34 - 2013-09-12 03:26 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\OpenVideo64.dll 2014-10-23 20:34 - 2013-09-12 03:26 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-10-23 20:34 - 2013-09-12 03:25 - 28469248 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\amdocl64.dll 2014-10-23 20:34 - 2013-09-12 03:25 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\OVDecode64.dll 2014-10-23 20:34 - 2013-09-12 03:25 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-10-23 20:34 - 2013-09-12 03:23 - 24008704 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-10-23 20:34 - 2013-09-12 03:21 - 00063488 _____ (Khronos Group) C:\Windows\System32\OpenCL.dll 2014-10-23 20:34 - 2013-09-12 03:21 - 00057344 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\Windows\System32\atiapfxx.blb 2014-10-23 20:34 - 2013-09-12 02:48 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\atidemgy.dll 2014-10-23 20:34 - 2013-08-27 21:15 - 00083392 _____ () C:\Windows\System32\ativce02.dat 2014-10-23 20:34 - 2013-08-14 03:23 - 00047427 _____ () C:\Windows\atiogl.xml 2014-10-23 20:34 - 2013-07-25 22:50 - 00234292 _____ () C:\Windows\System32\ativvaxy_cik.dat 2014-10-23 20:34 - 2013-07-18 16:47 - 00231856 _____ () C:\Windows\System32\ativvaxy_cik_nd.dat 2014-10-23 20:33 - 2014-10-23 20:33 - 00000000 ____D () C:\Program Files\ATI 2014-10-23 20:33 - 2012-09-23 00:17 - 00021160 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\amdkmafd.sys 2014-10-23 20:31 - 2012-07-22 21:52 - 00032256 _____ () C:\Windows\System32\ntrights.exe 2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-10-23 20:29 - 2014-10-23 20:29 - 00060817 _____ () C:\Windows\SysWOW64\CCCInstall_201410232129256357.log 2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Roaming\ATI 2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Local\ATI 2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\ProgramData\ATI 2014-10-23 20:27 - 2014-10-25 19:10 - 00000000 ____D () C:\ProgramData\Norton 2014-10-23 20:26 - 2014-10-25 19:06 - 00000000 ____D () C:\Program Files (x86)\Kloudian 2014-10-23 20:26 - 2014-10-24 22:44 - 00000000 ____D () C:\ProgramData\orbweb 2014-10-23 20:26 - 2014-10-23 20:26 - 00001244 _____ () C:\Users\Public\Desktop\XSplit Gamecaster.lnk 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Windows\LastGood.Tmp 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\ProgramData\SplitMediaLabs 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\AMD 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files (x86)\SplitMediaLabs 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\AMD 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\Users\User\ncftp 2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\tmp 2014-10-23 20:24 - 2014-10-23 20:24 - 00001325 _____ () C:\Users\Public\Desktop\ASRock Restart to UEFI.lnk 2014-10-23 20:23 - 2014-10-26 17:09 - 00002994 _____ () C:\Windows\System32\Tasks\AsrSP.exe 2014-10-23 20:23 - 2014-10-25 19:09 - 00000000 ____D () C:\Program Files (x86)\ASRock Utility 2014-10-23 20:23 - 2014-10-23 20:23 - 00022280 _____ (ASRock Incorporation) C:\Windows\SysWOW64\Drivers\AsrDrv101.sys 2014-10-23 20:23 - 2014-10-23 20:23 - 00002055 _____ () C:\Users\User\Desktop\XFast LAN.lnk 2014-10-23 20:23 - 2014-10-23 20:23 - 00001343 _____ () C:\Users\Public\Desktop\F-Stream Tuning.lnk 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Windows\ASRock 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Users\User\AppData\Local\cFos 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\ProgramData\cFos 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Fatal1ty Utility 2014-10-23 20:23 - 2014-07-31 15:17 - 00609544 _____ () C:\Windows\System32\USBKeyCredentialProvider.dll 2014-10-23 20:23 - 2014-06-30 14:10 - 00020232 _____ (ASRock Inc.) C:\Windows\System32\Drivers\AsrHidFilter.sys 2014-10-23 20:23 - 2013-08-02 15:39 - 00040200 _____ (ASRock Inc.) C:\Windows\System32\Drivers\AsrRamDisk.sys 2014-10-23 20:23 - 2013-05-31 15:23 - 01814880 _____ (cFos Software GmbH) C:\Windows\System32\Drivers\cfosspeed6.sys 2014-10-23 20:22 - 2014-10-25 19:10 - 00000000 ____D () C:\Program Files\Google 2014-10-23 20:22 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock Utility 2014-10-23 20:22 - 2011-11-07 09:13 - 00017192 _____ (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\AsrAppCharger.sys 2014-10-23 20:21 - 2014-10-26 18:20 - 00006400 _____ () C:\Windows\SysWOW64\Gms.log 2014-10-23 20:21 - 2014-03-14 04:22 - 00003114 _____ () C:\Windows\System32\e1d64x64.din 2014-10-23 20:21 - 2014-03-14 04:10 - 00457496 _____ (Intel Corporation) C:\Windows\System32\Drivers\e1d64x64.sys 2014-10-23 20:21 - 2014-03-12 06:16 - 00403256 ____R (Intel Corporation) C:\Windows\System32\PROUnstl.exe 2014-10-23 20:21 - 2014-03-12 06:02 - 00001904 ____N () C:\Windows\System32\SetupBD.din 2014-10-23 20:21 - 2013-12-05 23:12 - 00091936 _____ (Intel Corporation) C:\Windows\System32\NicInstD.dll 2014-10-23 20:21 - 2013-11-21 21:57 - 00073480 _____ (Intel Corporation) C:\Windows\System32\e1dmsg.dll 2014-10-23 20:21 - 2009-05-26 03:05 - 00036472 _____ (Intel Corporation) C:\Windows\System32\NicCo36.dll 2014-10-23 20:20 - 2014-10-23 20:20 - 00002799 _____ () C:\Users\Public\Desktop\Killer Network Manager.lnk 2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Qualcomm 2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Downloaded Installations 2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\Program Files\Qualcomm Atheros 2014-10-23 20:18 - 2014-10-23 20:34 - 00003718 _____ () C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2014-10-23 20:18 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-10-23 20:18 - 2014-10-23 20:18 - 00003476 _____ () C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon 2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____D () C:\ProgramData\Intel(R) Update Manager 2014-10-23 20:16 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\Intel 2014-10-23 20:16 - 2014-10-23 20:16 - 01804472 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\Intel 2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\AppData\Roaming\Intel Corporation 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files\Realtek 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-10-23 20:15 - 2014-03-11 14:50 - 00853784 _____ () C:\Windows\System32\Drivers\RTAIODAT.DAT 2014-10-23 20:15 - 2014-03-11 14:00 - 03891800 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\Drivers\RTKVHD64.sys 2014-10-23 20:15 - 2014-03-11 10:37 - 57362432 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RCoRes64.dat 2014-10-23 20:15 - 2014-03-11 03:06 - 01738032 _____ () C:\Windows\System32\SStudio.dll 2014-10-23 20:15 - 2014-03-10 10:09 - 00947928 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RCoInstII64.dll 2014-10-23 20:15 - 2014-03-07 03:57 - 02794200 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkAPO64.dll 2014-10-23 20:15 - 2014-03-06 09:35 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RTSnMg64.cpl 2014-10-23 20:15 - 2014-03-04 22:11 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\System32\slcnt64.dll 2014-10-23 20:15 - 2014-03-04 22:11 - 00889592 _____ (DTS, Inc.) C:\Windows\System32\sl3apo64.dll 2014-10-23 20:15 - 2014-03-04 22:11 - 00724728 _____ (DTS, Inc.) C:\Windows\System32\sltech64.dll 2014-10-23 20:15 - 2014-03-04 22:11 - 00246008 _____ (TODO: <Company name>) C:\Windows\System32\slprp64.dll 2014-10-23 20:15 - 2014-03-04 13:27 - 02831576 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtPgEx64.dll 2014-10-23 20:15 - 2014-03-04 10:19 - 00627928 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtDataProc64.dll 2014-10-23 20:15 - 2014-03-03 13:21 - 01019608 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkApi64.dll 2014-10-23 20:15 - 2014-02-27 13:02 - 02162992 _____ (Yamaha Corporation) C:\Windows\System32\YamahaAE.dll 2014-10-23 20:15 - 2014-02-26 08:16 - 02080472 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-10-23 20:15 - 2014-02-26 01:48 - 00942384 _____ (Nahimic Inc) C:\Windows\System32\NAHIMICAPOSettingsIPC.dll 2014-10-23 20:15 - 2014-02-26 01:47 - 05751048 _____ (Nahimic Inc) C:\Windows\System32\NAHIMICAPOlfx.dll 2014-10-23 20:15 - 2014-02-18 11:12 - 01042520 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPOShell64.dll 2014-10-23 20:15 - 2014-02-18 11:12 - 00882776 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-10-23 20:15 - 2014-02-18 10:04 - 02770976 _____ (Fortemedia Corporation) C:\Windows\System32\FMAPO64.dll 2014-10-23 20:15 - 2014-02-18 07:48 - 02396760 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO6064.dll 2014-10-23 20:15 - 2014-02-18 07:48 - 01424984 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO4064.dll 2014-10-23 20:15 - 2014-02-18 07:48 - 01423960 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO5064.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 28314200 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioVnA64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 14742104 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 12816472 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVoiceAPO3064.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 03927640 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioVnN64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\System32\WavesGUILib64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 02040920 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioEQ64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 01933400 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek264.dll 2014-10-23 20:15 - 2014-02-06 04:28 - 05804772 _____ () C:\Windows\System32\Drivers\rtvienna.dat 2014-10-23 20:15 - 2014-01-31 10:28 - 00938608 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVoiceAPO2064.dll 2014-10-23 20:15 - 2014-01-31 10:27 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxSpeechAPO64.dll 2014-10-23 20:15 - 2014-01-28 04:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RTCOM64.dll 2014-10-23 20:15 - 2013-10-15 20:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\System32\AERTAC64.dll 2014-10-23 20:15 - 2013-10-11 05:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\System32\CONEQMSAPOGUILibrary.dll 2014-10-23 20:15 - 2013-10-11 04:31 - 00947760 _____ (Sony Corporation) C:\Windows\System32\SFSS_APO.dll 2014-10-23 20:15 - 2013-10-06 17:26 - 00501184 _____ (DTS) C:\Windows\System32\DTSU2PLFX64.dll 2014-10-23 20:15 - 2013-10-06 17:26 - 00487360 _____ (DTS) C:\Windows\System32\DTSU2PGFX64.dll 2014-10-23 20:15 - 2013-10-06 17:26 - 00415680 _____ (DTS) C:\Windows\System32\DTSU2PREC64.dll 2014-10-23 20:15 - 2013-09-09 21:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\System32\DDPP64A.dll 2014-10-23 20:15 - 2013-09-09 21:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\System32\DDPO64A.dll 2014-10-23 20:15 - 2013-09-09 21:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\System32\DDPD64A.dll 2014-10-23 20:15 - 2013-09-09 21:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\System32\DDPA64.dll 2014-10-23 20:15 - 2013-08-20 10:37 - 00605496 _____ () C:\Windows\System32\audioLibVc.dll 2014-10-23 20:15 - 2013-08-14 08:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVolumeSDAPO.dll 2014-10-23 20:15 - 2013-08-14 08:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO30.dll 2014-10-23 20:15 - 2013-06-25 05:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\System32\tossaeapo64.dll 2014-10-23 20:15 - 2013-06-25 05:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\System32\toseaeapo64.dll 2014-10-23 20:15 - 2013-06-25 05:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\System32\tosasfapo64.dll 2014-10-23 20:15 - 2013-06-21 04:01 - 00109848 _____ () C:\Windows\System32\AcpiServiceVnA64.dll 2014-10-23 20:15 - 2013-04-03 07:13 - 00906800 _____ (Sony Corporation) C:\Windows\System32\MISS_APO.dll 2014-10-23 20:15 - 2012-08-31 12:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\System32\R4EEP64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\System32\R4EED64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\System32\R4EEL64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\System32\R4EEA64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\System32\R4EEG64A.dll 2014-10-23 20:15 - 2012-03-08 04:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\System32\AERTAR64.dll 2014-10-23 20:15 - 2012-01-30 04:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\System32\tadefxapo264.dll 2014-10-23 20:15 - 2012-01-10 03:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\System32\tepeqapo64.dll 2014-10-23 20:15 - 2011-12-20 08:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtlCPAPI64.dll 2014-10-23 20:15 - 2011-11-22 09:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCoLDR64.dll 2014-10-23 20:15 - 2011-09-02 07:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\System32\SFNHK64.dll 2014-10-23 20:15 - 2011-09-02 07:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\System32\SFCOM64.dll 2014-10-23 20:15 - 2011-09-02 07:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\System32\SFAPO64.dll 2014-10-23 20:15 - 2011-08-23 10:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\System32\KAAPORT64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 01756264 _____ (DTS) C:\Windows\System32\DTSS2SpeakerDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 01568360 _____ (DTS) C:\Windows\System32\DTSS2HeadphoneDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 01486952 _____ (DTS) C:\Windows\System32\DTSBoostDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00728680 _____ (DTS) C:\Windows\System32\DTSBassEnhancementDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00712296 _____ (DTS) C:\Windows\System32\DTSSymmetryDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00693352 _____ (DTS) C:\Windows\System32\DTSVoiceClarityDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00491112 _____ (DTS) C:\Windows\System32\DTSNeoPCDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00432744 _____ (DTS) C:\Windows\System32\DTSLimiterDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00428648 _____ (DTS) C:\Windows\System32\DTSGainCompensatorDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\Windows\System32\DTSLFXAPO64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\Windows\System32\DTSGFXAPO64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00241768 _____ (DTS) C:\Windows\System32\DTSGFXAPONS64.dll 2014-10-23 20:15 - 2011-03-17 05:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\System32\tosade.dll 2014-10-23 20:15 - 2011-03-07 10:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\System32\tadefxapo.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEP64A.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DHT64.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DAA64.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEED64A.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEL64A.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEG64A.dll 2014-10-23 20:15 - 2010-11-03 11:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCfg64.dll 2014-10-23 20:15 - 2010-09-27 02:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO20.dll 2014-10-23 20:15 - 2010-07-22 09:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSTSX64.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSTSH64.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSHP64.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSWOW64.dll 2014-10-23 20:12 - 2014-10-23 20:21 - 00000000 ____D () C:\Program Files\Intel 2014-10-23 20:09 - 2014-10-23 20:09 - 00000000 ____D () C:\Users\User\Downloads\Setup 2014-10-22 17:34 - 2014-10-22 17:34 - 00000687 _____ () C:\awhD963.tmp 2014-10-20 16:44 - 2014-10-20 16:44 - 822925844 _____ () C:\Windows\MEMORY.DMP 2014-10-20 16:44 - 2014-10-20 16:44 - 01429928 _____ () C:\Windows\Minidump\102014-11578-01.dmp 2014-10-20 16:44 - 2014-10-20 16:44 - 00000000 ____D () C:\Windows\Minidump 2014-10-20 10:52 - 2014-10-20 10:52 - 00111104 _____ () C:\Windows\SysWOW64\installd.exe 2014-10-19 20:24 - 2014-10-19 20:24 - 00000000 ____D () C:\Users\User\Documents\Assassin's Creed IV Black Flag 2014-10-17 15:22 - 2014-10-17 15:22 - 00001015 _____ () C:\Users\User\Desktop\cookieclicker backup.txt 2014-10-16 21:07 - 2014-10-16 21:07 - 00000679 _____ () C:\Users\Public\Desktop\Guild Wars 2.lnk 2014-10-16 21:04 - 2014-10-16 21:05 - 00000000 ____D () C:\Users\User\AppData\Roaming\Guild Wars 2 2014-10-15 17:07 - 2014-09-27 23:25 - 04183040 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys 2014-10-15 17:07 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\System32\winbici.dll 2014-10-15 17:07 - 2014-09-04 00:57 - 00921600 _____ (Microsoft Corporation) C:\Windows\System32\MrmCoreR.dll 2014-10-15 17:07 - 2014-09-04 00:49 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2014-10-15 17:06 - 2014-09-08 04:15 - 00054752 _____ (Microsoft Corporation) C:\Windows\System32\wuauclt.exe 2014-10-15 17:06 - 2014-09-08 02:46 - 00059904 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll 2014-10-15 17:06 - 2014-09-08 02:46 - 00050688 _____ (Microsoft Corporation) C:\Windows\System32\wups2.dll 2014-10-15 17:06 - 2014-09-08 01:08 - 00035328 _____ (Microsoft Corporation) C:\Windows\System32\wuapp.exe 2014-10-15 17:06 - 2014-09-08 01:07 - 00137728 _____ (Microsoft Corporation) C:\Windows\System32\wuwebv.dll 2014-10-15 17:06 - 2014-09-08 01:05 - 03448320 _____ (Microsoft Corporation) C:\Windows\System32\wuaueng.dll 2014-10-15 17:06 - 2014-09-08 01:04 - 00388608 _____ (Microsoft Corporation) C:\Windows\System32\WUSettingsProvider.dll 2014-10-15 17:06 - 2014-09-08 01:04 - 00093696 _____ (Microsoft Corporation) C:\Windows\System32\wudriver.dll 2014-10-15 17:06 - 2014-09-08 01:03 - 01702400 _____ (Microsoft Corporation) C:\Windows\System32\wucltux.dll 2014-10-15 17:06 - 2014-09-08 01:03 - 00839680 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll 2014-10-15 17:06 - 2014-09-08 00:59 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2014-10-15 17:06 - 2014-09-08 00:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2014-10-15 17:06 - 2014-09-08 00:56 - 00672256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-10-15 17:06 - 2014-09-08 00:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-10-15 17:05 - 2014-09-25 23:50 - 13619200 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2014-10-15 17:05 - 2014-09-25 23:46 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-10-15 17:05 - 2014-09-25 23:46 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-10-15 17:05 - 2014-09-25 23:43 - 11807232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-10-15 17:05 - 2014-09-25 23:32 - 02017280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-10-15 17:05 - 2014-09-25 23:31 - 02108416 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2014-10-15 17:05 - 2014-09-19 