Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Egal wo ich hin klicke Werbung

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 19.11.2014, 13:42   #1
MorkezZ
 
Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



Hallo Trojaner Board ich habe ein problem ich glaube ich habe einen virus auf meinem neuen Notebook.

Und zwar Wenn ich z.b irgendwo ich nehme mal youtube was anklicken weill öffnen sich neue tabs ode gar ein ganz neuer browser mit z.b solchen sachen

hxxp://de.reimageplus.com/lp/sys/index.php?tracking=revenuewire&banner=direct&adgroup=direct&ads_name=direct&keyword=direct

Ich finde das ganz schön blöd auch wenn ich von dem textfeld hier auf z.b nen smiley oder leeres feld klicke öffnet sich wieder son teil das ist ganz schön blöd.

Ich kann nichts mehr im browser anklicken ohne dass sich ein neuer tab oder neues fenster öffnet virenscanner kriegts auchnicht hin hilfe#

es kam auch schon mcaffe store und eine fake version von java

Alt 19.11.2014, 13:42   #2
schrauber
/// the machine
/// TB-Ausbilder
 

Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 19.11.2014, 13:43   #3
MorkezZ
 
Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



Und so manche wörter z.b neuen notebook oder bowser in meinem beitrag oben sind jetzt bei mir in caps geschrieben und ich kanns anklicken dann komme ich zu sowas neue notebook - Web Search Results
__________________

Alt 19.11.2014, 13:58   #4
MorkezZ
 
Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



Muss es als Archiv enhängen sonst zu viele zeichen.

Alt 19.11.2014, 19:07   #5
schrauber
/// the machine
/// TB-Ausbilder
 

Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



Hi,

Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen.
Ich kann auf Arbeit keine Anhänge öffnen, danke.

So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.

__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 20.11.2014, 15:25   #6
MorkezZ
 
Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



Ok
Addition
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-11-2014
Ran by Niklas at 2014-11-19 13:50:30
Running from C:\Users\Niklas\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Norton AntiVirus (Disabled - Up to date) {D87FA2C0-F526-77B1-D6EC-0EDF3936CEDB}
AS: Norton AntiVirus (Enabled - Up to date) {631E4324-D31C-783F-EC5C-35AD42B18466}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AMD Catalyst Install Manager (HKLM\...\{C2956908-53A3-88FC-B795-B16508296FC4}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Benutzerhandbuch (x32 Version: 1.0.0.17 - Lenovo) Hidden
Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version:  - Torn Banner Studios)
Click Caption 1.10.0.2 (HKLM-x32\...\ClickCaption_1.10.0.2) (Version: 1.10.0.2 - ClickCaption) <==== ATTENTION
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.65.3.53 - Conexant)
Craften Terminal 4.0.2 (HKLM-x32\...\{4e7c3936-7c06-4ef0-928b-c5d92f372578}_is1) (Version: 4.0.2 - Craften.de)
Dolby Digital Plus Advanced Audio (HKLM\...\{B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2}) (Version: 7.3.2.2 - Dolby Laboratories Inc)
Elsword (HKLM-x32\...\Elsword_de_is1) (Version:  - )
Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.14 - Lenovo)
Energy Management (x32 Version: 8.0.2.14 - Lenovo) Hidden
Gameforge Live 2.0.5 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.5 - Gameforge)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version:  - Facepunch Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 38.0.2125.111 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Grand Theft Auto IV (HKLM-x32\...\Steam App 12210) (Version:  - Rockstar North)
IncrediMail (x32 Version: 6.6.0.5288 - IncrediMail) Hidden
IncrediMail 2.5 (HKLM-x32\...\IncrediMail) (Version: 6.6.0.5288 - IncrediMail Ltd.)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3308 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 3.0.1327.1) (HKLM\...\{302600C1-6BDF-4FD1-1307-148929CC1385}) (Version: 3.1.1307.0362 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
LCPD First Response (HKLM-x32\...\LCPD First Response) (Version: 1.0.0.0b - G17 Media)
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version:  - Valve)
Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.7850 - Broadcom Corporation)
Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10240 - Realtek Semiconductor Corp.)
Lenovo_Wireless_Driver (HKLM-x32\...\{5D642A72-8194-4A22-80DA-11FE610CCA8E}) (Version: 6.30.223.143 - Lenovo)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Preview Redistributable (x86) - 12.0.20617 (HKLM-x32\...\{1f407217-9aec-4146-8504-e64ac959c534}) (Version: 12.0.20617.1 - Microsoft Corporation)
MultIV (HKLM-x32\...\{A30833E0-EC35-4DE7-96CD-AFF4FB5976EA}) (Version: 0.2.0 - MultIV Development Team)
NetController (web controller) (HKLM-x32\...\NetController) (Version: 3.0.0.7 - Inquiro SA)
Norton AntiVirus (HKLM-x32\...\NAV) (Version: 21.6.0.32 - Symantec Corporation)
Norton Identity Safe (HKLM-x32\...\NST) (Version: 2014.6.0.27 - Symantec Corporation)
Photo Notifier and Animation Creator (HKLM-x32\...\Photo Notifier and Animation Creator) (Version: 1.0.0.1009 - IncrediMail Ltd.)
Photo Notifier and Animation Creator (x32 Version: 1.0.0.1009 - Ihr Firmenname) Hidden
Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.21 - Qualcomm Atheros Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.39048 - Realtek Semiconductor Corp.)
Software (web controller) (HKLM-x32\...\Software) (Version: 3.0.0.7 - Inquiro SA)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.14.0 - Synaptics Incorporated)
TeamSpeak 3 Client (HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.17 - Lenovo)
Windows-Treiberpaket - Lenovo (ACPIVPC) System  (02/17/2013 9.52.0.776) (HKLM\...\35DD26BE48DAF4A9F35F969F3CB1E3E1435E661E) (Version: 02/17/2013 9.52.0.776 - Lenovo)
Windows-Treiberpaket - Lenovo (WUDFRd) LenovoVhid  (07/25/2013 10.30.0.288) (HKLM\...\6BCA401E9CBEED970D75F55FA5320F60D11984E9) (Version: 07/25/2013 10.30.0.288 - Lenovo)
WinRAR 5.11 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

14-11-2014 18:03:56 Geplanter Prüfpunkt
15-11-2014 19:23:08 DirectX wurde installiert
18-11-2014 16:05:24 Microsoft Visual C++ 2013 Preview Redistributable (x86) - 12.0.20617
18-11-2014 16:05:49 Installed MultIV

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-06-16 04:17 - 2013-06-16 04:17 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0B80546C-59D5-437B-BD68-BB1CBDC71A8E} - System32\Tasks\Norton AntiVirus\Norton Error Processor => C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\SymErr.exe [2014-01-30] (Symantec Corporation)
Task: {3E875574-86C8-4CC6-9439-14E00B1BD6E1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-22] (Google Inc.)
Task: {5374B6E8-6A1E-4878-B30A-2DA35663641B} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\SymErr.exe [2013-06-04] (Symantec Corporation)
Task: {58135C79-42C7-448D-8BE1-A4E7C1068EF8} - System32\Tasks\Microsoft\Windows\AppReadiness\TriggerTask
Task: {946AFE7D-2F1C-4E74-B550-0BDD041C20D0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-22] (Google Inc.)
Task: {C37E67A0-C232-4AF2-B603-441826AE6B44} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\WSCStub.exe [2014-09-21] (Symantec Corporation)
Task: {CA9747FF-6FA7-4B1B-B03A-718903C7191C} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\SymErr.exe [2013-06-04] (Symantec Corporation)
Task: {F5C6A89E-D21C-46A7-A682-847A036B9910} - System32\Tasks\Norton AntiVirus\Norton Error Analyzer => C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\SymErr.exe [2014-01-30] (Symantec Corporation)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2013-09-04 19:13 - 2013-09-04 19:13 - 00049368 _____ () C:\Program Files\Lenovo\Bluetooth Software\btwleapi.dll
2014-10-16 09:23 - 2014-10-16 09:23 - 00187168 _____ () C:\Users\Niklas\AppData\Roaming\NetController\netcontrollerservice.exe
2014-10-16 09:23 - 2014-10-29 18:26 - 00795424 _____ () C:\Users\Niklas\AppData\Roaming\NetController\netcontroller.exe
2014-02-28 10:14 - 2014-02-28 10:14 - 00173568 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\quazip.dll
2014-02-27 15:51 - 2014-02-27 15:51 - 01080832 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\platforms\qwindows.dll
2014-02-27 15:51 - 2014-02-27 15:51 - 00833024 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\sqldrivers\qsqlite.dll
2014-08-04 14:43 - 2014-08-04 14:43 - 00102344 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win64.dll
2014-08-04 14:43 - 2014-08-04 14:43 - 00108488 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll
2014-02-27 15:51 - 2014-02-27 15:51 - 00030208 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\imageformats\qgif.dll
2014-02-27 15:51 - 2014-02-27 15:51 - 00233984 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\imageformats\qjpeg.dll
2014-08-04 14:46 - 2014-08-04 14:46 - 00563656 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\plugins\clientquery_plugin.dll
2014-08-04 14:46 - 2014-08-04 14:46 - 00579016 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll
2014-02-27 15:51 - 2014-02-27 15:51 - 00159232 _____ () D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-10-22 18:59 - 2014-10-22 18:59 - 00363520 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_64\Windows.Foundation\bcb97267f7a1fa3f3cbb7a6e70523162\Windows.Foundation.ni.dll
2014-10-22 20:11 - 2013-08-08 12:23 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2014-10-22 21:06 - 2014-10-22 21:06 - 00272808 _____ () C:\Program Files (x86)\IncrediMail\Bin\ImLookExU.dll
2014-10-22 21:06 - 2014-10-22 21:06 - 00033128 _____ () C:\Program Files (x86)\IncrediMail\Bin\IMHttpComm.dll
2014-10-22 21:06 - 2014-10-22 21:06 - 00072104 _____ () C:\Program Files (x86)\IncrediMail\Bin\wlessfp1.dll
2013-10-01 14:02 - 2013-10-01 14:02 - 00108888 _____ () C:\Program Files (x86)\IncrediMail\Bin\pmc.dll
2014-10-22 21:06 - 2014-10-22 21:06 - 00133544 _____ () C:\Program Files (x86)\IncrediMail\Bin\ImComUtlU.dll
2014-10-22 21:06 - 2014-10-22 21:06 - 00080296 _____ () C:\Program Files (x86)\IncrediMail\bin\ImAppRU.dll
2014-10-29 18:35 - 2014-10-22 05:04 - 01042760 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libglesv2.dll
2014-10-29 18:35 - 2014-10-22 05:04 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\libegl.dll
2014-11-13 14:34 - 2014-11-11 19:48 - 01171456 _____ () D:\Steam\libavcodec-56.dll
2014-11-13 14:34 - 2014-11-11 19:48 - 00332800 _____ () D:\Steam\libavresample-2.dll
2014-11-13 14:34 - 2014-11-11 19:48 - 00442368 _____ () D:\Steam\libavutil-54.dll
2014-11-13 14:34 - 2014-11-11 19:47 - 00774656 _____ () D:\Steam\SDL2.dll
2014-11-13 14:34 - 2014-11-12 02:04 - 02227904 _____ () D:\Steam\video.dll
2014-11-13 14:34 - 2014-11-11 19:48 - 00403968 _____ () D:\Steam\libavformat-56.dll
2014-11-13 14:34 - 2014-11-11 19:48 - 00485888 _____ () D:\Steam\libswscale-3.dll
2014-11-13 14:34 - 2014-11-12 02:04 - 00690880 _____ () D:\Steam\bin\chromehtml.DLL
2014-10-29 18:35 - 2014-10-22 05:04 - 01681224 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll
2014-10-29 18:35 - 2014-10-22 05:05 - 14902600 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\PepperFlash\pepflashplayer.dll
2014-11-13 14:34 - 2014-11-11 19:48 - 34589888 _____ () D:\Steam\bin\libcef.dll
2014-10-29 18:35 - 2014-10-22 05:04 - 08910664 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrator (S-1-5-21-3923384574-3896416257-2954023665-500 - Administrator - Disabled)
Gast (S-1-5-21-3923384574-3896416257-2954023665-501 - Limited - Disabled)
Niklas (S-1-5-21-3923384574-3896416257-2954023665-1001 - Administrator - Enabled) => C:\Users\Niklas

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (11/18/2014 05:14:47 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm IncMail.exe, Version 6.6.0.5288 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 39c

Startzeit: 01d0033ed98d6bdb

Endzeit: 4294967295

Anwendungspfad: C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe

Berichts-ID: 03460780-6f3e-11e4-9b33-142d27f3a596

Vollständiger Name des fehlerhaften Pakets: 

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (11/16/2014 08:57:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: hl2.exe, Version: 0.0.0.0, Zeitstempel: 0x53948b55
Name des fehlerhaften Moduls: client.dll, Version: 1.0.0.1, Zeitstempel: 0x53bf14c7
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0015acaa
ID des fehlerhaften Prozesses: 0x2da4
Startzeit der fehlerhaften Anwendung: 0xhl2.exe0
Pfad der fehlerhaften Anwendung: hl2.exe1
Pfad des fehlerhaften Moduls: hl2.exe2
Berichtskennung: hl2.exe3
Vollständiger Name des fehlerhaften Pakets: hl2.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: hl2.exe5

Error: (11/16/2014 04:32:51 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: GTAIV.exe, Version: 1.0.7.0, Zeitstempel: 0x4bd9efbe
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9431.0, Zeitstempel: 0x51bcf91f
Ausnahmecode: 0xc0000374
Fehleroffset: 0x000e341c
ID des fehlerhaften Prozesses: 0x1db8
Startzeit der fehlerhaften Anwendung: 0xGTAIV.exe0
Pfad der fehlerhaften Anwendung: GTAIV.exe1
Pfad des fehlerhaften Moduls: GTAIV.exe2
Berichtskennung: GTAIV.exe3
Vollständiger Name des fehlerhaften Pakets: GTAIV.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: GTAIV.exe5

Error: (11/16/2014 00:45:35 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm IncMail.exe, Version 6.6.0.5288 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: f1c

Startzeit: 01d00192c47439dd

Endzeit: 4294967295

Anwendungspfad: C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe

Berichts-ID: 135e0446-6d86-11e4-9b33-142d27f3a596

Vollständiger Name des fehlerhaften Pakets: 

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (11/15/2014 10:58:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: hl2.exe, Version: 0.0.0.0, Zeitstempel: 0x53948b55
Name des fehlerhaften Moduls: client.dll, Version: 1.0.0.1, Zeitstempel: 0x53bf14c7
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0015acaa
ID des fehlerhaften Prozesses: 0xba4
Startzeit der fehlerhaften Anwendung: 0xhl2.exe0
Pfad der fehlerhaften Anwendung: hl2.exe1
Pfad des fehlerhaften Moduls: hl2.exe2
Berichtskennung: hl2.exe3
Vollständiger Name des fehlerhaften Pakets: hl2.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: hl2.exe5

Error: (11/15/2014 08:47:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: GFWLClient.exe, Version: 3.5.67.0, Zeitstempel: 0x52178fb2
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9431.0, Zeitstempel: 0x51bcf867
Ausnahmecode: 0xc000041d
Fehleroffset: 0x00013f29
ID des fehlerhaften Prozesses: 0x183c
Startzeit der fehlerhaften Anwendung: 0xGFWLClient.exe0
Pfad der fehlerhaften Anwendung: GFWLClient.exe1
Pfad des fehlerhaften Moduls: GFWLClient.exe2
Berichtskennung: GFWLClient.exe3
Vollständiger Name des fehlerhaften Pakets: GFWLClient.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: GFWLClient.exe5

Error: (11/15/2014 08:46:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: GFWLClient.exe, Version: 3.5.67.0, Zeitstempel: 0x52178fb2
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9431.0, Zeitstempel: 0x51bcf867
Ausnahmecode: 0xe0434352
Fehleroffset: 0x00013f29
ID des fehlerhaften Prozesses: 0x183c
Startzeit der fehlerhaften Anwendung: 0xGFWLClient.exe0
Pfad der fehlerhaften Anwendung: GFWLClient.exe1
Pfad des fehlerhaften Moduls: GFWLClient.exe2
Berichtskennung: GFWLClient.exe3
Vollständiger Name des fehlerhaften Pakets: GFWLClient.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: GFWLClient.exe5

Error: (11/15/2014 08:46:59 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: GFWLClient.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.InvalidCastException
Stapel:
   bei System.StubHelpers.StubHelpers.GetCOMIPFromRCW(System.Object, IntPtr, IntPtr ByRef, Boolean ByRef)
   bei Microsoft.Net.BITS.Interop.BackgroundCopyManager2_0Class.EnumJobs(UInt32, Microsoft.Net.BITS.Interop.IEnumBackgroundCopyJobs ByRef)
   bei Microsoft.Net.BITS.BackgroundCopyJobCollection.GetEnumerator()
   bei System.Linq.Enumerable+<CastIterator>d__b1`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].MoveNext()
   bei System.Linq.Buffer`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]..ctor(System.Collections.Generic.IEnumerable`1<System.__Canon>)
   bei System.Linq.Enumerable.ToArray[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.Collections.Generic.IEnumerable`1<System.__Canon>)
   bei Microsoft.GamesForWindows.XLiveServices.Logger.ClientLog.FormatDownloadJobs()
   bei Microsoft.GamesForWindows.XLiveServices.Logger.ClientLog.WriteDownloadAndPackageState(Microsoft.GamesForWindows.XLiveServices.Logger.ClientTask, Microsoft.GamesForWindows.XLiveServices.Logger.ClientSeverity, System.String)
   bei Microsoft.GamesForWindows.XLiveServices.ContentManagement.DownloadManager.Shutdown()
   bei Microsoft.GamesForWindows.XLiveServices.LiveConnection.Dispose(Boolean)
   bei Microsoft.GamesForWindows.XLiveServices.LiveConnection.Shutdown()
   bei Microsoft.GamesForWindows.LiveClient.App.HandleExit()
   bei Microsoft.GamesForWindows.LiveClient.App.OnSessionEnding(System.Windows.SessionEndingCancelEventArgs)
   bei System.Windows.Application.WmQueryEndSession(IntPtr, IntPtr ByRef)
   bei System.Windows.Application.AppFilterMessage(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
   bei MS.Win32.UnsafeNativeMethods.IntGetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32)
   bei MS.Win32.UnsafeNativeMethods.GetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32)
   bei System.Windows.Threading.Dispatcher.GetMessage(System.Windows.Interop.MSG ByRef, IntPtr, Int32, Int32)
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.Run()
   bei System.Windows.Application.RunDispatcher(System.Object)
   bei System.Windows.Application.RunInternal(System.Windows.Window)
   bei System.Windows.Application.Run(System.Windows.Window)
   bei Microsoft.GamesForWindows.LiveClient.App.Main()

Error: (11/15/2014 08:23:10 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".


Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (11/15/2014 08:22:34 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".


System errors:
=============
Error: (11/18/2014 03:18:06 PM) (Source: DCOM) (EventID: 10010) (User: NiklasNotebook)
Description: {AB807329-7324-431B-8B36-DBD581F56E0B}

Error: (11/18/2014 03:17:29 PM) (Source: DCOM) (EventID: 10010) (User: NiklasNotebook)
Description: {AB807329-7324-431B-8B36-DBD581F56E0B}

Error: (11/17/2014 08:31:25 PM) (Source: DCOM) (EventID: 10010) (User: NiklasNotebook)
Description: {AB807329-7324-431B-8B36-DBD581F56E0B}

Error: (11/17/2014 08:30:54 PM) (Source: DCOM) (EventID: 10010) (User: NiklasNotebook)
Description: {AB807329-7324-431B-8B36-DBD581F56E0B}

Error: (11/17/2014 05:29:06 PM) (Source: Ntfs) (EventID: 55) (User: NT-AUTORITÄT)
Description: In der Dateisystemstruktur auf Volume "??" wurde eine Beschädigung erkannt.

