|
Log-Analyse und Auswertung: win7 nach merkel virus neu gemacht - trotdem inet download sehr langsamWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
30.10.2014, 11:32 | #1 |
| win7 nach merkel virus neu gemacht - trotdem inet download sehr langsam Guten Morgen zusammen! Habe ein Problem mit meinem Internet. habe den trojaner mit dem merkel foto und bka loge auf dem rechner gehabt und mein windows 7 neu installiert. jetzt bemerke ich das mein Internet download sehr langsam geworden ist. habe schon mehrere Beiträge mit dem gleichen thema gefunden und schon mal frst64 runtergeladen und laufengelassen. die txt dateien stelle ich mit rein. wäre nett wenn mir jemand helfen würde. lg olaf Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-10-2014 Ran by olli (administrator) on OLLI-PC on 30-10-2014 10:57:12 Running from C:\Users\olli\Downloads Loaded Profile: olli (Available profiles: olli) Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 8 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe () C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe (Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (Hewlett-Packard Co.) C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Hewlett-Packard Co.) C:\Program Files\HP\HP Photosmart 5510 series\Bin\HPNetworkCommunicator.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12666984 2011-08-09] (Realtek Semiconductor) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-09-15] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5223016 2014-10-28] (AVAST Software) HKU\S-1-5-21-2851024530-4240376367-1728573866-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2011-07-07] (AMD) HKU\S-1-5-21-2851024530-4240376367-1728573866-1000\...\Run: [HP Photosmart 5510 series (NET)] => C:\Program Files\HP\HP Photosmart 5510 series\Bin\ScanToPCActivationApp.exe [2676584 2011-09-16] (Hewlett-Packard Co.) HKU\S-1-5-21-2851024530-4240376367-1728573866-1000\...\MountPoints2: {a845c808-5cfd-11e4-a1ae-806e6f6e6963} - F:\0data\cbs.exe ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.dell.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: No Name -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> No File BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 193.189.244.202 193.189.244.194 FireFox: ======== FF ProfilePath: C:\Users\olli\AppData\Roaming\Mozilla\Firefox\Profiles\PrnSdtMo.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll () FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Avira Browser Safety - C:\Users\olli\AppData\Roaming\Mozilla\Firefox\Profiles\PrnSdtMo.default\Extensions\abs@avira.com [2014-10-26] FF Extension: DownloadHelper - C:\Users\olli\AppData\Roaming\Mozilla\Firefox\Profiles\PrnSdtMo.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-10-26] FF Extension: Adblock Plus - C:\Users\olli\AppData\Roaming\Mozilla\Firefox\Profiles\PrnSdtMo.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-10-26] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-10-28] Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-10-28] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-09-15] (Advanced Micro Devices, Inc.) [File not signed] R2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [112640 2014-09-15] () [File not signed] R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-10-28] (AVAST Software) R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-10-28] (Avast Software) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [293088 2014-09-15] (Advanced Micro Devices) R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices) R0 asahci64; C:\Windows\System32\DRIVERS\asahci64.sys [49760 2011-09-21] (Asmedia Technology) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-10-28] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [82768 2014-10-28] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-10-28] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-10-28] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1049920 2014-10-28] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-10-28] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-10-28] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-10-28] () R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [270728 2014-10-28] (Avast Software) S3 AsrCDDrv; \??\C:\Windows\SysWOW64\Drivers\AsrCDDrv.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-30 10:57 - 2014-10-30 10:57 - 00009246 _____ () C:\Users\olli\Downloads\FRST.txt 2014-10-30 10:57 - 2014-10-30 10:57 - 00000000 ____D () C:\FRST 2014-10-30 10:56 - 2014-10-30 10:56 - 02113536 _____ (Farbar) C:\Users\olli\Downloads\FRST64.exe 2014-10-28 17:12 - 2014-10-28 17:12 - 00000000 ____D () C:\Users\olli\Documents\Eador 2014-10-28 17:12 - 2014-10-28 17:12 - 00000000 ____D () C:\Users\olli\AppData\Roaming\AMD 2014-10-28 17:11 - 2014-10-28 17:11 - 00000790 _____ () C:\Users\Public\Desktop\Eador. Masters of the Broken World.lnk 2014-10-28 17:11 - 2014-10-28 17:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Eador. Masters of the Broken World 2014-10-28 16:53 - 2014-10-28 16:53 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-10-28 16:53 - 2014-10-28 16:53 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-10-28 16:40 - 2014-10-28 16:40 - 00000247 _____ () C:\Windows\system32\2014-10-28-15-40-16.014-aswFe.exe-4740.log 2014-10-28 16:38 - 2014-10-28 16:38 - 00000197 _____ () C:\Windows\system32\2014-10-28-15-38-32.031-AvastVBoxSVC.exe-228.log 2014-10-28 16:37 - 2014-10-30 10:06 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-10-28 16:37 - 2014-10-28 16:37 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-10-28 16:36 - 2014-10-28 16:36 - 00000247 _____ () C:\Windows\system32\2014-10-28-15-36-51.060-aswFe.exe-3568.log 2014-10-28 16:34 - 2014-10-28 16:34 - 00000197 _____ () C:\Windows\system32\2014-10-28-15-34-32.016-AvastVBoxSVC.exe-3908.log 2014-10-28 16:32 - 2014-10-28 16:32 - 00000247 _____ () C:\Windows\system32\2014-10-28-15-32-31.079-aswFe.exe-5152.log 2014-10-28 16:30 - 2014-10-28 16:34 - 00000197 _____ () C:\Windows\system32\2014-10-28-15-30-34.026-AvastVBoxSVC.exe-3336.log 2014-10-28 16:30 - 2014-10-28 16:31 - 00000247 _____ () C:\Windows\system32\2014-10-28-15-30-47.048-aswFe.exe-5544.log 2014-10-28 16:30 - 2014-10-28 16:30 - 00000000 ____D () C:\Users\olli\AppData\Roaming\AVAST Software 2014-10-28 16:28 - 2014-10-29 14:22 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-10-28 16:28 - 2014-10-28 16:28 - 00001964 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk 2014-10-28 16:28 - 2014-10-28 16:28 - 00000000 ____D () C:\Windows\SysWOW64\vbox 2014-10-28 16:28 - 2014-10-28 16:28 - 00000000 ____D () C:\Windows\system32\vbox 2014-10-28 16:28 - 2014-10-28 16:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2014-10-28 16:24 - 2014-10-28 16:33 - 00000000 ____D () C:\Users\olli\AppData\Local\Google 2014-10-28 16:24 - 2014-10-28 16:33 - 00000000 ____D () C:\Program Files (x86)\Google 2014-10-28 16:24 - 2014-10-28 16:24 - 01049920 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-10-28 16:24 - 2014-10-28 16:24 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-10-28 16:24 - 2014-10-28 16:24 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-10-28 16:24 - 2014-10-28 16:24 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-10-28 16:24 - 2014-10-28 16:24 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-10-28 16:24 - 2014-10-28 16:24 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-10-28 16:24 - 2014-10-28 16:24 - 00082768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-10-28 16:24 - 2014-10-28 16:24 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-10-28 16:24 - 2014-10-28 16:24 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-10-28 16:24 - 2014-10-28 16:24 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2014-10-28 16:24 - 2014-10-28 16:24 - 00000000 ____D () C:\Program Files\AVAST Software 2014-10-28 16:23 - 2014-10-28 16:24 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-10-28 16:07 - 2014-10-28 16:23 - 131078000 _____ (AVAST Software) C:\Users\olli\Downloads\avast_free_antivirus_setup.exe 2014-10-28 13:26 - 2014-10-28 13:26 - 00000000 ____D () C:\Users\olli\Documents\dragoon 2014-10-28 13:25 - 2014-10-29 14:43 - 00027408 _____ () C:\Windows\DirectX.log 2014-10-28 13:25 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-10-28 13:25 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-10-28 13:25 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-10-28 13:25 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-10-28 13:25 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-10-28 13:25 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-10-28 