03:25 - 23631360 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2014-10-15 17:05 - 2014-09-19 02:44 - 17484800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-10-15 17:05 - 2014-09-19 02:41 - 02796032 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2014-10-15 17:05 - 2014-09-19 02:40 - 00547328 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2014-10-15 17:05 - 2014-09-19 02:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\System32\MshtmlDac.dll 2014-10-15 17:05 - 2014-09-19 02:36 - 05829632 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2014-10-15 17:05 - 2014-09-19 02:25 - 04201472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-10-15 17:05 - 2014-09-19 02:25 - 00758272 _____ (Microsoft Corporation) C:\Windows\System32\jscript9diag.dll 2014-10-15 17:05 - 2014-09-19 02:02 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-10-15 17:05 - 2014-09-19 02:00 - 00085504 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2014-10-15 17:05 - 2014-09-19 01:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-10-15 17:05 - 2014-09-19 01:58 - 00289280 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2014-10-15 17:05 - 2014-09-19 01:55 - 02187264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-10-15 17:05 - 2014-09-19 01:42 - 00731136 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2014-10-15 17:05 - 2014-09-19 01:42 - 00710656 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2014-10-15 17:05 - 2014-09-19 01:42 - 00363008 _____ (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll 2014-10-15 17:05 - 2014-09-19 01:33 - 02309632 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll 2014-10-15 17:05 - 2014-09-19 01:20 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-10-15 17:05 - 2014-09-19 01:20 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-10-15 17:05 - 2014-09-19 01:14 - 01447936 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2014-10-15 17:05 - 2014-09-19 00:59 - 01810944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-10-15 17:05 - 2014-09-19 00:59 - 00775168 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2014-10-15 17:05 - 2014-09-19 00:53 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-10-15 17:05 - 2014-09-19 00:52 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-10-15 17:05 - 2014-08-16 05:08 - 21195616 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll 2014-10-15 17:05 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\System32\propsys.dll 2014-10-15 17:05 - 2014-08-16 05:01 - 01710184 _____ (Microsoft Corporation) C:\Windows\System32\ntdll.dll 2014-10-15 17:05 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\System32\KernelBase.dll 2014-10-15 17:05 - 2014-08-16 04:57 - 02498880 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2014-10-15 17:05 - 2014-08-16 04:57 - 00428864 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS 2014-10-15 17:05 - 2014-08-16 04:16 - 18722600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-10-15 17:05 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2014-10-15 17:05 - 2014-08-16 04:03 - 01467384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-10-15 17:05 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-10-15 17:05 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\System32\Wldap32.dll 2014-10-15 17:05 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\System32\SystemEventsBrokerServer.dll 2014-10-15 17:05 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\System32\httpprxm.dll 2014-10-15 17:05 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\System32\ProximityService.dll 2014-10-15 17:05 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\System32\bisrv.dll 2014-10-15 17:05 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll 2014-10-15 17:05 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\System32\adhsvc.dll 2014-10-15 17:05 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\System32\iphlpsvc.dll 2014-10-15 17:05 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\System32\pcsvDevice.dll 2014-10-15 17:05 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\Windows\System32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-10-15 17:05 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\System32\SearchFolder.dll 2014-10-15 17:05 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\System32\SkyDriveTelemetry.dll 2014-10-15 17:05 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\System32\SkyDriveShell.dll 2014-10-15 17:05 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-10-15 17:05 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\System32\SyncEngine.dll 2014-10-15 17:05 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\System32\Windows.UI.Search.dll 2014-10-15 17:05 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2014-10-15 17:05 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\System32\mstscax.dll 2014-10-15 17:05 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2014-10-15 17:05 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2014-10-15 17:05 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\Windows\System32\WSShared.dll 2014-10-15 17:05 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe 2014-10-15 17:05 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-10-15 17:05 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-10-15 17:05 - 2014-08-01 00:22 - 00388729 _____ () C:\Windows\System32\ApnDatabase.xml 2014-10-15 17:04 - 2014-10-09 23:16 - 00678400 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll 2014-10-15 17:04 - 2014-10-08 23:09 - 00275968 _____ (Microsoft Corporation) C:\Windows\System32\generaltel.dll 2014-10-15 17:04 - 2014-09-19 02:24 - 00527360 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll 2014-10-15 17:04 - 2014-09-13 07:29 - 00076288 _____ (Microsoft Corporation) C:\Windows\System32\packager.dll 2014-10-15 17:04 - 2014-09-13 07:02 - 02779648 _____ (Microsoft Corporation) C:\Windows\System32\msi.dll 2014-10-15 17:04 - 2014-09-13 06:49 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-10-15 17:04 - 2014-09-13 06:30 - 03117568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-10-15 17:04 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\System32\rastls.dll 2014-10-15 17:04 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2014-10-15 17:04 - 2014-08-29 02:58 - 00109568 _____ (Microsoft Corporation) C:\Windows\System32\appinfo.dll 2014-10-15 17:04 - 2014-08-29 00:56 - 02646016 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll 2014-10-15 17:04 - 2014-08-29 00:47 - 02321920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-10-14 22:37 - 2014-10-24 16:03 - 00000000 ____D () C:\Users\User\AppData\Local\9765 2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\ProgramData\DivX 2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-10-14 22:36 - 2014-10-14 22:36 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_webinstrNew_01009.Wdf 2014-10-01 21:50 - 2014-10-01 21:49 - 00447752 _____ (On2.com) C:\Windows\SysWOW64\vp6vfw.dll 2014-09-28 14:31 - 2014-09-28 14:34 - 00000000 ____D () C:\Users\User\AppData\Roaming\.technic ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-26 18:39 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-10-26 18:36 - 2014-07-04 14:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\InetStat 2014-10-26 18:36 - 2014-03-02 11:58 - 00000000 ____D () C:\users\FoxMc_000 2014-10-26 18:36 - 2014-03-01 19:09 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\Users\User\AppData\Roaming\NCH Software 2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\ProgramData\NCH Software 2014-10-26 18:35 - 2014-07-16 19:19 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Torch 2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Chromatic Browser 2014-10-26 18:35 - 2014-05-03 14:49 - 00000000 ____D () C:\Users\User\AppData\Roaming\OpenCandy 2014-10-26 18:35 - 2014-03-01 19:26 - 00000000 ____D () C:\Users\User\jagexcache 2014-10-26 18:35 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\registration 2014-10-26 18:34 - 2014-03-01 17:45 - 00000000 __SHD () C:\Recovery 2014-10-26 18:10 - 2014-03-01 18:44 - 01477871 _____ () C:\Windows\WindowsUpdate.log 2014-10-26 18:10 - 2014-03-01 18:44 - 00774114 _____ () C:\Windows\PFRO.log 2014-10-26 18:02 - 2014-07-25 15:01 - 00000000 ____D () C:\Users\User\AppData\Roaming\Spotify 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-10-26 18:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help 2014-10-26 18:01 - 2014-03-01 18:59 - 00000000 ____D () C:\Users\User\AppData\Local\NVIDIA Corporation 2014-10-26 17:48 - 2014-03-01 19:09 - 00001136 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-10-26 17:15 - 2014-03-01 21:00 - 00000000 ____D () C:\Users\User\AppData\Roaming\Skype 2014-10-26 17:15 - 2014-03-01 18:54 - 01780340 _____ () C:\Windows\System32\PerfStringBackup.INI 2014-10-26 17:15 - 2013-08-23 00:24 - 00765378 _____ () C:\Windows\System32\perfh007.dat 2014-10-26 17:15 - 2013-08-23 00:24 - 00159696 _____ () C:\Windows\System32\perfc007.dat 2014-10-26 17:13 - 2014-03-01 17:56 - 00947200 ___SH () C:\Users\User\Downloads\Thumbs.db 2014-10-26 17:10 - 2014-07-25 15:02 - 00000000 ____D () C:\Users\User\AppData\Local\Spotify 2014-10-26 17:10 - 2014-07-18 12:00 - 00003188 _____ () C:\Windows\System32\Tasks\FRAPS 2014-10-26 17:10 - 2014-07-16 18:40 - 00000000 ____D () C:\Program Files (x86)\Fraps 2014-10-26 14:58 - 2014-06-10 21:42 - 00347464 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-10-26 14:58 - 2014-03-09 23:00 - 00347464 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-10-26 14:56 - 2014-03-09 23:00 - 00290776 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-10-25 19:44 - 2014-03-01 19:09 - 00000000 ____D () C:\Program Files (x86)\Google 2014-10-25 19:44 - 2014-03-01 18:55 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4069629916-1410994336-3629031801-1000 2014-10-25 19:43 - 2014-03-01 19:09 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-10-25 19:43 - 2014-03-01 19:09 - 00003872 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-10-25 19:07 - 2014-03-01 19:09 - 00000000 ____D () C:\Users\User\AppData\Local\Google 2014-10-25 19:02 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\System32\config\ELAM 2014-10-23 20:35 - 2014-03-17 20:18 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-10-23 20:34 - 2013-08-22 15:46 - 00113808 _____ () C:\Windows\setupact.log 2014-10-23 20:29 - 2014-03-09 23:01 - 00000000 ____D () C:\ProgramData\Package Cache 2014-10-23 20:27 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP 2014-10-23 20:26 - 2014-04-17 17:29 - 00000000 __SHD () C:\Windows\SysWOW64\AI_RecycleBin 2014-10-23 20:24 - 2013-08-22 15:44 - 00362840 _____ () C:\Windows\System32\FNTCACHE.DAT 2014-10-23 20:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\System32\sru 2014-10-23 19:56 - 2013-09-23 14:38 - 00000000 ___HD () C:\Users\User\Downloads\Random 2014-10-23 19:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\System32\NDF 2014-10-22 17:25 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-10-19 20:24 - 2014-03-01 21:02 - 00492384 _____ () C:\Windows\DirectX.log 2014-10-17 21:33 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\System32\config\BBI 2014-10-17 16:42 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera 2014-10-16 20:59 - 2014-01-28 19:20 - 00000777 _____ () C:\Users\User\Documents\Zugangsdaten.txt 2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ____D () C:\ProgramData\Skype 2014-10-16 11:19 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-10-16 11:18 - 2014-03-03 23:16 - 00000000 ____D () C:\Windows\System32\MRT 2014-10-16 11:17 - 2014-07-09 20:13 - 00000000 ___SD () C:\Windows\System32\CompatTel 2014-10-16 11:17 - 2014-03-03 23:16 - 103265616 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe 2014-10-14 18:36 - 2014-03-09 23:00 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-10-05 23:17 - 2014-03-01 19:39 - 00000000 ____D () C:\Users\User\AppData\Roaming\DisplayFusion 2014-10-04 12:47 - 2013-09-23 14:37 - 00000000 ____D () C:\Users\User\Downloads\'Spielhilfen' 2014-10-02 18:10 - 2014-03-01 19:38 - 00000000 ___RD () C:\Users\User\Dropbox 2014-10-02 17:55 - 2014-03-01 19:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\Dropbox 2014-10-01 23:06 - 2014-04-28 21:27 - 00000000 ____D () C:\ProgramData\Origin 2014-09-29 23:45 - 2013-08-22 16:38 - 00706016 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-29 23:45 - 2013-08-22 16:38 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-29 18:14 - 2014-03-01 19:38 - 00001081 _____ () C:\Users\User\Desktop\Dropbox.lnk 2014-09-28 14:32 - 2014-07-05 12:49 - 00000095 _____ () C:\Users\User\.atl.properties 2014-09-28 14:31 - 2013-09-23 14:37 - 00000000 ____D () C:\Users\User\Downloads\Minecraft Files to move or delete: ==================== C:\Users\User\jagex_cl_runescape_LIVE.dat C:\Users\User\jagex_cl_runescape_LIVE1.dat C:\Users\User\random.dat Some content of TEMP: ==================== C:\Users\User\AppData\Local\Temp\116EC.exe C:\Users\User\AppData\Local\Temp\6_Offer_11.exe C:\Users\User\AppData\Local\Temp\6_Offer_14.exe C:\Users\User\AppData\Local\Temp\appinstaly.exe C:\Users\User\AppData\Local\Temp\BackupSetup.exe C:\Users\User\AppData\Local\Temp\DivXInstaller.exe C:\Users\User\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpcksj8_.dll C:\Users\User\AppData\Local\Temp\drv14463.exe C:\Users\User\AppData\Local\Temp\drv16794.exe C:\Users\User\AppData\Local\Temp\drvinstal.exe C:\Users\User\AppData\Local\Temp\DseShExt-x64.dll C:\Users\User\AppData\Local\Temp\DseShExt-x86.dll C:\Users\User\AppData\Local\Temp\dxwebsetup.exe C:\Users\User\AppData\Local\Temp\FastDownload.exe C:\Users\User\AppData\Local\Temp\ffmpeg17.exe C:\Users\User\AppData\Local\Temp\Gw2.exe C:\Users\User\AppData\Local\Temp\i4jdel0.exe C:\Users\User\AppData\Local\Temp\j3dcore-ogl.dll C:\Users\User\AppData\Local\Temp\JavaIC.dll C:\Users\User\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\mixcraft6-b217-setup.exe C:\Users\User\AppData\Local\Temp\msscct32.dll C:\Users\User\AppData\Local\Temp\NrMs6.exe C:\Users\User\AppData\Local\Temp\nsmD52A.exe C:\Users\User\AppData\Local\Temp\nssBF3C.exe C:\Users\User\AppData\Local\Temp\nssD6D1.exe C:\Users\User\AppData\Local\Temp\nsyC0E3.exe C:\Users\User\AppData\Local\Temp\nsz48D.exe C:\Users\User\AppData\Local\Temp\nvSCPAPI.dll C:\Users\User\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\User\AppData\Local\Temp\nvStereoApiI.dll C:\Users\User\AppData\Local\Temp\nvStInst.exe C:\Users\User\AppData\Local\Temp\OpenComputersMod-native.64.dll C:\Users\User\AppData\Local\Temp\prismsetup.exe C:\Users\User\AppData\Local\Temp\rPKc9.dll C:\Users\User\AppData\Local\Temp\rPKc9.exe C:\Users\User\AppData\Local\Temp\SDShelEx-win32.dll C:\Users\User\AppData\Local\Temp\SDShelEx-x64.dll C:\Users\User\AppData\Local\Temp\SecurityUtility.exe C:\Users\User\AppData\Local\Temp\SkypeSetup.exe C:\Users\User\AppData\Local\Temp\sonarinst.exe C:\Users\User\AppData\Local\Temp\sp-downloader.exe C:\Users\User\AppData\Local\Temp\SppExtComObjHook.dll C:\Users\User\AppData\Local\Temp\swt-win32-3349.dll C:\Users\User\AppData\Local\Temp\vcredist_x86.exe C:\Users\User\AppData\Local\Temp\wpsetup.exe C:\Users\User\AppData\Local\Temp\xmlUpdater.exe ==================== Known DLLs (Whitelisted) ================ ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe [2014-09-14 11:53] - [2014-08-23 08:48] - 2374784 ____A (Microsoft Corporation) ACDBE1ED38167C8B01B8F63161BB2CEA C:\Windows\SysWOW64\explorer.exe [2014-09-14 11:53] - [2014-08-23 08:13] - 2084520 ____A (Microsoft Corporation) 195822ACCDAA2B4815DD01BAFC335595 C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll [2014-09-14 11:53] - [2014-07-24 16:23] - 1519488 ____A (Microsoft Corporation) A055D7D686F1CB5CBEDCFBB4C6DC9E2E C:\Windows\SysWOW64\User32.dll [2014-09-14 11:53] - [2014-07-24 09:49] - 1361408 ____A (Microsoft Corporation) A39251FAE3189E1AE1F0DF0884D37E2A C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys [2014-09-14 11:53] - [2014-06-19 03:13] - 0310080 ___AC (Microsoft Corporation) 64CA2B4A49A8EAF495E435623ECCE7DB ==================== Restore Points ========================= Restore point made on: 2014-10-01 21:50:00 Restore point made on: 2014-10-12 19:10:37 Restore point made on: 2014-10-16 11:17:02 Restore point made on: 2014-10-19 20:23:36 Restore point made on: 2014-10-23 20:16:10 Restore point made on: 2014-10-26 18:03:16 ==================== Memory info =========================== Percentage of memory in use: 7% Total physical RAM: 16277.57 MB Available physical RAM: 15019.19 MB Total Pagefile: 16277.57 MB Available Pagefile: 15051.8 MB Total Virtual: 131072 MB Available Virtual: 131071.87 MB ==================== Drives ================================ Drive a: (2x Toshiba DT01ACA100 Stripe) (Fixed) (Total:1863.02 GB) (Free:1171.26 GB) NTFS Drive c: (System-SSD) (Fixed) (Total:232.79 GB) (Free:131.24 GB) NTFS Drive d: (INTENSO USB-Stick) (Removable) (Total:14.84 GB) (Free:8.08 GB) NTFS Drive e: (WDC WD20EARX-22PASB0) (Fixed) (Total:1229.28 GB) (Free:1227.09 GB) NTFS Drive g: (SYSTEM RESERVED SSD 840) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive h: (Backup WDC) (Fixed) (Total:614.64 GB) (Free:399.39 GB) NTFS Drive i: (PQSERVICE) (Fixed) (Total:19 GB) (Free:5.45 GB) NTFS Drive j: (V1156) (CDROM) (Total:0.76 GB) (Free:0 GB) CDFS Drive x: (Boot) (Fixed) (Total:0.5 GB) (Free:0.49 GB) NTFS Drive y: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: D446B7D7) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C00) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 4F36F121) Partition 1: (Not Active) - (Size=19 GB) - (Type=27) Partition 2: (Not Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=614.6 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=1229.3 GB) - (Type=OF Extended) ======================================================== Disk: 3 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C0F) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42) ======================================================== Disk: 4 (MBR Code: Windows XP) (Size: 14.8 GB) (Disk ID: C3072E18) Partition 1: (Active) - (Size=14.8 GB) - (Type=07 NTFS) LastRegBack: 2014-10-19 02:26 ==================== End Of Log ============================ Windows 8.1 64bit Asrock X99M Killer Mainboard Intel i7-5820K @ 3,3GHz Asus Radeon R9 280X Grafikkarte Hoffe jemand kann mir helfen, danke schonmal. |
26.10.2014, 20:55 | #2 |
/// the machine /// TB-Ausbilder | PC bootet nach Anwendung von ADWCleaner nicht mehr hi,
__________________Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe, C:\Program Files (x86)\kloudian\logonsession.exe, S2 SVCM; C:\Program Files (x86)\kloudian\svcmain.exe [248472 2014-08-01] () C:\Program Files (x86)\kloudian
Das Tool erstellt eine Fixlog.txt auf deinem USB Stick. Poste den Inhalt bitte hier.