Die Masterdateitabelle (MFT) beinhaltet einen beschädigten Dateidatensatz. Die Dateireferenznummer ist 0x1f00000001b613. Der Name der Datei ist "<Dateiname kann nicht bestimmt werden>".

Error: (11/17/2014 05:24:45 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung vom Remoteendpunkt empfangen. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40.

Error: (11/16/2014 08:58:02 PM) (Source: DCOM) (EventID: 10010) (User: NiklasNotebook)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}

Error: (11/16/2014 00:44:40 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden.

Modulpfad: C:\Windows\System32\bcmihvsrv64.dll
Fehlercode: 126

Error: (11/16/2014 00:44:40 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎16.‎11.‎2014 um 12:42:25 unerwartet heruntergefahren.

Error: (11/16/2014 00:44:05 PM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 29) (User: NT-AUTORITÄT)
Description: 32212256844771296350106296


Microsoft Office Sessions:
=========================
Error: (11/18/2014 05:14:47 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: IncMail.exe6.6.0.528839c01d0033ed98d6bdb4294967295C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe03460780-6f3e-11e4-9b33-142d27f3a596

Error: (11/16/2014 08:57:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: hl2.exe0.0.0.053948b55client.dll1.0.0.153bf14c7c00000050015acaa2da401d001d5ffbef137D:\Steam\steamapps\common\GarrysMod\hl2.exed:\steam\steamapps\common\garrysmod\garrysmod\bin\client.dlld797e393-6dca-11e4-9b33-142d27f3a596

Error: (11/16/2014 04:32:51 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: GTAIV.exe1.0.7.04bd9efbentdll.dll6.3.9431.051bcf91fc0000374000e341c1db801d001aebd625005D:\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\GTAIV.exeC:\Windows\SYSTEM32\ntdll.dlld2de17bd-6da5-11e4-9b33-142d27f3a596

Error: (11/16/2014 00:45:35 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: IncMail.exe6.6.0.5288f1c01d00192c47439dd4294967295C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe135e0446-6d86-11e4-9b33-142d27f3a596

Error: (11/15/2014 10:58:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: hl2.exe0.0.0.053948b55client.dll1.0.0.153bf14c7c00000050015acaaba401d001121b4e24edD:\Steam\steamapps\common\GarrysMod\hl2.exed:\steam\steamapps\common\garrysmod\garrysmod\bin\client.dll863a2d85-6d12-11e4-9b32-142d27f3a596

Error: (11/15/2014 08:47:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: GFWLClient.exe3.5.67.052178fb2KERNELBASE.dll6.3.9431.051bcf867c000041d00013f29183c01d0010b28bc2896C:\Program Files (x86)\Microsoft Games for Windows - LIVE\Client\GFWLClient.exeC:\Windows\SYSTEM32\KERNELBASE.dll2ba0bd07-6d00-11e4-9b32-142d27f3a596

Error: (11/15/2014 08:46:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: GFWLClient.exe3.5.67.052178fb2KERNELBASE.dll6.3.9431.051bcf867e043435200013f29183c01d0010b28bc2896C:\Program Files (x86)\Microsoft Games for Windows - LIVE\Client\GFWLClient.exeC:\Windows\SYSTEM32\KERNELBASE.dll28f35fd1-6d00-11e4-9b32-142d27f3a596

Error: (11/15/2014 08:46:59 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: GFWLClient.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.InvalidCastException
Stapel:
   bei System.StubHelpers.StubHelpers.GetCOMIPFromRCW(System.Object, IntPtr, IntPtr ByRef, Boolean ByRef)
   bei Microsoft.Net.BITS.Interop.BackgroundCopyManager2_0Class.EnumJobs(UInt32, Microsoft.Net.BITS.Interop.IEnumBackgroundCopyJobs ByRef)
   bei Microsoft.Net.BITS.BackgroundCopyJobCollection.GetEnumerator()
   bei System.Linq.Enumerable+<CastIterator>d__b1`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].MoveNext()
   bei System.Linq.Buffer`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]..ctor(System.Collections.Generic.IEnumerable`1<System.__Canon>)
   bei System.Linq.Enumerable.ToArray[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.Collections.Generic.IEnumerable`1<System.__Canon>)
   bei Microsoft.GamesForWindows.XLiveServices.Logger.ClientLog.FormatDownloadJobs()
   bei Microsoft.GamesForWindows.XLiveServices.Logger.ClientLog.WriteDownloadAndPackageState(Microsoft.GamesForWindows.XLiveServices.Logger.ClientTask, Microsoft.GamesForWindows.XLiveServices.Logger.ClientSeverity, System.String)
   bei Microsoft.GamesForWindows.XLiveServices.ContentManagement.DownloadManager.Shutdown()
   bei Microsoft.GamesForWindows.XLiveServices.LiveConnection.Dispose(Boolean)
   bei Microsoft.GamesForWindows.XLiveServices.LiveConnection.Shutdown()
   bei Microsoft.GamesForWindows.LiveClient.App.HandleExit()
   bei Microsoft.GamesForWindows.LiveClient.App.OnSessionEnding(System.Windows.SessionEndingCancelEventArgs)
   bei System.Windows.Application.WmQueryEndSession(IntPtr, IntPtr ByRef)
   bei System.Windows.Application.AppFilterMessage(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
   bei MS.Win32.UnsafeNativeMethods.IntGetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32)
   bei MS.Win32.UnsafeNativeMethods.GetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32)
   bei System.Windows.Threading.Dispatcher.GetMessage(System.Windows.Interop.MSG ByRef, IntPtr, Int32, Int32)
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.Run()
   bei System.Windows.Application.RunDispatcher(System.Object)
   bei System.Windows.Application.RunInternal(System.Windows.Window)
   bei System.Windows.Application.Run(System.Windows.Window)
   bei Microsoft.GamesForWindows.LiveClient.App.Main()

Error: (11/15/2014 08:23:10 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: 
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert

Error: (11/15/2014 08:22:34 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files (x86)\IncrediMail\Bin\MFC80U.DLL


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz
Percentage of memory in use: 43%
Total physical RAM: 8092.85 MB
Available physical RAM: 4586.98 MB
Total Pagefile: 16284.85 MB
Available Pagefile: 12770.95 MB
Total Virtual: 131072 MB
Available Virtual: 131071.81 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:97.66 GB) (Free:56.78 GB) NTFS
Drive d: (Daten) (Fixed) (Total:367.13 GB) (Free:306.99 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D9FA2484)
Partition 1: (Active) - (Size=1000 MB) - (Type=0B)
Partition 2: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=367.1 GB) - (Type=07 NTFS)A

==================== End Of Log ============================
         

Alt 21.11.2014, 13:00   #7
MorkezZ
 
Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



FRST


FRST Logfile:

FRST Logfile:

FRST Logfile:

FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-11-2014
Ran by Niklas (administrator) on NIKLASNOTEBOOK on 19-11-2014 13:47:55
Running from C:\Users\Niklas\Downloads
Loaded Profile: Niklas (Available profiles: Niklas)
Platform: Windows 8.1 Pro Preview (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
(Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\nav.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\NST.exe
() C:\Users\Niklas\AppData\Roaming\NetController\netcontrollerservice.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(ClickCaption) C:\Program Files (x86)\ClickCaption_1.10.0.2\Service\ccsvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\NST.exe
(Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\nav.exe
() C:\Users\Niklas\AppData\Roaming\NetController\netcontroller.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(TeamSpeak Systems GmbH) D:\Users\Niklas\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IncrediMail, Ltd.) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe
(IncrediMail, Ltd.) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Valve Corporation) D:\Steam\Steam.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Valve Corporation) D:\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\Niklas\Downloads\FRST64 (1).exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [903384 2013-07-24] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [6340312 2013-07-19] (Realtek semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17111056 2014-10-22] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2014-10-22] (Lenovo(beijing) Limited)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-13] (Synaptics Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-09-15] (Advanced Micro Devices, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\...\Run: [IncrediMail] => C:\Program Files (x86)\IncrediMail\bin\IncMail.exe [444840 2014-10-22] (IncrediMail, Ltd.)
HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\...\Policies\system: [EnableLUA] 0
HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\...\Policies\Explorer: [NofolderOptions] 0
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x1C675895D6FACF01
HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
BHO: ClickCaption -> {A18EA34C-6D33-4298-8A54-7F16499904C0} -> C:\Program Files\ClickCaption_1.10.0.2\IE\ClickCaptionClientIE.dll (ClickCaption)
BHO: Norton Identity Protection -> {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} -> C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.6.0.27\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\IPS\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: ClickCaption -> {A18EA34C-6D33-4298-8A54-7F16499904C0} -> C:\Program Files (x86)\ClickCaption_1.10.0.2\IE\ClickCaptionClientIE.dll (ClickCaption)
BHO-x32: Norton Identity Protection -> {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} -> C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\coIEPlg.dll (Symantec Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.6.0.27\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\coIEPlg.dll (Symantec Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_21.1.0.18\IPSFF
FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_21.1.0.18\IPSFF [2014-10-23]
FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.6.0.27\coFFPlgn
FF Extension: Norton Identity Safe Toolbar - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.6.0.27\coFFPlgn [2014-11-16]