13:25 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-10-28 13:25 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-10-28 13:25 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2014-10-28 13:25 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2014-10-28 13:25 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-10-28 13:25 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-10-28 13:25 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-10-28 13:25 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-10-28 13:25 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-10-28 13:25 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-10-28 13:25 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-10-28 13:25 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-10-28 13:25 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-10-28 13:25 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-10-28 13:25 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-10-28 13:25 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-10-28 13:25 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-10-28 13:25 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-10-28 13:25 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-10-28 13:25 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-10-28 13:25 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-10-28 13:25 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-10-28 13:25 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-10-28 13:25 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-10-28 13:25 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-10-28 13:25 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-10-28 13:25 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-10-28 13:25 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-10-28 13:25 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-10-28 13:25 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-10-28 13:25 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-10-28 13:25 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-10-28 13:25 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-10-28 13:25 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-10-28 13:25 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-10-28 13:25 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-10-28 13:25 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-10-28 13:25 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-10-28 13:25 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-10-28 13:25 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-10-28 13:25 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-10-28 13:25 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-10-28 13:25 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-10-28 13:25 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-10-28 13:25 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-10-28 13:25 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-10-28 13:25 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-10-28 13:25 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-10-28 13:25 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-10-28 13:25 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-10-28 13:25 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-10-28 13:25 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-10-28 13:25 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-10-28 13:25 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-10-28 13:25 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-10-28 13:25 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-10-28 13:25 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-10-28 13:25 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-10-28 13:25 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-10-28 13:25 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-10-28 13:25 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-10-28 13:25 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-10-28 13:25 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-10-28 13:25 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-10-28 13:25 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-10-28 13:25 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-10-28 13:25 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-10-28 13:25 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-10-28 13:25 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-10-28 13:25 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-10-28 13:25 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-10-28 13:25 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-10-28 13:25 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-10-28 13:25 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-10-28 13:25 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-10-28 13:25 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-10-28 13:25 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-10-28 13:25 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-10-28 13:25 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-10-28 13:25 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-10-28 13:25 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-10-28 13:25 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-10-28 13:25 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-10-28 13:25 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-10-28 13:25 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-10-28 13:25 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-10-28 13:25 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-10-28 13:25 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-10-28 13:25 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-10-28 13:25 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-10-28 13:25 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-10-28 13:25 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-10-28 13:25 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-10-28 13:25 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-10-28 13:25 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-10-28 13:25 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-10-28 13:25 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-10-28 13:25 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-10-28 13:25 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-10-28 13:25 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-10-28 13:25 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-10-28 13:25 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-10-28 13:25 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-10-28 13:25 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-10-28 13:25 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-10-28 13:25 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-10-28 13:25 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-10-28 13:25 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-10-28 13:25 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-10-28 13:25 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-10-28 13:25 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-10-28 13:25 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-10-28 13:25 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-10-28 13:25 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-10-28 13:25 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-10-28 13:25 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-10-28 13:25 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-10-28 13:25 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-10-28 13:25 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-10-28 13:25 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-10-28 13:25 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-10-28 13:25 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-10-28 13:25 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-10-28 13:25 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-10-28 13:25 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-10-28 13:25 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-10-28 13:25 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-10-28 13:25 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-10-28 13:25 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-10-28 13:25 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-10-28 13:25 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-10-28 13:25 