__________________ |
26.10.2014, 22:12 | #3 |
| PC bootet nach Anwendung von ADWCleaner nicht mehr Okay, hab die Fixlog.txt
__________________Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-10-2014 Ran by SYSTEM at 2014-10-26 22:06:14 Run:1 Running from d:\ Boot Mode: Recovery ============================================== Content of fixlist: ***************** HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe, C:\Program Files (x86)\kloudian\logonsession.exe, S2 SVCM; C:\Program Files (x86)\kloudian\svcmain.exe [248472 2014-08-01] () C:\Program Files (x86)\kloudian ***************** HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Userinit => Value was restored successfully. SVCM => Service deleted successfully. C:\Program Files (x86)\kloudian => Moved successfully. ==== End of Fixlog ==== Will ihn nicht ohne klare Anweisungen starten und evtl. etwas falsch machen. |
27.10.2014, 18:22 | #4 |
/// the machine /// TB-Ausbilder | PC bootet nach Anwendung von ADWCleaner nicht mehr Sollte normal starten, wenn ja dann: Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
wenn nicht dann bitte frisches FRST log aus der Recovery.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
27.10.2014, 19:21 | #5 |
| PC bootet nach Anwendung von ADWCleaner nicht mehr Leider startet der PC noch nicht. Habe immer noch den Blackscreen, also hier die neue FRST.txt: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-10-2014 Ran by SYSTEM on MININT-M9QHERK on 27-10-2014 19:17:15 Running from d:\ Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Recovery The current controlset is ControlSet001 ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log. Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [S.T.R.I.K.E.3] => C:\Program Files\Mad Catz\S.T.R.I.K.E.3\STRIKE3_Profiler.exe [40448 2013-07-18] (Mad Catz Inc) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-02-24] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation) HKLM\...\Run: [XFast LAN] => C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe [2009952 2013-05-31] (cFos Software GmbH) HKLM-x32\...\Run: [GamingMouse] => C:\Program Files (x86)\Drakonia Black\hid.exe [247296 2013-06-26] () HKLM-x32\...\Run: [Aeria Ignite] => C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation) HKLM-x32\...\Run: [Corsair Headset Software] => C:\Program Files (x86)\Corsair\Corsair Headset Software\HeadsetControlPanel.exe [3167544 2014-02-12] (Corsair Components, Inc.) HKLM-x32\...\Run: [RoccatKoneXTD] => C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE [552960 2013-10-25] (ROCCAT GmbH) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.) HKLM\...\RunOnce: [*Restore] => C:\WINDOWS\system32\rstrui.exe [271872 2014-04-06] (Microsoft Corporation) HKU\FoxMc_000\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software) HKU\FoxMc_000\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd) HKU\FoxMc_000\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe" HKU\FoxMc_000\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd) HKU\FoxMc_000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.) HKU\UpdatusUser\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software) HKU\UpdatusUser\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd) HKU\UpdatusUser\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe" HKU\UpdatusUser\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd) HKU\UpdatusUser\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.) HKU\User\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software) HKU\User\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd) HKU\User\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe" HKU\User\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd) HKU\User\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.) HKU\User\...\Run: [Fatal1tySTU] => [X] HKU\User\...\Run: [ASRockRuefi] => [X] HKU\User\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [389120 2013-09-11] (AMD) AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => C:\PROGRA~2\SupTab\SEARCH~2.DLL File Not Found AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => "C:\PROGRA~2\SupTab\SEARCH~1.DLL" File Not Found Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk ShortcutTarget: GamersFirst LIVE!.lnk -> C:\windows\system32\config\systemprofile\AppData\Local\GamersFirst\LIVE!\Live.exe (No File) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () S2 ASRockIOMon; C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\IOMonitorSrv.exe [463112 2014-07-31] () S2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation) S2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation) S2 cFosSpeedS; C:\Program Files\ASRock\XFast LAN\spd.exe [652640 2013-05-31] (cFos Software GmbH) S3 DAUpdaterSvc; A:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [25832 2013-02-12] (BioWare) S2 DisplayFusionService; A:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [1375600 2013-11-27] (Binary Fortress Software) S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) S2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-06-24] (Intel Corporation) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-04-09] () S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-06-24] (Intel Corporation) S3 KeyIso; C:\Windows\SysWOW64\keyiso.dll [44032 2013-08-22] (Microsoft Corporation) S3 lfsvc; C:\Windows\SysWOW64\GeofenceMonitorService.dll [357376 2014-03-14] (Microsoft Corporation) S3 Netlogon; C:\Windows\SysWOW64\netlogon.dll [688640 2014-03-06] (Microsoft Corporation) S2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2014-10-14] () S2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [344576 2014-04-17] (Qualcomm Atheros) S3 smphost; C:\Windows\SysWOW64\smphost.dll [11776 2013-08-22] (Microsoft Corporation) S3 StorSvc; C:\Windows\SysWOW64\storsvc.dll [18944 2013-08-22] (Microsoft Corporation) S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.) S3 ArvoFltr; C:\Windows\system32\drivers\ArvoFltr.sys [15872 2009-05-06] (ROCCAT Development, Inc.) S3 AsrDrv101; C:\WINDOWS\SysWOW64\Drivers\AsrDrv101.sys [22280 2014-10-23] (ASRock Incorporation) S3 AsrHidFilter; C:\Windows\system32\DRIVERS\AsrHidFilter.sys [20232 2014-06-30] (ASRock Inc.) S0 AsrRamDisk; C:\Windows\System32\DRIVERS\AsrRamDisk.sys [40200 2013-08-02] (ASRock Inc.) S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2013-09-24] (Advanced Micro Devices) S1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [82608 2014-04-10] (Qualcomm Atheros, Inc.) S3 CorsairAudioFilter; C:\Windows\system32\DRIVERS\corsveng2kamd64.sys [109912 2014-02-03] (Corsair Components, Inc.) S3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [457496 2014-03-14] (Intel Corporation) S3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [130224 2014-03-12] (Qualcomm Atheros, Inc.) S3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [125952 2014-06-24] (Intel Corporation) S3 SaiK1112; C:\Windows\system32\DRIVERS\SaiK1112.sys [180992 2013-07-19] (Saitek) S3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [24040 2014-06-13] (Saitek) S3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-07-19] (Saitek) S3 tap0901t; C:\Windows\system32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation) S3 _hid_0738_1715; C:\Windows\system32\DRIVERS\_hid_0738_1715.sys [179904 2014-06-13] (Saitek) S3 _usb_0738_1715; C:\Windows\System32\drivers\_usb_0738_1715.sys [46528 2014-06-13] (Saitek) S4 NVHDA; \SystemRoot\system32\drivers\nvhda64v.sys [X] S4 nvlddmkm; \SystemRoot\system32\DRIVERS\nvlddmkm.sys [X] S4 nvvad_WaveExtensible; \SystemRoot\system32\drivers\nvvad64v.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-26 22:09 - 2014-10-26 22:09 - 00000003 _____ () C:\Windows\System32\HRUPPROG.TXT 2014-10-26 22:09 - 2014-10-26 22:09 - 00000003 _____ () C:\Windows\System32\HRUPPROG.EXIT 2014-10-26 18:43 - 2014-10-27 19:13 - 00000000 ____D () C:\FRST 2014-10-26 18:34 - 2014-10-27 19:12 - 00000000 _____ () C:\Recovery.txt 2014-10-26 18:07 - 2014-10-26 18:36 - 00000000 ____D () C:\AdwCleaner 2014-10-26 14:55 - 2014-10-26 14:55 - 00000687 _____ () C:\awh4F02.tmp 2014-10-26 14:46 - 2014-10-26 14:49 - 00000000 ____D () C:\Windows\AutoKMS 2014-10-26 14:45 - 2014-10-26 14:45 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit 2014-10-26 14:44 - 2014-10-26 14:44 - 37525059 _____ () C:\Users\User\Downloads\Microsoft Toolkit.rar 2014-10-26 14:15 - 2014-10-26 14:15 - 00000687 _____ () C:\awhC8BB.tmp 2014-10-26 13:17 - 2014-10-26 13:17 - 00000687 _____ () C:\awhC705.tmp 2014-10-25 22:30 - 2014-10-25 22:30 - 00000687 _____ () C:\awhC8AB.tmp 2014-10-25 22:07 - 2014-10-25 22:07 - 00000687 _____ () C:\awhC9F3.tmp 2014-10-25 19:44 - 2014-10-25 19:44 - 00002281 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-10-25 19:15 - 2014-10-25 19:15 - 00000687 _____ () C:\awhCDBC.tmp 2014-10-25 19:05 - 2014-10-25 19:05 - 00003130 _____ () C:\Windows\System32\Tasks\{D7755D87-7BE6-49D8-9AC3-40525DCC677C} 2014-10-25 19:02 - 2014-10-25 19:02 - 00002978 _____ () C:\Windows\System32\Tasks\AsrAPPShop 2014-10-25 19:02 - 2014-10-25 19:02 - 00000000 ____D () C:\ProgramData\ASRock 2014-10-23 20:41 - 2014-10-23 20:41 - 00000687 _____ () C:\awhC86D.tmp 2014-10-23 20:35 - 2014-10-23 20:35 - 00001076 _____ () C:\Users\Public\Desktop\GPUTweakStreaming.lnk 2014-10-23 20:35 - 2014-10-23 20:35 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS 2014-10-23 20:34 - 2014-10-23 20:35 - 00000032 _____ () C:\setup.log 2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-10-23 20:34 - 2014-10-23 20:34 - 00066589 _____ () C:\Windows\SysWOW64\CCCInstall_201410232134373718.log 2014-10-23 20:34 - 2014-10-23 20:34 - 00001069 _____ () C:\Users\Public\Desktop\ASUS GPU Tweak.lnk 2014-10-23 20:34 - 2014-10-23 20:34 - 00000687 _____ () C:\awhD8A9.tmp 2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Windows\LastGood 2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\AMD 2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\AMD AVT 2014-10-23 20:34 - 2013-09-24 15:54 - 00222720 _____ (Advanced Micro Devices) C:\Windows\System32\Drivers\AtihdWB6.sys 2014-10-23 20:34 - 2013-09-24 15:54 - 00141312 _____ (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\amdacpksl.sys 2014-10-23 20:34 - 2013-09-24 15:51 - 00110080 _____ (TODO: <Company name>) C:\Windows\System32\DelayAPO.dll 2014-10-23 20:34 - 2013-09-12 03:26 - 00229888 _____ () C:\Windows\System32\clinfo.exe 2014-10-23 20:34 - 2013-09-12 03:26 - 00129536 _____ (AMD) C:\Windows\System32\coinst_13.20.dll 2014-10-23 20:34 - 2013-09-12 03:26 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\OpenVideo64.dll 2014-10-23 20:34 - 2013-09-12 03:26 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-10-23 20:34 - 2013-09-12 03:25 - 28469248 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\amdocl64.dll 2014-10-23 20:34 - 2013-09-12 03:25 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\OVDecode64.dll 2014-10-23 20:34 - 2013-09-12 03:25 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-10-23 20:34 - 2013-09-12 03:23 - 24008704 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-10-23 20:34 - 2013-09-12 03:21 - 00063488 _____ (Khronos Group) C:\Windows\System32\OpenCL.dll 2014-10-23 20:34 - 2013-09-12 03:21 - 00057344 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\Windows\System32\atiapfxx.blb 2014-10-23 20:34 - 2013-09-12 02:48 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\atidemgy.dll 2014-10-23 20:34 - 2013-08-27 21:15 - 00083392 _____ () C:\Windows\System32\ativce02.dat 2014-10-23 20:34 - 2013-08-14 03:23 - 00047427 _____ () C:\Windows\atiogl.xml 2014-10-23 20:34 - 2013-07-25 22:50 - 00234292 _____ () C:\Windows\System32\ativvaxy_cik.dat 2014-10-23 20:34 - 2013-07-18 16:47 - 00231856 _____ () C:\Windows\System32\ativvaxy_cik_nd.dat 2014-10-23 20:33 - 2014-10-23 20:33 - 00000000 ____D () C:\Program Files\ATI 2014-10-23 20:33 - 2012-09-23 00:17 - 00021160 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\amdkmafd.sys 2014-10-23 20:31 - 2012-07-22 21:52 - 00032256 _____ () C:\Windows\System32\ntrights.exe 2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-10-23 20:29 - 2014-10-23 20:29 - 00060817 _____ () C:\Windows\SysWOW64\CCCInstall_201410232129256357.log 2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Roaming\ATI 2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Local\ATI 2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\ProgramData\ATI 2014-10-23 20:27 - 2014-10-25 19:10 - 00000000 ____D () C:\ProgramData\Norton 2014-10-23 20:26 - 2014-10-24 22:44 - 00000000 ____D () C:\ProgramData\orbweb 2014-10-23 20:26 - 2014-10-23 20:26 - 00001244 _____ () C:\Users\Public\Desktop\XSplit Gamecaster.lnk 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Windows\LastGood.Tmp 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\ProgramData\SplitMediaLabs 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\AMD 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files (x86)\SplitMediaLabs 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\AMD 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\Users\User\ncftp 2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\tmp 2014-10-23 20:24 - 2014-10-23 20:24 - 00001325 _____ () C:\Users\Public\Desktop\ASRock Restart to UEFI.lnk 2014-10-23 20:23 - 2014-10-26 17:09 - 00002994 _____ () C:\Windows\System32\Tasks\AsrSP.exe 2014-10-23 20:23 - 2014-10-25 19:09 - 00000000 ____D () C:\Program Files (x86)\ASRock Utility 2014-10-23 20:23 - 2014-10-23 20:23 - 00022280 _____ (ASRock Incorporation) C:\Windows\SysWOW64\Drivers\AsrDrv101.sys 2014-10-23 20:23 - 2014-10-23 20:23 - 00002055 _____ () C:\Users\User\Desktop\XFast LAN.lnk 2014-10-23 20:23 - 2014-10-23 20:23 - 00001343 _____ () C:\Users\Public\Desktop\F-Stream Tuning.lnk 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Windows\ASRock 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Users\User\AppData\Local\cFos 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\ProgramData\cFos 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Fatal1ty Utility 2014-10-23 20:23 - 2014-07-31 15:17 - 00609544 _____ () C:\Windows\System32\USBKeyCredentialProvider.dll 2014-10-23 20:23 - 2014-06-30 14:10 - 00020232 _____ (ASRock Inc.) C:\Windows\System32\Drivers\AsrHidFilter.sys 2014-10-23 20:23 - 2013-08-02 15:39 - 00040200 _____ (ASRock Inc.) C:\Windows\System32\Drivers\AsrRamDisk.sys 2014-10-23 20:23 - 2013-05-31 15:23 - 01814880 _____ (cFos Software GmbH) C:\Windows\System32\Drivers\cfosspeed6.sys 2014-10-23 20:22 - 2014-10-25 19:10 - 00000000 ____D () C:\Program Files\Google 2014-10-23 20:22 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock Utility 2014-10-23 20:22 - 2011-11-07 09:13 - 00017192 _____ (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\AsrAppCharger.sys 2014-10-23 20:21 - 2014-10-26 18:20 - 00006400 _____ () C:\Windows\SysWOW64\Gms.log 2014-10-23 20:21 - 2014-03-14 04:22 - 00003114 _____ () C:\Windows\System32\e1d64x64.din 2014-10-23 20:21 - 2014-03-14 04:10 - 00457496 _____ (Intel Corporation) C:\Windows\System32\Drivers\e1d64x64.sys 2014-10-23 20:21 - 2014-03-12 06:16 - 00403256 ____R (Intel Corporation) C:\Windows\System32\PROUnstl.exe 2014-10-23 20:21 - 2014-03-12 06:02 - 00001904 ____N () C:\Windows\System32\SetupBD.din 2014-10-23 20:21 - 2013-12-05 23:12 - 00091936 _____ (Intel Corporation) C:\Windows\System32\NicInstD.dll 2014-10-23 20:21 - 2013-11-21 21:57 - 00073480 _____ (Intel Corporation) C:\Windows\System32\e1dmsg.dll 2014-10-23 20:21 - 2009-05-26 03:05 - 00036472 _____ (Intel Corporation) C:\Windows\System32\NicCo36.dll 2014-10-23 20:20 - 2014-10-23 20:20 - 00002799 _____ () C:\Users\Public\Desktop\Killer Network Manager.lnk 2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Qualcomm 2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Downloaded Installations 2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\Program Files\Qualcomm Atheros 2014-10-23 20:18 - 2014-10-23 20:34 - 00003718 _____ () C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2014-10-23 20:18 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-10-23 20:18 - 2014-10-23 20:18 - 00003476 _____ () C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon 2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____D () C:\ProgramData\Intel(R) Update Manager 2014-10-23 20:16 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\Intel 2014-10-23 20:16 - 2014-10-23 20:16 - 01804472 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\Intel 2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\AppData\Roaming\Intel Corporation 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files\Realtek 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-10-23 20:15 - 2014-03-11 14:50 - 00853784 _____ () C:\Windows\System32\Drivers\RTAIODAT.DAT 2014-10-23 20:15 - 2014-03-11 14:00 - 03891800 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\Drivers\RTKVHD64.sys 2014-10-23 20:15 - 2014-03-11 10:37 - 57362432 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RCoRes64.dat 2014-10-23 20:15 - 2014-03-11 03:06 - 01738032 _____ () C:\Windows\System32\SStudio.dll 2014-10-23 20:15 - 2014-03-10 10:09 - 00947928 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RCoInstII64.dll 2014-10-23 20:15 - 2014-03-07 03:57 - 02794200 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkAPO64.dll 2014-10-23 20:15 - 2014-03-06 09:35 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RTSnMg64.cpl 2014-10-23 20:15 - 2014-03-04 22:11 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\System32\slcnt64.dll 2014-10-23 20:15 - 2014-03-04 22:11 - 00889592 _____ (DTS, Inc.) C:\Windows\System32\sl3apo64.dll 2014-10-23 20:15 - 2014-03-04 22:11 - 00724728 _____ (DTS, Inc.) C:\Windows\System32\sltech64.dll 2014-10-23 20:15 - 2014-03-04 22:11 - 00246008 _____ (TODO: <Company name>) C:\Windows\System32\slprp64.dll 2014-10-23 20:15 - 2014-03-04 13:27 - 02831576 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtPgEx64.dll 2014-10-23 20:15 - 2014-03-04 10:19 - 00627928 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtDataProc64.dll 2014-10-23 20:15 - 2014-03-03 13:21 - 01019608 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkApi64.dll 2014-10-23 20:15 - 2014-02-27 13:02 - 02162992 _____ (Yamaha Corporation) C:\Windows\System32\YamahaAE.dll 2014-10-23 20:15 - 2014-02-26 08:16 - 02080472 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-10-23 20:15 - 2014-02-26 01:48 - 00942384 _____ (Nahimic Inc) C:\Windows\System32\NAHIMICAPOSettingsIPC.dll 2014-10-23 20:15 - 2014-02-26 01:47 - 05751048 _____ (Nahimic Inc) C:\Windows\System32\NAHIMICAPOlfx.dll 2014-10-23 20:15 - 2014-02-18 11:12 - 01042520 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPOShell64.dll 2014-10-23 20:15 - 2014-02-18 11:12 - 00882776 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-10-23 20:15 - 2014-02-18 10:04 - 02770976 _____ (Fortemedia Corporation) C:\Windows\System32\FMAPO64.dll 2014-10-23 20:15 - 2014-02-18 07:48 - 02396760 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO6064.dll 2014-10-23 20:15 - 2014-02-18 07:48 - 01424984 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO4064.dll 2014-10-23 20:15 - 2014-02-18 07:48 - 01423960 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO5064.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 28314200 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioVnA64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 14742104 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 12816472 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVoiceAPO3064.