Chrome: 
=======
CHR Profile: C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Präsentationen) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-10-22]
CHR Extension: (Google Docs) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-10-22]
CHR Extension: (Google Drive) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-10-22]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-10-22]
CHR Extension: (YouTube) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-10-22]
CHR Extension: (Google-Suche) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-10-22]
CHR Extension: (Google Tabellen) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-10-22]
CHR Extension: (Google Wallet) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-10-22]
CHR Extension: (Norton Security Toolbar) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nppllibpnmahfaklnpggkibhkapjkeob [2014-10-24]
CHR Extension: (Google Mail) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-10-22]
CHR HKLM-x32\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\Exts\Chrome.crx [2014-10-30]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [976600 2013-09-04] (Broadcom Corporation.)
R2 ccsvc_1.10.0.2; C:\Program Files (x86)\ClickCaption_1.10.0.2\Service\ccsvc.exe [277584 2014-10-30] (ClickCaption)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [157128 2013-08-02] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation)
R2 NAV; C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\NAV.exe [262968 2014-09-21] (Symantec Corporation)
R2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\NST.exe [129424 2013-10-06] (Symantec Corporation)
R2 NetControllerService; C:\Users\Niklas\AppData\Roaming\NetController\netcontrollerservice.exe [187168 2014-10-16] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [345336 2013-06-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-06-16] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36608 2013-12-13] (Advanced Micro Devices, Inc.)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7474864 2013-08-07] (Broadcom Corporation)
R1 BHDrvx64; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\BASHDefs\20141107.001\BHDrvx64.sys [1587416 2014-10-16] (Symantec Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [225792 2013-06-16] (Microsoft Corporation)
R3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [132920 2013-04-23] (Motorola Solutions, Inc.)
R1 ccnfd_1_10_0_2; C:\Windows\System32\drivers\ccnfd_1_10_0_2.sys [58232 2014-10-30] (ClickCaption)
R1 ccSet_NAV; C:\Windows\system32\drivers\NAVx64\1506000.020\ccSetx64.sys [162392 2013-09-26] (Symantec Corporation)
R1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DE06000.01B\ccSetx64.sys [162392 2013-09-27] (Symantec Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-10-23] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-10-23] (Symantec Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\IPSDefs\20141118.003\IDSvia64.sys [637656 2014-11-18] (Symantec Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-08] (Intel Corporation)
R3 NAVENG; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\VirusDefs\20141118.035\ENG64.SYS [129752 2014-10-23] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\VirusDefs\20141118.035\EX64.SYS [2137304 2014-10-23] (Symantec Corporation)
R1 ncdevice; C:\Windows\system32\DRIVERS\ncdevice.sys [41248 2014-05-22] (NT Kernel Resources)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-19] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-13] (Synaptics Incorporated)
R3 SRTSP; C:\Windows\System32\Drivers\NAVx64\1506000.020\SRTSP64.SYS [876248 2014-08-26] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NAVx64\1506000.020\SRTSPX64.SYS [37592 2014-08-26] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\NAVx64\1506000.020\SYMDS64.SYS [493656 2013-09-10] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\NAVx64\1506000.020\SYMEFA64.SYS [1148120 2014-08-26] (Symantec Corporation)
S0 SymELAM; C:\Windows\System32\drivers\NAVx64\1506000.020\SymELAM.sys [23568 2013-09-10] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-10-23] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NAVx64\1506000.020\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\NAVx64\1506000.020\SYMNETS.SYS [593112 2014-08-26] (Symantec Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [126216 2013-06-16] (Microsoft Corporation)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-19 13:47 - 2014-11-19 13:48 - 00000000 ____D () C:\FRST
2014-11-19 13:47 - 2014-11-19 13:47 - 00018195 _____ () C:\Users\Niklas\Downloads\FRST.txt
2014-11-19 13:46 - 2014-11-19 13:46 - 02117120 _____ (Farbar) C:\Users\Niklas\Downloads\frst64.exe
2014-11-19 13:46 - 2014-11-19 13:46 - 02117120 _____ (Farbar) C:\Users\Niklas\Downloads\FRST64 (1).exe
2014-11-19 13:44 - 2014-11-19 13:45 - 00717808 _____ ( ) C:\Users\Niklas\Downloads\IDM2-Win-EN.exe
2014-11-18 17:12 - 2014-11-18 17:12 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (2).zip
2014-11-18 17:12 - 2014-08-11 18:28 - 00007168 _____ () C:\Users\Niklas\Desktop\Robbery.net.dll
2014-11-18 17:11 - 2014-11-18 17:11 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (1).zip
2014-11-18 17:09 - 2014-11-18 17:09 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery.zip
2014-11-18 17:06 - 2014-11-18 17:06 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\MultIV
2014-11-18 17:06 - 2014-11-18 17:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MultIV
2014-11-18 17:06 - 2014-11-18 17:06 - 00000000 ____D () C:\ProgramData\Caphyon
2014-11-18 17:04 - 2014-11-18 17:06 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\MultIV Development Team
2014-11-18 17:04 - 2014-11-18 17:04 - 05748288 _____ (MultIV Development Team) C:\Users\Niklas\Downloads\multiv_setup.exe
2014-11-18 17:03 - 2014-11-18 17:03 - 11038884 _____ () C:\Users\Niklas\Downloads\1411337995_DTGraphics V2.rar
2014-11-17 19:39 - 2014-11-17 19:39 - 00389912 _____ (AnalogX, LLC) C:\Users\Niklas\Downloads\autoi.exe
2014-11-17 19:39 - 2014-11-17 19:39 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Sparta
2014-11-17 19:39 - 2014-11-17 19:39 - 00000000 ____D () C:\Program Files\ClickCaption_1.10.0.2
2014-11-17 19:39 - 2014-11-17 19:39 - 00000000 ____D () C:\Program Files (x86)\ClickCaption_1.10.0.2
2014-11-17 19:38 - 2014-11-17 19:38 - 00762160 _____ ( ) C:\Users\Niklas\Downloads\autotune_Mv_DM.exe
2014-11-16 16:01 - 2014-11-16 16:01 - 02682945 _____ () C:\Users\Niklas\Downloads\1367166104_Simple native trainer v6.5.rar
2014-11-16 13:24 - 2014-11-17 19:57 - 00000794 _____ () C:\Users\Niklas\Desktop\settings.xml
2014-11-16 13:23 - 2014-11-16 13:23 - 00110256 _____ () C:\Users\Niklas\Downloads\Tutorial (1).rar
2014-11-16 13:23 - 2014-01-02 22:03 - 00000717 _____ () C:\Users\Niklas\Desktop\README.txt
2014-11-16 13:23 - 2013-12-07 16:49 - 00015872 _____ () C:\Users\Niklas\Desktop\Alexander.dll
2014-11-16 13:23 - 2013-07-28 11:21 - 00103282 _____ () C:\Users\Niklas\Desktop\ttt3.lua
2014-11-16 13:23 - 2012-10-20 14:28 - 00187392 _____ (master131) C:\Users\Niklas\Desktop\Extreme Injector.exe
2014-11-16 13:19 - 2014-11-16 13:19 - 00412791 _____ () C:\Users\Niklas\Downloads\GMOD Hack Pack (1).rar
2014-11-16 13:18 - 2014-11-17 17:07 - 00000000 __SHD () C:\Users\Niklas\Documents\MSDCSC
2014-11-16 13:15 - 2014-11-16 13:18 - 00412775 _____ () C:\Users\Niklas\Downloads\GMOD Hack Pack.rar
2014-11-16 12:18 - 2014-11-16 12:18 - 01005568 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\dotNetFx45_Full_setup.exe
2014-11-16 12:13 - 2014-11-16 12:14 - 69999448 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\NDP452-KB2901907-x86-x64-AllOS-ENU.exe
2014-11-16 12:09 - 2014-11-16 12:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LCPD First Response
2014-11-16 12:01 - 2014-11-16 12:05 - 24341200 _____ () C:\Users\Niklas\Downloads\1. LCPD First Response 1.0c Automatic Install.zip
2014-11-15 20:49 - 2014-11-15 20:49 - 00000000 ____D () C:\Users\Niklas\Documents\Rockstar Games
2014-11-15 20:42 - 2014-11-15 20:42 - 00000000 __SHD () C:\ProgramData\SecuROM
2014-11-15 20:34 - 2014-11-15 20:34 - 00000000 ____D () C:\Users\Niklas\Documents\Games for Windows - LIVE Demos
2014-11-15 20:34 - 2014-11-15 20:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace
2014-11-15 20:33 - 2014-11-15 20:33 - 00642712 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\gfwlivesetup.exe
2014-11-15 20:25 - 2014-11-15 20:42 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Rockstar Games
2014-11-15 20:24 - 2014-11-15 20:34 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2014-11-15 20:24 - 2014-11-15 20:24 - 00178800 _____ (Sony DADC Austria AG.) C:\Windows\SysWOW64\CmdLineExt_x64.dll
2014-11-15 20:24 - 2014-11-15 20:24 - 00000000 __RHD () C:\Users\Niklas\AppData\Roaming\SecuROM
2014-11-15 20:24 - 2014-11-15 20:24 - 00000000 ____D () C:\Windows\SysWOW64\xlive
2014-11-14 21:51 - 2014-11-14 21:52 - 14555932 _____ () C:\Users\Niklas\Downloads\Parkour showdown + Resource Pack.zip
2014-11-14 21:43 - 2014-11-14 21:43 - 32435694 _____ () C:\Users\Niklas\Downloads\Gommes Revenge.zip
2014-11-14 18:48 - 2014-11-14 19:40 - 00000000 ____D () C:\Users\Niklas\Desktop\Backup
2014-11-14 18:48 - 2014-11-14 18:56 - 00000000 ____D () C:\Users\Niklas\AppData\Local\GVSE
2014-11-14 18:48 - 2014-11-14 18:48 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-11-14 18:46 - 2014-11-14 18:46 - 21915211 _____ (XB36Hazard) C:\Users\Niklas\Downloads\1388938627_GTA V 2.0.0.8.exe
2014-11-14 18:46 - 2014-11-14 18:46 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Spoon
2014-11-13 19:53 - 2014-11-13 19:53 - 00110256 _____ () C:\Users\Niklas\Downloads\Tutorial.rar
2014-11-12 15:30 - 2014-11-13 18:22 - 00000000 ____D () C:\Users\Niklas\Desktop\Gmodhack
2014-11-12 15:30 - 2014-11-12 15:30 - 00468453 _____ () C:\Users\Niklas\Downloads\New Gmod Hack with Bypass 2014.rar
2014-11-07 15:34 - 2014-11-07 15:34 - 00000903 _____ () C:\Users\Public\Desktop\Elsword.lnk
2014-11-07 15:34 - 2014-11-07 15:34 - 00000787 _____ () C:\Users\Public\Desktop\Gameforge Live.lnk
2014-11-07 15:34 - 2014-11-07 15:34 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Gameforge4d
2014-11-07 15:34 - 2014-11-07 15:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live
2014-11-07 15:28 - 2014-11-07 15:28 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup (1).exe
2014-11-06 22:19 - 2014-11-06 22:19 - 00957688 _____ (Intel Corporation) C:\Users\Niklas\Downloads\Setup (2).exe
2014-11-06 22:06 - 2014-11-06 22:06 - 797623184 _____ () C:\Windows\MEMORY.DMP
2014-11-06 22:06 - 2014-11-06 22:06 - 00281176 _____ () C:\Windows\Minidump\110614-16078-01.dmp
2014-11-06 22:06 - 2014-11-06 22:06 - 00000000 ____D () C:\Windows\Minidump
2014-11-06 01:44 - 2014-11-06 01:44 - 00000000 ____D () C:\Users\Niklas\Downloads\Gameforge Live
2014-11-06 01:43 - 2014-11-06 01:43 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup.exe
2014-11-05 23:40 - 2014-11-05 23:40 - 00000000 ____D () C:\Users\Niklas\Documents\My Games
2014-11-05 23:40 - 2014-11-05 23:40 - 00000000 ____D () C:\Users\Niklas\AppData\Local\CDWLauncher
2014-11-05 23:37 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-11-05 23:37 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-11-05 23:37 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-11-05 23:37 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-11-05 23:37 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-11-05 23:37 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-11-05 23:37 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-11-05 23:37 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-11-05 23:37 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-11-05 23:37 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2014-11-05 23:37 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-11-05 23:37 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-11-05 23:37 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-11-05 23:37 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-11-05 23:37 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-11-05 23:37 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2014-11-05 23:37 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2014-11-05 23:37 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-11-05 23:37 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-11-05 23:37 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2014-11-05 23:37 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-11-05 23:37 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2014-11-05 23:37 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2014-11-05 23:37 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2014-11-05 23:37 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2014-11-05 23:37 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2014-11-05 23:37 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2014-11-05 23:37 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2014-11-05 23:37 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2014-11-05 23:37 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2014-11-05 23:37 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2014-11-05 23:37 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2014-11-05 23:37 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2014-11-05 23:37 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2014-11-05 23:37 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2014-11-05 23:37 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2014-11-05 23:37 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2014-11-05 23:37 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2014-11-05 23:37 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2014-11-05 23:37 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2014-11-05 23:37 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2014-11-05 23:37 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2014-11-05 23:37 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2014-11-05 23:37 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2014-11-05 23:37 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2014-11-05 23:37 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2014-11-05 23:37 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2014-11-05 23:37 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2014-11-05 23:37 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2014-11-05 23:37 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2014-11-05 23:37 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2014-11-05 23:37 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2014-11-05 23:37 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2014-11-05 23:37 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2014-11-05 23:37 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2014-11-05 23:37 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2014-11-05 23:37 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2014-11-05 23:37 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2014-11-05 23:37 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-11-05 23:37 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-11-05 23:37 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-11-05 23:37 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-11-05 23:37 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-11-05 23:37 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-11-05 23:37 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2014-11-05 23:37 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2014-11-05 23:37 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2014-11-05 23:37 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2014-11-05 23:37 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2014-11-05 23:37 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2014-11-05 23:37 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2014-11-05 23:37 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2014-11-05 23:37 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2014-11-05 23:37 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2014-11-05 23:37 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2014-11-05 23:37 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2014-11-05 23:37 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2014-11-05 23:37 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2014-11-05 23:37 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2014-11-05 23:37 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2014-11-05 23:37 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2014-11-05 23:37 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2014-11-05 23:37 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2014-11-05 23:37 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2014-11-05 23:37 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2014-11-05 23:37 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2014-11-05 23:37 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2014-11-05 23:37 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2014-11-05 23:37 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2014-11-05 23:37 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2014-11-05 23:37 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2014-11-05 23:37 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2014-11-05 23:37 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2014-11-05 23:37 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2014-11-05 23:37 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2014-11-05 23:37 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2014-11-05 23:37 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2014-11-05 23:37 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2014-11-05 23:37 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2014-11-05 23:37 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2014-11-05 23:37 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2014-11-05 23:37 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2014-11-05 23:37 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2014-11-05 23:37 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2014-11-05 23:37 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2014-11-05 23:37 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2014-11-05 23:37 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2014-11-05 23:37 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2014-11-05 23:37 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2014-11-05 23:37 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2014-11-05 23:37 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2014-11-05 23:37 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2014-11-05 23:37 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2014-11-05 23:37 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2014-11-05 23:37 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2014-11-05 23:37 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2014-11-05 23:37 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2014-11-05 23:37 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2014-11-05 23:37 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2014-11-05 23:37 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2014-11-05 23:37 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2014-11-05 23:37 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2014-11-05 23:37 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2014-11-05 23:37 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2014-11-05 23:37 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2014-11-05 23:37 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2014-11-05 23:37 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2014-11-05 23:37 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2014-11-05 23:37 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2014-11-05 23:37 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2014-11-05 23:37 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2014-11-05 23:37 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2014-11-05 23:37 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2014-11-05 23:37 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2014-11-05 23:37 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2014-11-05 23:37 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2014-11-05 23:37 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2014-11-05 23:37 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2014-11-05 23:37 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2014-11-05 23:37 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2014-11-05 23:37 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2014-11-05 23:37 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2014-11-05 23:37 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2014-11-05 23:37 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2014-11-05 23:37 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2014-11-05 23:37 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2014-11-05 23:37 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2014-11-05 23:37 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2014-11-05 23:37 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2014-11-05 23:37 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2014-11-05 23:37 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2014-11-05 23:37 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2014-11-05 23:37 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2014-11-05 23:37 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2014-11-05 23:37 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2014-11-05 23:37 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2014-11-05 23:37 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2014-11-05 23:37 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2014-11-05 23:37 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2014-11-05 23:37 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2014-11-05 23:37 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2014-11-05 23:37 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2014-11-05 23:37 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2014-11-05 23:37 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2014-11-05 23:37 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2014-11-05 23:37 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2014-11-05 23:37 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2014-11-05 23:37 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2014-11-05 23:37 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2014-11-05 23:37 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2014-11-05 23:37 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2014-11-05 23:37 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2014-11-05 23:37 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2014-11-05 23:37 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2014-11-05 23:37 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2014-11-05 23:37 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2014-11-05 23:37 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2014-11-05 23:37 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2014-11-05 23:37 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2014-11-05 23:37 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2014-11-05 22:54 - 2014-11-14 21:45 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Craften Terminal
2014-11-05 22:54 - 2014-11-05 22:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Craften Terminal
2014-11-05 22:53 - 2014-11-05 22:53 - 17033651 _____ (Craften.de ) C:\Users\Niklas\Downloads\craftenterminal.exe
2014-11-05 22:44 - 2014-11-05 22:44 - 00144439 _____ () C:\Users\Niklas\Downloads\Steam Wallet Hack updated 2014.rar
2014-11-05 19:39 - 2014-11-05 19:39 - 00000000 ____D () C:\ProgramData\ATI
2014-11-05 19:38 - 2014-11-05 19:38 - 00056720 _____ () C:\Windows\SysWOW64\CCCInstall_201411051938170284.log
2014-11-05 19:38 - 2014-11-05 19:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2014-11-05 19:38 - 2014-11-05 19:38 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
2014-11-05 19:37 - 2014-11-05 19:37 - 00000000 ____D () C:\Windows\LastGood.Tmp
2014-11-05 19:37 - 2014-11-05 19:37 - 00000000 ____D () C:\Program Files\AMD
2014-11-05 19:37 - 2014-11-05 19:37 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-11-05 19:35 - 2014-11-05 19:35 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-11-05 19:31 - 2014-11-05 19:31 - 00066294 _____ () C:\Windows\SysWOW64\CCCInstall_201411051931020738.log
2014-11-05 19:29 - 2014-11-05 19:34 - 00000000 ____D () C:\AMD
2014-11-05 19:22 - 2014-11-05 19:31 - 129750444 _____ () C:\Users\Niklas\Downloads\win64_153330.zip
2014-11-05 19:18 - 2014-11-05 19:28 - 286582040 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql.exe
2014-11-05 19:18 - 2014-11-05 19:26 - 285682576 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14.9.2beta-14.301.1006-64bit-win8.1-oct10.exe
2014-11-05 16:30 - 2014-11-05 16:30 - 00001105 _____ () C:\Users\Niklas\Desktop\TeamSpeak 3 Client.lnk
2014-11-05 16:30 - 2014-11-05 16:30 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2014-11-05 16:28 - 2014-11-05 16:29 - 30014480 _____ (TeamSpeak Systems GmbH) C:\Users\Niklas\Downloads\TeamSpeak3-Client-win64-3.0.16.exe
2014-10-30 22:39 - 2014-10-30 22:39 - 00058232 _____ (ClickCaption) C:\Windows\system32\Drivers\ccnfd_1_10_0_2.sys
2014-10-29 22:56 - 2014-10-29 22:57 - 06311664 _____ () C:\Users\Niklas\Downloads\Sphax PureBDcraft  32x MC18.zip
2014-10-29 21:49 - 2014-10-29 21:51 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37.zip
2014-10-24 20:26 - 2014-10-24 20:26 - 00323592 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-10-24 12:57 - 2014-10-24 12:57 - 00000000 ____D () C:\Windows\System32\Tasks\Norton AntiVirus
2014-10-24 12:05 - 2014-10-24 12:31 - 246827120 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\avga146w81.exe
2014-10-24 12:04 - 2014-10-24 12:17 - 83355216 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\ivga146w8164u2.exe
2014-10-24 12:04 - 2014-10-24 12:04 - 04637852 _____ (Igor Pavlov) C:\Users\Niklas\Downloads\78cn25ww (1).exe
2014-10-24 11:54 - 2014-10-24 12:10 - 207485208 _____ (Advanced Micro Devices, Inc.) C:\Users\Niklas\Downloads\13-9_win7_win8_64_dd_ccc_whql.exe
2014-10-24 11:46 - 2014-10-24 11:55 - 129750444 _____ () C:\Users\Niklas\Downloads\win64__153330.zip
2014-10-24 11:43 - 2014-10-24 11:44 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup (1).exe
2014-10-24 11:43 - 2014-10-24 11:43 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup.exe
2014-10-24 11:22 - 2014-10-24 11:22 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband Savegames
2014-10-24 11:21 - 2014-10-24 12:59 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband
2014-10-24 11:21 - 2014-10-24 11:24 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Mount&Blade Warband
2014-10-24 11:05 - 2014-10-24 11:05 - 00000000 ____D () C:\Windows\System32\Tasks\Norton Identity Safe
2014-10-24 09:58 - 2014-11-16 20:57 - 00000000 ____D () C:\Users\Niklas\AppData\Local\CrashDumps
2014-10-23 21:47 - 2014-10-30 11:32 - 00000000 ____D () C:\Windows\system32\Drivers\NSTx64
2014-10-23 21:47 - 2014-10-24 12:49 - 00003218 _____ () C:\Windows\System32\Tasks\Norton WSC Integration
2014-10-23 21:47 - 2014-10-24 12:49 - 00002417 _____ () C:\Users\Public\Desktop\Norton AntiVirus.lnk
2014-10-23 21:47 - 2014-10-23 21:47 - 00177752 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
2014-10-23 21:47 - 2014-10-23 21:47 - 00008222 _____ () C:\Windows\system32\Drivers\SYMEVENT64x86.CAT
2014-10-23 21:47 - 2014-10-23 21:47 - 00000000 ____D () C:\ProgramData\NCOTEMP
2014-10-23 21:47 - 2014-10-23 21:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Identity Safe
2014-10-23 21:47 - 2014-10-23 21:47 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared
2014-10-23 21:47 - 2014-10-23 21:47 - 00000000 ____D () C:\Program Files (x86)\Norton Identity Safe
2014-10-23 21:46 - 2014-10-24 12:49 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton AntiVirus
2014-10-23 21:46 - 2014-10-24 12:49 - 00000000 ____D () C:\Windows\system32\Drivers\NAVx64
2014-10-23 21:46 - 2014-10-23 21:47 - 00000000 ____D () C:\ProgramData\Norton
2014-10-23 21:46 - 2014-10-23 21:46 - 00000000 ____D () C:\Program Files (x86)\Norton AntiVirus
2014-10-23 21:36 - 2014-10-23 21:40 - 221119464 ____N (Symantec Corporation) C:\Users\Niklas\Downloads\NAV-TW-21.1.0-GE.exe
2014-10-23 21:22 - 2014-10-23 21:22 - 00000000 ____D () C:\ProgramData\Kaspersky Lab Setup Files
2014-10-23 21:18 - 2014-10-23 21:20 - 202853696 _____ () C:\Users\Niklas\Downloads\kav15.0.1.415de_6845.exe
2014-10-23 17:42 - 2013-08-08 04:39 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-10-23 17:42 - 2013-08-08 04:36 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-10-23 15:29 - 2014-11-18 16:44 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\.minecraft
2014-10-23 15:29 - 2014-10-23 15:29 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-10-23 15:29 - 2014-10-23 15:29 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\java
2014-10-23 15:29 - 2014-10-23 15:29 - 00000000 ____D () C:\ProgramData\Sun
2014-10-23 15:29 - 2014-10-23 15:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-10-23 15:28 - 2014-10-23 15:28 - 00000000 ____D () C:\ProgramData\Oracle
2014-10-23 15:28 - 2014-10-23 15:28 - 00000000 ____D () C:\Program Files (x86)\Java
2014-10-23 15:27 - 2014-10-23 15:27 - 00675988 _____ () C:\Users\Niklas\Downloads\Minecraft.exe
2014-10-23 15:27 - 2014-10-23 15:27 - 00638888 _____ (Oracle Corporation) C:\Users\Niklas\Downloads\chromeinstall-8u25.exe
2014-10-23 01:56 - 2014-10-23 01:56 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Intel_Corporation
2014-10-22 23:36 - 2010-05-26 10:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-10-22 23:36 - 2010-05-26 10:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-10-22 23:35 - 2014-11-15 20:23 - 00044519 _____ () C:\Windows\DirectX.log
2014-10-22 23:32 - 2014-10-22 23:36 - 00000000 ____D () C:\Windows\SysWOW64\directx
2014-10-22 23:32 - 2014-10-22 23:32 - 00292184 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\dxwebsetup.exe
2014-10-22 23:30 - 2014-10-22 23:30 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\WinRAR
2014-10-22 23:29 - 2014-10-22 23:29 - 02034552 _____ () C:\Users\Niklas\Downloads\winrar-x64-511d.exe
2014-10-22 23:29 - 2014-10-22 23:29 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-10-22 23:29 - 2014-10-22 23:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-10-22 22:57 - 2014-10-22 22:57 - 691624892 _____ () C:\Users\Niklas\Downloads\CSS Content Addon (Jul2014).rar
2014-10-22 22:57 - 2013-09-02 09:05 - 05823008 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2014-10-22 22:57 - 2013-09-02 09:05 - 01414128 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2014-10-22 22:57 - 2013-09-02 09:05 - 00246896 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2014-10-22 22:57 - 2013-07-03 07:47 - 13506048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2014-10-22 22:57 - 2013-07-03 07:23 - 17929216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2014-10-22 22:56 - 2013-06-27 05:40 - 01356800 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2014-10-22 22:56 - 2013-06-27 05:16 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2014-10-22 22:56 - 2013-06-20 07:59 - 12849152 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2014-10-22 22:56 - 2013-06-20 06:15 - 11428352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2014-10-22 22:56 - 2013-06-20 05:20 - 05914624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2014-10-22 22:56 - 2013-06-20 05:17 - 04016128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2014-10-22 22:48 - 2013-08-16 13:40 - 00054776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-10-22 22:48 - 2013-08-16 06:50 - 03419136 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-10-22 22:42 - 2013-10-12 09:24 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-10-22 22:42 - 2013-10-12 08:53 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-10-22 22:42 - 2013-09-17 05:48 - 04173824 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-10-22 22:42 - 2013-07-09 05:10 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\MbaeXmlParser.dll