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-10-28 13:25 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-10-28 13:25 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-10-28 13:25 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-10-28 13:25 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-10-28 13:25 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-10-28 13:25 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-10-28 13:25 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-10-28 13:25 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-10-28 13:25 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-10-28 13:25 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-10-28 13:25 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-10-28 13:25 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-10-28 13:25 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-10-28 13:25 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-10-28 13:25 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-10-28 13:25 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-10-28 13:25 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-10-28 13:25 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-10-28 13:25 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-10-28 13:25 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-10-28 13:25 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-10-28 13:25 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-10-28 13:25 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-10-28 13:25 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-10-28 13:25 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-10-28 13:25 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-10-28 13:25 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-10-28 13:25 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-10-28 13:25 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-10-28 13:25 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-10-28 13:25 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-10-28 13:25 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-10-28 13:25 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-10-28 13:25 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-10-28 13:25 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-10-28 13:25 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-10-28 13:25 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-10-28 13:25 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-10-28 13:25 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-10-28 13:25 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-10-28 13:25 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-10-28 13:25 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-10-28 13:25 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-10-28 13:25 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-10-28 08:00 - 2014-10-28 08:00 - 00000000 ____D () C:\Windows\CheckSur 2014-10-27 10:43 - 2014-10-29 14:30 - 00000708 _____ () C:\console.log 2014-10-27 10:40 - 2014-10-27 10:41 - 02466496 _____ (Reloaded Technologies) C:\Users\olli\Downloads\DragonsProphetDLM8.exe 2014-10-27 10:27 - 2014-10-30 10:01 - 00000254 _____ () C:\Windows\Tasks\HP Photo Creations Messager.job 2014-10-27 10:27 - 2014-10-27 10:27 - 00003112 _____ () C:\Windows\System32\Tasks\HP Photo Creations Messager 2014-10-27 10:27 - 2014-10-27 10:27 - 00002212 _____ () C:\Users\Public\Desktop\HP Photosmart 5510 series.lnk 2014-10-27 10:27 - 2014-10-27 10:27 - 00002007 _____ () C:\Users\Public\Desktop\HP Photo Creations.lnk 2014-10-27 10:27 - 2014-10-27 10:27 - 00001888 _____ () C:\Users\Public\Desktop\HP ePrintCenter - HP Photosmart 5510 series.lnk 2014-10-27 10:27 - 2014-10-27 10:27 - 00001180 _____ () C:\Users\Public\Desktop\Zubehör einkaufen - HP Photosmart 5510 series.lnk 2014-10-27 10:27 - 2014-10-27 10:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2014-10-27 10:27 - 2014-10-27 10:27 - 00000000 ____D () C:\ProgramData\HP Photo Creations 2014-10-27 10:27 - 2014-10-27 10:27 - 00000000 ____D () C:\ProgramData\HP 2014-10-27 10:27 - 2014-10-27 10:27 - 00000000 ____D () C:\Program Files (x86)\HP Photo Creations 2014-10-27 10:27 - 2014-10-27 10:27 - 00000000 ____D () C:\Program Files (x86)\HP 2014-10-27 10:27 - 2011-09-16 11:24 - 00778088 ____N (Hewlett-Packard Co.) C:\Windows\system32\HPDiscoPMa111.dll 2014-10-27 10:26 - 2014-10-27 10:26 - 00000057 _____ () C:\ProgramData\Ament.ini 2014-10-27 10:26 - 2014-10-27 10:26 - 00000000 ____D () C:\Program Files\HP 2014-10-27 10:25 - 2014-10-27 10:29 - 00000000 ____D () C:\Users\olli\AppData\Local\HP 2014-10-27 09:47 - 2014-10-27 09:47 - 00000000 ____D () C:\Users\olli\AppData\Roaming\TERA 2014-10-27 09:37 - 2014-10-27 09:37 - 00000000 ____D () C:\Users\olli\Downloads\Gameforge Live 2014-10-27 09:37 - 2014-10-27 09:37 - 00000000 ____D () C:\Users\olli\AppData\Local\Gameforge4d 2014-10-27 09:36 - 2014-10-27 10:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live 2014-10-27 09:36 - 2014-10-27 09:36 - 00000584 _____ () C:\Users\Public\Desktop\Gameforge Live.lnk 2014-10-27 09:28 - 2014-10-27 09:30 - 20201072 _____ (Gameforge ) C:\Users\olli\Downloads\TERA_GameforgeLiveSetup.exe 2014-10-26 20:48 - 2014-10-26 11:58 - 00000000 ____D () C:\Windows\Panther 2014-10-26 20:47 - 2011-02-16 03:16 - 00000029 ___RH () C:\Windows\version 2014-10-26 20:47 - 2011-02-16 03:16 - 00000013 ____R () C:\Windows\csup.txt 2014-10-26 20:46 - 2014-10-30 09:12 - 00698688 _____ () C:\Windows\system32\perfh007.dat 2014-10-26 20:46 - 2014-10-30 09:12 - 00148828 _____ () C:\Windows\system32\perfc007.dat 2014-10-26 20:46 - 2014-10-26 20:46 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2014-10-26 20:46 - 2014-10-26 20:46 - 00000000 ____D () C:\Windows\SysWOW64\de 2014-10-26 20:46 - 2014-10-26 20:46 - 00000000 ____D () C:\Windows\SysWOW64\0407 2014-10-26 20:46 - 2014-10-26 20:46 - 00000000 ____D () C:\Windows\system32\de 2014-10-26 20:46 - 2014-10-26 20:46 - 00000000 ____D () C:\Windows\system32\0407 2014-10-26 20:46 - 2014-10-26 20:45 - 00295922 _____ () C:\Windows\system32\perfi007.dat 2014-10-26 20:46 - 2014-10-26 20:45 - 00038104 _____ () C:\Windows\system32\perfd007.dat 2014-10-26 20:31 - 2014-10-26 20:31 - 00000000 ____D () C:\Windows.old 2014-10-26 19:57 - 2014-10-26 19:57 - 00000000 ____D () C:\Hotfix 2014-10-26 17:02 - 2014-10-29 22:32 - 00065536 _____ () C:\Windows\system32\spu_storage.bin 2014-10-26 17:02 - 2014-10-26 17:02 - 00000000 ____D () C:\ProgramData\ATI 2014-10-26 17:02 - 2014-10-26 17:02 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-10-26 16:59 - 2014-10-26 16:59 - 00061880 _____ () C:\Windows\SysWOW64\CCCInstall_201410261659382532.log 2014-10-26 16:59 - 2014-10-26 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-10-26 16:59 - 2014-10-26 16:59 - 00000000 ____D () C:\Program Files (x86)\AMD AVT 2014-10-26 16:59 - 2014-10-26 16:59 - 00000000 ____D () C:\Program Files (x86)\AMD 2014-10-26 16:57 - 2014-10-26 16:59 - 00000000 ____D () C:\Program Files\AMD 2014-10-26 16:57 - 2014-10-26 16:57 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-10-26 16:55 - 2014-10-27 23:53 - 01591896 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-10-26 16:28 - 2014-10-26 16:52 - 286582040 _____ (AMD Inc.) C:\Users\olli\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql.exe 2014-10-26 16:27 - 2014-10-26 16:53 - 00000000 ____D () C:\AMD 2014-10-26 15:52 - 2014-10-29 22:31 - 00062266 _____ () C:\Windows\IE11_main.log 2014-10-26 15:51 - 2010-02-23 09:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2014-10-26 15:50 - 2014-10-26 15:51 - 00000000 ____D () C:\Windows\system32\MRT 2014-10-26 15:50 - 2014-10-03 10:02 - 103265616 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-10-26 15:27 - 2014-10-26 15:27 - 00001972 _____ () C:\Users\olli\Desktop\Drakensang Online.lnk 2014-10-26 15:27 - 2014-10-26 15:27 - 00000000 ____D () C:\Users\olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Drakensang Online 2014-10-26 15:27 - 2014-10-26 15:27 - 00000000 ____D () C:\Program Files (x86)\Drakensang Online 2014-10-26 15:26 - 2014-10-26 15:26 - 00000000 ____D () C:\Users\olli\AppData\Roaming\vlc 2014-10-26 15:25 - 2014-10-26 15:25 - 00001070 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-10-26 15:25 - 2014-10-26 15:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-10-26 15:24 - 2014-10-26 15:24 - 00000000 ____D () C:\Program Files (x86)\VideoLAN 2014-10-26 15:22 - 2014-10-26 15:23 - 19902888 _____ () C:\Users\olli\Downloads\DrakensangOnlineSetup(1).exe 2014-10-26 15:18 - 2014-10-26 15:19 - 19902888 _____ () C:\Users\olli\Downloads\DrakensangOnlineSetup.exe 2014-10-26 15:04 - 2014-10-26 15:04 - 00000000 ____D () C:\Users\olli\AppData\Local\Macromedia 2014-10-26 15:03 - 2014-10-28 16:37 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-10-26 15:03 - 2014-10-26 15:03 - 00000000 ____D () C:\Windows\system32\Macromed 2014-10-26 14:59 - 2014-10-28 16:53 - 00000000 ____D () C:\Users\olli\AppData\Local\Adobe 2014-10-26 14:41 - 2014-10-26 14:41 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-10-26 14:41 - 2014-10-26 14:41 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-10-26 14:41 - 2014-10-26 14:41 - 00000000 ____D () C:\Users\olli\AppData\Local\Mozilla 2014-10-26 14:41 - 2014-10-26 14:41 - 00000000 ____D () C:\ProgramData\Mozilla 2014-10-26 14:41 - 2014-10-26 14:41 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-10-26 14:41 - 2014-10-26 14:41 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-10-26 14:14 - 2014-10-28 16:26 - 00000000 ____D () C:\ProgramData\Package Cache 2014-10-26 14:14 - 2014-10-26 14:41 - 00000000 ____D () C:\Users\olli\AppData\Roaming\Mozilla 2014-10-26 13:22 - 2014-10-26 13:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asmedia Technology 2014-10-26 13:22 - 2014-10-26 13:22 - 00000000 ____D () C:\Program Files (x86)\ASM106xSATA 2014-10-26 13:13 - 2011-09-11 07:41 - 00088832 _____ (Etron Technology Inc) C:\Windows\system32\Drivers\EtronXHCI.sys 2014-10-26 13:13 - 2011-09-11 07:41 - 00065152 _____ (Etron Technology Inc) C:\Windows\system32\Drivers\EtronHub3.sys 2014-10-26 13:11 - 2014-10-28 16:53 - 00000000 ____D () C:\Users\olli\AppData\Roaming\Adobe 2014-10-26 13:11 - 2014-10-28 16:53 - 00000000 ____D () C:\ProgramData\Adobe 2014-10-26 13:11 - 2014-10-28 16:53 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-10-26 13:11 - 2014-10-26 13:11 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 9.lnk 2014-10-26 13:11 - 2014-10-26 13:11 - 00002014 _____ () C:\Users\Public\Desktop\Adobe Reader 9.lnk 2014-10-26 13:11 - 2014-10-26 13:11 - 00001009 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat.com.lnk 2014-10-26 13:11 - 2014-10-26 13:11 - 00000000 ____D () C:\Users\olli\AppData\Roaming\Macromedia 2014-10-26 13:10 - 2014-10-28 16:37 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-10-26 13:10 - 2014-10-26 13:10 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-10-26 13:02 - 2014-10-26 13:22 - 00014236 _____ () C:\Windows\DPINST.LOG 2014-10-26 13:01 - 2011-08-23 14:57 - 00565352 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-10-26 13:01 - 2011-08-23 14:57 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-10-26 13:01 - 2011-08-23 14:57 - 00074272 _____ () C:\Windows\system32\RtNicProp64.dll 2014-10-26 13:00 - 2014-10-26 13:00 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-10-26 12:12 - 2014-10-26 12:12 - 00000000 ____D () C:\Program Files (x86)\Etron Technology 2014-10-26 12:09 - 2014-10-26 13:13 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-10-26 12:09 - 2014-10-26 13:01 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-10-26 12:09 - 2014-10-26 12:09 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-10-26 12:09 - 2014-10-26 12:09 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-10-26 12:09 - 2014-10-26 12:09 - 00000000 ____D () C:\Program Files\Realtek 2014-10-26 12:09 - 2011-08-12 06:29 - 03053160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-10-26 12:09 - 2011-08-09 15:39 - 02504296 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-10-26 12:09 - 2011-08-09 14:20 - 03198056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-10-26 12:09 - 2011-08-04 08:12 - 00093288 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInst64.dll 2014-10-26 12:09 - 2011-07-29 07:46 - 01827944 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-10-26 12:09 - 2011-07-27 17:55 - 02604376 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll 2014-10-26 12:09 - 2011-07-27 17:55 - 02132824 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll 2014-10-26 12:09 - 2011-07-25 09:56 - 00626264 _____ (Creative Technology Ltd.) C:\Windows\system32\MBTHX64.dll 2014-10-26 12:09 - 2011-07-25 09:56 - 00561240 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBTHX32.dll 2014-10-26 12:09 - 2011-07-22 12:35 - 01247848 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-10-26 12:09 - 2011-07-11 09:23 - 00886360 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO64.dll 2014-10-26 12:09 - 2011-07-11 09:23 - 00745560 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO32.dll 2014-10-26 12:09 - 2011-07-11 07:17 - 01698408 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-10-26 12:09 - 2011-06-30 09:14 - 01560168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-10-26 12:09 - 2011-05-05 08:24 - 02085440 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-10-26 12:09 - 2010-11-08 00:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-10-26 12:09 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-10-26 12:09 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-10-26 12:09 - 2010-11-08 00:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-10-26 12:09 - 2010-11-08 00:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-10-26 12:09 - 2010-11-08 00:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-10-26 12:09 - 2010-11-03 11:31 - 00332392 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-10-26 12:09 - 2010-11-03 11:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-10-26 12:09 - 2010-10-15 12:20 - 02261764 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-10-26 12:09 - 2010-09-27 02:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-10-26 12:09 - 2010-07-22 09:37 - 00200800 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-10-26 12:09 - 2010-07-02 12:40 - 00080984 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2014-10-26 12:09 - 2009-11-24 02:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-10-26 12:09 - 2009-11-24 02:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-10-26 12:09 - 2009-11-24 02:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-10-26 12:09 - 2009-11-24 02:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-10-26 12:09 - 2009-11-18 00:12 - 00032344 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\MBfilt64.sys 2014-10-26 12:09 - 2009-11-17 11:12 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-10-26 12:08 - 2011-12-12 07:52 - 00082048 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_sata.sys 2014-10-26 12:08 - 2011-12-12 07:52 - 00042624 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_xata.sys 2014-10-26 12:08 - 2009-05-04 17:30 - 00016440 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\Drivers\AtiPcie.sys 2014-10-26 12:04 - 2014-10-26 12:04 - 00057560 _____ () C:\Users\olli\AppData\Local\GDIPFONTCACHEV1.DAT 2014-10-26 12:04 - 2014-10-26 12:04 - 00000000 ____D () C:\Users\olli\AppData\Roaming\ATI 2014-10-26 12:04 - 2014-10-26 12:04 - 00000000 ____D () C:\Users\olli\AppData\Local\ATI 2014-10-26 12:04 - 2014-10-26 12:04 - 00000000 ____D () C:\Users\olli\AppData\Local\AMD 2014-10-26 12:04 - 2014-10-26 12:04 - 00000000 ____D () C:\Program Files (x86)\AMD APP 2014-10-26 12:02 - 2014-10-26 16:59 - 00000000 ____D () C:\ProgramData\AMD 2014-10-26 12:02 - 2014-10-26 12:03 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-10-26 12:02 - 2010-02-18 09:18 - 00046136 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdiox64.sys 2014-10-26 12:01 - 2014-10-26 16:59 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-10-26 12:01 - 2014-10-26 12:01 - 00000000 ____D () C:\Program Files\ATI 2014-10-26 11:58 - 2014-10-26 12:59 - 00000000 ____D () C:\Users\olli 2014-10-26 11:58 - 2014-10-26 11:58 - 00001409 _____ () C:\Users\olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-10-26 11:58 - 2014-10-26 11:58 - 00000020 ___SH () C:\Users\olli\ntuser.ini 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\Vorlagen 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\Startmenü 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\Netzwerkumgebung 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\Lokale Einstellungen 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\Eigene Dateien 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\Druckumgebung 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\Documents\Eigene Musik 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\Documents\Eigene Bilder 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\AppData\Local\Verlauf 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\AppData\Local\Anwendungsdaten 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\olli\Anwendungsdaten 