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 03927640 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioVnN64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\System32\WavesGUILib64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 02040920 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioEQ64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 01933400 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek264.dll 2014-10-23 20:15 - 2014-02-06 04:28 - 05804772 _____ () C:\Windows\System32\Drivers\rtvienna.dat 2014-10-23 20:15 - 2014-01-31 10:28 - 00938608 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVoiceAPO2064.dll 2014-10-23 20:15 - 2014-01-31 10:27 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxSpeechAPO64.dll 2014-10-23 20:15 - 2014-01-28 04:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RTCOM64.dll 2014-10-23 20:15 - 2013-10-15 20:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\System32\AERTAC64.dll 2014-10-23 20:15 - 2013-10-11 05:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\System32\CONEQMSAPOGUILibrary.dll 2014-10-23 20:15 - 2013-10-11 04:31 - 00947760 _____ (Sony Corporation) C:\Windows\System32\SFSS_APO.dll 2014-10-23 20:15 - 2013-10-06 17:26 - 00501184 _____ (DTS) C:\Windows\System32\DTSU2PLFX64.dll 2014-10-23 20:15 - 2013-10-06 17:26 - 00487360 _____ (DTS) C:\Windows\System32\DTSU2PGFX64.dll 2014-10-23 20:15 - 2013-10-06 17:26 - 00415680 _____ (DTS) C:\Windows\System32\DTSU2PREC64.dll 2014-10-23 20:15 - 2013-09-09 21:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\System32\DDPP64A.dll 2014-10-23 20:15 - 2013-09-09 21:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\System32\DDPO64A.dll 2014-10-23 20:15 - 2013-09-09 21:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\System32\DDPD64A.dll 2014-10-23 20:15 - 2013-09-09 21:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\System32\DDPA64.dll 2014-10-23 20:15 - 2013-08-20 10:37 - 00605496 _____ () C:\Windows\System32\audioLibVc.dll 2014-10-23 20:15 - 2013-08-14 08:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxVolumeSDAPO.dll 2014-10-23 20:15 - 2013-08-14 08:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO30.dll 2014-10-23 20:15 - 2013-06-25 05:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\System32\tossaeapo64.dll 2014-10-23 20:15 - 2013-06-25 05:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\System32\toseaeapo64.dll 2014-10-23 20:15 - 2013-06-25 05:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\System32\tosasfapo64.dll 2014-10-23 20:15 - 2013-06-21 04:01 - 00109848 _____ () C:\Windows\System32\AcpiServiceVnA64.dll 2014-10-23 20:15 - 2013-04-03 07:13 - 00906800 _____ (Sony Corporation) C:\Windows\System32\MISS_APO.dll 2014-10-23 20:15 - 2012-08-31 12:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\System32\R4EEP64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\System32\R4EED64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\System32\R4EEL64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\System32\R4EEA64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\System32\R4EEG64A.dll 2014-10-23 20:15 - 2012-03-08 04:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\System32\AERTAR64.dll 2014-10-23 20:15 - 2012-01-30 04:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\System32\tadefxapo264.dll 2014-10-23 20:15 - 2012-01-10 03:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\System32\tepeqapo64.dll 2014-10-23 20:15 - 2011-12-20 08:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtlCPAPI64.dll 2014-10-23 20:15 - 2011-11-22 09:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCoLDR64.dll 2014-10-23 20:15 - 2011-09-02 07:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\System32\SFNHK64.dll 2014-10-23 20:15 - 2011-09-02 07:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\System32\SFCOM64.dll 2014-10-23 20:15 - 2011-09-02 07:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\System32\SFAPO64.dll 2014-10-23 20:15 - 2011-08-23 10:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\System32\KAAPORT64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 01756264 _____ (DTS) C:\Windows\System32\DTSS2SpeakerDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 01568360 _____ (DTS) C:\Windows\System32\DTSS2HeadphoneDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 01486952 _____ (DTS) C:\Windows\System32\DTSBoostDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00728680 _____ (DTS) C:\Windows\System32\DTSBassEnhancementDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00712296 _____ (DTS) C:\Windows\System32\DTSSymmetryDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00693352 _____ (DTS) C:\Windows\System32\DTSVoiceClarityDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00491112 _____ (DTS) C:\Windows\System32\DTSNeoPCDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00432744 _____ (DTS) C:\Windows\System32\DTSLimiterDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00428648 _____ (DTS) C:\Windows\System32\DTSGainCompensatorDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\Windows\System32\DTSLFXAPO64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\Windows\System32\DTSGFXAPO64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00241768 _____ (DTS) C:\Windows\System32\DTSGFXAPONS64.dll 2014-10-23 20:15 - 2011-03-17 05:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\System32\tosade.dll 2014-10-23 20:15 - 2011-03-07 10:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\System32\tadefxapo.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEP64A.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DHT64.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DAA64.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEED64A.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEL64A.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEG64A.dll 2014-10-23 20:15 - 2010-11-03 11:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCfg64.dll 2014-10-23 20:15 - 2010-09-27 02:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO20.dll 2014-10-23 20:15 - 2010-07-22 09:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSTSX64.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSTSH64.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSHP64.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\System32\SRSWOW64.dll 2014-10-23 20:12 - 2014-10-23 20:21 - 00000000 ____D () C:\Program Files\Intel 2014-10-23 20:09 - 2014-10-23 20:09 - 00000000 ____D () C:\Users\User\Downloads\Setup 2014-10-22 17:34 - 2014-10-22 17:34 - 00000687 _____ () C:\awhD963.tmp 2014-10-20 16:44 - 2014-10-20 16:44 - 822925844 _____ () C:\Windows\MEMORY.DMP 2014-10-20 16:44 - 2014-10-20 16:44 - 01429928 _____ () C:\Windows\Minidump\102014-11578-01.dmp 2014-10-20 16:44 - 2014-10-20 16:44 - 00000000 ____D () C:\Windows\Minidump 2014-10-20 10:52 - 2014-10-20 10:52 - 00111104 _____ () C:\Windows\SysWOW64\installd.exe 2014-10-19 20:24 - 2014-10-19 20:24 - 00000000 ____D () C:\Users\User\Documents\Assassin's Creed IV Black Flag 2014-10-17 15:22 - 2014-10-17 15:22 - 00001015 _____ () C:\Users\User\Desktop\cookieclicker backup.txt 2014-10-16 21:07 - 2014-10-16 21:07 - 00000679 _____ () C:\Users\Public\Desktop\Guild Wars 2.lnk 2014-10-16 21:04 - 2014-10-16 21:05 - 00000000 ____D () C:\Users\User\AppData\Roaming\Guild Wars 2 2014-10-15 17:07 - 2014-09-27 23:25 - 04183040 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys 2014-10-15 17:07 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\System32\winbici.dll 2014-10-15 17:07 - 2014-09-04 00:57 - 00921600 _____ (Microsoft Corporation) C:\Windows\System32\MrmCoreR.dll 2014-10-15 17:07 - 2014-09-04 00:49 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2014-10-15 17:06 - 2014-09-08 04:15 - 00054752 _____ (Microsoft Corporation) C:\Windows\System32\wuauclt.exe 2014-10-15 17:06 - 2014-09-08 02:46 - 00059904 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll 2014-10-15 17:06 - 2014-09-08 02:46 - 00050688 _____ (Microsoft Corporation) C:\Windows\System32\wups2.dll 2014-10-15 17:06 - 2014-09-08 01:08 - 00035328 _____ (Microsoft Corporation) C:\Windows\System32\wuapp.exe 2014-10-15 17:06 - 2014-09-08 01:07 - 00137728 _____ (Microsoft Corporation) C:\Windows\System32\wuwebv.dll 2014-10-15 17:06 - 2014-09-08 01:05 - 03448320 _____ (Microsoft Corporation) C:\Windows\System32\wuaueng.dll 2014-10-15 17:06 - 2014-09-08 01:04 - 00388608 _____ (Microsoft Corporation) C:\Windows\System32\WUSettingsProvider.dll 2014-10-15 17:06 - 2014-09-08 01:04 - 00093696 _____ (Microsoft Corporation) C:\Windows\System32\wudriver.dll 2014-10-15 17:06 - 2014-09-08 01:03 - 01702400 _____ (Microsoft Corporation) C:\Windows\System32\wucltux.dll 2014-10-15 17:06 - 2014-09-08 01:03 - 00839680 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll 2014-10-15 17:06 - 2014-09-08 00:59 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2014-10-15 17:06 - 2014-09-08 00:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2014-10-15 17:06 - 2014-09-08 00:56 - 00672256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-10-15 17:06 - 2014-09-08 00:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-10-15 17:05 - 2014-09-25 23:50 - 13619200 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2014-10-15 17:05 - 2014-09-25 23:46 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-10-15 17:05 - 2014-09-25 23:46 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-10-15 17:05 - 2014-09-25 23:43 - 11807232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-10-15 17:05 - 2014-09-25 23:32 - 02017280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-10-15 17:05 - 2014-09-25 23:31 - 02108416 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2014-10-15 17:05 - 2014-09-19 03:25 - 23631360 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2014-10-15 17:05 - 2014-09-19 02:44 - 17484800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-10-15 17:05 - 2014-09-19 02:41 - 02796032 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2014-10-15 17:05 - 2014-09-19 02:40 - 00547328 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2014-10-15 17:05 - 2014-09-19 02:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\System32\MshtmlDac.dll 2014-10-15 17:05 - 2014-09-19 02:36 - 05829632 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2014-10-15 17:05 - 2014-09-19 02:25 - 04201472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-10-15 17:05 - 2014-09-19 02:25 - 00758272 _____ (Microsoft Corporation) C:\Windows\System32\jscript9diag.dll 2014-10-15 17:05 - 2014-09-19 02:02 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-10-15 17:05 - 2014-09-19 02:00 - 00085504 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2014-10-15 17:05 - 2014-09-19 01:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-10-15 17:05 - 2014-09-19 01:58 - 00289280 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2014-10-15 17:05 - 2014-09-19 01:55 - 02187264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-10-15 17:05 - 2014-09-19 01:42 - 00731136 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2014-10-15 17:05 - 2014-09-19 01:42 - 00710656 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2014-10-15 17:05 - 2014-09-19 01:42 - 00363008 _____ (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll 2014-10-15 17:05 - 2014-09-19 01:33 - 02309632 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll 2014-10-15 17:05 - 2014-09-19 01:20 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-10-15 17:05 - 2014-09-19 01:20 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-10-15 17:05 - 2014-09-19 01:14 - 01447936 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2014-10-15 17:05 - 2014-09-19 00:59 - 01810944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-10-15 17:05 - 2014-09-19 00:59 - 00775168 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2014-10-15 17:05 - 2014-09-19 00:53 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-10-15 17:05 - 2014-09-19 00:52 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-10-15 17:05 - 2014-08-16 05:08 - 21195616 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll 2014-10-15 17:05 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\System32\propsys.dll 2014-10-15 17:05 - 2014-08-16 05:01 - 01710184 _____ (Microsoft Corporation) C:\Windows\System32\ntdll.dll 2014-10-15 17:05 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\System32\KernelBase.dll 2014-10-15 17:05 - 2014-08-16 04:57 - 02498880 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2014-10-15 17:05 - 2014-08-16 04:57 - 00428864 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS 2014-10-15 17:05 - 2014-08-16 04:16 - 18722600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-10-15 17:05 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2014-10-15 17:05 - 2014-08-16 04:03 - 01467384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-10-15 17:05 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-10-15 17:05 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\System32\Wldap32.dll 2014-10-15 17:05 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\System32\SystemEventsBrokerServer.dll 2014-10-15 17:05 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\System32\httpprxm.dll 2014-10-15 17:05 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\System32\ProximityService.dll 2014-10-15 17:05 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\System32\bisrv.dll 2014-10-15 17:05 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll 2014-10-15 17:05 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\System32\adhsvc.dll 2014-10-15 17:05 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\System32\iphlpsvc.dll 2014-10-15 17:05 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\System32\pcsvDevice.dll 2014-10-15 17:05 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\Windows\System32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-10-15 17:05 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\System32\SearchFolder.dll 2014-10-15 17:05 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\System32\SkyDriveTelemetry.dll 2014-10-15 17:05 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\System32\SkyDriveShell.dll 2014-10-15 17:05 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-10-15 17:05 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\System32\SyncEngine.dll 2014-10-15 17:05 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\System32\Windows.UI.Search.dll 2014-10-15 17:05 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2014-10-15 17:05 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\System32\mstscax.dll 2014-10-15 17:05 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2014-10-15 17:05 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2014-10-15 17:05 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\Windows\System32\WSShared.dll 2014-10-15 17:05 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe 2014-10-15 17:05 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-10-15 17:05 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-10-15 17:05 - 2014-08-01 00:22 - 00388729 _____ () C:\Windows\System32\ApnDatabase.xml 2014-10-15 17:04 - 2014-10-09 23:16 - 00678400 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll 2014-10-15 17:04 - 2014-10-08 23:09 - 00275968 _____ (Microsoft Corporation) C:\Windows\System32\generaltel.dll 2014-10-15 17:04 - 2014-09-19 02:24 - 00527360 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll 2014-10-15 17:04 - 2014-09-13 07:29 - 00076288 _____ (Microsoft Corporation) C:\Windows\System32\packager.dll 2014-10-15 17:04 - 2014-09-13 07:02 - 02779648 _____ (Microsoft Corporation) C:\Windows\System32\msi.dll 2014-10-15 17:04 - 2014-09-13 06:49 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-10-15 17:04 - 2014-09-13 06:30 - 03117568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-10-15 17:04 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\System32\rastls.dll 2014-10-15 17:04 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2014-10-15 17:04 - 2014-08-29 02:58 - 00109568 _____ (Microsoft Corporation) C:\Windows\System32\appinfo.dll 2014-10-15 17:04 - 2014-08-29 00:56 - 02646016 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll 2014-10-15 17:04 - 2014-08-29 00:47 - 02321920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-10-14 22:37 - 2014-10-24 16:03 - 00000000 ____D () C:\Users\User\AppData\Local\9765 2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\ProgramData\DivX 2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-10-14 22:36 - 2014-10-14 22:36 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_webinstrNew_01009.Wdf 2014-10-01 21:50 - 2014-10-01 21:49 - 00447752 _____ (On2.com) C:\Windows\SysWOW64\vp6vfw.dll 2014-09-28 14:31 - 2014-09-28 14:34 - 00000000 ____D () C:\Users\User\AppData\Roaming\.technic ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-27 19:10 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-10-26 22:09 - 2014-08-07 06:49 - 00001850 _____ () C:\Users\Public\Desktop\Smite.lnk 2014-10-26 18:36 - 2014-07-04 14:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\InetStat 2014-10-26 18:36 - 2014-03-02 11:58 - 00000000 ____D () C:\users\FoxMc_000 2014-10-26 18:36 - 2014-03-01 19:09 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\Users\User\AppData\Roaming\NCH Software 2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\ProgramData\NCH Software 2014-10-26 18:35 - 2014-07-16 19:19 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Torch 2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Chromatic Browser 2014-10-26 18:35 - 2014-05-03 14:49 - 00000000 ____D () C:\Users\User\AppData\Roaming\OpenCandy 2014-10-26 18:35 - 2014-03-01 19:26 - 00000000 ____D () C:\Users\User\jagexcache 2014-10-26 18:35 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\registration 2014-10-26 18:34 - 2014-03-01 17:45 - 00000000 __SHD () C:\Recovery 2014-10-26 18:10 - 2014-03-01 18:44 - 01477871 _____ () C:\Windows\WindowsUpdate.log 2014-10-26 18:10 - 2014-03-01 18:44 - 00774114 _____ () C:\Windows\PFRO.log 2014-10-26 18:02 - 2014-07-25 15:01 - 00000000 ____D () C:\Users\User\AppData\Roaming\Spotify 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-10-26 18:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help 2014-10-26 18:01 - 2014-03-01 18:59 - 00000000 ____D () C:\Users\User\AppData\Local\NVIDIA Corporation 2014-10-26 17:48 - 2014-03-01 19:09 - 00001136 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-10-26 17:15 - 2014-03-01 21:00 - 00000000 ____D () C:\Users\User\AppData\Roaming\Skype 2014-10-26 17:15 - 2014-03-01 18:54 - 01780340 _____ () C:\Windows\System32\PerfStringBackup.INI 2014-10-26 17:15 - 2013-08-23 00:24 - 00765378 _____ () C:\Windows\System32\perfh007.dat 2014-10-26 17:15 - 2013-08-23 00:24 - 00159696 _____ () C:\Windows\System32\perfc007.dat 2014-10-26 17:13 - 2014-03-01 17:56 - 00947200 ___SH () C:\Users\User\Downloads\Thumbs.db 2014-10-26 17:10 - 2014-07-25 15:02 - 00000000 ____D () C:\Users\User\AppData\Local\Spotify 2014-10-26 17:10 - 2014-07-18 12:00 - 00003188 _____ () C:\Windows\System32\Tasks\FRAPS 2014-10-26 17:10 - 2014-07-16 18:40 - 00000000 ____D () C:\Program Files (x86)\Fraps 2014-10-26 14:58 - 2014-06-10 21:42 - 00347464 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-10-26 14:58 - 2014-03-09 23:00 - 00347464 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-10-26 14:56 - 2014-03-09 23:00 - 00290776 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-10-25 19:44 - 2014-03-01 19:09 - 00000000 ____D () C:\Program Files (x86)\Google 2014-10-25 19:44 - 2014-03-01 18:55 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4069629916-1410994336-3629031801-1000 2014-10-25 19:43 - 2014-03-01 19:09 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-10-25 19:43 - 2014-03-01 19:09 - 00003872 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-10-25 19:07 - 2014-03-01 19:09 - 00000000 ____D () C:\Users\User\AppData\Local\Google 2014-10-25 19:02 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP 2014-10-25 19:02 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\System32\config\ELAM 2014-10-23 20:35 - 2014-03-17 20:18 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-10-23 20:34 - 2013-08-22 15:46 - 00113808 _____ () C:\Windows\setupact.log 2014-10-23 20:29 - 2014-03-09 23:01 - 00000000 ____D () C:\ProgramData\Package Cache 2014-10-23 20:26 - 2014-04-17 17:29 - 00000000 __SHD () C:\Windows\SysWOW64\AI_RecycleBin 2014-10-23 20:24 - 2013-08-22 15:44 - 00362840 _____ () C:\Windows\System32\FNTCACHE.DAT 2014-10-23 20:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\System32\sru 2014-10-23 19:56 - 2013-09-23 14:38 - 00000000 ___HD () C:\Users\User\Downloads\Random 2014-10-23 19:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\System32\NDF 2014-10-22 17:25 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-10-19 20:24 - 2014-03-01 21:02 - 00492384 _____ () C:\Windows\DirectX.log 2014-10-17 21:33 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\System32\config\BBI 2014-10-17 16:42 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera 2014-10-16 20:59 - 2014-01-28 19:20 - 00000777 _____ () C:\Users\User\Documents\Zugangsdaten.txt 2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ____D () C:\ProgramData\Skype 2014-10-16 11:19 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp 2014-10-16 11:18 - 2014-03-03 23:16 - 00000000 ____D () C:\Windows\System32\MRT 2014-10-16 11:17 - 2014-07-09 20:13 - 00000000 ___SD () C:\Windows\System32\CompatTel 2014-10-16 11:17 - 2014-03-03 23:16 - 103265616 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe 2014-10-14 18:36 - 2014-03-09 23:00 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-10-05 23:17 - 2014-03-01 19:39 - 00000000 ____D () C:\Users\User\AppData\Roaming\DisplayFusion 2014-10-04 12:47 - 2013-09-23 14:37 - 00000000 ____D () C:\Users\User\Downloads\'Spielhilfen' 2014-10-02 18:10 - 2014-03-01 19:38 - 00000000 ___RD () C:\Users\User\Dropbox 2014-10-02 17:55 - 2014-03-01 19:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\Dropbox 2014-10-01 23:06 - 2014-04-28 21:27 - 00000000 ____D () C:\ProgramData\Origin 2014-09-29 23:45 - 2013-08-22 16:38 - 00706016 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-29 23:45 - 2013-08-22 16:38 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-29 18:14 - 2014-03-01 19:38 - 00001081 _____ () C:\Users\User\Desktop\Dropbox.lnk 2014-09-28 14:32 - 2014-07-05 12:49 - 00000095 _____ () C:\Users\User\.atl.properties 2014-09-28 14:31 - 2013-09-23 14:37 - 00000000 ____D () C:\Users\User\Downloads\Minecraft Files to move or delete: ==================== C:\Users\User\jagex_cl_runescape_LIVE.dat C:\Users\User\jagex_cl_runescape_LIVE1.dat