2014-10-22 22:42 - 2013-06-29 05:03 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll
2014-10-22 22:42 - 2013-06-29 04:09 - 00294400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll
2014-10-22 22:42 - 2013-06-21 10:57 - 00986440 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2014-10-22 22:42 - 2013-06-21 10:57 - 00817504 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2014-10-22 22:42 - 2013-06-21 10:57 - 00778264 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2014-10-22 22:42 - 2013-06-21 10:57 - 00705936 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2014-10-22 22:42 - 2013-06-21 08:27 - 00784408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2014-10-22 22:42 - 2013-06-21 08:27 - 00638256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2014-10-22 22:42 - 2013-06-21 08:27 - 00597992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2014-10-22 22:42 - 2013-06-21 08:27 - 00553056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2014-10-22 22:41 - 2013-07-29 08:17 - 00432904 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2014-10-22 22:41 - 2013-07-29 08:17 - 00258264 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2014-10-22 22:41 - 2013-07-29 05:43 - 00338896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2014-10-22 22:41 - 2013-07-29 05:43 - 00206048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2014-10-22 22:41 - 2013-07-29 02:36 - 00750080 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2014-10-22 22:41 - 2013-07-29 02:22 - 00613376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2014-10-22 22:41 - 2013-07-12 03:34 - 04208128 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2014-10-22 22:41 - 2013-06-28 03:35 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2014-10-22 22:41 - 2013-06-28 03:27 - 00649216 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2014-10-22 22:41 - 2013-06-28 03:11 - 00590336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2014-10-22 22:37 - 2014-10-22 22:37 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-10-22 22:32 - 2014-10-29 18:35 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-10-22 22:32 - 2014-10-22 22:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-10-22 22:29 - 2014-11-19 13:39 - 00001148 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-22 22:29 - 2014-11-19 13:29 - 00001144 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-22 22:29 - 2014-11-16 12:34 - 00004120 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-10-22 22:29 - 2014-11-16 12:34 - 00003884 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-10-22 22:29 - 2014-10-22 22:32 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Google
2014-10-22 22:29 - 2014-10-22 22:31 - 00000000 ____D () C:\Program Files (x86)\Google
2014-10-22 22:20 - 2014-10-22 22:20 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer
2014-10-22 22:20 - 2014-10-22 22:20 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-10-22 22:20 - 2014-10-22 22:20 - 00000000 ____D () C:\Program Files\MSBuild
2014-10-22 22:20 - 2014-10-22 22:20 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2014-10-22 22:20 - 2014-10-22 22:20 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-10-22 22:19 - 2013-05-29 02:35 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2014-10-22 22:19 - 2013-05-29 02:35 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2014-10-22 22:19 - 2013-05-29 02:35 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2014-10-22 22:19 - 2013-05-29 02:35 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-10-22 22:18 - 2014-09-22 07:42 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-10-22 22:18 - 2013-10-29 00:25 - 16979968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-10-22 22:18 - 2013-10-29 00:24 - 22566400 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-10-22 22:18 - 2013-10-28 23:23 - 05636608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-10-22 22:18 - 2013-10-28 23:19 - 04247040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-10-22 22:18 - 2013-10-28 23:00 - 12829184 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-10-22 22:18 - 2013-10-28 22:50 - 11087360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-10-22 22:18 - 2013-10-28 22:32 - 02207232 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-10-22 22:18 - 2013-10-28 22:24 - 01348608 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-10-22 22:18 - 2013-10-28 22:16 - 01788928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-10-22 22:18 - 2013-10-28 22:16 - 01140224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-10-22 22:18 - 2013-10-19 10:30 - 00075360 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-10-22 22:18 - 2013-10-19 07:18 - 00070680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-10-22 22:18 - 2013-10-05 09:57 - 01337704 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-10-22 22:18 - 2013-10-05 03:41 - 01066496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-10-22 22:18 - 2013-08-24 08:52 - 00360448 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-10-22 22:18 - 2013-08-24 08:44 - 00043520 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-10-22 22:18 - 2013-08-24 07:56 - 00297984 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2014-10-22 22:18 - 2013-08-24 07:48 - 00036352 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2014-10-22 22:18 - 2013-06-28 02:55 - 00617472 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2014-10-22 22:18 - 2013-06-28 02:54 - 00505344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2014-10-22 22:15 - 2014-11-18 20:59 - 01230770 _____ () C:\Users\Public\CAFADEBUG.log
2014-10-22 22:02 - 2013-06-20 11:36 - 01538304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-10-22 22:02 - 2013-06-20 11:36 - 00395520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-10-22 21:41 - 2014-10-22 21:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-10-22 21:06 - 2014-10-22 21:13 - 00000000 ____D () C:\Users\Niklas\AppData\Local\IM
2014-10-22 21:06 - 2014-10-22 21:06 - 00002117 _____ () C:\Users\Public\Desktop\Passwörter sichern.lnk
2014-10-22 21:06 - 2014-10-22 21:06 - 00002041 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail.lnk
2014-10-22 21:06 - 2014-10-22 21:06 - 00002029 _____ () C:\Users\Public\Desktop\IncrediMail.lnk
2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\ProgramData\Photo Notifier and Animation Creator
2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail
2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\ProgramData\IncrediMail
2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\ProgramData\IM
2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\Program Files (x86)\Photo Notifier and Animation Creator
2014-10-22 21:06 - 2014-10-22 21:06 - 00000000 ____D () C:\Program Files (x86)\IncrediMail
2014-10-22 21:03 - 2014-10-22 21:03 - 00000000 ____D () C:\Program Files (x86)\Company Name
2014-10-22 21:02 - 2014-11-18 18:27 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\NetController
2014-10-22 21:02 - 2014-10-22 21:02 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Software
2014-10-22 21:02 - 2014-10-22 21:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Software
2014-10-22 21:01 - 2014-10-22 21:04 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Company Name
2014-10-22 20:55 - 2014-10-22 20:55 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\ATI
2014-10-22 20:55 - 2014-10-22 20:55 - 00000000 ____D () C:\Users\Niklas\AppData\Local\ATI
2014-10-22 20:52 - 2014-10-22 20:52 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Macromedia
2014-10-22 20:49 - 2014-10-22 20:49 - 00002088 _____ () C:\Users\Public\Desktop\Benutzerhandbuch.lnk
2014-10-22 20:49 - 2014-10-22 20:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2014-10-22 20:47 - 2014-10-22 20:47 - 00000000 __SHD () C:\UserGuidePDF
2014-10-22 20:46 - 2014-10-22 20:46 - 00000000 ____D () C:\Program Files\DIFX
2014-10-22 20:46 - 2014-10-22 20:45 - 00039008 _____ (Lenovo.) C:\Windows\system32\Drivers\LhdX64.sys
2014-10-22 20:46 - 2014-10-22 20:45 - 00019872 _____ (Lenovo (Beijing) Limited) C:\Windows\system32\LenovoSDKEmSubSystem.dll
2014-10-22 20:45 - 2014-10-22 20:45 - 00000000 ____D () C:\ProgramData\Downloaded Installations
2014-10-22 20:44 - 2013-07-19 09:58 - 06340312 _____ (Realtek semiconductor) C:\Windows\RTFTrack.exe
2014-10-22 20:44 - 2013-07-19 09:58 - 02628312 _____ (Realtek Semiconductor Corp.) C:\Windows\RtCamU64.exe
2014-10-22 20:44 - 2013-07-19 09:58 - 01157563 _____ () C:\Windows\FTDataP.xml
2014-10-22 20:44 - 2013-07-19 09:58 - 00946032 _____ () C:\Windows\FTData.xml
2014-10-22 20:44 - 2013-07-19 09:58 - 00817241 _____ () C:\Windows\FTDataR1.xml
2014-10-22 20:44 - 2013-07-19 09:58 - 00817191 _____ () C:\Windows\FTDataR0.xml
2014-10-22 20:44 - 2013-07-19 09:58 - 00473304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtCamX64.dll
2014-10-22 20:44 - 2013-07-19 09:58 - 00421080 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtCamX.dll
2014-10-22 20:43 - 2013-07-19 09:58 - 08247640 ____R (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\rtsuvc.sys
2014-10-22 20:42 - 2014-10-22 20:42 - 00000000 ____D () C:\Users\Niklas\Documents\Bluetooth-Exchange-Ordner
2014-10-22 20:42 - 2014-10-22 20:42 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Broadcom
2014-10-22 20:41 - 2014-10-22 20:41 - 00000000 ____D () C:\Program Files\Lenovo
2014-10-22 20:41 - 2013-07-11 22:11 - 00228568 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwavdt.sys
2014-10-22 20:41 - 2013-07-11 22:11 - 00186584 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwaudio.sys
2014-10-22 20:41 - 2013-07-11 22:11 - 00038616 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwrchid.sys
2014-10-22 20:41 - 2012-07-27 00:48 - 00040248 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwl2cap.sys
2014-10-22 20:40 - 2014-10-22 20:40 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_btmaux_01009.Wdf
2014-10-22 20:40 - 2014-10-22 20:39 - 00000000 ____D () C:\Windows\system32\Drivers\Win64
2014-10-22 20:40 - 2013-08-02 07:18 - 00020614 _____ () C:\Windows\system32\Drivers\ibtfltcoex_wp8.cat
2014-10-22 20:39 - 2014-10-22 20:39 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2014-10-22 20:39 - 2014-10-22 20:39 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2014-10-22 20:39 - 2014-10-22 20:39 - 00000000 ____D () C:\Program Files\Synaptics
2014-10-22 20:39 - 2013-09-13 09:14 - 00532208 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys
2014-10-22 20:39 - 2013-09-13 09:14 - 00422640 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo19.dll
2014-10-22 20:39 - 2013-09-13 09:14 - 00251632 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll
2014-10-22 20:39 - 2013-09-13 09:14 - 00169712 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynTPCom.dll
2014-10-22 20:39 - 2013-09-13 09:13 - 00723184 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2014-10-22 20:39 - 2013-09-13 09:13 - 00400112 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCom.dll
2014-10-22 20:38 - 2014-10-22 20:46 - 00015078 _____ () C:\Windows\DPINST.LOG
2014-10-22 20:38 - 2014-10-22 20:39 - 00001454 _____ () C:\Windows\Synaptics.log
2014-10-22 20:38 - 2013-09-13 09:14 - 00034544 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2014-10-22 20:28 - 2014-10-22 20:49 - 00000000 ____D () C:\Program Files (x86)\Lenovo
2014-10-22 20:28 - 2013-08-07 12:37 - 07474864 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL63a.SYS
2014-10-22 20:28 - 2013-08-07 11:17 - 04011520 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv64.dll
2014-10-22 20:28 - 2013-08-07 11:16 - 03777024 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui64.dll
2014-10-22 20:26 - 2014-10-22 20:43 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-10-22 20:26 - 2014-10-22 20:26 - 00000000 ____D () C:\Windows\SysWOW64\sda
2014-10-22 20:26 - 2013-07-18 09:48 - 09889352 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsUVStoricon.dll
2014-10-22 20:26 - 2013-07-18 09:48 - 00329944 ____R (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsUVStor.sys
2014-10-22 20:26 - 2013-07-18 06:55 - 00130248 _____ (Qualcomm Atheros Co., Ltd.) C:\Windows\system32\Drivers\L1C63x64.sys
2014-10-22 20:25 - 2014-10-22 20:25 - 00000000 ____D () C:\Windows\SysWOW64\Atheros_L1e
2014-10-22 20:24 - 2014-10-22 20:24 - 00000000 ____D () C:\Program Files\Dolby Digital Plus
2014-10-22 20:24 - 2011-09-01 08:23 - 00447104 _____ (Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
2014-10-22 20:22 - 2013-07-25 07:39 - 00206552 _____ (Conexant Systems Inc.) C:\Windows\system32\CxAudMsg64.exe
2014-10-22 20:21 - 2014-10-22 20:24 - 00000000 ____D () C:\Program Files\CONEXANT
2014-10-22 20:21 - 2014-10-22 20:21 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-10-22 20:21 - 2014-10-22 20:21 - 00000000 ____D () C:\ProgramData\Conexant
2014-10-22 20:21 - 2013-08-20 06:28 - 02832088 _____ (Conexant Systems, Inc.) C:\Windows\system32\UCI64A40.DLL
2014-10-22 20:21 - 2013-08-19 08:56 - 00936128 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64BP04.dll
2014-10-22 20:21 - 2013-08-08 03:52 - 01387712 _____ (Conexant Systems Inc.) C:\Windows\system32\Drivers\CHDRT64.sys
2014-10-22 20:21 - 2013-08-05 06:56 - 06219096 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2014-10-22 20:21 - 2013-08-05 06:56 - 01908568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2014-10-22 20:21 - 2013-08-05 06:56 - 00312152 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2014-10-22 20:21 - 2013-08-05 06:56 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2014-10-22 20:21 - 2013-05-15 08:27 - 00406208 _____ (Conexant Systems, Inc.) C:\Windows\system32\CSpkExt64.dll
2014-10-22 20:21 - 2012-06-29 06:04 - 00050848 _____ (Conexant Systems Inc.) C:\Windows\system32\CxPageMaster64.dll
2014-10-22 20:21 - 2011-01-18 01:35 - 00030893 _____ () C:\Windows\system32\Drivers\Mixer.ini
2014-10-22 20:20 - 2014-11-05 19:38 - 00000000 ____D () C:\ProgramData\AMD
2014-10-22 20:20 - 2014-10-22 20:20 - 00067139 _____ () C:\Windows\SysWOW64\CCCInstall_201410222120320047.log
2014-10-22 20:19 - 2014-10-22 20:19 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2014-10-22 20:19 - 2014-10-22 20:19 - 00000000 _____ () C:\Windows\ativpsrm.bin
2014-10-22 20:19 - 2013-08-19 18:50 - 00127488 _____ (AMD) C:\Windows\system32\coinst_13.151.dll
2014-10-22 20:19 - 2013-08-19 18:49 - 01187342 _____ () C:\Windows\system32\amdocl_as64.exe
2014-10-22 20:19 - 2013-08-19 18:49 - 01061902 _____ () C:\Windows\system32\amdocl_ld64.exe
2014-10-22 20:19 - 2013-08-19 18:49 - 00995342 _____ () C:\Windows\SysWOW64\amdocl_as32.exe
2014-10-22 20:19 - 2013-08-19 18:49 - 00798734 _____ () C:\Windows\SysWOW64\amdocl_ld32.exe
2014-10-22 20:19 - 2013-08-19 18:06 - 00204952 _____ () C:\Windows\SysWOW64\ativvsvl.dat
2014-10-22 20:19 - 2013-08-19 18:06 - 00204952 _____ () C:\Windows\system32\ativvsvl.dat
2014-10-22 20:19 - 2013-08-19 18:06 - 00157144 _____ () C:\Windows\SysWOW64\ativvsva.dat
2014-10-22 20:19 - 2013-08-19 18:06 - 00157144 _____ () C:\Windows\system32\ativvsva.dat
2014-10-22 20:19 - 2013-05-04 20:22 - 00047164 _____ () C:\Windows\atiogl.xml
2014-10-22 20:19 - 2011-09-12 23:06 - 00003917 _____ () C:\Windows\SysWOW64\atipblag.dat
2014-10-22 20:19 - 2011-09-12 23:06 - 00003917 _____ () C:\Windows\system32\atipblag.dat
2014-10-22 20:18 - 2014-11-18 17:05 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-22 20:18 - 2014-10-22 20:18 - 00000000 ____D () C:\Program Files\ATI
2014-10-22 20:15 - 2014-10-24 12:43 - 00000732 _____ () C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk
2014-10-22 20:15 - 2013-09-19 22:22 - 25982976 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 20943360 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 12100096 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 11387392 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 09081856 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 04432896 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 04177920 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2014-10-22 20:15 - 2013-09-19 22:22 - 04067328 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 04009632 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAAC64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 03523072 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 03292672 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 02974208 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 02813952 _____ () C:\Windows\system32\iglhxa64.cpa
2014-10-22 20:15 - 2013-09-19 22:22 - 02474712 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiVAD64.exe
2014-10-22 20:15 - 2013-09-19 22:22 - 02064896 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 01814016 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 01423008 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSecureSourceFilter64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 01127424 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 01123328 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00844760 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2014-10-22 20:15 - 2013-09-19 22:22 - 00769496 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2014-10-22 20:15 - 2013-09-19 22:22 - 00650400 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiWinNextAgent64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00631456 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAudioFilter64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00623104 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00598688 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMux64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00548864 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00522240 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00521728 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00517120 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00516096 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00513536 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00513024 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00492032 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00393688 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2014-10-22 20:15 - 2013-09-19 22:22 - 00391128 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2014-10-22 20:15 - 2013-09-19 22:22 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2014-10-22 20:15 - 2013-09-19 22:22 - 00365568 _____ () C:\Windows\system32\igdmd64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00345600 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00344224 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSilenceFilter64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00303104 _____ () C:\Windows\SysWOW64\igdmd32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2014-10-22 20:15 - 2013-09-19 22:22 - 00279000 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2014-10-22 20:15 - 2013-09-19 22:22 - 00243712 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00241664 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00214528 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00207008 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiUtils64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00193536 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00180224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3308.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00179712 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00176288 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiDDEAgent64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00158720 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00148992 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00132608 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00127488 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00121504 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMCUMD64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00093344 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiLogServer64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00066560 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00044025 _____ () C:\Windows\system32\iglhxo64.vp
2014-10-22 20:15 - 2013-09-19 22:22 - 00043816 _____ () C:\Windows\system32\iglhxc64_dev.vp
2014-10-22 20:15 - 2013-09-19 22:22 - 00043494 _____ () C:\Windows\system32\iglhxc64.vp
2014-10-22 20:15 - 2013-09-19 22:22 - 00043298 _____ () C:\Windows\system32\iglhxg64_dev.vp
2014-10-22 20:15 - 2013-09-19 22:22 - 00043256 _____ () C:\Windows\system32\iglhxg64.vp
2014-10-22 20:15 - 2013-09-19 22:22 - 00042079 _____ () C:\Windows\system32\iglhxo64_dev.vp
2014-10-22 20:15 - 2013-09-19 22:22 - 00029184 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00012288 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2014-10-22 20:15 - 2013-09-19 22:22 - 00002944 _____ () C:\Windows\system32\iglhxs64.vp
2014-10-22 20:15 - 2013-09-19 22:22 - 00001125 _____ () C:\Windows\system32\iglhxa64.vp
2014-10-22 20:15 - 2013-09-19 22:21 - 13760512 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 13153792 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 07840256 _____ (Intel Corporation) C:\Windows\system32\ig7icd64.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 07587800 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe
2014-10-22 20:15 - 2013-09-19 22:21 - 06224384 _____ (Intel Corporation) C:\Windows\SysWOW64\ig7icd32.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 02384896 _____ () C:\Windows\system32\GfxRes.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 00771032 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2014-10-22 20:15 - 2013-09-19 22:21 - 00754648 _____ (Intel Corporation) C:\Windows\system32\GfxUIHotKeyMenu.exe
2014-10-22 20:15 - 2013-09-19 22:21 - 00530392 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe
2014-10-22 20:15 - 2013-09-19 22:21 - 00396248 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe
2014-10-22 20:15 - 2013-09-19 22:21 - 00329216 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 00290816 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 00265385 _____ () C:\Windows\system32\Gfxres.th-TH.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00251862 _____ () C:\Windows\system32\Gfxres.el-GR.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00233588 _____ () C:\Windows\system32\Gfxres.ru-RU.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00223744 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 00220672 _____ () C:\Windows\system32\igdde64.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 00199481 _____ () C:\Windows\system32\Gfxres.ar-SA.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00197044 _____ () C:\Windows\system32\Gfxres.ja-JP.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00194048 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 00191088 _____ () C:\Windows\system32\Gfxres.he-IL.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00180736 _____ () C:\Windows\SysWOW64\igdde32.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 00179353 _____ () C:\Windows\system32\Gfxres.ko-KR.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00179230 _____ () C:\Windows\system32\Gfxres.it-IT.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00176940 _____ () C:\Windows\system32\Gfxres.es-ES.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00176666 _____ () C:\Windows\system32\Gfxres.fr-FR.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00176638 _____ () C:\Windows\system32\Gfxres.de-DE.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00175259 _____ () C:\Windows\system32\Gfxres.ro-RO.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00174244 _____ () C:\Windows\system32\Gfxres.hu-HU.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00173953 _____ () C:\Windows\system32\Gfxres.tr-TR.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00173813 _____ () C:\Windows\system32\Gfxres.pl-PL.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00173495 _____ () C:\Windows\system32\Gfxres.nl-NL.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00172750 _____ () C:\Windows\system32\Gfxres.pt-BR.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00172041 _____ () C:\Windows\system32\Gfxres.fi-FI.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00171709 _____ () C:\Windows\system32\Gfxres.sk-SK.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00171547 _____ () C:\Windows\system32\Gfxres.sv-SE.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00171310 _____ () C:\Windows\system32\Gfxres.pt-PT.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00170996 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00170175 _____ () C:\Windows\system32\Gfxres.hr-HR.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00166672 _____ () C:\Windows\system32\Gfxres.sl-SI.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00165374 _____ () C:\Windows\system32\Gfxres.nb-NO.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00164698 _____ () C:\Windows\system32\Gfxres.da-DK.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00160256 _____ () C:\Windows\system32\igdail64.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 00159947 _____ () C:\Windows\system32\Gfxres.en-US.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00153249 _____ () C:\Windows\system32\Gfxres.zh-TW.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00153048 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2014-10-22 20:15 - 2013-09-19 22:21 - 00151473 _____ () C:\Windows\system32\Gfxres.zh-CN.resources
2014-10-22 20:15 - 2013-09-19 22:21 - 00142848 _____ () C:\Windows\SysWOW64\igdail32.dll
2014-10-22 20:15 - 2013-09-19 22:21 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll
2014-10-22 20:12 - 2013-09-17 01:21 - 00449528 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys
2014-10-22 20:11 - 2014-10-22 20:11 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2014-10-22 20:11 - 2013-08-08 12:23 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll
2014-10-22 20:10 - 2014-10-24 12:43 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2014-10-22 20:10 - 2014-10-22 22:17 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-10-22 20:10 - 2014-10-22 20:11 - 00000000 ____D () C:\ProgramData\Intel
2014-10-22 20:10 - 2014-10-22 20:10 - 01715596 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-10-22 20:10 - 2014-10-22 20:10 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Intel Corporation
2014-10-22 20:10 - 2014-10-22 20:10 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\InstallShield
2014-10-22 20:10 - 2013-08-08 12:23 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2014-10-22 20:10 - 2013-08-08 12:23 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys
2014-10-22 20:09 - 2014-10-22 22:37 - 00000000 ____D () C:\Program Files\Intel
2014-10-22 20:07 - 2014-10-22 20:40 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-10-22 20:07 - 2014-10-22 20:07 - 00000000 ____D () C:\Users\Niklas\Intel
2014-10-22 20:07 - 2013-08-05 04:50 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2014-10-22 20:06 - 2014-10-22 20:06 - 00000000 ____D () C:\Intel
2014-10-22 20:05 - 2014-10-22 20:05 - 04637852 _____ (Igor Pavlov) C:\Users\Niklas\Downloads\78cn25ww.exe
2014-10-22 19:52 - 2014-10-22 19:52 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2014-10-22 19:40 - 2014-10-22 20:32 - 00000000 ____D () C:\Windows\Panther
2014-10-22 19:17 - 2014-11-19 13:47 - 00003958 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{C3FD5E37-D5A1-4B31-8D29-4700A322E84F}
2014-10-22 18:52 - 2014-11-18 19:52 - 00003600 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3923384574-3896416257-2954023665-1001
2014-10-22 18:48 - 2014-11-19 13:32 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-10-22 18:47 - 2014-10-22 18:47 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2014-10-22 18:46 - 2014-11-14 22:01 - 00000000 ____D () C:\Users\Niklas
2014-10-22 18:46 - 2014-10-22 18:48 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Packages
2014-10-22 18:46 - 2014-10-22 18:46 - 00001454 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-10-22 18:46 - 2014-10-22 18:46 - 00000020 ___SH () C:\Users\Niklas\ntuser.ini
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Vorlagen
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Startmenü
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Netzwerkumgebung
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Lokale Einstellungen
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Eigene Dateien
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Druckumgebung
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Musik
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Bilder
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Verlauf
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Anwendungsdaten
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 _SHDL () C:\Users\Niklas\Anwendungsdaten
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Adobe
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 ____D () C:\Users\Niklas\AppData\Local\VirtualStore
2014-10-22 18:46 - 2014-10-22 18:46 - 00000000 ____D () C:\ProgramData\PRICache
2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-10-22 18:45 - 2014-11-19 13:29 - 02004978 _____ () C:\Windows\WindowsUpdate.log
2014-10-22 18:44 - 2014-10-22 18:44 - 00000000 ____D () C:\Windows\CSC
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Programme
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-10-22 18:43 - 2014-10-22 18:43 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-10-22 18:42 - 2014-10-22 18:42 - 00000000 __SHD () C:\Recovery
2014-10-22 18:41 - 2014-11-16 12:44 - 00008146 _____ () C:\Windows\PFRO.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-19 13:32 - 2013-06-16 11:51 - 00766620 _____ () C:\Windows\system32\perfh007.dat
2014-11-19 13:32 - 2013-06-16 11:51 - 00159902 _____ () C:\Windows\system32\perfc007.dat
2014-11-18 21:00 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\system32\sru
2014-11-16 12:44 - 2013-06-16 05:42 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-14 18:48 - 2013-06-16 05:42 - 00011812 _____ () C:\Windows\setupact.log
2014-11-13 19:23 - 2013-06-16 04:17 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-11-13 19:19 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-11-06 22:12 - 2013-06-16 04:17 - 00262144 ___SH () C:\Windows\system32\config\BBI
2014-10-30 20:27 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\rescache
2014-10-24 20:26 - 2013-06-16 06:37 - 00000000 ___HD () C:\Windows\ELAMBKUP
2014-10-24 12:47 - 2013-06-16 06:37 - 00000000 ___RD () C:\Windows\ToastData
2014-10-24 12:47 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\WinStore
2014-10-24 12:47 - 2013-06-16 06:28 - 00000000 ____D () C:\Windows\CbsTemp
2014-10-23 17:51 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\AppReadiness
2014-10-22 22:20 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\SysWOW64\MUI
2014-10-22 22:20 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\system32\MUI
2014-10-22 20:45 - 2012-07-08 19:22 - 00035600 _____ (Lenovo Corporation) C:\Windows\system32\Drivers\AcpiVpc.sys
2014-10-22 20:45 - 2012-02-21 04:48 - 02356592 _____ (Microsoft Corporation) C:\Windows\system32\WudfUpdate_01011.dll
2014-10-22 20:28 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\tracing
2014-10-22 20:11 - 2013-06-16 06:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-10-22 20:09 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\system32\restore
2014-10-22 19:40 - 2013-06-16 06:37 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\FileManager
2014-10-22 18:46 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\Camera
2014-10-22 18:43 - 2013-06-16 06:37 - 00000000 ____D () C:\Program Files\Windows NT
2014-10-22 18:43 - 2013-06-16 04:28 - 00000000 __RHD () C:\Users\Default
2014-10-22 18:42 - 2013-06-16 06:37 - 00001720 _____ () C:\Windows\DtcInstall.log
2014-10-22 18:42 - 2013-06-16 06:37 - 00000000 ____D () C:\Windows\system32\Recovery