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-10-26 11:58 - 2014-10-26 11:58 - 00000000 ____D () C:\Users\olli\AppData\Local\VirtualStore 2014-10-26 11:58 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-10-26 11:58 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\olli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-10-26 11:53 - 2014-10-26 11:53 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-10-26 11:52 - 2014-10-26 11:52 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-10-26 11:52 - 2014-10-26 11:52 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-10-26 11:51 - 2014-10-30 10:50 - 00844488 _____ () C:\Windows\WindowsUpdate.log 2014-10-26 11:05 - 2014-10-26 11:58 - 00000000 __SHD () C:\Recovery 2014-10-26 11:05 - 2014-10-26 11:05 - 00000000 _SHDL () C:\Programme 2014-10-26 11:05 - 2014-10-26 11:05 - 00000000 _SHDL () C:\Dokumente und Einstellungen ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-30 10:39 - 2009-07-14 05:45 - 00020656 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-10-30 10:39 - 2009-07-14 05:45 - 00020656 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-10-30 09:12 - 2009-07-14 06:13 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-10-30 09:07 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-10-30 09:07 - 2009-07-14 05:51 - 00025149 _____ () C:\Windows\setupact.log 2014-10-29 14:21 - 2010-11-21 04:47 - 00141364 _____ () C:\Windows\PFRO.log 2014-10-28 17:24 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-10-28 17:11 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-10-26 21:58 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration 2014-10-26 20:47 - 2009-07-14 06:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-10-26 20:47 - 2009-07-14 06:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-10-26 20:47 - 2009-07-14 05:45 - 00000000 ____D () C:\Windows\Setup 2014-10-26 20:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\oobe 2014-10-26 20:46 - 2010-11-21 08:17 - 00000000 ____D () C:\Program Files\Windows Journal 2014-10-26 20:46 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\winrm 2014-10-26 20:46 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\WCN 2014-10-26 20:46 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\sysprep 2014-10-26 20:46 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\slmgr 2014-10-26 20:46 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts 2014-10-26 20:46 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\winrm 2014-10-26 20:46 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\WCN 2014-10-26 20:46 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\slmgr 2014-10-26 20:46 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2014-10-26 20:46 - 2009-07-14 06:37 - 00000000 ____D () C:\Windows\DigitalLocker 2014-10-26 20:46 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\WinBioPlugIns 2014-10-26 20:46 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-10-26 20:46 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-10-26 20:46 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender 2014-10-26 20:46 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\DVD Maker 2014-10-26 20:46 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar 2014-10-26 20:46 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2014-10-26 20:46 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Setup 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\oobe 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\com 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Setup 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\MUI 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\migwiz 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\com 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\servicing 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\IME 2014-10-26 20:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System 2014-10-26 14:10 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries 2014-10-26 12:09 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore 2014-10-26 12:02 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-10-26 11:58 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default 2014-10-26 11:58 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Recovery 2014-10-26 11:58 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-10-26 11:58 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-10-26 11:57 - 2009-07-14 05:45 - 00274464 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-10-26 11:53 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-10-26 11:52 - 2009-07-14 05:46 - 00002790 _____ () C:\Windows\DtcInstall.log 2014-10-26 11:52 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-10-26 11:49 - 2010-11-21 08:17 - 00000000 ____D () C:\Windows\CSC 2014-10-02 15:53 - 2010-11-21 04:27 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe Some content of TEMP: ==================== C:\Users\olli\AppData\Local\Temp\avgnt.exe C:\Users\olli\AppData\Local\Temp\devcon.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-10-26 13:41 ==================== End Of Log ============================ addition txt: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-10-2014 Ran by olli at 2014-10-30 10:57:42 Running from C:\Users\olli\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) «Eador. Masters of the Broken World» (HKLM-x32\...\{3180F11F-56C8-466c-8A82-599AE28EA34A}_is1) (Version: - ) ACP Application (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated) Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 15.0.0.293 - Adobe Systems Incorporated) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.189 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.189 - Adobe Systems Incorporated) Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated) AMD Catalyst Install Manager (HKLM\...\{C2956908-53A3-88FC-B795-B16508296FC4}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 1.3.1.000 - Asmedia Technology) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2206 - AVAST Software) Drakensang Online (HKLM-x32\...\Drakensang Online) (Version: - ) Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.115 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.115 - Etron Technology) Hidden Gameforge Live 2.0.5 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.5 - Gameforge) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.5192 - HP Photo Creations) HP Photosmart 5510 series - Grundlegende Software für das Gerät (HKLM\...\{5409411D-CD72-432D-B823-1B520B24BD3C}) (Version: 25.0.621.0 - Hewlett-Packard Co.) HydraVision (x32 Version: 4.2.208.0 - ATI Technologies Inc.) Hidden Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Mozilla Firefox 33.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.0.1 (x86 de)) (Version: 33.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.0.1 - Mozilla) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.48.823.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6433 - Realtek Semiconductor Corp.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 26-10-2014 12:49:02 Sprachpaketdeinstallation 26-10-2014 13:26:00 Windows-Sicherung 26-10-2014 14:49:59 Windows Update 26-10-2014 15:54:04 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 26-10-2014 15:56:58 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 26-10-2014 18:05:02 Sprachpaketdeinstallation 26-10-2014 19:18:57 Windows Update 27-10-2014 22:43:58 Windows Update 28-10-2014 07:00:33 Windows Update 28-10-2014 08:28:44 Sprachpaketdeinstallation 28-10-2014 12:24:58 DirectX wurde installiert 28-10-2014 13:49:00 Windows Update 28-10-2014 15:07:14 Windows Update 28-10-2014 15:24:01 avast! antivirus system restore point 28-10-2014 21:50:49 Windows Update 29-10-2014 13:42:41 DirectX wurde installiert 29-10-2014 21:29:09 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {3E86AC00-34C2-4C55-BB93-44F70883C847} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-10-28] (Adobe Systems Incorporated) Task: {A1289516-40CE-400F-A8CE-DE806FE1A05F} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {C2DB6CDB-A566-46C0-801C-B787B2847F8B} - System32\Tasks\HP Photo Creations Messager => C:\ProgramData\HP Photo Creations\MessageCheck.exe [2011-02-15] () Task: {E7B34C23-3FAF-444B-B40D-E295BAE33B3F} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-10-28] (AVAST Software) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\HP Photo Creations Messager.job => C:\ProgramData\HP Photo Creations\MessageCheck.exe ==================== Loaded Modules (whitelisted) ============= 2014-09-15 18:13 - 2014-09-15 18:13 - 00214528 