C:\Users\User\random.dat Some content of TEMP: ==================== C:\Users\User\AppData\Local\Temp\116EC.exe C:\Users\User\AppData\Local\Temp\6_Offer_11.exe C:\Users\User\AppData\Local\Temp\6_Offer_14.exe C:\Users\User\AppData\Local\Temp\appinstaly.exe C:\Users\User\AppData\Local\Temp\BackupSetup.exe C:\Users\User\AppData\Local\Temp\DivXInstaller.exe C:\Users\User\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpcksj8_.dll C:\Users\User\AppData\Local\Temp\drv14463.exe C:\Users\User\AppData\Local\Temp\drv16794.exe C:\Users\User\AppData\Local\Temp\drvinstal.exe C:\Users\User\AppData\Local\Temp\DseShExt-x64.dll C:\Users\User\AppData\Local\Temp\DseShExt-x86.dll C:\Users\User\AppData\Local\Temp\dxwebsetup.exe C:\Users\User\AppData\Local\Temp\FastDownload.exe C:\Users\User\AppData\Local\Temp\ffmpeg17.exe C:\Users\User\AppData\Local\Temp\Gw2.exe C:\Users\User\AppData\Local\Temp\i4jdel0.exe C:\Users\User\AppData\Local\Temp\j3dcore-ogl.dll C:\Users\User\AppData\Local\Temp\JavaIC.dll C:\Users\User\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\mixcraft6-b217-setup.exe C:\Users\User\AppData\Local\Temp\msscct32.dll C:\Users\User\AppData\Local\Temp\NrMs6.exe C:\Users\User\AppData\Local\Temp\nsmD52A.exe C:\Users\User\AppData\Local\Temp\nssBF3C.exe C:\Users\User\AppData\Local\Temp\nssD6D1.exe C:\Users\User\AppData\Local\Temp\nsyC0E3.exe C:\Users\User\AppData\Local\Temp\nsz48D.exe C:\Users\User\AppData\Local\Temp\nvSCPAPI.dll C:\Users\User\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\User\AppData\Local\Temp\nvStereoApiI.dll C:\Users\User\AppData\Local\Temp\nvStInst.exe C:\Users\User\AppData\Local\Temp\OpenComputersMod-native.64.dll C:\Users\User\AppData\Local\Temp\prismsetup.exe C:\Users\User\AppData\Local\Temp\rPKc9.dll C:\Users\User\AppData\Local\Temp\rPKc9.exe C:\Users\User\AppData\Local\Temp\SDShelEx-win32.dll C:\Users\User\AppData\Local\Temp\SDShelEx-x64.dll C:\Users\User\AppData\Local\Temp\SecurityUtility.exe C:\Users\User\AppData\Local\Temp\SkypeSetup.exe C:\Users\User\AppData\Local\Temp\sonarinst.exe C:\Users\User\AppData\Local\Temp\sp-downloader.exe C:\Users\User\AppData\Local\Temp\SppExtComObjHook.dll C:\Users\User\AppData\Local\Temp\swt-win32-3349.dll C:\Users\User\AppData\Local\Temp\vcredist_x86.exe C:\Users\User\AppData\Local\Temp\wpsetup.exe C:\Users\User\AppData\Local\Temp\xmlUpdater.exe ==================== Known DLLs (Whitelisted) ================ ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe [2014-09-14 11:53] - [2014-08-23 08:48] - 2374784 ____A (Microsoft Corporation) ACDBE1ED38167C8B01B8F63161BB2CEA C:\Windows\SysWOW64\explorer.exe [2014-09-14 11:53] - [2014-08-23 08:13] - 2084520 ____A (Microsoft Corporation) 195822ACCDAA2B4815DD01BAFC335595 C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll [2014-09-14 11:53] - [2014-07-24 16:23] - 1519488 ____A (Microsoft Corporation) A055D7D686F1CB5CBEDCFBB4C6DC9E2E C:\Windows\SysWOW64\User32.dll [2014-09-14 11:53] - [2014-07-24 09:49] - 1361408 ____A (Microsoft Corporation) A39251FAE3189E1AE1F0DF0884D37E2A C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys [2014-09-14 11:53] - [2014-06-19 03:13] - 0310080 ___AC (Microsoft Corporation) 64CA2B4A49A8EAF495E435623ECCE7DB ==================== Restore Points ========================= Restore point made on: 2014-10-01 21:50:00 Restore point made on: 2014-10-12 19:10:37 Restore point made on: 2014-10-16 11:17:02 Restore point made on: 2014-10-19 20:23:36 Restore point made on: 2014-10-23 20:16:10 Restore point made on: 2014-10-26 18:03:16 ==================== Memory info =========================== Percentage of memory in use: 7% Total physical RAM: 16277.57 MB Available physical RAM: 15047.68 MB Total Pagefile: 16277.57 MB Available Pagefile: 15062.05 MB Total Virtual: 131072 MB Available Virtual: 131071.88 MB ==================== Drives ================================ Drive a: (2x Toshiba DT01ACA100 Stripe) (Fixed) (Total:1863.02 GB) (Free:1171.26 GB) NTFS Drive c: (System-SSD) (Fixed) (Total:232.79 GB) (Free:131.21 GB) NTFS Drive d: (INTENSO USB-Stick) (Removable) (Total:14.84 GB) (Free:8.08 GB) NTFS Drive e: (WDC WD20EARX-22PASB0) (Fixed) (Total:1229.28 GB) (Free:1227.09 GB) NTFS Drive g: (SYSTEM RESERVED SSD 840) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive h: (Backup WDC) (Fixed) (Total:614.64 GB) (Free:399.39 GB) NTFS Drive i: (PQSERVICE) (Fixed) (Total:19 GB) (Free:5.45 GB) NTFS Drive j: (IRM_CCSA_X64FRE_DE-DE_DV5) (CDROM) (Total:3.68 GB) (Free:0 GB) UDF Drive x: (Boot) (Fixed) (Total:0.5 GB) (Free:0.49 GB) NTFS Drive y: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: D446B7D7) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C00) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 4F36F121) Partition 1: (Not Active) - (Size=19 GB) - (Type=27) Partition 2: (Not Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=614.6 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=1229.3 GB) - (Type=OF Extended) ======================================================== Disk: 3 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C0F) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42) ======================================================== Disk: 4 (MBR Code: Windows XP) (Size: 14.8 GB) (Disk ID: C3072E18) Partition 1: (Active) - (Size=14.8 GB) - (Type=07 NTFS) LastRegBack: 2014-10-19 02:26 ==================== End Of Log ============================ --- --- --- |
28.10.2014, 12:38 | #6 |
/// the machine /// TB-Ausbilder | PC bootet nach Anwendung von ADWCleaner nicht mehr Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter LastRegBack: 2014-10-19 02:26
Das Tool erstellt eine Fixlog.txt auf deinem USB Stick. Poste den Inhalt bitte hier.
__________________ --> PC bootet nach Anwendung von ADWCleaner nicht mehr |
28.10.2014, 18:30 | #7 |
| PC bootet nach Anwendung von ADWCleaner nicht mehr Danke für die Hilfe, der PC startet wieder normal. Ich erhielt allerdings folgende Fehlermeldung nach dem Hochfahren: RunDLL Problem beim Starten von C:\WINDOWS\system32\nvspcap64.dll Das angegebene Modul wurde nicht gefunden. Sonst scheint alles einwandfrei zu funktionieren. Hier noch die Fixlog.txt: Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-10-2014 Ran by SYSTEM at 2014-10-28 18:22:01 Run:2 Running from d:\ Boot Mode: Recovery ============================================== Content of fixlist: ***************** LastRegBack: 2014-10-19 02:26 ***************** DEFAULT hive was successfully copied to System32\config\HiveBackup DEFAULT hive was successfully restored from registry back up. SAM hive was successfully copied to System32\config\HiveBackup SAM hive was successfully restored from registry back up. SECURITY hive was successfully copied to System32\config\HiveBackup SECURITY hive was successfully restored from registry back up. SOFTWARE hive was successfully copied to System32\config\HiveBackup SOFTWARE hive was successfully restored from registry back up. SYSTEM hive was successfully copied to System32\config\HiveBackup SYSTEM hive was successfully restored from registry back up. ==== End of Fixlog ==== |
29.10.2014, 17:30 | #8 |
/// the machine /// TB-Ausbilder | PC bootet nach Anwendung von ADWCleaner nicht mehr Dann ab jetzt im normalen Modus: Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
29.10.2014, 18:45 | #9 |
| PC bootet nach Anwendung von ADWCleaner nicht mehr Alles Klar, FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-10-2014 01 Ran by Foxxy (administrator) on PREDATORG7760 on 29-10-2014 18:41:00 Running from C:\Users\User\Desktop Loaded Profile: Foxxy (Available profiles: Foxxy & UpdatusUser & FoxMc_000) Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe () C:\Windows\SysWOW64\ASGT.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Binary Fortress Software) A:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler64.exe (AMD) C:\Windows\System32\atieclxx.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe (Beepa P/L) C:\Program Files (x86)\Fraps\fraps.exe (ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Beepa P/L) C:\Program Files (x86)\Fraps\fraps64.dat (Mad Catz Inc) C:\Program Files\Mad Catz\S.T.R.I.K.E.3\STRIKE3_Profiler.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Binary Fortress Software) A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe (Binary Fortress Software) A:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6032.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Spotify Ltd) C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Spotify Ltd) C:\Users\User\AppData\Roaming\Spotify\spotify.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Binary Fortress Software) A:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6064.exe () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe () C:\Program Files (x86)\Drakonia Black\hid.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Corsair Components, Inc.) C:\Program Files (x86)\Corsair\Corsair Headset Software\HeadsetControlPanel.exe (ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Valve Corporation) A:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) A:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) A:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Dropbox, Inc.) C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [NvBackend] => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [S.T.R.I.K.E.3] => C:\Program Files\Mad Catz\S.T.R.I.K.E.3\STRIKE3_Profiler.exe [40448 2013-07-18] (Mad Catz Inc) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-02-24] (Realtek Semiconductor) HKLM-x32\...\Run: [GamingMouse] => C:\Program Files (x86)\Drakonia Black\hid.exe [247296 2013-06-26] () HKLM-x32\...\Run: [Aeria Ignite] => C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation) HKLM-x32\...\Run: [Corsair Headset Software] => C:\Program Files (x86)\Corsair\Corsair Headset Software\HeadsetControlPanel.exe [3167544 2014-02-12] (Corsair Components, Inc.) HKLM-x32\...\Run: [RoccatKoneXTD] => C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE [552960 2013-10-25] (ROCCAT GmbH) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.) HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [DisplayFusion] => A:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software) HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [Spotify Web Helper] => C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-09-30] (Spotify Ltd) HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [Akamai NetSession Interface] => "C:\Users\User\AppData\Local\Akamai\netsession_win.exe" HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [Spotify] => C:\Users\User\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-09-30] (Spotify Ltd) HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.) HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [Fatal1tySTU] => [X] HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [ASRockRuefi] => [X] HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [389120 2013-09-11] (AMD) HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\MountPoints2: {335f230d-48ed-11e4-8269-d02788825e85} - "L:\HTC_Sync_Manager_PC.exe" HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\MountPoints2: {aa777ca9-5ebe-11e4-826c-806e6f6e6963} - "E:\CheckID.exe" HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\MountPoints2: {dc92ca7f-5ae7-11e4-826f-806e6f6e6963} - "E:\CheckID.exe" HKU\S-1-5-21-4069629916-1410994336-3629031801-1000\...\MountPoints2: {fe340242-a160-11e3-824b-806e6f6e6963} - "E:\MMMTest.EXE" AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => C:\PROGRA~2\SupTab\SEARCH~2.DLL File Not Found AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => "C:\PROGRA~2\SupTab\SEARCH~1.DLL" File Not Found Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{3A435941-E398-438A-9CAF-31D8996CF7C8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC) Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk ShortcutTarget: GamersFirst LIVE!.lnk -> C:\Users\User\AppData\Local\GamersFirst\LIVE!\Live.exe (GamersFirst) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://istart.webssearches.com/?type=hp&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://istart.webssearches.com/?type=hp&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://istart.webssearches.com/?type=hp&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://istart.webssearches.com/?type=hp&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://istart.webssearches.com/?type=hp&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms} StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms} SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://speedial.com/results.php?f=4&q={searchTerms}&a=spd_dsites02_14_24_ch&cd=2XzuyEtN2Y1L1Qzu0DtDtByBzzzzzztByD0EzzyD0F0E0CzztN0D0Tzu0SzzzytBtN1L2XzutBtFtBtCtFyEtFtDtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StDyD0FyCyDyBtAtBtG0Ezz0B0BtGyBtA0AtAtGyE0D0F0FtGtA0CyCyDyB0F0DtDtCyE0DyC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEyByD0ByCyDyC0BtGtBtD0EzytGyC0E0C0BtG0E0C0CyCtGtD0F0EyEzzzz0FzyyB0B0C0E2Q&cr=274622059&ir= SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms} SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms} SearchScopes: HKLM-x32 - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.fastosearch.info/?l=1&q={searchTerms}&pid=34&r=2014/06/21&hid=16012977647170923108&lg=EN&cc=AT&unqvl=55 SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://speedial.com/results.php?f=4&q={searchTerms}&a=spd_dsites02_14_24_ch&cd=2XzuyEtN2Y1L1Qzu0DtDtByBzzzzzztByD0EzzyD0F0E0CzztN0D0Tzu0SzzzytBtN1L2XzutBtFtBtCtFyEtFtDtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StDyD0FyCyDyBtAtBtG0Ezz0B0BtGyBtA0AtAtGyE0D0F0FtGtA0CyCyDyB0F0DtDtCyE0DyC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEyByD0ByCyDyC0BtGtBtD0EzytGyC0E0C0BtG0E0C0CyCtGtD0F0EyEzzzz0FzyyB0B0C0E2Q&cr=274622059&ir= SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1404480982&from=amt&uid=SamsungXSSDX840XEVOX250GB_S1DBNYAD703688A&q={searchTerms} SearchScopes: HKCU - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.fastosearch.info/?l=1&q={searchTerms}&pid=34&r=2014/06/21&hid=16012977647170923108&lg=EN&cc=AT&unqvl=55 BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: FlowSurf -> {E3F1CA13-EA0E-4617-8D03-3EAA6A94A7E0} -> C:\Program Files (x86)\Flowsurf\FlowSurf.dll No File Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 FireFox: ======== FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\vidq4eki.default FF Plugin: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32.dll () FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll No File FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll No File FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) FF user.js: detected! => C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\vidq4eki.default\user.js FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\vidq4eki.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-06] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14] Chrome: ======= CHR HomePage: Default -> hxxp://www.google.at/ CHR StartupUrls: Default -> "hxxp://orteil.dashnet.org/cookieclicker/", "https://www.youtube.com/", "https://www.google.at/?gws_rd=ssl" CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-10-25] CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-01] CHR Extension: (Google-Suche) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-01] CHR Extension: (AdBlock) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-10-25] CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-01] CHR Extension: (Adblock Plus Chrome) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\omihghdlmaedmkipdikamnejbeecjcim [2014-10-25] CHR Extension: (Google Mail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-01] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [File not signed] R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation) S3 DAUpdaterSvc; A:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [25832 2013-02-12] (BioWare) R2 DisplayFusionService; A:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [1375600 2013-11-27] (Binary Fortress Software) S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-08-22] (Hi-Rez Studios) [File not signed] S3 KeyIso; C:\Windows\SysWOW64\keyiso.dll [44032 2013-08-22] (Microsoft Corporation) S3 lfsvc; C:\Windows\SysWOW64\GeofenceMonitorService.dll [357376 2014-03-14] (Microsoft Corporation) S3 Netlogon; C:\Windows\SysWOW64\netlogon.dll [688640 2014-03-06] (Microsoft Corporation) R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2014-10-14] () S3 smphost; C:\Windows\SysWOW64\smphost.dll [11776 2013-08-22] (Microsoft Corporation) S3 StorSvc; C:\Windows\SysWOW64\storsvc.dll [18944 2013-08-22] (Microsoft Corporation) S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) S2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe -service [X] S2 NvNetworkService; "C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe" [X] S2 NvStreamSvc; "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" [X] S2 nvsvc; "C:\WINDOWS\system32\nvvsvc.exe" [X] S2 Stereo Service; "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.) S3 ArvoFltr; C:\Windows\system32\drivers\ArvoFltr.sys [15872 2009-05-06] (ROCCAT Development, Inc.) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [222720 2013-09-24] (Advanced Micro Devices) R3 CorsairAudioFilter; C:\Windows\system32\DRIVERS\corsveng2kamd64.sys [109912 2014-02-03] (Corsair Components, Inc.) R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [457496 2014-03-14] (Intel Corporation) R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [130224 2014-03-12] (Qualcomm Atheros, Inc.) R3 SaiK1112; C:\Windows\system32\DRIVERS\SaiK1112.sys [180992 2013-07-19] (Saitek) R3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [24040 2014-06-13] (Saitek) R3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-07-19] (Saitek) R3 tap0901t; C:\Windows\system32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) R3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation) S3 _hid_0738_1715; C:\Windows\system32\DRIVERS\_hid_0738_1715.sys [179904 2014-06-13] (Saitek) S3 _usb_0738_1715; C:\Windows\System32\drivers\_usb_0738_1715.sys [46528 2014-06-13] (Saitek) R4 IOMap; \??\C:\WINDOWS\system32\drivers\IOMap64.sys [X] S3 NVHDA; \SystemRoot\system32\drivers\nvhda64v.sys [X] S3 nvlddmkm; \SystemRoot\system32\DRIVERS\nvlddmkm.sys [X] S3 NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [X] S3 nvvad_WaveExtensible; \SystemRoot\system32\drivers\nvvad64v.