Some content of TEMP:
====================
C:\Users\Niklas\AppData\Local\Temp\DelB3CF.exe
C:\Users\Niklas\AppData\Local\Temp\drm_dyndata_7370014.dll
C:\Users\Niklas\AppData\Local\Temp\drm_dyndata_7380014.dll
C:\Users\Niklas\AppData\Local\Temp\_is15B1.exe
C:\Users\Niklas\AppData\Local\Temp\_is169F.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-18 15:16

==================== End Of Log ============================
         
--- --- ---

--- --- ---

--- --- ---

--- --- ---

--- --- ---


So jetzt wurde ich auf diese seite umgeleitet


hxxp://importantjavaupgrade.info/update-flash/de/03acd46b2845413023eb9bd99194fee3/?subid=charlie-mor-f76qFmFi&subid2=RFYwMzBiMThiMjcwYzMxMWU0OWIyNDEyNDVlNDMxZWNhZjE0MTY0OTQzNTk&transaction_id=9d0af2da-a67f-4cdc-8fd6-7d6af28e23a4&rand=546dfd1956001&source=DEZP-CH&entry=y&auto=y


Und hat sich sofort was gedownloadet was mein Virenscanner aber entfernt hat

Hoffe übrigens auf schnelle antwort da diese Tabs ganzschön nerven.

So ich warte immernoch

Bitte eine Antwort

Alt 22.11.2014, 11:13   #8
schrauber
/// the machine
/// TB-Ausbilder
 

Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



Lade Dir bitte von hier Revo Uninstaller Download Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
  • Installiere und starte das Programm. (Bebilderte Anleitung zu Revo Uninstaller)
  • Klicke auf Optionen und wähle als Sprache Deutsch.
  • Suche im Uninstallerfeld nach den Programmen:

    Click Caption 1.10.0.2


  • Wähle die Programme nacheinander aus und klicke jedes Mal auf Uninstall.
  • Wähle anschließend den Modus "Moderat" aus.
  • Reste löschen:
    Klicke auf dann auf und dann auf .

 






Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 23.11.2014, 00:23   #9
MorkezZ
 
Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



JRST

Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.9 (11.15.2014:2)
OS: Windows 8.1 Pro x64
Ran by Niklas on 23.11.2014 at  0:10:47,90
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 23.11.2014 at  0:11:41,54
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         
ADWCLEANER

Code:
ATTFilter
# AdwCleaner v4.101 - Bericht erstellt am 23/11/2014 um 00:06:23
# Aktualisiert 09/11/2014 von Xplode
# Database : 2014-11-22.1 [Live]
# Betriebssystem : Windows 8.1 Pro  (64 bits)
# Benutzername : Niklas - NIKLASNOTEBOOK
# Gestartet von : C:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\AdwCleaner_4.101.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****


***** [ Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

[#] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}

***** [ Browser ] *****

-\\ Internet Explorer v11.0.9600.17126


*************************

AdwCleaner[R0].txt - [954 octets] - [23/11/2014 00:05:16]
AdwCleaner[S0].txt - [785 octets] - [23/11/2014 00:06:23]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [844 octets] ##########
         

Noch ne andere kp auch ADW

Code:
ATTFilter
# AdwCleaner v4.101 - Bericht erstellt am 23/11/2014 um 00:05:16
# Aktualisiert 09/11/2014 von Xplode
# Database : 2014-11-22.1 [Live]
# Betriebssystem : Windows 8.1 Pro  (64 bits)
# Benutzername : Niklas - NIKLASNOTEBOOK
# Gestartet von : C:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\AdwCleaner_4.101.exe
# Option : Suchen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****


***** [ Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}

***** [ Browser ] *****

-\\ Internet Explorer v11.0.9600.17126


*************************

AdwCleaner[R0].txt - [812 octets] - [23/11/2014 00:05:16]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [871 octets] ##########
         
Irgendwie hatte sich Anti malware Byte nichtmehr öffnen lassen dewegen ist das alles jetzt mit dem log weggegangen weil sich das Programm nicht mehr geöffnet hatt auch nicht mit Kompatibilität und als administratir keine chance

Nochmal die FRST


FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-11-2014 01
Ran by Niklas (administrator) on NIKLASNOTEBOOK on 23-11-2014 00:22:30
Running from C:\Users\Niklas\Downloads
Loaded Profile: Niklas (Available profiles: Niklas)
Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6340312 2013-07-19] (Realtek semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-13] (Synaptics Incorporated)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x9D93F528A806D001
HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE,de;q=0.5
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========