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll 2014-02-11 07:08 - 2014-02-11 07:08 - 00817152 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll 2014-02-11 07:08 - 2014-02-11 07:08 - 03650560 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll 2014-09-15 18:13 - 2014-09-15 18:13 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2014-09-15 18:09 - 2014-09-15 18:09 - 00112640 _____ () C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe 2014-10-28 16:24 - 2014-10-28 16:24 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll 2014-10-28 16:24 - 2014-10-28 16:24 - 05846160 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll 2014-09-15 18:13 - 2014-09-15 18:13 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2014-10-29 22:27 - 2014-10-29 22:27 - 02897920 _____ () C:\Program Files\AVAST Software\Avast\defs\14102902\algo.dll 2014-10-28 16:24 - 2014-10-28 16:24 - 04491192 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll 2014-10-28 16:24 - 2014-10-28 16:24 - 38561576 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-10-26 14:41 - 2014-10-24 08:00 - 03649648 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-2851024530-4240376367-1728573866-500 - Administrator - Disabled) Gast (S-1-5-21-2851024530-4240376367-1728573866-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2851024530-4240376367-1728573866-1003 - Limited - Enabled) olli (S-1-5-21-2851024530-4240376367-1728573866-1000 - Administrator - Enabled) => C:\Users\olli ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/30/2014 10:41:56 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/47BEABC922EAE80E78783462A79F45C254FDE68B.crt>. Fehler: Dieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben. . Error: (10/30/2014 10:41:53 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/47BEABC922EAE80E78783462A79F45C254FDE68B.crt>. Fehler: Dieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben. . Error: (10/30/2014 09:07:46 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/29/2014 10:29:37 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. . Error: (10/29/2014 04:31:39 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. . Error: (10/29/2014 03:17:35 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm eador_mbw.exe, Version 2.0.0.1228 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 8dc Startzeit: 01cff37eda236584 Endzeit: 50 Anwendungspfad: E:\Eador. Masters of the Broken World\eador_mbw.exe Berichts-ID: 517e7a5a-5f76-11e4-8345-d0509907a427 Error: (10/29/2014 02:21:40 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/28/2014 10:50:50 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary xaezzymv. System Error: Das System kann die angegebene Datei nicht finden. . Error: (10/28/2014 05:25:16 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm eador_mbw.exe, Version 2.0.0.1228 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1200 Startzeit: 01cff2c9e4bc655d Endzeit: 30 Anwendungspfad: E:\Eador. Masters of the Broken World\eador_mbw.exe Berichts-ID: fd459f26-5ebe-11e4-ba36-d0509907a427 Error: (10/28/2014 04:40:05 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm launcher.exe, Version 0.1.0.45 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 8c8 Startzeit: 01cff2c4bd907162 Endzeit: 0 Anwendungspfad: E:\Dragon's Prophet\launcher.exe Berichts-ID: aea0d513-5eb8-11e4-ba36-d0509907a427 System errors: ============= Error: (10/29/2014 10:31:57 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Internet Explorer 11 für Windows 7 für x64-basierte Systeme Error: (10/28/2014 10:51:44 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Internet Explorer 11 für Windows 7 für x64-basierte Systeme Error: (10/28/2014 04:09:30 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Internet Explorer 11 für Windows 7 für x64-basierte Systeme Error: (10/28/2014 04:03:24 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 28.10.2014 um 16:02:11 unerwartet heruntergefahren. Error: (10/28/2014 04:02:11 PM) (Source: cdrom) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Error: (10/28/2014 04:02:06 PM) (Source: cdrom) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Error: (10/28/2014 04:01:59 PM) (Source: cdrom) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Error: (10/28/2014 04:01:53 PM) (Source: cdrom) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Error: (10/28/2014 04:01:40 PM) (Source: cdrom) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Error: (10/28/2014 04:01:31 PM) (Source: cdrom) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Microsoft Office Sessions: ========================= Error: (10/30/2014 10:41:56 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/47BEABC922EAE80E78783462A79F45C254FDE68B.crtDieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben. Error: (10/30/2014 10:41:53 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/47BEABC922EAE80E78783462A79F45C254FDE68B.crtDieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben. Error: (10/30/2014 09:07:46 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/29/2014 10:29:37 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. Error: (10/29/2014 04:31:39 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. Error: (10/29/2014 03:17:35 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: eador_mbw.exe2.0.0.12288dc01cff37eda23658450E:\Eador. Masters of the Broken World\eador_mbw.exe517e7a5a-5f76-11e4-8345-d0509907a427 Error: (10/29/2014 02:21:40 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/28/2014 10:50:50 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary xaezzymv. System Error: Das System kann die angegebene Datei nicht finden. Error: (10/28/2014 05:25:16 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: eador_mbw.exe2.0.0.1228120001cff2c9e4bc655d30E:\Eador. Masters of the Broken World\eador_mbw.exefd459f26-5ebe-11e4-ba36-d0509907a427 Error: (10/28/2014 04:40:05 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: launcher.exe0.1.0.458c801cff2c4bd9071620E:\Dragon's Prophet\launcher.exeaea0d513-5eb8-11e4-ba36-d0509907a427 ==================== Memory info =========================== Processor: AMD FX(tm)-6300 Six-Core Processor Percentage of memory in use: 23% Total physical RAM: 8175.23 MB Available physical RAM: 6271.02 MB Total Pagefile: 16348.67 MB Available Pagefile: 14195.04 MB Total Virtual: 8192 MB Available Virtual: 8191.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:147.23 GB) (Free:90.72 GB) NTFS Drive d: () (Fixed) (Total:295.9 GB) (Free:201.71 GB) NTFS Drive e: () (Fixed) (Total:488.28 GB) (Free:249.24 GB) NTFS Drive f: (EADOR) (CDROM) (Total:4.02 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 62C5C067) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=147.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=295.9 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS) ==================== End Of Log ============================ hoffe habe es richtig gemacht |
30.10.2014, 11:45 | #2 |
/// the machine /// TB-Ausbilder | win7 nach merkel virus neu gemacht - trotdem inet download sehr langsam hi,
__________________Downloade dir bitte Farbar's MiniToolBox auf deinen Desktop und starte das Tool Setze einen Haken bei folgenden Einträgen
__________________ |
30.10.2014, 11:51 | #3 |
| win7 nach merkel virus neu gemacht - trotdem inet download sehr langsam moin moin
__________________danke für die schnelle nachricht hier die txt datei Code:
ATTFilter MiniToolBox by Farbar Version: 21-07-2014 Ran by olli (administrator) on 30-10-2014 at 11:48:58 Running from "C:\Users\olli\Downloads" Microsoft Windows 7 Professional Service Pack 1 (X64) Boot Mode: Normal *************************************************************************** ========================= Flush DNS: =================================== Windows-IP-Konfiguration Der DNS-Aufl�sungscache wurde geleert. ========================= IE Proxy Settings: ============================== Proxy is not enabled. No Proxy Server is set. "Reset IE Proxy Settings": IE Proxy Settings were reset. ========================= FF Proxy Settings: ============================== "Reset FF Proxy Settings": Firefox Proxy settings were reset. ========================= Hosts content: ================================= ========================= IP Configuration: ================================ RT73-USB-Drahtlos-LAN-Karte = Drahtlosnetzwerkverbindung (Connected) Realtek PCIe GBE Family Controller = LAN-Verbindung (Media disconnected) Microsoft Virtual WiFi Miniport Adapter = Drahtlosnetzwerkverbindung 2 (Media disconnected) # ---------------------------------- # IPv4-Konfiguration # ---------------------------------- pushd