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-29 18:41 - 2014-10-29 18:41 - 00022282 _____ () C:\Users\User\Desktop\FRST.txt 2014-10-29 18:40 - 2014-10-29 18:40 - 02113536 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2014-10-29 18:40 - 2014-10-29 18:40 - 00000000 ____D () C:\Users\User\Desktop\FRST-OlderVersion 2014-10-28 18:22 - 2014-10-28 18:22 - 00000000 ____D () C:\WINDOWS\system32\config\HiveBackup 2014-10-28 18:06 - 2014-10-28 18:06 - 00880272 _____ (Google Inc.) C:\Users\User\Downloads\ChromeSetup.exe 2014-10-28 17:58 - 2014-10-28 17:58 - 00061213 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201410281758404134.log 2014-10-28 17:58 - 2014-10-28 17:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-10-28 17:43 - 2014-10-28 17:44 - 00001816 _____ () C:\Users\User\Desktop\Google Chrome.lnk 2014-10-28 17:40 - 2014-10-28 17:40 - 01064224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2014-10-28 17:34 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2014-10-28 17:34 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-10-28 17:34 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-10-28 17:34 - 2014-09-07 23:08 - 00389176 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-10-28 17:34 - 2014-09-04 23:30 - 00822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-10-28 17:34 - 2014-09-04 23:21 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-10-28 17:34 - 2014-09-04 04:15 - 00561416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-10-28 17:34 - 2014-09-04 04:14 - 00177472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-10-28 17:34 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2014-10-28 17:34 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2014-10-28 17:34 - 2014-09-04 02:19 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2014-10-28 17:34 - 2014-09-04 02:01 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2014-10-28 17:34 - 2014-09-04 01:45 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2014-10-28 17:34 - 2014-09-04 01:41 - 01420288 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-10-28 17:34 - 2014-09-04 01:36 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2014-10-28 17:34 - 2014-09-04 01:32 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll 2014-10-28 17:34 - 2014-09-04 01:15 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2014-10-28 17:34 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS 2014-10-28 17:34 - 2014-08-31 01:15 - 21197152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-10-28 17:34 - 2014-08-30 23:59 - 18723112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-10-28 17:34 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll 2014-10-28 17:34 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll 2014-10-28 17:34 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-10-28 17:34 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll 2014-10-28 17:34 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2014-10-28 17:34 - 2014-08-28 03:55 - 07484224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-10-28 17:34 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-10-28 17:34 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2014-10-28 17:34 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-10-28 17:34 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-10-28 17:34 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-10-28 17:34 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll 2014-10-28 17:34 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll 2014-10-26 22:09 - 2014-10-26 22:09 - 00000003 _____ () C:\WINDOWS\system32\HRUPPROG.TXT 2014-10-26 22:09 - 2014-10-26 22:09 - 00000003 _____ () C:\WINDOWS\system32\HRUPPROG.EXIT 2014-10-26 18:43 - 2014-10-29 18:41 - 00000000 ____D () C:\FRST 2014-10-26 18:07 - 2014-10-26 18:36 - 00000000 ____D () C:\AdwCleaner 2014-10-26 14:55 - 2014-10-26 14:55 - 00000687 _____ () C:\awh4F02.tmp 2014-10-26 14:46 - 2014-10-26 14:49 - 00000000 ____D () C:\WINDOWS\AutoKMS 2014-10-26 14:45 - 2014-10-26 14:45 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit 2014-10-26 14:44 - 2014-10-26 14:44 - 37525059 _____ () C:\Users\User\Downloads\Microsoft Toolkit.rar 2014-10-26 14:15 - 2014-10-26 14:15 - 00000687 _____ () C:\awhC8BB.tmp 2014-10-26 13:17 - 2014-10-26 13:17 - 00000687 _____ () C:\awhC705.tmp 2014-10-25 22:30 - 2014-10-25 22:30 - 00000687 _____ () C:\awhC8AB.tmp 2014-10-25 22:07 - 2014-10-25 22:07 - 00000687 _____ () C:\awhC9F3.tmp 2014-10-25 19:44 - 2014-10-25 19:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-10-25 19:15 - 2014-10-25 19:15 - 00000687 _____ () C:\awhCDBC.tmp 2014-10-25 19:05 - 2014-10-25 19:05 - 00003130 _____ () C:\WINDOWS\System32\Tasks\{D7755D87-7BE6-49D8-9AC3-40525DCC677C} 2014-10-25 19:02 - 2014-10-25 19:02 - 00002978 _____ () C:\WINDOWS\System32\Tasks\AsrAPPShop 2014-10-25 19:02 - 2014-10-25 19:02 - 00000000 ____D () C:\ProgramData\ASRock 2014-10-23 20:41 - 2014-10-23 20:41 - 00000687 _____ () C:\awhC86D.tmp 2014-10-23 20:35 - 2014-10-28 17:59 - 00001076 _____ () C:\Users\Public\Desktop\GPUTweakStreaming.lnk 2014-10-23 20:35 - 2014-10-28 17:59 - 00000000 ____D () C:\WINDOWS\System32\Tasks\ASUS 2014-10-23 20:34 - 2014-10-28 17:59 - 00000032 _____ () C:\setup.log 2014-10-23 20:34 - 2014-10-28 17:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS 2014-10-23 20:34 - 2014-10-28 17:58 - 00001069 _____ () C:\Users\Public\Desktop\ASUS GPU Tweak.lnk 2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\WINDOWS\Downloaded Installations 2014-10-23 20:34 - 2014-10-23 20:35 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-10-23 20:34 - 2014-10-23 20:34 - 00066589 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201410232134373718.log 2014-10-23 20:34 - 2014-10-23 20:34 - 00000687 _____ () C:\awhD8A9.tmp 2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS 2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\AMD 2014-10-23 20:34 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\AMD AVT 2014-10-23 20:34 - 2013-09-24 15:54 - 00222720 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\AtihdWB6.sys 2014-10-23 20:34 - 2013-09-24 15:54 - 00141312 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\amdacpksl.sys 2014-10-23 20:34 - 2013-09-24 15:51 - 00110080 _____ (TODO: <Company name>) C:\WINDOWS\system32\DelayAPO.dll 2014-10-23 20:34 - 2013-09-12 03:26 - 00229888 _____ () C:\WINDOWS\system32\clinfo.exe 2014-10-23 20:34 - 2013-09-12 03:26 - 00129536 _____ (AMD) C:\WINDOWS\system32\coinst_13.20.dll 2014-10-23 20:34 - 2013-09-12 03:26 - 00098816 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OpenVideo64.dll 2014-10-23 20:34 - 2013-09-12 03:26 - 00083456 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OpenVideo.dll 2014-10-23 20:34 - 2013-09-12 03:25 - 28469248 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll 2014-10-23 20:34 - 2013-09-12 03:25 - 00086528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OVDecode64.dll 2014-10-23 20:34 - 2013-09-12 03:25 - 00073216 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OVDecode.dll 2014-10-23 20:34 - 2013-09-12 03:23 - 24008704 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll 2014-10-23 20:34 - 2013-09-12 03:21 - 00063488 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2014-10-23 20:34 - 2013-09-12 03:21 - 00057344 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\WINDOWS\SysWOW64\atiapfxx.blb 2014-10-23 20:34 - 2013-09-12 03:09 - 00555744 _____ () C:\WINDOWS\system32\atiapfxx.blb 2014-10-23 20:34 - 2013-09-12 02:48 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll 2014-10-23 20:34 - 2013-08-27 21:15 - 00083392 _____ () C:\WINDOWS\system32\ativce02.dat 2014-10-23 20:34 - 2013-08-14 03:23 - 00047427 _____ () C:\WINDOWS\atiogl.xml 2014-10-23 20:34 - 2013-07-25 22:50 - 00234292 _____ () C:\WINDOWS\system32\ativvaxy_cik.dat 2014-10-23 20:34 - 2013-07-18 16:47 - 00231856 _____ () C:\WINDOWS\system32\ativvaxy_cik_nd.dat 2014-10-23 20:33 - 2014-10-23 20:33 - 00000000 ____D () C:\Program Files\ATI 2014-10-23 20:33 - 2012-09-23 00:17 - 00021160 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdkmafd.sys 2014-10-23 20:31 - 2012-07-22 21:52 - 00032256 _____ () C:\WINDOWS\system32\ntrights.exe 2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-10-23 20:29 - 2014-10-23 20:34 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-10-23 20:29 - 2014-10-23 20:29 - 00060817 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201410232129256357.log 2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Roaming\ATI 2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\Users\User\AppData\Local\ATI 2014-10-23 20:29 - 2014-10-23 20:29 - 00000000 ____D () C:\ProgramData\ATI 2014-10-23 20:27 - 2014-10-25 19:10 - 00000000 ____D () C:\ProgramData\Norton 2014-10-23 20:26 - 2014-10-24 22:44 - 00000000 ____D () C:\ProgramData\orbweb 2014-10-23 20:26 - 2014-10-23 20:26 - 00001244 _____ () C:\Users\Public\Desktop\XSplit Gamecaster.lnk 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\ProgramData\SplitMediaLabs 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kloudian 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files\AMD 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\Program Files (x86)\SplitMediaLabs 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 ____D () C:\AMD 2014-10-23 20:26 - 2014-10-23 20:26 - 00000000 _____ () C:\WINDOWS\ativpsrm.bin 2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\Users\User\ncftp 2014-10-23 20:25 - 2014-10-23 20:25 - 00000000 ____D () C:\tmp 2014-10-23 20:24 - 2014-10-23 20:24 - 00001325 _____ () C:\Users\Public\Desktop\ASRock Restart to UEFI.lnk 2014-10-23 20:23 - 2014-10-26 17:09 - 00002994 _____ () C:\WINDOWS\System32\Tasks\AsrSP.exe 2014-10-23 20:23 - 2014-10-25 19:09 - 00000000 ____D () C:\Program Files (x86)\ASRock Utility 2014-10-23 20:23 - 2014-10-23 20:23 - 00022280 _____ (ASRock Incorporation) C:\WINDOWS\SysWOW64\Drivers\AsrDrv101.sys 2014-10-23 20:23 - 2014-10-23 20:23 - 00002055 _____ () C:\Users\User\Desktop\XFast LAN.lnk 2014-10-23 20:23 - 2014-10-23 20:23 - 00001343 _____ () C:\Users\Public\Desktop\F-Stream Tuning.lnk 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\WINDOWS\ASRock 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Users\User\AppData\Local\cFos 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XFast LAN 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fatal1ty Utility 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\ProgramData\cFos 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock 2014-10-23 20:23 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Fatal1ty Utility 2014-10-23 20:23 - 2014-07-31 15:17 - 00609544 _____ () C:\WINDOWS\system32\USBKeyCredentialProvider.dll 2014-10-23 20:23 - 2014-06-30 14:10 - 00020232 _____ (ASRock Inc.) C:\WINDOWS\system32\Drivers\AsrHidFilter.sys 2014-10-23 20:23 - 2013-08-02 15:39 - 00040200 _____ (ASRock Inc.) C:\WINDOWS\system32\Drivers\AsrRamDisk.sys 2014-10-23 20:23 - 2013-05-31 15:23 - 01814880 _____ (cFos Software GmbH) C:\WINDOWS\system32\Drivers\cfosspeed6.sys 2014-10-23 20:22 - 2014-10-25 19:10 - 00000000 ____D () C:\Program Files\Google 2014-10-23 20:22 - 2014-10-25 19:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASRock Utility 2014-10-23 20:22 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files\ASRock Utility 2014-10-23 20:22 - 2011-11-07 09:13 - 00017192 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\AsrAppCharger.sys 2014-10-23 20:21 - 2014-10-26 18:20 - 00006400 _____ () C:\WINDOWS\SysWOW64\Gms.log 2014-10-23 20:21 - 2014-03-14 04:22 - 00003114 _____ () C:\WINDOWS\system32\e1d64x64.din 2014-10-23 20:21 - 2014-03-14 04:10 - 00457496 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\e1d64x64.sys 2014-10-23 20:21 - 2014-03-12 06:16 - 00403256 ____R (Intel Corporation) C:\WINDOWS\system32\PROUnstl.exe 2014-10-23 20:21 - 2014-03-12 06:02 - 00001904 ____N () C:\WINDOWS\system32\SetupBD.din 2014-10-23 20:21 - 2013-12-05 23:12 - 00091936 _____ (Intel Corporation) C:\WINDOWS\system32\NicInstD.dll 2014-10-23 20:21 - 2013-11-21 21:57 - 00073480 _____ (Intel Corporation) C:\WINDOWS\system32\e1dmsg.dll 2014-10-23 20:21 - 2009-05-26 03:05 - 00036472 _____ (Intel Corporation) C:\WINDOWS\system32\NicCo36.dll 2014-10-23 20:20 - 2014-10-23 20:20 - 00002799 _____ () C:\Users\Public\Desktop\Killer Network Manager.lnk 2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Qualcomm 2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Qualcomm Atheros 2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\ProgramData\Downloaded Installations 2014-10-23 20:20 - 2014-10-23 20:20 - 00000000 ____D () C:\Program Files\Qualcomm Atheros 2014-10-23 20:18 - 2014-10-23 20:34 - 00003718 _____ () C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2014-10-23 20:18 - 2014-10-23 20:23 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-10-23 20:18 - 2014-10-23 20:18 - 00003476 _____ () C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon 2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-10-23 20:18 - 2014-10-23 20:18 - 00000000 ____D () C:\ProgramData\Intel(R) Update Manager 2014-10-23 20:16 - 2014-10-23 20:34 - 00000000 ____D () C:\ProgramData\Intel 2014-10-23 20:16 - 2014-10-23 20:18 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2014-10-23 20:16 - 2014-10-23 20:16 - 01804472 _____ () C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\Intel 2014-10-23 20:16 - 2014-10-23 20:16 - 00000000 ____D () C:\Users\User\AppData\Roaming\Intel Corporation 2014-10-23 20:15 - 2014-10-28 17:23 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files\Realtek 2014-10-23 20:15 - 2014-10-23 20:15 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-10-23 20:15 - 2014-03-11 14:50 - 00853784 _____ () C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2014-10-23 20:15 - 2014-03-11 14:00 - 03891800 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys 2014-10-23 20:15 - 2014-03-11 10:37 - 57362432 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat 2014-10-23 20:15 - 2014-03-11 03:06 - 01738032 _____ () C:\WINDOWS\system32\SStudio.dll 2014-10-23 20:15 - 2014-03-10 10:09 - 00947928 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll 2014-10-23 20:15 - 2014-03-07 03:57 - 02794200 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkAPO64.dll 2014-10-23 20:15 - 2014-03-06 09:35 - 01959128 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl 2014-10-23 20:15 - 2014-03-04 22:11 - 01048824 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\slcnt64.dll 2014-10-23 20:15 - 2014-03-04 22:11 - 00889592 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll 2014-10-23 20:15 - 2014-03-04 22:11 - 00724728 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll 2014-10-23 20:15 - 2014-03-04 22:11 - 00246008 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll 2014-10-23 20:15 - 2014-03-04 13:27 - 02831576 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll 2014-10-23 20:15 - 2014-03-04 10:19 - 00627928 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll 2014-10-23 20:15 - 2014-03-03 13:21 - 01019608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll 2014-10-23 20:15 - 2014-02-27 13:02 - 02162992 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll 2014-10-23 20:15 - 2014-02-26 08:16 - 02080472 ____R (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll 2014-10-23 20:15 - 2014-02-26 01:48 - 00942384 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICAPOSettingsIPC.dll 2014-10-23 20:15 - 2014-02-26 01:47 - 05751048 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICAPOlfx.dll 2014-10-23 20:15 - 2014-02-18 11:12 - 01042520 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll 2014-10-23 20:15 - 2014-02-18 11:12 - 00882776 _____ (Waves Audio Ltd.) C:\WINDOWS\SysWOW64\MaxxAudioAPOShell.dll 2014-10-23 20:15 - 2014-02-18 10:04 - 02770976 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll 2014-10-23 20:15 - 2014-02-18 07:48 - 02396760 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO6064.dll 2014-10-23 20:15 - 2014-02-18 07:48 - 01424984 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO4064.dll 2014-10-23 20:15 - 2014-02-18 07:48 - 01423960 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO5064.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 28314200 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioVnA64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 14742104 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 12816472 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO3064.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 03927640 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioVnN64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 02101848 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 02040920 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll 2014-10-23 20:15 - 2014-02-16 13:30 - 01933400 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek264.dll 2014-10-23 20:15 - 2014-02-06 04:28 - 05804772 _____ () C:\WINDOWS\system32\Drivers\rtvienna.dat 2014-10-23 20:15 - 2014-01-31 10:28 - 00938608 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO2064.dll 2014-10-23 20:15 - 2014-01-31 10:27 - 01313904 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxSpeechAPO64.dll 2014-10-23 20:15 - 2014-01-28 04:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll 2014-10-23 20:15 - 2013-10-15 20:43 - 00209096 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll 2014-10-23 20:15 - 2013-10-11 05:47 - 00113576 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll 2014-10-23 20:15 - 2013-10-11 04:31 - 00947760 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll 2014-10-23 20:15 - 2013-10-06 17:26 - 00501184 _____ (DTS) C:\WINDOWS\system32\DTSU2PLFX64.dll 2014-10-23 20:15 - 2013-10-06 17:26 - 00487360 _____ (DTS) C:\WINDOWS\system32\DTSU2PGFX64.dll 2014-10-23 20:15 - 2013-10-06 17:26 - 00415680 _____ (DTS) C:\WINDOWS\system32\DTSU2PREC64.dll 2014-10-23 20:15 - 2013-09-09 21:02 - 06217904 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll 2014-10-23 20:15 - 2013-09-09 21:02 - 00313520 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll 2014-10-23 20:15 - 2013-09-09 21:01 - 01938608 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll 2014-10-23 20:15 - 2013-09-09 21:01 - 00260272 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll 2014-10-23 20:15 - 2013-08-20 10:37 - 00605496 _____ () C:\WINDOWS\system32\audioLibVc.dll 2014-10-23 20:15 - 2013-08-14 08:36 - 00662784 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll 2014-10-23 20:15 - 2013-08-14 08:35 - 00663296 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll 2014-10-23 20:15 - 2013-06-25 05:47 - 00871856 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tossaeapo64.dll 2014-10-23 20:15 - 2013-06-25 05:47 - 00162224 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\toseaeapo64.dll 2014-10-23 20:15 - 2013-06-25 05:46 - 00582056 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosasfapo64.dll 2014-10-23 20:15 - 2013-06-21 04:01 - 00109848 _____ () C:\WINDOWS\system32\AcpiServiceVnA64.dll 2014-10-23 20:15 - 2013-04-03 07:13 - 00906800 _____ (Sony Corporation) C:\WINDOWS\system32\MISS_APO.dll 2014-10-23 20:15 - 2012-08-31 12:18 - 07164176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00434960 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00141584 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00124176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll 2014-10-23 20:15 - 2012-08-31 12:17 - 00075024 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll 2014-10-23 20:15 - 2012-03-08 04:47 - 00108640 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll 2014-10-23 20:15 - 2012-01-30 04:43 - 00836544 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll 2014-10-23 20:15 - 2012-01-10 03:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll 2014-10-23 20:15 - 2011-12-20 08:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll 2014-10-23 20:15 - 2011-11-22 09:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll 2014-10-23 20:15 - 2011-09-02 07:21 - 00221024 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll 2014-10-23 20:15 - 2011-09-02 07:21 - 00081248 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll 2014-10-23 20:15 - 2011-09-02 07:21 - 00078688 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll 2014-10-23 20:15 - 2011-08-23 10:00 - 00603984 _____ (Knowles Acoustics ) C:\WINDOWS\system32\KAAPORT64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 01756264 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 01568360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 01486952 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00728680 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00712296 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00693352 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00491112 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00432744 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00428648 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll 2014-10-23 20:15 - 2011-05-31 02:42 - 00241768 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll 2014-10-23 20:15 - 2011-03-17 05:17 - 01361336 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll 2014-10-23 20:15 - 2011-03-07 10:11 - 00148416 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll 2014-10-23 20:15 - 2010-11-08 00:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll 2014-10-23 20:15 - 2010-11-03 11:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll 2014-10-23 20:15 - 2010-09-27 02:34 - 00318808 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll 2014-10-23 20:15 - 2010-07-22 09:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00518896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00211184 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00198896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll 2014-10-23 20:15 - 2009-11-24 02:55 - 00155888 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll 2014-10-23 20:12 - 2014-10-23 20:21 - 00000000 ____D () C:\Program Files\Intel 2014-10-23 20:09 - 2014-10-23 20:09 - 00000000 ____D () C:\Users\User\Downloads\Setup 2014-10-22 17:34 - 2014-10-22 17:34 - 00000687 _____ () C:\awhD963.tmp 2014-10-20 16:44 - 2014-10-20 16:44 - 822925844 _____ () C:\WINDOWS\MEMORY.DMP 2014-10-20 16:44 - 2014-10-20 16:44 - 01429928 _____ () C:\WINDOWS\Minidump\102014-11578-01.dmp 2014-10-20 16:44 - 2014-10-20 16:44 - 00000000 ____D () C:\WINDOWS\Minidump 2014-10-20 10:52 - 2014-10-20 10:52 - 00111104 _____ () C:\WINDOWS\SysWOW64\installd.exe 2014-10-19 20:24 - 2014-10-19 20:24 - 00000000 ____D () C:\Users\User\Documents\Assassin's Creed IV Black Flag 2014-10-16 21:07 - 2014-10-16 21:07 - 00000679 _____ () C:\Users\Public\Desktop\Guild Wars 2.lnk 2014-10-16 21:07 - 2014-10-16 21:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2 2014-10-16 21:04 - 2014-10-16 21:05 - 00000000 ____D () C:\Users\User\AppData\Roaming\Guild Wars 2 2014-10-15 17:07 - 2014-09-27 23:25 - 04183040 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-10-15 17:07 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll 2014-10-15 17:07 - 2014-09-04 00:57 - 00921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-10-15 17:07 - 2014-09-04 00:49 - 00626688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-10-15 17:06 - 2014-09-08 04:15 - 00054752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-10-15 17:06 - 2014-09-08 02:46 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-10-15 17:06 - 2014-09-08 02:46 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2014-10-15 17:06 - 2014-09-08 01:08 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-10-15 17:06 - 2014-09-08 01:07 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-10-15 