Chrome: 
=======

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-08-07] (Broadcom Corporation.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-09-24] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-09-24] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36608 2013-12-13] (Advanced Micro Devices, Inc.)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-08-07] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7474864 2013-08-07] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-08] (Intel Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-19] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-13] (Synaptics Incorporated)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-09-24] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-23 00:22 - 2014-11-23 00:22 - 00000000 ____D () C:\Users\Niklas\Downloads\FRST-OlderVersion
2014-11-23 00:11 - 2014-11-23 00:11 - 00000619 _____ () C:\Users\Niklas\Desktop\JRT.txt
2014-11-23 00:10 - 2014-11-23 00:10 - 00000000 ____D () C:\WINDOWS\ERUNT
2014-11-23 00:05 - 2014-11-23 00:06 - 00000000 ____D () C:\AdwCleaner
2014-11-23 00:02 - 2014-11-23 00:02 - 00000000 __SHD () C:\Users\Niklas\AppData\Local\EmieUserList
2014-11-23 00:02 - 2014-11-23 00:02 - 00000000 __SHD () C:\Users\Niklas\AppData\Local\EmieSiteList
2014-11-23 00:00 - 2014-11-23 00:00 - 00003958 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A8883146-0AFF-457E-97C0-AC3285E0593E}
2014-11-23 00:00 - 2014-11-23 00:00 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Macromedia
2014-11-22 23:57 - 2014-11-23 00:16 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3923384574-3896416257-2954023665-1001
2014-11-22 23:53 - 2014-11-22 23:53 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2014-11-22 23:49 - 2014-11-22 23:50 - 00000000 ____D () C:\Users\Niklas\AppData\Local\PackageStaging
2014-11-22 23:49 - 2014-11-22 23:50 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Packages
2014-11-22 23:49 - 2014-11-22 23:49 - 00001454 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-22 23:49 - 2014-11-22 23:49 - 00000020 ___SH () C:\Users\Niklas\ntuser.ini
2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD
2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Adobe
2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas\AppData\Local\VirtualStore
2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 _____ () C:\WINDOWS\ativpsrm.bin
2014-11-22 23:34 - 2014-11-23 00:20 - 00193583 _____ () C:\WINDOWS\WindowsUpdate.log
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 ____D () C:\WINDOWS\CSC
2014-11-22 23:33 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas
2014-11-22 23:33 - 2014-11-22 23:34 - 00011433 _____ () C:\WINDOWS\diagwrn.xml
2014-11-22 23:33 - 2014-11-22 23:34 - 00011433 _____ () C:\WINDOWS\diagerr.xml
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Vorlagen
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Startmenü
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Netzwerkumgebung
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Lokale Einstellungen
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Eigene Dateien
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Druckumgebung
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Musik
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Bilder
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Verlauf
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Anwendungsdaten
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Anwendungsdaten
2014-11-22 23:33 - 2014-09-24 08:41 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-22 23:33 - 2014-09-24 08:41 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-11-22 23:33 - 2014-09-24 07:17 - 00000369 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-11-22 23:33 - 2014-09-24 07:17 - 00000369 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-11-22 23:33 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-22 23:33 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-22 23:25 - 2014-11-22 23:25 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-11-22 23:25 - 2014-11-22 23:25 - 00000000 ____D () C:\ProgramData\Conexant
2014-11-22 23:24 - 2014-11-22 23:24 - 00000264 _____ () C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Synaptics
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Intel
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\CONEXANT
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\AMD
2014-11-22 23:22 - 2014-11-23 00:00 - 00000000 ___DC () C:\WINDOWS\Panther
2014-11-22 23:21 - 2014-11-22 23:21 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff
2014-11-22 23:21 - 2014-11-22 23:21 - 00000000 ____D () C:\Windows.old
2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer
2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files\MSBuild
2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-11-22 23:17 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-11-22 23:17 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-11-22 23:17 - 2013-08-03 05:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2014-11-22 23:17 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2014-11-22 23:17 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-11-22 23:17 - 2013-08-03 05:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2014-11-22 22:08 - 2014-11-23 00:08 - 00000000 ___DO () C:\Users\Niklas\SkyDrive
2014-11-22 21:43 - 2014-11-22 21:46 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37 (2).zip
2014-11-22 20:43 - 2014-11-22 20:44 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Niklas\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-22 20:40 - 2014-11-22 20:40 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Niklas\Downloads\revosetup95.exe
2014-11-22 20:40 - 2014-11-22 20:40 - 00000960 _____ () C:\Users\Niklas\Desktop\Revo Uninstaller.lnk
2014-11-21 15:44 - 2014-11-21 15:44 - 07891393 _____ () C:\Users\Niklas\Downloads\Wurst 1.3.1.zip
2014-11-20 19:09 - 2014-11-20 19:09 - 00000000 ____D () C:\Users\Niklas\Documents\My Cheat Tables
2014-11-20 19:08 - 2014-11-20 19:08 - 09052192 _____ (Cheat Engine ) C:\Users\Niklas\Downloads\CheatEngine64.exe
2014-11-20 19:08 - 2014-11-20 19:08 - 00000803 _____ () C:\Users\Niklas\Desktop\Cheat Engine.lnk
2014-11-20 16:09 - 2014-11-17 21:16 - 00144328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00118096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 10889312 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 09314984 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 08295784 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 08045488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 07208104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 07028336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 01342760 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 01118720 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 00126848 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 00118096 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 00100032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2014-11-20 16:09 - 2014-11-17 21:13 - 00297672 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2014-11-20 16:09 - 2014-11-17 21:11 - 16756736 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2014-11-20 16:09 - 2014-11-17 20:57 - 01187342 _____ () C:\WINDOWS\system32\amdocl_as64.exe
2014-11-20 16:09 - 2014-11-17 20:57 - 01061902 _____ () C:\WINDOWS\system32\amdocl_ld64.exe
2014-11-20 16:09 - 2014-11-17 20:57 - 00995342 _____ () C:\WINDOWS\SysWOW64\amdocl_as32.exe
2014-11-20 16:09 - 2014-11-17 20:57 - 00798734 _____ () C:\WINDOWS\SysWOW64\amdocl_ld32.exe
2014-11-20 16:09 - 2014-11-17 20:57 - 00235008 _____ () C:\WINDOWS\system32\clinfo.exe
2014-11-20 16:09 - 2014-11-17 20:57 - 00098816 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OpenVideo64.dll
2014-11-20 16:09 - 2014-11-17 20:57 - 00083456 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OpenVideo.dll
2014-11-20 16:09 - 2014-11-17 20:56 - 33869824 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2014-11-20 16:09 - 2014-11-17 20:56 - 00086528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OVDecode64.dll
2014-11-20 16:09 - 2014-11-17 20:56 - 00073216 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OVDecode.dll
2014-11-20 16:09 - 2014-11-17 20:53 - 28772352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2014-11-20 16:09 - 2014-11-17 20:50 - 00065024 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2014-11-20 16:09 - 2014-11-17 20:50 - 00058880 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2014-11-20 16:09 - 2014-11-17 20:43 - 05316608 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhsasc64.dll
2014-11-20 16:09 - 2014-11-17 20:43 - 04335616 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdhsasc.dll
2014-11-20 16:09 - 2014-11-17 20:12 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2014-11-20 16:09 - 2014-11-17 20:11 - 05836800 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2014-11-20 16:09 - 2014-11-17 20:11 - 00134656 _____ () C:\WINDOWS\system32\amdhdl64.dll
2014-11-20 16:09 - 2014-11-17 20:11 - 00123392 _____ () C:\WINDOWS\SysWOW64\amdhdl32.dll
2014-11-20 16:09 - 2014-11-17 20:11 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2014-11-20 16:09 - 2014-11-17 20:10 - 28356608 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2014-11-20 16:09 - 2014-11-17 20:03 - 00418304 _____ () C:\WINDOWS\system32\amdmiracast.dll
2014-11-20 16:09 - 2014-11-17 19:54 - 04590080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2014-11-20 16:09 - 2014-11-17 19:49 - 23627264 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2014-11-20 16:09 - 2014-11-17 19:40 - 00627128 _____ () C:\WINDOWS\SysWOW64\atiapfxx.blb
2014-11-20 16:09 - 2014-11-17 19:40 - 00627128 _____ () C:\WINDOWS\system32\atiapfxx.blb
2014-11-20 16:09 - 2014-11-17 19:40 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2014-11-20 16:09 - 2014-11-17 19:40 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2014-11-20 16:09 - 2014-11-17 19:40 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2014-11-20 16:09 - 2014-11-17 19:39 - 15716352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2014-11-20 16:09 - 2014-11-17 19:39 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2014-11-20 16:09 - 2014-11-17 19:39 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2014-11-20 16:09 - 2014-11-17 19:39 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2014-11-20 16:09 - 2014-11-17 19:39 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2014-11-20 16:09 - 2014-11-17 19:36 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2014-11-20 16:09 - 2014-11-17 19:22 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2014-11-20 16:09 - 2014-11-17 19:21 - 00623616 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2014-11-20 16:09 - 2014-11-17 19:21 - 00239616 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2014-11-20 16:09 - 2014-11-17 19:21 - 00031232 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2014-11-20 16:09 - 2014-11-17 19:20 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2014-11-20 16:09 - 2014-11-17 19:17 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2014-11-20 16:09 - 2014-11-17 19:17 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2014-11-20 16:09 - 2014-11-17 19:12 - 03437632 _____ () C:\WINDOWS\system32\atiumd6a.cap
2014-11-20 16:09 - 2014-11-17 19:10 - 00204952 _____ () C:\WINDOWS\SysWOW64\ativvsvl.dat
2014-11-20 16:09 - 2014-11-17 19:10 - 00204952 _____ () C:\WINDOWS\system32\ativvsvl.dat
2014-11-20 16:09 - 2014-11-17 19:10 - 00157144 _____ () C:\WINDOWS\SysWOW64\ativvsva.dat
2014-11-20 16:09 - 2014-11-17 19:10 - 00157144 _____ () C:\WINDOWS\system32\ativvsva.dat
2014-11-20 16:09 - 2014-11-17 19:06 - 00839168 _____ (AMD) C:\WINDOWS\system32\coinst_14.30.dll
2014-11-20 16:09 - 2014-11-17 19:01 - 03471376 _____ () C:\WINDOWS\SysWOW64\atiumdva.cap
2014-11-20 16:09 - 2014-11-17 18:55 - 01211392 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2014-11-20 16:09 - 2014-11-17 18:55 - 00901120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2014-11-20 16:09 - 2014-11-17 18:54 - 00581120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2014-11-20 16:09 - 2014-11-17 18:54 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2014-11-20 16:09 - 2014-11-17 18:54 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2014-11-20 16:09 - 2014-11-17 18:54 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2014-11-20 16:09 - 2014-11-17 18:54 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2014-11-20 16:09 - 2014-11-17 18:54 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2014-11-20 16:09 - 2014-11-17 18:52 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2014-11-20 16:09 - 2014-11-17 18:52 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2014-11-20 16:09 - 2014-11-17 18:52 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2014-11-20 16:09 - 2014-11-17 18:51 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2014-11-20 16:09 - 2014-11-17 18:49 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2014-11-20 16:09 - 2014-09-24 07:36 - 00765851 _____ () C:\WINDOWS\system32\amdicdxx.dat
2014-11-20 16:09 - 2014-08-31 15:58 - 00322868 _____ () C:\WINDOWS\system32\ativvaxy_vi.dat
2014-11-20 16:09 - 2014-08-31 15:56 - 00321200 _____ () C:\WINDOWS\system32\ativvaxy_vi_nd.dat
2014-11-20 16:09 - 2014-08-28 22:52 - 00157224 _____ () C:\WINDOWS\system32\amde31a.dat
2014-11-20 16:09 - 2014-08-28 17:58 - 00158928 _____ () C:\WINDOWS\system32\ativce03.dat
2014-11-20 16:09 - 2014-08-14 21:19 - 00082128 _____ () C:\WINDOWS\system32\ativce02.dat
2014-11-20 16:09 - 2014-07-15 16:54 - 00290080 _____ () C:\WINDOWS\system32\ativvaxy_cz_nd.dat
2014-11-20 16:09 - 2014-07-10 21:02 - 00046128 _____ () C:\WINDOWS\system32\kapp_ci.sbin
2014-11-20 16:09 - 2014-07-10 21:02 - 00041936 _____ () C:\WINDOWS\system32\kapp_si.sbin
2014-11-20 16:09 - 2014-07-02 19:40 - 00234164 _____ () C:\WINDOWS\system32\ativvaxy_cik.dat
2014-11-20 16:09 - 2014-07-02 19:38 - 00232752 _____ () C:\WINDOWS\system32\ativvaxy_cik_nd.dat
2014-11-20 16:09 - 2014-06-18 18:28 - 00140240 _____ () C:\WINDOWS\system32\samu_krnl_ci.sbin
2014-11-20 16:09 - 2014-04-01 06:21 - 00734861 _____ () C:\WINDOWS\system32\atiicdxx.dat
2014-11-20 16:09 - 2013-12-12 14:53 - 00138832 _____ () C:\WINDOWS\system32\samu_krnl_isv_ci.sbin
2014-11-20 16:09 - 2013-04-10 16:34 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe
2014-11-20 16:09 - 2013-04-10 16:34 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atibtmon.exe
2014-11-20 16:09 - 2013-04-10 16:34 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe
2014-11-20 16:09 - 2011-09-12 23:06 - 00003917 _____ () C:\WINDOWS\SysWOW64\atipblag.dat
2014-11-20 16:09 - 2011-09-12 23:06 - 00003917 _____ () C:\WINDOWS\system32\atipblag.dat
2014-11-20 16:03 - 2014-11-20 16:07 - 286079600 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14.11.2beta-64bit-win8.1-win7-nov19.exe
2014-11-19 19:26 - 2013-04-25 11:12 - 09889352 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2014-11-19 19:23 - 2014-11-19 19:25 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37 (1).zip
2014-11-19 19:16 - 2014-11-19 19:20 - 286582040 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql (1).exe
2014-11-19 17:19 - 2014-11-19 17:19 - 00015872 _____ () C:\Users\Niklas\Desktop\alexander.dll
2014-11-19 16:25 - 2014-11-19 16:25 - 07882013 _____ () C:\Users\Niklas\Downloads\1406634576_iCEnhancer 3.0 Pack.rar
2014-11-19 14:58 - 2014-11-19 14:58 - 00011859 _____ () C:\Users\Niklas\Downloads\1377766248_Brain Control ver6.0.rar
2014-11-19 14:57 - 2014-11-19 14:57 - 07990833 _____ () C:\Users\Niklas\Downloads\1391535720_1391345301_GTATerminalsIVHostages.zip
2014-11-19 14:14 - 2014-11-19 14:14 - 00006054 _____ () C:\Users\Niklas\Downloads\1411200668_Robbery Mod V2.rar
2014-11-19 13:58 - 2014-11-19 13:58 - 00023706 _____ () C:\Users\Niklas\Downloads\Logs.Rar
2014-11-19 13:56 - 2014-11-19 13:56 - 00023706 _____ () C:\Users\Niklas\Desktop\Logs.Rar
2014-11-19 13:50 - 2014-11-19 13:51 - 00033255 _____ () C:\Users\Niklas\Downloads\Addition.txt
2014-11-19 13:47 - 2014-11-23 00:22 - 00004577 _____ () C:\Users\Niklas\Downloads\FRST.txt
2014-11-19 13:47 - 2014-11-23 00:22 - 00000000 ____D () C:\FRST
2014-11-19 13:46 - 2014-11-23 00:22 - 02118144 _____ (Farbar) C:\Users\Niklas\Downloads\FRST64.exe
2014-11-18 17:12 - 2014-11-18 17:12 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (2).zip
2014-11-18 17:11 - 2014-11-18 17:11 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (1).zip
2014-11-18 17:09 - 2014-11-18 17:09 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery.zip
2014-11-18 17:04 - 2014-11-18 17:04 - 05748288 _____ (MultIV Development Team) C:\Users\Niklas\Downloads\multiv_setup.exe
2014-11-18 17:03 - 2014-11-18 17:03 - 11038884 _____ () C:\Users\Niklas\Downloads\1411337995_DTGraphics V2.rar
2014-11-17 19:39 - 2014-11-17 19:39 - 00389912 _____ (AnalogX, LLC) C:\Users\Niklas\Downloads\autoi.exe
2014-11-17 19:38 - 2014-11-17 19:38 - 00762160 _____ ( ) C:\Users\Niklas\Downloads\autotune_Mv_DM.exe
2014-11-16 16:01 - 2014-11-16 16:01 - 02682945 _____ () C:\Users\Niklas\Downloads\1367166104_Simple native trainer v6.5.rar
2014-11-16 13:24 - 2014-11-19 18:26 - 00000794 _____ () C:\Users\Niklas\Desktop\settings.xml
2014-11-16 13:18 - 2014-11-17 17:07 - 00000000 __SHD () C:\Users\Niklas\Documents\MSDCSC
2014-11-16 12:18 - 2014-11-16 12:18 - 01005568 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\dotNetFx45_Full_setup.exe
2014-11-16 12:13 - 2014-11-16 12:14 - 69999448 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\NDP452-KB2901907-x86-x64-AllOS-ENU.exe
2014-11-15 20:49 - 2014-11-15 20:49 - 00000000 ____D () C:\Users\Niklas\Documents\Rockstar Games
2014-11-15 20:34 - 2014-11-15 20:34 - 00000000 ____D () C:\Users\Niklas\Documents\Games for Windows - LIVE Demos
2014-11-15 20:33 - 2014-11-15 20:33 - 00642712 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\gfwlivesetup.exe
2014-11-14 21:51 - 2014-11-14 21:52 - 14555932 _____ () C:\Users\Niklas\Downloads\Parkour showdown + Resource Pack.zip
2014-11-14 21:43 - 2014-11-14 21:43 - 32435694 _____ () C:\Users\Niklas\Downloads\Gommes Revenge.zip
2014-11-14 18:48 - 2014-11-14 19:40 - 00000000 ____D () C:\Users\Niklas\Desktop\Backup
2014-11-14 18:46 - 2014-11-14 18:46 - 21915211 _____ (XB36Hazard) C:\Users\Niklas\Downloads\1388938627_GTA V 2.0.0.8.exe
2014-11-07 15:34 - 2014-11-07 15:34 - 00000903 _____ () C:\Users\Public\Desktop\Elsword.lnk
2014-11-07 15:34 - 2014-11-07 15:34 - 00000787 _____ () C:\Users\Public\Desktop\Gameforge Live.lnk
2014-11-07 15:28 - 2014-11-07 15:28 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup (1).exe
2014-11-06 22:19 - 2014-11-06 22:19 - 00957688 _____ (Intel Corporation) C:\Users\Niklas\Downloads\Setup (2).exe
2014-11-06 01:44 - 2014-11-20 19:01 - 00000000 ____D () C:\Users\Niklas\Downloads\Gameforge Live
2014-11-06 01:43 - 2014-11-06 01:43 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup.exe
2014-11-05 23:40 - 2014-11-05 23:40 - 00000000 ____D () C:\Users\Niklas\Documents\My Games
2014-11-05 22:53 - 2014-11-05 22:53 - 17033651 _____ (Craften.de ) C:\Users\Niklas\Downloads\craftenterminal.exe
2014-11-05 22:44 - 2014-11-05 22:44 - 00144439 _____ () C:\Users\Niklas\Downloads\Steam Wallet Hack updated 2014.rar
2014-11-05 19:29 - 2014-11-05 19:34 - 00000000 ____D () C:\AMD
2014-11-05 19:22 - 2014-11-05 19:31 - 129750444 _____ () C:\Users\Niklas\Downloads\win64_153330.zip
2014-11-05 19:18 - 2014-11-05 19:28 - 286582040 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql.exe
2014-11-05 19:18 - 2014-11-05 19:26 - 285682576 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14.9.2beta-14.301.1006-64bit-win8.1-oct10.exe
2014-11-05 16:30 - 2014-11-05 16:30 - 00001105 _____ () C:\Users\Niklas\Desktop\TeamSpeak 3 Client.lnk
2014-11-05 16:28 - 2014-11-05 16:29 - 30014480 _____ (TeamSpeak Systems GmbH) C:\Users\Niklas\Downloads\TeamSpeak3-Client-win64-3.0.16.exe
2014-10-29 22:56 - 2014-10-29 22:57 - 06311664 _____ () C:\Users\Niklas\Downloads\Sphax PureBDcraft  32x MC18.zip
2014-10-29 21:49 - 2014-10-29 21:51 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37.zip
2014-10-24 12:05 - 2014-10-24 12:31 - 246827120 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\avga146w81.exe
2014-10-24 12:04 - 2014-10-24 12:17 - 83355216 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\ivga146w8164u2.exe
2014-10-24 12:04 - 2014-10-24 12:04 - 04637852 _____ (Igor Pavlov) C:\Users\Niklas\Downloads\78cn25ww (1).exe
2014-10-24 11:54 - 2014-10-24 12:10 - 207485208 _____ (Advanced Micro Devices, Inc.) C:\Users\Niklas\Downloads\13-9_win7_win8_64_dd_ccc_whql.exe
2014-10-24 11:46 - 2014-10-24 11:55 - 129750444 _____ () C:\Users\Niklas\Downloads\win64__153330.zip
2014-10-24 11:43 - 2014-10-24 11:44 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup (1).exe
2014-10-24 11:43 - 2014-10-24 11:43 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup.exe
2014-10-24 11:22 - 2014-10-24 11:22 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband Savegames
2014-10-24 11:21 - 2014-10-24 12:59 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-23 00:12 - 2014-09-24 07:16 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-23 00:12 - 2014-09-24 06:43 - 00765582 _____ () C:\WINDOWS\system32\perfh007.dat
2014-11-23 00:12 - 2014-09-24 06:43 - 00159366 _____ () C:\WINDOWS\system32\perfc007.dat
2014-11-23 00:07 - 2014-09-23 22:06 - 00002788 _____ () C:\WINDOWS\PFRO.log
2014-11-23 00:07 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-11-23 00:06 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-11-23 00:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-11-22 23:57 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-11-22 23:53 - 2013-08-22 15:46 - 00038154 _____ () C:\WINDOWS\setupact.log
2014-11-22 23:51 - 2014-09-24 16:19 - 00000000 ___HD () C:\$Windows.~BT
2014-11-22 23:36 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 __RHD () C:\Users\Public\Libraries
2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery
2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT
2014-11-22 23:34 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default
2014-11-22 23:32 - 2013-08-22 15:44 - 00338016 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-11-22 23:28 - 2014-10-22 18:42 - 00000000 __SHD () C:\Recovery
2014-11-22 23:28 - 2013-08-22 16:37 - 00002664 _____ () C:\WINDOWS\DtcInstall.log
2014-11-22 23:21 - 2013-08-22 16:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template
2014-11-22 23:18 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
2014-11-22 23:18 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\MUI
2014-10-24 12:43 - 2014-10-22 20:15 - 00000732 _____ () C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk

Some content of TEMP:
====================
C:\Users\Niklas\AppData\Local\Temp\Quarantine.exe
C:\Users\Niklas\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-22 23:23

==================== End Of Log ============================
         
--- --- ---

--- --- ---

Alt 23.11.2014, 15:01   #10
schrauber
/// the machine
/// TB-Ausbilder
 

Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung




ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme?
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 23.11.2014, 17:20   #11
MorkezZ
 
Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



Eset

Code:
ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=bde8e82225484b40826bf5512d95bc27
# engine=21227
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2014-11-23 04:00:17
# local_time=2014-11-23 05:00:17 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT 
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 94 5213933 41639710 0 0
# scanned=354772
# found=1
# cleaned=1
# scan_time=5224
sh=C2284B2096434D8C2677D455FD34E5525DE8A66B ft=1 fh=79aaa72e5f4771c0 vn="Variante von Win32/InstallCore.RO evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Niklas\Downloads\autotune_Mv_DM.exe"
         
Checkup

Code:
ATTFilter
 Results of screen317's Security Check version 0.99.90  
   x64 (UAC is enabled)  
 Internet Explorer 11  
``````````````Antivirus/Firewall Check:`````````````` 
Windows Defender   
 WMI entry may not exist for antivirus; attempting automatic update. 
`````````Anti-malware/Other Utilities Check:````````` 
````````Process Check: objlist.exe by Laurent````````  
 Windows Defender MSMpEng.exe 
 Windows Defender MpCmdRun.exe   
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C:  % 
````````````````````End of Log``````````````````````
         
FRST


FRST Logfile:

FRST Logfile:

FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-11-2014
Ran by Niklas (administrator) on NIKLASNOTEBOOK on 23-11-2014 17:16:23
Running from C:\Users\Niklas\Downloads\FRST-OlderVersion
Loaded Profile: Niklas (Available profiles: Niklas)
Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\livecomm.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Valve Corporation) D:\Steam\Steam.exe
(Valve Corporation) D:\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6340312 2013-07-19] (Realtek semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-13] (Synaptics Incorporated)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x9D93F528A806D001
HKU\S-1-5-21-3923384574-3896416257-2954023665-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE,de;q=0.5
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========