interface ipv4 reset set global icmpredirects=enabled popd # Ende der IPv4-Konfiguration Windows-IP-Konfiguration Hostname . . . . . . . . . . . . : olli-PC Prim�res DNS-Suffix . . . . . . . : Knotentyp . . . . . . . . . . . . : Hybrid IP-Routing aktiviert . . . . . . : Nein WINS-Proxy aktiviert . . . . . . : Nein Drahtlos-LAN-Adapter Drahtlosnetzwerkverbindung 2: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter Physikalische Adresse . . . . . . : 00-1F-1F-4A-7F-FE DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Drahtlos-LAN-Adapter Drahtlosnetzwerkverbindung: Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : RT73-USB-Drahtlos-LAN-Karte Physikalische Adresse . . . . . . : 00-1F-1F-4A-7F-FF DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Verbindungslokale IPv6-Adresse . : fe80::8d5e:a088:228e:483b%12(Bevorzugt) IPv4-Adresse . . . . . . . . . . : 192.168.1.36(Bevorzugt) Subnetzmaske . . . . . . . . . . : 255.255.255.0 Lease erhalten. . . . . . . . . . : Donnerstag, 30. Oktober 2014 09:07:23 Lease l�uft ab. . . . . . . . . . : Sonntag, 2. November 2014 09:07:22 Standardgateway . . . . . . . . . : 192.168.1.1 DHCP-Server . . . . . . . . . . . : 192.168.1.1 DHCPv6-IAID . . . . . . . . . . . : 301997855 DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-1B-DE-9B-0A-D0-50-99-07-A4-27 DNS-Server . . . . . . . . . . . : 192.168.1.1 193.189.244.202 193.189.244.194 NetBIOS �ber TCP/IP . . . . . . . : Aktiviert Ethernet-Adapter LAN-Verbindung: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Realtek PCIe GBE Family Controller Physikalische Adresse . . . . . . : D0-50-99-07-A4-27 DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Tunneladapter isatap.{E9804BD8-3558-4DD5-B4AD-7F483E6553ED}: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Microsoft-ISATAP-Adapter Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja Tunneladapter Teredo Tunneling Pseudo-Interface: Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Teredo Tunneling Pseudo-Interface Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja IPv6-Adresse. . . . . . . . . . . : 2001:0:5ef5:79fd:62:aad5:b2f5:678(Bevorzugt) Verbindungslokale IPv6-Adresse . : fe80::62:aad5:b2f5:678%13(Bevorzugt) Standardgateway . . . . . . . . . : :: NetBIOS �ber TCP/IP . . . . . . . : Deaktiviert Server: UnKnown Address: 192.168.1.1 Name: google.com Addresses: 2a00:1450:4001:805::1007 173.194.112.167 173.194.112.166 173.194.112.169 173.194.112.165 173.194.112.162 173.194.112.174 173.194.112.161 173.194.112.163 173.194.112.164 173.194.112.168 173.194.112.160 Ping wird ausgef�hrt f�r google.com [173.194.116.195] mit 32 Bytes Daten: Antwort von 173.194.116.195: Bytes=32 Zeit=49ms TTL=55 Antwort von 173.194.116.195: Bytes=32 Zeit=39ms TTL=55 Ping-Statistik f�r 173.194.116.195: Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 39ms, Maximum = 49ms, Mittelwert = 44ms Server: UnKnown Address: 192.168.1.1 Name: yahoo.com Addresses: 206.190.36.45 98.138.253.109 98.139.183.24 Ping wird ausgef�hrt f�r yahoo.com [98.138.253.109] mit 32 Bytes Daten: Antwort von 98.138.253.109: Bytes=32 Zeit=183ms TTL=47 Antwort von 98.138.253.109: Bytes=32 Zeit=188ms TTL=47 Ping-Statistik f�r 98.138.253.109: Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 183ms, Maximum = 188ms, Mittelwert = 185ms Ping wird ausgef�hrt f�r 127.0.0.1 mit 32 Bytes Daten: Antwort von 127.0.0.1: Bytes=32 Zeit<1ms TTL=128 Antwort von 127.0.0.1: Bytes=32 Zeit<1ms TTL=128 Ping-Statistik f�r 127.0.0.1: Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 0ms, Maximum = 0ms, Mittelwert = 0ms =========================================================================== Schnittstellenliste 14...00 1f 1f 4a 7f fe ......Microsoft Virtual WiFi Miniport Adapter 12...00 1f 1f 4a 7f ff ......RT73-USB-Drahtlos-LAN-Karte 11...d0 50 99 07 a4 27 ......Realtek PCIe GBE Family Controller 1...........................Software Loopback Interface 1 15...00 00 00 00 00 00 00 e0 Microsoft-ISATAP-Adapter 13...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface =========================================================================== IPv4-Routentabelle =========================================================================== Aktive Routen: Netzwerkziel Netzwerkmaske Gateway Schnittstelle Metrik 0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.36 25 127.0.0.0 255.0.0.0 Auf Verbindung 127.0.0.1 306 127.0.0.1 255.255.255.255 Auf Verbindung 127.0.0.1 306 127.255.255.255 255.255.255.255 Auf Verbindung 127.0.0.1 306 192.168.1.0 255.255.255.0 Auf Verbindung 192.168.1.36 281 192.168.1.36 255.255.255.255 Auf Verbindung 192.168.1.36 281 192.168.1.255 255.255.255.255 Auf Verbindung 192.168.1.36 281 224.0.0.0 240.0.0.0 Auf Verbindung 127.0.0.1 306 224.0.0.0 240.0.0.0 Auf Verbindung 192.168.1.36 281 255.255.255.255 255.255.255.255 Auf Verbindung 127.0.0.1 306 255.255.255.255 255.255.255.255 Auf Verbindung 192.168.1.36 281 =========================================================================== St�ndige Routen: Keine IPv6-Routentabelle =========================================================================== Aktive Routen: If Metrik Netzwerkziel Gateway 13 58 ::/0 Auf Verbindung 1 306 ::1/128 Auf Verbindung 13 58 2001::/32 Auf Verbindung 13 306 2001:0:5ef5:79fd:62:aad5:b2f5:678/128 Auf Verbindung 12 281 fe80::/64 Auf Verbindung 13 306 fe80::/64 Auf Verbindung 13 306 fe80::62:aad5:b2f5:678/128 Auf Verbindung 12 281 fe80::8d5e:a088:228e:483b/128 Auf Verbindung 1 306 ff00::/8 Auf Verbindung 13 306 ff00::/8 Auf Verbindung 12 281 ff00::/8 Auf Verbindung =========================================================================== St�ndige Routen: Keine ========================= Winsock entries ===================================== Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation) Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation) Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation) Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation) Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation) Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation) x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation) x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation) x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation) x64-Catalog5 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation) x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation) ========================= Event log errors: =============================== Application errors: ================== Error: (10/30/2014 10:41:56 AM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/47BEABC922EAE80E78783462A79F45C254FDE68B.crt>. Fehler: Dieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben. . Error: (10/30/2014 10:41:53 AM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/47BEABC922EAE80E78783462A79F45C254FDE68B.crt>. Fehler: Dieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben. . Error: (10/30/2014 09:07:46 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/29/2014 10:29:37 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. . Error: (10/29/2014 04:31:39 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. . Error: (10/29/2014 03:17:35 PM) (Source: Application Hang) (User: ) Description: Programm eador_mbw.exe, Version 2.0.0.1228 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 8dc Startzeit: 01cff37eda236584 Endzeit: 50 Anwendungspfad: E:\Eador. Masters of the Broken World\eador_mbw.exe Berichts-ID: 517e7a5a-5f76-11e4-8345-d0509907a427 Error: (10/29/2014 02:21:40 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/28/2014 10:50:50 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary xaezzymv. System Error: Das System kann die angegebene Datei nicht finden. . Error: (10/28/2014 05:25:16 PM) (Source: Application Hang) (User: ) Description: Programm eador_mbw.exe, Version 2.0.0.1228 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1200 Startzeit: 01cff2c9e4bc655d Endzeit: 30 Anwendungspfad: E:\Eador. Masters of the Broken World\eador_mbw.exe Berichts-ID: fd459f26-5ebe-11e4-ba36-d0509907a427 Error: (10/28/2014 04:40:05 PM) (Source: Application Hang) (User: ) Description: Programm launcher.exe, Version 0.1.0.45 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 8c8 Startzeit: 01cff2c4bd907162 Endzeit: 0 Anwendungspfad: E:\Dragon's Prophet\launcher.exe Berichts-ID: aea0d513-5eb8-11e4-ba36-d0509907a427 System errors: ============= Error: (10/29/2014 10:31:57 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Internet Explorer 11 für Windows 7 für x64-basierte Systeme Error: (10/28/2014 10:51:44 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Internet Explorer 11 für