17:06 - 2014-09-08 01:05 - 03448320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-10-15 17:06 - 2014-09-08 01:04 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-10-15 17:06 - 2014-09-08 01:04 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-10-15 17:06 - 2014-09-08 01:03 - 01702400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-10-15 17:06 - 2014-09-08 01:03 - 00839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-10-15 17:06 - 2014-09-08 00:59 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2014-10-15 17:06 - 2014-09-08 00:59 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2014-10-15 17:06 - 2014-09-08 00:56 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2014-10-15 17:06 - 2014-09-08 00:56 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2014-10-15 17:05 - 2014-09-25 23:50 - 13619200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-10-15 17:05 - 2014-09-25 23:46 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2014-10-15 17:05 - 2014-09-25 23:46 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2014-10-15 17:05 - 2014-09-25 23:43 - 11807232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-10-15 17:05 - 2014-09-25 23:32 - 02017280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-10-15 17:05 - 2014-09-25 23:31 - 02108416 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-10-15 17:05 - 2014-09-19 03:25 - 23631360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-10-15 17:05 - 2014-09-19 02:44 - 17484800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-10-15 17:05 - 2014-09-19 02:41 - 02796032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-10-15 17:05 - 2014-09-19 02:40 - 00547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2014-10-15 17:05 - 2014-09-19 02:38 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2014-10-15 17:05 - 2014-09-19 02:36 - 05829632 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-10-15 17:05 - 2014-09-19 02:25 - 04201472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-10-15 17:05 - 2014-09-19 02:25 - 00758272 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-10-15 17:05 - 2014-09-19 02:02 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2014-10-15 17:05 - 2014-09-19 02:00 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-10-15 17:05 - 2014-09-19 01:59 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2014-10-15 17:05 - 2014-09-19 01:58 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2014-10-15 17:05 - 2014-09-19 01:55 - 02187264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-10-15 17:05 - 2014-09-19 01:42 - 00731136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-10-15 17:05 - 2014-09-19 01:42 - 00710656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-10-15 17:05 - 2014-09-19 01:42 - 00363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2014-10-15 17:05 - 2014-09-19 01:33 - 02309632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-10-15 17:05 - 2014-09-19 01:20 - 00607744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-10-15 17:05 - 2014-09-19 01:20 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2014-10-15 17:05 - 2014-09-19 01:14 - 01447936 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-10-15 17:05 - 2014-09-19 00:59 - 01810944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-10-15 17:05 - 2014-09-19 00:59 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-10-15 17:05 - 2014-09-19 00:53 - 01190400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-10-15 17:05 - 2014-09-19 00:52 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-10-15 17:05 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-10-15 17:05 - 2014-08-16 05:01 - 01710184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2014-10-15 17:05 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-10-15 17:05 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-10-15 17:05 - 2014-08-16 04:03 - 01467384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2014-10-15 17:05 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-10-15 17:05 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2014-10-15 17:05 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2014-10-15 17:05 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll 2014-10-15 17:05 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityService.dll 2014-10-15 17:05 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2014-10-15 17:05 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2014-10-15 17:05 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll 2014-10-15 17:05 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2014-10-15 17:05 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll 2014-10-15 17:05 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-10-15 17:05 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-10-15 17:05 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-10-15 17:05 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll 2014-10-15 17:05 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-10-15 17:05 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-10-15 17:05 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-10-15 17:05 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll 2014-10-15 17:05 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-10-15 17:05 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-10-15 17:05 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-10-15 17:05 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-10-15 17:05 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-10-15 17:05 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-10-15 17:05 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2014-10-15 17:04 - 2014-10-09 23:16 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll 2014-10-15 17:04 - 2014-10-08 23:09 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2014-10-15 17:04 - 2014-09-19 02:24 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2014-10-15 17:04 - 2014-09-13 07:29 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll 2014-10-15 17:04 - 2014-09-13 07:02 - 02779648 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2014-10-15 17:04 - 2014-09-13 06:49 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll 2014-10-15 17:04 - 2014-09-13 06:30 - 03117568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2014-10-15 17:04 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2014-10-15 17:04 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2014-10-15 17:04 - 2014-08-29 02:58 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll 2014-10-15 17:04 - 2014-08-29 00:56 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-10-15 17:04 - 2014-08-29 00:47 - 02321920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-10-14 22:37 - 2014-10-24 16:03 - 00000000 ____D () C:\Users\User\AppData\Local\9765 2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\ProgramData\DivX 2014-10-14 22:37 - 2014-10-14 22:37 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-10-14 22:36 - 2014-10-14 22:36 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_webinstrNew_01009.Wdf 2014-10-01 21:50 - 2014-10-01 21:49 - 00447752 _____ (On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-29 18:40 - 2014-03-01 19:38 - 00000000 ___RD () C:\Users\User\Dropbox 2014-10-29 18:40 - 2014-03-01 19:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\Dropbox 2014-10-29 18:19 - 2014-03-01 18:55 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4069629916-1410994336-3629031801-1000 2014-10-29 18:17 - 2014-03-01 21:00 - 00000000 ____D () C:\Users\User\AppData\Roaming\Skype 2014-10-29 18:11 - 2014-03-01 19:09 - 00001136 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-10-29 18:11 - 2014-03-01 19:09 - 00001132 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-10-29 18:02 - 2014-03-01 18:44 - 01875418 _____ () C:\WINDOWS\WindowsUpdate.log 2014-10-29 18:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-10-29 17:57 - 2014-07-25 15:01 - 00000000 ____D () C:\Users\User\AppData\Roaming\Spotify 2014-10-29 16:12 - 2014-07-25 15:02 - 00000000 ____D () C:\Users\User\AppData\Local\Spotify 2014-10-29 16:12 - 2014-07-18 12:00 - 00003188 _____ () C:\WINDOWS\System32\Tasks\FRAPS 2014-10-29 16:12 - 2014-07-16 18:40 - 00000000 ____D () C:\Program Files (x86)\Fraps 2014-10-28 21:20 - 2014-06-10 21:42 - 00347464 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.xtr 2014-10-28 21:20 - 2014-03-09 23:00 - 00347464 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe 2014-10-28 21:10 - 2014-03-09 23:00 - 00290776 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.ex0 2014-10-28 18:06 - 2014-03-01 19:09 - 00004108 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2014-10-28 18:06 - 2014-03-01 19:09 - 00003872 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2014-10-28 18:06 - 2014-03-01 18:54 - 01807502 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-10-28 18:06 - 2013-08-23 00:24 - 00779752 _____ () C:\WINDOWS\system32\perfh007.dat 2014-10-28 18:06 - 2013-08-23 00:24 - 00164046 _____ () C:\WINDOWS\system32\perfc007.dat 2014-10-28 18:00 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-10-28 17:58 - 2013-08-22 15:46 - 00114220 _____ () C:\WINDOWS\setupact.log 2014-10-28 17:55 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-10-28 17:42 - 2014-03-01 18:44 - 00777460 _____ () C:\WINDOWS\PFRO.log 2014-10-28 17:41 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-10-28 17:36 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-10-28 17:36 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-10-28 17:34 - 2013-08-22 16:20 - 00000000 ____D () C:\WINDOWS\CbsTemp 2014-10-28 17:23 - 2013-08-22 15:44 - 00362816 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-10-26 22:09 - 2014-08-07 06:49 - 00001850 _____ () C:\Users\Public\Desktop\Smite.lnk 2014-10-26 22:09 - 2014-08-07 06:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios 2014-10-26 18:36 - 2014-07-04 14:36 - 00000000 ____D () C:\Users\User\AppData\Roaming\InetStat 2014-10-26 18:36 - 2014-03-02 11:58 - 00000000 ____D () C:\Users\FoxMc_000 2014-10-26 18:36 - 2014-03-01 19:26 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneScape 2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\Users\User\AppData\Roaming\NCH Software 2014-10-26 18:35 - 2014-07-16 19:20 - 00000000 ____D () C:\ProgramData\NCH Software 2014-10-26 18:35 - 2014-07-16 19:19 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Torch 2014-10-26 18:35 - 2014-06-21 02:43 - 00000000 ____D () C:\Users\User\AppData\Local\Chromatic Browser 2014-10-26 18:35 - 2014-05-03 14:49 - 00000000 ____D () C:\Users\User\AppData\Roaming\OpenCandy 2014-10-26 18:35 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\registration 2014-10-26 18:34 - 2014-03-01 17:45 - 00000000 __SHD () C:\Recovery 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-10-26 18:02 - 2014-03-01 18:44 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-10-26 18:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Help 2014-10-26 18:01 - 2014-03-01 18:59 - 00000000 ____D () C:\Users\User\AppData\Local\NVIDIA Corporation 2014-10-26 17:13 - 2014-03-01 17:56 - 00947200 ___SH () C:\Users\User\Downloads\Thumbs.db 2014-10-25 19:44 - 2014-03-01 19:09 - 00000000 ____D () C:\Program Files (x86)\Google 2014-10-25 19:07 - 2014-03-01 19:09 - 00000000 ____D () C:\Users\User\AppData\Local\Google 2014-10-25 19:02 - 2013-08-22 16:36 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP 2014-10-25 19:02 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-10-23 20:35 - 2014-03-17 20:18 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-10-23 20:29 - 2014-03-09 23:01 - 00000000 ____D () C:\ProgramData\Package Cache 2014-10-23 20:26 - 2014-04-17 17:29 - 00000000 __SHD () C:\WINDOWS\SysWOW64\AI_RecycleBin 2014-10-23 19:56 - 2013-09-23 14:38 - 00000000 ___HD () C:\Users\User\Downloads\Random 2014-10-23 19:48 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-10-19 20:24 - 2014-03-01 21:02 - 00492384 _____ () C:\WINDOWS\DirectX.log 2014-10-17 16:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\WinStore 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager 2014-10-17 02:31 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera 2014-10-16 20:59 - 2014-01-28 19:20 - 00000777 _____ () C:\Users\User\Documents\Zugangsdaten.txt 2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-10-16 11:19 - 2014-03-01 21:00 - 00000000 ____D () C:\ProgramData\Skype 2014-10-16 11:18 - 2014-03-03 23:16 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-10-16 11:17 - 2014-07-09 20:13 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel 2014-10-16 11:17 - 2014-03-03 23:16 - 103265616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-10-14 18:36 - 2014-03-09 23:00 - 00076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2014-10-05 23:17 - 2014-03-01 19:39 - 00000000 ____D () C:\Users\User\AppData\Roaming\DisplayFusion 2014-10-04 12:47 - 2013-09-23 14:37 - 00000000 ____D () C:\Users\User\Downloads\'Spielhilfen' 2014-10-01 23:06 - 2014-04-28 21:27 - 00000000 ____D () C:\ProgramData\Origin 2014-09-29 23:45 - 2013-08-22 16:38 - 00706016 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-09-29 23:45 - 2013-08-22 16:38 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-29 18:14 - 2014-03-01 19:38 - 00001081 _____ () C:\Users\User\Desktop\Dropbox.lnk 2014-09-29 18:14 - 2014-03-01 19:37 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox Files to move or delete: ==================== C:\Users\User\jagex_cl_runescape_LIVE.dat C:\Users\User\jagex_cl_runescape_LIVE1.dat C:\Users\User\random.dat Some content of TEMP: ==================== C:\Users\User\AppData\Local\Temp\116EC.exe C:\Users\User\AppData\Local\Temp\6_Offer_11.exe C:\Users\User\AppData\Local\Temp\6_Offer_14.exe C:\Users\User\AppData\Local\Temp\appinstaly.exe C:\Users\User\AppData\Local\Temp\BackupSetup.exe C:\Users\User\AppData\Local\Temp\DivXInstaller.exe C:\Users\User\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpilsee2.dll C:\Users\User\AppData\Local\Temp\drv14463.exe C:\Users\User\AppData\Local\Temp\drv16794.exe C:\Users\User\AppData\Local\Temp\drvinstal.exe C:\Users\User\AppData\Local\Temp\DseShExt-x64.dll C:\Users\User\AppData\Local\Temp\DseShExt-x86.dll C:\Users\User\AppData\Local\Temp\dxwebsetup.exe C:\Users\User\AppData\Local\Temp\FastDownload.exe C:\Users\User\AppData\Local\Temp\ffmpeg17.exe C:\Users\User\AppData\Local\Temp\Gw2.exe C:\Users\User\AppData\Local\Temp\i4jdel0.exe C:\Users\User\AppData\Local\Temp\j3dcore-ogl.dll C:\Users\User\AppData\Local\Temp\JavaIC.dll C:\Users\User\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe C:\Users\User\AppData\Local\Temp\mixcraft6-b217-setup.exe C:\Users\User\AppData\Local\Temp\msscct32.dll C:\Users\User\AppData\Local\Temp\NrMs6.exe C:\Users\User\AppData\Local\Temp\nsmD52A.exe C:\Users\User\AppData\Local\Temp\nssBF3C.exe C:\Users\User\AppData\Local\Temp\nssD6D1.exe C:\Users\User\AppData\Local\Temp\nsyC0E3.exe C:\Users\User\AppData\Local\Temp\nsz48D.exe C:\Users\User\AppData\Local\Temp\nvSCPAPI.dll C:\Users\User\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\User\AppData\Local\Temp\nvStereoApiI.dll C:\Users\User\AppData\Local\Temp\nvStInst.exe C:\Users\User\AppData\Local\Temp\OpenComputersMod-native.64.dll C:\Users\User\AppData\Local\Temp\prismsetup.exe C:\Users\User\AppData\Local\Temp\rPKc9.dll C:\Users\User\AppData\Local\Temp\rPKc9.exe C:\Users\User\AppData\Local\Temp\SDShelEx-win32.dll C:\Users\User\AppData\Local\Temp\SDShelEx-x64.dll C:\Users\User\AppData\Local\Temp\SecurityUtility.exe C:\Users\User\AppData\Local\Temp\SkypeSetup.exe C:\Users\User\AppData\Local\Temp\sonarinst.exe C:\Users\User\AppData\Local\Temp\sp-downloader.exe C:\Users\User\AppData\Local\Temp\SppExtComObjHook.dll C:\Users\User\AppData\Local\Temp\swt-win32-3349.dll C:\Users\User\AppData\Local\Temp\vcredist_x86.exe C:\Users\User\AppData\Local\Temp\wpsetup.exe C:\Users\User\AppData\Local\Temp\xmlUpdater.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-10-19 02:26 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- |
29.10.2014, 18:46 | #10 |
| PC bootet nach Anwendung von ADWCleaner nicht mehr Musste die Addition.txt extra posten - zu viele Zeichen für einen Eintrag. Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-10-2014 01 Ran by Foxxy at 2014-10-29 18:41:24 Running from C:\Users\User\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Acoustica Mixcraft 6 (HKLM-x32\...\Acoustica Mixcraft 6) (Version: b217 - Acoustica) Adobe Flash Player 10 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 10.3.183.90 - Adobe Systems Incorporated) Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.13.3296) (Version: 1.13.3296 - Aeria Games & Entertainment) Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.13.3296 - Aeria Games & Entertainment) Aeria Ignite (x32 Version: 1.13.3296 - Aeria Games & Entertainment) Hidden AMD Catalyst Install Manager (HKLM\...\{4B5124DF-F465-2BA6-FCCF-82C149E1223D}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.) APB Reloaded (HKLM-x32\...\APB Reloaded) (Version: 1.6.7.672769 - ) Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive) Assassin's Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft) ASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.4.9.2 - ASUSTek COMPUTER INC.) ASUS GPU Tweak (x32 Version: 2.4.9.2 - ASUSTek COMPUTER INC.) Hidden ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.025 - ASUSTek Computer Inc.) AuraKingdom-DE (HKLM-x32\...\AuraKingdom-DE) (Version: - ) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.3.2.3825 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.4.0 - EA Digital Illusions CE AB) Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version: - Cheat Engine) Corsair Headset Software (HKLM-x32\...\{C8040E59-33F2-4EA3-A28C-B912B87D9391}) (Version: 2.0.26 - Corsair) Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version: - FromSoftware) DARK SOULS™ II (HKLM-x32\...\Steam App 236430) (Version: - FromSoftware, Inc) Dead Island: Epidemic (HKLM-x32\...\Steam App 222900) (Version: - Stunlock Studios) Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) DisplayFusion 5.1.1 (HKLM-x32\...\B076073A-5527-4f4f-B46B-B10692277DA2_is1) (Version: 5.1.1.0 - Binary Fortress Software) DisplayFusion MSI Deployment (HKLM-x32\...\{0F57CF7D-7E3F-4022-88DE-26DE4898AF22}) (Version: 5.1.1.0 - Binary Fortress Software) Dragon's Prophet (HKLM-x32\...\{C31556D7-F2B9-4787-B223-F7A035067E89}_is1) (Version: 2.0.1315.20 - Infernum Productions AG) Drakonia Black (HKLM-x32\...\{2EAD3327-2F92-455F-A675-E5CC4980B67A}}_is1) (Version: - ) Dropbox (HKCU\...\Dropbox) (Version: 2.10.30 - Dropbox, Inc.) Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) FTL - Advanced Edition (HKLM-x32\...\GOGPACKFTL_is1) (Version: 2.1.0.11 - GOG.com) GamersFirst LIVE! (HKCU\...\GamersFirst LIVE!) (Version: - GamersFirst) Goat Simulator (HKLM-x32\...\R29hdFNpbXVsYXRvcg==_is1) (Version: 1 - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 38.0.2125.111 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.5 - Google Inc.) Hidden GPUTweakStreaming (HKLM-x32\...\InstallShield_{D2A41AA7-4313-43D5-AA39-7E3FBBE0556D}) (Version: 1.0.3.5 - ASUS) GPUTweakStreaming (x32 Version: 1.0.3.5 - ASUS) Hidden Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden Java 7 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417045FF}) (Version: 7.0.450 - Oracle) Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) MKLOL (HKCU\...\MKLOL) (Version: - ) Mozilla Firefox 30.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 de)) (Version: 30.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla) Need For Speed™ World (HKLM-x32\...\{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1) (Version: 1.0.0.1599 - Electronic Arts) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.5.4 - Notepad++ Team) NVIDIA 3D Vision Controller-Treiber 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation) NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation) OpenOffice 4.0.1 (HKLM-x32\...\{47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}) (Version: 4.01.9714 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.) Peggle (HKLM-x32\...\{715AD72D-887A-459E-988B-D4F3E87FA24B}) (Version: 1.04.0.0 - PopCap Games) Pflanzen gegen Zombies™ (HKLM-x32\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: 1.2.0.1093 - Electronic Arts, Inc.) Planetary Annihilation (HKLM-x32\...\Steam App 233250) (Version: - Uber Entertainment) Prism Videodatei-Konverter (HKLM-x32\...\Prism) (Version: 2.09 - NCH Software) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Realm of the Mad God (HKLM-x32\...\Steam App 200210) (Version: - Wild Shadow Studios) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7195 - Realtek Semiconductor Corp.) ROCCAT Kone XTD Mouse Driver (HKLM-x32\...\{7133137D-DF48-4522-AD88-13C82B7D0A63}) (Version: - Roccat GmbH) RuneScape Launcher 1.2.3 (HKLM-x32\...\{FAE99C85-0732-4C58-9C6B-10B5B12FA2E9}) (Version: 1.2.3 - Jagex Ltd) Rust (HKLM-x32\...\Steam App 252490) (Version: - Facepunch Studios) S.T.R.I.K.E.3 (HKLM\...