Chrome: 
=======

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-08-07] (Broadcom Corporation.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-09-24] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-09-24] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36608 2013-12-13] (Advanced Micro Devices, Inc.)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-08-07] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7474864 2013-08-07] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-08] (Intel Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-19] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-13] (Synaptics Incorporated)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-09-24] (Microsoft Corporation)
R4 cm_km_w; system32\DRIVERS\cm_km_w.sys [X]
R4 kl1; system32\DRIVERS\kl1.sys [X]
R4 kldisk; \SystemRoot\system32\DRIVERS\kldisk.sys [X]
R4 klflt; \SystemRoot\system32\DRIVERS\klflt.sys [X]
R4 klhk; \SystemRoot\system32\DRIVERS\klhk.sys [X]
R4 KLIF; system32\DRIVERS\klif.sys [X]
R4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X]
R4 klpd; \SystemRoot\system32\DRIVERS\klpd.sys [X]
R4 klwfp; \SystemRoot\system32\DRIVERS\klwfp.sys [X]
R4 kneps; \SystemRoot\system32\DRIVERS\kneps.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-23 15:17 - 2014-11-23 15:17 - 00002380 _____ () C:\Users\Niklas\Desktop\Kaspersky Internet Security.lnk
2014-11-23 15:16 - 2014-11-23 15:16 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-11-23 11:54 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2014-11-23 11:54 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2014-11-23 11:54 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2014-11-23 11:54 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2014-11-23 11:54 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2014-11-23 11:54 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2014-11-23 11:54 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2014-11-23 11:54 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2014-11-23 11:54 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2014-11-23 11:54 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2014-11-23 11:54 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2014-11-23 11:54 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2014-11-23 11:54 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2014-11-23 11:54 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2014-11-23 11:54 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2014-11-23 11:54 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2014-11-23 11:54 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2014-11-23 11:54 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2014-11-23 11:54 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2014-11-23 11:54 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2014-11-23 11:54 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2014-11-23 11:54 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2014-11-23 11:54 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2014-11-23 11:54 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2014-11-23 11:54 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2014-11-23 11:54 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2014-11-23 11:54 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2014-11-23 11:54 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2014-11-23 11:54 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2014-11-23 11:54 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2014-11-23 11:54 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2014-11-23 11:54 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2014-11-23 11:54 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2014-11-23 11:54 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2014-11-23 11:54 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2014-11-23 11:54 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2014-11-23 11:54 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll
2014-11-23 11:54 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll
2014-11-23 11:54 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2014-11-23 11:54 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2014-11-23 11:54 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2014-11-23 11:54 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2014-11-23 11:54 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2014-11-23 11:54 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2014-11-23 11:54 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2014-11-23 11:54 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2014-11-23 11:54 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2014-11-23 11:54 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2014-11-23 11:54 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2014-11-23 11:54 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2014-11-23 11:54 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2014-11-23 11:54 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll
2014-11-23 11:54 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2014-11-23 11:54 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2014-11-23 11:54 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2014-11-23 11:54 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2014-11-23 11:54 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2014-11-23 11:54 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2014-11-23 11:54 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2014-11-23 11:54 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2014-11-23 11:54 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2014-11-23 11:54 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2014-11-23 11:54 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2014-11-23 11:54 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2014-11-23 11:54 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2014-11-23 11:54 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2014-11-23 11:54 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2014-11-23 11:54 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2014-11-23 11:54 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2014-11-23 11:54 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2014-11-23 11:54 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2014-11-23 11:54 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll
2014-11-23 11:54 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll
2014-11-23 11:54 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2014-11-23 11:54 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll
2014-11-23 11:54 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2014-11-23 11:54 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2014-11-23 11:54 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2014-11-23 11:54 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2014-11-23 11:54 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2014-11-23 11:54 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2014-11-23 11:54 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2014-11-23 11:54 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2014-11-23 11:54 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2014-11-23 11:54 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2014-11-23 11:54 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2014-11-23 11:54 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2014-11-23 11:54 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2014-11-23 11:54 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2014-11-23 11:54 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2014-11-23 11:54 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2014-11-23 11:54 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2014-11-23 11:54 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2014-11-23 11:54 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2014-11-23 11:54 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2014-11-23 11:54 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2014-11-23 11:54 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2014-11-23 11:54 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2014-11-23 11:54 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2014-11-23 11:54 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2014-11-23 11:54 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2014-11-23 11:54 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2014-11-23 11:54 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2014-11-23 11:54 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2014-11-23 11:54 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2014-11-23 11:54 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2014-11-23 11:54 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2014-11-23 11:54 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2014-11-23 11:54 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2014-11-23 11:54 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2014-11-23 11:54 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2014-11-23 11:54 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2014-11-23 11:54 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2014-11-23 11:54 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2014-11-23 11:54 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2014-11-23 11:54 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2014-11-23 11:54 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2014-11-23 11:54 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2014-11-23 11:54 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2014-11-23 11:54 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2014-11-23 11:54 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2014-11-23 11:54 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2014-11-23 11:54 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2014-11-23 11:54 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2014-11-23 11:54 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2014-11-23 11:54 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2014-11-23 11:54 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2014-11-23 11:54 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2014-11-23 11:54 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2014-11-23 11:54 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2014-11-23 11:54 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2014-11-23 11:54 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2014-11-23 11:54 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2014-11-23 11:54 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2014-11-23 11:54 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2014-11-23 11:54 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2014-11-23 11:54 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2014-11-23 11:54 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2014-11-23 11:53 - 2014-11-23 11:54 - 00010047 _____ () C:\WINDOWS\DirectX.log
2014-11-23 11:53 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2014-11-23 11:53 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2014-11-23 11:53 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2014-11-23 11:53 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2014-11-23 11:53 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2014-11-23 11:53 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2014-11-23 11:53 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2014-11-23 11:53 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2014-11-23 11:53 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll
2014-11-23 11:53 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll
2014-11-23 11:53 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2014-11-23 11:53 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2014-11-23 11:53 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2014-11-23 11:53 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2014-11-23 11:53 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2014-11-23 11:53 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2014-11-23 11:53 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2014-11-23 11:53 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2014-11-23 11:53 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2014-11-23 11:53 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2014-11-23 11:53 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2014-11-23 11:53 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2014-11-23 11:53 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2014-11-23 11:53 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2014-11-23 11:53 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2014-11-23 11:53 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2014-11-23 11:53 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2014-11-23 11:53 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2014-11-23 11:53 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2014-11-23 11:53 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2014-11-23 11:53 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2014-11-23 11:53 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2014-11-23 11:53 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2014-11-23 11:53 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2014-11-23 11:53 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2014-11-23 11:53 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2014-11-23 11:53 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2014-11-23 11:53 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2014-11-23 11:53 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2014-11-23 11:53 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2014-11-23 11:53 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2014-11-23 11:53 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2014-11-23 11:53 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2014-11-23 11:53 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll
2014-11-23 00:22 - 2014-11-23 17:16 - 00000000 ____D () C:\Users\Niklas\Downloads\FRST-OlderVersion
2014-11-23 00:11 - 2014-11-23 00:11 - 00000619 _____ () C:\Users\Niklas\Desktop\JRT.txt
2014-11-23 00:10 - 2014-11-23 00:10 - 00000000 ____D () C:\WINDOWS\ERUNT
2014-11-23 00:05 - 2014-11-23 00:06 - 00000000 ____D () C:\AdwCleaner
2014-11-23 00:02 - 2014-11-23 00:02 - 00000000 __SHD () C:\Users\Niklas\AppData\Local\EmieUserList
2014-11-23 00:02 - 2014-11-23 00:02 - 00000000 __SHD () C:\Users\Niklas\AppData\Local\EmieSiteList
2014-11-23 00:00 - 2014-11-23 11:40 - 00003958 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A8883146-0AFF-457E-97C0-AC3285E0593E}
2014-11-23 00:00 - 2014-11-23 00:00 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Macromedia
2014-11-22 23:57 - 2014-11-23 16:01 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3923384574-3896416257-2954023665-1001
2014-11-22 23:53 - 2014-11-22 23:53 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2014-11-22 23:49 - 2014-11-22 23:50 - 00000000 ____D () C:\Users\Niklas\AppData\Local\PackageStaging
2014-11-22 23:49 - 2014-11-22 23:50 - 00000000 ____D () C:\Users\Niklas\AppData\Local\Packages
2014-11-22 23:49 - 2014-11-22 23:49 - 00001454 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-22 23:49 - 2014-11-22 23:49 - 00000020 ___SH () C:\Users\Niklas\ntuser.ini
2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD
2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Adobe
2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas\AppData\Local\VirtualStore
2014-11-22 23:49 - 2014-11-22 23:49 - 00000000 _____ () C:\WINDOWS\ativpsrm.bin
2014-11-22 23:34 - 2014-11-23 15:59 - 00237867 _____ () C:\WINDOWS\WindowsUpdate.log
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-11-22 23:34 - 2014-11-22 23:34 - 00000000 ____D () C:\WINDOWS\CSC
2014-11-22 23:33 - 2014-11-22 23:49 - 00000000 ____D () C:\Users\Niklas
2014-11-22 23:33 - 2014-11-22 23:34 - 00011433 _____ () C:\WINDOWS\diagwrn.xml
2014-11-22 23:33 - 2014-11-22 23:34 - 00011433 _____ () C:\WINDOWS\diagerr.xml
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Vorlagen
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Startmenü
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Netzwerkumgebung
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Lokale Einstellungen
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Eigene Dateien
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Druckumgebung
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Musik
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Documents\Eigene Bilder
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Verlauf
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\AppData\Local\Anwendungsdaten
2014-11-22 23:33 - 2014-11-22 23:33 - 00000000 _SHDL () C:\Users\Niklas\Anwendungsdaten
2014-11-22 23:33 - 2014-09-24 08:41 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-22 23:33 - 2014-09-24 08:41 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-11-22 23:33 - 2014-09-24 07:17 - 00000369 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-11-22 23:33 - 2014-09-24 07:17 - 00000369 _____ () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-11-22 23:33 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-22 23:33 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-22 23:25 - 2014-11-22 23:25 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-11-22 23:25 - 2014-11-22 23:25 - 00000000 ____D () C:\ProgramData\Conexant
2014-11-22 23:24 - 2014-11-22 23:24 - 00000264 _____ () C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Synaptics
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Intel
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\CONEXANT
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2014-11-22 23:24 - 2014-11-22 23:24 - 00000000 ____D () C:\Program Files\AMD
2014-11-22 23:22 - 2014-11-23 12:06 - 00000000 ___DC () C:\WINDOWS\Panther
2014-11-22 23:21 - 2014-11-22 23:21 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff
2014-11-22 23:21 - 2014-11-22 23:21 - 00000000 ____D () C:\Windows.old
2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer
2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files\MSBuild
2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2014-11-22 23:18 - 2014-11-22 23:18 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-11-22 23:17 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-11-22 23:17 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-11-22 23:17 - 2013-08-03 05:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2014-11-22 23:17 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2014-11-22 23:17 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-11-22 23:17 - 2013-08-03 05:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2014-11-22 22:08 - 2014-11-23 15:02 - 00000000 __RDO () C:\Users\Niklas\SkyDrive
2014-11-22 21:43 - 2014-11-22 21:46 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37 (2).zip
2014-11-22 20:43 - 2014-11-22 20:44 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Niklas\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-22 20:40 - 2014-11-22 20:40 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Niklas\Downloads\revosetup95.exe
2014-11-21 15:44 - 2014-11-21 15:44 - 07891393 _____ () C:\Users\Niklas\Downloads\Wurst 1.3.1.zip
2014-11-20 19:09 - 2014-11-20 19:09 - 00000000 ____D () C:\Users\Niklas\Documents\My Cheat Tables
2014-11-20 19:08 - 2014-11-20 19:08 - 09052192 _____ (Cheat Engine ) C:\Users\Niklas\Downloads\CheatEngine64.exe
2014-11-20 16:09 - 2014-11-17 21:16 - 00144328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00118096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2014-11-20 16:09 - 2014-11-17 21:16 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 10889312 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 09314984 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 08295784 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 08045488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 07208104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 07028336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 01342760 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 01118720 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 00126848 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 00118096 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2014-11-20 16:09 - 2014-11-17 21:15 - 00100032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2014-11-20 16:09 - 2014-11-17 21:13 - 00297672 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2014-11-20 16:09 - 2014-11-17 21:11 - 16756736 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2014-11-20 16:09 - 2014-11-17 20:57 - 01187342 _____ () C:\WINDOWS\system32\amdocl_as64.exe
2014-11-20 16:09 - 2014-11-17 20:57 - 01061902 _____ () C:\WINDOWS\system32\amdocl_ld64.exe
2014-11-20 16:09 - 2014-11-17 20:57 - 00995342 _____ () C:\WINDOWS\SysWOW64\amdocl_as32.exe
2014-11-20 16:09 - 2014-11-17 20:57 - 00798734 _____ () C:\WINDOWS\SysWOW64\amdocl_ld32.exe
2014-11-20 16:09 - 2014-11-17 20:57 - 00235008 _____ () C:\WINDOWS\system32\clinfo.exe
2014-11-20 16:09 - 2014-11-17 20:57 - 00098816 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OpenVideo64.dll
2014-11-20 16:09 - 2014-11-17 20:57 - 00083456 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OpenVideo.dll
2014-11-20 16:09 - 2014-11-17 20:56 - 33869824 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2014-11-20 16:09 - 2014-11-17 20:56 - 00086528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OVDecode64.dll
2014-11-20 16:09 - 2014-11-17 20:56 - 00073216 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OVDecode.dll
2014-11-20 16:09 - 2014-11-17 20:53 - 28772352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2014-11-20 16:09 - 2014-11-17 20:50 - 00065024 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2014-11-20 16:09 - 2014-11-17 20:50 - 00058880 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2014-11-20 16:09 - 2014-11-17 20:43 - 05316608 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhsasc64.dll
2014-11-20 16:09 - 2014-11-17 20:43 - 04335616 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdhsasc.dll
2014-11-20 16:09 - 2014-11-17 20:12 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2014-11-20 16:09 - 2014-11-17 20:11 - 05836800 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2014-11-20 16:09 - 2014-11-17 20:11 - 00134656 _____ () C:\WINDOWS\system32\amdhdl64.dll
2014-11-20 16:09 - 2014-11-17 20:11 - 00123392 _____ () C:\WINDOWS\SysWOW64\amdhdl32.dll
2014-11-20 16:09 - 2014-11-17 20:11 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2014-11-20 16:09 - 2014-11-17 20:10 - 28356608 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2014-11-20 16:09 - 2014-11-17 20:03 - 00418304 _____ () C:\WINDOWS\system32\amdmiracast.dll
2014-11-20 16:09 - 2014-11-17 19:54 - 04590080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2014-11-20 16:09 - 2014-11-17 19:49 - 23627264 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2014-11-20 16:09 - 2014-11-17 19:40 - 00627128 _____ () C:\WINDOWS\SysWOW64\atiapfxx.blb
2014-11-20 16:09 - 2014-11-17 19:40 - 00627128 _____ () C:\WINDOWS\system32\atiapfxx.blb
2014-11-20 16:09 - 2014-11-17 19:40 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2014-11-20 16:09 - 2014-11-17 19:40 - 00091648 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2014-11-20 16:09 - 2014-11-17 19:40 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2014-11-20 16:09 - 2014-11-17 19:39 - 15716352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2014-11-20 16:09 - 2014-11-17 19:39 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2014-11-20 16:09 - 2014-11-17 19:39 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2014-11-20 16:09 - 2014-11-17 19:39 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2014-11-20 16:09 - 2014-11-17 19:39 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2014-11-20 16:09 - 2014-11-17 19:36 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2014-11-20 16:09 - 2014-11-17 19:22 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2014-11-20 16:09 - 2014-11-17 19:21 - 00623616 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2014-11-20 16:09 - 2014-11-17 19:21 - 00239616 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2014-11-20 16:09 - 2014-11-17 19:21 - 00031232 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2014-11-20 16:09 - 2014-11-17 19:20 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2014-11-20 16:09 - 2014-11-17 19:17 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2014-11-20 16:09 - 2014-11-17 19:17 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2014-11-20 16:09 - 2014-11-17 19:12 - 03437632 _____ () C:\WINDOWS\system32\atiumd6a.cap
2014-11-20 16:09 - 2014-11-17 19:10 - 00204952 _____ () C:\WINDOWS\SysWOW64\ativvsvl.dat
2014-11-20 16:09 - 2014-11-17 19:10 - 00204952 _____ () C:\WINDOWS\system32\ativvsvl.dat
2014-11-20 16:09 - 2014-11-17 19:10 - 00157144 _____ () C:\WINDOWS\SysWOW64\ativvsva.dat
2014-11-20 16:09 - 2014-11-17 19:10 - 00157144 _____ () C:\WINDOWS\system32\ativvsva.dat
2014-11-20 16:09 - 2014-11-17 19:06 - 00839168 _____ (AMD) C:\WINDOWS\system32\coinst_14.30.dll
2014-11-20 16:09 - 2014-11-17 19:01 - 03471376 _____ () C:\WINDOWS\SysWOW64\atiumdva.cap
2014-11-20 16:09 - 2014-11-17 18:55 - 01211392 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2014-11-20 16:09 - 2014-11-17 18:55 - 00901120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2014-11-20 16:09 - 2014-11-17 18:54 - 00581120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2014-11-20 16:09 - 2014-11-17 18:54 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2014-11-20 16:09 - 2014-11-17 18:54 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2014-11-20 16:09 - 2014-11-17 18:54 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2014-11-20 16:09 - 2014-11-17 18:54 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2014-11-20 16:09 - 2014-11-17 18:54 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2014-11-20 16:09 - 2014-11-17 18:52 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2014-11-20 16:09 - 2014-11-17 18:52 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2014-11-20 16:09 - 2014-11-17 18:52 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2014-11-20 16:09 - 2014-11-17 18:51 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2014-11-20 16:09 - 2014-11-17 18:49 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2014-11-20 16:09 - 2014-09-24 07:36 - 00765851 _____ () C:\WINDOWS\system32\amdicdxx.dat
2014-11-20 16:09 - 2014-08-31 15:58 - 00322868 _____ () C:\WINDOWS\system32\ativvaxy_vi.dat
2014-11-20 16:09 - 2014-08-31 15:56 - 00321200 _____ () C:\WINDOWS\system32\ativvaxy_vi_nd.dat
2014-11-20 16:09 - 2014-08-28 22:52 - 00157224 _____ () C:\WINDOWS\system32\amde31a.dat
2014-11-20 16:09 - 2014-08-28 17:58 - 00158928 _____ () C:\WINDOWS\system32\ativce03.dat
2014-11-20 16:09 - 2014-08-14 21:19 - 00082128 _____ () C:\WINDOWS\system32\ativce02.dat
2014-11-20 16:09 - 2014-07-15 16:54 - 00290080 _____ () C:\WINDOWS\system32\ativvaxy_cz_nd.dat
2014-11-20 16:09 - 2014-07-10 21:02 - 00046128 _____ () C:\WINDOWS\system32\kapp_ci.sbin
2014-11-20 16:09 - 2014-07-10 21:02 - 00041936 _____ () C:\WINDOWS\system32\kapp_si.sbin
2014-11-20 16:09 - 2014-07-02 19:40 - 00234164 _____ () C:\WINDOWS\system32\ativvaxy_cik.dat
2014-11-20 16:09 - 2014-07-02 19:38 - 00232752 _____ () C:\WINDOWS\system32\ativvaxy_cik_nd.dat
2014-11-20 16:09 - 2014-06-18 18:28 - 00140240 _____ () C:\WINDOWS\system32\samu_krnl_ci.sbin
2014-11-20 16:09 - 2014-04-01 06:21 - 00734861 _____ () C:\WINDOWS\system32\atiicdxx.dat
2014-11-20 16:09 - 2013-12-12 14:53 - 00138832 _____ () C:\WINDOWS\system32\samu_krnl_isv_ci.sbin
2014-11-20 16:09 - 2013-04-10 16:34 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe
2014-11-20 16:09 - 2013-04-10 16:34 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atibtmon.exe
2014-11-20 16:09 - 2013-04-10 16:34 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe
2014-11-20 16:09 - 2011-09-12 23:06 - 00003917 _____ () C:\WINDOWS\SysWOW64\atipblag.dat
2014-11-20 16:09 - 2011-09-12 23:06 - 00003917 _____ () C:\WINDOWS\system32\atipblag.dat
2014-11-20 16:03 - 2014-11-20 16:07 - 286079600 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14.11.2beta-64bit-win8.1-win7-nov19.exe
2014-11-19 19:26 - 2013-04-25 11:12 - 09889352 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2014-11-19 19:23 - 2014-11-19 19:25 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37 (1).zip
2014-11-19 19:16 - 2014-11-19 19:20 - 286582040 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql (1).exe
2014-11-19 16:25 - 2014-11-19 16:25 - 07882013 _____ () C:\Users\Niklas\Downloads\1406634576_iCEnhancer 3.0 Pack.rar
2014-11-19 14:58 - 2014-11-19 14:58 - 00011859 _____ () C:\Users\Niklas\Downloads\1377766248_Brain Control ver6.0.rar
2014-11-19 14:57 - 2014-11-19 14:57 - 07990833 _____ () C:\Users\Niklas\Downloads\1391535720_1391345301_GTATerminalsIVHostages.zip
2014-11-19 14:14 - 2014-11-19 14:14 - 00006054 _____ () C:\Users\Niklas\Downloads\1411200668_Robbery Mod V2.rar
2014-11-19 13:58 - 2014-11-19 13:58 - 00023706 _____ () C:\Users\Niklas\Downloads\Logs.Rar
2014-11-19 13:50 - 2014-11-19 13:51 - 00033255 _____ () C:\Users\Niklas\Downloads\Addition.txt
2014-11-19 13:47 - 2014-11-23 17:16 - 00000000 ____D () C:\FRST
2014-11-19 13:47 - 2014-11-23 00:23 - 00035550 _____ () C:\Users\Niklas\Downloads\FRST.txt
2014-11-19 13:46 - 2014-11-23 00:22 - 02118144 _____ (Farbar) C:\Users\Niklas\Downloads\FRST64.exe
2014-11-18 17:12 - 2014-11-18 17:12 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (2).zip
2014-11-18 17:11 - 2014-11-18 17:11 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery (1).zip
2014-11-18 17:09 - 2014-11-18 17:09 - 00004062 _____ () C:\Users\Niklas\Downloads\1407782057_Robbery.zip
2014-11-18 17:04 - 2014-11-18 17:04 - 05748288 _____ (MultIV Development Team) C:\Users\Niklas\Downloads\multiv_setup.exe
2014-11-18 17:03 - 2014-11-18 17:03 - 11038884 _____ () C:\Users\Niklas\Downloads\1411337995_DTGraphics V2.rar
2014-11-17 19:39 - 2014-11-17 19:39 - 00389912 _____ (AnalogX, LLC) C:\Users\Niklas\Downloads\autoi.exe
2014-11-16 16:01 - 2014-11-16 16:01 - 02682945 _____ () C:\Users\Niklas\Downloads\1367166104_Simple native trainer v6.5.rar
2014-11-16 13:24 - 2014-11-19 18:26 - 00000794 _____ () C:\Users\Niklas\Desktop\settings.xml
2014-11-16 13:18 - 2014-11-17 17:07 - 00000000 __SHD () C:\Users\Niklas\Documents\MSDCSC
2014-11-16 12:18 - 2014-11-16 12:18 - 01005568 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\dotNetFx45_Full_setup.exe
2014-11-16 12:13 - 2014-11-16 12:14 - 69999448 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\NDP452-KB2901907-x86-x64-AllOS-ENU.exe
2014-11-15 20:49 - 2014-11-15 20:49 - 00000000 ____D () C:\Users\Niklas\Documents\Rockstar Games
2014-11-15 20:34 - 2014-11-15 20:34 - 00000000 ____D () C:\Users\Niklas\Documents\Games for Windows - LIVE Demos
2014-11-15 20:33 - 2014-11-15 20:33 - 00642712 _____ (Microsoft Corporation) C:\Users\Niklas\Downloads\gfwlivesetup.exe
2014-11-14 21:51 - 2014-11-14 21:52 - 14555932 _____ () C:\Users\Niklas\Downloads\Parkour showdown + Resource Pack.zip
2014-11-14 21:43 - 2014-11-14 21:43 - 32435694 _____ () C:\Users\Niklas\Downloads\Gommes Revenge.zip
2014-11-14 18:48 - 2014-11-14 19:40 - 00000000 ____D () C:\Users\Niklas\Desktop\Backup
2014-11-14 18:46 - 2014-11-14 18:46 - 21915211 _____ (XB36Hazard) C:\Users\Niklas\Downloads\1388938627_GTA V 2.0.0.8.exe
2014-11-07 15:28 - 2014-11-07 15:28 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup (1).exe
2014-11-06 22:19 - 2014-11-06 22:19 - 00957688 _____ (Intel Corporation) C:\Users\Niklas\Downloads\Setup (2).exe
2014-11-06 01:44 - 2014-11-20 19:01 - 00000000 ____D () C:\Users\Niklas\Downloads\Gameforge Live
2014-11-06 01:43 - 2014-11-06 01:43 - 20213712 _____ (Gameforge ) C:\Users\Niklas\Downloads\Elsword_GameforgeLiveSetup.exe
2014-11-05 23:40 - 2014-11-05 23:40 - 00000000 ____D () C:\Users\Niklas\Documents\My Games
2014-11-05 22:53 - 2014-11-05 22:53 - 17033651 _____ (Craften.de ) C:\Users\Niklas\Downloads\craftenterminal.exe
2014-11-05 22:44 - 2014-11-05 22:44 - 00144439 _____ () C:\Users\Niklas\Downloads\Steam Wallet Hack updated 2014.rar
2014-11-05 19:29 - 2014-11-05 19:34 - 00000000 ____D () C:\AMD
2014-11-05 19:22 - 2014-11-05 19:31 - 129750444 _____ () C:\Users\Niklas\Downloads\win64_153330.zip
2014-11-05 19:18 - 2014-11-05 19:28 - 286582040 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql.exe
2014-11-05 19:18 - 2014-11-05 19:26 - 285682576 _____ (AMD Inc.) C:\Users\Niklas\Downloads\amd-catalyst-14.9.2beta-14.301.1006-64bit-win8.1-oct10.exe
2014-11-05 16:28 - 2014-11-05 16:29 - 30014480 _____ (TeamSpeak Systems GmbH) C:\Users\Niklas\Downloads\TeamSpeak3-Client-win64-3.0.16.exe
2014-10-29 22:56 - 2014-10-29 22:57 - 06311664 _____ () C:\Users\Niklas\Downloads\Sphax PureBDcraft  32x MC18.zip
2014-10-29 21:49 - 2014-10-29 21:51 - 12171007 _____ () C:\Users\Niklas\Downloads\RtsXStor_6.3.273.37.zip
2014-10-24 12:05 - 2014-10-24 12:31 - 246827120 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\avga146w81.exe
2014-10-24 12:04 - 2014-10-24 12:17 - 83355216 _____ (Lenovo Group Limited ) C:\Users\Niklas\Downloads\ivga146w8164u2.exe
2014-10-24 12:04 - 2014-10-24 12:04 - 04637852 _____ (Igor Pavlov) C:\Users\Niklas\Downloads\78cn25ww (1).exe
2014-10-24 11:54 - 2014-10-24 12:10 - 207485208 _____ (Advanced Micro Devices, Inc.) C:\Users\Niklas\Downloads\13-9_win7_win8_64_dd_ccc_whql.exe
2014-10-24 11:46 - 2014-10-24 11:55 - 129750444 _____ () C:\Users\Niklas\Downloads\win64__153330.zip
2014-10-24 11:43 - 2014-10-24 11:44 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup (1).exe
2014-10-24 11:43 - 2014-10-24 11:43 - 03021528 _____ (LionSea Software co., ltd ) C:\Users\Niklas\Downloads\setup.exe
2014-10-24 11:22 - 2014-10-24 11:22 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband Savegames
2014-10-24 11:21 - 2014-10-24 12:59 - 00000000 ____D () C:\Users\Niklas\Documents\Mount&Blade Warband