Windows 7 für x64-basierte Systeme Error: (10/28/2014 04:09:30 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Internet Explorer 11 für Windows 7 für x64-basierte Systeme Error: (10/28/2014 04:03:24 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 28.10.2014 um 16:02:11 unerwartet heruntergefahren. Error: (10/28/2014 04:02:11 PM) (Source: cdrom) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Error: (10/28/2014 04:02:06 PM) (Source: cdrom) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Error: (10/28/2014 04:01:59 PM) (Source: cdrom) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Error: (10/28/2014 04:01:53 PM) (Source: cdrom) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Error: (10/28/2014 04:01:40 PM) (Source: cdrom) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Error: (10/28/2014 04:01:31 PM) (Source: cdrom) (User: ) Description: Fehlerhafter Block bei Gerät \Device\CdRom0. Microsoft Office Sessions: ========================= Error: (10/30/2014 10:41:56 AM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/47BEABC922EAE80E78783462A79F45C254FDE68B.crtDieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben. Error: (10/30/2014 10:41:53 AM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/47BEABC922EAE80E78783462A79F45C254FDE68B.crtDieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben. Error: (10/30/2014 09:07:46 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/29/2014 10:29:37 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. Error: (10/29/2014 04:31:39 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. Error: (10/29/2014 03:17:35 PM) (Source: Application Hang)(User: ) Description: eador_mbw.exe2.0.0.12288dc01cff37eda23658450E:\Eador. Masters of the Broken World\eador_mbw.exe517e7a5a-5f76-11e4-8345-d0509907a427 Error: (10/29/2014 02:21:40 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/28/2014 10:50:50 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary xaezzymv. System Error: Das System kann die angegebene Datei nicht finden. Error: (10/28/2014 05:25:16 PM) (Source: Application Hang)(User: ) Description: eador_mbw.exe2.0.0.1228120001cff2c9e4bc655d30E:\Eador. Masters of the Broken World\eador_mbw.exefd459f26-5ebe-11e4-ba36-d0509907a427 Error: (10/28/2014 04:40:05 PM) (Source: Application Hang)(User: ) Description: launcher.exe0.1.0.458c801cff2c4bd9071620E:\Dragon's Prophet\launcher.exeaea0d513-5eb8-11e4-ba36-d0509907a427 =========================== Installed Programs ============================ «Eador. Masters of the Broken World» (HKLM-x32\...\{3180F11F-56C8-466c-8A82-599AE28EA34A}_is1) (Version: - ) ACP Application (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated) Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 15.0.0.293 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 15.0.0.293 - Adobe Systems Incorporated) Hidden Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.189 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.189 - Adobe Systems Incorporated) Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated) AMD Accelerated Video Transcoding (Version: 13.30.100.40915 - Advanced Micro Devices, Inc.) Hidden AMD APP SDK Runtime (Version: 2.5.684.213 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2014.0915.1813.30937 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (HKLM\...\{C2956908-53A3-88FC-B795-B16508296FC4}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (Version: 2014.0915.1813.30937 - Ihr Firmenname) Hidden AMD Steady Video Plug-In (Version: 2.07.0000 - AMD) Hidden AMD Wireless Display v3.0 (Version: 1.0.0.15 - Advanced Micro Devices, Inc.) Hidden Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 1.3.1.000 - Asmedia Technology) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2206 - AVAST Software) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2014.0915.1813.30937 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0915.1813.30937 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2014.0915.1813.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2014.0915.1812.30937 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2014.0915.1813.30937 - Advanced Micro Devices, Inc.) Hidden Drakensang Online (HKLM-x32\...\Drakensang Online) (Version: - ) Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.115 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.115 - Etron Technology) Hidden Gameforge Live 2.0.5 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.5 - Gameforge) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.5192 - HP Photo Creations) HP Photosmart 5510 series - Grundlegende Software für das Gerät (HKLM\...\{5409411D-CD72-432D-B823-1B520B24BD3C}) (Version: 25.0.621.0 - Hewlett-Packard Co.) HydraVision (x32 Version: 4.2.208.0 - ATI Technologies Inc.) Hidden Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 (Version: 4.5.50709 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Mozilla Firefox 33.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.0.1 (x86 de)) (Version: 33.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.0.1 - Mozilla) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.48.823.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6433 - Realtek Semiconductor Corp.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) ========================= Memory info: =================================== Percentage of memory in use: 24% Total physical RAM: 8175.23 MB Available physical RAM: 6186.8 MB Total Pagefile: 16348.67 MB Available Pagefile: 14106.57 MB Total Virtual: 4095.88 MB Available Virtual: 3967.81 MB ========================= Partitions: ===================================== 1 Drive c: () (Fixed) (Total:147.23 GB) (Free:90.62 GB) NTFS 2 Drive d: () (Fixed) (Total:295.9 GB) (Free:201.71 GB) NTFS 3 Drive e: () (Fixed) (Total:488.28 GB) (Free:249.24 GB) NTFS 4 Drive f: (EADOR) (CDROM) (Total:4.02 GB) (Free:0 GB) UDF ========================= Users: ======================================== Benutzerkonten fr \\OLLI-PC Administrator Gast olli Der Befehl wurde erfolgreich ausgefhrt. ========================= Minidump Files ================================== No minidump file found **** End of log **** |
31.10.2014, 08:49 | #4 | |
/// the machine /// TB-Ausbilder | win7 nach merkel virus neu gemacht - trotdem inet download sehr langsam CMD öffnen, und schreibe bitte folgendes: Zitat:
und drücke Enter. Wenn fertig bitte die Log.txt auf dem Desktop hier posten.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
31.10.2014, 13:22 | #5 |
| win7 nach merkel virus neu gemacht - trotdem inet download sehr langsam Hallo! habe noch mal win 7 neu aufgespielt und diesmal alle festplatten ( meine 1tb plate auf drei verteilt) formatiert. trotzdem keine veränderung im download geschwindigkeit Code:
ATTFilter Der Zielname hxxp://www.google.de konnte nicht aufgel”st werden. |
01.11.2014, 11:28 | #6 |
/// the machine /// TB-Ausbilder | win7 nach merkel virus neu gemacht - trotdem inet download sehr langsam gib als Adresse nur Code:
ATTFilter www.google.de
__________________ --> win7 nach merkel virus neu gemacht - trotdem inet download sehr langsam |
01.11.2014, 17:59 | #7 |
| win7 nach merkel virus neu gemacht - trotdem inet download sehr langsam Hallo So, da bin ich wieder. habe es diesmal glaube ich richtig gemacht Code:
ATTFilter Routenverfolgung zu www.google.de [173.194.78.94] ber maximal 30 Abschnitte: 1 2 ms 5 ms 1 ms 192.168.1.1 2 22 ms 26 ms 22 ms rdsl-brmn-de01.nw.mediaways.net [213.20.59.193] 3 21 ms 23 ms 26 ms xmwc-brmn-de01-chan-18.nw.mediaways.net [195.71.181.146] 4 31 ms 31 ms 30 ms 72.14.198.209 5 32 ms 50 ms 32 ms 209.85.248.12 6 32 ms 33 ms 33 ms 72.14.234.233 7 40 ms 40 ms 40 ms 209.85.246.40 8 43 ms 50 ms 43 ms 72.14.236.136 9 44 ms 40 ms 41 ms 209.85.253.173 10 * * * Zeitberschreitung der Anforderung. 11 41 ms 41 ms 41 ms wg-in-f94.1e100.net [173.194.78.94] Ablaufverfolgung beendet. hoffe du kannst da was mit anfangen grüsse olaf |
02.11.2014, 13:26 | #8 |
/// the machine /// TB-Ausbilder | win7 nach merkel virus neu gemacht - trotdem inet download sehr langsam Router bitte auf Werkseinstellungen zurücksetzen. Verbindungsdaten neu eingeben. Am Rechner: Nochmal CMD öffnen, schreibe ipconfig /flushdns und drücke Enter. Dann den Befehl mit Google nochmal wiederholen.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu win7 nach merkel virus neu gemacht - trotdem inet download sehr langsam |
adware, antivirus, avira, browser, fehler, firefox, flash player, helper, iexplore.exe, installation, langsam, mozilla, problem, realtek, registry, rundll, scan, security, software, svchost.exe, system, trojaner, usb, virus, virus neu, windows |