\{114C48CB-65F8-4EC6-83CD-B3F936BFF795}) (Version: 7.0.30.53 - Mad Catz Inc) SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation) Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.) Smite (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 1.0.2247.4 - Hi-Rez Studios) Software Version Updater (HKLM-x32\...\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}) (Version: 1.1.4.2 - ) <==== ATTENTION Spotify (HKCU\...\Spotify) (Version: 0.9.14.13.gba5645ad - Spotify AB) Tom Clancy's Splinter Cell® Blacklist™ (HKLM-x32\...\{A6356F2F-D3E1-4D83-9AA2-72871DD0C298}) (Version: 1.03 - Ubisoft) Tunngle beta (HKLM-x32\...\Tunngle beta_is1) (Version: - Tunngle.net GmbH) Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft) VideoPad Video-Editor (HKLM-x32\...\VideoPad) (Version: 3.25 - NCH Software) VLC media player 2.1.4 (HKLM\...\VLC media player) (Version: 2.1.4 - VideoLAN) WavePad Audio-Editor (HKLM-x32\...\WavePad) (Version: 5.91 - NCH Software) WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4069629916-1410994336-3629031801-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\User\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 01-10-2014 20:49:56 Installiert The Sims 3 12-10-2014 18:10:32 Geplanter Prüfpunkt 16-10-2014 10:16:58 Windows Update 19-10-2014 19:23:32 DirectX wurde installiert 23-10-2014 19:16:06 IIF_MSI 26-10-2014 17:03:12 NVIDIA PhysX wird entfernt 28-10-2014 16:57:41 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 28-10-2014 16:57:51 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {1B18C65B-D0BC-4622-A822-8B3F06A4ACB0} - System32\Tasks\fsupdate => C:\PROGRA~2\Flowsurf\fsupd.exe Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {27030685-962A-4B0B-B4BF-2C0D99133EB0} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {3E9BD47E-6413-41F4-BA15-65369E1BC74C} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {49E456BD-A76D-4913-AE81-8E24B1DB386D} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation) Task: {5308B3E6-6145-4193-B142-2751F75BCD17} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: {5912B9C5-3F50-4D69-9868-C9E6750B7541} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6BA7BE7D-6167-4844-B3E7-4EFE8A6F0F97} - \AmiUpdXp No Task File <==== ATTENTION Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {74C903A4-C3F8-4376-AC9B-72326387858F} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-10-16] (Microsoft Corporation) Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {8D7101AF-E863-49CA-8EC4-7D2FD84BFA12} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {B1682A0E-9B1C-4B23-B828-A526BC8154CC} - System32\Tasks\FRAPS => C:\Program Files (x86)\Fraps\fraps.exe [2013-02-26] (Beepa P/L) Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D0895C68-D1FE-463B-9B73-3247A51E3889} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-25] (Google Inc.) Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {DD8D9F15-0431-405E-B3DE-1410C5426E7C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-25] (Google Inc.) Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {E9918410-C2EF-4FCE-A44C-F3BEBCA07767} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2013-08-27] (ASUSTek Computer Inc.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2012-01-17 10:24 - 2012-01-17 10:24 - 00055296 _____ () C:\Windows\SysWOW64\ASGT.exe 2014-03-09 23:00 - 2014-10-14 18:36 - 00076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2013-07-18 14:11 - 2013-07-18 14:11 - 35868672 _____ () C:\Program Files\Mad Catz\S.T.R.I.K.E.3\Pr0fileEditor_Forms.dll 2013-07-18 14:11 - 2013-07-18 14:11 - 00294912 _____ () C:\Program Files\Mad Catz\S.T.R.I.K.E.3\de\Pr0fileEditor_Forms.resources.dll 2014-07-25 15:02 - 2014-09-30 22:59 - 00613944 _____ () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe 2014-03-17 19:05 - 2013-06-26 17:01 - 00247296 _____ () C:\Program Files (x86)\Drakonia Black\hid.exe 2013-06-05 14:51 - 2013-06-05 14:51 - 00430080 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\BrandingNet4.dll 2013-06-05 14:51 - 2013-06-05 14:51 - 00032768 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\BrandingResourcesNet4.dll 2013-09-24 16:22 - 2013-09-24 16:22 - 00258048 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Vender.dll 2013-10-07 09:30 - 2013-10-07 09:30 - 00053248 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Exeio.dll 2014-10-28 18:07 - 2014-10-22 05:04 - 01042760 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libglesv2.dll 2014-10-28 18:07 - 2014-10-22 05:04 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libegl.dll 2014-10-28 18:07 - 2014-10-22 05:04 - 08910664 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll 2014-10-28 18:07 - 2014-10-22 05:04 - 01681224 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll 2014-07-25 15:02 - 2014-09-30 22:59 - 36966968 _____ () C:\Users\User\AppData\Roaming\Spotify\Data\libcef.dll 2014-07-25 15:02 - 2014-09-30 22:59 - 00867896 _____ () C:\Users\User\AppData\Roaming\Spotify\Data\ffmpegsumo.dll 2014-07-25 15:02 - 2014-09-30 22:59 - 00886840 _____ () C:\Users\User\AppData\Roaming\Spotify\Data\libglesv2.dll 2014-07-25 15:02 - 2014-09-30 22:59 - 00108600 _____ () C:\Users\User\AppData\Roaming\Spotify\Data\libegl.dll 2014-03-17 19:05 - 2013-06-26 17:01 - 00061952 _____ () C:\Program Files (x86)\Drakonia Black\HidDevice.dll 2014-08-28 19:34 - 2012-06-17 10:20 - 00061440 _____ () C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\hiddriver.dll 2014-08-22 13:13 - 2014-08-21 19:15 - 01171456 _____ () A:\Program Files (x86)\Steam\libavcodec-56.dll 2014-08-22 13:13 - 2014-08-21 19:15 - 00332800 _____ () A:\Program Files (x86)\Steam\libavresample-2.dll 2014-08-22 13:13 - 2014-08-21 19:15 - 00442368 _____ () A:\Program Files (x86)\Steam\libavutil-54.dll 2013-09-12 17:45 - 2014-10-02 00:16 - 00774656 _____ () A:\Program Files (x86)\Steam\SDL2.dll 2014-05-02 16:14 - 2014-10-28 20:12 - 02227904 _____ () A:\Program Files (x86)\Steam\video.dll 2014-08-22 13:13 - 2014-08-21 19:15 - 00403968 _____ () A:\Program Files (x86)\Steam\libavformat-56.dll 2014-08-22 13:13 - 2014-08-21 19:15 - 00485888 _____ () A:\Program Files (x86)\Steam\libswscale-3.dll 2013-09-12 17:46 - 2014-10-28 20:12 - 00690368 _____ () A:\Program Files (x86)\Steam\bin\chromehtml.DLL 2013-09-12 17:46 - 2014-10-27 19:53 - 34589888 _____ () A:\Program Files (x86)\Steam\bin\libcef.dll 2014-07-29 05:48 - 2014-10-27 19:53 - 00837824 _____ () A:\Program Files (x86)\Steam\bin\ffmpegsumo.dll 2014-10-29 18:40 - 2014-10-29 18:40 - 00043008 _____ () c:\users\user\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpilsee2.dll 2013-08-23 20:01 - 2013-08-23 20:01 - 25100288 _____ () C:\Users\User\AppData\Roaming\Dropbox\bin\libcef.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\FoxMc_000\SkyDrive:ms-properties AlternateDataStreams: C:\Users\User\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "Aeria Ignite" HKCU\...\StartupApproved\StartupFolder: => "Dropbox.lnk" HKCU\...\StartupApproved\StartupFolder: => "GamersFirst LIVE!.lnk" ========================= Accounts: ========================== Administrator (S-1-5-21-4069629916-1410994336-3629031801-500 - Administrator - Disabled) FoxMc_000 (S-1-5-21-4069629916-1410994336-3629031801-1004 - Administrator - Enabled) => C:\Users\FoxMc_000 Foxxy (S-1-5-21-4069629916-1410994336-3629031801-1000 - Administrator - Enabled) => C:\Users\User Gast (S-1-5-21-4069629916-1410994336-3629031801-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-4069629916-1410994336-3629031801-1003 - Limited - Enabled) UpdatusUser (S-1-5-21-4069629916-1410994336-3629031801-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Faulty Device Manager Devices ============= Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Leistungsindikatoren Description: Leistungsindikatoren Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: SM-Bus-Controller Description: SM-Bus-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: PCI-Gerät Description: PCI-Gerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Leistungsindikatoren Description: Leistungsindikatoren Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: PCI-Kommunikationscontroller (einfach) Description: PCI-Kommunikationscontroller (einfach) Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Leistungsindikatoren Description: Leistungsindikatoren Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Leistungsindikatoren Description: Leistungsindikatoren Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Leistungsindikatoren Description: Leistungsindikatoren Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Systeminterrupt-Controller Description: Systeminterrupt-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: NVIDIA Virtual Audio Device (Wave Extensible) (WDM) Description: NVIDIA Virtual Audio Device (Wave Extensible) (WDM) Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318} Manufacturer: NVIDIA Service: nvvad_WaveExtensible Problem: : Windows cannot load the device driver for this hardware. The driver may be corrupted or missing. (Code 39) Resolution: Reasons for this error include a driver that is not present; a binary file that is corrupt; a file I/O problem, or a driver that references an entry point in another binary file that could not be loaded. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Basissystemgerät Description: Basissystemgerät Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (10/28/2014 06:03:38 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: aprp.exe, Version: 1.0.0.25, Zeitstempel: 0x521c6b89 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eeb460 Ausnahmecode: 0x0eedfade Fehleroffset: 0x00012f71 ID des fehlerhaften Prozesses: 0xd74 Startzeit der fehlerhaften Anwendung: 0xaprp.exe0 Pfad der fehlerhaften Anwendung: aprp.exe1 Pfad des fehlerhaften Moduls: aprp.exe2 Berichtskennung: aprp.exe3 Vollständiger Name des fehlerhaften Pakets: aprp.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: aprp.exe5 Error: (10/28/2014 06:00:25 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden. bei System.Xml.XmlTextReaderImpl.Throw(Exception e) bei System.Xml.XmlTextReaderImpl.ParseDocumentContent() bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace) bei System.Xml.XmlDocument.Load(XmlReader reader) bei System.Xml.XmlDocument.Load(String filename) bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath) bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key) bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback ) bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback) bei Hirez.Patcher.HiPatchService.InternalStart() bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (10/28/2014 05:55:16 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: NT-AUTORITÄT) Description: There was an error with the Windows Location Provider database Error: (10/28/2014 05:42:08 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden. bei System.Xml.XmlTextReaderImpl.Throw(Exception e) bei System.Xml.XmlTextReaderImpl.ParseDocumentContent() bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace) bei System.Xml.XmlDocument.Load(XmlReader reader) bei System.Xml.XmlDocument.Load(String filename) bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath) bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key) bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback ) bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback) bei Hirez.Patcher.HiPatchService.InternalStart() bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (10/28/2014 05:37:13 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: hr=0xC004C008 Befehlszeilenargumente: RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=b080aea2-e6c5-4b22-838e-fa4a21c931e3;NotificationInterval=1440;Trigger=TimerEvent Error: (10/28/2014 05:37:12 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: Fehler beim Erwerb der Endbenutzerlizenz. hr=0xC004C008 SKU-ID=b080aea2-e6c5-4b22-838e-fa4a21c931e3 Error: (10/28/2014 05:37:12 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: ) Description: Lizenzerwerb-Fehlerdetails. hr=0xC004C008 Error: (10/28/2014 05:37:11 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: hr=0xC004E028 Befehlszeilenargumente: RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=b080aea2-e6c5-4b22-838e-fa4a21c931e3;NotificationInterval=1440;Trigger=NetworkAvailable Error: (10/28/2014 05:37:08 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden. bei System.Xml.XmlTextReaderImpl.Throw(Exception e) bei System.Xml.XmlTextReaderImpl.ParseDocumentContent() bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace) bei System.Xml.XmlDocument.Load(XmlReader reader) bei System.Xml.XmlDocument.Load(String filename) bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath) bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key) bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback ) bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback) bei Hirez.Patcher.HiPatchService.InternalStart() bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (10/28/2014 05:25:36 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: hr=0x800705B4 Befehlszeilenargumente: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=fe1c3238-432a-43a1-8e25-97e7d1ef10f3;NotificationInterval=1440;Trigger=TimerEvent System errors: ============= Error: (10/29/2014 05:53:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (10/29/2014 05:53:19 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (10/28/2014 06:02:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Google Update-Dienst (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (10/28/2014 06:02:25 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Google Update-Dienst (gupdate) erreicht. Error: (10/28/2014 06:00:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "IePlugin Services" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (10/28/2014 06:00:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "NVIDIA Stereoscopic 3D Driver Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (10/28/2014 05:59:10 PM) (Source: DCOM) (EventID: 10001) (User: PREDATORG7760) Description: C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe -Embedding740{B3EDE298-AE75-4A1C-AB7E-1B9229B77BBE}Nicht verfügbarNicht verfügbar Error: (10/28/2014 05:58:57 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Der Dienst "ASGT" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (10/28/2014 05:58:52 PM) (Source: DCOM) (EventID: 10001) (User: PREDATORG7760) Description: C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe -Embedding740{B3EDE298-AE75-4A1C-AB7E-1B9229B77BBE}Nicht verfügbarNicht verfügbar Error: (10/28/2014 05:44:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Google Update-Dienst (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Microsoft Office Sessions: ========================= Error: (10/28/2014 06:03:38 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: aprp.exe1.0.0.25521c6b89KERNELBASE.dll6.3.9600.1727853eeb4600eedfade00012f71d7401cff2d0ae571d38C:\Program Files (x86)\ASUS\APRP\aprp.exeC:\WINDOWS\SYSTEM32\KERNELBASE.dll5bae0164-5ec4-11e4-826f-d05099460952 Error: (10/28/2014 06:00:25 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden. bei System.Xml.XmlTextReaderImpl.Throw(Exception e) bei System.Xml.XmlTextReaderImpl.ParseDocumentContent() bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace) bei System.Xml.XmlDocument.Load(XmlReader reader) bei System.Xml.XmlDocument.Load(String filename) bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath) bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key) bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback ) bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback) bei Hirez.Patcher.HiPatchService.InternalStart() bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (10/28/2014 05:55:16 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: NT-AUTORITÄT) Description: -2147024883 Error: (10/28/2014 05:42:08 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden. bei System.Xml.XmlTextReaderImpl.Throw(Exception e) bei System.Xml.XmlTextReaderImpl.ParseDocumentContent() bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace) bei System.Xml.XmlDocument.Load(XmlReader reader) bei System.Xml.XmlDocument.Load(String filename) bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath) bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key) bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback ) bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback) bei Hirez.Patcher.HiPatchService.InternalStart() bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (10/28/2014 05:37:13 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: hr=0xC004C008RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=b080aea2-e6c5-4b22-838e-fa4a21c931e3;NotificationInterval=1440;Trigger=TimerEvent Error: (10/28/2014 05:37:12 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: ) Description: hr=0xC004C008b080aea2-e6c5-4b22-838e-fa4a21c931e3 Error: (10/28/2014 05:37:12 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: ) Description: hr=0xC004C00800010001(0x00000000, 17:37:11:605 - https://activation-v2.sls.microsoft.com/SLActivateProduct/SLActivateProduct.asmx?configextension=Retail) 00020001(0x00000000, 17:37:11:620) 00030001(0x00000000, 17:37:11:620 - https://activation-v2.sls.microsoft.com) 00030002(0x00000000, 17:37:11:620 - 0) 00040001(0x00000000, 17:37:11:620 - https://activation-v2.sls.microsoft.com) 00040002(0x00000000, 17:37:11:620 - 1, <NULL>, <NULL>, <NULL>) 00050002(0x80072F94, 17:37:11:620 - 0, 1) 00040006(0x00000001, 17:37:11:620 - 0, https://activation-v2.sls.microsoft.com, <N/A>, <N/A>) 00020005(0x00000000, 17:37:11:620 - 0) 0002000C(0x00000000, 17:37:12:933 - 500) 00010002(0x8004FC01, 17:37:12:933 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C008</HRESULT><Messages><Message>113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>) 00010003(0x8004FC01, 17:37:12:933) Error: (10/28/2014 05:37:11 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: hr=0xC004E028RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=b080aea2-e6c5-4b22-838e-fa4a21c931e3;NotificationInterval=1440;Trigger=NetworkAvailable Error: (10/28/2014 05:37:08 PM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.Xml.XmlException: Das Stammelement ist nicht vorhanden. bei System.Xml.XmlTextReaderImpl.Throw(Exception e) bei System.Xml.XmlTextReaderImpl.ParseDocumentContent() bei System.Xml.XmlLoader.Load(XmlDocument doc, XmlReader reader, Boolean preserveWhitespace) bei System.Xml.XmlDocument.Load(XmlReader reader) bei System.Xml.XmlDocument.Load(String filename) bei Hirez.Utilities.HirezConfigSettings.LoadConfigDocument(String filePath) bei Hirez.Utilities.HirezConfigSettings.ReadSetting(String filePath, String key) bei Hirez.Patcher.PatchNetworkClient.(NewMessageCallback ) bei Hirez.Patcher.PatchNetworkClient..ctor(String appConfigFilePath, NewMessageCallback logCallback) bei Hirez.Patcher.HiPatchService.InternalStart() bei Hirez.Patcher.HiPatchService.OnStart(String[] badDontWorkMicrosoftBugArgs) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (10/28/2014 05:25:36 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: hr=0x800705B4RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=fe1c3238-432a-43a1-8e25-97e7d1ef10f3;NotificationInterval=1440;Trigger=TimerEvent ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-5820K CPU @ 3.30GHz Percentage of memory in use: 16% Total physical RAM: 16277.57 MB Available physical RAM: 13584.18 MB Total Pagefile: 18709.57 MB Available Pagefile: 15146.04 MB Total Virtual: 131072 MB Available Virtual: 131071.84 MB ==================== Drives ================================ Drive a: (2x Toshiba DT01ACA100 Stripe) (Fixed) (Total:1863.02 GB) (Free:1175.04 GB) NTFS Drive b: (WDC WD20EARX-22PASB0) (Fixed) (Total:1229.28 GB) (Free:1227.09 GB) NTFS Drive c: (System-SSD) (Fixed) (Total:232.79 GB) (Free:144.16 GB) NTFS Drive d: (Backup WDC) (Fixed) (Total:614.64 GB) (Free:399.39 GB) NTFS Drive e: (V1156) (CDROM) (Total:0.76 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: D446B7D7) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C00) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 4F36F121) Partition 1: (Not Active) - (Size=19 GB) - (Type=27) Partition 2: (Not Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=614.6 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=1229.3 GB) - (Type=OF Extended) ======================================================== Disk: 3 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 40A50C0F) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42) ==================== End Of Log ============================ |
30.10.2014, 15:44 | #11 |
/// the machine /// TB-Ausbilder | PC bootet nach Anwendung von ADWCleaner nicht mehr Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu PC bootet nach Anwendung von ADWCleaner nicht mehr |
adware, adwcleaner, akamai, blackscreen, boot problem, booten, computer, explorer, fehlercode 0x0eedfade, fehlercode 28, fehlercode 39, fehlercode windows, nvidia, programm, realtek, services.exe, software version updater entfernen, spotify web helper, svchost.exe, vcredist, windows, windows xp, winlogon.exe |