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-23 16:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-11-23 15:57 - 2013-08-22 16:36 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP
2014-11-23 15:56 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-11-23 15:18 - 2014-09-24 07:16 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-23 15:18 - 2014-09-24 06:43 - 00765582 _____ () C:\WINDOWS\system32\perfh007.dat
2014-11-23 15:18 - 2014-09-24 06:43 - 00159366 _____ () C:\WINDOWS\system32\perfc007.dat
2014-11-23 15:16 - 2013-08-22 15:46 - 00038798 _____ () C:\WINDOWS\setupact.log
2014-11-23 11:52 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\restore
2014-11-23 00:07 - 2014-09-23 22:06 - 00002788 _____ () C:\WINDOWS\PFRO.log
2014-11-23 00:07 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-11-23 00:06 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-11-22 23:57 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-11-22 23:51 - 2014-09-24 16:19 - 00000000 ___HD () C:\$Windows.~BT
2014-11-22 23:36 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 __RHD () C:\Users\Public\Libraries
2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery
2014-11-22 23:34 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT
2014-11-22 23:34 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default
2014-11-22 23:32 - 2013-08-22 15:44 - 00338016 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-11-22 23:28 - 2014-10-22 18:42 - 00000000 __SHD () C:\Recovery
2014-11-22 23:28 - 2013-08-22 16:37 - 00002664 _____ () C:\WINDOWS\DtcInstall.log
2014-11-22 23:21 - 2013-08-22 16:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template
2014-11-22 23:18 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
2014-11-22 23:18 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\MUI
2014-11-22 23:18 - 2013-08-22 16:20 - 00000000 ____D () C:\WINDOWS\CbsTemp

Some content of TEMP:
====================
C:\Users\Niklas\AppData\Local\Temp\Quarantine.exe
C:\Users\Niklas\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-22 23:23

==================== End Of Log ============================
         
--- --- ---

--- --- ---

--- --- ---

--- --- ---

Und noch die Addition

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-11-2014
Ran by Niklas at 2014-11-23 17:17:03
Running from C:\Users\Niklas\Downloads\FRST-OlderVersion
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.65.3.53 - Conexant)
Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10240 - Realtek Semiconductor Corp.)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.14.0 - Synaptics Incorporated)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

23-11-2014 10:52:49 DirectX wurde installiert

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Loaded Modules (whitelisted) =============

2014-10-22 20:15 - 2013-09-19 22:21 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-11-13 14:34 - 2014-11-11 19:48 - 01171456 _____ () D:\Steam\libavcodec-56.dll
2014-11-13 14:34 - 2014-11-11 19:48 - 00332800 _____ () D:\Steam\libavresample-2.dll
2014-11-13 14:34 - 2014-11-11 19:48 - 00442368 _____ () D:\Steam\libavutil-54.dll
2014-11-13 14:34 - 2014-11-11 19:47 - 00774656 _____ () D:\Steam\SDL2.dll
2014-11-19 19:31 - 2014-11-18 21:23 - 02227904 _____ () D:\Steam\video.dll
2014-11-13 14:34 - 2014-11-11 19:48 - 00403968 _____ () D:\Steam\libavformat-56.dll
2014-11-13 14:34 - 2014-11-11 19:48 - 00485888 _____ () D:\Steam\libswscale-3.dll
2014-11-19 19:31 - 2014-11-18 21:23 - 00690880 _____ () D:\Steam\bin\chromehtml.DLL
2014-11-13 14:34 - 2014-11-11 19:48 - 34589888 _____ () D:\Steam\bin\libcef.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\Niklas\SkyDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrator (S-1-5-21-3923384574-3896416257-2954023665-500 - Administrator - Disabled)
Gast (S-1-5-21-3923384574-3896416257-2954023665-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3923384574-3896416257-2954023665-1003 - Limited - Enabled)
Niklas (S-1-5-21-3923384574-3896416257-2954023665-1001 - Administrator - Enabled) => C:\Users\Niklas

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (11/23/2014 05:08:37 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest.

Error: (11/23/2014 03:21:26 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest.

Error: (11/23/2014 03:21:25 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest.

Error: (11/23/2014 03:17:38 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest.

Error: (11/23/2014 03:17:38 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifest.

Error: (11/23/2014 11:55:32 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: t6mp.exe, Version: 1.0.0.1, Zeitstempel: 0x536e8fb4
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000
ID des fehlerhaften Prozesses: 0x18b8
Startzeit der fehlerhaften Anwendung: 0xt6mp.exe0
Pfad der fehlerhaften Anwendung: t6mp.exe1
Pfad des fehlerhaften Moduls: t6mp.exe2
Berichtskennung: t6mp.exe3
Vollständiger Name des fehlerhaften Pakets: t6mp.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: t6mp.exe5

Error: (11/23/2014 11:54:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: t6mp.exe, Version: 1.0.0.1, Zeitstempel: 0x536e8fb4
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000
ID des fehlerhaften Prozesses: 0x1a28
Startzeit der fehlerhaften Anwendung: 0xt6mp.exe0
Pfad der fehlerhaften Anwendung: t6mp.exe1
Pfad des fehlerhaften Moduls: t6mp.exe2
Berichtskennung: t6mp.exe3
Vollständiger Name des fehlerhaften Pakets: t6mp.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: t6mp.exe5

Error: (11/23/2014 00:17:04 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.1.711, Zeitstempel: 0x542b53ec
Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e
Ausnahmecode: 0x40000015
Fehleroffset: 0x0008d6fd
ID des fehlerhaften Prozesses: 0x7ec
Startzeit der fehlerhaften Anwendung: 0xmbam.exe0
Pfad der fehlerhaften Anwendung: mbam.exe1
Pfad des fehlerhaften Moduls: mbam.exe2
Berichtskennung: mbam.exe3
Vollständiger Name des fehlerhaften Pakets: mbam.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbam.exe5

Error: (11/23/2014 00:16:57 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.1.711, Zeitstempel: 0x542b53ec
Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e
Ausnahmecode: 0x40000015
Fehleroffset: 0x0008d6fd
ID des fehlerhaften Prozesses: 0x12d8
Startzeit der fehlerhaften Anwendung: 0xmbam.exe0
Pfad der fehlerhaften Anwendung: mbam.exe1
Pfad des fehlerhaften Moduls: mbam.exe2
Berichtskennung: mbam.exe3
Vollständiger Name des fehlerhaften Pakets: mbam.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbam.exe5

Error: (11/23/2014 00:16:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.1.711, Zeitstempel: 0x542b53ec
Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.40219.325, Zeitstempel: 0x4df2be1e
Ausnahmecode: 0x40000015
Fehleroffset: 0x0008d6fd
ID des fehlerhaften Prozesses: 0xee4
Startzeit der fehlerhaften Anwendung: 0xmbam.exe0
Pfad der fehlerhaften Anwendung: mbam.exe1
Pfad des fehlerhaften Moduls: mbam.exe2
Berichtskennung: mbam.exe3
Vollständiger Name des fehlerhaften Pakets: mbam.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbam.exe5


System errors:
=============
Error: (11/23/2014 03:20:59 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Kaspersky Anti-Virus Service 15.0.1" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (11/23/2014 11:53:07 AM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 42. Der Windows-SChannel-Fehlerstatus lautet: 250.

Error: (11/23/2014 00:39:02 AM) (Source: KLIF) (EventID: 0) (User: )
Description: Ñonnection is not established

Error: (11/23/2014 00:39:02 AM) (Source: KLIF) (EventID: 0) (User: )
Description: Ñonnection is not established

Error: (11/23/2014 00:39:01 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Erkennung interaktiver Dienste" wurde mit folgendem Fehler beendet: 
%%1

Error: (11/23/2014 00:22:52 AM) (Source: DCOM) (EventID: 10010) (User: NIKLASNOTEBOOK)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}

Error: (11/23/2014 00:22:22 AM) (Source: DCOM) (EventID: 10010) (User: NIKLASNOTEBOOK)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}

Error: (11/23/2014 00:21:52 AM) (Source: DCOM) (EventID: 10010) (User: NIKLASNOTEBOOK)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}

Error: (11/23/2014 00:21:22 AM) (Source: DCOM) (EventID: 10010) (User: NIKLASNOTEBOOK)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}

Error: (11/23/2014 00:20:52 AM) (Source: DCOM) (EventID: 10010) (User: NIKLASNOTEBOOK)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}


Microsoft Office Sessions:
=========================
Error: (11/23/2014 05:08:37 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe

Error: (11/23/2014 03:21:26 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\esetsmartinstaller_deu.exe

Error: (11/23/2014 03:21:25 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\esetsmartinstaller_deu.exe

Error: (11/23/2014 03:17:38 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\esetsmartinstaller_deu.exe

Error: (11/23/2014 03:17:38 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_6242a4b3ecbb55a1.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17031_none_a9efdb8b01377ea7.manifestC:\Users\Niklas\AppData\Local\Microsoft\Windows\INetCache\IE\AWZOUIZ5\esetsmartinstaller_deu.exe

Error: (11/23/2014 11:55:32 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: t6mp.exe1.0.0.1536e8fb4unknown0.0.0.000000000c00000050000000018b801d0070c009ab28eD:\Steam\steamapps\common\Call of Duty Black Ops II\t6mp.exeunknown3e7e25b4-72ff-11e4-8251-142d27f3a596

Error: (11/23/2014 11:54:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: t6mp.exe1.0.0.1536e8fb4unknown0.0.0.000000000c0000005000000001a2801d0070bd7df87eeD:\Steam\steamapps\common\Call of Duty Black Ops II\t6mp.exeunknown170692b1-72ff-11e4-8251-142d27f3a596

Error: (11/23/2014 00:17:04 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: mbam.exe1.0.1.711542b53ecMSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd7ec01d006aa6d8905a8D:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exeD:\Program Files (x86)\ Malwarebytes Anti-Malware \MSVCR100.dllab3f1af6-729d-11e4-8251-142d27f3a596

Error: (11/23/2014 00:16:57 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: mbam.exe1.0.1.711542b53ecMSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd12d801d006aa69267e8fD:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exeD:\Program Files (x86)\ Malwarebytes Anti-Malware \MSVCR100.dlla6def652-729d-11e4-8251-142d27f3a596

Error: (11/23/2014 00:16:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: mbam.exe1.0.1.711542b53ecMSVCR100.dll10.0.40219.3254df2be1e400000150008d6fdee401d006aa629566c8D:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exeD:\Program Files (x86)\ Malwarebytes Anti-Malware \MSVCR100.dlla0504101-729d-11e4-8251-142d27f3a596


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz
Percentage of memory in use: 28%
Total physical RAM: 8092.85 MB
Available physical RAM: 5794.29 MB
Total Pagefile: 10012.85 MB
Available Pagefile: 7226.05 MB
Total Virtual: 131072 MB
Available Virtual: 131071.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:97.66 GB) (Free:65.09 GB) NTFS
Drive d: (Daten) (Fixed) (Total:367.13 GB) (Free:300.18 GB) NTFS
Drive f: () (Removable) (Total:3.69 GB) (Free:0.38 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D9FA2484)
Partition 1: (Active) - (Size=1000 MB) - (Type=0B)
Partition 2: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=367.1 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 3.7 GB) (Disk ID: 00000000)

Partition: GPT Partition Type.

==================== End Of Log ============================
         
SOnst gibt's immoment nurnoch 1 Problem weiss nicht ob ich dafür jetzt einen neuen beitrag machen soll

Alt 24.11.2014, 17:46   #12
schrauber
/// the machine
/// TB-Ausbilder
 

Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



welches Problem?
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 24.11.2014, 20:01   #13
MorkezZ
 
Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



Und zwar das z.b weiss nicht obsn Virus ist undzwar manchmal wenn ich grade z.b Black ops2 oder so zocke dann aufeinmal schmiert mein rechner ab mit der meldung Windows funktioniert nichtmehr drsql oderso und da habe ich mir heute was gedownlaodet so habe ich aber gemerkt das ist kompletter bullshit habs runtergeworfen aber der hat eine millde toolbars undso installiert habe ich alle mit revo entfernt aber z.b so werbung komm wenn ich grade ein video schaue oder einfach nur auf einer website bin z.b irgendsone arzt werbung mache ich die zu kommt die 10 sekunden später wieder

Alt 25.11.2014, 16:33   #14
schrauber
/// the machine
/// TB-Ausbilder
 

Egal wo ich hin klicke Werbung - Standard

Egal wo ich hin klicke Werbung



Wenn Du das gerade erst gemacht hast mit dem Download dann kannste MBAM; AdwCleaner und JRT nochmal laufen lassen.

Und ich würd mal aufhören irgendwas einfach so zu laden, sonst drehen wir uns hier im Kreis
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu Egal wo ich hin klicke Werbung
ads, blöd, browser, fake, java, klicke, mcaffe, neue, neuen, neuer, neues, nichts, problem, scan, scanner, tracking, trojaner, trojaner board, version, virenscanner, virus, werbung, youtube, öffnen, öffnet




Ähnliche Themen: Egal wo ich hin klicke Werbung


  1. Chrome und Mozilla öffnen dauernd neue Ad-Tabs wenn ich auf Links klicke
    Log-Analyse und Auswertung - 15.09.2015 (7)
  2. Chrome stürzt ab, wenn ich auf >> Lesezeichen klicke
    Plagegeister aller Art und deren Bekämpfung - 20.08.2015 (26)
  3. Es öffnen sich fast immer neue Tabs mit Werbung sei es, wenn ich webseiten öffne oder in textfelder klicke (wie hier)
    Plagegeister aller Art und deren Bekämpfung - 13.05.2015 (4)
  4. Wenn ich irgendwo im Chrome auf der Seite klicke, öffnet sich eine neue Tab mit Werbung
    Log-Analyse und Auswertung - 26.10.2014 (12)
  5. Windows7: bei jedem Klick öffnet sich ein neuer Tab mit Werbung - egal welcher Browser
    Log-Analyse und Auswertung - 26.02.2014 (19)
  6. Werbung, wenn ich auf Links klicke :(
    Log-Analyse und Auswertung - 01.10.2013 (11)
  7. Maus am PC klickt von selbst doppelt obwohl ich nur einmal klicke, was soll ich tun?
    Log-Analyse und Auswertung - 09.09.2013 (2)
  8. IE und Firefox öffnet nicht die Links die ich klicke .. lande auf XXX oä
    Log-Analyse und Auswertung - 12.01.2013 (12)
  9. Google leitet mich auf andere Seiten um wenn ich auf einen Link klicke
    Plagegeister aller Art und deren Bekämpfung - 21.07.2011 (35)
  10. Falsche Links von Google, egal ob IE oder Firefox
    Plagegeister aller Art und deren Bekämpfung - 10.04.2011 (26)
  11. PC geht einfach aus egal was ich mache
    Log-Analyse und Auswertung - 30.05.2010 (0)
  12. Browser umleitung egal welcher
    Mülltonne - 04.09.2008 (0)
  13. trojaner meldungen egal bei was...
    Plagegeister aller Art und deren Bekämpfung - 06.03.2007 (6)
  14. Absturz bei Virenscan -egal welcher Scanner
    Alles rund um Windows - 30.10.2005 (3)
  15. Absturz bei Virenscan -egal welcher Scanner
    Plagegeister aller Art und deren Bekämpfung - 21.05.2004 (3)

Zum Thema Egal wo ich hin klicke Werbung - Hallo Trojaner Board ich habe ein problem ich glaube ich habe einen virus auf meinem neuen Notebook. Und zwar Wenn ich z.b irgendwo ich nehme mal youtube was anklicken weill - Egal wo ich hin klicke Werbung...
Archiv
Du betrachtest: Egal wo ich hin klicke Werbung auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.